Win32 ircboT cfz

fabinou94 Messages postés 17 Statut Membre -  
fabinou94 Messages postés 17 Statut Membre -
Bonjour,

Avast me detecte win 32 IRCBO cfz

quelqu'un pourrait venir a mon aide ils sont en quarantaine sur avast mais je ne sais quoi faire

merci beaucoup

11 réponses

nardino Messages postés 1634 Statut Membre 119
 
Bonsoir
S'ils sont en quarantaine, tu peux vider celle-ci si tu ne constates pas de problème de fonctionnement.
De toutes manières ils sont inopérants une fois isolés.
0
fabinou94 Messages postés 17 Statut Membre
 
merci il faut les supprimer de la boite de quarantaine?
0
nardino Messages postés 1634 Statut Membre 119
 
Bonsoir.
Oui.
0
fabinou94 Messages postés 17 Statut Membre
 
Bonjour

le virus est toujours la comment faire ?

merci
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
nardino Messages postés 1634 Statut Membre 119
 
Bonsoir.
1°-Télécharge Antivir

-Antivir de Avira : https://www.avira.com/

Clique sur "download here" en bas de la colonne Classic et dans la fenêtre suivante clique sur la version de ton système.
(Attention pas disponible pour Vista 64 bits.)

Enregistre le fichier (16.4 Mo) et installe le programme.
Voici un tutoriel pour ce faire et bien paramétrer le programme.

http://speedweb1.free.fr/frames2.php?page=tuto5
Merci à Tesgaz.

Mets-le à jour et referme-le.

2°-Démarrage en mode sans échec

Important de faire la procédure sous ce mode.
Il faut choisir la même session que celle qui est infectée et non pas la session Administrateur qui apparaît.

Après la fermeture de la première fenêtre, au tout début de la phase de démarrage du PC (boot), appuie sur F8.
Une fenêtre de type DOS s'ouvre, sélectionne [b]Mode sans échec[/b] à l'aide des flèches du clavier et clique sur Entrée (Enter).
Ne t'inquiète pas de l'aspect, Windows démarre avec le minimum nécessaire et peut prendre quelque minutes pour démarrer.

3°-Scan antivirus

Tu cliques sur l'icône du bureau pour lancer Antivir.
Dans l'onglet Scanner,; tu cliques sur la croix devant Manual Selection et tu coches Poste de travail.
Tu laisses tout coché pour la première analyse.
Tu cliques sur l'icône en forme de loupe en-dessous de Status pour lancer l'analyse qui peut durée une heure.
Il est préférable de ne pas s'éloigner pour répondre aux messages en cas d'alerte.
Tu choisis "Moved to quarantine" pour tout ce qu'il trouve.
Quand le scan est terminé, tu clique sur End.

4°-Redémarrage en mode normal

Tu postes le rapport Antivir.
Tu ouvres le programme et dans l'onglet Reports, choisi Scan avec la date correspondante, double-clique dessus et ensuite sur Report file
Fais un copier-coller de la totalité du rapport ici.
Ce programme sera désinstallé ou remplacera ton antivirus existant selon tes souhaits car il ne faut pas garder deux antivirus actifs en même temps.
0
fabinou94 Messages postés 17 Statut Membre
 
bonsoir
voici mon rapport je n'ai pas pu le faire en mode sans echec car les fleches ne bouges pas
j'ai garder antivir et annule avas

que doit je faire maintenant
merci beaucoup

AntiVir PersonalEdition Classic
Report file date: dimanche 4 novembre 2007 19:56

Scanning for 914349 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: SYSTEM
Computer name: PROPRIETAIRE

Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.0.0 1640448 Bytes 13/09/2007 14:26:55
ANTIVIR2.VDF : 7.0.0.140 940544 Bytes 26/10/2007 18:38:26
ANTIVIR3.VDF : 7.0.0.166 137728 Bytes 04/11/2007 18:38:26
AVEWIN32.DLL : 7.6.0.30 3056128 Bytes 04/11/2007 18:38:27
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.3.0.15 360488 Bytes 03/08/2007 08:46:00
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: J:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: dimanche 4 novembre 2007 19:56

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'ashWebSv.exe' - '1' Module(s) have been scanned
Scan process 'ashMaiSv.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '0' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'ashDisp.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.EXE' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'ashServ.exe' - '1' Module(s) have been scanned
Scan process 'aswUpdSv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
35 processes with 35 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'J:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( '20' files ).

Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\propriétaire\Mes documents\Mes fichiers reçus\downloadme12.zip
[0] Archive type: ZIP
--> downloadme12.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5172a.qua'!
C:\Documents and Settings\propriétaire\Mes documents\Mes fichiers reçus\files67.zip
[0] Archive type: ZIP
--> files67.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1726.qua'!
C:\Documents and Settings\propriétaire\Mes documents\Mes fichiers reçus\look51.zip
[0] Archive type: ZIP
--> look51.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d172d.qua'!
C:\Program Files\ISM2\ISMPack8.exe
[DETECTION] Is the Trojan horse TR/Dldr.Trarch.A
[INFO] The file was moved to '477b17f2.qua'!
C:\Program Files\QdrPack\QdrPack9.exe
[DETECTION] Is the Trojan horse TR/Dldr.Trarch.A
[INFO] The file was moved to '47a01938.qua'!
C:\System Volume Information\_restore{1EC3D745-F54F-400A-94F3-C1D50B2FE2D0}\RP94\A0049539.exe
[DETECTION] Is the Trojan horse TR/Dldr.Trarch.A
[INFO] The file was moved to '475e1920.qua'!
C:\System Volume Information\_restore{1EC3D745-F54F-400A-94F3-C1D50B2FE2D0}\RP94\A0049540.exe
[DETECTION] Is the Trojan horse TR/Dldr.Trarch.A
[INFO] The file was moved to '475e1923.qua'!
C:\WINDOWS\downloadme0.zip
[0] Archive type: ZIP
--> downloadme0.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51965.qua'!
C:\WINDOWS\downloadme12.zip
[0] Archive type: ZIP
--> downloadme12.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51967.qua'!
C:\WINDOWS\downloadme15.zip
[0] Archive type: ZIP
--> downloadme15.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51968.qua'!
C:\WINDOWS\downloadme18.zip
[0] Archive type: ZIP
--> downloadme18.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5196a.qua'!
C:\WINDOWS\downloadme3.zip
[0] Archive type: ZIP
--> downloadme3.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5196c.qua'!
C:\WINDOWS\downloadme33.zip
[0] Archive type: ZIP
--> downloadme33.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5196d.qua'!
C:\WINDOWS\downloadme39.zip
[0] Archive type: ZIP
--> downloadme39.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5196f.qua'!
C:\WINDOWS\downloadme51.zip
[0] Archive type: ZIP
--> downloadme51.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51970.qua'!
C:\WINDOWS\downloadme54.zip
[0] Archive type: ZIP
--> downloadme54.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51972.qua'!
C:\WINDOWS\downloadme6.zip
[0] Archive type: ZIP
--> downloadme6.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51974.qua'!
C:\WINDOWS\downloadme60.zip
[0] Archive type: ZIP
--> downloadme60.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51976.qua'!
C:\WINDOWS\downloadme69.zip
[0] Archive type: ZIP
--> downloadme69.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51978.qua'!
C:\WINDOWS\downloadme9.zip
[0] Archive type: ZIP
--> downloadme9.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a51979.qua'!
C:\WINDOWS\downloadme90.zip
[0] Archive type: ZIP
--> downloadme90.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5197b.qua'!
C:\WINDOWS\downloadme93.zip
[0] Archive type: ZIP
--> downloadme93.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a5197c.qua'!
C:\WINDOWS\file22.zip
[0] Archive type: ZIP
--> file22.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1978.qua'!
C:\WINDOWS\file28.zip
[0] Archive type: ZIP
--> file28.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a197a.qua'!
C:\WINDOWS\file43.zip
[0] Archive type: ZIP
--> file43.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a197b.qua'!
C:\WINDOWS\file52.zip
[0] Archive type: ZIP
--> file52.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a197d.qua'!
C:\WINDOWS\file64.zip
[0] Archive type: ZIP
--> file64.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a197e.qua'!
C:\WINDOWS\file7.zip
[0] Archive type: ZIP
--> file7.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1980.qua'!
C:\WINDOWS\file73.zip
[0] Archive type: ZIP
