PDA

View Full Version : Probema cryptnet32


hard_boy
27-11-2010, 16:34
Caio a tutti, sono appena iscritto al forum e devo dire che è fatto molto bene. Veniamo al problema: da qualche giorno ho rallentamenti di firefox e del PC con reindirazzione ad altri siti ed il solito messaggio che indica infezioni. Ho effettuato scansioni con Hijackthis, con Malwarebytes e spybot. Quest'ultimo mi trova un problema che non riesce a fixare o cancellare. Il presunto malware si chiama cryptnet32 e risiede nel registro hkey_local_machine\
\software\microsoft\windowsNT\currentversion\winlogon\notify, questa cartella non riesco ad eliminarla in nessun modo, neanche in modalità provvisoria a mano. Spybot me lo trova sotto il nome di trojansC-05. Intanto sto effettuando una scansione nuova con Malwarebytes e mi sta trovando un file sospetto che prima non mi rilevava. Vi posto il log di hijack e di Malwarebytes?:) :)

Chill-Out
28-11-2010, 14:54
Ciao, scarica questo file http://support.kaspersky.com/downloads/utils/tdsskiller.zip scompatta l'archivio ed esegui TDSSKiller.exe al termine allega il log, che trovi in C:\TDSSKiller..................log.txt

Modalità di pubblicazione dei log:

Ogni singolo log, esclusivamente in formato .txt deve essere hostato su uno dei server remoti elencati nelle Regole di sezione (http://www.hwupgrade.it/forum/showthread.php?t=1751598).

hard_boy
29-11-2010, 10:37
Mi ha trovato un backdoor.
Ecco il log:

2010/11/29 10:23:48.0109 TDSS rootkit removing tool 2.4.10.0 Nov 28 2010 18:35:56
2010/11/29 10:23:48.0109 ================================================================================
2010/11/29 10:23:48.0109 SystemInfo:
2010/11/29 10:23:48.0109
2010/11/29 10:23:48.0109 OS Version: 5.1.2600 ServicePack: 2.0
2010/11/29 10:23:48.0109 Product type: Workstation
2010/11/29 10:23:48.0109 ComputerName: ARABAFEN-C02B2G
2010/11/29 10:23:48.0109 UserName: arabafenice
2010/11/29 10:23:48.0109 Windows directory: C:\PSPSLIM
2010/11/29 10:23:48.0109 System windows directory: C:\PSPSLIM
2010/11/29 10:23:48.0109 Processor architecture: Intel x86
2010/11/29 10:23:48.0109 Number of processors: 1
2010/11/29 10:23:48.0109 Page size: 0x1000
2010/11/29 10:23:48.0109 Boot type: Normal boot
2010/11/29 10:23:48.0109 ================================================================================
2010/11/29 10:23:48.0640 Initialize success
2010/11/29 10:23:55.0828 ================================================================================
2010/11/29 10:23:55.0828 Scan started
2010/11/29 10:23:55.0828 Mode: Manual;
2010/11/29 10:23:55.0828 ================================================================================
2010/11/29 10:23:58.0187 ACPI (ad825cb3397c837d1fb91d566d78de04) C:\PSPSLIM\system32\DRIVERS\ACPI.sys
2010/11/29 10:23:58.0562 ACPIEC (49ac5cd87fbdda62f3e25190019e7627) C:\PSPSLIM\system32\drivers\ACPIEC.sys
