le 15 Déc 2008 18:55
Le voilà :
En rallumant il y a 1/2 heure, aucune notification de Avast, et vu ce que j'ai cru comprendre dans le log en-dessous, il semble bien que ce n'était qu'une fausse alerte !
Fichier ils.dll reçu le 2008.12.15 13:54:02 (CET)
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.12.15.3 2008.12.15 -
AntiVir 7.9.0.45 2008.12.15 -
Authentium 5.1.0.4 2008.12.14 -
Avast 4.8.1281.0 2008.12.15 -
AVG 8.0.0.199 2008.12.15 -
BitDefender 7.2 2008.12.15 -
CAT-QuickHeal 10.00 2008.12.15 -
ClamAV 0.94.1 2008.12.15 -
Comodo 754 2008.12.14 -
DrWeb 4.44.0.09170 2008.12.15 -
eSafe 7.0.17.0 2008.12.14 -
eTrust-Vet 31.6.6261 2008.12.15 -
Ewido 4.0 2008.12.15 -
F-Prot 4.4.4.56 2008.12.14 -
F-Secure 8.0.14332.0 2008.12.15 -
Fortinet 3.117.0.0 2008.12.14 -
GData 19 2008.12.15 -
Ikarus T3.1.1.45.0 2008.12.15 -
K7AntiVirus 7.10.553 2008.12.13 -
Kaspersky 7.0.0.125 2008.12.15 -
McAfee 5464 2008.12.14 -
McAfee+Artemis 5464 2008.12.14 -
Microsoft 1.4205 2008.12.15 -
NOD32 3692 2008.12.15 -
Norman 5.80.02 2008.12.12 -
Panda 9.0.0.4 2008.12.15 -
PCTools 4.4.2.0 2008.12.15 -
Prevx1 V2 2008.12.15 -
Rising 21.08.02.00 2008.12.15 -
SecureWeb-Gateway 6.7.6 2008.12.15 -
Sophos 4.36.0 2008.12.15 -
Sunbelt 3.2.1801.2 2008.12.11 -
Symantec 10 2008.12.15 -
TheHacker 6.3.1.4.188 2008.12.14 -
TrendMicro 8.700.0.1004 2008.12.15 -
VBA32 3.12.8.10 2008.12.14 -
ViRobot 2008.12.15.1518 2008.12.15 -
VirusBuster 4.5.11.0 2008.12.14 -
Information additionnelle
File size: 73728 bytes
MD5...: 85440d0e2fbe06b8ac33f548540eaaa6
SHA1..: 4043c4b90afed9b221288a51dee9bed3c9281368
SHA256: b9aa33f5d1473a64e60523cd522552a4ab88a2f72e7d4a89e7b8f8684ab647e8
SHA512: 23af886cca8d40ca1e785177cb41437ca24f5fdb8fe158a5b8f0ec83fd16109e<br>b69fb7e3138dabccaea07995346be338e95fdac554e8e09c3cadac7efacc43f3<br>
ssdeep: 1536:ECcbI7PBUn3ZwrZo8SGJl1eixuJSx2xN:UmPBUnpwrFS6l1eYQG2x<br>
PEiD..: -
TrID..: File type identification<br>DirectShow filter (90.9%)<br>Win32 Executable Generic (3.8%)<br>Win32 Dynamic Link Library (generic) (3.4%)<br>Generic Win/DOS Executable (0.9%)<br>DOS Executable Generic (0.9%)
PEInfo: PE Structure information<br><br>( base data )<br>entrypointaddress.: 0x66d156a6<br>timedatestamp.....: 0x3d6e6b84 (Thu Aug 29 18:44:20 2002)<br>machinetype.......: 0x14c (I386)<br><br>( 4 sections )<br>name viradd virsiz rawdsiz ntrpy md5<br>.text 0x1000 0xda30 0xe000 6.51 24ee00e4377f60ff37320ca8416f7f13<br>.data 0xf000 0x188 0x1000 0.56 f460287393b01fa10706cc87bf38ecb2<br>.rsrc 0x10000 0x4b0 0x1000 1.24 0d36d238b38060ebd58aa5c5ca16b728<br>.reloc 0x11000 0xa70 0x1000 4.74 6a01230866cdcdb7391c2162f2953290<br><br>( 6 imports ) <br>> KERNEL32.dll: EnterCriticalSection, InitializeCriticalSection, DeleteCriticalSection, DisableThreadLibraryCalls, lstrcmpA, GetModuleFileNameA, MultiByteToWideChar, WideCharToMultiByte, IsBadWritePtr, CloseHandle, TerminateThread, LeaveCriticalSection, SetEvent, lstrcatA, CreateThread, CreateEventA, GetLastError, FreeLibrary, GetCurrentThreadId, GetProcAddress, LoadLibraryA, SetErrorMode, GetVersionExA, InterlockedDecrement, lstrlenA, LocalAlloc, lstrcpyA, lstrcmpiA, InterlockedIncrement, GetTickCount, LocalFree<br>> ADVAPI32.dll: RegCreateKeyExA, RegSetValueExA, RegOpenKeyExA, RegEnumKeyExA, RegCloseKey, RegDeleteKeyA, RegQueryValueExA<br>> USER32.dll: CreateWindowExA, RegisterClassA, LoadCursorA, LoadIconA, UnregisterClassA, DestroyWindow, wsprintfA, IsWindow, PostMessageA, KillTimer, CharNextA, SetTimer, PostQuitMessage, DispatchMessageA, TranslateMessage, PeekMessageA, MsgWaitForMultipleObjects, DefWindowProcA<br>> OLEAUT32.dll: -<br>> WSOCK32.dll: -, -, -, -, -<br>> WLDAP32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -<br><br>( 4 exports ) <br>DllCanUnloadNow, DllGetClassObject, DllRegisterServer, DllUnregisterServer<br>
