[Avira]Scan douteux

Fermé
Wanted - 19 août 2010 à 22:07
varfendell Messages postés 3256 Date d'inscription jeudi 27 décembre 2007 Statut Membre Dernière intervention 8 février 2020 - 20 août 2010 à 09:29
Bonjour,

J'ai effectué un scan rapide de mon PC avec Avira Premium Security Suite 10, et j'ai comme un doute sur le rapport, une idée ?

Rapport :



Premium Security Suite
Report file date: jeudi 19 août 2010 16:45

Scanning for 2730134 virus strains and unwanted programs.

The program is running as an unrestricted full version.
Online services are available:

Licensee : [HIDDEN]
Serial number : [HIDDEN]
Platform : Windows 7
Windows version : (plain) [6.1.7600]
Boot mode : Normally booted
Username : [HIDDEN]
Computer name : [HIDDEN]

Version information:
BUILD.DAT : 10.0.0.542 Bytes 19/04/2010 15:06:00
AVSCAN.EXE : 10.0.3.0 433832 Bytes 01/04/2010 11:37:02
AVSCAN.DLL : 10.0.3.0 46440 Bytes 01/04/2010 11:57:02
LUKE.DLL : 10.0.2.3 104296 Bytes 07/03/2010 17:32:09
LUKERES.DLL : 10.0.0.1 12648 Bytes 10/02/2010 22:40:44
VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 08:05:36
VBASE001.VDF : 7.10.1.0 1372672 Bytes 19/11/2009 18:27:49
VBASE002.VDF : 7.10.3.1 3143680 Bytes 20/01/2010 16:37:42
VBASE003.VDF : 7.10.3.75 996864 Bytes 26/01/2010 15:37:42
VBASE004.VDF : 7.10.4.203 1579008 Bytes 05/03/2010 10:29:03
VBASE005.VDF : 7.10.6.82 2494464 Bytes 15/04/2010 17:50:04
VBASE006.VDF : 7.10.7.218 2294784 Bytes 02/06/2010 17:50:09
VBASE007.VDF : 7.10.9.165 4840960 Bytes 23/07/2010 17:20:48
VBASE008.VDF : 7.10.9.166 2048 Bytes 23/07/2010 17:20:48
VBASE009.VDF : 7.10.9.167 2048 Bytes 23/07/2010 17:20:48
VBASE010.VDF : 7.10.9.168 2048 Bytes 23/07/2010 17:20:48
VBASE011.VDF : 7.10.9.169 2048 Bytes 23/07/2010 17:20:48
VBASE012.VDF : 7.10.9.170 2048 Bytes 23/07/2010 17:20:48
VBASE013.VDF : 7.10.9.198 157696 Bytes 26/07/2010 16:30:44
VBASE014.VDF : 7.10.9.255 997888 Bytes 29/07/2010 13:47:58
VBASE015.VDF : 7.10.10.28 139264 Bytes 02/08/2010 14:17:55
VBASE016.VDF : 7.10.10.52 127488 Bytes 03/08/2010 16:03:15
VBASE017.VDF : 7.10.10.84 137728 Bytes 06/08/2010 19:12:29
VBASE018.VDF : 7.10.10.107 176640 Bytes 09/08/2010 19:07:09