2010/11/29 10:23:59.0062 aec (1ee7b434ba961ef845de136224c30fec) C:\PSPSLIM\system32\drivers\aec.sys
2010/11/29 10:23:59.0437 AFD (55e6e1c51b6d30e54335750955453702) C:\PSPSLIM\System32\drivers\afd.sys
2010/11/29 10:24:00.0093 ALCXWDM (dd8520280304b6145a6be31008748c7c) C:\PSPSLIM\system32\drivers\ALCXWDM.SYS
2010/11/29 10:24:00.0531 APPFLT (9b75af69770fdf41485060f319641f68) C:\PSPSLIM\System32\Drivers\APPFLT.SYS
2010/11/29 10:24:00.0734 aqmvfdxsupkg (d7dbfbc453b645111e6d21142305e80b) C:\PSPSLIM\system32\drivers\aqmvfdxsupkg.sys
2010/11/29 10:24:00.0812 Arp1394 (f0d692b0bffb46e30eb3cea168bbc49f) C:\PSPSLIM\system32\DRIVERS\arp1394.sys
2010/11/29 10:24:01.0000 AsyncMac (02000abf34af4c218c35d257024807d6) C:\PSPSLIM\system32\DRIVERS\asyncmac.sys
2010/11/29 10:24:01.0062 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\PSPSLIM\system32\DRIVERS\atapi.sys
2010/11/29 10:24:01.0265 ati2mtag (221f0a33229cce7bf2f7640d3bb8845d) C:\PSPSLIM\system32\DRIVERS\ati2mtag.sys
2010/11/29 10:24:01.0406 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\PSPSLIM\system32\DRIVERS\atmarpc.sys
2010/11/29 10:24:01.0515 audstub (d9f724aa26c010a217c97606b160ed68) C:\PSPSLIM\system32\DRIVERS\audstub.sys
2010/11/29 10:24:01.0625 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\PSPSLIM\system32\drivers\Beep.sys
2010/11/29 10:24:01.0703 BRGSp50 (ee0f41fa0466189a2c8b9caf7d1cddd5) C:\PSPSLIM\system32\Drivers\BRGSp50.sys
2010/11/29 10:24:01.0812 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\PSPSLIM\system32\drivers\cbidf2k.sys
2010/11/29 10:24:01.0953 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\PSPSLIM\system32\drivers\Cdaudio.sys
2010/11/29 10:24:02.0078 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\PSPSLIM\system32\drivers\Cdfs.sys
2010/11/29 10:24:02.0140 Cdrom (af9c19b3100fe010496b1a27181fbf72) C:\PSPSLIM\system32\DRIVERS\cdrom.sys
2010/11/29 10:24:02.0312 cpoint (91658e7704eb977706a84cd3c3f9b8c7) C:\PSPSLIM\system32\Drivers\cpoint.sys
2010/11/29 10:24:02.0765 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\PSPSLIM\system32\DRIVERS\disk.sys
2010/11/29 10:24:02.0921 dmboot (6570b4c952f0d8fee4c6ef2ff5e10c08) C:\PSPSLIM\system32\drivers\dmboot.sys
2010/11/29 10:24:03.0015 dmio (c57d35621782c7f40770f3e5ca20a182) C:\PSPSLIM\system32\drivers\dmio.sys
2010/11/29 10:24:03.0109 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\PSPSLIM\system32\drivers\dmload.sys
2010/11/29 10:24:03.0234 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\PSPSLIM\system32\drivers\DMusic.sys
2010/11/29 10:24:03.0421 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\PSPSLIM\system32\drivers\drmkaud.sys
2010/11/29 10:24:03.0578 DSAFLT (e2a5633eba45c43e03f1148cf336077d) C:\PSPSLIM\System32\Drivers\DSAFLT.SYS
2010/11/29 10:24:03.0734 elcapi20 (16ec4ed3fdbf97fe8694c27611734c35) C:\PSPSLIM\system32\Drivers\elcapi20.sys
2010/11/29 10:24:03.0843 ElgTaDrv (b687f79cb390e103af36dcbb5c417044) C:\PSPSLIM\system32\Drivers\ElgTaDrv.sys
