PDA

View Full Version : ieri mi ha cancellato 950 virus.. ma 17 sono irremovibili..


margherita08
12-01-2007, 22:41
ciao..
ieri ho installato ad aware nel pc infetto.. mi ha trovato 950 virus o similari.. non riesce a toglierne 17 circa.. penso gli stessi che non riusciva a togliere avast.. mi dicono che se li cancello potrebbe subire danni il sistema operativo.. infatti quakche mese fa cancellandone due ho fatto saltare l'audio.. per esempio questa è la lista di ad aware

Ad-Aware SE Build 1.06r1
Logfile Created on:venerdì 12 gennaio 2007 22.49.02
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R143 08.01.2007
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Adware.Agent(TAC index:5):1 total references
Adware.MMSAssist(TAC index:3):15 total references
MRU List(TAC index:0):1 total references
Tracking Cookie(TAC index:3):4 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file

Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects


12-01-2007 22.49.02 - Scan started. (Smart mode)

Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 448
ThreadCreationTime : 12-01-2007 21.01.28
BasePriority : Normal


#:2 [csrss.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 500
ThreadCreationTime : 12-01-2007 21.01.30
BasePriority : Normal


#:3 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 528
ThreadCreationTime : 12-01-2007 21.01.31
BasePriority : High


#:4 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 572
ThreadCreationTime : 12-01-2007 21.01.31
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Applicazione Servizi e Controller
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : services.exe

#:5 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 584
ThreadCreationTime : 12-01-2007 21.01.31
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe

#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 756
ThreadCreationTime : 12-01-2007 21.01.31
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:7 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 804
ThreadCreationTime : 12-01-2007 21.01.32
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 872
ThreadCreationTime : 12-01-2007 21.01.32
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:9 [incdsrv.exe]
FilePath : C:\Programmi\Ahead\InCD\
ProcessID : 892
ThreadCreationTime : 12-01-2007 21.01.32
BasePriority : Normal
FileVersion : 4, 2, 12, 1
ProductVersion : 4, 2, 12, 1
ProductName : Ahead Software AG incdsrv
CompanyName : Ahead Software AG
FileDescription : incdsrv
InternalName : incdsrv
LegalCopyright : Copyright 1995-2004 Ahead Software AG and its licensors. All Rights Reserved.
LegalTrademarks : InCD is a trademark of Ahead Software AG
OriginalFilename : incdsrv.exe

#:10 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 968
ThreadCreationTime : 12-01-2007 21.01.32
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:11 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1052
ThreadCreationTime : 12-01-2007 21.01.32
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:12 [lexbces.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1240
ThreadCreationTime : 12-01-2007 21.01.33
BasePriority : Normal
FileVersion : 7.4
ProductVersion : 7.4
ProductName : MarkVision for Windows (32 bit)
CompanyName : Lexmark International, Inc.
FileDescription : LexBce Service
InternalName : LexBce Service
LegalCopyright : (C) 1993 - 2002 Lexmark International, Inc.
OriginalFilename : LexBceS.exe

#:13 [lexpps.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1288
ThreadCreationTime : 12-01-2007 21.01.33
BasePriority : Normal
FileVersion : 7.4
ProductVersion : 7.4
ProductName : MarkVision for Windows (32 bit)
CompanyName : Lexmark International, Inc.
FileDescription : LEXPPS.EXE
InternalName : LEXPPS
LegalCopyright : (C) 1993 - 2002 Lexmark International, Inc.
OriginalFilename : LEXPPS.EXE
Comments : MarkVision for Windows '95 New P2P Server (32-bit)

#:14 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1308
ThreadCreationTime : 12-01-2007 21.01.33
BasePriority : Normal
FileVersion : 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)
ProductVersion : 5.1.2600.2696
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe

#:15 [aswupdsv.exe]
FilePath : C:\Programmi\Alwil Software\Avast4\
ProcessID : 1480
ThreadCreationTime : 12-01-2007 21.01.34
BasePriority : Normal


#:16 [ashserv.exe]
FilePath : C:\Programmi\Alwil Software\Avast4\
ProcessID : 1492
ThreadCreationTime : 12-01-2007 21.01.34
BasePriority : High
FileVersion : 4, 7, 889, 0
ProductVersion : 4, 7, 0, 0
ProductName : avast! Antivirus
FileDescription : avast! antivirus service
InternalName : aswServ
LegalCopyright : Copyright (c) 2006 ALWIL Software
OriginalFilename : aswServ.exe

