PDA

View Full Version : trovato questo con bit defender!!!!!


trifranz
26-02-2005, 18:52
Aiutateme ragazzi ho trovato sta roba con Bitdefender scan on line:
C:\3bd1b8eb.hta=>(VBSCRIPT 1): infected with Exploit.ADODB.Stream2.Gen
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\AlexaRelated.zip=>RELATED.HTM: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\AlexaRelated.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf1.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf1.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf10.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf10.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf11.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf11.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf2.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf2.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf3.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf3.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf4.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf4.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf5.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf5.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf6.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf6.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf7.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf7.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf8.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf8.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf9.zip=>sbRecovery.reg: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\CoolWWWSearchBootconf9.zip=>sbRecovery.ini: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\FindSpyA.zip=>balloon.wav: password protected
C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy\Recovery\FindSpyA.zip=>sbRecovery.ini: password protected
C:\Programmi\Windows Media Player\wmplayer.exe.tmp: suspect Trojan.Downloader.Small.Gen
C:\WINDOWS\system32\iecustom32.dll: infected with Trojan.StartPage.SL
C:\WINDOWS\system32\sfcman32.dll: infected with Trojan.StartPage.FW
Che faccio? AIUTO

FOXYLADY
26-02-2005, 19:43
La maggior parte delle voci sono i file ricoverati in quarantena da spybot search and destroy, quindi non costituiscono un pericolo.
Per le altre 3 o 4 voci ti consiglio di fare una scansione con microsoft antispyware e anche una scansione su panda online.

Ciao

trifranz
28-02-2005, 12:25
potresti mndarmi i link? grazie.

lester99
28-02-2005, 14:32
Originariamente inviato da trifranz
potresti mndarmi i link? grazie.


http://www.microsoft.com/athome/security/spyware/software/default.mspx


www.pandasoftware.it