2010/11/29 10:24:04.0015 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\PSPSLIM\system32\drivers\Fastfat.sys
2010/11/29 10:24:04.0109 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\PSPSLIM\system32\DRIVERS\fdc.sys
2010/11/29 10:24:04.0203 Fips (333fbbc71bdcbb46c58a3b51b3d51184) C:\PSPSLIM\system32\drivers\Fips.sys
2010/11/29 10:24:04.0296 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\PSPSLIM\system32\DRIVERS\flpydisk.sys
2010/11/29 10:24:04.0406 FltMgr (3d234fb6d6ee875eb009864a299bea29) C:\PSPSLIM\system32\drivers\fltmgr.sys
2010/11/29 10:24:04.0531 FNETMON (870ac1d6309fcf79489169225ce9b6e7) C:\PSPSLIM\System32\Drivers\fnetmon.SYS
2010/11/29 10:24:04.0656 fssfltr (fb7f5239c9f6a1c13052869f5a0f7c80) C:\PSPSLIM\system32\DRIVERS\fssfltr.sys
2010/11/29 10:24:04.0734 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\PSPSLIM\system32\drivers\Fs_Rec.sys
2010/11/29 10:24:04.0828 Ftdisk (f3269a6ee547ea87b949a1cea4816b38) C:\PSPSLIM\system32\DRIVERS\ftdisk.sys
2010/11/29 10:24:04.0906 GEARAspiWDM (f2f431d1573ee632975c524418655b84) C:\PSPSLIM\system32\DRIVERS\GEARAspiWDM.sys
2010/11/29 10:24:05.0093 Gpc (c0f1d4a21de5a415df8170616703debf) C:\PSPSLIM\system32\DRIVERS\msgpc.sys
2010/11/29 10:24:05.0281 HidUsb (1de6783b918f540149aa69943bdfeba8) C:\PSPSLIM\system32\DRIVERS\hidusb.sys
2010/11/29 10:24:05.0578 HPZid412 (5faba4775d4c61e55ec669d643ffc71f) C:\PSPSLIM\system32\DRIVERS\HPZid412.sys
2010/11/29 10:24:05.0671 HPZipr12 (a3c43980ee1f1beac778b44ea65dbdd4) C:\PSPSLIM\system32\DRIVERS\HPZipr12.sys
2010/11/29 10:24:05.0796 HPZius12 (2906949bd4e206f2bb0dd1896ce9f66f) C:\PSPSLIM\system32\DRIVERS\HPZius12.sys
2010/11/29 10:24:05.0937 HTTP (9f8b0f4276f618964fd118be4289b7cd) C:\PSPSLIM\system32\Drivers\HTTP.sys
2010/11/29 10:24:06.0187 i8042prt (30e64dfa4efaacc8142ea07766181fb4) C:\PSPSLIM\system32\DRIVERS\i8042prt.sys
2010/11/29 10:24:06.0296 IDSFLT (c19704dcddbdb68575955fa27759425f) C:\PSPSLIM\System32\Drivers\IDSFLT.SYS
2010/11/29 10:24:06.0437 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\PSPSLIM\system32\DRIVERS\imapi.sys
2010/11/29 10:24:06.0734 ip6fw (4448006b6bc60e6c027932cfc38d6855) C:\PSPSLIM\system32\drivers\ip6fw.sys
2010/11/29 10:24:06.0828 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\PSPSLIM\system32\DRIVERS\ipfltdrv.sys
2010/11/29 10:24:06.0921 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\PSPSLIM\system32\DRIVERS\ipinip.sys
2010/11/29 10:24:07.0046 IpNat (e2168cbc7098ffe963c6f23f472a3593) C:\PSPSLIM\system32\DRIVERS\ipnat.sys
2010/11/29 10:24:07.0187 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\PSPSLIM\system32\DRIVERS\ipsec.sys
2010/11/29 10:24:07.0265 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\PSPSLIM\system32\DRIVERS\irenum.sys
2010/11/29 10:24:07.0656 isapnp (ea3245a8e8758d6b84de189a5caaa75e) C:\PSPSLIM\system32\DRIVERS\isapnp.sys
