NoTrace Security Forum

NoTrace Security Forum
Home | Discussioni Attive | Discussioni Recenti | Segnalibro | Msg privati | Utenti | Download | cerca | faq | RSS | Security Chat
Nome Utente:
Password:
Salva Password
Password Dimenticata?

 Tutti i Forum
 Virus
 Computer Virus
 rootkit in drivers
 Forum Bloccato
 Versione Stampabile Bookmark this Topic Aggiungi Segnalibro
I seguenti utenti stanno leggendo questo Forum Qui c'è:
Pagina Successiva
Autore Discussione Precedente Discussione Discussione Successiva
Pagina: di 3

tempurio
Senior Member




106 Messaggi


Inserito il - 15/04/2008 : 11:25:27  Mostra Profilo
non so come si fa a rispondere dopo essere stato assistito inizialmente

Modificato da - tempurio in Data 15/04/2008 13:14:35

Sibilla
Advanced Member

Impegno nella community e competenze nel supporto alla rimozione malware




2059 Messaggi

Inserito il - 15/04/2008 : 11:56:12  Mostra Profilo
prima di eliminarlo con avenger, dobbiamo esser certi ci sia solo quel servizio.

scarica SystemScan, disconnetti il pc da internet => disattiva l'antivirus => esegui systemscan => clicca su "Scan Now". Finita la scansione, riattiva l'antivirus, carica il rapporto che trovi sul desktop su Freefilehosting e posta il link ottenuto.


edit:
me ne sono accorta ora...
cortesemente, elimina il tuo intervento postato in questa discussione (clicca sulla X rossa in capo al tuo messaggio):
htt*://[www].notrace.it/forum2/topic.asp?TOPIC_ID=11429

1000 grazie :)

Modificato da - Sibilla in data 15/04/2008 12:04:48
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 12:58:22  Mostra Profilo
Citazione:
Messaggio inserito da Sibilla

prima di eliminarlo con avenger, dobbiamo esser certi ci sia solo quel servizio.

scarica SystemScan, disconnetti il pc da internet => disattiva l'antivirus => esegui systemscan => clicca su "Scan Now". Finita la scansione, riattiva l'antivirus, carica il rapporto che trovi sul desktop su Freefilehosting e posta il link ottenuto.


edit:
me ne sono accorta ora...
cortesemente, elimina il tuo intervento postato in questa discussione (clicca sulla X rossa in capo al tuo messaggio):
htt*://[www].notrace.it/forum2/topic.asp?TOPIC_ID=11429

1000 grazie :)


Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 13:15:51  Mostra Profilo
il link e' htt*://[www].freefilehosting.net/download/3fcbh
Torna all'inizio della Pagina

Sibilla
Advanced Member

Impegno nella community e competenze nel supporto alla rimozione malware




2059 Messaggi

Inserito il - 15/04/2008 : 13:16:21  Mostra Profilo
Ciao tempurio, cortesemente presta attenzione a non aprire altre discussioni..
Puoi eliminare questa discussione? htt*://[www].notrace.it/forum2/topic.asp?TOPIC_ID=11463

1000 grazie.. controllo il rapporto :)



edit: devo controllare i servizi uno ad uno (sono circa 300 ) appena finisco ti posto come eliminare il rootkit... devo controllarli con calma.

Modificato da - Sibilla in data 15/04/2008 13:33:58
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 13:21:21  Mostra Profilo
credo di aver eliminato la discussione superflua
Torna all'inizio della Pagina

Leleago
Advanced Member

Tanto impegno, buona volonta ma capacità di analisi malware da migliorare.



1918 Messaggi

Inserito il - 15/04/2008 : 15:18:14  Mostra Profilo
scarica avenger sul desktop
htt*://swandog46.geekstogo[.com]/avenger.zip
Decomprimi l'archivio

Avvia il file avenger.exe

Copi e incolli nella finestra: "Imput script here" il SEGUENTE testo COSI' come l'ho scritto CON la dicitura files to delete:


files to delete:
C:\WINDOWS\HDReg.ini
C:\WINDOWS\orun32.ini
c:\windows\lexstat.ini
C:\WINDOWS\TEMP\rtdrvmon.exe
D:\DOCUME~1\CARION~1.CLA\IMPOST~1\Temp\rtdrvmon.exe
c:\windows\system32\drivers\asc3550p.sys
C:\WINDOWS\system32\23.tmp


registry keys to delete:
HKLM\system\currentcontrolset\services\asc3550p


folders to delete:
C:\Programmi\temp01





Spunta "Automatically disable any rootkits found" e clicca su "execute".
Il pc dovrebbe riavviarsi da solo, altrimenti riavvialo tu. Posta il report rilasciato


scaricati Ccleaner (htt*://[www].ccleaner[.com]/download/)
Lanciare il programma, eseguire l’operazione “avvia pulizia"
Eseguire : problemi-->trova ed elimina (ripara selezionati) tutto ciò che viene rilevato

