Bonjour Boulepate62,
Je suis en Wifi avec Tele2 et je n'utilise aucun logiciel peerTopeer.
Ci-dessous les analyses que tu m'as demandées :
POUR ACTIVETOOLBAND
_____________________
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.11.14.3 2008.11.14 -
AntiVir 7.9.0.31 2008.11.14 -
Authentium 5.1.0.4 2008.11.15 -
Avast 4.8.1281.0 2008.11.14 -
AVG 8.0.0.199 2008.11.14 -
BitDefender 7.2 2008.11.15 -
CAT-QuickHeal 10.00 2008.11.15 -
ClamAV 0.94.1 2008.11.15 -
DrWeb 4.44.0.09170 2008.11.15 -
eSafe 7.0.17.0 2008.11.13 -
eTrust-Vet 31.6.6210 2008.11.14 -
Ewido 4.0 2008.11.14 -
F-Prot 4.4.4.56 2008.11.14 -
F-Secure 8.0.14332.0 2008.11.15 -
Fortinet 3.117.0.0 2008.11.15 -
GData 19 2008.11.15 -
Ikarus T3.1.1.45.0 2008.11.15 -
K7AntiVirus 7.10.525 2008.11.14 -
Kaspersky 7.0.0.125 2008.11.15 -
McAfee 5434 2008.11.14 -
Microsoft 1.4104 2008.11.15 -
NOD32 3615 2008.11.15 -
Norman 5.80.02 2008.11.14 -
Panda 9.0.0.4 2008.11.14 -
PCTools 4.4.2.0 2008.11.14 -
Prevx1 V2 2008.11.15 -
Rising 21.03.42.00 2008.11.14 -
SecureWeb-Gateway 6.7.6 2008.11.14 -
Sophos 4.35.0 2008.11.15 -
Sunbelt 3.1.1801.2 2008.11.14 -
Symantec 10 2008.11.15 -
TheHacker 6.3.1.1.152 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.14 -
VBA32 3.12.8.9 2008.11.14 -
ViRobot 2008.11.15.1470 2008.11.15 -
VirusBuster 4.5.11.0 2008.11.14 -
Information additionnelle
File size: 299008 bytes
MD5...: eb9adc7836fca7a00f8dd5583e94f7e2
SHA1..: a4406c76ad952559522affbbf6d7ee70aed73566
SHA256: a7e341315f3bdc581cb5d287ffe5a94a4f5a2b80037438f92bc52adc79fdd32f
SHA512: 83f5bb4c06a5e14f160fde66a40e1688c4787d761ac20d9996259dfb54be8d1d
9a2949a3c4682a6ae1b952eec3d3b0365e31ffd51ac1fe56b114f99dde4fca3b
PEiD..: -
TrID..: File type identification
DirectShow filter (73.9%)
Win32 Executable MS Visual C++ (generic) (13.8%)
Windows Screen Saver (4.8%)
Win32 Executable Generic (3.1%)
Win32 Dynamic Link Library (generic) (2.7%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x100183e0
timedatestamp.....: 0x45c8a486 (Tue Feb 06 15:53:42 2007)
machinetype.......: 0x14c (I386)
( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x2fb8f 0x30000 6.22 1b4a2986a64eaabd9dda8b53f69de9fe
.rdata 0x31000 0xf72b 0x10000 4.36 1de5c947f5f5b3d3067d0620e40bfcea
.data 0x41000 0x3470 0x2000 2.67 38ac50dcd3315d0084f128227cd85e43
.rsrc 0x45000 0xe2c 0x1000 4.68 ca35205cc94e09cffbeef5e668c55de9
.reloc 0x46000 0x4488 0x5000 4.24 971fb398d2830ee293107b847f2e865f
( 5 imports )