--> file73.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1981.qua'!
C:\WINDOWS\file79.zip
[0] Archive type: ZIP
--> file79.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1983.qua'!
C:\WINDOWS\file82.zip
[0] Archive type: ZIP
--> file82.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1984.qua'!
C:\WINDOWS\file91.zip
[0] Archive type: ZIP
--> file91.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1986.qua'!
C:\WINDOWS\file97.zip
[0] Archive type: ZIP
--> file97.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1987.qua'!
C:\WINDOWS\files1.zip
[0] Archive type: ZIP
--> files1.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1989.qua'!
C:\WINDOWS\files10.zip
[0] Archive type: ZIP
--> files10.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a198a.qua'!
C:\WINDOWS\files25.zip
[0] Archive type: ZIP
--> files25.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a198c.qua'!
C:\WINDOWS\files28.zip
[0] Archive type: ZIP
--> files28.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a198e.qua'!
C:\WINDOWS\files34.zip
[0] Archive type: ZIP
--> files34.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a198f.qua'!
C:\WINDOWS\files37.zip
[0] Archive type: ZIP
--> files37.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1991.qua'!
C:\WINDOWS\files40.zip
[0] Archive type: ZIP
--> files40.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1993.qua'!
C:\WINDOWS\files43.zip
[0] Archive type: ZIP
--> files43.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1995.qua'!
C:\WINDOWS\files46.zip
[0] Archive type: ZIP
--> files46.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1996.qua'!
C:\WINDOWS\files73.zip
[0] Archive type: ZIP
--> files73.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a1998.qua'!
C:\WINDOWS\files76.zip
[0] Archive type: ZIP
--> files76.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479a199a.qua'!
C:\WINDOWS\JPGimage26.zip
[0] Archive type: ZIP
--> JPGimage26.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751983.qua'!
C:\WINDOWS\JPGimage29.zip
[0] Archive type: ZIP
--> JPGimage29.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751985.qua'!
C:\WINDOWS\JPGimage38.zip
[0] Archive type: ZIP
--> JPGimage38.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751986.qua'!
C:\WINDOWS\JPGimage41.zip
[0] Archive type: ZIP
--> JPGimage41.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751988.qua'!
C:\WINDOWS\JPGimage44.zip
[0] Archive type: ZIP
--> JPGimage44.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775198a.qua'!
C:\WINDOWS\JPGimage47.zip
[0] Archive type: ZIP
--> JPGimage47.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775198b.qua'!
C:\WINDOWS\JPGimage5.zip
[0] Archive type: ZIP
--> JPGimage5.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775198d.qua'!
C:\WINDOWS\JPGimage50.zip
[0] Archive type: ZIP
--> JPGimage50.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775198f.qua'!
C:\WINDOWS\JPGimage53.zip
[0] Archive type: ZIP
--> JPGimage53.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751990.qua'!
C:\WINDOWS\JPGimage56.zip
[0] Archive type: ZIP
--> JPGimage56.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751992.qua'!
C:\WINDOWS\JPGimage62.zip
[0] Archive type: ZIP
--> JPGimage62.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751994.qua'!
C:\WINDOWS\JPGimage65.zip
[0] Archive type: ZIP
--> JPGimage65.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751995.qua'!
C:\WINDOWS\JPGimage68.zip
[0] Archive type: ZIP
--> JPGimage68.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751997.qua'!
C:\WINDOWS\JPGimage74.zip
[0] Archive type: ZIP
--> JPGimage74.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47751998.qua'!
C:\WINDOWS\JPGimage77.zip
[0] Archive type: ZIP
--> JPGimage77.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775199a.qua'!
C:\WINDOWS\JPGimage83.zip
[0] Archive type: ZIP
--> JPGimage83.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775199b.qua'!
C:\WINDOWS\JPGimage89.zip
[0] Archive type: ZIP