Modificato da - Leleago in data 23/05/2008 11:38:58
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 16:53:16  Mostra Profilo
Logfile of The Avenger Version 2.0, (c) by Swandog46
htt*://swandog46.geekstogo[.com]

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!

File "C:\WINDOWS\HDReg.ini" deleted successfully.
File "C:\WINDOWS\orun32.ini" deleted successfully.
File "C:\WINDOWS\NeroDigital.ini" deleted successfully.
File "c:\windows\lexstat.ini" deleted successfully.
File "C:\WINDOWS\TEMP\rtdrvmon.exe" deleted successfully.
File "C:\Programmi\ccsetup205.exe" deleted successfully.
File "C:\Programmi\PackardBell-SkypeSetup.exe" deleted successfully.
File "C:\Programmi\googletalk-setup-it.exe" deleted successfully.
File "C:\Programmi\sdsetup.exe" deleted successfully.
File "C:\Programmi\Nokia_PC_Suite_rel_6_85_12_0_ita_web.exe" deleted successfully.
File "C:\Programmi\Alice_ti_aiuta_lth.exe" deleted successfully.
File "C:\Programmi\IncrediMailSetup_it.exe" deleted successfully.
File "c:\programmi\SpywareSecure_trial_setup.exe" deleted successfully.
File "c:\programmi\directx_9c_redist.exe" deleted successfully.
File "c:\programmi\installer-4840-34-DirectX-Italian.exe" deleted successfully.
File "c:\programmi\NokiaSoftwareUpdaterSetup_it.exe" deleted successfully.
File "c:\programmi\SkypeSetup.exe" deleted successfully.
File "D:\DOCUME~1\CARION~1.CLA\IMPOST~1\Temp\rtdrvmon.exe" deleted successfully.

Error: file "c:\windows\system32\drivers\asc3550p.sys" not found!
Deletion of file "c:\windows\system32\drivers\asc3550p.sys" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\WINDOWS\system32\23.tmp" not found!
Deletion of file "C:\WINDOWS\system32\23.tmp" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist

Registry key "HKLM\system\currentcontrolset\services\asc3550p" deleted successfully.

Error: file "C:\WINDOWS\HDReg.ini" not found!
Deletion of file "C:\WINDOWS\HDReg.ini" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\WINDOWS\orun32.ini" not found!
Deletion of file "C:\WINDOWS\orun32.ini" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\WINDOWS\NeroDigital.ini" not found!
Deletion of file "C:\WINDOWS\NeroDigital.ini" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\windows\lexstat.ini" not found!
Deletion of file "c:\windows\lexstat.ini" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\WINDOWS\TEMP\rtdrvmon.exe" not found!
Deletion of file "C:\WINDOWS\TEMP\rtdrvmon.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\ccsetup205.exe" not found!
Deletion of file "C:\Programmi\ccsetup205.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\PackardBell-SkypeSetup.exe" not found!
Deletion of file "C:\Programmi\PackardBell-SkypeSetup.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\googletalk-setup-it.exe" not found!
Deletion of file "C:\Programmi\googletalk-setup-it.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\sdsetup.exe" not found!
Deletion of file "C:\Programmi\sdsetup.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\Nokia_PC_Suite_rel_6_85_12_0_ita_web.exe" not found!
Deletion of file "C:\Programmi\Nokia_PC_Suite_rel_6_85_12_0_ita_web.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\Alice_ti_aiuta_lth.exe" not found!
Deletion of file "C:\Programmi\Alice_ti_aiuta_lth.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\Programmi\IncrediMailSetup_it.exe" not found!
Deletion of file "C:\Programmi\IncrediMailSetup_it.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\programmi\SpywareSecure_trial_setup.exe" not found!
Deletion of file "c:\programmi\SpywareSecure_trial_setup.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\programmi\directx_9c_redist.exe" not found!
Deletion of file "c:\programmi\directx_9c_redist.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\programmi\installer-4840-34-DirectX-Italian.exe" not found!
Deletion of file "c:\programmi\installer-4840-34-DirectX-Italian.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\programmi\NokiaSoftwareUpdaterSetup_it.exe" not found!
Deletion of file "c:\programmi\NokiaSoftwareUpdaterSetup_it.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\programmi\SkypeSetup.exe" not found!
Deletion of file "c:\programmi\SkypeSetup.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "D:\DOCUME~1\CARION~1.CLA\IMPOST~1\Temp\rtdrvmon.exe" not found!
Deletion of file "D:\DOCUME~1\CARION~1.CLA\IMPOST~1\Temp\rtdrvmon.exe" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "c:\windows\system32\drivers\asc3550p.sys" not found!
Deletion of file "c:\windows\system32\drivers\asc3550p.sys" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: file "C:\WINDOWS\system32\23.tmp" not found!
Deletion of file "C:\WINDOWS\system32\23.tmp" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: registry key "HKLM\system\currentcontrolset\services\asc3550p" not found!
Deletion of registry key "HKLM\system\currentcontrolset\services\asc3550p" failed!
Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND)
--> the object does not exist


