Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Alors g installé ewido et antivir, mais impossible de les mettre à jour. Pourtant firefox et msn par exemple sont connectés. :-s

 

Voici le rapport de mise à jour d'antivir

 

Merci encore

 

_____________________________________________________________

 

22.03.2008 20:22:35 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\

22.03.2008 20:22:35 - Backup Directory: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\

22.03.2008 20:22:35 - Temp Directory: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47e55c7b\

22.03.2008 20:22:35 - Start the Update GUI... Displaymode: 0

 

22.03.2008 20:22:35 - Installation Directory: C:\Program Files\Avira\AntiVir PersonalEdition Classic\

22.03.2008 20:22:35 - Backup Directory: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\BACKUP\

22.03.2008 20:22:35 - Temp Directory: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\Update\AVUPDATE_47e55c7b\

22.03.2008 20:22:35 - Start the Update GUI... Displaymode: 0

 

22.03.2008 20:22:38 - Keyfile: OK [FULL Mode]

 

22.03.2008 20:22:38 - Avira AntiVir PersonalEdition Classic

 

22.03.2008 20:22:44 - Connection failed while downloading the file http://dl3.avgate.net/upd/idx/master.idx.

22.03.2008 20:22:44 - Switching to next update server

22.03.2008 20:22:44 - Connection failed while downloading the file http://dl2.avgate.net/upd/idx/master.idx.

22.03.2008 20:22:44 - Switching to next update server

22.03.2008 20:22:45 - Connection failed while downloading the file http://dl1.avgate.net/upd/idx/master.idx.

22.03.2008 20:22:45 - Switching to next update server

22.03.2008 20:22:45 - Connection failed while downloading the file http://dl5.avgate.net/upd/idx/master.idx.

22.03.2008 20:22:45 - Switching to next update server

22.03.2008 20:22:47 - Registry entry created successfully: Software\Avira\AntiVir PersonalEdition Classic |UpdateInProgress

 

22.03.2008 20:22:47 - Critical error: Connection failed while downloading the file http://dl6.avgate.net/upd/idx/master.idx.

Posté(e)

ça serait pas zone alarm qui bloquerait?? va les autoriser dans controle des programmes: sur les lignes concernant ewido et antivir , met un point d'interrogation , comme ça ZA te demandera l'autorisation pour que les processus sortent.

Posté(e)

bonjour !

 

En effet, c t bien ZA qui bloquait le chargement de ewido et antivir

 

Voici les rapports ewido, antivir et hijackthis :

 

merci !

 

 

__________________________________________________

ewido anti-spyware online scanner

http://www.ewido.net

__________________________________________________

 

 

Name: TrackingCookie.Atdmt

Path: C:\Documents and Settings\Romain\Cookies\romain@atdmt[1].txt

Risk: Medium

 

Name: Worm.AutoRun.aha

Path: [1200] C:\WINDOWS\System.exe

Risk: High

 

Name: TrackingCookie.Doubleclick

Path: :mozilla.6:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies-1.txt

Risk: Medium

 

Name: TrackingCookie.Smartadserver

Path: :mozilla.7:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies-1.txt

Risk: Medium

 

Name: TrackingCookie.Smartadserver

Path: :mozilla.8:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies-1.txt

Risk: Medium

 

Name: TrackingCookie.Smartadserver

Path: :mozilla.9:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies-1.txt

Risk: Medium

 

Name: TrackingCookie.Doubleclick

Path: :mozilla.9:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Weborama

Path: :mozilla.10:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Adviva

Path: :mozilla.19:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Smartadserver

Path: :mozilla.20:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Smartadserver

Path: :mozilla.26:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Smartadserver

Path: :mozilla.27:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Bluestreak

Path: :mozilla.28:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: TrackingCookie.Tradedoubler

Path: :mozilla.29:C:\Documents and Settings\Romain\Application Data\Mozilla\Firefox\Profiles\pyzx16ma.default\cookies.txt

Risk: Medium

 