#:17 [cdac11ba.exe]
FilePath : C:\WINDOWS\system32\drivers\
ProcessID : 1584
ThreadCreationTime : 12-01-2007 21.01.34
BasePriority : Normal
FileVersion : 4.20.020
ProductVersion : 4.20.020 Windows NT 2002/12/10
ProductName : SafeCast Windows NT
CompanyName : Macrovision
FileDescription : Macrovision RTS Service
InternalName : CDANTSRV
LegalCopyright : Copyright (c) 1998-2002 Macrovision Corp.
OriginalFilename : CDANTSRV.EXE
Comments : StringFileInfo: U.S. English

#:18 [ntkrnl.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1676
ThreadCreationTime : 12-01-2007 21.01.34
BasePriority : Normal


#:19 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1760
ThreadCreationTime : 12-01-2007 21.01.34
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:20 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 1908
ThreadCreationTime : 12-01-2007 21.01.35
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Esplora risorse
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : EXPLORER.EXE

#:21 [ashmaisv.exe]
FilePath : C:\Programmi\Alwil Software\Avast4\
ProcessID : 1004
ThreadCreationTime : 12-01-2007 21.02.05
BasePriority : Normal


#:22 [ashwebsv.exe]
FilePath : C:\Programmi\Alwil Software\Avast4\
ProcessID : 1080
ThreadCreationTime : 12-01-2007 21.02.05
BasePriority : Normal


#:23 [alg.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1840
ThreadCreationTime : 12-01-2007 21.02.05
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Application Layer Gateway Service
InternalName : ALG.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ALG.exe

#:24 [soundman.exe]
FilePath : C:\WINDOWS\
ProcessID : 2508
ThreadCreationTime : 12-01-2007 21.09.38
BasePriority : Normal
FileVersion : 5.1.0.29
ProductVersion : 5.1.0.29
ProductName : Realtek Sound Manager
CompanyName : Realtek Semiconductor Corp.
FileDescription : Realtek Sound Manager
InternalName : ALSMTray
LegalCopyright : Copyright (c) 2001-2004 Realtek Semiconductor Corp.
OriginalFilename : ALSMTray.exe
Comments : Realtek AC97 Audio Sound Manager

#:25 [pdvdserv.exe]
FilePath : C:\Programmi\CyberLink DVD Solution\PowerDVD\
ProcessID : 2520
ThreadCreationTime : 12-01-2007 21.09.38
BasePriority : Normal
FileVersion : 5.00.0000
ProductVersion : 5.00.0000
ProductName : PowerDVD
CompanyName : Cyberlink Corp.
FileDescription : PowerDVD RC Service
InternalName : PowerDVD RC Service
LegalCopyright : Copyright (c) CyberLink Corp. 1997-2002
OriginalFilename : PDVDSERV.EXE

#:26 [incd.exe]
FilePath : C:\Programmi\Ahead\InCD\
ProcessID : 2568
ThreadCreationTime : 12-01-2007 21.09.38
BasePriority : Normal
FileVersion : 4, 2, 12, 1
ProductVersion : 4, 2, 12, 1
ProductName : Ahead Software AG InCD
CompanyName : Ahead Software AG
FileDescription : InCD
InternalName : InCD
LegalCopyright : Copyright 1995-2004 Ahead Software AG and its licensors. All Rights Reserved.
LegalTrademarks : InCD is a trademark of Ahead Software AG
OriginalFilename : InCD.exe

#:27 [ashdisp.exe]
FilePath : C:\PROGRA~1\ALWILS~1\Avast4\
ProcessID : 2716
ThreadCreationTime : 12-01-2007 21.09.38
BasePriority : Normal
FileVersion : 5, 0, 0, 0
ProductVersion : 5, 0, 0, 0
ProductName : avast! Antivirus
FileDescription : avast! service GUI component
InternalName : aswDisp
LegalCopyright : Copyright (c) 2006 ALWIL Software
OriginalFilename : aswDisp.exe

#:28 [versioncuetray.exe]
FilePath : C:\Programmi\Adobe\Adobe Version Cue\ControlPanel\
ProcessID : 2736
ThreadCreationTime : 12-01-2007 21.09.38
BasePriority : Normal


