|
|
|
![]() |
|
Strumenti |
![]() |
#1 |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
mi aiutate con questi warning ?
ciao, mi sapete dire se questi warning rilevati da antivir sono da preoccuparsi o normali.....
Codice:
C:\pagefile.sys [WARNING] The file could not be opened! C:\_cleaned.tmp [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Temp\PXR5.tmp [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Temporary Internet Files\Content.IE5\E4N3B9FA\d[2].gif [DETECTION] Is the Trojan horse TR/Drop.Agent.NL.7 [INFO] The file was deleted! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Programmi\Windows NT\aJaCy.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\aMo.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\AmzomW.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\bJZZ.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\BnYa.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\bpSl.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\dhO.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\doWKY.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\dpv.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\DxYN.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\dYP.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Eap.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\eSFW.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ezQm.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\FDyitG.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\flrf.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\FmF.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Gan.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\gaV.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\gML.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Gqjb.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\GTug.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\HeX.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Ipk.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\jJtb.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\JYM.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\kyL.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\LdY.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\mgo.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ngq.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Now.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\obdL.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ocHiw.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\PPk.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\rBDs.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\sKrm.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\TTh.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ugo.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\VeiuAr.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\vRhx.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\vTzvOu.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\wEnwd.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\WOJ.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\WQr.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\xAl.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\xdi.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\XxNs.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\YXs.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ZMW.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ZVk.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\zZZ.exe [WARNING] The file could not be opened! C:\WINDOWS\system32\okaa.dll [DETECTION] Is the Trojan horse TR/Drop.Agent.NL.7 [INFO] The file was moved to '45a48900.qua'! C:\WINDOWS\system32\config\default [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\drivers\atapi.sys [WARNING] The file could not be opened
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
![]() |
![]() |
![]() |
#2 |
Senior Member
Iscritto dal: Aug 2006
Città: Riviera del Brenta
Messaggi: 2051
|
Sei infetto da LinkOptimizer.
Leggi -> http://www.hwupgrade.it/forum/showthread.php?t=1271721 Se il tool non dovesse funzionare prova a rinominarlo. |
![]() |
![]() |
![]() |
#3 | |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
Quote:
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
|
![]() |
![]() |
![]() |
#4 |
Senior Member
Iscritto dal: Aug 2006
Città: Riviera del Brenta
Messaggi: 2051
|
Si, ma non tutte le varianti bloccano il sito.
|
![]() |
![]() |
![]() |
#5 |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
cmq quando lancio PrevxFixGrom mi dice che il trojan non lo trova....
quindi penso sia inutile installare il tool
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
![]() |
![]() |
![]() |
#6 |
Senior Member
Iscritto dal: Aug 2006
Città: Riviera del Brenta
Messaggi: 2051
|
Prova ad usare il tool Symantec
http://securityresponse.symantec.com...FixLinkopt.exe Prova ad usare anche VirIT (installalo e aggiornalo) http://www.tgsoft.it/files/vnlt6128.exe Ultima modifica di GmG : 28-10-2006 alle 21:43. |
![]() |
![]() |
![]() |
#7 | |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
Quote:
cmq risultato di Fixlinkopt di symantec in modalità provvisoria Codice:
Symantec Trojan.Linkoptimizer Removal Tool 1.0.8 Restored SeDebugPrivilege to Administrators group service: WebWnf (logon as: .\rab, passed filters) service: WebWnf (file path: C:\Programmi\Windows NT\dygAgQ.exe - infected) file: C:\Programmi\Windows NT\dygAgQ.exe (deleted) reg: ...\SYSTEM\CurrentControlSet\Services\WebWnf\Security (key deleted) reg: ...\SYSTEM\CurrentControlSet\Services\WebWnf\Enum (key deleted) reg: ...\SYSTEM\CurrentControlSet\Services\WebWnf (key deleted) reg: ...\SpecialAccounts\UserList\rab (value deleted) folder: \\?\C:\Documents and Settings\rab (deleted) user: rab (deleted) Trojan.Linkoptimizer has been successfully removed from your computer! Here is the report: The total number of the scanned files: 67564 The number of deleted threat files: 1 The number of directories deleted: 1 The number of threat processes terminated: 0 The number of threat threads terminated: 0 The number of registry entries fixed: 4 The number of threat services removed: 1 The number of accounts disabled: 1 The tool initiated a system reboot. registry: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (cleared)
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
|
![]() |
![]() |
![]() |
#8 |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
riprovato a lanciare antivir questa volta non in safe mode, mi da dei warnings in quanto non riesce ad aprire certi file....