2010/11/29 10:24:08.0046 Kbdclass (e883ae6ea0b313e659225aa32e449ce9) C:\PSPSLIM\system32\DRIVERS\kbdclass.sys
2010/11/29 10:24:08.0156 kbdhid (24f4d51e89822c349044c28be255c8a5) C:\PSPSLIM\system32\DRIVERS\kbdhid.sys
2010/11/29 10:24:08.0265 kmixer (ba5deda4d934e6288c2f66caf58d2562) C:\PSPSLIM\system32\drivers\kmixer.sys
2010/11/29 10:24:08.0421 KSecDD (674d3e5a593475915dc6643317192403) C:\PSPSLIM\system32\drivers\KSecDD.sys
2010/11/29 10:24:08.0671 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\PSPSLIM\system32\drivers\mnmdd.sys
2010/11/29 10:24:08.0781 Modem (b30d2db351e3191bd71232036cfe711a) C:\PSPSLIM\system32\drivers\Modem.sys
2010/11/29 10:24:08.0875 Mouclass (c458e314b8722253897c94a714c2e0c0) C:\PSPSLIM\system32\DRIVERS\mouclass.sys
2010/11/29 10:24:08.0953 mouhid (d7662f0cf5b77bbbe3202716f5bd5318) C:\PSPSLIM\system32\DRIVERS\mouhid.sys
2010/11/29 10:24:09.0031 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\PSPSLIM\system32\drivers\MountMgr.sys
2010/11/29 10:24:09.0250 MRxDAV (29414447eb5bde2f8397dc965dbb3156) C:\PSPSLIM\system32\DRIVERS\mrxdav.sys
2010/11/29 10:24:09.0359 MRxSmb (fb6c89bb3ce282b08bdb1e3c179e1c39) C:\PSPSLIM\system32\DRIVERS\mrxsmb.sys
2010/11/29 10:24:09.0500 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\PSPSLIM\system32\drivers\Msfs.sys
2010/11/29 10:24:09.0578 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\PSPSLIM\system32\drivers\MSKSSRV.sys
2010/11/29 10:24:09.0656 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\PSPSLIM\system32\drivers\MSPCLOCK.sys
2010/11/29 10:24:09.0703 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\PSPSLIM\system32\drivers\MSPQM.sys
2010/11/29 10:24:09.0796 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\PSPSLIM\system32\DRIVERS\mssmbios.sys
2010/11/29 10:24:09.0921 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\PSPSLIM\system32\drivers\Mup.sys
2010/11/29 10:24:09.0984 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\PSPSLIM\system32\drivers\NDIS.sys
2010/11/29 10:24:10.0078 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\PSPSLIM\system32\DRIVERS\ndistapi.sys
2010/11/29 10:24:10.0203 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\PSPSLIM\system32\DRIVERS\ndisuio.sys
2010/11/29 10:24:10.0265 NdisWan (0b90e255a9490166ab368cd55a529893) C:\PSPSLIM\system32\DRIVERS\ndiswan.sys
2010/11/29 10:24:10.0328 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\PSPSLIM\system32\drivers\NDProxy.sys
2010/11/29 10:24:10.0421 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\PSPSLIM\system32\DRIVERS\netbios.sys
2010/11/29 10:24:10.0531 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\PSPSLIM\system32\DRIVERS\netbt.sys
2010/11/29 10:24:10.0671 NETFLTDI (7d62a45bbfb3255a4e0ea882684971d1) C:\PSPSLIM\System32\Drivers\NETFLTDI.SYS
2010/11/29 10:24:10.0859 NETIMFLT01050097 (64a8da0bb4d6ae3d46e7459e942da52f) C:\PSPSLIM\system32\DRIVERS\netimflt.sys
