Member
Iscritto dal: Apr 2008
Messaggi: 132
|
Guardate anke questo
Quote:
SDFix: Version 1.240
Run by Carmine on 01/12/2008 at 00.27
Microsoft Windows XP [Versione 5.1.2600]
Running From: C:\SDFix
Checking Services :
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
Checking Files :
No Trojan Files Found
Removing Temp Files
ADS Check :
Final Check :
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-01 00:32:42
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\a347scsi\Config\jdgg40]
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E9F81423-211E-46B6-9AE0-38568BC5CF6F}]
"DisplayName"="Alcohol 120%"
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
Remaining Services :
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Programmi\\uTorrent\\uTorrent.exe"="C:\\Programmi\\uTorrent\\uTorrent.exe:*:Enabled:æTorrent"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Programmi\\Mozilla Firefox\\firefox.exe"="C:\\Programmi\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox"
"W:\\Emule ScarAngel 2.5\\emule.exe"="W:\\Emule ScarAngel 2.5\\emule.exe:*:Enabled:eMule"
"C:\\WINDOWS\\system32\\ftp.exe"="C:\\WINDOWS\\system32\\ftp.exe:*:Enabled:Programma di trasferimento file (FTP)"
"C:\\Programmi\\KONAMI\\Pro Evolution Soccer 2008\\PES2008.exe"="C:\\Programmi\\KONAMI\\Pro Evolution Soccer 2008\\PES2008.exe:*:Enabled:Pro Evolution Soccer 2008"
"W:\\Emule ScarAngel 3.0\\emule.exe"="W:\\Emule ScarAngel 3.0\\emule.exe:*:Enabled:eMule"
"C:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Programmi\\Windows Live\\Messenger\\livecall.exe"="C:\\Programmi\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Programmi\\EA Sports\\FIFA 09\\FIFA09.exe"="C:\\Programmi\\EA Sports\\FIFA 09\\FIFA09.exe:*:Enabled:FIFA09"
"C:\\Programmi\\KONAMI\\Pro Evolution Soccer 2009\\pes2009.exe"="C:\\Programmi\\KONAMI\\Pro Evolution Soccer 2009\\pes2009.exe:*:Enabled:Pro Evolution Soccer 2009"
"C:\\Documents and Settings\\Carmine\\Desktop\\PES 2009.exe"="C:\\Documents and Settings\\Carmine\\Desktop\\PES 2009.exe:*:Enabled:Pro Evolution Soccer 2009"
"C:\\Programmi\\Bonjour\\mDNSResponder.exe"="C:\\Programmi\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Programmi\\Windows Live\\Messenger\\livecall.exe"="C:\\Programmi\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
Remaining Files :
Files with Hidden Attributes :
Thu 24 May 2001 162,304 A..H. --- "C:\UNWISE.EXE"
Mon 13 Aug 2007 71,680 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\admparse.dll"
Mon 13 Aug 2007 123,904 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\advpack.dll"
Sat 23 Sep 2006 1,022,976 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\browseui.dll"
Mon 13 Aug 2007 17,408 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\corpol.dll"
Mon 13 Aug 2007 33,792 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\custsat.dll"
Mon 13 Aug 2007 346,624 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\dxtmsft.dll"
Mon 13 Aug 2007 214,528 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\dxtrans.dll"
Mon 13 Aug 2007 131,584 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\extmgr.dll"
Mon 13 Aug 2007 60,416 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\hmmapi.dll"
Mon 13 Aug 2007 61,952 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\icardie.dll"
Mon 13 Aug 2007 54,784 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ie4uinit.exe"
Mon 13 Aug 2007 152,064 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieakeng.dll"
Mon 13 Aug 2007 229,376 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieaksie.dll"