#:29 [pduip6220dmon.exe]
FilePath : C:\Programmi\Canon\Memory Card Utility\iP6220D\
ProcessID : 2744
ThreadCreationTime : 12-01-2007 21.09.38
BasePriority : Normal
FileVersion : 3.00
ProductVersion : 3.00
ProductName : Memory Card Utility
CompanyName : CANON INC.
FileDescription : PDUMon
InternalName : PDUMon
LegalCopyright : Copyright CANON INC. 2004 All Rights Reserved.
OriginalFilename : PDUMon.exe

#:30 [datala~1.exe]
FilePath : C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\
ProcessID : 2920
ThreadCreationTime : 12-01-2007 21.09.40
BasePriority : Normal
FileVersion : 6, 4, 76, 5
ProductVersion : 5, 0
ProductName : Nokia PC Suite
CompanyName : Nokia Mobile Phones Ltd.
FileDescription : DataLayer 2.0 Module
InternalName : DataLayer 2.0
LegalCopyright : Copyright (c) 2004. Nokia. All rights reserved.
OriginalFilename : DataLayer.exe

#:31 [trayap~1.exe]
FilePath : C:\PROGRA~1\Nokia\NOKIAP~1\
ProcessID : 2928
ThreadCreationTime : 12-01-2007 21.09.40
BasePriority : Normal
FileVersion : 6, 4, 27, 0
ProductVersion : 6, 0, 27, 0
ProductName : Tray Application
FileDescription : Tray Application
InternalName : Tray Application
LegalCopyright : Copyright © 2001 - 2004 Nokia. All Rights Reserved.
OriginalFilename : TrayApplication.EXE

#:32 [ctfmon.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2936
ThreadCreationTime : 12-01-2007 21.09.40
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : CTF Loader
InternalName : CTFMON
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : CTFMON.EXE

#:33 [msmsgs.exe]
FilePath : C:\Programmi\Messenger\
ProcessID : 2944
ThreadCreationTime : 12-01-2007 21.09.40
BasePriority : Normal
FileVersion : 4.7.3001
ProductVersion : Version 4.7.3001
ProductName : Messenger
CompanyName : Microsoft Corporation
FileDescription : Windows Messenger
InternalName : msmsgs
LegalCopyright : Copyright (c) Microsoft Corporation 2004
LegalTrademarks : Microsoft(R) is a registered trademark of Microsoft Corporation in the U.S. and/or other countries.
OriginalFilename : msmsgs.exe

#:34 [acrotray.exe]
FilePath : C:\Programmi\Adobe\Adobe Acrobat 6.0\Distillr\
ProcessID : 2964
ThreadCreationTime : 12-01-2007 21.09.40
BasePriority : Normal
FileVersion : 6.0.0.2003051500
ProductVersion : 6.0.0.0
ProductName : AcroTray - Adobe Acrobat Distiller helper application.
CompanyName : Adobe Systems Inc.
FileDescription : AcroTray
InternalName : AcroTray
LegalCopyright : Copyright 1984-2003 Adobe Systems Incorporated and its licensors. All rights reserved.
OriginalFilename : AcroTray.exe

#:35 [servic~1.exe]
FilePath : C:\PROGRA~1\FILECO~1\PCSuite\Services\
ProcessID : 3020
ThreadCreationTime : 12-01-2007 21.09.41
BasePriority : Normal
FileVersion : 6, 4, 17, 0
ProductVersion : 6.0
ProductName : Nokia Connectivity Library
CompanyName : Nokia.
FileDescription : ServiceLayer Module
InternalName : ServiceLayer
LegalCopyright : Copyright © 2002-2004 Nokia. All Rights Reserved.
OriginalFilename : ServiceLayer.exe

#:36 [iexplore.exe]
FilePath : C:\Programmi\Internet Explorer\
ProcessID : 3304
ThreadCreationTime : 12-01-2007 21.10.54
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Internet Explorer
InternalName : iexplore
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : IEXPLORE.EXE

#:37 [googletoolbarnotifier.exe]
FilePath : C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\
ProcessID : 3400
ThreadCreationTime : 12-01-2007 21.10.57
BasePriority : Normal
FileVersion : 1, 2, 908, 5008
ProductVersion : 1, 2, 908, 5008
ProductName : GoogleToolbarNotifier
CompanyName : Google Inc.
FileDescription : GoogleToolbarNotifier
LegalCopyright : Copyright © 2005-2006
OriginalFilename : GoogleToolbarNotifier.exe