![]() ![]() Codice:
Starting the file scan: C:\pagefile.sys [WARNING] The file could not be opened! C:\_cleaned.tmp [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Temp\Perflib_Perfdata_7b0.dat [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Temp\PXR5.tmp [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Programmi\Windows NT\aJaCy.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\aMo.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\AmzomW.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\bJZZ.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\BnYa.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\bpSl.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\dhO.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\doWKY.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\dpv.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\DxYN.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\dYP.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Eap.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\eSFW.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ezQm.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\FDyitG.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\flrf.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\FmF.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Gan.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\gaV.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\gML.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Gqjb.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\GTug.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\HeX.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Ipk.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\jJtb.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\JYM.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\kyL.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\LdY.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\mgo.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ngq.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\Now.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\obdL.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ocHiw.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\PPk.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\rBDs.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\sKrm.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\TTh.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ugo.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\VeiuAr.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\vRhx.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\vTzvOu.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\wEnwd.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\WOJ.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\WQr.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\xAl.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\xdi.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\XxNs.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\YXs.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ZMW.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\ZVk.exe [WARNING] The file could not be opened! C:\Programmi\Windows NT\zZZ.exe [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\drivers\atapi.sys [WARNING] The file could not be opened! C:\WINDOWS\Temp\ZLT074a9.TMP [WARNING] The file could not be opened! End of the scan: sabato 28 ottobre 2006 23:17 Used time: 21:56 min The scan has been done completely. 2204 Scanning directories 226848 Files were scanned 0 viruses and/or unwanted programs were found 0 files were deleted 0 files were repaired 0 files were moved to quarantine 0 files were renamed 1375 Archives were scanned 79 Warnings 0 Notes
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
![]() |
![]() |
![]() |
#9 |
Bannato
Iscritto dal: Mar 2004
Città: Galapagos Attenzione:utente flautolente,tienilo a mente
Messaggi: 28978
|
devi eliminare la cartella "windows NT" presente in c:/programmi.
per farlo ti conviene andare in modalità provvisoria,sicuramente avrai i file incriminati in esecuzione. puliti anche i file temporanei di internet |
![]() |
![]() |
![]() |
#10 |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
come ci è andata a finire windows nt in programmi ?? erano tutti file infetti ?
cmq ora ho qualche warning in meno kissà se sono normali.... Codice:
Starting the file scan: C:\pagefile.sys [WARNING] The file could not be opened! C:\_cleaned.tmp [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Fabio\Impostazioni locali\Temp\PXR5.tmp [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\drivers\atapi.sys [WARNING] The file could not be opened!
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
![]() |
![]() |
![]() |
#12 | |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
Quote:
![]() forse legati alla situazione che ho postato qui (log hijackthis)
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 Ultima modifica di TuLKaS85 : 29-10-2006 alle 10:25. |
|
![]() |
![]() |
![]() |
#13 |
Bannato
Iscritto dal: Mar 2004
Città: Galapagos Attenzione:utente flautolente,tienilo a mente
Messaggi: 28978
|
|
![]() |
![]() |
![]() |
#14 |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
uhm mi sà che non sò usarlo ...dove si fa partire la scansione ??
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
![]() |
![]() |
![]() |
#15 | |
Bannato
Iscritto dal: Mar 2004
Città: Galapagos Attenzione:utente flautolente,tienilo a mente
Messaggi: 28978
|
Quote:
|
|
![]() |
![]() |
![]() |
#16 | |
Senior Member
Iscritto dal: Nov 2004
Città: Napoli
Messaggi: 999
|
Quote:
mi scoccio di fare file x file ![]()
__________________
Intel Pentium IV 3,0 GHz, Asus P5SD2-X , 1.0 Gb ddr2, Radeon X550 , Maxtor 160Gb sata, Hitachi 100 gb pata,Piooner Dvr-109 ,Microsoft Windows XP Professional Service Pack 2 |
|
![]() |
![]() |
![]() |
Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 04:55.