scansione virustotal
Inviato: mar set 04, 2007 2:57 pm
ehm... di nuovo io...
sull'altra macchina in ufficio c'è tutto questo...
KASPERSKY ONLINE SCANNER REPORT
Tuesday, September 04, 2007 11:32:35 AM
Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.0
Kaspersky Anti-Virus database last update: 4/09/2007
Kaspersky Anti-Virus database records: 403381
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
Scan Statistics
Total number of scanned objects 92654
Number of viruses found 10
Number of infected objects 37
Number of suspicious objects 2
Duration of the scan process 02:07:04
Infected Object Name Virus Name Last Action
C:\Documents and Settings\user\22673354.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\22673355.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\31144152.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\31144159.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\312102126.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\312102127.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\357465.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\357468.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\3872846.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\3872851.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\Desktop\222161416.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\S1EFSTEN\LiveGames[1].cab/tmhpgzye.exe Infected: Trojan-Downloader.Win32.Small.dpa skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\S1EFSTEN\LiveGames[1].cab CAB: infected - 1 skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VEWFRP81\gvo[1].tif Suspicious: Exploit.Win32.IMG-WMF skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VEWFRP81\wnt[1].tif Suspicious: Exploit.Win32.IMG-WMF skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VZLNJD4W\index[4].html Infected: Trojan-Downloader.VBS.Psyme.fc skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VZLNJD4W\index[5].html Infected: Exploit.HTML.IESlice.l skipped
C:\WINDOWS\12155100116.exe Infected: Trojan-Clicker.Win32.Small.kj skipped
C:\WINDOWS\a.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\biti.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\bpjnqr.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\easlstm.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\ewp.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\fun.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\jqkyn.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\jvuogky.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\lcbdw.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\msnhp32.dll Infected: Trojan-Clicker.Win32.Small.kj skipped
C:\WINDOWS\p.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\qwclll.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\r.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\system32\ctfyoqss.exe Object is locked skipped
C:\WINDOWS\system32\fngkhlib.dll Infected: not-a-virus:Monitor.Win32.KeyPressHooker skipped
C:\WINDOWS\system32\fngmhlib.dll Infected: not-a-virus:Monitor.Win32.KeyPressHooker.b skipped
C:\WINDOWS\system32\msmmi.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\system32\svctzgbj.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\Tasks\aag.job Object is locked skipped
C:\WINDOWS\Tasks\aktjr.job Object is locked skipped
C:\WINDOWS\Tasks\aurcvxt.job Object is locked skipped
C:\WINDOWS\Tasks\awcojhek.job Object is locked skipped
C:\WINDOWS\Tasks\bfikuu.job Object is locked skipped
C:\WINDOWS\Tasks\bhfljwca.job Object is locked skipped
C:\WINDOWS\Tasks\cayxni.job Object is locked skipped
C:\WINDOWS\Tasks\chxzmb.job Object is locked skipped
C:\WINDOWS\Tasks\cilz.job Object is locked skipped
C:\WINDOWS\Tasks\cpkin.job Object is locked skipped
C:\WINDOWS\Tasks\cxa.job Object is locked skipped
C:\WINDOWS\Tasks\dddcrix.job Object is locked skipped
C:\WINDOWS\Tasks\eqppsu.job Object is locked skipped
C:\WINDOWS\Tasks\fgw.job Object is locked skipped
C:\WINDOWS\Tasks\fywx.job Object is locked skipped
C:\WINDOWS\Tasks\fzehbcfm.job Object is locked skipped
C:\WINDOWS\Tasks\gchtso.job Object is locked skipped
C:\WINDOWS\Tasks\gcwiux.job Object is locked skipped
C:\WINDOWS\Tasks\icgwj.job Object is locked skipped
C:\WINDOWS\Tasks\iircuqj.job Object is locked skipped
C:\WINDOWS\Tasks\ikv.job Object is locked skipped
C:\WINDOWS\Tasks\itan.job Object is locked skipped
C:\WINDOWS\Tasks\iuuttmhe.job Object is locked skipped
C:\WINDOWS\Tasks\jzyzz.job Object is locked skipped
