Hlp , Avira rapport 21 virus trouvé

yan -  
d0ne Messages postés 1019 Statut Membre -
Bonjour,
Je viens de supprimer Norton antivirus 2008 et d'installer Antivir Avira free et il ma trouvé 21 virus , c'était quoi ces trojan et virus la?? merci bcp

Avira AntiVir Personal
Report file date: 15 mai 2008 19:12

Scanning for 1274495 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: NOM-5A733FE684E

Version information:
BUILD.DAT : 8.1.00.295 16479 Bytes 2008-04-09 16:24:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 2008-03-18 15:02:56
AVSCAN.DLL : 8.1.1.0 53505 Bytes 2008-02-07 14:43:37
LUKE.DLL : 8.1.2.9 151809 Bytes 2008-02-28 14:41:23
LUKERES.DLL : 8.1.2.1 12033 Bytes 2008-02-21 14:28:40
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 16:33:34
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 2008-03-07 19:08:58
ANTIVIR2.VDF : 7.0.4.0 1554432 Bytes 2008-05-05 23:11:26
ANTIVIR3.VDF : 7.0.4.46 307712 Bytes 2008-05-15 23:11:28
Engineversion : 8.1.0.46
AEVDF.DLL : 8.1.0.5 102772 Bytes 2008-02-25 15:58:21
AESCRIPT.DLL : 8.1.0.33 266618 Bytes 2008-05-15 23:11:37
AESCN.DLL : 8.1.0.18 119156 Bytes 2008-05-15 23:11:36
AERDL.DLL : 8.1.0.20 418165 Bytes 2008-05-15 23:11:36
AEPACK.DLL : 8.1.1.5 364918 Bytes 2008-05-15 23:11:35
AEOFFICE.DLL : 8.1.0.18 192890 Bytes 2008-05-15 23:11:34
AEHEUR.DLL : 8.1.0.29 1253750 Bytes 2008-05-15 23:11:33
AEHELP.DLL : 8.1.0.14 115063 Bytes 2008-05-15 23:11:31
AEGEN.DLL : 8.1.0.21 303477 Bytes 2008-05-15 23:11:30
AEEMU.DLL : 8.1.0.6 430451 Bytes 2008-05-15 23:11:29
AECORE.DLL : 8.1.0.29 168311 Bytes 2008-05-15 23:11:28
AVWINLL.DLL : 1.0.0.7 14593 Bytes 2008-01-23 23:07:53
AVPREF.DLL : 8.0.0.1 25857 Bytes 2008-02-18 16:37:50
AVREP.DLL : 7.0.0.1 155688 Bytes 2007-04-16 19:26:47
AVREG.DLL : 8.0.0.0 30977 Bytes 2008-01-23 23:07:49
AVARKT.DLL : 1.0.0.23 307457 Bytes 2008-02-12 14:29:23
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 2008-02-28 14:31:31
SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008-01-22 23:28:02
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 2008-01-23 23:08:39
NETNT.DLL : 8.0.0.1 7937 Bytes 2008-01-25 18:05:10
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 2008-03-10 20:37:25
RCTEXT.DLL : 8.0.32.0 86273 Bytes 2008-03-06 18:02:11

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: 15 mai 2008 19:12

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'dllhost.exe' - '1' Module(s) have been scanned
Scan process 'hpsysdrv.exe' - '1' Module(s) have been scanned
Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned
Scan process 'ehmsas.exe' - '1' Module(s) have been scanned
Scan process 'Updates from HP.exe' - '1' Module(s) have been scanned
Scan process 'sp_rsser.exe' - '1' Module(s) have been scanned
Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned
Scan process 'HPZIPM12.EXE' - '1' Module(s) have been scanned
Scan process 'MDM.EXE' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'ehSched.exe' - '1' Module(s) have been scanned
Scan process 'ehRecvr.exe' - '1' Module(s) have been scanned
Scan process 'SpywareTerminatorShield.Exe' - '1' Module(s) have been scanned
Scan process 'kbd.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'ehtray.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
40 processes with 40 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
Master boot sector HD2
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
Master boot sector HD3
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.
Master boot sector HD4
[INFO] No virus was found!
[WARNING] Le périphérique n'est pas prêt.

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '24' files ).

Starting the file scan:

Begin scan in 'C:\' <HP_PAVILION>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\HP_Administrateur\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\NAV\External\NORTON\symlctnk.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcrst.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP10\A0004023.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP10\A0004082.exe
[0] Archive type: RSRC
--> Object
[1] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.aig
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP10\A0004083.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.aig
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP10\A0004621.dll
[DETECTION] Contains detection pattern of the Windows virus W95/Blumblebee.1738
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP12\A0004744.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP12\A0004745.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP2\A0001255.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP2\A0001271.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP2\A0001300.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP2\A0001326.dll
[DETECTION] Contains detection pattern of the Windows virus W95/Blumblebee.1738
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP2\A0001377.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP3\A0001454.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP7\A0001609.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP7\A0001671.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP7\A0001738.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP8\A0001750.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP8\A0003777.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP9\A0003844.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
C:\System Volume Information\_restore{D914ACD5-1321-4D0E-A2F6-861E2DFB47B4}\RP9\A0004001.dll
[0] Archive type: RSRC
--> Object
[DETECTION] Is the Trojan horse TR/Click.Agent.afs
[NOTE] The file was deleted!
Begin scan in 'D:\' <HP_RECOVERY>

End of the scan: 15 mai 2008 19:43
Used time: 30:47 min

The scan has been done completely.