VBASE019.VDF : 7.10.10.130 132608 Bytes 10/08/2010 19:07:10
VBASE020.VDF : 7.10.10.158 131072 Bytes 12/08/2010 17:22:19
VBASE021.VDF : 7.10.10.190 136704 Bytes 16/08/2010 16:33:36
VBASE022.VDF : 7.10.10.217 118272 Bytes 19/08/2010 13:24:14
VBASE023.VDF : 7.10.10.218 2048 Bytes 19/08/2010 13:24:14
VBASE024.VDF : 7.10.10.219 2048 Bytes 19/08/2010 13:24:14
VBASE025.VDF : 7.10.10.220 2048 Bytes 19/08/2010 13:24:14
VBASE026.VDF : 7.10.10.221 2048 Bytes 19/08/2010 13:24:14
VBASE027.VDF : 7.10.10.222 2048 Bytes 19/08/2010 13:24:15
VBASE028.VDF : 7.10.10.223 2048 Bytes 19/08/2010 13:24:15
VBASE029.VDF : 7.10.10.224 2048 Bytes 19/08/2010 13:24:15
VBASE030.VDF : 7.10.10.225 2048 Bytes 19/08/2010 13:24:15
VBASE031.VDF : 7.10.10.230 17920 Bytes 19/08/2010 13:24:15
Engineversion : 8.2.4.38
AEVDF.DLL : 8.1.2.1 106868 Bytes 29/07/2010 17:48:10
AESCRIPT.DLL : 8.1.3.42 1364347 Bytes 29/07/2010 17:48:09
AESCN.DLL : 8.1.6.1 127347 Bytes 27/06/2010 17:50:20
AESBX.DLL : 8.1.3.1 254324 Bytes 27/06/2010 17:50:22
AERDL.DLL : 8.1.8.2 614772 Bytes 20/07/2010 23:07:45
AEPACK.DLL : 8.2.3.5 471412 Bytes 06/08/2010 19:12:35
AEOFFICE.DLL : 8.1.1.8 201081 Bytes 21/07/2010 22:13:45
AEHEUR.DLL : 8.1.2.15 2859382 Bytes 18/08/2010 13:24:28
AEHELP.DLL : 8.1.13.2 242039 Bytes 20/07/2010 23:07:29
AEGEN.DLL : 8.1.3.19 393587 Bytes 06/08/2010 19:12:31
AEEMU.DLL : 8.1.2.0 393588 Bytes 27/06/2010 17:50:15
AECORE.DLL : 8.1.16.2 192887 Bytes 20/07/2010 23:07:28
AEBB.DLL : 8.1.1.0 53618 Bytes 27/06/2010 17:50:14
AVWINLL.DLL : 10.0.0.0 19304 Bytes 14/01/2010 11:02:28
AVPREF.DLL : 10.0.0.0 44904 Bytes 14/01/2010 11:02:23
AVREP.DLL : 10.0.0.8 62209 Bytes 18/02/2010 15:47:40
AVREG.DLL : 10.0.3.0 53096 Bytes 01/04/2010 11:35:28
AVSCPLR.DLL : 10.0.3.0 83816 Bytes 01/04/2010 11:39:33
AVARKT.DLL : 10.0.0.14 227176 Bytes 01/04/2010 11:21:44
AVEVTLOG.DLL : 10.0.0.8 203112 Bytes 26/01/2010 08:52:23
SQLITE3.DLL : 3.6.19.0 355688 Bytes 28/01/2010 11:57:05
AVSMTP.DLL : 10.0.0.17 63848 Bytes 16/03/2010 14:38:38
NETNT.DLL : 10.0.0.0 11624 Bytes 19/02/2010 13:40:04
RCIMAGE.DLL : 10.0.0.32 2899304 Bytes 01/04/2010 11:57:19
RCTEXT.DLL : 10.0.53.0 97128 Bytes 09/04/2010 13:14:22