Error: "C:\Programmi\temp01" is not a folder! It may instead be a file.
Deletion of folder "C:\Programmi\temp01" failed!
Status: 0xc0000103 (STATUS_NOT_A_DIRECTORY)
--> use "Files to delete:" instead of "Folders to delete:" to delete an ordinary file


Completed script processing.

*******************

Finished! Terminate.
Torna all'inizio della Pagina

Leleago
Advanced Member

Tanto impegno, buona volonta ma capacità di analisi malware da migliorare.



1918 Messaggi

Inserito il - 15/04/2008 : 17:12:19  Mostra Profilo
fai una scansione con kaspersky:

htt*://[www].kaspersky[.com]/service?chapter=161739400
1.Clicca su Kaspersky Online Scanner
2.Scarica un componente ActiveX da Kaspersky, Clicca su "Yes."
3.Attendi la fine del download
4.Clicca su "Next"
5.Clicca su "Scan Settings"
6.Assicurati che siano spuntate le seguenti voci
Scan using the following Anti-Virus database:
Extended
spunta le voci di "Scan options"
Scan Archives
Scan Mail Bases
7.Clicca su "OK"
8.Scegli "My computer"
Attendi la fine della scansione,se viene rilevato qualcosa salva il rapporto cliccando su "Save as Text"

Scarica questo software htt*://research.pandasoftware[.com]/blogs/images/AntiRootkit.zip e scansiona

NB: Asp di fare queste scansioni che sento Sibilla se ha in mente qualcosa altro

Modificato da - Leleago in data 15/04/2008 17:13:48
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 17:15:51  Mostra Profilo
l'opzione che mi hai consigliato : (scaricati Ccleaner (htt*://[www].ccleaner[.com]/download/)
Lanciare il programma, eseguire l’operazione “avvia pulizia"
Eseguire : problemi-->trova ed elimina (ripara selezionati) tutto ciò che viene rilevato) non la trovo su ccleaner. eppure ho cercato ovunque!!
Torna all'inizio della Pagina

Leleago
Advanced Member

Tanto impegno, buona volonta ma capacità di analisi malware da migliorare.



1918 Messaggi

Inserito il - 15/04/2008 : 17:25:05  Mostra Profilo
apri ccleaner, nella colonna di sinistra ci sn varie voci! La prima si chiama Pulizia, clicchi su Pulizia e in fondo alla finestra trovi Avvia Pulizia!
Sempre nella colonna di sinistra cè la voce Registro! Clicchi su Registro e in fondo alla finestra c'è trova problemi! Avvi la ricerca, li selezioni e poi clicchi su ripara selezionati
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 17:33:34  Mostra Profilo
ok l'ho fatto e ho fatto pure un back up
Torna all'inizio della Pagina

Leleago
Advanced Member

Tanto impegno, buona volonta ma capacità di analisi malware da migliorare.



