Mot :    Pseudo :           
 

bonjour alors voila j'ai analyser le pc a ma belle mere et j'ai vu qu'il y avait une infection virale ca me donne TR/ crypt.NSPM.GEN TROJEN donc jen ai plusieur alors comme je suis pas souvent sur ce poste sa va prendre unpeu de ten a soigner pouvez-vous me donner donc au plsu vite les base pour que je puisse vous envoyer un rapport ou se que vous voulez car dans son ordinateur je n'ai rien du tout !! merci

Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

et voici le rapport d'antivir avira

Avira AntiVir Personal
Report file date: dimanche 30 novembre 2008 18:13

Scanning for 1059587 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: XPSP2-06F23CCF9

Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 25/11/2008 08:52:53
AVSCAN.DLL : 8.1.4.0 40705 Bytes 25/11/2008 08:52:53
LUKE.DLL : 8.1.4.5 164097 Bytes 25/11/2008 08:52:53
LUKERES.DLL : 8.1.4.0 12033 Bytes 25/11/2008 08:52:53
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 08:52:53
ANTIVIR1.VDF : 7.1.0.56 411136 Bytes 09/11/2008 08:52:53
ANTIVIR2.VDF : 7.1.0.124 376832 Bytes 23/11/2008 08:52:53
ANTIVIR3.VDF : 7.1.0.159 206848 Bytes 29/11/2008 16:39:22
Engineversion : 8.2.0.36
AEVDF.DLL : 8.1.0.6 102772 Bytes 25/11/2008 08:52:54
AESCRIPT.DLL : 8.1.1.15 332156 Bytes 25/11/2008 08:52:54
AESCN.DLL : 8.1.1.5 123251 Bytes 25/11/2008 08:52:54
AERDL.DLL : 8.1.1.3 438645 Bytes 25/11/2008 08:52:54
AEPACK.DLL : 8.1.3.4 393591 Bytes 25/11/2008 08:52:54
AEOFFICE.DLL : 8.1.0.30 196986 Bytes 25/11/2008 08:52:54
AEHEUR.DLL : 8.1.0.71 1487222 Bytes 25/11/2008 08:52:54
AEHELP.DLL : 8.1.2.0 119159 Bytes 25/11/2008 08:52:53
AEGEN.DLL : 8.1.1.6 323955 Bytes 30/11/2008 16:39:26
AEEMU.DLL : 8.1.0.9 393588 Bytes 25/11/2008 08:52:53
AECORE.DLL : 8.1.5.2 172405 Bytes 30/11/2008 16:39:23
AEBB.DLL : 8.1.0.3 53618 Bytes 25/11/2008 08:52:53
AVWINLL.DLL : 1.0.0.12 15105 Bytes 25/11/2008 08:52:53
AVPREF.DLL : 8.0.2.0 38657 Bytes 25/11/2008 08:52:53
AVREP.DLL : 8.0.0.2 98344 Bytes 25/11/2008 08:52:53
AVREG.DLL : 8.0.0.1 33537 Bytes 25/11/2008 08:52:53
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 25/11/2008 08:52:53
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 25/11/2008 08:52:53
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 25/11/2008 08:52:51
RCTEXT.DLL : 8.0.52.0 86273 Bytes 25/11/2008 08:52:51

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, E:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: dimanche 30 novembre 2008 18:13

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'AlertModule.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'SuperCopier2.exe' - '1' Module(s) have been scanned
Scan process 'SystrayApp.exe' - '1' Module(s) have been scanned
Scan process 'AirPacewifi.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'qttask.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
32 processes with 32 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Boot sector 'E:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '49' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\Admin\Local Settings\Temp\kpds.dll
[DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
[NOTE] The file was moved to '4996ca3e.qua'!
C:\WINDOWS\system32\avpo.exe
[DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
[NOTE] The file was moved to '49a2cbd5.qua'!
C:\WINDOWS\system32\avpo0.dll
[DETECTION] Is the TR/Crypt.NSPM.Gen Trojan
[NOTE] The file was moved to '49a2cbd8.qua'!
Begin scan in 'D:\'
Begin scan in 'E:\'


End of the scan: dimanche 30 novembre 2008 18:22
Used time: 08:56 Minute(s)

The scan has been done completely.

2461 Scanning directories
78400 Files were scanned
3 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
3 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
78396 Files not concerned
933 Archives were scanned
1 Warnings
3 Notes

------------------------------ bisous merci a vous
Répondre à virginielea

Bonjour,

Télécharge puis installe Hijackthis (Trend Micro)
Poste ensuite un rapport dans ta prochaine réponse.
AIDE : Comment utiliser Hijackthis v2.0.2

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark
Tom's Guide > Forum > Sécurité - Virus > virus??
Aller à :

Il y a 2619 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Attention

Vous allez répondre sur un sujet resté inactif pendant plus de 6 mois.
Assurez-vous d'apporter des éléments nouveaux à la discussion avant de poursuivre.

Répondre Annuler
Liens