Name: Worm.AutoRun.aha

Path: C:\Recycled\INFO.EXE

Risk: High

 

Name: Worm.AutoRun.aha

Path: C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0001068.EXE

Risk: High

 

Name: Worm.AutoRun.aha

Path: C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0002067.EXE

Risk: High

 

Name: Worm.AutoRun.aha

Path: C:\WINDOWS\System.exe

Risk: High

 

Name: Worm.AutoRun.aha

Path: D:\Recycled\INFO.EXE

Risk: High

 

 

________________________________________________________________________________

_____

 

 

AntiVir PersonalEdition Classic

Report file date: dimanche 23 mars 2008 19:29

 

Scanning for 1163542 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Username: SYSTEM

Computer name: ROMAIN-24A41661

 

Version information:

BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00

AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29

AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51

LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47

LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15

ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 18:16:01

ANTIVIR2.VDF : 7.0.3.62 337408 Bytes 21/03/2008 18:16:01

ANTIVIR3.VDF : 7.0.3.65 36864 Bytes 23/03/2008 18:16:01

AVEWIN32.DLL : 7.6.0.75 3334656 Bytes 23/03/2008 18:16:04

AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26

AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17

AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24

AVPACK32.DLL : 7.6.0.3 360488 Bytes 23/03/2008 18:16:04

AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06

AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33

AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18

NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42

RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13

RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37

SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

 

Configuration settings for the scan:

Jobname..........................: Complete system scan

Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp

Logging..........................: low

Primary action...................: quarantine

Secondary action.................: ignore

Scan master boot sector..........: off

Scan boot sector.................: on

Boot sectors.....................: D:,

Scan memory......................: on

Process scan.....................: on

Scan registry....................: on

Search for rootkits..............: on

Scan all files...................: Intelligent file selection

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

 

Start of the scan: dimanche 23 mars 2008 19:29

 

Starting search for hidden objects.

'76488' objects were checked, '0' hidden objects were found.

 

The scan of running processes will be started

Scan process 'avscan.exe' - '1' Module(s) have been scanned

Scan process 'avcenter.exe' - '1' Module(s) have been scanned

Scan process 'sched.exe' - '1' Module(s) have been scanned

Scan process 'avgnt.exe' - '1' Module(s) have been scanned

Scan process 'avguard.exe' - '1' Module(s) have been scanned

Scan process 'notepad.exe' - '1' Module(s) have been scanned

Scan process 'Photoshop.exe' - '1' Module(s) have been scanned

Scan process 'ctfmon.exe' - '1' Module(s) have been scanned

Scan process 'alg.exe' - '1' Module(s) have been scanned

Scan process 'explorer.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'SMAgent.exe' - '1' Module(s) have been scanned

Scan process 'PhotoshopElementsFileAgent.exe' - '1' Module(s) have been scanned

Scan process 'spoolsv.exe' - '1' Module(s) have been scanned

Scan process 'vsmon.exe' - '0' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'lsass.exe' - '1' Module(s) have been scanned

Scan process 'services.exe' - '1' Module(s) have been scanned

Scan process 'winlogon.exe' - '1' Module(s) have been scanned

Scan process 'csrss.exe' - '1' Module(s) have been scanned

Scan process 'smss.exe' - '1' Module(s) have been scanned

24 processes with 24 modules were scanned

 

Start scanning boot sectors:

Boot sector 'C:\'

[NOTE] No virus was found!

Boot sector 'D:\'

[NOTE] No virus was found!

 

Starting to scan the registry.

The registry was scanned ( '17' files ).

 

 

Starting the file scan:

 

Begin scan in 'C:\'

C:\pagefile.sys

[WARNING] The file could not be opened!

C:\Documents and Settings\Romain\Bureau\[27]-Submit_2008-03-21@20.44.zip

[0] Archive type: ZIP

--> Qux36.sys

[DETECTION] Is the Trojan horse TR/Drop.Agent.NBG

[iNFO] The file was moved to '481da2e6.qua'!

