Infecté par plusieurs chevaux de troie
audibert
-
audibert -
audibert -
Bonjour,
antivir m'a signalé plusieurs chevaux de troie depuis quelques jours...
bitdefender me détecte rien pas plus que "kaspersky scan online"...
voici le rapport du scan antivir :
Avira AntiVir Personal
Report file date: dimanche 12 avril 2009 18:31
Scanning for 1346528 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: m
Computer name: M-276D85A429674
Version information:
BUILD.DAT : 8.2.0.347 16934 Bytes 16/03/2009 14:45:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 25/11/2008 12:16:56
AVSCAN.DLL : 8.1.4.0 40705 Bytes 19/07/2008 20:28:45
LUKE.DLL : 8.1.4.5 164097 Bytes 19/07/2008 20:28:45
LUKERES.DLL : 8.1.4.0 12033 Bytes 19/07/2008 20:28:45
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 20:24:05
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 16:12:53
ANTIVIR2.VDF : 7.1.3.0 1330176 Bytes 01/04/2009 08:46:37
ANTIVIR3.VDF : 7.1.3.41 162304 Bytes 10/04/2009 20:08:43
Engineversion : 8.2.0.138
AEVDF.DLL : 8.1.1.0 106868 Bytes 04/02/2009 16:59:41
AESCRIPT.DLL : 8.1.1.73 373114 Bytes 04/04/2009 16:57:22
AESCN.DLL : 8.1.1.10 127348 Bytes 04/04/2009 16:57:21
AERDL.DLL : 8.1.1.3 438645 Bytes 05/11/2008 17:23:08
AEPACK.DLL : 8.1.3.12 397687 Bytes 04/04/2009 16:57:21
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 27/02/2009 13:04:04
AEHEUR.DLL : 8.1.0.114 1700214 Bytes 04/04/2009 16:57:19
AEHELP.DLL : 8.1.2.2 119158 Bytes 27/02/2009 13:03:58
AEGEN.DLL : 8.1.1.33 340340 Bytes 04/04/2009 16:57:13
AEEMU.DLL : 8.1.0.9 393588 Bytes 15/10/2008 21:17:14
AECORE.DLL : 8.1.6.7 176502 Bytes 04/04/2009 16:57:11
AEBB.DLL : 8.1.0.3 53618 Bytes 15/10/2008 21:17:12
AVWINLL.DLL : 1.0.0.12 15105 Bytes 19/07/2008 20:28:45
AVPREF.DLL : 8.0.2.0 38657 Bytes 19/07/2008 20:28:45
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 15:51:28
AVREG.DLL : 8.0.0.1 33537 Bytes 19/07/2008 20:28:45
AVARKT.DLL : 1.0.0.23 307457 Bytes 20/04/2008 02:56:45
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 19/07/2008 20:28:45
SQLITE3.DLL : 3.3.17.1 339968 Bytes 20/04/2008 02:56:46
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 19/07/2008 20:28:45
NETNT.DLL : 8.0.0.1 7937 Bytes 20/04/2008 02:56:46
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 19/07/2008 20:28:42
RCTEXT.DLL : 8.0.52.0 86273 Bytes 19/07/2008 20:28:42
Configuration settings for the scan:
Jobname..........................: Local Drives
Configuration file...............: c:\program files\avira\antivir personaledition classic\alldrives.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: dimanche 12 avril 2009 18:31
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'LogitechUpdate.exe' - '1' Module(s) have been scanned
Scan process 'LULnchr.exe' - '1' Module(s) have been scanned
Scan process 'skypePM.exe' - '1' Module(s) have been scanned
Scan process 'COCIManager.exe' - '1' Module(s) have been scanned
Scan process 'lxcgcoms.exe' - '1' Module(s) have been scanned
Scan process 'PCLEScheduler.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'GoogleUpdate.exe' - '1' Module(s) have been scanned
Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
Scan process 'Skype.exe' - '1' Module(s) have been scanned
Scan process 'steam.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'ezprint.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'Communications_Helper.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'LVComSer.exe' - '1' Module(s) have been scanned
Scan process 'LVPrcSrv.exe' - '1' Module(s) have been scanned
Scan process 'LVComSer.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'btwdins.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'aawservice.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
46 processes with 46 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '64' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[WARNING] An error has occurred and the file was not deleted. ErrorID: 26003
[WARNING] The file could not be deleted!
[NOTE] Attempting to perform action using the ARK lib.
[NOTE] The file was moved to '48201d76.qua'!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\'
Search path D:\ could not be opened!
System error [21]: Le périphérique n'est pas prêt.
End of the scan: dimanche 12 avril 2009 19:35
Used time: 1:03:15 Hour(s)
The scan has been done completely.
