PDA

View Full Version : Problemi Antivir...Sono infetto o no??


Workman86
16-10-2008, 20:03
Ciao ragazzi...Ho il dubbio di essere infetto..Potreste aiutarmi leggendo questo report??
Io ho Antivir...
Grazie


Log rimosso non conforme alle Regole

wjmat
16-10-2008, 20:25
ciao
il log riallegalo secondo le modalità che ho in firma please

hai delle mail infette

Disattiva momentaneamente il realtime di Antivir
lancia thunderbird
cancella tutte le mail infette
svuota il cestino
File -> Non in linea -> Lavora scollegato -> No
dopodichè click destro sulla cartella con le mail in arrivo e selezioni compatta e attendi
File -> Non in linea -> Togli la spunta a Lavora scollegato
Riattiva il realtime di antivir

per controllo scansiona con antivir
C:\Documents and Settings\Administrator\Dati applicazioni\Thunderbird\Profiles\

Workman86
16-10-2008, 20:32
Scusami ma nn so cm si allega il file.. :(
Cmq nn so quale siano le e-mail infette.....
Quando faccio il controllo di quella cartella mi dice questo:

Log rimosso non conforme alle Regole

wjmat
16-10-2008, 20:47
ti ho detto che ho le modalità di pubblicazione dei log in firma.....

Mailbox_[From: "Utente di eBay"<[email protected]>][Subject: Messaggio di un utente sull'oggetto #2302966980][Message-ID:
Mailbox_[From: "Utente di eBay"<[email protected]>][Subject: Messaggio di un utente sull'oggetto #2302966980][Message-ID:

Workman86
16-10-2008, 21:28
ma queste e-mail nn le ho...
le ho cancellate

wjmat
16-10-2008, 21:35
hai fatto tutto quello che ti ho scritto qui
http://www.hwupgrade.it/forum/showpost.php?p=24598789&postcount=2

Workman86
16-10-2008, 21:41
ho compattato dopo aver messo non in linea...

ma nn ho cancellato niente...

Chill-Out
16-10-2008, 21:47
L'utente wjmat ti ha invitato due volte ad allegare i log secondo le Regole di sezione che ho in firma, io ti invito per la terza volta, aiutateci ad aiutarvi, grazie per la collaborazione.

Workman86
16-10-2008, 22:16
Ecco...Spero di nn sbagliare!!



Avira AntiVir Personal
Report file date: giovedì 16 ottobre 2008 20:43

Scanning for 1688451 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: ALFIERI-546F074

Version information:
BUILD.DAT : 8.1.0.331 16934 Bytes 12/08/2008 11:46:00
AVSCAN.EXE : 8.1.4.7 315649 Bytes 17/07/2008 19:38:04
AVSCAN.DLL : 8.1.4.0 40705 Bytes 17/07/2008 19:38:04
LUKE.DLL : 8.1.4.5 164097 Bytes 17/07/2008 19:38:04
LUKERES.DLL : 8.1.4.0 12033 Bytes 17/07/2008 19:38:04
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 24/06/2008 18:49:08
ANTIVIR2.VDF : 7.0.7.12 4066816 Bytes 08/10/2008 16:07:29
ANTIVIR3.VDF : 7.0.7.51 266752 Bytes 16/10/2008 15:24:47
Engineversion : 8.2.0.4
AEVDF.DLL : 8.1.0.6 102772 Bytes 15/10/2008 15:26:47
AESCRIPT.DLL : 8.1.1.8 319866 Bytes 15/10/2008 15:26:45
AESCN.DLL : 8.1.1.3 123252 Bytes 15/10/2008 15:26:44
AERDL.DLL : 8.1.1.2 438644 Bytes 18/09/2008 15:44:26
AEPACK.DLL : 8.1.2.4 369014 Bytes 15/10/2008 15:26:43
AEOFFICE.DLL : 8.1.0.28 196987 Bytes 15/10/2008 15:26:42
AEHEUR.DLL : 8.1.0.59 1438071 Bytes 18/09/2008 15:44:24
AEHELP.DLL : 8.1.1.2 115062 Bytes 15/10/2008 15:26:42
AEGEN.DLL : 8.1.0.41 319861 Bytes 15/10/2008 15:26:41
AEEMU.DLL : 8.1.0.9 393588 Bytes 15/10/2008 15:26:40
AECORE.DLL : 8.1.2.6 172406 Bytes 15/10/2008 15:26:39
AEBB.DLL : 8.1.0.3 53618 Bytes 15/10/2008 15:26:38
AVWINLL.DLL : 1.0.0.12 15105 Bytes 17/07/2008 19:38:04
AVPREF.DLL : 8.0.2.0 38657 Bytes 17/07/2008 19:38:04
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 15:15:39
AVREG.DLL : 8.0.0.1 33537 Bytes 17/07/2008 19:38:04
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 17/07/2008 19:38:04
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 17/07/2008 19:38:04
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 17/07/2008 19:38:01
RCTEXT.DLL : 8.0.52.0 86273 Bytes 17/07/2008 19:38:01