C:\Program Files\Club-Internet\Assistance\OutilsCI\uninstall.exe

[DETECTION] Is the Trojan horse TR/Dldr.Zlob.ZQN

[iNFO] The file was moved to '484fa6ea.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0001064.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4816abf1.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0001065.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4968236a.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0001066.inf

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.2

[iNFO] The file was moved to '4816abf3.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0002063.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4816abf2.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0002064.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4968236b.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0002065.inf

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.2

[iNFO] The file was moved to '4816abf4.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP1\A0002073.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4968236c.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP4\A0002100.inf

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.2

[iNFO] The file was moved to '4816abfb.qua'!

C:\System Volume Information\_restore{FC150528-618E-4416-95C2-7C559D23A3D9}\RP4\A0002101.exe

[DETECTION] Is the Trojan horse TR/Dldr.Zlob.ZQN

[iNFO] The file was moved to '49682364.qua'!

C:\WINDOWS\Config\Svchost.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4849ae0e.qua'!

C:\WINDOWS\Config\System.exe

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.1

[iNFO] The file was moved to '4859ae12.qua'!

Begin scan in 'D:\'

D:\Autorun.inf

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.2

[iNFO] The file was moved to '485ab1c9.qua'!

D:\Emule\Incoming\Autodesk 3ds max 9 crack0.exe

[DETECTION] Is the Trojan horse TR/Dldr.Calac.AB

[iNFO] The file was moved to '485ab42b.qua'!

 

 

End of the scan: dimanche 23 mars 2008 20:55

Used time: 1:26:27 min

 

The scan has been done completely.

 

9077 Scanning directories

439277 Files were scanned

15 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

0 files were deleted

0 files were repaired

15 files were moved to quarantine

0 files were renamed

1 Files cannot be scanned

439262 Files not concerned

2959 Archives were scanned

1 Warnings

1 Notes

76488 Objects were scanned with rootkit scan

0 Hidden objects were found

 

________________________________________________________________________________

___________________

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 21:00:01, on 23/03/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16608)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe

C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Adobe\Photoshop CS\Photoshop.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe

C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe

C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe

C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe

C:\Program Files\Microsoft Office\Office\WINWORD.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

F3 - REG:win.ini: load=System

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,System

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll

O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe

O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

 

--

End of file - 3020 bytes

Posté(e)

j'ajoute un bout de scan ac 1 virus (je l'avais arreté pr mieux configurer antivir)

 

merci :P

________________________________________________________________________________

____________________

AntiVir PersonalEdition Classic

Report file date: dimanche 23 mars 2008 19:24

 

Scanning for 1163542 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Username: SYSTEM

Computer name: ROMAIN-24A41661

 

Version information:

BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00

AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29

AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51

LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47

LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15

ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 18:16:01

ANTIVIR2.VDF : 7.0.3.62 337408 Bytes 21/03/2008 18:16:01

ANTIVIR3.VDF : 7.0.3.65 36864 Bytes 23/03/2008 18:16:01

AVEWIN32.DLL : 7.6.0.75 3334656 Bytes 23/03/2008 18:16:04

AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26

AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17

AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24

AVPACK32.DLL : 7.6.0.3 360488 Bytes 23/03/2008 18:16:04

AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06

AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33

AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18

NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42

RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13

RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37

SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

 

Configuration settings for the scan:

Jobname..........................: Complete system scan

Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp

Logging..........................: low

Primary action...................: interactive

Secondary action.................: ignore

Scan master boot sector..........: off

Scan boot sector.................: on

Boot sectors.....................: D:,

Scan memory......................: on

Process scan.....................: on

Scan registry....................: on

Search for rootkits..............: on

Scan all files...................: Intelligent file selection

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

 

Start of the scan: dimanche 23 mars 2008 19:24

 

Starting search for hidden objects.

'76484' objects were checked, '0' hidden objects were found.

