Stamattina ho scoperto di aver beccato il caro bagle.. ho letto la vostra guida e ho seguito le istruzioni. Ho ottenuto il log da avenger ma non capendoci molto non riesco ad "interpretarlo".. potreste darmi una mano???
Grazie mille anticipatamente
![Smile [:)]](http://www.megalab.it/forum/images/smilies/smile.gif)
Questo è il log:
Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\qcgkrayk
*******************
Script file located at: \??\C:\WINDOWS\yolwqqep.txt
Script file opened successfully.
Script file read successfully
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
File C:\WINDOWS\system32\drivers\srosa.sys deleted successfully.
File C:\WINDOWS\system32\wintems.exe deleted successfully.
File C:\windows\system32\drivers\hldrrr.exe deleted successfully.
File C:\WINDOWS\system32\mdelk.exe deleted successfully.
File C:\WINDOWS\system32\drivers\mdelk.exe deleted successfully.
File C:\windows\system32\hldrrr.exe not found!
Deletion of file C:\windows\system32\hldrrr.exe failed!
Could not process line:
C:\windows\system32\hldrrr.exe
Status: 0xc0000034
Folder C:\WINDOWS\system32\drivers\downld deleted successfully.
Folder C:\Documents and Settings\admin\Dati applicazioni\m deleted successfully.
Registry key HKLM\SYSTEM\CurrentControlSet\Services\srosa deleted successfully.
Registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA deleted successfully.
Completed script processing.
*******************
Finished! Terminate.