Punto informatico Network
Login Esegui login | Non sei registrato? Iscriviti ora (è gratuito!)
Username: Password:
  • Annuncio Pubblicitario

ho un bagle o no?

Un virus si è intromesso nel tuo computer? Vuoi navigare in tutta sicurezza? Sono sicure le transazione online? Come impedire a malintenzionati di intromettersi nel tuo pc? Come proteggere i tuoi dati? Qui trovi le risposte a queste ed altre domande

ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 1:02 pm

ciao a tutti sono nuovo e spero di non aver aperto un nuovo argomento per niente,siccome non riesco a usare nessun antivirus (usavo avast)ho pensato a un bagle,girando nel sito ho lanciato GMER,l'unica voce rossa che mi da è questa: TYPE (SERVICE), NAME (c:\documents and settings\NOME UTENTE\dati applicazioni\drivers\wfsintwq.sys(***HIDDEN***), VALUE ([SYSTEM] srosa.
a questo punto non so se devo usare findykill oppure the avenger e anche se lo sapessi non saprei come,inanzitutto qualcuno potrebbe darmi la conferma che ho un bagle? ringraziamenti sinceri e anticipati.
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda Amantide » dom mar 08, 2009 2:42 pm

Più che di Bagle, direi che si tratta di questo http://www.MegaLab.it/4176/videoplay-un ... complicato

Scarica ComboFix , salvandolo sul desktop con un nome di fantasia, ed esegui la scansione seguendo queste istruzioni (giù in fondo). Al termine della scansione verrà creato il file di report C:\combofix.txt, copia qui il suo contenuto inserendolo tra i tag LOG, in questo modo:
Codice: Seleziona tutto
[LOG]qui va inserito il log[/LOG]
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 4:12 pm

io però non ho scaricato nessun ''player'' ultimamente e la voce ''matrix'' non è presente da nessuna parte...dici che devo provare comunque?
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm


Re: ho un bagle o no?

Messaggioda Amantide » dom mar 08, 2009 4:29 pm

onekef ha scritto:dici che devo provare comunque?

Di qualsiasi malware non si trattasse, devi provare lo stesso ad eseguire Combofix, è un tool di rimozione universale.
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 5:01 pm

ho fatto tutto,solo che i caratteri sono 62000 cioè 2000 in piu di quelli che posso loggare...cosa vuol dire metterli su mediafire?
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda Amantide » dom mar 08, 2009 5:37 pm

onekef ha scritto:ho fatto tutto,solo che i caratteri sono 62000 cioè 2000 in piu di quelli che posso loggare...

Puoi fare in 2 modi per allegare il log: o lo spezzi in 2 parti oppure lo alleghi come un allegato.
onekef ha scritto:cosa vuol dire metterli su mediafire?

Se vuoi caricare il file su mediafire, devi semplicemente accedere a questo sito http://www.mediafire.com/ , caricare il log cliccando su Upload Files to Mediafire>> I Want to upload without an account e postare qui il link restituito per il download del file.
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 5:56 pm

ComboFix 09-03-06.02 - JESSICA 2009-03-08 16:39:36.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1040.18.512.360 [GMT 1:00]
Eseguito da: c:\documents and settings\JESSICA\Desktop\sticazzi.exe
* Creato nuovo punto di ripristino
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Desktop\webmediaplayer.lnk
c:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer
c:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Condizioni generali.url
c:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Disinstalla.lnk
c:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Riservatezza.url
c:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\WebMediaPlayer.lnk
c:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Website.url
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\100953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\101781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\102843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\103468.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\104406.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\104812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\104984.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\105109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\107031.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\108218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\109375.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\109437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\109625.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\110453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\111046.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\111703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\111968.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\112109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\112921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\112937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\112968.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\113031.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\114171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\114734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\115703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\117046.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\119781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\120390.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\120515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14795656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14795875.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14795906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14804437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14804765.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14805046.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14805578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14807312.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14807734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14808453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14809000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14809078.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14809453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14810000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14810281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14824812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14833906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14833953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14897656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14897734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14897750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14962375.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14962515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14962609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14964000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14964046.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14965484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14965546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14965562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14967703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14967750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14967781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14976765.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14978140.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14978843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14979671.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14982093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14982187.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14982406.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14994531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14995000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14995406.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14996312.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14996609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\14996796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15007500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15007640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15007765.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\150203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15083546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15083578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15096640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15097906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15101015.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15101171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\15101203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\154656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\156781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\169109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\169265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\169296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\174437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\174500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\174609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\175281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\175296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\176656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\176953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\177046.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\177421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\177484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\184593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\185000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\185015.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\191421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\200281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\200296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\204406.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\212796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\213281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\213500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\215390.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\215656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\216968.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\217078.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\219203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\220062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\220187.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\220578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\222156.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\222281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\222343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\222437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\223593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\223750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\223781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\224640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\224828.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\225406.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\225812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\225953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\226671.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\227078.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\228390.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\229109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\229515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\229562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\229734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\231125.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\231718.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\231843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\234531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\235234.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\235265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\240343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\241187.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\241265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\241281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\242031.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\242453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\242796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\242937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\243640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\243765.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\245062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\245281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\245437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\245453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\246593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\246750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\247484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\248062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\248500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\248515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\248562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\249343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\249640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\249734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\250921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\251421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\251593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\252703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\252734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\254656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\255109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\255140.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\255156.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\255343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\255359.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\256078.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\256890.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\257375.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\257546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\257812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\257953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\258000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\258906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\258921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\259515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\260015.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\260062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\260187.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\261953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\262062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\262703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\262781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\264250.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\264328.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\264921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\265125.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\265156.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\265296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\266375.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\266593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\267812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\269031.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\270265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\270453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\271609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\272390.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\272421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\273890.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\274921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\275203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\275671.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\275843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\276203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\279578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\280453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\280687.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\282093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\282546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\283453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\283562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\284515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\284921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\285312.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\285921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\286015.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\287421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\288812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\289109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\291640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\291875.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\291890.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\294140.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\294531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\295156.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\295578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\295921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\296062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\296515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\297203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\297609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\297687.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\297796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\297921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\297968.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\298093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\298218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\298843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\300203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\303671.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\304562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\304578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\306296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\307515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\308421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\308937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\309593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\309921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\310171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\310531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\310593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\311109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\311328.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\311781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\312218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\312296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\316187.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\319781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\319796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\329140.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\330703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\331078.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\331703.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\332203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\332593.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\333093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\333625.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\333812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\333828.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\334062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\335562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\336406.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\336515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\344484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\344890.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\345265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\346203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\346625.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\346812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\347250.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\347296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\351843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\351968.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\357484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\357828.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\365890.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\365937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\365953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\367250.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\370843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\370890.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\370906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\372296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\372968.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\373062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\383218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\383734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\383875.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\384640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\385093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\385296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\385359.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\386187.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\386343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\387484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\388625.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\388671.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\389796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\392984.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\393265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\393515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\393531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\393734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\393750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\393781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\394171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\394562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\395656.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\395843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\400718.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\400953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\401812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\401906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\401953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\401984.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\409234.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\410734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\410750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\417015.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\417343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\417421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\425671.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\426015.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\428203.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\430640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\432765.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\433171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\433218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\433906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\434140.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\486093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\489796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\499062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\500093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\500562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\501062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\502562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\503250.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\513171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\514750.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\515343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\529000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\535875.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\536812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\59218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\59609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\600562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\600781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\600875.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\644343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\65125.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\65343.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\65437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\65921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\66421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\664234.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\664375.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\664484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\66453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\66625.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\66640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\667937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\669515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\669531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\67375.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\67390.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\67578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\68796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\69453.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\69500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\69531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\69875.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\70437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\71328.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\73546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\73796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\73812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\74281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\74484.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\74640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\75109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\75281.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\75421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\75593.exe

