|
|||||||
|
|
|
![]() |
|
|
Strumenti |
|
|
#21 |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
Ecco invece il log della scansione con F-Secure
http://utenti.lycos.it/vinicius2003/ols_report.html
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
|
#22 |
|
Moderatore
Iscritto dal: Jun 2007
Città: 127.0.0.1
Messaggi: 25885
|
All'interno della cartella Documenti dovresti trovare la cartella A-Squared Free all'inteno dovresti trovare il log dell'ultima scansione
__________________
Try again and you will be luckier.
|
|
|
|
|
|
#23 | |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
Quote:
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
|
|
#24 | |
|
Senior Member
Iscritto dal: Nov 2001
Città: Fidenza(pr) da Trento
Messaggi: 27479
|
Quote:
__________________
"Visti da vicino siamo tutti strani..." ~|~ What Defines a Community? ~|~ Thread eMule Ufficiale ~|~ Online Armor in Italiano ~|~ Regole di Sezione ~|► Guida a PrivateFirewall
|
|
|
|
|
|
|
#25 | |
|
Moderatore
Iscritto dal: Jun 2007
Città: 127.0.0.1
Messaggi: 25885
|
Quote:
__________________
Try again and you will be luckier.
|
|
|
|
|
|
|
#26 |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
Ecco il log d gmer. Qualcuno mi aiuta?
GMER 1.0.14.14205 - http://www.gmer.net Rootkit scan 2008-05-06 22:48:26 Windows 6.0.6001 Service Pack 1 ---- Kernel code sections - GMER 1.0.14 ---- .text ntkrnlpa.exe!ZwQueryLicenseValue + D41 81C62BB9 1 Byte [ 06 ] _PAGELK C:\Windows\system32\ntkrnlpa.exe entry point in "_PAGELK" section [0x81CF74B0] ---- User IAT/EAT - GMER 1.0.14 ---- IAT C:\Windows\Explorer.EXE[1860] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtCreateFile] [03E42E70] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Windows\Explorer.EXE[1860] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtClose] [03E42C50] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Windows\Explorer.EXE[1860] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [03E42C30] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Windows\Explorer.EXE[1860] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [03E42C40] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe[3652] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00172E70] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe[3652] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtClose] [00172C50] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe[3652] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00172C30] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe[3652] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00172C40] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe[3684] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00352E70] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe[3684] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtClose] [00352C50] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe[3684] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00352C30] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe[3684] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00352C40] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Users\Ra\Documents\pulizia\gmer\gmer.exe[3976] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtCreateFile] [003C2E70] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Users\Ra\Documents\pulizia\gmer\gmer.exe[3976] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtClose] [003C2C50] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Users\Ra\Documents\pulizia\gmer\gmer.exe[3976] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [003C2C30] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) IAT C:\Users\Ra\Documents\pulizia\gmer\gmer.exe[3976] @ C:\Windows\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [003C2C40] C:\Program Files\Common Files\Logitech\LVMVFM\LVPrcInj.dll (Logitech Helper Library./Logitech Inc.) ---- Devices - GMER 1.0.14 ---- AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume3 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume4 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) AttachedDevice \Driver\volmgr \Device\HarddiskVolume5 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation) ---- EOF - GMER 1.0.14 ----
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
|
#27 |
|
Bannato
Iscritto dal: Mar 2004
Città: Galapagos Attenzione:utente flautolente,tienilo a mente
Messaggi: 28983
|
una scansione degli ads l'hai già fatta?
|
|
|
|
|
|
#28 |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
Infine segnalo che Prevx non ha trovato alcuna infezione...
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
|
#29 |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
Che programma free?
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
|
#30 |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
DrWeb ha trovato e mi ha fatto spostare i seguenti trojan. Ma dove li mette quando li sposta? Come faccio ad eliminarli definitivamente?
esimgdet.dll (Trojan.DownLoader.origin) C:\Windows\System32\DriverStore\FileRepository\es27.inf_513c5c6c esimgdet.dll (Trojan.DownLoader.origin) C:\Windows\twain_32\escndv\es0027
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
|
#31 |
|
Senior Member
Iscritto dal: Mar 2002
Messaggi: 690
|
Volevo comunicare che ho lanciato nuovamente Currports e adesso sembra non ci siano processi che comunicano con internet in modo anomalo.
Comincio col ringraziare tutti e attendo di sapere i file spostati da drweb che fine fanno.
__________________
MacBook Pro 15" - Asus P5B-E; Intel E6400; dual channel Corsair TWIN2X 800 cas4; Ati X1650 PRO silent; HD samsung; Asus Eee PC 1115PE |
|
|
|
|
| Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 00:15.





