C:\WINDOWS\Tasks\kftat.job Object is locked skipped
C:\WINDOWS\Tasks\khwolt.job Object is locked skipped
C:\WINDOWS\Tasks\koi.job Object is locked skipped
C:\WINDOWS\Tasks\lkewe.job Object is locked skipped
C:\WINDOWS\Tasks\lxddfjjx.job Object is locked skipped
C:\WINDOWS\Tasks\mga.job Object is locked skipped
C:\WINDOWS\Tasks\mjhyywjp.job Object is locked skipped
C:\WINDOWS\Tasks\nya.job Object is locked skipped
C:\WINDOWS\Tasks\ofm.job Object is locked skipped
C:\WINDOWS\Tasks\olhcv.job Object is locked skipped
C:\WINDOWS\Tasks\ooozehq.job Object is locked skipped
C:\WINDOWS\Tasks\qbi.job Object is locked skipped
C:\WINDOWS\Tasks\scely.job Object is locked skipped
C:\WINDOWS\Tasks\sde.job Object is locked skipped
C:\WINDOWS\Tasks\szejc.job Object is locked skipped
C:\WINDOWS\Tasks\tiezhyr.job Object is locked skipped
C:\WINDOWS\Tasks\tpfoqtb.job Object is locked skipped
C:\WINDOWS\Tasks\tpzsvx.job Object is locked skipped
C:\WINDOWS\Tasks\tttkltk.job Object is locked skipped
C:\WINDOWS\Tasks\ukkk.job Object is locked skipped
C:\WINDOWS\Tasks\utm.job Object is locked skipped
C:\WINDOWS\Tasks\uyvmujtl.job Object is locked skipped
C:\WINDOWS\Tasks\uzgebrm.job Object is locked skipped
C:\WINDOWS\Tasks\wereo.job Object is locked skipped
C:\WINDOWS\Tasks\woa.job Object is locked skipped
C:\WINDOWS\Tasks\xpfoisug.job Object is locked skipped
C:\WINDOWS\Tasks\xsj.job Object is locked skipped
C:\WINDOWS\Tasks\yacjs.job Object is locked skipped
C:\WINDOWS\Tasks\yhyh.job Object is locked skipped
C:\WINDOWS\Tasks\zcjjrm.job Object is locked skipped
C:\WINDOWS\Tasks\zelv.job Object is locked skipped
C:\WINDOWS\Tasks\zryb.job Object is locked skipped
C:\WINDOWS\Temp\wdhfaa.exe Infected: Trojan.Win32.Dialer.ru skipped
C:\WINDOWS\v.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\vklvy.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\winhp32.exe Infected: Trojan-Clicker.Win32.Small.kj skipped
C:\WINDOWS\yrmu.exe Infected: Trojan.Win32.Dialer.rt skipped
Scan process completed.
mi chiedono se possono rimuovere tutto manualmente o se è meglio usare l'antirootkit.....
pare che quello della mc afee non rilevi tutte le infezioni...
in caso di infezioni MULTIPLE come mi pare essere questa... la procedura da seguire qual è?
sull'altra macchina in ufficio c'è tutto questo...
KASPERSKY ONLINE SCANNER REPORT
Tuesday, September 04, 2007 11:32:35 AM
Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.0
Kaspersky Anti-Virus database last update: 4/09/2007
Kaspersky Anti-Virus database records: 403381
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
Scan Statistics
Total number of scanned objects 92654
Number of viruses found 10
Number of infected objects 37
Number of suspicious objects 2
Duration of the scan process 02:07:04
Infected Object Name Virus Name Last Action
C:\Documents and Settings\user\22673354.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\22673355.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\31144152.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\31144159.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\312102126.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\312102127.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\357465.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\357468.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\3872846.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\3872851.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\Desktop\222161416.dll Infected: Trojan-Clicker.Win32.Agent.hz skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\S1EFSTEN\LiveGames[1].cab/tmhpgzye.exe Infected: Trojan-Downloader.Win32.Small.dpa skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\S1EFSTEN\LiveGames[1].cab CAB: infected - 1 skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VEWFRP81\gvo[1].tif Suspicious: Exploit.Win32.IMG-WMF skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VEWFRP81\wnt[1].tif Suspicious: Exploit.Win32.IMG-WMF skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VZLNJD4W\index[4].html Infected: Trojan-Downloader.VBS.Psyme.fc skipped
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\VZLNJD4W\index[5].html Infected: Exploit.HTML.IESlice.l skipped
C:\WINDOWS\12155100116.exe Infected: Trojan-Clicker.Win32.Small.kj skipped