questa è la prima parte
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 5:57 pm

c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\75796.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\75859.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\76109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\76171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\76250.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\76500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\76515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\77000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\77046.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\77546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\77718.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\77812.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\77953.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\78171.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\78500.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\78609.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\78640.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\78687.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\79140.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\79218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\79265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\81578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\82156.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\82546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\83359.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\83625.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\84421.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\84828.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\86265.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\86562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\86781.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\87250.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\87531.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\87562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\87906.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\88515.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\89000.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\89109.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\89546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\89921.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\90546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\91312.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\91562.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\91734.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\93390.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\94937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\95062.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\95296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\95437.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\96843.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\97093.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\97578.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\97937.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\98296.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\98546.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\downld\99218.exe
c:\documents and settings\JESSICA\Dati applicazioni\drivers\srosa2.sys
c:\documents and settings\JESSICA\Dati applicazioni\drivers\wfsintwq.sys
c:\documents and settings\JESSICA\Dati applicazioni\drivers\winupgro.exe
c:\documents and settings\JESSICA\Dati applicazioni\m
c:\documents and settings\JESSICA\Dati applicazioni\m\data.oct
c:\documents and settings\JESSICA\Dati applicazioni\m\flec006.exe
c:\documents and settings\JESSICA\Dati applicazioni\m\list.oct
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\1-Hour Search Engine Optimization Crash Course 1.4.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\1st Email Address Spider 2006 5.77 (Key+Serial).zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\3D Background Textures Collection 1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\3D Formula 1 Screensaver 1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\ABC Security Protector 5.3.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Adobe Photoshop Elements 4.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Allatori Obfuscator 1.6.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Anime on Demand 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Arabian Nights updated demo.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\ArcConvert 0.51a.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Atomic CD Email Extractor 1.60.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\AUTO MANUFACTURERS STOCKS 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Automatic Programs Update 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Avast!.Antivirus.Professional.v4.7.844.with.KeyGen.&.Skins.updated-fixed.01-2007.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\BestView 1.0.0.0 Serial.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Black MOON Search X 7.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\CCSP 642-501 Practice Exam Questions.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Christmas Weather Report Screensaver 1.2.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\CreateInstall 4.13.7.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\CruiseControl 1.1 (Cracked).zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Crystal Cursor 0.2.1 Alpha.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Cubis Gold 1.3.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\CyberSense Search Center 3.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Data Doctor Recovery - Pen Drive 2.0.1.5.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\DC3 Compiler - Interpreter 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\DemoForge Studio 1.2.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\devCad Professional 1.0 RC1g.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\DimichSoft Advanced File Tracer 1.5 Cracked.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Dr.Web 4.33.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Dream Aquarium 3D Screensaver 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Dupehunter Professional 6.0.0.2710.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\DVD Audio Extractor 4.3.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\DVD to MPEG Converter 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Easiestutils DVD to 3GP converter 4.9.0.65.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\EasyVoipRecorder 1.2.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\EdenSoft My Logo 1.0.0.7.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\eMule 0.48a Final.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\eNavigator Suite 7.5.429 [Key].zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Ethos Game Basic 1.3 [Serial].zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Expired Comps 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\EZ Photo Calendar Creator 5.33.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\FastPrint 1.60 Build 070510 [Crack].zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\FastTrackNews 2.02.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\FileMed EMR 5.23 [Cracked].zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\FireWire IIDC Camera Driver 1.0.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\FTPigamo 1.0.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Gangland multiplayer demo fix.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\GridBagger 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Hockey Scoreboard Standard 1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\HyperPublish 2008.25.250.352.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\i-Catcher Console 2.3.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Imesh Acceleration Patch 4.8.6.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\InstallAware for Windows Installer 6.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\JFPCreator 1.02.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Kaspersky Anti-Virus Personal 6.0.1.411 - NEW version.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\KChess Elite 4.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\LanTalk NET 3.3.5274.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Lazy Web Search 2.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Lexis Rex with German 1.3.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\LopeEdit Pro 5.3.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Lucky Google 1.5,1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Magical Glass 1.0.2.4.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Mahalosoft BionicSpider 2.0.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\MapStar MapPro Beta 2.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Master of Defense 1.54.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Mastersoft Money 6.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Medical Calendar 3.5.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Microsoft Search Server 2008 Express RC.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Mousave 5.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\MP3 Cat 2.12 [Patch].zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\MP3Guard 2.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\MSNLiveDisplay 1.1.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\MyPhotoIndex 1.00.11.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Neat Video Demo plug-in for VirtualDub 2.2.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\nnCron LITE 1.17.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\OJOsoft PSP Video Converter 2.0.0.0430.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\OmniPeek Personal 4.0.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Pacman 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Paris Webcam 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PC Cart 2.6.7.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PC Controller 1.2 (Key).zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Personal Advisor 0.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PhotoTiler Pro InDesign Plug-in 2.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Ping Tester - Professional 8.18.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Pivot Table Helper 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PocketFMS 0.9.62 KeyGen.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PopSurfer 1.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Portable Handy Password 4.4.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PowerTCP Mail Tool 2.9.2.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PQ DVD to iPhone Converter 1.0 Build 01.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Print Tracker 5.7.4.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\PromaSoft AutoResponder 2.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Rapid Reminder Pro 2006 build 186.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\real-night-time Speed Dial 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\RentBoss Single User 3.20.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Roller Coaster Tycoon demo.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Setup2Go 1.9.11.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Sexy Jennifer Lopez-E-Sex-BabeSavers.com 1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Simply Modbus 5.9.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Stereogram Creator 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\TBS Home Inventory 6.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Tele-Cap Free 3.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\The Check Writing Partner 3.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\The Net Detective Toolbar for Firefox 1.5.0.11.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\The Patentstein Browser 1.3.0 b3.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Thief II The Metal Age 1.07 to 1.18 patch.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Thumbmaker 1.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Toggler 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Total Commander Password Recovery 1.0.120.2006 [Key+Serial].zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Travel Dictionary English- PC 5.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\TTimeSync 1.5 (Crack).zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Unreal Tournament 2003 - Reigncaster deathmatch map.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Uranus Font TrueType 1.51.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\URL Encoder-Decoder 1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\USAsoft DVD to MPEG Converter 5.1.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\vbCodeShield 2.0.2.1 (Key+Serial).zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\VideoPut 1.2.0.23.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Virtual Modem 1.7.3 Patch.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\WinX 3GP PDA MP4 Video Converter 3.5.58 Key+Serial.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Wondershare Pocket Video Converter 3.2.52.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Wondershare PPT to MP4 4.7.0.10.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Word Password Recovery Key 8.0 build 2514.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Word Viewer OCX 2.1.4.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\WordLang Study Italian Talking Picture Dictionary Game 1.2.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Worm.Zotob Removal Tool 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Yahoo! Music Jukebox (formerly Yahoo! Music Engine) 2.2.2.058.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\shared\Yahoo! My Headlines 1.0.zip
c:\documents and settings\JESSICA\Dati applicazioni\m\srvlist.oct
c:\documents and settings\JESSICA\Impostazioni locali\Dati applicazioni\qaoqc.dat
c:\documents and settings\JESSICA\Impostazioni locali\Dati applicazioni\qaoqc.exe
c:\documents and settings\JESSICA\Impostazioni locali\Dati applicazioni\qaoqc_nav.dat
c:\documents and settings\JESSICA\Impostazioni locali\Dati applicazioni\qaoqc_navps.dat
c:\programmi\webmediaplayer
c:\programmi\webmediaplayer\resources\wmp_translation_file.xml
c:\programmi\webmediaplayer\skins\classic.skn
c:\programmi\webmediaplayer\sqlite3.dll
c:\programmi\webmediaplayer\uninst.exe
c:\programmi\webmediaplayer\WebMediaPlayer.exe
c:\windows\system32\ban_list.txt
c:\windows\system32\drivers\down
c:\windows\system32\drivers\down\188562.exe
c:\windows\system32\drivers\down\296000.exe
c:\windows\system32\ftpupd.exe
c:\windows\system32\mdelk.exe
c:\windows\system32\wintems.exe