6913 Scanning directories
308373 Files were scanned
1 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
1 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
308370 Files not concerned
4143 Archives were scanned
3 Warnings
1 Notes
je n'arrive pas à voir le fichier c:/recycler qu'il m'indique, et pourtant j'ai coché l'option "afficher les dossiers et fichiers cachés"...
pouvez- vous m'aider svp ?
merci
antivir m'a signalé plusieurs chevaux de troie depuis quelques jours...
bitdefender me détecte rien pas plus que "kaspersky scan online"...
voici le rapport du scan antivir :
Avira AntiVir Personal
Report file date: dimanche 12 avril 2009 18:31
Scanning for 1346528 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: m
Computer name: M-276D85A429674
Version information:
BUILD.DAT : 8.2.0.347 16934 Bytes 16/03/2009 14:45:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 25/11/2008 12:16:56
AVSCAN.DLL : 8.1.4.0 40705 Bytes 19/07/2008 20:28:45
LUKE.DLL : 8.1.4.5 164097 Bytes 19/07/2008 20:28:45
LUKERES.DLL : 8.1.4.0 12033 Bytes 19/07/2008 20:28:45
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 20:24:05
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 16:12:53
ANTIVIR2.VDF : 7.1.3.0 1330176 Bytes 01/04/2009 08:46:37
ANTIVIR3.VDF : 7.1.3.41 162304 Bytes 10/04/2009 20:08:43
Engineversion : 8.2.0.138
AEVDF.DLL : 8.1.1.0 106868 Bytes 04/02/2009 16:59:41
AESCRIPT.DLL : 8.1.1.73 373114 Bytes 04/04/2009 16:57:22
AESCN.DLL : 8.1.1.10 127348 Bytes 04/04/2009 16:57:21
AERDL.DLL : 8.1.1.3 438645 Bytes 05/11/2008 17:23:08
AEPACK.DLL : 8.1.3.12 397687 Bytes 04/04/2009 16:57:21
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 27/02/2009 13:04:04
AEHEUR.DLL : 8.1.0.114 1700214 Bytes 04/04/2009 16:57:19
AEHELP.DLL : 8.1.2.2 119158 Bytes 27/02/2009 13:03:58
AEGEN.DLL : 8.1.1.33 340340 Bytes 04/04/2009 16:57:13
AEEMU.DLL : 8.1.0.9 393588 Bytes 15/10/2008 21:17:14
AECORE.DLL : 8.1.6.7 176502 Bytes 04/04/2009 16:57:11
AEBB.DLL : 8.1.0.3 53618 Bytes 15/10/2008 21:17:12
AVWINLL.DLL : 1.0.0.12 15105 Bytes 19/07/2008 20:28:45
AVPREF.DLL : 8.0.2.0 38657 Bytes 19/07/2008 20:28:45
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 15:51:28
AVREG.DLL : 8.0.0.1 33537 Bytes 19/07/2008 20:28:45
AVARKT.DLL : 1.0.0.23 307457 Bytes 20/04/2008 02:56:45
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 19/07/2008 20:28:45
SQLITE3.DLL : 3.3.17.1 339968 Bytes 20/04/2008 02:56:46
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 19/07/2008 20:28:45
NETNT.DLL : 8.0.0.1 7937 Bytes 20/04/2008 02:56:46
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 19/07/2008 20:28:42
RCTEXT.DLL : 8.0.52.0 86273 Bytes 19/07/2008 20:28:42
Configuration settings for the scan:
Jobname..........................: Local Drives
Configuration file...............: c:\program files\avira\antivir personaledition classic\alldrives.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: dimanche 12 avril 2009 18:31
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'LogitechUpdate.exe' - '1' Module(s) have been scanned
Scan process 'LULnchr.exe' - '1' Module(s) have been scanned
Scan process 'skypePM.exe' - '1' Module(s) have been scanned
Scan process 'COCIManager.exe' - '1' Module(s) have been scanned
Scan process 'lxcgcoms.exe' - '1' Module(s) have been scanned
Scan process 'PCLEScheduler.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'GoogleUpdate.exe' - '1' Module(s) have been scanned
Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
Scan process 'Skype.exe' - '1' Module(s) have been scanned
Scan process 'steam.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'ezprint.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'Communications_Helper.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'LVComSer.exe' - '1' Module(s) have been scanned
Scan process 'LVPrcSrv.exe' - '1' Module(s) have been scanned
Scan process 'LVComSer.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'btwdins.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'aawservice.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
46 processes with 46 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '64' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[WARNING] An error has occurred and the file was not deleted. ErrorID: 26003
[WARNING] The file could not be deleted!
[NOTE] Attempting to perform action using the ARK lib.
[NOTE] The file was moved to '48201d76.qua'!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\'
Search path D:\ could not be opened!
System error [21]: Le périphérique n'est pas prêt.
End of the scan: dimanche 12 avril 2009 19:35
Used time: 1:03:15 Hour(s)
The scan has been done completely.
6913 Scanning directories
308373 Files were scanned
1 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
1 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
308370 Files not concerned
4143 Archives were scanned
3 Warnings
1 Notes
je n'arrive pas à voir le fichier c:/recycler qu'il m'indique, et pourtant j'ai coché l'option "afficher les dossiers et fichiers cachés"...
pouvez- vous m'aider svp ?
merci
A voir également:
- Infecté par plusieurs chevaux de troie
- Jeux de petit chevaux gratuit à télécharger - Télécharger - Jeux vidéo
- Cheval de troie virus comment le supprimer - Télécharger - Antivirus & Antimalwares
- Ordinateur bloqué cheval de troie - Accueil - Arnaque
- L'ordinateur de simon a été infecté par un virus répertorié récemment - Forum Jeux vidéo
- Troie streaming ✓ - Forum Cinéma / Télé