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\programmi\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: repair
Secondary action.................: quarantine
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, W:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: high

Start of the scan: giovedì 16 ottobre 2008 20:43

Starting search for hidden objects.
'57466' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'FIFA09.exe' - '1' Module(s) have been scanned
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'uTorrent.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'SAgent4.exe' - '1' Module(s) have been scanned
Scan process 'sp_rsser.exe' - '1' Module(s) have been scanned
Scan process 'PsiService_2.exe' - '1' Module(s) have been scanned
Scan process 'PSIService.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'NBService.exe' - '1' Module(s) have been scanned
Scan process 'GoogleUpdaterService.exe' - '1' Module(s) have been scanned
Scan process 'E_S00RP2.EXE' - '1' Module(s) have been scanned
Scan process 'Crypserv.exe' - '1' Module(s) have been scanned
Scan process 'CTSVCCDA.EXE' - '1' Module(s) have been scanned
Scan process 'DevSvc.exe' - '1' Module(s) have been scanned
Scan process 'ATKKBService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'msmsgs.exe' - '1' Module(s) have been scanned
Scan process 'SmartDoctor.exe' - '1' Module(s) have been scanned
Scan process 'CTSched.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'SpywareTerminatorShield.Exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'CTSysVol.exe' - '1' Module(s) have been scanned
Scan process 'ipoint.exe' - '1' Module(s) have been scanned
Scan process 'itype.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
44 processes with 44 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
Master boot sector HD2
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.
Master boot sector HD3
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.
Master boot sector HD4
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.
Master boot sector HD5
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
[WARNING] System error [3]: Impossibile trovare il percorso specificato.
Boot sector 'D:\'
[INFO] No virus was found!
Boot sector 'W:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '58' files ).


Starting the file scan:

Begin scan in 'C:\' <Disco Locale>
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\WINDOWS\system32\drivers\atapi.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <Dati>
Begin scan in 'W:\' <Western Digital>


End of the scan: giovedì 16 ottobre 2008 22:15
Used time: 1:31:32 Hour(s)

The scan has been done completely.

8061 Scanning directories
447278 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
447276 Files not concerned
4009 Archives were scanned
7 Warnings
0 Notes
57466 Objects were scanned with rootkit scan
0 Hidden objects were found

Workman86
16-10-2008, 22:36
Ho virus o no??

e cosa sono quei 7 file warning??

wjmat
16-10-2008, 22:45
hai attivi dei drive virtuali?

Workman86
16-10-2008, 22:51
Ho un hard disk esterno...E un lettore scheda integrato!

wjmat
16-10-2008, 22:56
ad ogni modo sei pulito
se vuoi consigli per un pc sicuro dai un occhio al trattamento che ho in firma

Workman86
17-10-2008, 15:10
grazie....
ma quell operazione ke mi hai fatto fare in thumb...a cosa è servita??

cm posso evitare ke mi arrivano email infette?

wjmat
17-10-2008, 15:30
era per pulire la posta di thunderbird

installare eventualmente un programma antispam

Workman86
17-10-2008, 15:33
Ho installato Spyware Terminator e Antivir....

Non bastano?

wjmat
17-10-2008, 15:36
quelli non impediscano che la posta ti arrivi nella casella
qui c'è una lista con gli antispam, chiedi li quale fa al caso tuo
http://www.hwupgrade.it/forum/showthread.php?t=668898

Chill-Out
17-10-2008, 15:36
grazie....
ma quell operazione ke mi hai fatto fare in thumb...a cosa è servita??

cm posso evitare ke mi arrivano email infette?

Potresti leggere la posta direttamente da Web ed eliminare sul server le email farlocche e successivamente scaricare ciò che ti interessa

Ho installato Spyware Terminator e Antivir....

Non bastano?

Leggere e chiedere nel Thread dedicato http://www.hwupgrade.it/forum/showthread.php?t=1476319

Grazie

Workman86
17-10-2008, 15:37
ok ti ringrazio tanto!!!

cosa kiedo di specifico?

grazie ancora