.
((((((((((((((((((((((((((((((((((((((( Driver/Servizi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_SROSA
-------\Legacy_SROSA
-------\Legacy_SK9OU0S
-------\Service_sK9Ou0s


((((((((((((((((((((((((( Files Creati Da 2009-02-08 al 2009-03-08 )))))))))))))))))))))))))))))))))))
.

2009-03-08 11:19 . 2009-03-08 11:19 <DIR> d-------- C:\fsaua.data
2009-03-08 11:16 . 2009-03-08 11:16 <DIR> d-------- c:\programmi\CCleaner
2009-03-07 23:18 . 2009-03-08 16:43 <DIR> d--h----- c:\documents and settings\JESSICA\Dati applicazioni\drivers
2009-03-07 20:30 . 2009-03-07 20:30 <DIR> d--h----- c:\windows\PIF
2009-03-07 13:19 . 2009-03-07 13:19 <DIR> d-------- c:\programmi\Youdagames
2009-03-07 10:51 . 2009-03-07 10:51 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Adobe Systems
2009-03-07 10:50 . 2009-03-07 10:50 <DIR> d-------- c:\programmi\File comuni\Adobe Systems Shared
2009-03-06 13:34 . 2009-03-08 16:32 116 --a------ c:\windows\NeroDigital.ini
2009-03-06 12:42 . 2009-03-06 12:42 <DIR> d-------- c:\programmi\Nero
2009-03-06 12:42 . 2009-03-06 12:42 <DIR> d-------- c:\programmi\File comuni\Ahead
2009-03-06 10:51 . 2009-03-06 10:51 <DIR> d-------- c:\programmi\File comuni\Adobe AIR
2009-03-06 10:48 . 2009-03-06 10:49 <DIR> d-------- C:\bwin Poker
2009-03-06 10:37 . 2009-03-07 13:55 <DIR> d-------- c:\programmi\Google
2009-03-02 22:51 . 2009-03-02 22:51 <DIR> d-------- c:\programmi\Softick
2009-03-02 22:48 . 2009-03-02 22:48 311,287 --a------ c:\programmi\uploader.zip
2009-03-02 22:47 . 2009-03-02 22:47 870,066 --a------ c:\programmi\SoftickPPP234-en.zip
2009-03-01 11:25 . 2009-03-01 11:25 <DIR> d-------- c:\windows\system32\it
2009-03-01 11:25 . 2009-03-01 11:25 <DIR> d-------- c:\windows\l2schemas
2009-02-21 13:49 . 2009-02-21 13:49 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\wmp
2009-02-20 13:25 . 2009-02-20 13:25 <DIR> d-------- C:\MicroGaming
2009-02-20 13:25 . 2009-02-20 13:25 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Microgaming
2009-02-20 13:25 . 2009-02-20 14:18 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\MGS
2009-02-20 13:23 . 2009-03-06 14:27 <DIR> d-------- c:\programmi\PokerStars.IT
2009-02-19 15:08 . 2009-02-19 15:08 <DIR> d-------- c:\programmi\Yontoo Layers Client for Internet Explorer
2009-02-19 15:08 . 2009-02-19 15:08 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Tarma Installer
2009-02-11 12:13 . 2009-02-12 11:37 <DIR> d-------- c:\programmi\Poker Club by Lottomatica
2009-02-09 10:58 . 2009-03-01 11:45 <DIR> d-------- c:\programmi\Full Tilt Poker
2009-02-08 14:49 . 2009-02-20 16:44 <DIR> d-------- C:\Poker