2010/11/29 10:24:10.0984 NIC1394 (5c5c53db4fef16cf87b9911c7e8c6fbc) C:\PSPSLIM\system32\DRIVERS\nic1394.sys
2010/11/29 10:24:11.0093 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\PSPSLIM\system32\drivers\Npfs.sys
2010/11/29 10:24:11.0218 Ntfs (19a811ef5f1ed5c926a028ce107ff1af) C:\PSPSLIM\system32\drivers\Ntfs.sys
2010/11/29 10:24:11.0359 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\PSPSLIM\system32\drivers\Null.sys
2010/11/29 10:24:11.0453 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\PSPSLIM\system32\DRIVERS\nwlnkflt.sys
2010/11/29 10:24:11.0515 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\PSPSLIM\system32\DRIVERS\nwlnkfwd.sys
2010/11/29 10:24:11.0625 ohci1394 (0951db8e5823ea366b0e408d71e1ba2a) C:\PSPSLIM\system32\DRIVERS\ohci1394.sys
2010/11/29 10:24:11.0734 Parport (3490ead0612bfd0e7c1b864ee24e6a4a) C:\PSPSLIM\system32\DRIVERS\parport.sys
2010/11/29 10:24:11.0796 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\PSPSLIM\system32\drivers\PartMgr.sys
2010/11/29 10:24:11.0890 ParVdm (0dabef655a444cb1e193626fb1d24b9f) C:\PSPSLIM\system32\drivers\ParVdm.sys
2010/11/29 10:24:11.0968 pavboot (3adb8bd6154a3ef87496e8fce9c22493) C:\PSPSLIM\system32\drivers\pavboot.sys
2010/11/29 10:24:12.0062 PAVDRV (e1307e5c66dc2c1bb9a56855f2bd713c) C:\PSPSLIM\system32\DRIVERS\pavdrv51.sys
2010/11/29 10:24:12.0140 PavProc (90da57006f642be4a5b862701d2441f6) C:\PSPSLIM\System32\DRIVERS\PavProc.sys
2010/11/29 10:24:12.0437 PCI (91fc1d483d900b1c0600a08b871c39d5) C:\PSPSLIM\system32\DRIVERS\pci.sys
2010/11/29 10:24:12.0593 PCIIde (b2df00d650fd6c4ee781740ed3c8e67f) C:\PSPSLIM\system32\DRIVERS\pciide.sys
2010/11/29 10:24:12.0718 Pcmcia (28f3538a2091993a03506311a05053e8) C:\PSPSLIM\system32\drivers\Pcmcia.sys
2010/11/29 10:24:13.0421 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\PSPSLIM\system32\DRIVERS\raspptp.sys
2010/11/29 10:24:13.0515 Processor (2be7f01e46970e946aa18cba3de019eb) C:\PSPSLIM\system32\DRIVERS\processr.sys
2010/11/29 10:24:13.0656 PSched (48671f327553dcf1d27f6197f622a668) C:\PSPSLIM\system32\DRIVERS\psched.sys
2010/11/29 10:24:13.0781 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\PSPSLIM\system32\DRIVERS\ptilink.sys
2010/11/29 10:24:13.0906 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\PSPSLIM\system32\Drivers\PxHelp20.sys
2010/11/29 10:24:14.0296 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\PSPSLIM\system32\DRIVERS\rasacd.sys
2010/11/29 10:24:14.0484 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\PSPSLIM\system32\DRIVERS\rasl2tp.sys
2010/11/29 10:24:14.0562 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\PSPSLIM\system32\DRIVERS\raspppoe.sys
2010/11/29 10:24:14.0671 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\PSPSLIM\system32\DRIVERS\raspti.sys
2010/11/29 10:24:14.0750 Rdbss (03b965b1ca47f6ef60eb5e51cb50e0af) C:\PSPSLIM\system32\DRIVERS\rdbss.sys