#:38 [acrobat.exe]
FilePath : C:\Programmi\Adobe\Adobe Acrobat 6.0\Acrobat\
ProcessID : 3480
ThreadCreationTime : 12-01-2007 21.11.48
BasePriority : Normal
FileVersion : 6.0.0.2003051900
ProductVersion : 6.0.0.2003051900
ProductName : Adobe Acrobat
CompanyName : Adobe Systems Incorporated
FileDescription : Adobe Acrobat 6.0
LegalCopyright : Copyright 1984-2003 Adobe Systems Incorporated and its licensors. All rights reserved.
OriginalFilename : acrobat.exe

#:39 [ad-aware.exe]
FilePath : C:\Programmi\Lavasoft\Ad-Aware SE Personal\
ProcessID : 4048
ThreadCreationTime : 12-01-2007 21.48.03
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved

Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0


Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Adware.Agent Object Recognized!
Type : Regkey
Data :
TAC Rating : 5
Category : Data Miner
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : clsid\{4c611512-2c1d-44b2-a044-872ad2ad5a61}

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : clsid\{6671a431-5c3d-463d-a7cf-5587f9b7e191}

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : typelib\{077525ac-c681-4139-8c3e-b582bdd375c7}

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\mmsassist

Adware.MMSAssist Object Recognized!
Type : RegValue
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\mmsassist
Value : regup

Adware.MMSAssist Object Recognized!
Type : RegValue
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\mmsassist
Value : pid

Adware.MMSAssist Object Recognized!
Type : RegValue
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\mmsassist
Value : reg

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\windows\currentversion\explorer\browser helper objects\{6671a431-5c3d-463d-a7cf-5587f9b7e191}

Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 8
Objects found so far: 8


Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 8


Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»


Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mio@overture[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:3
Value : Cookie:[email protected]/
Expires : 09-01-2017 22.33.26
LastSync : Hits:3
UseCount : 0
Hits : 3

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mio@doubleclick[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:3
Value : Cookie:[email protected]/
Expires : 11-01-2010 22.11.42
LastSync : Hits:3
UseCount : 0
Hits : 3

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mio@bluestreak[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:6
Value : Cookie:[email protected]/
Expires : 09-01-2017 17.14.26
LastSync : Hits:6
UseCount : 0
Hits : 6

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mio@tradedoubler[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:1
Value : Cookie:[email protected]/
Expires : 16-01-2007 22.16.46
LastSync : Hits:1
UseCount : 0
Hits : 1

Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 4
Objects found so far: 12



Deep scanning and examining files...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 12

Disk Scan Result for C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 12

Disk Scan Result for C:\DOCUME~1\mio\IMPOST~1\Temp\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 12

MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw



Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : mmsbho.mmsassist

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : mmsbho.mmsassist.1

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : mmsbho.mmsassistmenu

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_CLASSES_ROOT
Object : mmsbho.mmsassistmenu.1

Adware.MMSAssist Object Recognized!
Type : Regkey
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\stdup

Adware.MMSAssist Object Recognized!
Type : RegValue
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\stdup
Value : pid

Adware.MMSAssist Object Recognized!
Type : RegValue
Data :
TAC Rating : 3
Category : Adware
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\stdup
Value : reg

Adware.MMSAssist Object Recognized!
Type : File
Data : std.ini
TAC Rating : 3
Category : Adware
Comment :
Object : C:\WINDOWS\system32\



Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 8
Objects found so far: 21

22.49.30 Scan Complete

Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00.00.28.313
Objects scanned:104668
Objects identified:20
Objects ignored:0
New critical objects:20







e questa di avast
Win 32 BDS Search-B (adw)
Win 32 Baron E
Win 32 Baron F
ecc...
se qualcuno mi potesse dare un consiglio.. grazie in anticipo.. :help:

FOXYLADY
13-01-2007, 11:55
Fai un controllo coi software consigliati qui
http://www.hwupgrade.it/forum/showthread.php?t=1142673
e posta un log di hijackthis ;)

wizard1993
13-01-2007, 13:34
scan online con bitdefender che male non fa

margherita08
13-01-2007, 14:56
scan online con bitdefender che male non fa

l'avevo già fatto... e non aveva trovato niente..