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-08 10:01 --------- d-----w c:\programmi\Artweaver 0.5
2009-03-08 09:40 --------- d-----w c:\programmi\PC Tools Internet Security
2009-03-08 09:38 --------- d---a-w c:\documents and settings\All Users\Dati applicazioni\TEMP
2009-03-08 08:54 --------- d-----w c:\programmi\eMule
2009-03-07 09:55 --------- d-----w c:\programmi\File comuni\Adobe
2009-03-06 17:33 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\Ahead
2009-02-09 09:58 --------- d--h--w c:\programmi\InstallShield Installation Information
2009-01-25 20:06 --------- d-----w c:\programmi\BurnAware Free
2009-01-18 10:15 --------- d-----w c:\programmi\Alwil Software
2009-01-16 17:07 --------- d-----w c:\programmi\File comuni\Symantec Shared
2009-01-16 16:53 --------- d-----w c:\programmi\Symantec
2009-01-16 16:53 --------- d-----w c:\documents and settings\All Users\Dati applicazioni\Symantec
2009-01-16 16:14 --------- d-----w c:\documents and settings\All Users\Dati applicazioni\BufferZone
2009-01-16 15:10 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\Symantec
2009-01-15 14:14 --------- d-----w c:\programmi\Graboid
2009-01-15 13:59 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\MozillaControl
2009-01-15 13:58 --------- d-----w c:\documents and settings\All Users\Dati applicazioni\Graboid Inc
2009-01-13 12:40 --------- d-----w c:\programmi\GiocoDigitale
2009-01-13 12:40 --------- d-----w c:\documents and settings\All Users\Dati applicazioni\GiocoDigitale
2009-01-12 11:27 --------- d-----w c:\programmi\Servizi in linea
2009-01-11 19:52 --------- d-----w c:\documents and settings\All Users\Dati applicazioni\PC Tools
2009-01-11 18:59 --------- d-----w c:\programmi\MSXML 4.0
2009-01-11 12:44 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\PCToolsFirewallPlus
2009-01-11 12:43 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\PCToolsSpamMonitorPlus
2009-01-11 12:04 --------- d-----w c:\programmi\Live_TV
2009-01-10 15:30 --------- d-----w c:\programmi\CDex_150
2009-01-10 15:27 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\GlarySoft
2009-01-10 11:00 --------- d-----w c:\programmi\SUPERAntiSpyware
2009-01-10 11:00 --------- d-----w c:\documents and settings\JESSICA\Dati applicazioni\SUPERAntiSpyware.com
2009-01-09 15:40 --------- d-----w c:\programmi\Java
2008-03-19 16:07 162 ---ha-w c:\documents and settings\JESSICA\hpothb07.dat
2005-01-02 13:20 0 ---ha-w c:\documents and settings\LocalService\hpothb07.dat
2005-01-02 13:19 261 ---ha-w c:\programmi\hpothb07.tif
2005-01-02 13:19 148 ---ha-w c:\programmi\hpothb07.dat
2005-01-02 13:19 0 ---ha-w c:\documents and settings\NetworkService\hpothb07.dat
.

((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
2008-10-01 08:40 192960 --------- c:\programmi\Yontoo Layers Client for Internet Explorer\YontooIEClient.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"swg"="c:\programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-03-07 39408]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\programmi\File comuni\Ahead\lib\NMBgMonitor.exe" [2005-09-03 94208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\programmi\Java\jre6\bin\jusched.exe" [2009-01-09 136600]
"SoftickPPP"="c:\programmi\Softick\PPP\Bin\PPPGate.exe" [2006-07-06 195072]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\JESSICA\Menu Avvio\Programmi\Esecuzione automatica\
Adobe Gamma.lnk - c:\programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe [2005-03-16 113664]

c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
BTTray.lnk - c:\programmi\WIDCOMM\Software Bluetooth\BTTray.exe [2004-11-29 569405]
FunTV Remote Control.lnk - c:\programmi\FunTV Installation \T7Ir9x.exe [2004-11-07 139264]
hp psc 1000 series.lnk - c:\programmi\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe [2003-04-06 147456]
hpoddt01.exe.lnk - c:\programmi\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe [2003-04-06 28672]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSMMyDocs"= 1 (0x1)
"NoRecentDocsNetHood"= 1 (0x1)

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSMMyDocs"= 1 (0x1)
"NoRecentDocsNetHood"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
"c:\\Programmi\\eMule\\emule.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

R3 Tunx00;FunTV Video Capture;c:\windows\system32\drivers\Tunx00.sys [2004-11-07 302720]
R3 TxTuner;FunTV TV Tuner;c:\windows\system32\drivers\TxTuner.sys [2004-11-13 26880]
.
Contenuto della cartella 'Scheduled Tasks'

2006-04-03 c:\windows\Tasks\FRU Task #Hewlett-Packard#hp psc 1100 series#1100293262.job
- c:\programmi\Hewlett-Packard\Digital Imaging\Bin\hpqfrucl.exe [2003-04-06 00:52]

2009-03-08 c:\windows\Tasks\GlaryInitialize.job
- c:\programmi\Glary Utilities\initialize.exe [2008-04-09 12:22]
.
- - - - CHIAVI ORFANE RIMOSSE - - - -

HKCU-Run-qaoqc - c:\documents and settings\jessica\impostazioni locali\dati applicazioni\qaoqc.exe
HKLM-Run-NWEReboot - (no file)
HKU-Default-Run-Internet Security Service - mysqlwin32.exe


.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.yahoo.it/
uInternet Settings,ProxyServer = <local>
uInternet Settings,ProxyOverride = <local>
IE: Blocca informazioni personali da questo sito - file://c:\programmi\GhostSurf\info.block.html
IE: Blocca popups in questo sito - file://c:\programmi\GhostSurf\popup.block.html
IE: Blocca questa pubblicità - file://c:\programmi\GhostSurf\menu.blockimg.html
IE: Invia a &Bluetooth - c:\programmi\WIDCOMM\Software Bluetooth\btsendto_ie_ctx.htm
IE: Permetti alle informazioni personali di raggiungere questo sito - file://c:\programmi\GhostSurf\info.allow.html
IE: Permetti popups in questo sito - file://c:\programmi\GhostSurf\popup.allow.html
IE: Permetti questa pubblicità - file://c:\programmi\GhostSurf\menu.allowimg.html
IE: {{C4046502-6524-4d87-896C-878F57D1FF07} - c:\programmi\PokerStars.IT\PokerStarsUpdate.exe
DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} - hxxps://plugins.valueactive.eu/flashax/iefax.cab
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-03-08 16:47:35
Windows 5.1.2600 Service Pack 3 NTFS

scansione processi nascosti ...

scansione entrate autostart nascoste ...

