shapiro ha scritto:Scarica Lop S&D |
http://eric.71.mespages.googlepages.com/LopSD.execon tutte le applicazioni chiuse e disconnesso
doppio click su LopSD
scegli la lingua E (invio)
1 (ricerca) invio
al termine dello scan riavvia LopSD
questa volta scegli l'opzione 2 (invio)
DOVRAI FARMI UNO SCREEN-SHOT almeno per ora
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vistaâ„¢ Home Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Genuine Intel(R) CPU 2160 @ 1.80GHz )
BIOS : Default System BIOS
USER : Marco ( Administrator )
BOOT : Normal boot
Antivirus : AVG 7.5.552 7.5.552 (Activated)
C:\ (Local Disk) - NTFS - Total:227 Go (Free:119 Go)
H:\ (CD or DVD)
I:\ (CD or DVD)
J:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 15/02/2009|13.22 )
[ UAC => 1 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing folders in Local
[11/01/2009|02.26] C:\Users\Marco\AppData\Local\Adobe
[17/01/2008|20.13] C:\Users\Marco\AppData\Local\Ahead
[26/02/2008|18.48] C:\Users\Marco\AppData\Local\ATI
[10/01/2008|09.55] C:\Users\Marco\AppData\Local\Cronologia
[11/01/2009|19.48] C:\Users\Marco\AppData\Local\d3d9caps.dat
[10/01/2008|09.55] C:\Users\Marco\AppData\Local\Dati applicazioni
[30/01/2009|20.24] C:\Users\Marco\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[06/07/2008|09.20] C:\Users\Marco\AppData\Local\Downloaded Installations
[11/01/2009|20.06] C:\Users\Marco\AppData\Local\GDIPFONTCACHEV1.DAT
[16/08/2008|09.20] C:\Users\Marco\AppData\Local\Google
[15/02/2009|12.04] C:\Users\Marco\AppData\Local\IconCache.db
[06/06/2008|19.54] C:\Users\Marco\AppData\Local\Microsoft
[16/06/2008|19.54] C:\Users\Marco\AppData\Local\Microsoft Games
[29/02/2008|16.39] C:\Users\Marco\AppData\Local\Microsoft Help
[18/10/2008|23.49] C:\Users\Marco\AppData\Local\PokerStars.IT
[10/01/2008|10.08] C:\Users\Marco\AppData\Local\Seven Zip
[15/02/2009|13.22] C:\Users\Marco\AppData\Local\Temp
[10/01/2008|09.55] C:\Users\Marco\AppData\Local\Temporary Internet Files
[22/04/2008|16.57] C:\Users\Marco\AppData\Local\VirtualStore
[05/04/2008|23.56] C:\Users\Marco\AppData\Local\Windows Live Writer
[4|File] C:\Users\Marco\AppData\Local\byte
[18|Directory] C:\Users\Marco\AppData\Local\byte disponibili
--------------------\\ Scheduled Tasks located in C:\Windows\Tasks
[15/02/2009 13.00][--a------] C:\Windows\tasks\lurrwbjp.job
[02/08/2008 20.46][--ahs----] C:\Windows\tasks\FOLDER.TSX
[15/02/2009 01.03][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D7B70733-77C3-4D66-8CEB-0CB058008DFB}.job
[15/02/2009 12.05][--ah-----] C:\Windows\tasks\SA.DAT
[15/02/2009 12.04][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing Folders in C:\ProgramData
[11/01/2009|02.24] C:\ProgramData\Adobe
[10/01/2008|10.17] C:\ProgramData\Ahead
[02/11/2006|14.02] C:\ProgramData\Application Data
[11/01/2008|13.30] C:\ProgramData\avg7
[10/08/2008|18.37] C:\ProgramData\CanonBJ
[01/01/2009|20.52] C:\ProgramData\DAEMON Tools Lite
[10/01/2008|09.50] C:\ProgramData\Dati applicazioni
[04/04/2008|13.37] C:\ProgramData\dentstylesettings
[02/11/2006|14.02] C:\ProgramData\Desktop
[10/01/2008|09.50] C:\ProgramData\Documenti
[02/11/2006|14.02] C:\ProgramData\Documents
[02/11/2006|14.02] C:\ProgramData\Favorites
[28/11/2008|22.28] C:\ProgramData\FLEXnet
[11/01/2009|01.41] C:\ProgramData\Google
[10/01/2008|09.59] C:\ProgramData\Grisoft
[11/02/2009|21.14] C:\ProgramData\Installations
[11/01/2009|16.09] C:\ProgramData\Malwarebytes
[10/01/2008|09.50] C:\ProgramData\Menu Avvio
[13/01/2008|21.53] C:\ProgramData\Messenger Plus!
