Bonjour Lyonnais92,
J ai fait exactement comme tu as dit donc voici les rapports :
Premier rapport de VirusTotal :
Fichier CRYPT32.dll reçu le 2008.04.11 17:29:13 (CET)
Situation actuelle: terminé
Résultat: 0/32 (0.00%)
Formaté Impression des résultats
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.4.12.0 2008.04.11 -
AntiVir 7.6.0.85 2008.04.11 -
Authentium 4.93.8 2008.04.10 -
Avast 4.8.1169.0 2008.04.11 -
AVG 7.5.0.516 2008.04.11 -
BitDefender 7.2 2008.04.11 -
CAT-QuickHeal 9.50 2008.04.11 -
ClamAV 0.92.1 2008.04.11 -
DrWeb 4.44.0.09170 2008.04.11 -
eSafe 7.0.15.0 2008.04.09 -
eTrust-Vet 31.3.5687 2008.04.10 -
Ewido 4.0 2008.04.11 -
F-Prot 4.4.2.54 2008.04.10 -
F-Secure 6.70.13260.0 2008.04.11 -
FileAdvisor 1 2008.04.11 -
Fortinet 3.14.0.0 2008.04.10 -
Ikarus T3.1.1.26 2008.04.11 -
Kaspersky 7.0.0.125 2008.04.11 -
McAfee 5272 2008.04.11 -
Microsoft 1.3408 2008.04.11 -
NOD32v2 3019 2008.04.11 -
Norman 5.80.02 2008.04.11 -
Panda 9.0.0.4 2008.04.11 -
Prevx1 V2 2008.04.11 -
Rising 20.39.32.00 2008.04.11 -
Sophos 4.28.0 2008.04.11 -
Sunbelt 3.0.1032.0 2008.04.08 -
Symantec 10 2008.04.11 -
TheHacker 6.2.92.273 2008.04.11 -
VBA32 3.12.6.4 2008.04.06 -
VirusBuster 4.3.26:9 2008.04.11 -
Webwasher-Gateway 6.6.2 2008.04.11 -
Information additionnelle
File size: 604672 bytes
MD5...: 62e4fb08c41982aca211b595b5ef4897
SHA1..: 8bfa80724ba9a4a1ee9238d93fd5f9093e3ad759
SHA256: 88cf9bc87a5eba15acd79cc0d7b4506b6e6c3511f01a08ec8ac9f026990df61f
SHA512: 371c5c42e237cb17bacc7082b2e3f1d018316519410065b987513b0411f9ac56
73378554bc6700d66deda9e2bcd00bd271a9b104c6acc6b332205cc8af8990c6
PEiD..: -
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x779e1642
timedatestamp.....: 0x412532d4 (Thu Aug 19 23:08:04 2004)
machinetype.......: 0x14c (I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x83c64 0x83e00 6.64 b5a8096c9c005fb982fe03361c3a5e37
.data 0x85000 0x23bc 0x2400 2.29 0f259ff168f3c38efb7812259e1561d8
.rsrc 0x88000 0x8270 0x8400 3.65 c5135db1757798d5ab2b6dcaecf2da36
.reloc 0x91000 0x4f40 0x5000 6.76 acd31e6057f656c3742085d2ae44b6ef
( 6 imports )
> ADVAPI32.dll: CryptAcquireContextA, CryptSignHashA, CryptVerifySignatureA, CryptSetProviderA, RegCloseKey, RegQueryInfoKeyA, RegCreateKeyExA, RegCreateKeyExW, RegDeleteKeyA, RegDeleteKeyW, RegEnumKeyExA, RegEnumKeyExW, RegEnumValueA, RegEnumValueW, RegDeleteValueA, RegDeleteValueW, RegQueryValueExA, RegQueryValueExW, RegSetValueExA, RegSetValueExW, RegQueryInfoKeyW, RegOpenKeyExA, RegOpenKeyExW, RegConnectRegistryA, RegConnectRegistryW, GetSidSubAuthority, GetSidSubAuthorityCount, GetSidIdentifierAuthority, IsValidSid, CopySid, GetLengthSid, GetTokenInformation, OpenProcessToken, OpenThreadToken, CryptReleaseContext, CryptSetProvParam, CryptGetProvParam, CryptDestroyHash, CryptGetHashParam, CryptHashData, CryptCreateHash, CryptGetKeyParam, CryptExportKey, CryptDestroyKey, CryptGetUserKey, CryptImportKey, CryptGenKey, RegNotifyChangeKeyValue, RegEnumKeyA, AllocateAndInitializeSid, FreeSid, RegGetKeySecurity, GetAce, GetSecurityDescriptorDacl, EqualSid, GetSecurityDescriptorOwner, AdjustTokenPrivileges, LookupPrivilegeValueA, RegSetKeySecurity, SetSecurityDescriptorOwner, InitializeSecurityDescriptor, SetSecurityDescriptorSacl, SetSecurityDescriptorDacl, AddAccessAllowedAce, InitializeAcl, SetSecurityDescriptorGroup, CryptSetKeyParam, CryptGenRandom, CryptSetHashParam, CryptDeriveKey, CryptEncrypt, CryptDecrypt, CryptGetDefaultProviderW, SystemFunction041, StartServiceW, UnlockServiceDatabase, ChangeServiceConfigA, LockServiceDatabase, QueryServiceConfigA, OpenServiceW, OpenSCManagerW, ControlService, StartServiceA, CloseServiceHandle, QueryServiceStatus, GetUserNameA, GetUserNameW
> msvcrt.dll: wcslen, free, wcscmp, wcscpy, malloc, isupper, isdigit, isxdigit, sprintf, _except_handler3, bsearch, qsort, _ltoa, strtoul, wcscat, wcschr, _itow, _ltow, _snwprintf, _ultoa, memmove, strncpy, _wcsnicmp, _wcsicmp, _initterm, _adjust_fdiv, __dllonexit, _onexit, atol, strncmp
> KERNEL32.dll: GetTimeFormatW, GetTimeFormatA, GetDateFormatW, GetDateFormatA, CompareStringW, FormatMessageW, FormatMessageA, GetComputerNameA, GetEnvironmentVariableA, FreeLibrary, GetProcAddress, GetLastError, LoadLibraryA, InterlockedCompareExchange, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetComputerNameW, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, CreateFileA, CreateFileW, DeleteFileA, DeleteFileW, GetFileAttributesA, SetLastError, GetFileAttributesW, SetFileAttributesA, SetFileAttributesW, LocalFree, MultiByteToWideChar, LocalAlloc, CreateDirectoryA, CreateDirectoryW, GetTempFileNameA, LoadLibraryExA, LoadLibraryExW, ExpandEnvironmentStringsA, ExpandEnvironmentStringsW, lstrlenA, FindFirstFileA, FindFirstFileW, FindNextFileA, FindNextFileW, FindFirstChangeNotificationA, FindFirstChangeNotificationW, lstrlenW, GetVersionExA, WideCharToMultiByte, CloseHandle, GetCurrentThread, GetACP, DeleteCriticalSection, InterlockedIncrement, WriteFile, ReadFile, SetFilePointer, EnterCriticalSection, LeaveCriticalSection, SetEvent, InterlockedDecrement, CompareFileTime, CreateEventA, lstrcmpA, CompareStringA, DuplicateHandle, WaitForSingleObjectEx, WaitForSingleObject, SetEndOfFile, GetFileSize, GetFileAttributesExW, lstrcpyA, SystemTimeToFileTime, GetSystemTime, WaitForMultipleObjectsEx, CreateThread, ExitThread, FreeLibraryAndExitThread, Sleep, FindClose, FindNextChangeNotification, FindCloseChangeNotification, PulseEvent, InterlockedExchange, lstrcatA, LocalReAlloc, GetSystemDefaultLangID, FileTimeToSystemTime, FileTimeToLocalFileTime, GetUserDefaultLCID, MapViewOfFile, CreateFileMappingA, GetTempPathA, UnmapViewOfFile, GetModuleHandleA, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, OpenEventA, OutputDebugStringA, GetModuleFileNameW, OpenFileMappingW, CreateFileMappingW, ReleaseMutex, InitializeCriticalSection, LocalSize, GetModuleFileNameA, CreateMutexA, CreateMutexW, OpenMutexA, OpenMutexW, GetLocalTime, GetSystemTimeAsFileTime, DelayLoadFailureHook
> USER32.dll: GetSystemMetrics, GetProcessDefaultLayout, wsprintfW, MessageBoxW, MessageBoxA, LoadStringA, LoadStringW, wsprintfA