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0

**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

[HKEY_USERS\S-1-5-21-1708537768-879983540-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*`%*`%]
@Class="Shell"

[HKEY_USERS\S-1-5-21-1708537768-879983540-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.*`%*`%\OpenWithList]
@Class="Shell"
.
------------------------ Altri processi in esecuzione ------------------------
.
c:\programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
c:\programmi\Java\jre6\bin\jqs.exe
c:\windows\system32\wscntfy.exe
c:\programmi\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
c:\programmi\Hewlett-Packard\Digital Imaging\bin\hposts08.exe
.
**************************************************************************
.
Ora fine scansione: 2009-03-08 16:53:27 - Il pc è stato riavviato
ComboFix-quarantined-files.txt 2009-03-08 15:53:24

Pre-Run: 43,375,734,784 byte disponibili
Post-Run: 44,515,540,992 byte disponibili

WindowsXP-KB310994-SP2-Home-BootDisk-ITA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn

815 --- E O F --- 2009-03-03 02:07:38

e questa è l'ultima...che dici?
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda Amantide » dom mar 08, 2009 6:21 pm

[acc2]
Veramente avevi di tutto e di più su quel pc, Bagle compreso.
Oltre al Bagle ce n'erano anche queste schifezze:
http://www.MegaLab.it/2876/diffidiamo-d ... er-skinner
http://www.MegaLab.it/3747/webmediaplay ... n-sorpresa

Sembra che anche il Bagle sia stato rimosso completamente, comprerso il file da te indicato, però per sicurezza facciamo anche la scansione con FindyKill.
Scarica FindyKill (by Chiquitine29)ed installalo (è in francese però è di facile comprensione).
Una volta installato chiudi tutte le applicazioni attive e disconnettiti dal internet, poi clicca sull'icona di FindyKill e nella finestra dos che si aprirà scrivi 2 e premi Invio. Attendi il termine della scansione e posta qui il log che trovi in C:\FindyKill.txt
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 7:18 pm

risultato findykill :

############################## [ FindyKill V4.719 ]

# User : JESSICA (Administrators) # JESSICA-H031UQ8
# Update on 06/03/09 by Chiquitine29
# Start at: 19.21.29 | 08/03/2009

# AMD Athlon(TM) XP 3200+
# Microsoft Windows XP Home Edition (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Disabled

# A:\ # Disco floppy, 3,5 pollici
# C:\ # Disco rigido locale # 149,05 Go (41,59 Go free) # NTFS
# E:\ # Disco rimovibile
# F:\ # Disco rimovibile
# G:\ # Disco rimovibile
# H:\ # Disco CD-ROM
# I:\ # Disco CD-ROM # 3,64 Go (0 Mo free) [CM_145] # CDFS
# J:\ # Disco rimovibile

############################## [ Active Processes ]

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
C:\Programmi\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\Programmi\Java\jre6\bin\jusched.exe
C:\Programmi\Softick\PPP\Bin\PPPGate.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
C:\Programmi\WIDCOMM\Software Bluetooth\BTTray.exe
C:\Programmi\FunTV Installation \T7Ir9x.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Programmi\internet explorer\iexplore.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

################## [ Infected Files / Folders C:\ ]


################## [ C:\WINDOWS ]


################## [ C:\WINDOWS\system32 ]


################## [ C:\WINDOWS\system32\drivers ]


################## [ C:\.. Application Data ... ]

Found ! - "C:\Documents and Settings\JESSICA\Dati applicazioni\drivers"

################## [ Registry / Infected keys ]

Found ! - HKEY_USERS\S-1-5-21-1708537768-879983540-839522115-1004\Software\Local AppWizard-Generated Applications\keygen
Found ! - HKEY_USERS\S-1-5-21-1708537768-879983540-839522115-1004\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\keygen
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro


################## [ Searching in removable drives ]


# Contents of autorun : I:\autorun.inf

[autorun]
icon=CD.ico
OPEN=IERunner.exe

# Presence of files :

Found ! [11/01/2009 21.30][dr-hs----] - C:\autorun.inf
Found ! [12/06/2008 09.10][-r-h-----] - I:\autorun.inf

################## [ Registry / Mountpoint2 ]

# -> Not found !

################## [ ! End of report # FindyKill V4.719 ! ]
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda onekef » dom mar 08, 2009 8:06 pm

risultato fyndkill dopo aver interrotto connessione internet :)

############################## [ FindyKill V4.719 ]

# User : JESSICA (Administrators) # JESSICA-H031UQ8
# Update on 06/03/09 by Chiquitine29
# Start at: 19.58.55 | 08/03/2009

# AMD Athlon(TM) XP 3200+
# Microsoft Windows XP Home Edition (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Disabled

# A:\ # Disco floppy, 3,5 pollici
# C:\ # Disco rigido locale # 149,05 Go (41,59 Go free) # NTFS
# E:\ # Disco rimovibile
# F:\ # Disco rimovibile
# G:\ # Disco rimovibile
# H:\ # Disco CD-ROM
# I:\ # Disco CD-ROM # 3,64 Go (0 Mo free) [CM_145] # CDFS
# J:\ # Disco rimovibile

############################## [ Active Processes ]

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
C:\Programmi\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\Programmi\Java\jre6\bin\jusched.exe
C:\Programmi\Softick\PPP\Bin\PPPGate.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
C:\Programmi\WIDCOMM\Software Bluetooth\BTTray.exe
C:\Programmi\FunTV Installation \T7Ir9x.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

################## [ Infected Files / Folders C:\ ]


################## [ C:\WINDOWS ]


################## [ C:\WINDOWS\system32 ]


################## [ C:\WINDOWS\system32\drivers ]


################## [ C:\.. Application Data ... ]

Deleted ! - "C:\Documents and Settings\JESSICA\Dati applicazioni\drivers"

################## [ Registry / Infected keys ]

Deleted ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\keygen
Deleted ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro

################## [ Cleaning Removable drives ]

# Deleting files :

Not deleted !! - C:\autorun.inf
Not deleted !! - I:\autorun.inf

################## [ Registry / Mountpoint2 ]

# -> Not found !

################## [ Searching Other Infections ]