Mon 13 Aug 2007 161,792 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieakui.dll"
Wed 11 Jul 2007 383,488 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieapfltr.dll"
Mon 13 Aug 2007 382,976 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iedkcs32.dll"
Mon 13 Aug 2007 69,120 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iedw.exe"
Mon 13 Aug 2007 78,336 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieencode.dll"
Mon 13 Aug 2007 6,049,280 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieframe.dll"
Mon 13 Aug 2007 191,488 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iepeers.dll"
Mon 13 Aug 2007 287,744 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieproxy.dll"
Mon 13 Aug 2007 43,008 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iernonce.dll"
Mon 13 Aug 2007 266,752 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iertutil.dll"
Mon 13 Aug 2007 55,296 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iesetup.dll"
Mon 13 Aug 2007 13,312 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieudinit.exe"
Mon 13 Aug 2007 180,736 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\ieui.dll"
Mon 13 Aug 2007 622,080 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\iexplore.exe"
Mon 13 Aug 2007 36,352 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\imgutil.dll"
Mon 13 Aug 2007 92,672 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\inseng.dll"
Mon 13 Aug 2007 491,520 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\jscript.dll"
Mon 13 Aug 2007 27,136 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\jsproxy.dll"
Mon 13 Aug 2007 40,960 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\licmgr10.dll"
Mon 13 Aug 2007 458,752 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\msfeeds.dll"
Mon 13 Aug 2007 50,688 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\msfeedsbs.dll"
Mon 13 Aug 2007 12,288 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\msfeedssync.exe"
Mon 13 Aug 2007 45,568 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\mshta.exe"
Mon 13 Aug 2007 3,578,368 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\mshtml.dll"
Mon 13 Aug 2007 475,648 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\mshtmled.dll"
Mon 13 Aug 2007 48,128 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\mshtmler.dll"
Mon 13 Aug 2007 156,160 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\msls31.dll"
Mon 13 Aug 2007 192,000 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\msrating.dll"
Mon 13 Aug 2007 670,720 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\mstime.dll"
Mon 13 Aug 2007 101,376 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\occache.dll"
Mon 13 Aug 2007 44,544 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\pngfilt.dll"
Sat 23 Sep 2006 1,497,088 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\shdocvw.dll"
Sat 23 Sep 2006 474,112 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\shlwapi.dll"
Wed 6 Sep 2006 15,584 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\spmsg.dll"
Wed 6 Sep 2006 215,776 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\spuninst.exe"
Wed 6 Sep 2006 22,752 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\spupdsvc.exe"
Mon 13 Aug 2007 105,984 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\url.dll"
Mon 13 Aug 2007 1,162,240 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\urlmon.dll"
Mon 13 Aug 2007 413,696 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\vbscript.dll"