2010/11/29 10:24:14.0859 RDPCDD (4912d5b403614ce99c28420f75353332) C:\PSPSLIM\system32\DRIVERS\RDPCDD.sys
2010/11/29 10:24:15.0000 rdpdr (a2cae2c60bc37e0751ef9dda7ceaf4ad) C:\PSPSLIM\system32\DRIVERS\rdpdr.sys
2010/11/29 10:24:15.0156 RDPWD (b54cd38a9ebfbf2b3561426e3fe26f62) C:\PSPSLIM\system32\drivers\RDPWD.sys
2010/11/29 10:24:15.0265 redbook (a8eee004a16af1d583d9de9f6de250e0) C:\PSPSLIM\system32\DRIVERS\redbook.sys
2010/11/29 10:24:15.0468 RTL8023xp (2377f31cbb8277807c3351302cf133e9) C:\PSPSLIM\system32\DRIVERS\Rtlnicxp.sys
2010/11/29 10:24:15.0578 SASDIFSV (a3281aec37e0720a2bc28034c2df2a56) C:\Programmi\SUPERAntiSpyware\SASDIFSV.SYS
2010/11/29 10:24:15.0625 SASKUTIL (61db0d0756a99506207fd724e3692b25) C:\Programmi\SUPERAntiSpyware\SASKUTIL.SYS
2010/11/29 10:24:15.0812 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\PSPSLIM\system32\DRIVERS\secdrv.sys
2010/11/29 10:24:15.0937 serenum (a2d868aeeff612e70e213c451a70cafb) C:\PSPSLIM\system32\DRIVERS\serenum.sys
2010/11/29 10:24:16.0031 Serial (dbab3260e7eb3398cb87267d1410fad4) C:\PSPSLIM\system32\DRIVERS\serial.sys
2010/11/29 10:24:16.0156 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\PSPSLIM\system32\drivers\Sfloppy.sys
2010/11/29 10:24:16.0312 ShldDrv (8df4a1ac916bf34150f24c8d69b85e89) C:\PSPSLIM\system32\DRIVERS\ShlDrv51.sys
2010/11/29 10:24:16.0484 SMSFLT (213b5753dd7f6f78de47e1296033d244) C:\PSPSLIM\System32\Drivers\SMSFLT.SYS
2010/11/29 10:24:16.0703 splitter (0ce218578fff5f4f7e4201539c45c78f) C:\PSPSLIM\system32\drivers\splitter.sys
2010/11/29 10:24:16.0828 sr (896f566afc498077172eae8a50e8baf8) C:\PSPSLIM\system32\DRIVERS\sr.sys
2010/11/29 10:24:16.0968 Srv (7a4f147cc6b133f905f6e65e2f8669fb) C:\PSPSLIM\system32\DRIVERS\srv.sys
2010/11/29 10:24:17.0156 StillCam (a95d6f47807301fcc940896b9eb45408) C:\PSPSLIM\system32\DRIVERS\serscan.sys
2010/11/29 10:24:17.0296 swenum (03c1bae4766e2450219d20b993d6e046) C:\PSPSLIM\system32\DRIVERS\swenum.sys
2010/11/29 10:24:17.0359 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\PSPSLIM\system32\drivers\swmidi.sys
2010/11/29 10:24:17.0812 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\PSPSLIM\system32\drivers\sysaudio.sys
2010/11/29 10:24:17.0968 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\PSPSLIM\system32\DRIVERS\tcpip.sys
2010/11/29 10:24:18.0062 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\PSPSLIM\system32\drivers\TDPIPE.sys
2010/11/29 10:24:18.0125 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\PSPSLIM\system32\drivers\TDTCP.sys
2010/11/29 10:24:18.0234 teamviewervpn (9101fffcfccd1a30e870a5b8a9091b10) C:\PSPSLIM\system32\DRIVERS\teamviewervpn.sys
2010/11/29 10:24:18.0312 TermDD (a540a99c281d933f3d69d55e48727f47) C:\PSPSLIM\system32\DRIVERS\termdd.sys
2010/11/29 10:24:18.0625 Udfs (12f70256f140cd7d52c58c7048fde657) C:\PSPSLIM\system32\drivers\Udfs.sys