# Références de comparaison Bagle MD5 :

# CRC32 : 55635c49 # File : C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\winupgro.exe.vir
# MD5 : ecf8931b307651315b9590ef30fd9077

Deleted ! "C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\winupgro.exe.vir"
# Taille : 806912 # MD5 : ECF8931B307651315B9590EF30FD9077

Deleted ! "C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\data.oct.vir"
# Taille : 806912 # MD5 : ECF8931B307651315B9590EF30FD9077


################## [ PEH Corrupted ]

C:\5cd483faafcf63f407f014cf83\update\update.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\NAV\External\CommonFi\PIF_96E2\PIFSvc.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\NAV\External\NORTON\APP\NavShcom.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\NAV\External\NORTON\APP\Navw32.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\NAV\External\NORTON\APP\Navwnt.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\NAV\External\NORTON\APP\nisoptui.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\NAV\External\NORTON\APP\osCheck.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\ccCommon\ccCommon\ccApp.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\ccCommon\ccCommon\ccEvtMgr.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\ccCommon\ccCommon\ccSetMgr.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\ccCommon\ccCommon\ccSvcHst.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\LUpdate\WLUEX\AUPDATE.EXE
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\LUpdate\WLUEX\LUALL.EXE
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\LUpdate\WLUEX\LUCheck.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\LUpdate\WLUEX\LuConfig.EXE
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\LUpdate\WLUEX\NotifyHA.exe
C:\Documents and Settings\JESSICA\Dati applicazioni\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAV_ESD\20070828\Support\uiNPC\uiNPC\NPC\isUAC.exe
C:\Programmi\Glary Utilities\uninstaller.exe
C:\Programmi\Poker Club by Lottomatica\update.exe
C:\Programmi\Symantec\LiveUpdate\ALUNOTIFY.EXE
C:\Programmi\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Programmi\Symantec\LiveUpdate\AUPDATE.EXE
C:\Programmi\Symantec\LiveUpdate\LUALL.EXE
C:\Programmi\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Programmi\Symantec\LiveUpdate\LUCheck.exe
C:\Programmi\Symantec\LiveUpdate\LuConfig.EXE
C:\Programmi\Symantec\LiveUpdate\NotifyHA.exe

################## [ ! End of Report # FindyKill V4.719 ! ]
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda onekef » lun mar 09, 2009 12:44 pm

intanto grazie amantide....ho scaricato avira e facendo una scansione mi rileva virus sia in findykill che in qoobox che penso sia una cartella creatasi con l'installazione di combofix..è tutto normale o devo fare qualcosa?
combofix e findykill li posso tenere o sono solo da eseguire quando se ne ha bisogno e quindi li tolgo dal pc?
siccome complessivamente ora ho ben 170 virus segnalati da avira [cry+] ....sono ignorante scusatemi
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda onekef » lun mar 09, 2009 12:52 pm

e quindi che farci con i 170 virus che or sono in quarantena? li lascio li?
grazie per la pazienza [...]

Avira AntiVir Personal
Report file date: lunedì 9 marzo 2009 11:58

Scanning for 1289714 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: JESSICA
Computer name: JESSICA-H031UQ8

Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 10:44:06
ANTIVIR2.VDF : 7.1.2.105 513536 Bytes 03/03/2009 10:44:07
ANTIVIR3.VDF : 7.1.2.138 180736 Bytes 09/03/2009 10:44:07
Engineversion : 8.2.0.107
AEVDF.DLL : 8.1.1.0 106868 Bytes 09/03/2009 10:44:13
AESCRIPT.DLL : 8.1.1.57 356729 Bytes 09/03/2009 10:44:12
AESCN.DLL : 8.1.1.8 127346 Bytes 09/03/2009 10:44:11
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 13:58:38
AEPACK.DLL : 8.1.3.10 397686 Bytes 09/03/2009 10:44:11
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 09/03/2009 10:44:10
AEHEUR.DLL : 8.1.0.104 1634679 Bytes 09/03/2009 10:44:10
AEHELP.DLL : 8.1.2.2 119158 Bytes 09/03/2009 10:44:09
AEGEN.DLL : 8.1.1.26 336244 Bytes 09/03/2009 10:44:08
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.6.6 176501 Bytes 09/03/2009 10:44:08
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37

Configuration settings for the scan:
Jobname..........................: Local Hard Disks
Configuration file...............: c:\programmi\avira\antivir personaledition classic\alldiscs.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: lunedì 9 marzo 2009 11:58

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'wscntfy.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'hposts08.exe' - '1' Module(s) have been scanned
Scan process 'hpoevm08.exe' - '1' Module(s) have been scanned
Scan process 'hpotdd01.exe' - '1' Module(s) have been scanned
Scan process 'hpohmr08.exe' - '1' Module(s) have been scanned
Scan process 'T7Ir9X.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'NMBgMonitor.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'PPPGate.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'btwdins.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
36 processes with 36 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.
Master boot sector HD2
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.
Master boot sector HD3
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.
Master boot sector HD4
[INFO] No virus was found!
[WARNING] System error [21]: Periferica non pronta.