5567 Scanning directories
358183 Files were scanned
21 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
21 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
358162 Files not concerned
14029 Archives were scanned
6 Warnings
21 Notes
A voir également:

7 réponses

d0ne Messages postés 1019 Statut Membre 73
 
salut a toi

alors déjà la majorité des virus détectés sont dans la restauration système . donc on va la désactiver puis réactiver pour les supprimer tout simplement bien qu'ils aient été supprimés par antivir

voici le "mode d'emploi":

Désactiver la Restauration du système

1
Dans la barre des tâches de Windows, cliquez sur Démarrer.

2
Cliquez avec le bouton droit de la souris sur Poste de travail puis cliquez sur Propriétés.

3
Dans l'onglet Restauration du système, sélectionnez Désactiver la Restauration du système ou Désactiver la Restauration du système sur tous les lecteurs.
Si vous ne voyez pas l'onglet Restauration du système, vous n’êtes pas connecté sous Windows comme Administrateur.

4
Cliquez sur Appliquer.

5
Lorsque le message de confirmation apparaît, cliquez sur Oui.

6
Cliquez sur OK.

Activer la Restauration du système

1
Dans la barre des tâches de Windows, cliquez sur Démarrer.

2
Cliquez avec le bouton droit de la souris sur Poste de travail puis cliquez sur Propriétés.

3
Dans l'onglet Restauration du système, désélectionnez Désactiver la Restauration du système ou Désactiver la Restauration du système sur tous les lecteurs.
Si vous ne voyez pas l'onglet Restauration du système, vous n’êtes pas connecté sous Windows comme Administrateur.

4
Cliquez sur Appliquer.

5
Lorsque le message de confirmation apparaît, cliquez sur Oui.

6
Cliquez sur OK.

ensuite fais ceci : ( facultatif mais conseillé )

Pour supprimer tous ce qui est fichiers temporaires , cookies et autres fichiers inutiles
télécharge CCLEANER sur www.01net.fr puis installe le et coche toutes les cases dnas les 2 onglets .

pense a cocher desinstalleur de hotfixes .

voici une image pour illustrer http://img156.imageshack.us/img156/1246/ccleanerza7.jpg

pour défragmenter ton PC je te conseille ce logiciel gratuit. AUSLOGIC DISK DEFRAG
https://www.clubic.com/telecharger-fiche26672-auslogics-disk-defrag-free.html

pour faire des SCAN ANTISPYWARE va ici tout est expliqué

--> http://www.commentcamarche.net/faq/470 spywares

et ici pour les SCAN ANTIVIRUS

--> http://www.commentcamarche.net/faq/137 virus
0
yan
 
MErci bcpp done , mais je me demandais c'éTait quoi ces virus , c'est tu de symantec de faux positif de trojan de symantec norton ou bien c'était de VRAI trojan dangereux?? et lesquels ceux qui n'était pas de la restauration systeme et toute sa^^ merci bcp

p.s: je vais faire tes consigne tout de suite
0
d0ne Messages postés 1019 Statut Membre 73
 
c'est tu de symantec de faux positif de trojan de symantec norton 
pas compris le sens de cette phrase .

tiens voici un logiciel qui permet de supprimer norton completement de ton PC .

ftp://ftp.symantec.com/public/english_us_canada/linked_files/tsgen/SymNRT.exe
0
yan
 
je voulais dire , ces trojan était de vrai trojan ou de faux positif ?? merci
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
d0ne Messages postés 1019 Statut Membre 73
 
huum je ne sais pas mais je pense qu'antivir ne détecte pas trop de faux positif.
0
yan
 
k merci. et aussi je me demandais combien d'entre eux ne se trouvait pas dans la restauration systeme et lesquels? merci bcp
0
d0ne Messages postés 1019 Statut Membre 73
 

as-tu lancé le logiciel de désinstallation de norton ?

tiens fais ceci aussi

scan avec
MalwareByte's Anti-Malware et vire ce qui est trouvé et colle le rapport

https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

colle un rapport hijackthis

http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download

mode d'emploi:

http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm
https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html

• Installer HijackThis en se laissant guider
• Lancer hitjackthis
• Click sur Do a system scan and save a logfile
• Copier/Coller le rapport dans le prochain message
0