Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\qkyedsum
*******************
Script file located at: \??\C:\dbfycpcr.txt
Script file opened successfully.
Script file read successfully
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
Could not open file C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires\m_hook.sys for deletion
Deletion of file C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires\m_hook.sys failed!
Could not process line:
C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires\m_hook.sys
Status: 0xc000003a
Could not open file C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires\hidr.exe for deletion
Deletion of file C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires\hidr.exe failed!
Could not process line:
C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires\hidr.exe
Status: 0xc000003a
Could not open file C::\WINDOWS\system32\wintems.exe for deletion
Deletion of file C::\WINDOWS\system32\wintems.exe failed!
Could not process line:
C::\WINDOWS\system32\wintems.exe
Status: 0xc000003a
Could not open file C::\WINDOWS\system32\hldrrr.exe for deletion
Deletion of file C::\WINDOWS\system32\hldrrr.exe failed!
Could not process line:
C::\WINDOWS\system32\hldrrr.exe
Status: 0xc000003a
Could not open folder C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires for deletion
Deletion of folder C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires failed!
Could not process line:
C::\Documents and Settings\C:\Documents and Settings\Utente1\Dati applicazioni\hidires
Status: 0xc000003a
Could not open folder C::\WINDOWS\exefld for deletion
Deletion of folder C::\WINDOWS\exefld failed!
Could not process line:
C::\WINDOWS\exefld
Status: 0xc000003a
Registry key HKLM\SYSTEM\CurrentControlSet\Services\m_hook deleted successfully.
Registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_HOOK deleted successfully.
Could not delete registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run|hldrrr
Deletion of registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run|hldrrr failed!
Status: 0xc0000034
Completed script processing.
*******************
Finished! Terminate.
non so che fare fatemi sapere