Dans la continuité de mes problèmes, rkhunter me trouve un Warning où il précise :
"possible rootkit"
ce n’est pas une certitude car c’est un “warning” mais …
Après fouillage des logs, il désigne deux fichiers qui pourraient être en cause :
/etc/init.d/hdparm
/etc/init.d/.depend.boot
Le 1er est un script
le second, ce n’est que du texte, que voici (je ne pense pas que du texte brut puisse faire du mal ?):
TARGETS = mountkernfs.sh udev mountdevsubfs.sh bootlogd keymap.sh keyboard-setup hostname.sh hwclockfirst.sh hdparm hibernate checkroot.sh hwclock.sh mtab.sh module-init-tools checkfs.sh mountall.sh mountall-bootclean.sh mountoverflowtmp x11-common urandom ifupdown-clean procps udev-mtab pppd-dns ifupdown networking portmap nfs-common mountnfs.sh mountnfs-bootclean.sh console-screen.sh console-setup fuse alsa-utils bootmisc.sh lm-sensors stop-bootlogd-single
INTERACTIVE = udev keymap.sh keyboard-setup checkroot.sh checkfs.sh console-screen.sh console-setup
udev: mountkernfs.sh
mountdevsubfs.sh: mountkernfs.sh udev
bootlogd: mountdevsubfs.sh
keymap.sh: mountdevsubfs.sh bootlogd
keyboard-setup: mountkernfs.sh keymap.sh udev bootlogd
hostname.sh: bootlogd
hwclockfirst.sh: bootlogd mountdevsubfs.sh
hdparm: mountdevsubfs.sh udev bootlogd
hibernate: udev bootlogd
checkroot.sh: mountdevsubfs.sh hostname.sh keymap.sh hwclockfirst.sh hdparm bootlogd keyboard-setup
hwclock.sh: checkroot.sh bootlogd
mtab.sh: checkroot.sh
module-init-tools: checkroot.sh
checkfs.sh: checkroot.sh mtab.sh
mountall.sh: hibernate checkfs.sh
mountall-bootclean.sh: mountall.sh
mountoverflowtmp: mountall-bootclean.sh
x11-common: mountall.sh mountoverflowtmp
urandom: mountall.sh mountoverflowtmp
ifupdown-clean: mountall.sh mountoverflowtmp mountdevsubfs.sh hostname.sh
procps: mountkernfs.sh mountall.sh mountoverflowtmp udev module-init-tools bootlogd
udev-mtab: udev mountall.sh mountoverflowtmp
pppd-dns: mountall.sh mountoverflowtmp
ifupdown: ifupdown-clean
networking: mountkernfs.sh mountall.sh mountoverflowtmp ifupdown
portmap: networking ifupdown mountall.sh mountoverflowtmp
nfs-common: portmap hwclock.sh
mountnfs.sh: mountall.sh mountoverflowtmp networking ifupdown portmap nfs-common
mountnfs-bootclean.sh: mountall.sh mountoverflowtmp mountnfs.sh
console-screen.sh: mountall.sh mountoverflowtmp mountnfs.sh mountnfs-bootclean.sh
console-setup: mountall.sh mountoverflowtmp mountnfs.sh mountnfs-bootclean.sh console-screen.sh
fuse: mountall.sh mountoverflowtmp mountnfs.sh mountnfs-bootclean.sh
alsa-utils: mountall.sh mountoverflowtmp mountnfs.sh mountnfs-bootclean.sh udev
bootmisc.sh: mountall.sh mountoverflowtmp mountnfs.sh mountnfs-bootclean.sh udev
lm-sensors: mountall.sh mountoverflowtmp mountnfs.sh mountnfs-bootclean.sh
stop-bootlogd-single: mountall.sh mountoverflowtmp udev console-screen.sh keymap.sh keyboard-setup console-setup mountnfs.sh mountnfs-bootclean.sh fuse networking ifupdown portmap nfs-common hwclock.sh alsa-utils x11-common urandom mountkernfs.sh checkroot.sh hostname.sh mountdevsubfs.sh hwclockfirst.sh hdparm bootlogd ifupdown-clean hibernate checkfs.sh mtab.sh procps module-init-tools udev-mtab pppd-dns bootmisc.sh mountall-bootclean.sh lm-sensors
Votre avis ?
Une comparaison avec ce qui se trouve chez vou, merci !