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.12.15.3 2008.12.15 -
AntiVir 7.9.0.45 2008.12.15 -
Authentium 5.1.0.4 2008.12.14 -
Avast 4.8.1281.0 2008.12.15 -
AVG 8.0.0.199 2008.12.15 -
BitDefender 7.2 2008.12.15 -
CAT-QuickHeal 10.00 2008.12.15 -
ClamAV 0.94.1 2008.12.15 -
Comodo 754 2008.12.14 -
DrWeb 4.44.0.09170 2008.12.15 -
eSafe 7.0.17.0 2008.12.14 -
eTrust-Vet 31.6.6261 2008.12.15 -
Ewido 4.0 2008.12.15 -
F-Prot 4.4.4.56 2008.12.14 -
F-Secure 8.0.14332.0 2008.12.15 -
Fortinet 3.117.0.0 2008.12.14 -
GData 19 2008.12.15 -
Ikarus T3.1.1.45.0 2008.12.15 -
K7AntiVirus 7.10.553 2008.12.13 -
Kaspersky 7.0.0.125 2008.12.15 -
McAfee 5464 2008.12.14 -
McAfee+Artemis 5464 2008.12.14 -
Microsoft 1.4205 2008.12.15 -
NOD32 3692 2008.12.15 -
Norman 5.80.02 2008.12.12 -
Panda 9.0.0.4 2008.12.15 -
PCTools 4.4.2.0 2008.12.15 -
Prevx1 V2 2008.12.15 -
Rising 21.08.02.00 2008.12.15 -
SecureWeb-Gateway 6.7.6 2008.12.15 -
Sophos 4.36.0 2008.12.15 -
Sunbelt 3.2.1801.2 2008.12.11 -
Symantec 10 2008.12.15 -
TheHacker 6.3.1.4.188 2008.12.14 -
TrendMicro 8.700.0.1004 2008.12.15 -
VBA32 3.12.8.10 2008.12.14 -
ViRobot 2008.12.15.1518 2008.12.15 -
VirusBuster 4.5.11.0 2008.12.14 -
Information additionnelle
File size: 73728 bytes
MD5...: 85440d0e2fbe06b8ac33f548540eaaa6
SHA1..: 4043c4b90afed9b221288a51dee9bed3c9281368
SHA256: b9aa33f5d1473a64e60523cd522552a4ab88a2f72e7d4a89e7b8f8684ab647e8
SHA512: 23af886cca8d40ca1e785177cb41437ca24f5fdb8fe158a5b8f0ec83fd16109e<br>b69fb7e3138dabccaea07995346be338e95fdac554e8e09c3cadac7efacc43f3<br>
ssdeep: 1536:ECcbI7PBUn3ZwrZo8SGJl1eixuJSx2xN:UmPBUnpwrFS6l1eYQG2x<br>
PEiD..: -
TrID..: File type identification<br>DirectShow filter (90.9%)<br>Win32 Executable Generic (3.8%)<br>Win32 Dynamic Link Library (generic) (3.4%)<br>Generic Win/DOS Executable (0.9%)<br>DOS Executable Generic (0.9%)
PEInfo: PE Structure information<br><br>( base data )<br>entrypointaddress.: 0x66d156a6<br>timedatestamp.....: 0x3d6e6b84 (Thu Aug 29 18:44:20 2002)<br>machinetype.......: 0x14c (I386)<br><br>( 4 sections )<br>name viradd virsiz rawdsiz ntrpy md5<br>.text 0x1000 0xda30 0xe000 6.51 24ee00e4377f60ff37320ca8416f7f13<br>.data 0xf000 0x188 0x1000 0.56 f460287393b01fa10706cc87bf38ecb2<br>.rsrc 0x10000 0x4b0 0x1000 1.24 0d36d238b38060ebd58aa5c5ca16b728<br>.reloc 0x11000 0xa70 0x1000 4.74 6a01230866cdcdb7391c2162f2953290<br><br>( 6 imports ) <br>> KERNEL32.dll: EnterCriticalSection, InitializeCriticalSection, DeleteCriticalSection, DisableThreadLibraryCalls, lstrcmpA, GetModuleFileNameA, MultiByteToWideChar, WideCharToMultiByte, IsBadWritePtr, CloseHandle, TerminateThread, LeaveCriticalSection, SetEvent, lstrcatA, CreateThread, CreateEventA, GetLastError, FreeLibrary, GetCurrentThreadId, GetProcAddress, LoadLibraryA, SetErrorMode, GetVersionExA, InterlockedDecrement, lstrlenA, LocalAlloc, lstrcpyA, lstrcmpiA, InterlockedIncrement, GetTickCount, LocalFree<br>> ADVAPI32.dll: RegCreateKeyExA, RegSetValueExA, RegOpenKeyExA, RegEnumKeyExA, RegCloseKey, RegDeleteKeyA, RegQueryValueExA<br>> USER32.dll: CreateWindowExA, RegisterClassA, LoadCursorA, LoadIconA, UnregisterClassA, DestroyWindow, wsprintfA, IsWindow, PostMessageA, KillTimer, CharNextA, SetTimer, PostQuitMessage, DispatchMessageA, TranslateMessage, PeekMessageA, MsgWaitForMultipleObjects, DefWindowProcA<br>> OLEAUT32.dll: -<br>> WSOCK32.dll: -, -, -, -, -<br>> WLDAP32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -<br><br>( 4 exports ) <br>DllCanUnloadNow, DllGetClassObject, DllRegisterServer, DllUnregisterServer<br>