C:\WINDOWS\a.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\biti.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\bpjnqr.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\easlstm.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\ewp.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\fun.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\jqkyn.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\jvuogky.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\lcbdw.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\msnhp32.dll Infected: Trojan-Clicker.Win32.Small.kj skipped
C:\WINDOWS\p.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\qwclll.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\r.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\system32\ctfyoqss.exe Object is locked skipped
C:\WINDOWS\system32\fngkhlib.dll Infected: not-a-virus:Monitor.Win32.KeyPressHooker skipped
C:\WINDOWS\system32\fngmhlib.dll Infected: not-a-virus:Monitor.Win32.KeyPressHooker.b skipped
C:\WINDOWS\system32\msmmi.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\system32\svctzgbj.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\Tasks\aag.job Object is locked skipped
C:\WINDOWS\Tasks\aktjr.job Object is locked skipped
C:\WINDOWS\Tasks\aurcvxt.job Object is locked skipped
C:\WINDOWS\Tasks\awcojhek.job Object is locked skipped
C:\WINDOWS\Tasks\bfikuu.job Object is locked skipped
C:\WINDOWS\Tasks\bhfljwca.job Object is locked skipped
C:\WINDOWS\Tasks\cayxni.job Object is locked skipped
C:\WINDOWS\Tasks\chxzmb.job Object is locked skipped
C:\WINDOWS\Tasks\cilz.job Object is locked skipped
C:\WINDOWS\Tasks\cpkin.job Object is locked skipped
C:\WINDOWS\Tasks\cxa.job Object is locked skipped
C:\WINDOWS\Tasks\dddcrix.job Object is locked skipped
C:\WINDOWS\Tasks\eqppsu.job Object is locked skipped
C:\WINDOWS\Tasks\fgw.job Object is locked skipped
C:\WINDOWS\Tasks\fywx.job Object is locked skipped
C:\WINDOWS\Tasks\fzehbcfm.job Object is locked skipped
C:\WINDOWS\Tasks\gchtso.job Object is locked skipped
C:\WINDOWS\Tasks\gcwiux.job Object is locked skipped
C:\WINDOWS\Tasks\icgwj.job Object is locked skipped
C:\WINDOWS\Tasks\iircuqj.job Object is locked skipped
C:\WINDOWS\Tasks\ikv.job Object is locked skipped
C:\WINDOWS\Tasks\itan.job Object is locked skipped
C:\WINDOWS\Tasks\iuuttmhe.job Object is locked skipped
C:\WINDOWS\Tasks\jzyzz.job Object is locked skipped
C:\WINDOWS\Tasks\kftat.job Object is locked skipped
C:\WINDOWS\Tasks\khwolt.job Object is locked skipped
C:\WINDOWS\Tasks\koi.job Object is locked skipped
C:\WINDOWS\Tasks\lkewe.job Object is locked skipped
C:\WINDOWS\Tasks\lxddfjjx.job Object is locked skipped
C:\WINDOWS\Tasks\mga.job Object is locked skipped
C:\WINDOWS\Tasks\mjhyywjp.job Object is locked skipped
C:\WINDOWS\Tasks\nya.job Object is locked skipped
C:\WINDOWS\Tasks\ofm.job Object is locked skipped
C:\WINDOWS\Tasks\olhcv.job Object is locked skipped
C:\WINDOWS\Tasks\ooozehq.job Object is locked skipped
C:\WINDOWS\Tasks\qbi.job Object is locked skipped
C:\WINDOWS\Tasks\scely.job Object is locked skipped
C:\WINDOWS\Tasks\sde.job Object is locked skipped
C:\WINDOWS\Tasks\szejc.job Object is locked skipped
C:\WINDOWS\Tasks\tiezhyr.job Object is locked skipped
C:\WINDOWS\Tasks\tpfoqtb.job Object is locked skipped
C:\WINDOWS\Tasks\tpzsvx.job Object is locked skipped
C:\WINDOWS\Tasks\tttkltk.job Object is locked skipped
C:\WINDOWS\Tasks\ukkk.job Object is locked skipped
C:\WINDOWS\Tasks\utm.job Object is locked skipped
C:\WINDOWS\Tasks\uyvmujtl.job Object is locked skipped
C:\WINDOWS\Tasks\uzgebrm.job Object is locked skipped
C:\WINDOWS\Tasks\wereo.job Object is locked skipped
C:\WINDOWS\Tasks\woa.job Object is locked skipped
C:\WINDOWS\Tasks\xpfoisug.job Object is locked skipped
C:\WINDOWS\Tasks\xsj.job Object is locked skipped
C:\WINDOWS\Tasks\yacjs.job Object is locked skipped
C:\WINDOWS\Tasks\yhyh.job Object is locked skipped
C:\WINDOWS\Tasks\zcjjrm.job Object is locked skipped
C:\WINDOWS\Tasks\zelv.job Object is locked skipped
C:\WINDOWS\Tasks\zryb.job Object is locked skipped
C:\WINDOWS\Temp\wdhfaa.exe Infected: Trojan.Win32.Dialer.ru skipped
C:\WINDOWS\v.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\vklvy.exe Infected: Trojan.Win32.Dialer.rt skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\winhp32.exe Infected: Trojan-Clicker.Win32.Small.kj skipped
C:\WINDOWS\yrmu.exe Infected: Trojan.Win32.Dialer.rt skipped
Scan process completed.
mi chiedono se possono rimuovere tutto manualmente o se è meglio usare l'antirootkit.....
pare che quello della mc afee non rilevi tutte le infezioni...
in caso di infezioni MULTIPLE come mi pare essere questa... la procedura da seguire qual è?