1918 Messaggi

Inserito il - 15/04/2008 : 17:36:05  Mostra Profilo
ho sentito sibilla, esegui pure la scansione con kaspersky e panda! Posta log di kaspersky

Modificato da - Leleago in data 15/04/2008 18:38:07
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 19:18:13  Mostra Profilo
ti mando solo il rapporto di kaspersky prima di passare panda? a kaspersky mancano solo pochi minuti!
Torna all'inizio della Pagina

Sibilla
Advanced Member

Impegno nella community e competenze nel supporto alla rimozione malware




2059 Messaggi

Inserito il - 15/04/2008 : 19:46:34  Mostra Profilo
si, tanto comunque devi caricarli :)
Torna all'inizio della Pagina

tempurio
Senior Member




106 Messaggi

Inserito il - 15/04/2008 : 20:53:29  Mostra Profilo
KASPERSKY ONLINE SCANNER REPORT
Tuesday, April 15, 2008 8:49:44 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 15/04/2008
Kaspersky Anti-Virus database records: 707202


Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\
E:\
G:\
H:\
I:\
J:\

Scan Statistics
Total number of scanned objects 63073
Number of viruses found 1
Number of infected objects 1
Number of suspicious objects 0
Duration of the scan process 02:35:21

Infected Object Name Virus Name Last Action
C:\APPS\Powercinema\Kernel\CLML_NTService\CLML_MAIN\CLML.db Object is locked skipped

C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\logs\sw_ae-20080415-164613.log Object is locked skipped

C:\Programmi\Alice ti aiuta\SmartBridge\AlertFilter.log Object is locked skipped

C:\Programmi\Alice ti aiuta\SmartBridge\log\htt*client.log Object is locked skipped

C:\Programmi\Alice ti aiuta\SmartBridge\SmartBridge.log Object is locked skipped

C:\Programmi\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

C:\Programmi\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

C:\Programmi\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

C:\Programmi\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

C:\Programmi\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

C:\Programmi\Alwil Software\Avast4\DATA\report\Protezione residente.txt Object is locked skipped

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

C:\System Volume Information\tracking.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\EventCache\{16A341DC-628B-4863-BD12-699B2ED69DC3}.bin Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped

C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\DEFAULT Object is locked skipped

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

C:\WINDOWS\system32\config\Internet.evt Object is locked skipped

C:\WINDOWS\system32\config\SAM Object is locked skipped

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SYSTEM Object is locked skipped

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped

C:\WINDOWS\system32\h323log.txt Object is locked skipped

C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\Temp\CLML_AGENT_LOG1.txt Object is locked skipped

C:\WINDOWS\Temp\Perflib_Perfdata_604.dat Object is locked skipped

C:\WINDOWS\Temp\sqlite_sg8Qsv3UqeuPF63 Object is locked skipped

C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped

C:\WINDOWS\wiadebug.log Object is locked skipped

C:\WINDOWS\wiaservc.log Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

D:\Documents and Settings\All Users\Dati applicazioni\PC Tools\ThreatFire\Orig.db Object is locked skipped

D:\Documents and Settings\All Users\Menu Avvio\Programmi\Scaricare programmi.exe Infected: Backdoor.Win32.Hupigon.bnca skipped

D:\Documents and Settings\carioni.claudia\Cookies\index.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Cronologia\History.IE5\MSHist012008041520080416\index.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Dati applicazioni\Microsoft\Feeds Cache\index.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Dati applicazioni\PowerCinema\Trace.log Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Temp\~DF85E.tmp Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Temp\~DF86B.tmp Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

D:\Documents and Settings\carioni.claudia\NTUSER.DAT Object is locked skipped

D:\Documents and Settings\carioni.claudia\ntuser.dat.LOG Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Cookies\index.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Temp\Cookies\index.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Temp\History\History.IE5\index.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\NTUSER.DAT Object is locked skipped

D:\Documents and Settings\LocalService.NT AUTHORITY.001\ntuser.dat.LOG Object is locked skipped

D:\Documents and Settings\NetworkService.NT AUTHORITY.001\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped

D:\Documents and Settings\NetworkService.NT AUTHORITY.001\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

D:\Documents and Settings\NetworkService.NT AUTHORITY.001\NTUSER.DAT Object is locked skipped

D:\Documents and Settings\NetworkService.NT AUTHORITY.001\ntuser.dat.LOG Object is locked skipped

D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

Scan process completed.
Torna all'inizio della Pagina
Pagina: di 3 Discussione Precedente Discussione Discussione Successiva  
Pagina Successiva

 Forum Bloccato
 Versione Stampabile Bookmark this Topic Aggiungi Segnalibro
Vai a:
NoTrace Security Forum
© Nazzareno Schettino
RSS NEWS
Torna all'inizio della Pagina
Pagina generata in 0,39 secondi. TargatoNA | SuperDeeJay | Snitz Forums 2000