--> JPGimage89.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775199d.qua'!
C:\WINDOWS\JPGimage98.zip
[0] Archive type: ZIP
--> JPGimage98.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '4775199f.qua'!
C:\WINDOWS\look12.zip
[0] Archive type: ZIP
--> look12.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19bf.qua'!
C:\WINDOWS\look15.zip
[0] Archive type: ZIP
--> look15.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19c1.qua'!
C:\WINDOWS\look18.zip
[0] Archive type: ZIP
--> look18.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19c2.qua'!
C:\WINDOWS\look21.zip
[0] Archive type: ZIP
--> look21.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19c4.qua'!
C:\WINDOWS\look27.zip
[0] Archive type: ZIP
--> look27.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19c5.qua'!
C:\WINDOWS\look3.zip
[0] Archive type: ZIP
--> look3.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19c7.qua'!
C:\WINDOWS\look36.zip
[0] Archive type: ZIP
--> look36.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19c9.qua'!
C:\WINDOWS\look39.zip
[0] Archive type: ZIP
--> look39.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19ca.qua'!
C:\WINDOWS\look45.zip
[0] Archive type: ZIP
--> look45.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19cc.qua'!
C:\WINDOWS\look60.zip
[0] Archive type: ZIP
--> look60.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19cd.qua'!
C:\WINDOWS\look69.zip
[0] Archive type: ZIP
--> look69.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19cf.qua'!
C:\WINDOWS\look72.zip
[0] Archive type: ZIP
--> look72.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19d0.qua'!
C:\WINDOWS\look75.zip
[0] Archive type: ZIP
--> look75.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19d2.qua'!
C:\WINDOWS\look78.zip
[0] Archive type: ZIP
--> look78.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19d4.qua'!
C:\WINDOWS\look90.zip
[0] Archive type: ZIP
--> look90.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19d6.qua'!
C:\WINDOWS\look93.zip
[0] Archive type: ZIP
--> look93.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19d8.qua'!
C:\WINDOWS\look96.zip
[0] Archive type: ZIP
--> look96.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '479d19da.qua'!
C:\WINDOWS\news11.zip
[0] Archive type: ZIP
--> news11.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519d1.qua'!
C:\WINDOWS\news2.zip
[0] Archive type: ZIP
--> news2.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519d3.qua'!
C:\WINDOWS\news23.zip
[0] Archive type: ZIP
--> news23.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519d4.qua'!
C:\WINDOWS\news26.zip
[0] Archive type: ZIP
--> news26.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519d6.qua'!
C:\WINDOWS\news32.zip
[0] Archive type: ZIP
--> news32.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519d8.qua'!
C:\WINDOWS\news35.zip
[0] Archive type: ZIP
--> news35.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519da.qua'!
C:\WINDOWS\news41.zip
[0] Archive type: ZIP
--> news41.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519db.qua'!
C:\WINDOWS\news5.zip
[0] Archive type: ZIP
--> news5.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519dd.qua'!
C:\WINDOWS\news50.zip
[0] Archive type: ZIP
--> news50.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519de.qua'!
C:\WINDOWS\news56.zip
[0] Archive type: ZIP
--> news56.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519e0.qua'!
C:\WINDOWS\news89.zip
[0] Archive type: ZIP
--> news89.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519e2.qua'!
C:\WINDOWS\news92.zip
[0] Archive type: ZIP
--> news92.scr
[DETECTION] Contains detection pattern of the worm WORM/IrcBot.26112.3
[INFO] The file was moved to '47a519e4.qua'!
Begin scan in 'J:\' <Data>
J:\Ancien disk\Documents and Settings\Fabien\Bureau\MUSIQUE\a trier\Divers\RAP US\fergie\Bernie_Ecclestone_gets_pranked.wma
[DETECTION] Is the Trojan horse TR/Wimad.A.Gen
[INFO] The file was moved to '47a01f5c.qua'!