Mon 13 Aug 2007 765,952 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\vgx.dll"
Mon 13 Aug 2007 231,424 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\webcheck.dll"
Mon 13 Aug 2007 206,336 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\winfxdocobj.exe"
Mon 13 Aug 2007 818,688 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\wininet.dll"
Mon 13 Aug 2007 71,680 A..H. --- "C:\9b751e1b441c4ba50fca9383\admparse.dll"
Mon 13 Aug 2007 123,904 A..H. --- "C:\9b751e1b441c4ba50fca9383\advpack.dll"
Sat 23 Sep 2006 1,022,976 A..H. --- "C:\9b751e1b441c4ba50fca9383\browseui.dll"
Mon 13 Aug 2007 17,408 A..H. --- "C:\9b751e1b441c4ba50fca9383\corpol.dll"
Mon 13 Aug 2007 33,792 A..H. --- "C:\9b751e1b441c4ba50fca9383\custsat.dll"
Mon 13 Aug 2007 346,624 A..H. --- "C:\9b751e1b441c4ba50fca9383\dxtmsft.dll"
Mon 13 Aug 2007 214,528 A..H. --- "C:\9b751e1b441c4ba50fca9383\dxtrans.dll"
Mon 13 Aug 2007 131,584 A..H. --- "C:\9b751e1b441c4ba50fca9383\extmgr.dll"
Mon 13 Aug 2007 60,416 A..H. --- "C:\9b751e1b441c4ba50fca9383\hmmapi.dll"
Mon 13 Aug 2007 61,952 A..H. --- "C:\9b751e1b441c4ba50fca9383\icardie.dll"
Mon 13 Aug 2007 54,784 A..H. --- "C:\9b751e1b441c4ba50fca9383\ie4uinit.exe"
Mon 13 Aug 2007 152,064 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieakeng.dll"
Mon 13 Aug 2007 229,376 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieaksie.dll"
Mon 13 Aug 2007 161,792 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieakui.dll"
Wed 11 Jul 2007 383,488 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieapfltr.dll"
Mon 13 Aug 2007 382,976 A..H. --- "C:\9b751e1b441c4ba50fca9383\iedkcs32.dll"
Mon 13 Aug 2007 69,120 A..H. --- "C:\9b751e1b441c4ba50fca9383\iedw.exe"
Mon 13 Aug 2007 78,336 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieencode.dll"
Mon 13 Aug 2007 6,049,280 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieframe.dll"
Mon 13 Aug 2007 191,488 A..H. --- "C:\9b751e1b441c4ba50fca9383\iepeers.dll"
Mon 13 Aug 2007 287,744 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieproxy.dll"
Mon 13 Aug 2007 43,008 A..H. --- "C:\9b751e1b441c4ba50fca9383\iernonce.dll"
Mon 13 Aug 2007 266,752 A..H. --- "C:\9b751e1b441c4ba50fca9383\iertutil.dll"
Mon 13 Aug 2007 55,296 A..H. --- "C:\9b751e1b441c4ba50fca9383\iesetup.dll"
Mon 13 Aug 2007 13,312 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieudinit.exe"
Mon 13 Aug 2007 180,736 A..H. --- "C:\9b751e1b441c4ba50fca9383\ieui.dll"
Mon 13 Aug 2007 622,080 A..H. --- "C:\9b751e1b441c4ba50fca9383\iexplore.exe"
Mon 13 Aug 2007 36,352 A..H. --- "C:\9b751e1b441c4ba50fca9383\imgutil.dll"
Mon 13 Aug 2007 92,672 A..H. --- "C:\9b751e1b441c4ba50fca9383\inseng.dll"
Mon 13 Aug 2007 491,520 A..H. --- "C:\9b751e1b441c4ba50fca9383\jscript.dll"
Mon 13 Aug 2007 27,136 A..H. --- "C:\9b751e1b441c4ba50fca9383\jsproxy.dll"
Mon 13 Aug 2007 40,960 A..H. --- "C:\9b751e1b441c4ba50fca9383\licmgr10.dll"
Mon 13 Aug 2007 458,752 A..H. --- "C:\9b751e1b441c4ba50fca9383\msfeeds.dll"
Mon 13 Aug 2007 50,688 A..H. --- "C:\9b751e1b441c4ba50fca9383\msfeedsbs.dll"
Mon 13 Aug 2007 12,288 A..H. --- "C:\9b751e1b441c4ba50fca9383\msfeedssync.exe"
Mon 13 Aug 2007 45,568 A..H. --- "C:\9b751e1b441c4ba50fca9383\mshta.exe"
Mon 13 Aug 2007 3,578,368 A..H. --- "C:\9b751e1b441c4ba50fca9383\mshtml.dll"
Mon 13 Aug 2007 475,648 A..H. --- "C:\9b751e1b441c4ba50fca9383\mshtmled.dll"
Mon 13 Aug 2007 48,128 A..H. --- "C:\9b751e1b441c4ba50fca9383\mshtmler.dll"
Mon 13 Aug 2007 156,160 A..H. --- "C:\9b751e1b441c4ba50fca9383\msls31.dll"
Mon 13 Aug 2007 192,000 A..H. --- "C:\9b751e1b441c4ba50fca9383\msrating.dll"