> MSASN1.dll: ASN1Free, ASN1BERDotVal2Eoid, ASN1CEREncGeneralizedTime, ASN1CEREncUTCTime, ASN1CEREncBeginBlk, ASN1CEREncNewBlkElement, ASN1CEREncFlushBlkElement, ASN1CEREncEndBlk, ASN1BEREncCharString, ASN1BEREncChar16String, ASN1BEREncChar32String, ASN1BEREncBitString, ASN1BEREncMultibyteString, ASN1BEREncOctetString, ASN1BEREncUTF8String, ASN1_CreateModule, ASN1_CloseModule, ASN1BEREncEoid, ASN1BERDecEoid, ASN1BEREoid_free, ASN1BERDecBitString2, ASN1BEREncS32, ASN1BERDecS32Val, ASN1BEREncSX, ASN1BERDecSXVal, ASN1intx_free, ASN1BERDecOctetString2, ASN1BEREncU32, ASN1BERDecU32Val, ASN1BERDecUTCTime, ASN1BEREncEndOfContents, ASN1BEREncExplicitTag, ASN1BERDecEndOfContents, ASN1DecRealloc, ASN1BERDecPeekTag, ASN1BERDecNotEndOfContents, ASN1BERDecExplicitTag, ASN1EncSetError, ASN1BERDecCharString, ASN1BERDecChar32String, ASN1BERDecChar16String, ASN1DecSetError, ASN1BERDecUTF8String, ASN1BERDecMultibyteString, ASN1char16string_free, ASN1char32string_free, ASN1charstring_free, ASN1utf8string_free, ASN1BEREncOpenType, ASN1BERDecOpenType2, ASN1BERDecGeneralizedTime, ASN1BEREncBool, ASN1BERDecBool, ASN1BERDecZeroCharString, ASN1ztcharstring_free, ASN1BEREncObjectIdentifier2, ASN1BERDecObjectIdentifier2, ASN1BERDecOctetString, ASN1octetstring_free, ASN1BERDecOpenType, ASN1open_free, ASN1BERDecBitString, ASN1bitstring_free, ASN1objectidentifier2_cmp, ASN1_Encode, ASN1_Decode, ASN1_SetEncoderOption, ASN1_FreeDecoded, ASN1_CloseDecoder, ASN1_CloseEncoder, ASN1_CreateEncoder, ASN1_CreateDecoder, ASN1BEREoid2DotVal, ASN1_FreeEncoded
> RPCRT4.dll: NdrClientCall2, RpcBindingFromStringBindingA, RpcStringBindingComposeA, RpcStringFreeA, RpcBindingFree, RpcStringBindingComposeW, RpcBindingFromStringBindingW, RpcImpersonateClient, RpcRevertToSelf, UuidCreate, RpcStringFreeW, UuidToStringA
( 276 exports )
CertAddCRLContextToStore, CertAddCRLLinkToStore, CertAddCTLContextToStore, CertAddCTLLinkToStore, CertAddCertificateContextToStore, CertAddCertificateLinkToStore, CertAddEncodedCRLToStore, CertAddEncodedCTLToStore, CertAddEncodedCertificateToStore, CertAddEncodedCertificateToSystemStoreA, CertAddEncodedCertificateToSystemStoreW, CertAddEnhancedKeyUsageIdentifier, CertAddSerializedElementToStore, CertAddStoreToCollection, CertAlgIdToOID, CertCloseStore, CertCompareCertificate, CertCompareCertificateName, CertCompareIntegerBlob, CertComparePublicKeyInfo, CertControlStore, CertCreateCRLContext, CertCreateCTLContext, CertCreateCTLEntryFromCertificateContextProperties, CertCreateCertificateChainEngine, CertCreateCertificateContext, CertCreateContext, CertCreateSelfSignCertificate, CertDeleteCRLFromStore, CertDeleteCTLFromStore, CertDeleteCertificateFromStore, CertDuplicateCRLContext, CertDuplicateCTLContext, CertDuplicateCertificateChain, CertDuplicateCertificateContext, CertDuplicateStore, CertEnumCRLContextProperties, CertEnumCRLsInStore, CertEnumCTLContextProperties, CertEnumCTLsInStore, CertEnumCertificateContextProperties, CertEnumCertificatesInStore, CertEnumPhysicalStore, CertEnumSubjectInSortedCTL, CertEnumSystemStore, CertEnumSystemStoreLocation, CertFindAttribute, CertFindCRLInStore, CertFindCTLInStore, CertFindCertificateInCRL, CertFindCertificateInStore, CertFindChainInStore, CertFindExtension, CertFindRDNAttr, CertFindSubjectInCTL, CertFindSubjectInSortedCTL, CertFreeCRLContext, CertFreeCTLContext, CertFreeCertificateChain, CertFreeCertificateChainEngine, CertFreeCertificateContext, CertGetCRLContextProperty, CertGetCRLFromStore, CertGetCTLContextProperty, CertGetCertificateChain, CertGetCertificateContextProperty, CertGetEnhancedKeyUsage, CertGetIntendedKeyUsage, CertGetIssuerCertificateFromStore, CertGetNameStringA, CertGetNameStringW, CertGetPublicKeyLength, CertGetStoreProperty, CertGetSubjectCertificateFromStore, CertGetValidUsages, CertIsRDNAttrsInCertificateName, CertIsValidCRLForCertificate, CertNameToStrA, CertNameToStrW, CertOIDToAlgId, CertOpenStore, CertOpenSystemStoreA, CertOpenSystemStoreW, CertRDNValueToStrA, CertRDNValueToStrW, CertRegisterPhysicalStore, CertRegisterSystemStore, CertRemoveEnhancedKeyUsageIdentifier, CertRemoveStoreFromCollection, CertResyncCertificateChainEngine, CertSaveStore, CertSerializeCRLStoreElement, CertSerializeCTLStoreElement, CertSerializeCertificateStoreElement, CertSetCRLContextProperty, CertSetCTLContextProperty, CertSetCertificateContextPropertiesFromCTLEntry, CertSetCertificateContextProperty, CertSetEnhancedKeyUsage, CertSetStoreProperty, CertStrToNameA, CertStrToNameW, CertUnregisterPhysicalStore, CertUnregisterSystemStore, CertVerifyCRLRevocation, CertVerifyCRLTimeValidity, CertVerifyCTLUsage, CertVerifyCertificateChainPolicy, CertVerifyRevocation, CertVerifySubjectCertificateContext, CertVerifyTimeValidity, CertVerifyValidityNesting, ChainWlxLogoffEvent, CloseCertPerformanceData, CollectCertPerformanceData, CreateFileU, CryptAcquireCertificatePrivateKey, CryptAcquireContextU, CryptBinaryToStringA, CryptBinaryToStringW, CryptCloseAsyncHandle, CryptCreateAsyncHandle, CryptCreateKeyIdentifierFromCSP, CryptDecodeMessage, CryptDecodeObject, CryptDecodeObjectEx, CryptDecryptAndVerifyMessageSignature, CryptDecryptMessage, CryptEncodeObject, CryptEncodeObjectEx, CryptEncryptMessage, CryptEnumKeyIdentifierProperties, CryptEnumOIDFunction, CryptEnumOIDInfo, CryptEnumProvidersU, CryptExportPKCS8, CryptExportPublicKeyInfo, CryptExportPublicKeyInfoEx, CryptFindCertificateKeyProvInfo, CryptFindLocalizedName, CryptFindOIDInfo, CryptFormatObject, CryptFreeOIDFunctionAddress, CryptGetAsyncParam, CryptGetDefaultOIDDllList, CryptGetDefaultOIDFunctionAddress, CryptGetKeyIdentifierProperty, CryptGetMessageCertificates, CryptGetMessageSignerCount, CryptGetOIDFunctionAddress, CryptGetOIDFunctionValue, CryptHashCertificate, CryptHashMessage, CryptHashPublicKeyInfo, CryptHashToBeSigned, CryptImportPKCS8, CryptImportPublicKeyInfo, CryptImportPublicKeyInfoEx, CryptInitOIDFunctionSet, CryptInstallDefaultContext, CryptInstallOIDFunctionAddress, CryptLoadSip, CryptMemAlloc, CryptMemFree, CryptMemRealloc, CryptMsgCalculateEncodedLength, CryptMsgClose, CryptMsgControl, CryptMsgCountersign, CryptMsgCountersignEncoded, CryptMsgDuplicate, CryptMsgEncodeAndSignCTL, CryptMsgGetAndVerifySigner, CryptMsgGetParam, CryptMsgOpenToDecode, CryptMsgOpenToEncode, CryptMsgSignCTL, CryptMsgUpdate, CryptMsgVerifyCountersignatureEncoded, CryptMsgVerifyCountersignatureEncodedEx, CryptProtectData, CryptQueryObject, CryptRegisterDefaultOIDFunction, CryptRegisterOIDFunction, CryptRegisterOIDInfo, CryptSIPAddProvider, CryptSIPCreateIndirectData, CryptSIPGetSignedDataMsg, CryptSIPLoad, CryptSIPPutSignedDataMsg, CryptSIPRemoveProvider, CryptSIPRemoveSignedDataMsg, CryptSIPRetrieveSubjectGuid, CryptSIPRetrieveSubjectGuidForCatalogFile, CryptSIPVerifyIndirectData, CryptSetAsyncParam, CryptSetKeyIdentifierProperty, CryptSetOIDFunctionValue, CryptSetProviderU, CryptSignAndEncodeCertificate, CryptSignAndEncryptMessage, CryptSignCertificate, CryptSignHashU, CryptSignMessage, CryptSignMessageWithKey, CryptStringToBinaryA, CryptStringToBinaryW, CryptUninstallDefaultContext, CryptUnprotectData, CryptUnregisterDefaultOIDFunction, CryptUnregisterOIDFunction, CryptUnregisterOIDInfo, CryptVerifyCertificateSignature, CryptVerifyCertificateSignatureEx, CryptVerifyDetachedMessageHash, CryptVerifyDetachedMessageSignature, CryptVerifyMessageHash, CryptVerifyMessageSignature, CryptVerifyMessageSignatureWithKey, CryptVerifySignatureU, I_CertProtectFunction, I_CertSrvProtectFunction, I_CertSyncStore, I_CertUpdateStore, I_CryptAddRefLruEntry, I_CryptAddSmartCardCertToStore, I_CryptAllocTls, I_CryptCreateLruCache, I_CryptCreateLruEntry, I_CryptDetachTls, I_CryptDisableLruOfEntries, I_CryptEnableLruOfEntries, I_CryptEnumMatchingLruEntries, I_CryptFindLruEntry, I_CryptFindLruEntryData, I_CryptFindSmartCardCertInStore, I_CryptFlushLruCache, I_CryptFreeLruCache, I_CryptFreeTls, I_CryptGetAsn1Decoder, I_CryptGetAsn1Encoder, I_CryptGetDefaultCryptProv, I_CryptGetDefaultCryptProvForEncrypt, I_CryptGetFileVersion, I_CryptGetLruEntryData, I_CryptGetLruEntryIdentifier, I_CryptGetOssGlobal, I_CryptGetTls, I_CryptInsertLruEntry, I_CryptInstallAsn1Module, I_CryptInstallOssGlobal, I_CryptReadTrustedPublisherDWORDValueFromRegistry, I_CryptRegisterSmartCardStore, I_CryptReleaseLruEntry, I_CryptRemoveLruEntry, I_CryptSetTls, I_CryptTouchLruEntry, I_CryptUninstallAsn1Module, I_CryptUninstallOssGlobal, I_CryptUnregisterSmartCardStore, I_CryptWalkAllLruCacheEntries, OpenCertPerformanceData, PFXExportCertStore, PFXExportCertStoreEx, PFXImportCertStore, PFXIsPFXBlob, PFXVerifyPassword, RegCreateHKCUKeyExU, RegCreateKeyExU, RegDeleteValueU, RegEnumValueU, RegOpenHKCUKeyExU, RegOpenKeyExU, RegQueryInfoKeyU, RegQueryValueExU, RegSetValueExU
Deuxieme rapport avec OAD :
2008-04-20 ---- 18:23:52,53
----------------------------------
§§§§§§ [crypt32 ] §§§§§§
----------------------------------
[X] Registre
-------------- [ ] rapide
-- Fichier --- [ ] disque systeme
------------- [X] complete
********************
[Registre]
********************
Aucune entrée détectée
*******************
[Fichier]
*******************
*********************
[Même date]
*********************
Aucun fichier créé à la même date détecté
Outil Aide Diagnostic By !aur3n7 Version 1.1
----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------
Merci de ton aide.