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '64' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\JESSICA\Documenti\Sinc. PSP\PSPPSPPSP\PSP\COMMON\instala-emuleplus.exe
[DETECTION] Contains recognition pattern of the PHISH/FraudTool.CCleaner.A.4 phishing file/email
[NOTE] The file was moved to '4a27f7db.qua'!
C:\Programmi\eMule\Incoming\giochi\TODOS LOS JUEGOS JAVA PARA MOVIL\D\DigitalRed Shuffleboard v20\b-shuff2.zip
[0] Archive type: ZIP
--> Shuffleboard.2.00.7650.exe
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '4a27fa12.qua'!
C:\Programmi\eMule\Incoming\programmi\photoshop\Seriale - Attivazione - Crack\attivazione cs2 ita funziona !\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] The file was moved to '4a2dfc38.qua'!
C:\Programmi\eMule\Incoming\programmi\photoshop\Seriale - Attivazione - Crack\Photoshop Cs 2 Crack\keygen.exe
[DETECTION] Contains recognition pattern of the WORM/Autorun.cxl worm
[NOTE] The file was moved to '4a2dfc3c.qua'!
C:\Programmi\FindyKill\Backups\C\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\winupgro.exe.vir.VIR
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22fca3.qua'!
C:\Programmi\FindyKill\Backups\C\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\data.oct.vir.VIR
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a28fca6.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\_wfsintwq_.sys.zip
[0] Archive type: ZIP
--> wfsintwq.sys
[DETECTION] Is the TR/Rootkit.Gen Trojan
[NOTE] The file was moved to '4a1afe06.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\100953.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e4fdc5.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\103468.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e7fdc8.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\104812.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e8fdcb.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\107031.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ebfdd3.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\109625.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49edfdd5.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\115703.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e9fdd8.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\117046.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ebfdda.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\14824812.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ecfde0.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\14979671.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49edfde3.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\150203.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e4fe10.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\15097906.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e4fe12.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\243765.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e7fe14.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\250921.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e4fe17.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\260062.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e4fe1a.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\267812.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ebfe1c.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\276203.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49eafe20.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\303671.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e7fe1c.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\332593.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e6fe23.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\367250.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ebfe28.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\389796.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49edfe2c.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\395656.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e9fe2f.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\395843.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49e9fe31.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\417015.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ebfe2b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\428203.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49ecfe2e.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\drivers\downld\529000.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '49edfe37.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\flec006.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '4a19fe75.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\1-Hour Search Engine Optimization Crash Course 1.4.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49fcfe3b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\1st Email Address Spider 2006 5.77 (Key+Serial).zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a28fe84.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\3D Background Textures Collection 1.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49d4fe58.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\3D Formula 1 Screensaver 1.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49d4fe5b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\ABC Security Protector 5.3.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f7fe5b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Adobe Photoshop Elements 4.0.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a23fe86.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Allatori Obfuscator 1.6.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a20fe93.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Anime on Demand 1.0.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1dfe9a.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Arabian Nights updated demo.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15fea5.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\ArcConvert 0.51a.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a17fea8.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Atomic CD Email Extractor 1.60.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a23feac.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\AUTO MANUFACTURERS STOCKS 1.0.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a08fe90.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Automatic Programs Update 1.0.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a28feb2.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Avast!.Antivirus.Professional.v4.7.844.with.KeyGen.&.Skins.updated-fixed.01-2007.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15febb.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\BestView 1.0.0.0 Serial.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27fead.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Black MOON Search X 7.0.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15feb9.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\CCSP 642-501 Practice Exam Questions.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a07fe93.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Christmas Weather Report Screensaver 1.2.1.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26febf.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\CreateInstall 4.13.7.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a19fecb.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\CruiseControl 1.1 (Cracked).zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a29fecd.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Crystal Cursor 0.2.1 Alpha.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2dfed0.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Cubis Gold 1.3.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a16fed5.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\CyberSense Search Center 3.0.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a16fedc.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Data Doctor Recovery - Pen Drive 2.0.1.5.zip.vir
[0] Archive type: ZIP
--> serial.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a28fec7.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\DC3 Compiler - Interpreter 1.0.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49e7feab.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\DemoForge Studio 1.2.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a21fed0.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\devCad Professional 1.0 RC1g.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2afed2.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\DimichSoft Advanced File Tracer 1.5 Cracked.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a21fed8.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Dr.Web 4.33.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49e2fee4.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Dream Aquarium 3D Screensaver 1.0.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a19fee6.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Dupehunter Professional 6.0.0.2710.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24feec.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\DVD Audio Extractor 4.3.0.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f8fecf.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\DVD to MPEG Converter 1.0.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f8fed1.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Easiestutils DVD to 3GP converter 4.9.0.65.zip.vir
[0] Archive type: ZIP
--> serial.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27fede.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\EasyVoipRecorder 1.2.1.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27fee0.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\EdenSoft My Logo 1.0.0.7.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4b9f0937.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\eMule 0.48a Final.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a29fed2.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\eNavigator Suite 7.5.429 [Key].zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15fed6.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Ethos Game Basic 1.3 [Serial].zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1cff00.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Expired Comps 1.0.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24ff08.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\EZ Photo Calendar Creator 5.33.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49d4feed.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\FastPrint 1.60 Build 070510 [Crack].zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27fef6.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\FastTrackNews 2.02.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27fef8.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\FileMed EMR 5.23 [Cracked].zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a20ff03.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\FireWire IIDC Camera Driver 1.0.1.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ff05.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\FTPigamo 1.0.1.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a04fef2.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Gangland multiplayer demo fix.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ff02.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\GridBagger 1.0.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1dff15.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Hockey Scoreboard Standard 1.zip.vir
[0] Archive type: ZIP
--> serial.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a17ff14.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\HyperPublish 2008.25.250.352.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24ff20.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\i-Catcher Console 2.3.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f7fed7.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Imesh Acceleration Patch 4.8.6.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a19ff19.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\InstallAware for Windows Installer 6.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27ff1e.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\JFPCreator 1.02.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a04fef9.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Kaspersky Anti-Virus Personal 6.0.1.411 - NEW version.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27ff19.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\KChess Elite 4.0.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1cfeff.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\LanTalk NET 3.3.5274.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ff20.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Lazy Web Search 2.0.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2eff22.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Lexis Rex with German 1.3.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2cff29.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\LopeEdit Pro 5.3.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24ff36.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Lucky Google 1.5,1.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a17ff3f.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Magical Glass 1.0.2.4.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1bff2d.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Mahalosoft BionicSpider 2.0.0.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1cff30.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\MapStar MapPro Beta 2.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24ff32.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Master of Defense 1.54.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27ff35.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Mastersoft Money 6.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a27ff38.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Medical Calendar 3.5.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a18ff3e.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Microsoft Search Server 2008 Express RC.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a17ff45.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Mousave 5.1.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a29ff4d.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\MP3 Cat 2.12 [Patch].zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49e7ff33.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\MP3Guard 2.1.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49e7ff35.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\MSNLiveDisplay 1.1.1.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a02ff3b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\MyPhotoIndex 1.00.11.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a04ff63.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Neat Video Demo plug-in for VirtualDub 2.2.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15ff52.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\nnCron LITE 1.17.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f7ff5e.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\OJOsoft PSP Video Converter 2.0.0.0430.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a03ff3c.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\OmniPeek Personal 4.0.1.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ff68.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Pacman 1.0.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a17ff5d.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Paris Webcam 1.0.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ff5d.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PC Cart 2.6.7.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49d4ff40.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PC Controller 1.2 (Key).zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '48520891.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Personal Advisor 0.1.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ff63.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PhotoTiler Pro InDesign Plug-in 2.0.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a23ff69.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Ping Tester - Professional 8.18.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ff6b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Pivot Table Helper 1.0.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2aff6d.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PocketFMS 0.9.62 KeyGen.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a17ff75.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PopSurfer 1.1.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24ff79.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Portable Handy Password 4.4.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ff7a.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PowerTCP Mail Tool 2.9.2.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2bff7d.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PQ DVD to iPhone Converter 1.0 Build 01.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49d4ff62.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Print Tracker 5.7.4.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1dff85.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\PromaSoft AutoResponder 2.0.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a23ff87.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Rapid Reminder Pro 2006 build 186.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a24ff77.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\real-night-time Speed Dial 1.0.zip.vir
[0] Archive type: ZIP
--> serial.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15ff7c.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\RentBoss Single User 3.20.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ff7c.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Roller Coaster Tycoon demo.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a20ff8a.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Setup2Go 1.9.11.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a28ff82.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Sexy Jennifer Lopez-E-Sex-BabeSavers.com 1.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a2cff85.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Simply Modbus 5.9.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a21ff8b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Stereogram Creator 1.0.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a19ff97.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\TBS Home Inventory 6.0.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a07ff67.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Tele-Cap Free 3.0.zip.vir
[0] Archive type: ZIP
--> keygen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a20ff8b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\The Check Writing Partner 3.0.zip.vir
[0] Archive type: ZIP
--> key_generator.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a19ff8f.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\The Net Detective Toolbar for Firefox 1.5.0.11.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4b9f0840.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\The Patentstein Browser 1.3.0 b3.zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a19ff90.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Thief II The Metal Age 1.07 to 1.18 patch.zip.vir
[0] Archive type: ZIP
--> serial.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1dff90.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Thumbmaker 1.1.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a29ff91.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Toggler 1.0.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1bff99.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Total Commander Password Recovery 1.0.120.2006 [Key+Serial].zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a28ff99.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Travel Dictionary English- PC 5.0.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15ffa0.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\TTimeSync 1.5 (Crack).zip.vir
[0] Archive type: ZIP
--> key_gen.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4b9b0856.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Unreal Tournament 2003 - Reigncaster deathmatch map.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ff9f.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Uranus Font TrueType 1.51.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a15ffa4.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\URL Encoder-Decoder 1.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a00ff85.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\USAsoft DVD to MPEG Converter 5.1.zip.vir
[0] Archive type: ZIP
--> install_crack.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f5ff87.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\vbCodeShield 2.0.2.1 (Key+Serial).zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '49f7ff98.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\VideoPut 1.2.0.23.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a18ffa1.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Virtual Modem 1.7.3 Patch.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ffa2.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\WinX 3GP PDA MP4 Video Converter 3.5.58 Key+Serial.zip.vir
[0] Archive type: ZIP
--> patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ffa3.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Wondershare Pocket Video Converter 3.2.52.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a22ffaa.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Wondershare PPT to MP4 4.7.0.10.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4ba4087b.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Word Password Recovery Key 8.0 build 2514.zip.vir
[0] Archive type: ZIP
--> crac.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ffab.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Word Viewer OCX 2.1.4.zip.vir
[0] Archive type: ZIP
--> install.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ffac.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\WordLang Study Italian Talking Picture Dictionary Game 1.2.zip.vir
[0] Archive type: ZIP
--> run.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ffad.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Worm.Zotob Removal Tool 1.0.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a26ffae.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Yahoo! Music Jukebox (formerly Yahoo! Music Engine) 2.2.2.058.zip.vir
[0] Archive type: ZIP
--> install_patch.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1cffa0.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Dati applicazioni\m\shared\Yahoo! My Headlines 1.0.zip.vir
[0] Archive type: ZIP
--> setup.exe
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a1cffa2.qua'!
C:\Qoobox\Quarantine\C\Documents and Settings\JESSICA\Impostazioni locali\Dati applicazioni\qaoqc.exe.vir
[DETECTION] Is the TR/Dldr.Bagle.aoq Trojan
[NOTE] The file was moved to '4a23ffa3.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\mdelk.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '4a19ffa7.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\wintems.exe.vir
[DETECTION] Is the TR/Bagle.Gen.B Trojan
[NOTE] The file was moved to '4a22ffac.qua'!
C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\down\296000.exe.vir
[DETECTION] Is the TR/Agent.bptr Trojan
[NOTE] The file was moved to '49eaff7e.qua'!


