Mon PC ne m'appartient plus?! que faire?

aabdelbari Messages postés 26 Statut Membre -  
 aabdelbari -
Bonjou a tous,
Ma connaissance en informatique est "novice", permettez moi de me servire de votres gentillesses et patiences et bien entendu, votres connaissances dans la matiere.
Mes amis, j'ai ete attaque par des virus ou des trojans, j'avais "Norton Antivirus" que j'ai change par "Avira antiVir Personnal" par les conseils de certains amis de ce forum, que je remercie.

J'ignore ce qie c'est le : "scan HijackThis " que je vois souvent dans certains messages des amis.

Alors, apres l'installation de ce nouveau antivirus Avira AntiVir, et la mise a jour et le scan en mode sans echec, il a detecte des anomalies que j'espere resolues, d'ailleurs j'ai vu mon PC me revenir petit a petit. Mais je ne sais pas si mon Pc est propre ou necessite d'autres interventions.
J'attends votres aides mes amis,
Voici le dernier rapport du Scan :

*************************************
Avira AntiVir Personal
Report file date: lundi 28 avril 2008 20:57

Scanning for 1242663 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows Vista
Windows version: (plain) [6.0.6000]
Boot mode: Normally booted
Username: SYSTEM
Computer name: PORTO-FARINA

Version information:
BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 08:02:56
AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 07:43:37
LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 07:41:23
LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 07:28:40
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 09:33:34
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 12:08:58
ANTIVIR2.VDF : 7.0.3.197 1260032 Bytes 22/04/2008 13:55:08
ANTIVIR3.VDF : 7.0.3.222 203776 Bytes 28/04/2008 13:55:10
Engineversion : 8.1.0.35
AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 08:58:21
AESCRIPT.DLL : 8.1.0.27 233851 Bytes 28/04/2008 13:55:34
AESCN.DLL : 8.1.0.14 119156 Bytes 28/04/2008 13:55:32
AERDL.DLL : 8.1.0.20 418165 Bytes 28/04/2008 13:55:30
AEPACK.DLL : 8.1.1.2 364917 Bytes 28/04/2008 13:55:28
AEOFFICE.DLL : 8.1.0.18 192890 Bytes 28/04/2008 13:55:25
AEHEUR.DLL : 8.1.0.20 1196406 Bytes 28/04/2008 13:55:23
AEHELP.DLL : 8.1.0.14 115063 Bytes 28/04/2008 13:55:16
AEGEN.DLL : 8.1.0.18 299381 Bytes 28/04/2008 13:55:15
AEEMU.DLL : 8.1.0.5 430450 Bytes 07/04/2008 14:34:43
AECORE.DLL : 8.1.0.27 168310 Bytes 28/04/2008 13:55:13
AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 16:07:53
AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 09:37:50
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 12:26:47
AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 16:07:49
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 07:29:23
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 07:31:31
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 16:28:02
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 16:08:39
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 11:05:10
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 13:37:25
RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 11:02:11

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: lundi 28 avril 2008 20:57

The scan of running processes will be started
Scan process 'sidebar.exe' - '0' Module(s) have been scanned
Scan process 'SearchFilterHost.exe' - '1' Module(s) have been scanned
Scan process 'SearchProtocolHost.exe' - '1' Module(s) have been scanned
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'HpqToaster.exe' - '1' Module(s) have been scanned
Scan process 'ehmsas.exe' - '1' Module(s) have been scanned
Scan process 'wmpnetwk.exe' - '1' Module(s) have been scanned
Scan process 'OSA.EXE' - '1' Module(s) have been scanned
Scan process 'EasyShare.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
Scan process 'unsecapp.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'wmpnscfg.exe' - '1' Module(s) have been scanned
Scan process 'ccleaner.exe' - '1' Module(s) have been scanned
Scan process 'ehtray.exe' - '1' Module(s) have been scanned
Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
Scan process 'igfxsrvc.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'sidebar.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'igfxpers.exe' - '1' Module(s) have been scanned
Scan process 'hkcmd.exe' - '1' Module(s) have been scanned
Scan process 'igfxtray.exe' - '1' Module(s) have been scanned
Scan process 'SearchSettings.exe' - '1' Module(s) have been scanned
Scan process 'PIFSvc.exe' - '1' Module(s) have been scanned
Scan process 'Reader_SL.exe' - '1' Module(s) have been scanned
Scan process 'realsched.exe' - '1' Module(s) have been scanned
Scan process 'Athan.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'WiFiMsg.exe' - '1' Module(s) have been scanned
Scan process 'HPWAMain.exe' - '1' Module(s) have been scanned
Scan process 'HPHC_Scheduler.exe' - '1' Module(s) have been scanned
Scan process 'QLBCTRL.exe' - '1' Module(s) have been scanned
Scan process 'QPService.exe' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'RtHDVCpl.exe' - '1' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
Scan process 'sm56hlpr.exe' - '1' Module(s) have been scanned
Scan process 'MSASCui.exe' - '1' Module(s) have been scanned
Scan process 'CLSched.exe' - '1' Module(s) have been scanned
Scan process 'WmiPrvSE.exe' - '1' Module(s) have been scanned
Scan process 'hpqwmiex.exe' - '1' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'PIFSvc.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'CLCapSvc.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'AluSchedulerSvc.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'taskeng.exe' - '1' Module(s) have been scanned
Scan process 'dwm.exe' - '1' Module(s) have been scanned
Scan process 'asghost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'audiodg.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'lsm.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'wininit.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
80 processes with 80 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '23' files ).

Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP0154C293.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484625e2.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP102E2850.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484725e4.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP110AF5CA.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '4a298b55.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP116D11C8.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484725e5.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP1F2D6360.htm
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '4a298f26.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP23C50AE9.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484825e6.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP4834C6EC.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484a25e6.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP4F8DF8E6.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484a25e7.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP59FB0478.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484b25e7.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP5C207137.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '4a258b58.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP61D08F1C.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484c25e8.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP62D28871.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '4a228f29.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP6C0873A6.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484c25ea.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP6F7A2217.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484c25e9.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP7EEB69E9.htm
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484d25e9.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP848913D1.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '484e25e9.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\AP8C9A184C.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '4a208f2a.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\APA7083DAF.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '485725ea.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\APC9C9B3D0.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '485925ea.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\APCEE964C4.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '4a378f2b.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\APDE77BE5E.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '485a25eb.qua'!
C:\ProgramData\Symantec\SRTSP\Quarantine\APF124D728.HTML
[DETECTION] Contains detection pattern of the VBS script virus VBS/Redlof.N
[NOTE] The file was moved to '485c25eb.qua'!
Begin scan in 'D:\' <HP_RECOVERY>

End of the scan: lundi 28 avril 2008 23:42
Used time: 2:45:59 min

The scan has been done completely.

16778 Scanning directories
429538 Files were scanned
22 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
22 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
429516 Files not concerned
2326 Archives were scanned
1 Warnings
22 Notes
********************************************************8

Je remerci toute personne aiyant la patience de lire ce message et la gentillesse de me donner de l'aide.
Merci a toi aussi DIID .....
A voir également:

21 réponses

aabdelbari
 
Oui .. mais elle ne s'ouvre pas cette page ???!!!!!1
0