TR/Crypt.ZPACK.Gen : impossible à supprimer

Fermé
heimonna Messages postés 5 Date d'inscription vendredi 9 novembre 2007 Statut Membre Dernière intervention 28 juillet 2009 - 28 juil. 2009 à 14:46
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 - 28 juil. 2009 à 16:31
Bonjour,
Depuis ce matin lorsque j'allume mon ordinateur, une alerte de mon antivirus (Avira Antivir) apparaît pour m'informer que le virus TR/Crypt.ZPACK.Gen a été trouvé. J'ai beau essayer de le supprimer, mettre en quarantaine ou autre, rien à faire, la fenêtre revient sans cesse. J'ai vérifié que mon antivirus était à jour, fait une analyse complète dont voici le rapport :

Avira AntiVir Personal
Report file date: mardi 28 juillet 2009 12:25

Scanning for 1574562 virus strains and unwanted programs.

Licensee : Avira AntiVir Personal - FREE Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows XP
Windows version : (Service Pack 3) [5.1.2600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : C-3C12EF0

Version information:
BUILD.DAT : 9.0.0.403 17961 Bytes 03/06/2009 17:05:00
AVSCAN.EXE : 9.0.3.6 466689 Bytes 27/06/2009 09:50:12
AVSCAN.DLL : 9.0.3.0 40705 Bytes 27/02/2009 09:58:24
LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 10:35:49
LUKERES.DLL : 9.0.2.0 12033 Bytes 27/02/2009 09:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.4.132 5707264 Bytes 24/06/2009 09:50:08
ANTIVIR2.VDF : 7.1.4.253 1779200 Bytes 19/07/2009 09:47:59
ANTIVIR3.VDF : 7.1.5.38 305664 Bytes 28/07/2009 09:48:04
Engineversion : 8.2.0.228
AEVDF.DLL : 8.1.1.1 106868 Bytes 27/06/2009 09:50:12
AESCRIPT.DLL : 8.1.2.18 442746 Bytes 28/07/2009 09:48:10
AESCN.DLL : 8.1.2.4 127348 Bytes 28/07/2009 09:48:08
AERDL.DLL : 8.1.2.4 430452 Bytes 16/07/2009 07:12:15
AEPACK.DLL : 8.1.3.18 401783 Bytes 27/06/2009 09:50:12
AEOFFICE.DLL : 8.1.0.38 196987 Bytes 27/06/2009 09:50:11
AEHEUR.DLL : 8.1.0.143 1864055 Bytes 17/07/2009 08:16:45
AEHELP.DLL : 8.1.5.3 233846 Bytes 28/07/2009 09:48:08
AEGEN.DLL : 8.1.1.50 352629 Bytes 28/07/2009 09:48:07
AEEMU.DLL : 8.1.0.9 393588 Bytes 09/10/2008 13:32:40
AECORE.DLL : 8.1.7.6 184694 Bytes 28/07/2009 09:48:05
AEBB.DLL : 8.1.0.3 53618 Bytes 09/10/2008 13:32:40
AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 07:47:59
AVPREF.DLL : 9.0.0.1 43777 Bytes 05/12/2008 09:32:15
AVREP.DLL : 8.0.0.3 155905 Bytes 20/01/2009 13:34:28
AVREG.DLL : 9.0.0.0 36609 Bytes 05/12/2008 09:32:09
AVARKT.DLL : 9.0.0.3 292609 Bytes 24/03/2009 14:05:41
AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 09:37:08
SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 14:03:49
SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 07:21:33
NETNT.DLL : 9.0.0.0 11521 Bytes 05/12/2008 09:32:10
RCIMAGE.DLL : 9.0.0.25 2438913 Bytes 27/06/2009 09:50:08
RCTEXT.DLL : 9.0.37.0 86785 Bytes 17/04/2009 09:19:48

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:, E:, F:, G:, H:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium

Start of the scan: mardi 28 juillet 2009 12:25

Starting search for hidden objects.
'26263' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'wlcomm.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'Watch.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'hposts07.exe' - '1' Module(s) have been scanned
Scan process 'hpoevm07.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'pctspk.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned
Scan process 'DkService.exe' - '1' Module(s) have been scanned
Scan process 'AlertModule.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'PollingModule.exe' - '1' Module(s) have been scanned
Scan process 'Inactivity.exe' - '1' Module(s) have been scanned
Scan process 'Toaster.exe' - '1' Module(s) have been scanned
Scan process 'ComComp.exe' - '1' Module(s) have been scanned
Scan process 'hpgs2wnf.exe' - '1' Module(s) have been scanned
Scan process 'hpobrt07.exe' - '1' Module(s) have been scanned
Scan process 'GestionnaireInternet.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'hpgs2wnd.exe' - '1' Module(s) have been scanned
Scan process 'type32.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'TaskBarIcon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
44 processes with 44 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Boot sector 'E:\'
[INFO] No virus was found!
Boot sector 'F:\'
[INFO] No virus was found!
Boot sector 'G:\'
[INFO] No virus was found!
Boot sector 'H:\'
[INFO] No virus was found!

Starting to scan executable files (registry).
The registry was scanned ( '52' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\hiberfil.sys
[WARNING] The file could not be opened!
[NOTE] This file is a Windows system file.
[NOTE] This file cannot be opened for scanning.
C:\pagefile.sys
[WARNING] The file could not be opened!
[NOTE] This file is a Windows system file.
[NOTE] This file cannot be opened for scanning.
C:\Program Files\Hewlett-Packard\AiO\Shared\Bin\hposcn07.dll
[DETECTION] Is the TR/Crypt.ZPACK.Gen Trojan
Begin scan in 'D:\' <Jeux>
Begin scan in 'E:\' <Drivers; logiciels>
E:\Apr2006_MDX1_x86_Archive.cab
[0] Archive type: CAB (Microsoft)
--> mdx_1.0.2903.0_x86.cab
[WARNING] No further files can be extracted from this archive. The archive will be closed
[WARNING] No further files can be extracted from this archive. The archive will be closed
Begin scan in 'F:\' <Photos ; images ; musiques>
Begin scan in 'G:\' <Partage>
Begin scan in 'H:\' <Perso>

Beginning disinfection:
C:\Program Files\Hewlett-Packard\AiO\Shared\Bin\hposcn07.dll
[DETECTION] Is the TR/Crypt.ZPACK.Gen Trojan
[WARNING] An error has occurred and the file was not deleted. ErrorID: 26003
[WARNING] The file could not be deleted!
[NOTE] Attempting to perform action using the ARK library.
[NOTE] The file was moved to '4addf2e6.qua'!


End of the scan: mardi 28 juillet 2009 14:43
Used time: 2:01:25 Hour(s)

The scan has been done completely.

6084 Scanned directories
479167 Files were scanned
1 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 files were deleted
0 Viruses and unwanted programs were repaired
1 Files were moved to quarantine
0 Files were renamed
2 Files cannot be scanned
479164 Files not concerned
5034 Archives were scanned
5 Warnings
3 Notes
26263 Objects were scanned with rootkit scan
0 Hidden objects were found


Est-ce que ce rapport veut dire qu'il n'y a plus de virus? Si ce n'est pas le cas, comment puis-je le supprimer?
Je vous remercie d'avance pour vos réponses.
Heimonna
A voir également:

1 réponse

jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
28 juil. 2009 à 16:31
slt a mon avis c'est un faux positif : mets le dans les exception d'antivir car cela est un fichier de HP


pour vérifier analyse le ici : https://www.virustotal.com/gui/
et colle le rapport

C:\Program Files\Hewlett-Packard\AiO\Shared\Bin\hposcn07.dll
0