 

The scan of running processes will be started

Scan process 'avscan.exe' - '1' Module(s) have been scanned

Scan process 'avcenter.exe' - '1' Module(s) have been scanned

Scan process 'sched.exe' - '1' Module(s) have been scanned

Scan process 'avgnt.exe' - '1' Module(s) have been scanned

Scan process 'avguard.exe' - '1' Module(s) have been scanned

Scan process 'notepad.exe' - '1' Module(s) have been scanned

Scan process 'Photoshop.exe' - '1' Module(s) have been scanned

Scan process 'ctfmon.exe' - '1' Module(s) have been scanned

Scan process 'alg.exe' - '1' Module(s) have been scanned

Scan process 'explorer.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'SMAgent.exe' - '1' Module(s) have been scanned

Scan process 'PhotoshopElementsFileAgent.exe' - '1' Module(s) have been scanned

Scan process 'spoolsv.exe' - '1' Module(s) have been scanned

Scan process 'vsmon.exe' - '0' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'lsass.exe' - '1' Module(s) have been scanned

Scan process 'services.exe' - '1' Module(s) have been scanned

Scan process 'winlogon.exe' - '1' Module(s) have been scanned

Scan process 'csrss.exe' - '1' Module(s) have been scanned

Scan process 'smss.exe' - '1' Module(s) have been scanned

24 processes with 24 modules were scanned

 

Start scanning boot sectors:

Boot sector 'C:\'

[NOTE] No virus was found!

Boot sector 'D:\'

[NOTE] No virus was found!

 

Starting to scan the registry.

The registry was scanned ( '17' files ).

 

 

Starting the file scan:

 

Begin scan in 'C:\'

C:\Autorun.inf

[DETECTION] Contains detection pattern of the worm WORM/VB.NPM.2

[iNFO] The file was moved to '485aa169.qua'!

C:\pagefile.sys

[WARNING] The file could not be opened!

 

 

End of the scan: dimanche 23 mars 2008 19:27

Used time: 03:35 min

 

The scan has been canceled!

 

253 Scanning directories

1800 Files were scanned

1 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

0 files were deleted

0 files were repaired

1 files were moved to quarantine

0 files were renamed

1 Files cannot be scanned

1799 Files not concerned

4 Archives were scanned

1 Warnings

0 Notes

76484 Objects were scanned with rootkit scan

0 Hidden objects were found

Posté(e)

• vide ta quarantaine antivir

 

• desactive et reactive ta restauration systeme de cette maniere:

 

http://service1.symantec.com/SUPPORT/INTER...020830101856924

 

• pour s'assurer que tout est ok:

 

* * Fais un scan en ligne Kaspersky avec IE

http://www.kaspersky.com/kos/eng/partner/d...kavwebscan.html

* Clique sur Accept

* Une barre jaune va te demander si tu acceptes d'installer le Kavwebscan_Unicode.cab, installe l'Active X.

* clique une nouvelle fois sur "Accept"

* Les bases de mises à jour vont s'installer, patiente un moment

* Clique sur Next.

* Clique sur My Computer, le scan se met en route; attends la fin du scan sans fermer la fenêtre sinon il s'arrêtera.

 

tuto:: http://www.malekal.com/scan_Av_en_ligne.php#mozTocId291566

 

et poste le rapport.

Posté(e)

Bonjour ! Ca y est, plus de virus ! :P

 

 

Voici le rapport de kapersky

__________________________________________________________________

Selected target: My Computer

Source: A:\; C:\; D:\; E:\; F:\;

 

 

Report is empty.

Please note: The free Kaspersky Online Scanner does not provide comprehensive protection and cannot prevent future infections. It only detects malware that has already penetrated your storage devices. We strongly recommend that you use a fully-functional antivirus solution to protect your computer at all times.

 

Please wait, this process may take a long time depending on the selected target. If you want to continue browsing, open a new window.

 

Scan Progress [98%]:

 

 

 

 

 

Total number of scanned objects: 128100

Number of viruses found: 0

Number of infected objects: 0

Number of suspicious objects: 0

Duration of the scan process: 02:15:04

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...