End of the scan: lunedì 9 marzo 2009 12:52
Used time: 54:29 Minute(s)

The scan has been done completely.

6778 Scanning directories
239102 Files were scanned
164 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
164 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
238937 Files not concerned
4617 Archives were scanned
5 Warnings
164 Notes

e questo spero sia l'ultimo che dovrò loggare [V]
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm

Re: ho un bagle o no?

Messaggioda Amantide » lun mar 09, 2009 1:47 pm

onekef ha scritto:mi rileva virus sia in findykill che in qoobox che penso sia una cartella creatasi con l'installazione di combofix..è tutto normale o devo fare qualcosa?

E' normalissimo, comunque ora questi file sono innocui.
onekef ha scritto:combofix e findykill li posso tenere o sono solo da eseguire quando se ne ha bisogno e quindi li tolgo dal pc?
siccome complessivamente ora ho ben 170 virus segnalati da avira [cry+] ....sono ignorante scusatemi

Questi tool sono da eseguire solo quando si ha bisogno, ed anche se Combofix è un tool di rimozione malware universale, è sempre meglio scaricare la versione aggiornata.
Per disinstallare Combofix vai su Start>> Esegui>> digita combofix /u e premi Invio. FindyKill invece puoi disinstallare dal pannello di controllo.

onekef ha scritto:e questo spero sia l'ultimo che dovrò loggare

Esatto [^]
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: ho un bagle o no?

Messaggioda onekef » lun mar 09, 2009 2:08 pm

ok!! ti ringrazio ancora se non ci fossi dovrebbero inventarti [applauso+]
Avatar utente
onekef
Aficionado
Aficionado
 
Messaggi: 142
Iscritto il: dom mar 08, 2009 12:43 pm


Torna a Sicurezza

Chi c’è in linea

Visitano il forum: Nessuno e 8 ospiti

Powered by phpBB © 2002, 2005, 2007, 2008 phpBB Group
Traduzione Italiana phpBB.it

megalab.it: testata telematica quotidiana registrata al Tribunale di Cosenza n. 22/09 del 13.08.2009, editore Master New Media S.r.l.; © Copyright 2008 Master New Media S.r.l. a socio unico - P.I. 02947530784. GRUPPO EDIZIONI MASTER Spa Tutti i diritti sono riservati. Per la pubblicità: Master Advertising