Mon 13 Aug 2007 670,720 A..H. --- "C:\9b751e1b441c4ba50fca9383\mstime.dll"
Mon 13 Aug 2007 101,376 A..H. --- "C:\9b751e1b441c4ba50fca9383\occache.dll"
Mon 13 Aug 2007 44,544 A..H. --- "C:\9b751e1b441c4ba50fca9383\pngfilt.dll"
Sat 23 Sep 2006 1,497,088 A..H. --- "C:\9b751e1b441c4ba50fca9383\shdocvw.dll"
Sat 23 Sep 2006 474,112 A..H. --- "C:\9b751e1b441c4ba50fca9383\shlwapi.dll"
Wed 6 Sep 2006 15,584 A..H. --- "C:\9b751e1b441c4ba50fca9383\spmsg.dll"
Wed 6 Sep 2006 215,776 A..H. --- "C:\9b751e1b441c4ba50fca9383\spuninst.exe"
Wed 6 Sep 2006 22,752 A..H. --- "C:\9b751e1b441c4ba50fca9383\spupdsvc.exe"
Mon 13 Aug 2007 105,984 A..H. --- "C:\9b751e1b441c4ba50fca9383\url.dll"
Mon 13 Aug 2007 1,162,240 A..H. --- "C:\9b751e1b441c4ba50fca9383\urlmon.dll"
Mon 13 Aug 2007 413,696 A..H. --- "C:\9b751e1b441c4ba50fca9383\vbscript.dll"
Mon 13 Aug 2007 765,952 A..H. --- "C:\9b751e1b441c4ba50fca9383\vgx.dll"
Mon 13 Aug 2007 231,424 A..H. --- "C:\9b751e1b441c4ba50fca9383\webcheck.dll"
Mon 13 Aug 2007 206,336 A..H. --- "C:\9b751e1b441c4ba50fca9383\winfxdocobj.exe"
Mon 13 Aug 2007 818,688 A..H. --- "C:\9b751e1b441c4ba50fca9383\wininet.dll"
Wed 6 Sep 2006 589,672 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\idndl.exe"
Thu 4 Oct 2007 33,472 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\iecustom.dll"
Thu 4 Oct 2007 66,048 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\iereseticons.exe"
Thu 4 Oct 2007 1,088,192 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\iesetup.exe"
Mon 12 Feb 2007 635,696 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\legitlibm.dll"
Wed 6 Sep 2006 498,016 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\nlsdl.exe"
Wed 6 Sep 2006 724,192 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\update.exe"
Wed 6 Sep 2006 390,880 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\updspapi.dll"
Wed 6 Sep 2006 536,888 A..H. --- "C:\2c5198581cf5dd573e1a7ed62c\update\xmllitesetup.exe"
Wed 6 Sep 2006 589,672 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\idndl.exe"
Thu 4 Oct 2007 33,472 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\iecustom.dll"
Thu 4 Oct 2007 66,048 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\iereseticons.exe"
Thu 4 Oct 2007 1,088,192 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\iesetup.exe"
Mon 12 Feb 2007 635,696 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\legitlibm.dll"
Wed 6 Sep 2006 498,016 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\nlsdl.exe"
Wed 6 Sep 2006 724,192 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\update.exe"
Wed 6 Sep 2006 390,880 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\updspapi.dll"
Wed 6 Sep 2006 536,888 A..H. --- "C:\9b751e1b441c4ba50fca9383\update\xmllitesetup.exe"
Thu 15 May 2008 88 ..SHR --- "C:\WINDOWS\system32\105CC996E0.sys"
Sun 30 Nov 2008 2,568 A.SH. --- "C:\WINDOWS\system32\KGyGaAvL.sys"
Fri 2 May 2008 88 ..SHR --- "C:\Documents and Settings\All Users\Dati applicazioni\105CC996E0.sys"
Sun 30 Nov 2008 2,568 A.SH. --- "C:\Documents and Settings\All Users\Dati applicazioni\KGyGaAvL.sys"
Sat 9 Aug 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Thu 1 May 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Fri 25 Apr 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\83bd538cd3d9f07c65b9c9fc3e4b0606\BIT1.tmp"
Mon 24 Nov 2008 2,602 ...HR --- "C:\Documents and Settings\Carmine\Dati applicazioni\SecuROM\UserData\securom_v7_01.bak"
Mon 25 Feb 2008 3,489,792 A..H. --- "C:\Documents and Settings\Carmine\Dati applicazioni\U3\temp\Launchpad Removal.exe"
Finished!
|
|