End of the scan: dimanche 4 novembre 2007 20:53
Used time: 56:36 min

The scan has been done completely.

8643 Scanning directories
356328 Files were scanned
92 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
92 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
356236 Files not concerned
7421 Archives were scanned
1 Warnings
1 Notes
0
nardino Messages postés 1634 Statut Membre 119
 
Bonsoir.
Tu peux vider la quarantine de Antivir.
Où en sont tes problèmes ?
0
fabinou94 Messages postés 17 Statut Membre
 
Bonsoir

je refait un skan pour voir ou si il y a encore quelque chose

merci
0
fabinou94 Messages postés 17 Statut Membre
 
bonsoir
voici mon skan qu'est ce que tu en penses?

AntiVir PersonalEdition Classic
Report file date: lundi 5 novembre 2007 22:01

Scanning for 916534 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: propriétaire
Computer name: PROPRIETAIRE

Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.0.0 1640448 Bytes 13/09/2007 14:26:55
ANTIVIR2.VDF : 7.0.0.172 1092608 Bytes 05/11/2007 21:01:13
ANTIVIR3.VDF : 7.0.0.174 3584 Bytes 05/11/2007 21:01:13
AVEWIN32.DLL : 7.6.0.30 3056128 Bytes 04/11/2007 18:38:27
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.3.0.15 360488 Bytes 03/08/2007 08:46:00
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

Configuration settings for the scan:
Jobname..........................: Local Drives
Configuration file...............: c:\program files\avira\antivir personaledition classic\alldrives.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: I:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: lundi 5 novembre 2007 22:01

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '0' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.EXE' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
29 processes with 29 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'J:\'
[NOTE] No virus was found!
Boot sector 'A:\'
[NOTE] In the drive 'A:\' no data medium is inserted!
Boot sector 'D:\'
[NOTE] In the drive 'D:\' no data medium is inserted!
Boot sector 'E:\'
[NOTE] In the drive 'E:\' no data medium is inserted!
Boot sector 'F:\'
[NOTE] In the drive 'F:\' no data medium is inserted!
Boot sector 'G:\'
[NOTE] In the drive 'G:\' no data medium is inserted!

Starting to scan the registry.
The registry was scanned ( '23' files ).

Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
Begin scan in 'J:\' <Data>
Begin scan in 'A:\'
Search path A:\ could not be opened!
Le périphérique n'est pas prêt.

Begin scan in 'D:\'
Search path D:\ could not be opened!
Le périphérique n'est pas prêt.

Begin scan in 'E:\'
Search path E:\ could not be opened!
Le périphérique n'est pas prêt.

Begin scan in 'F:\'
Search path F:\ could not be opened!
Le périphérique n'est pas prêt.

Begin scan in 'G:\'
Search path G:\ could not be opened!
Le périphérique n'est pas prêt.

Begin scan in 'H:\'
Search path H:\ could not be opened!
Le périphérique n'est pas prêt.

Begin scan in 'I:\' <FIFA08>

End of the scan: lundi 5 novembre 2007 22:59
Used time: 57:52 min

The scan has been done completely.

8667 Scanning directories
362332 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
362332 Files not concerned
7388 Archives were scanned
1 Warnings
1 Notes
0
nardino Messages postés 1634 Statut Membre 119
 
Bonsoir.
Ce dernier rapport est vierge d'infections.

" 0 Files were classified as suspicious:
0 files were deleted
0 files were repaired "

Tu n'as pas répondu à ma question !!!
0
fabinou94 Messages postés 17 Statut Membre
 
Bonjour

j'ai vide la boite de quarantaine apparament ils ont disparu
merci beaucoup
0