![Piangere a dirotto [cry+]](http://www.megalab.it/forum/images/smilies/cry.gif)
![Arrossisco [:-H]](http://www.megalab.it/forum/images/smilies/arrossire.gif)
![Mi metto a piangere... [cry]](http://www.megalab.it/forum/images/smilies/crying.gif)
Ringrazio anticipatamente , un bacione!
![Approvazione [^]](http://www.megalab.it/forum/images/smilies/Oh-yea.gif)
KASPERSKY ONLINE SCANNER REPORT
Thursday, March 20, 2008 12:01:19 AM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 19/03/2008
Kaspersky Anti-Virus database records: 640022
Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
E:\
F:\
Scan Statistics
Total number of scanned objects 73992
Number of viruses found 16
Number of infected objects 68
Number of suspicious objects 0
Duration of the scan process 09:59:49
Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Dati applicazioni\Nero\Nero8\Nero BackItUp\Cache\NeroBackItUpScheduler3.log Object is locked skipped
C:\Documents and Settings\ketty86\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\ketty86\Desktop\Mirc\mIRC.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\mirc631.exe/stream/data0014 Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\mirc631.exe/stream Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\mirc631.exe NSIS: infected - 2 skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\Movavi Flash Converter 1.1 KeyGen.exe Infected: Trojan-Downloader.Win32.Bagle.lt skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\NERO13911\Toolbar.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~DF7D9D.tmp Object is locked skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~DF7DB3.tmp Object is locked skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file01 Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file02/file01 Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file02 Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file18 Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.2006 skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file44 Infected: not-a-virus:FraudTool.Win32.BestSeller.k skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file45 Infected: not-a-virus:FraudTool.Win32.BestSeller.a skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe/file83 Infected: not-a-virus:Downloader.Win32.WinFixer.x skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temp\~freesetup.exe Inno: infected - 7 skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\ketty86\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\ketty86\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\ketty86\NTUSER.DAT.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Programmi\MessengerSkinner\MessengerSkinner.exe Infected: Trojan-Downloader.Win32.Bagle.lt skipped
C:\Programmi\MessengerSkinner\uninst.exe/stream/data0005 Infected: not-a-virus:AdWare.Win32.NaviPromo.ce skipped
C:\Programmi\MessengerSkinner\uninst.exe/stream Infected: not-a-virus:AdWare.Win32.NaviPromo.ce skipped
C:\Programmi\MessengerSkinner\uninst.exe NSIS: infected - 2 skipped
C:\Programmi\mIRC\mirc.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Programmi\mIRC\mirc.exe.BAK Infected: not-a-virus:Client-IRC.Win32.mIRC.631 skipped
C:\Programmi\Nero\Nero8\Nero BackItUp\BIU1.txt Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP154\A0046129.exe Infected: not-a-virus:AdWare.Win32.Trymedia.d skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP154\A0046130.exe Infected: not-a-virus:AdWare.Win32.Trymedia.d skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP155\A0046213.exe Infected: not-a-virus:AdWare.Win32.Trymedia.d skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP202\A0056593.exe Infected: Trojan-Downloader.Win32.Bagle.lt skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP202\A0056642.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP203\A0056802.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP203\A0056803.exe Infected: Trojan.Win32.Pakes.ciw skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP204\A0057801.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP205\A0057831.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP206\A0057868.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP206\A0057869.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP206\A0057870.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP207\A0057876.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP207\A0057878.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP207\A0057879.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP207\A0057881.exe Infected: Trojan.Win32.Pakes.ciw skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP207\A0057883.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP207\A0057895.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057898.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057905.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057907.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057908.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057910.exe Infected: Trojan.Win32.Pakes.ciw skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057919.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057920.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057921.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057970.sys Infected: Trojan-Downloader.Win32.Bagle.lm skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\A0057978.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\change.log Object is locked skipped
C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$NtServicePackUninstall$\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$NtUninstallKB885835_0$\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$NtUninstallKB890859$\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\ServicePackFiles\i386\ntkrnlpa.exe Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\system32\mdelk.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\NSIS_install_msgskinner.exe/stream/data0006 Infected: not-a-virus:AdWare.Win32.NaviPromo.ce skipped
C:\WINDOWS\Temp\NSIS_install_msgskinner.exe/stream Infected: not-a-virus:AdWare.Win32.NaviPromo.ce skipped
C:\WINDOWS\Temp\NSIS_install_msgskinner.exe NSIS: infected - 2 skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
D:\Drivers\DivXPro503.exe/Gain_Trickler.exe Infected: not-a-virus:AdWare.Win32.Gator.3202 skipped
D:\Drivers\DivXPro503.exe Vise: infected - 1 skipped
D:\eMule\Incoming\[APP - ITA] Acca Suite [Primus - Termus - Mantus-p - Certus] updated-fixed 07-2007.rar/setup.exe Infected: P2P-Worm.Win32.Kapucen.b skipped
D:\eMule\Incoming\[APP - ITA] Acca Suite [Primus - Termus - Mantus-p - Certus] updated-fixed 07-2007.rar RAR: infected - 1 skipped
D:\eMule\Temp\004.part/Nero.8.Ultra.Edition.v.8.0.3.0.MULTiLANGUAGE-FiCKDiEBiATCH/nero8-fdb.iso/Nero PhotoShow Express/nero_photoshow_express_5_setup.exe/data0017 Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
D:\eMule\Temp\004.part/Nero.8.Ultra.Edition.v.8.0.3.0.MULTiLANGUAGE-FiCKDiEBiATCH/nero8-fdb.iso/Nero PhotoShow Express/nero_photoshow_express_5_setup.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
D:\eMule\Temp\004.part/Nero.8.Ultra.Edition.v.8.0.3.0.MULTiLANGUAGE-FiCKDiEBiATCH/nero8-fdb.iso/Toolbar.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
D:\eMule\Temp\004.part/Nero.8.Ultra.Edition.v.8.0.3.0.MULTiLANGUAGE-FiCKDiEBiATCH/nero8-fdb.iso Infected: not-a-virus:AdTool.Win32.MyWebSearch.bm skipped
D:\eMule\Temp\004.part RAR: infected - 4 skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
D:\System Volume Information\_restore{F68AF23F-B683-4086-8B97-BAA541B12186}\RP208\change.log Object is locked skipped
Scan process completed.