Configuration settings for the scan:
Jobname.............................: Local Hard Disks
Configuration file..................: C:\Program Files\Avira\AntiVir Desktop\alldiscs.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: on
Scan all files......................: Intelligent file selection
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Deviating archive types.............: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox, +ISO,
Macro heuristic.....................: on
File heuristic......................: high
Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+PFS,+SPR,

Start of the scan: jeudi 19 août 2010 16:45

Starting search for hidden objects.
c:\program files\avira\antivir desktop\avguard.exe
c:\Program Files\Avira\AntiVir Desktop\avguard.exe
[NOTE] The process is not visible.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'plugin-container.exe' - '1' Module(s) have been scanned
Scan process 'hpswp_clipbook.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'javaw.exe' - '1' Module(s) have been scanned
Scan process 'wlcomm.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'GDFirewallTray.exe' - '1' Module(s) have been scanned
Scan process 'AVKTray.exe' - '1' Module(s) have been scanned
Scan process 'RtHDVCpl.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'taskhost.exe' - '1' Module(s) have been scanned
Scan process 'Dwm.exe' - '1' Module(s) have been scanned

Initiating scan of system files:
Signed -> 'C:\Windows\system32\svchost.exe'
Signed -> 'C:\Windows\system32\winlogon.exe'
Signed -> 'C:\Windows\explorer.exe'
Signed -> 'C:\Windows\system32\smss.exe'
Signed -> 'C:\Windows\system32\wininet.DLL'
Signed -> 'C:\Windows\system32\wsock32.DLL'
Signed -> 'C:\Windows\system32\ws2_32.DLL'
Signed -> 'C:\Windows\system32\services.exe'
Signed -> 'C:\Windows\system32\lsass.exe'
Signed -> 'C:\Windows\system32\csrss.exe'
Signed -> 'C:\Windows\system32\drivers\kbdclass.sys'
Signed -> 'C:\Windows\system32\spoolsv.exe'
Signed -> 'C:\Windows\system32\alg.exe'
Signed -> 'C:\Windows\system32\wuauclt.exe'
Signed -> 'C:\Windows\system32\advapi32.DLL'
NOT signed -> 'C:\Windows\system32\user32.DLL'
[DETECTION] Contains HEUR/Modified.SystemFile suspicious code
[WARNING] The file was ignored!
Signed -> 'C:\Windows\system32\gdi32.DLL'
Signed -> 'C:\Windows\system32\kernel32.DLL'
Signed -> 'C:\Windows\system32\ntdll.DLL'
Signed -> 'C:\Windows\system32\ntoskrnl.exe'
Signed -> 'C:\Windows\system32\ctfmon.exe'
The system files were scanned ('21' files)

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
[INFO] Please restart the search with Administrator rights
Master boot sector HD1
[INFO] No virus was found!
[INFO] Please restart the search with Administrator rights

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
[INFO] Please restart the search with Administrator rights
Boot sector 'D:\'
[INFO] No virus was found!
[INFO] Please restart the search with Administrator rights

Starting to scan executable files (registry).
The registry was scanned ( '436' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\#GDATA.Trash.Store#\{4AB670F1-9787-45C4-B5F4-8BD6892D1ECA}
--> Object
[WARNING] The file could not be read!
[WARNING] The file could not be read!
C:\#GDATA.Trash.Store#\{4AB670F1-9787-45C4-B5F4-8BD6892D1ECA}
--> Object
[WARNING] The file could not be read!
Begin scan in 'D:\'


End of the scan: jeudi 19 août 2010 20:21
Used time: 3:35:44 Hour(s)

The scan has been done completely.

47584 Scanned directories
1510842 Files were scanned
0 Viruses and/or unwanted programs were found
1 Files were classified as suspicious
0 files were deleted
0 Viruses and unwanted programs were repaired
0 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
1510841 Files not concerned
13554 Archives were scanned
4 Warnings
0 Notes
29017 Objects were scanned with rootkit scan
1 Hidden objects were found





A voir également:

1 réponse

varfendell Messages postés 3256 Date d'inscription jeudi 27 décembre 2007 Statut Membre Dernière intervention 8 février 2020 699
20 août 2010 à 09:29
Bonjour,

Tu as un fichier potentiellement dangeureux, et sinon il te fait comprendre que tu devrait faire le scan avec les droit administrateur.

Voici ce qu'on va faire pour plus de sureté:

Lance un scan avec malwarebyte anti malbyte:
- installe le et met le a jour
- lance le scan complet de tes disque dur (1h ou 2)
- a la fin du scan clique sur afficher les résultats
- vérifie que tout les virus trouvé soit bien coché puis clique sur supprimer la sélection
- enregistre le rapport et redémarre ton ordi si demandé
- post le rapport a la suite sur le forum

Ensuite télécharge et installe hijackthis et génère un rapport que tu postera aussi à la suite sur le forum.

Tu peut profiter du scan pour nettoyer ton PC avec Ccleaner (tuto
0