2010/11/29 10:24:18.0796 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\PSPSLIM\system32\DRIVERS\update.sys
2010/11/29 10:24:19.0015 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\PSPSLIM\system32\DRIVERS\usbccgp.sys
2010/11/29 10:24:19.0156 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\PSPSLIM\system32\DRIVERS\usbehci.sys
2010/11/29 10:24:19.0234 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\PSPSLIM\system32\DRIVERS\usbhub.sys
2010/11/29 10:24:19.0296 usbohci (bdfe799a8531bad8a5a985821fe78760) C:\PSPSLIM\system32\DRIVERS\usbohci.sys
2010/11/29 10:24:19.0406 usbprint (a42369b7cd8886cd7c70f33da6fcbcf5) C:\PSPSLIM\system32\DRIVERS\usbprint.sys
2010/11/29 10:24:19.0656 usbscan (a6bc71402f4f7dd5b77fd7f4a8ddba85) C:\PSPSLIM\system32\DRIVERS\usbscan.sys
2010/11/29 10:24:19.0718 USBSTOR (6cd7b22193718f1d17a47a1cd6d37e75) C:\PSPSLIM\system32\DRIVERS\USBSTOR.SYS
2010/11/29 10:24:19.0875 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\PSPSLIM\System32\drivers\vga.sys
2010/11/29 10:24:20.0000 VolSnap (698869e82c57169f2140c04a272bf12b) C:\PSPSLIM\system32\drivers\VolSnap.sys
2010/11/29 10:24:20.0218 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\PSPSLIM\system32\DRIVERS\wanarp.sys
2010/11/29 10:24:20.0406 wdmaud (efd235ca22b57c81118c1aeb4798f1c1) C:\PSPSLIM\system32\drivers\wdmaud.sys
2010/11/29 10:24:20.0750 WNMFLT (0fbfc8de10470f81ac491c1b048ebf80) C:\PSPSLIM\System32\Drivers\WNMFLT.SYS
2010/11/29 10:24:20.0843 WpdUsb (c1b3d9d75c3fb735f5fa3a5806aded57) C:\PSPSLIM\system32\Drivers\wpdusb.sys
2010/11/29 10:24:20.0906 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\PSPSLIM\System32\drivers\ws2ifsl.sys
2010/11/29 10:24:21.0109 ZD1211BU(WIFI LINK) (154fe6a5a608cd725266877901e883c2) C:\PSPSLIM\system32\DRIVERS\zd1211Bu.sys
2010/11/29 10:24:21.0218 ZDPSp50 (00ae175b903d45ed4a62384d3315dc2a) C:\PSPSLIM\system32\Drivers\ZDPSp50.sys
2010/11/29 10:24:21.0421 \HardDisk0 - detected Backdoor.Win32.Sinowal.knf (0)
2010/11/29 10:24:21.0453 ================================================================================
2010/11/29 10:24:21.0453 Scan finished
2010/11/29 10:24:21.0453 ================================================================================
2010/11/29 10:24:21.0531 Detected object count: 1
2010/11/29 10:24:52.0718 \HardDisk0 - will be cured after reboot
2010/11/29 10:24:52.0718 Backdoor.Win32.Sinowal.knf(\HardDisk0) - User select action: Cure

Chill-Out
29-11-2010, 10:55
Modalità di pubblicazione dei log:

Ogni singolo log, esclusivamente in formato .txt deve essere hostato su uno dei server remoti elencati nelle Regole di sezione (http://www.hwupgrade.it/forum/showthread.php?t=1751598).

altrimenti è impossibile consultarlo, grazie.

hard_boy
30-11-2010, 17:45
Si, ho sbagliato! Comunque penso di aver risolto con tdsskiller che tu mi hai consigliato, e Prevx. Per sicurezza faccio qualche altra scansione con altri antispy. Vi terrò aggiornati.