da kandiska » ven gen 18, 2008 3:46 am
Ragazzi...dopo 9 ore circa di scansione kaspersky ha rilevato 3 virus con 36 file infetti...ecco il log che ne è uscito fuori...Spero che mi possiate dare una mano..
KASPERSKY ONLINE SCANNER REPORT
Friday, January 18, 2008 3:41:16 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 17/01/2008
Kaspersky Anti-Virus database records: 481841
Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
C:\
D:\
E:\
F:\
Scan Statistics
Total number of scanned objects 77183
Number of viruses found 3
Number of infected objects 36
Number of suspicious objects 0
Duration of the scan process 08:54:23
Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Dati applicazioni\Microsoft\eHome\EPG\4c0574455a884b498339eff2022d6535.sdf Object is locked skipped
C:\Documents and Settings\All Users\Dati applicazioni\Nero\Nero8\Nero BackItUp\Cache\NeroBackItUpScheduler3.log Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Melvin\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\cert8.db Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\history.dat Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\key3.db Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\parent.lock Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\search.sqlite Object is locked skipped
C:\Documents and Settings\Melvin\Dati applicazioni\Mozilla\Firefox\Profiles\8hxzy6uf.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Cronologia\History.IE5\MSHist012008011720080118\index.dat Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\ApplicationHistory\ePower_DMC.exe.3ca0acde.ini.inuse Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\kandiska81@libero.it\SharingMetadata\Logs\Dfsr00005.log Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\kandiska81@libero.it\SharingMetadata\pending.dat Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\kandiska81@libero.it\SharingMetadata\Working\database_8A0_8A59_A08A_4D5E\dfsr.db Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\kandiska81@libero.it\SharingMetadata\Working\database_8A0_8A59_A08A_4D5E\fsr.log Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\kandiska81@libero.it\SharingMetadata\Working\database_8A0_8A59_A08A_4D5E\tmp.edb Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Windows Live Contacts\kandiska81@libero.it\real\members.stg Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Dati applicazioni\Microsoft\Windows Live Contacts\kandiska81@libero.it\shadow\members.stg Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temp\~DFCAB1.tmp Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temp\~DFCAB8.tmp Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temp\~DFD928.tmp Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temp\~DFD954.tmp Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\43QX65TH\b64[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\H7DQ1G6R\b64_3[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\H7DQ1G6R\b64_3[2].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\H7DQ1G6R\b64_3[3].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\N8KZBWPN\b64[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\N8KZBWPN\b64_3[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\Documents and Settings\Melvin\Impostazioni locali\Temporary Internet Files\Content.IE5\Z3P2I9X5\b64_2[1].jpg Infected: Trojan.Win32.Pakes.bwy skipped
C:\Documents and Settings\Melvin\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Melvin\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\i386\ntkrnlpa.exe Object is locked skipped
C:\Programmi\Acer\OrbiCam\CameraAssistant.exe Infected: Trojan-Downloader.Win32.Bagle.ig skipped
C:\Programmi\Nero\Nero8\Nero BackItUp\BIU1.txt Object is locked skipped
C:\Programmi\Realtek\InstallShield\AzMixerSel.exe Infected: Trojan-Downloader.Win32.Bagle.ig skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$NtUninstallKB896256$\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Registration\{02D4B3F1-FD88-11D1-960D-00805FC79235}.{A233DA7A-9480-4F17-9CD0-205385F7E179}.crmlog Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\Download\2aa8f55e8af02052cea14cdae13ee2d9\sp2qfe\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\SoftwareDistribution\Download\a514f3026154c5be0e6900e5f0b39396\sp2qfe\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\Media Ce.evt Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\dllcache\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\system32\drivers\down\100515.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\101859.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\102531.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\109953.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\115640.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\118671.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\118859.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\126828.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\127953.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\137046.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\140937.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\14847500.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\14871046.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\154031.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\159437.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\177718.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\183796.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\29796468.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\29829531.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\29888625.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\84125.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\86312.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\90062.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\92750.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\93046.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\down\98296.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\system32\mdelk.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
D:\Emule\Scarico Incompleti\001.part Object is locked skipped
D:\Emule\Scarico Incompleti\004.part Object is locked skipped
D:\Emule\Scarico Incompleti\005.part Object is locked skipped
D:\Emule\Scarico Incompleti\007.part Object is locked skipped
D:\Emule\Scarico Incompleti\009.part Object is locked skipped
D:\Emule\Scarico Incompleti\011.part Object is locked skipped
D:\Emule\Scarico Incompleti\012.part Object is locked skipped
D:\Emule\Scarico Incompleti\013.part Object is locked skipped
D:\Emule\Scarico Incompleti\014.part Object is locked skipped
D:\Emule\Scarico Incompleti\015.part Object is locked skipped
D:\Emule\Scarico Incompleti\016.part Object is locked skipped
D:\Emule\Scarico Incompleti\017.part Object is locked skipped
D:\Emule\Scarico Incompleti\018.part Object is locked skipped
D:\Emule\Scarico Incompleti\019.part Object is locked skipped
D:\Emule\Scarico Incompleti\020.part Object is locked skipped
D:\Emule\Scarico Incompleti\021.part Object is locked skipped
D:\Emule\Scarico Incompleti\024.part Object is locked skipped
D:\Emule\Scarico Incompleti\027.part Object is locked skipped
D:\Emule\Scarico Incompleti\029.part Object is locked skipped
D:\Emule\Scarico Incompleti\031.part Object is locked skipped
D:\Emule\Scarico Incompleti\039.part Object is locked skipped
D:\Emule\Scarico Incompleti\048.part Object is locked skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
Scan process completed.