Precedente :: Successivo |
Autore |
Messaggio |
davide2809 Mortale devoto

Registrato: 20/05/07 17:38 Messaggi: 11
|
Inviato: 21 Mag 2007 15:57 Oggetto: Computer infettato da Trojan-Proxy.Win32 |
|
|
Ho fatto una scansione con Kaspersky on line, questo è l'infelice risultato.
Qualcuno sa dirmi cosa devo fare?
Monday, May 21, 2007 3:39:33 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 21/05/2007
Kaspersky Anti-Virus database records: 305277
Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
C:\
D:\
E:\
F:\
G:\
Scan Statistics
Total number of scanned objects 89352
Number of viruses found 6
Number of infected objects 10 / 0
Number of suspicious objects 0
Duration of the scan process 01:30:23
Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Dati applicazioni\Sony Corporation\SonicStage\Packages\MtData.ldb Object is locked skipped
C:\Documents and Settings\All Users\Dati applicazioni\Sony Corporation\SonicStage\Packages\MtData.mdb Object is locked skipped
C:\Documents and Settings\All Users\Dati applicazioni\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\VzCdb_Mgr.ldf Object is locked skipped
C:\Documents and Settings\All Users\Dati applicazioni\Sony Corporation\VAIO Entertainment Platform\1.0\VzCdb\VzCdb_Mgr.mdf Object is locked skipped
C:\Documents and Settings\DAVIDE\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Cronologia\History.IE5\MSHist012007052120070522\index.dat Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\ApplicationHistory\hpqimzone.exe.3749b56a.ini.inuse Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\administrativeInfo.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\albumImagesTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\albumImagesTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\albumTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\albumTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\CB_Server_Errors.txt Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\EXIFTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\EXIFTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\imageTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\imageTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\imageTable.fpt Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\keywordImagesTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\keywordImagesTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\keywordTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\keywordTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\managedFolderTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\pathnameTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\pathnameTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\propertiesTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\propertiesTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\ROFImagesTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\ROFImagesTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\ROFTable.cdx Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\HP\Digital Imaging\db\ROFTable.dbf Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Temp\hpodvd09.log Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Temp\~DF1B53.tmp Object is locked skipped
C:\Documents and Settings\DAVIDE\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\DAVIDE\ntuser.dat Object is locked skipped
C:\Documents and Settings\DAVIDE\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Programmi\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Programmi\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Programmi\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Programmi\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Programmi\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Programmi\Alwil Software\Avast4\DATA\report\Protezione residente.txt Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\master.mdf Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\mastlog.ldf Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\model.mdf Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\modellog.ldf Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\tempdb.mdf Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\Data\templog.ldf Object is locked skipped
C:\Programmi\Microsoft SQL Server\MSSQL$VAIO_VEDB\LOG\ERRORLOG Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP182\A0057657.exe Infected: Trojan-Proxy.Win32.Horst.ya skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP182\A0058575.exe Infected: Trojan-Proxy.Win32.Horst.pu skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP183\A0058592.exe Infected: Trojan-Proxy.Win32.Horst.wo skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP183\A0058593.exe Infected: Trojan-Proxy.Win32.Horst.yl skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP183\A0058594.exe Infected: Trojan-Proxy.Win32.Horst.ya skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP183\A0058644.exe Infected: Trojan-Proxy.Win32.Horst.yl skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP183\A0058645.exe Infected: Trojan-Proxy.Win32.Horst.ya skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP183\A0058646.exe Infected: Trojan-Proxy.Win32.Horst.wo skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP197\A0060954.exe Infected: Trojan-Proxy.Win32.Horst.sv skipped
C:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP201\change.log Object is locked skipped
C:\VAIO Entertainment\database\VzCdbDat.ldf Object is locked skipped
C:\VAIO Entertainment\database\VzCdbDat.mdf Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Internet Logs\fwdbglog.txt Object is locked skipped
C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped
C:\WINDOWS\Internet Logs\IAMDB.RDB Object is locked skipped
C:\WINDOWS\Internet Logs\NOME-ADAB81B928.ldb Object is locked skipped
C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped
C:\WINDOWS\ModemLog_HDAUDIO SoftV92 Data Fax Modem with SmartCP.txt Object is locked skipped
C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{0C61BC1F-AB32-46DC-AEAF-D24E2EA46F44}.crmlog Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\atapi.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\JETC30C.tmp Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_268.dat Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_294.dat Object is locked skipped
C:\WINDOWS\Temp\ZLT062e2.TMP Object is locked skipped
C:\WINDOWS\Temp\ZLT06dc0.TMP Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
D:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP182\A0057671.exe Infected: Trojan-Downloader.Win32.Agent.aii skipped
D:\System Volume Information\_restore{8DA514DD-4401-422C-BC2E-ECBFA9536D4D}\RP201\change.log Object is locked skipped
Scan process completed. |
|
Top |
|
 |
Orange Dio maturo

Registrato: 18/02/07 13:20 Messaggi: 2224 Residenza: Roma
|
Inviato: 21 Mag 2007 16:24 Oggetto: |
|
|
riciao
potevi anche continuare nella tua precedente discussione...
scarica A-Squared
avvia in mod. provvisoria e disattiva il ripristino di configurazione.(QUI se non sai come fare)
tutte le infezioni segnalate da Kaspersky si trovano in System_restore e disattivando il ripristino elimini anche i virus..
riavvia e fai lo scan con il tool (giusto per stare tranquilli.. ) |
|
Top |
|
 |
davide2809 Mortale devoto

Registrato: 20/05/07 17:38 Messaggi: 11
|
Inviato: 21 Mag 2007 18:51 Oggetto: |
|
|
Sembra tutto ok...
Grazie ancora Orange!!!
(Sapresti dirmi cosa vuol dire nell'elenco di Kaspersky "object is locked" ?) |
|
Top |
|
 |
Orange Dio maturo

Registrato: 18/02/07 13:20 Messaggi: 2224 Residenza: Roma
|
Inviato: 21 Mag 2007 19:30 Oggetto: |
|
|
Figurati.
locked se non erro vuol dire chiuso, bloccato. però quelli segnalati sono tutti leggittimi..
non dimenticarti di riattivare il ripristino di configurazione. |
|
Top |
|
 |
|