margherita08
13-01-2007, 14:57
Fai un controllo coi software consigliati qui
http://www.hwupgrade.it/forum/showthread.php?t=1142673
e posta un log di hijackthis ;)

cosa vuol dire postare un log?

ania
13-01-2007, 15:06
cosa vuol dire postare un log?


ciao Margherita, ti suggerisco un paio di threads :read: :
http://www.hwupgrade.it/forum/showthread.php?t=1142673
Prima di chiedere aiuto leggete qui! COMPORTAMENTO DA SEGUIRE!


http://www.hwupgrade.it/forum/showthread.php?t=937676
[Official Thread] HiJackThis - I Vostri LOG qua

Il log di HiJack This ( HJT) si ottiene utilizzano il software omonimo HJT, che è un utile ed ingegnoso strumento diagnostico, ma in realtà non solo diagnostico, infatti, una volta fatta l'analisi del log, seguendo i suggerimenti dei più esperti ;) , potrai procedere alla rimozione di quanto di malevolo si è insediato/installato sul tuo pc. ;)

I threads che ti ho indicato :read: sono davvero molto ben scritti, sono estremamente chiari e dettagliati, leggerli, apprendere e memorizzare quanto in essi è riportato, ti sarà sicuramente estremamente utile, non solo oggi nell'emergenza :help: , ma anche per il futuro.
ciao ;)

margherita08
13-01-2007, 15:31
ciao Margherita, ti suggerisco un paio di threads :read: :
http://www.hwupgrade.it/forum/showthread.php?t=1142673
Prima di chiedere aiuto leggete qui! COMPORTAMENTO DA SEGUIRE!


http://www.hwupgrade.it/forum/showthread.php?t=937676
[Official Thread] HiJackThis - I Vostri LOG qua

Il log di HiJack This ( HJT) si ottiene utilizzano il software omonimo HJT, che è un utile ed ingegnoso strumento diagnostico, ma in realtà non solo diagnostico, infatti, una volta fatta l'analisi del log, seguendo i suggerimenti dei più esperti ;) , potrai procedere alla rimozione di quanto di malevolo si è insediato/installato sul tuo pc. ;)

I threads che ti ho indicato :read: sono davvero molto ben scritti, sono estremamente chiari e dettagliati, leggerli, apprendere e memorizzare quanto in essi è riportato, ti sarà sicuramente estremamente utile, non solo oggi nell'emergenza :help: , ma anche per il futuro.
ciao ;)

grazie.. avevo già letto il comportamento da seguire..
però la guida in italiano di Hijackthis dice che se non si è esperti è meglio lasciare perdere..
ho fatto scansione con drwebcure it
pure con altro tipo consigliato..
grazie cmq

ania
13-01-2007, 15:39
però la guida in italiano di Hijackthis dice che se non si è esperti è meglio lasciare perdere..
ho fatto scansione con drwebcure it



Ciao, la guida giustamente ti suggerisce di NON rimuovere voci , operando tu di tua iniziativa, a meno chè tu non sia già esperta e molto competente in materia, magari affidandoti solo agli analizzatori di logfile che potresti trovare un pò ovunque in rete.

Ma, IMHO, il programma HJT sarebbe estremamente utile che tu imparassi a conoscerlo e ad usarlo, nei primi tempi unicamente e solo come strumento diagnostico, e per postare i logfile nella sezione appropriata -come ti ha suggerito il bravissimo FOXYLADY- e poi, se ti appassionerai allo studio di queste cose, un domani , sarai anche capace di interpretare autonomamente i tuoi logfile e di usare HJT anche come strumento terapeutico sul tuo pc.
ciao

FOXYLADY
13-01-2007, 16:07
cosa vuol dire postare un log?

Per postare il log devi andare nel thread che ti ha indicato ania, cioè questo
http://www.hwupgrade.it/forum/showthread.php?t=937676
[Official Thread] HiJackThis - I Vostri LOG qua

scarichi il programmino hijackthis, lo scompatti in una cartella creata appositamente per lui, lanci l'eseguibile hijackthis.exe e clicchi su "do a system scan and save log file", verrà automaticamente creato un file di testo con il log di hijackthis, copiane il contenuto ed incollalo qui sul forum, così possiamo dargli un occhiata ;)

margherita08
28-01-2007, 15:27
risolto formattando...