> KERNEL32.dll: FindResourceW, LoadLibraryExW, lstrcmpiW, LoadResource, RaiseException, LeaveCriticalSection, EnterCriticalSection, SizeofResource, MultiByteToWideChar, FreeLibrary, GetLastError, lstrlenW, GetModuleFileNameW, GetModuleHandleW, InterlockedDecrement, InterlockedIncrement, InitializeCriticalSection, DeleteCriticalSection, DisableThreadLibraryCalls, FlushFileBuffers, CreateFileA, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetConsoleMode, GetConsoleCP, SetFilePointer, GetVersionExA, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, GetCurrentProcessId, CloseHandle, SetEvent, OpenEventA, OutputDebugStringA, OutputDebugStringW, lstrlenA, WaitForSingleObject, GetCurrentThreadId, VirtualAlloc, UnmapViewOfFile, GetSystemInfo, MapViewOfFile, CreateFileMappingA, GetCurrentThread, GetVersion, OpenFileMappingA, GetModuleFileNameA, RtlUnwind, HeapValidate, IsBadReadPtr, GetCommandLineA, HeapFree, HeapAlloc, GetProcessHeap, FatalAppExitA, DebugBreak, WideCharToMultiByte, IsDebuggerPresent, GetProcAddress, LoadLibraryA, GetStdHandle, WriteFile, WriteConsoleW, GetFileType, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetModuleHandleA, ExitProcess, LoadLibraryW, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, HeapReAlloc, HeapDestroy, HeapCreate, VirtualFree, GetOEMCP, GetCPInfo, SetHandleCount, GetStartupInfoA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetTickCount, GetSystemTimeAsFileTime, VirtualQuery, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW
> USER32.dll: CharNextW, UnregisterClassW, MsgWaitForMultipleObjects, PeekMessageA, IsWindowUnicode, DispatchMessageA, DispatchMessageW, TranslateMessage, GetMessageA, GetMessageW
> ADVAPI32.dll: RegSetValueExW, RegEnumKeyExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, SetThreadToken, RevertToSelf, OpenThreadToken, RegQueryInfoKeyW
> ole32.dll: CoTaskMemFree, CoTaskMemAlloc, CoTaskMemRealloc, StringFromGUID2, CoCreateInstance, CoReleaseMarshalData, CoMarshalInterface, CreateStreamOnHGlobal, CoUnmarshalInterface, CoRevokeClassObject, CoRegisterClassObject
> OLEAUT32.dll: -, -, -, -, -, -, -, -
( 4 exports )
DllCanUnloadNow, DllGetClassObject, DllRegisterServer, DllUnregisterServer
ThreatExpert info:
http://www.threatexpert.com/report.aspx?md5=eb9adc7836fca7a00f8dd5583e94f7e2______________________
POUR MSCONFIG.EXE
______________________
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.11.14.3 2008.11.14 -
AntiVir 7.9.0.31 2008.11.14 -
Authentium 5.1.0.4 2008.11.15 -
Avast 4.8.1281.0 2008.11.14 -
AVG 8.0.0.199 2008.11.14 -
BitDefender 7.2 2008.11.15 -
CAT-QuickHeal 10.00 2008.11.15 -
ClamAV 0.94.1 2008.11.15 -
DrWeb 4.44.0.09170 2008.11.15 -
eSafe 7.0.17.0 2008.11.13 -
eTrust-Vet 31.6.6210 2008.11.14 -
Ewido 4.0 2008.11.14 -
F-Prot 4.4.4.56 2008.11.14 -
F-Secure 8.0.14332.0 2008.11.15 -
Fortinet 3.117.0.0 2008.11.15 -
GData 19 2008.11.15 -
Ikarus T3.1.1.45.0 2008.11.15 -
K7AntiVirus 7.10.525 2008.11.14 -
Kaspersky 7.0.0.125 2008.11.15 -
McAfee 5434 2008.11.14 -
Microsoft 1.4104 2008.11.15 -
NOD32 3615 2008.11.15 -
Norman 5.80.02 2008.11.14 -
Panda 9.0.0.4 2008.11.14 -
PCTools 4.4.2.0 2008.11.14 -
Prevx1 V2 2008.11.15 -
Rising 21.03.42.00 2008.11.14 -
SecureWeb-Gateway 6.7.6 2008.11.14 -
Sophos 4.35.0 2008.11.15 -
Sunbelt 3.1.1801.2 2008.11.14 -
Symantec 10 2008.11.15 -
TheHacker 6.3.1.1.152 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.14 -
VBA32 3.12.8.9 2008.11.14 -
ViRobot 2008.11.15.1470 2008.11.15 -
VirusBuster 4.5.11.0 2008.11.14 -
Information additionnelle
File size: 222208 bytes
MD5...: 1bb128a09911a936e8efc30c3f6c597c
SHA1..: ab3db30c395cee3661513ac1da412044e907e037
SHA256: 36d5ea8cd3ac3b53a012058839c3e6dd71fbbd67187c5a5f3a4bd5b078945846
SHA512: f5e220cb8f8a4121df566eb0e02ea1484f52a95f3f0dda716584607f7c1af39c
c61929c9b65dee5c7a55119a3c3bc0b66033fb207817ddfbbd9784618ef5e0dc
PEiD..: -
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x1012f4b
timedatestamp.....: 0x4549add7 (Thu Nov 02 08:35:35 2006)
machinetype.......: 0x14c (I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x20d5a 0x20e00 6.29 bceafe7119795f6b7dfb58e54f44ca1c
.data 0x22000 0xc24 0x600 4.65 70ff692f23e2f1f4aa3094bbd7c814af
.rsrc 0x23000 0x12658 0x12800 7.16 e120a789d77baef3571ada309681787a
.reloc 0x36000 0x224e 0x2400 5.95 6b14a689dcd708e9b5208737db4aeeb1
( 12 imports )
> ADVAPI32.dll: RegCloseKey, RegQueryValueExW, RegSetValueExW, QueryServiceConfigW, RegDeleteKeyW, RegOpenKeyExW, RegCreateKeyExW, RegEnumKeyExW, CloseServiceHandle, OpenServiceW, EnumServicesStatusW, OpenSCManagerW, ChangeServiceConfigW, RegDeleteValueW, RegEnumValueW, RegQueryInfoKeyW, InitiateShutdownW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken
> KERNEL32.dll: GlobalFree, GlobalUnlock, FreeResource, GlobalLock, GlobalAlloc, SizeofResource, LockResource, LoadResource, FindResourceW, FlushInstructionCache, GetCurrentProcess, GlobalMemoryStatusEx, GetSystemInfo, LocalFree, FormatMessageW, CreateSemaphoreW, GetModuleHandleW, GetCommandLineW, GetCurrentThreadId, FreeLibrary, LoadLibraryW, CreateDirectoryW, GetModuleFileNameW, SetFileAttributesW, OpenProcess, GetCurrentProcessId, RegisterApplicationRestart, HeapSetInformation, lstrcmpiW, MultiByteToWideChar, WideCharToMultiByte, CopyFileW, CreateThread, CloseHandle, DeleteFileW, GetLastError, QueryDosDeviceW, LocalAlloc, UnhandledExceptionFilter, TerminateProcess, GetSystemTimeAsFileTime, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoW, InterlockedCompareExchange, Sleep, InterlockedExchange, VirtualAlloc, VirtualFree, LoadLibraryA, GetProcAddress, HeapAlloc, GetProcessHeap, HeapFree, FindFirstFileW, FindNextFileW, FindClose, GetNativeSystemInfo, MoveFileExW, lstrlenW, ExpandEnvironmentStringsW, GetDateFormatW, GetTimeFormatW, CompareStringW
> GDI32.dll: GetTextExtentPoint32W, SelectObject, GetTextMetricsW
> USER32.dll: ShowWindow, EndDialog, IsDlgButtonChecked, SetFocus, LoadStringW, SetWindowTextW, MessageBoxW, GetDlgItemTextW, SetDlgItemInt, SetDlgItemTextW, GetDlgItem, SetWindowLongW, GetWindowTextW, GetWindowTextLengthW, IsWindowEnabled, GetSystemMetrics, GetFocus, GetClientRect, SendMessageW, EnableWindow, SetForegroundWindow, SetProcessDPIAware, CheckDlgButton, GetActiveWindow, ReleaseDC, GetDC, CallWindowProcW, GetKeyState, GetWindowLongW, LoadIconW, CharNextW, IsIconic, FindWindowW, GetLastActivePopup
> MFC42u.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> msvcrt.dll: _lock, _onexit, _except_handler4_common, _controlfp, __set_app_type, __p__fmode, __p__commode, _adjust_fdiv, __setusermatherr, _amsg_exit, _initterm, _wcmdln, exit, _XcptFilter, _exit, __dllonexit, __wgetmainargs, _callnewh, _what@exception@@UBEPBDXZ, iswdigit, _wtoi, memmove, _wtol, calloc, _ftol2_sse, _wcsupr, strncmp, wcsnlen, wcsrchr, wcsncpy_s, wcschr, _wcsnicmp, _unlock, __1type_info@@UAE@XZ, _cexit, _terminate@@YAXXZ, _snwscanf_s, swprintf_s, _ultow_s, wcstoul, wcscat_s, wcscpy_s, __CxxFrameHandler3, _itow_s, _vsnwprintf, memcpy, _wcsicmp, __0exception@@QAE@ABV0@@Z, __0exception@@QAE@XZ, __1exception@@UAE@XZ, _CxxThrowException, memset, _wcslwr, wcsstr, wcstok, malloc, free, _purecall, memcpy_s, _wcsicoll, memmove_s
> ATL.DLL: -, -, -, -, -, -, -, -, -, -
> SHELL32.dll: ShellExecuteW, SHEvaluateSystemCommandTemplate, SHGetSpecialFolderPathW
> OLEAUT32.dll: -, -, -, -, -
> ole32.dll: CreateStreamOnHGlobal, CoInitialize, CoUninitialize, CoTaskMemFree, CoCreateInstance, CoInitializeEx
> VERSION.dll: GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW
> ntdll.dll: RtlInitUnicodeString, RtlNtStatusToDosError, WinSqmEventEnabled, WinSqmEventWrite, WinSqmAddToStream, NtResetEvent, NtWaitForSingleObject, NtDeviceIoControlFile, NtCreateEvent, RtlGetVersion, NtQuerySymbolicLinkObject, NtOpenSymbolicLinkObject, RtlCompareMemory, RtlFreeHeap, RtlAllocateHeap, NtClose, NtOpenFile, NtQuerySystemInformation, RtlGUIDFromString, RtlStringFromGUID, RtlFreeUnicodeString, DbgBreakPoint, NtOpenKey, NtEnumerateKey, NtQueryKey, NtQueryAttributesFile, NtUnloadKey, NtLoadKey, NtAdjustPrivilegesToken, NtOpenProcessToken, NtOpenThreadToken, RtlFreeSid, RtlSetOwnerSecurityDescriptor, RtlLengthSecurityDescriptor, RtlSetDaclSecurityDescriptor, RtlCreateSecurityDescriptor, RtlAddAccessAllowedAceEx, RtlCreateAcl, RtlLengthSid, RtlAllocateAndInitializeSid, NtSetSecurityObject, NtCreateKey, NtDeleteValueKey, NtQueryValueKey, NtSetValueKey, NtSaveKey, NtCreateFile, NtDeleteKey, LdrGetProcedureAddress, RtlInitAnsiString, LdrGetDllHandle, NtDeleteFile, NtAllocateUuids
( 0 exports )
Qu'en penses-tu ?
Merci et à bientôt