[11/02/2009|21.22] C:\ProgramData\Microsoft
[12/02/2009|01.53] C:\ProgramData\Microsoft Help
[10/01/2008|09.50] C:\ProgramData\Modelli
[10/01/2008|10.15] C:\ProgramData\Nero
[18/03/2008|23.23] C:\ProgramData\Nokia
[29/06/2008|23.52] C:\ProgramData\Office Genuine Advantage
[10/01/2008|19.52] C:\ProgramData\PC Suite
[10/01/2008|09.50] C:\ProgramData\Preferiti
[01/01/2009|21.25] C:\ProgramData\Sports Interactive
[09/02/2009|21.50] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14.02] C:\ProgramData\Start Menu
[02/11/2006|14.02] C:\ProgramData\Templates
[25/08/2008|09.52] C:\ProgramData\WindowsSearch
[05/04/2008|23.53] C:\ProgramData\WLInstaller
[0|File] C:\ProgramData\byte
[35|Directory] C:\ProgramData\byte disponibili
--------------------\\ Listing Folders in C:\Program Files
[11/01/2009|02.23] C:\Program Files\Adobe
[31/10/2007|19.26] C:\Program Files\ATI
[31/10/2007|19.27] C:\Program Files\ATI Technologies
[11/01/2009|01.57] C:\Program Files\Auslogics
[11/11/2008|20.00] C:\Program Files\CCleaner
[03/06/2008|22.17] C:\Program Files\Collage Maker
[11/02/2009|20.31] C:\Program Files\Common Files
[01/01/2009|20.52] C:\Program Files\DAEMON Tools Lite
[12/02/2009|01.46] C:\Program Files\DAEMON Tools Toolbar
[10/01/2008|19.23] C:\Program Files\DIFX
[02/11/2008|21.47] C:\Program Files\directx
[17/05/2008|10.44] C:\Program Files\DivX
[07/02/2009|22.13] C:\Program Files\eMule
[10/02/2009|23.10] C:\Program Files\Everest Poker.net
[10/01/2008|09.50] C:\Program Files\File comuni [C:\Program Files\Common Files]
[09/02/2009|21.52] C:\Program Files\FindyKill
[10/01/2008|10.53] C:\Program Files\FreePOPs
[22/03/2008|12.26] C:\Program Files\FX Uninstall Information
[11/01/2009|03.55] C:\Program Files\Google
[10/01/2008|09.59] C:\Program Files\Grisoft
[06/07/2008|08.54] C:\Program Files\iFoxSoft
[02/01/2009|04.59] C:\Program Files\InstallShield Installation Information
[08/08/2008|12.44] C:\Program Files\Internet Explorer
[21/01/2009|13.39] C:\Program Files\Java
[11/01/2009|16.09] C:\Program Files\Malwarebytes' Anti-Malware
[02/01/2009|04.59] C:\Program Files\Max Payne
[12/02/2009|13.48] C:\Program Files\Messenger Plus! Live
[02/11/2006|13.37] C:\Program Files\Microsoft Games
[10/01/2008|10.29] C:\Program Files\Microsoft Office
[10/01/2008|10.38] C:\Program Files\Microsoft Small Business
[31/10/2007|19.41] C:\Program Files\Microsoft SQL Server
[10/01/2008|10.29] C:\Program Files\Microsoft Visual Studio
[10/01/2008|10.30] C:\Program Files\Microsoft Works
[10/01/2008|10.40] C:\Program Files\Microsoft.NET
[08/08/2008|12.44] C:\Program Files\Movie Maker
[02/11/2006|13.37] C:\Program Files\MSBuild
[31/10/2007|19.12] C:\Program Files\MSXML 4.0
[10/01/2008|10.15] C:\Program Files\Nero
[11/02/2009|21.12] C:\Program Files\Nokia
[11/02/2009|20.30] C:\Program Files\PC Connectivity Solution
[27/10/2008|19.10] C:\Program Files\PokerStars.IT
[02/11/2006|13.37] C:\Program Files\Reference Assemblies
[22/12/2008|17.15] C:\Program Files\Rockstar Games
[27/10/2008|19.10] C:\Program Files\SopCast
[14/02/2009|12.48] C:\Program Files\Sports Interactive
[31/12/2008|16.17] C:\Program Files\Spybot - Search & Destroy
[11/01/2009|02.13] C:\Program Files\Tracker Software
[08/08/2008|11.40] C:\Program Files\Trend Micro
[02/11/2006|14.01] C:\Program Files\Uninstall Information
[03/11/2008|01.46] C:\Program Files\uTorrent
[31/10/2007|19.16] C:\Program Files\VIA
[03/11/2008|21.13] C:\Program Files\WinAce
[08/08/2008|12.44] C:\Program Files\Windows Calendar
[08/08/2008|12.44] C:\Program Files\Windows Collaboration
[08/08/2008|12.44] C:\Program Files\Windows Defender
[08/08/2008|12.44] C:\Program Files\Windows Journal
[11/07/2008|13.13] C:\Program Files\Windows Live
[06/06/2008|19.56] C:\Program Files\Windows Live Safety Center
[12/02/2009|01.52] C:\Program Files\Windows Mail
[08/08/2008|12.44] C:\Program Files\Windows Media Player
[10/01/2008|09.50] C:\Program Files\Windows NT
[08/08/2008|12.44] C:\Program Files\Windows Photo Gallery
[08/08/2008|12.44] C:\Program Files\Windows Sidebar
[02/01/2009|02.36] C:\Program Files\WinRAR
[03/11/2008|20.34] C:\Program Files\WinZip
[25/03/2008|19.41] C:\Program Files\Zero G Registry
[0|File] C:\Program Files\byte
[68|Directory] C:\Program Files\byte disponibili
--------------------\\ Listing Folders in C:\Program Files\Common Files
[11/07/2008|13.11] C:\Program Files\Common Files\ACD Systems
[11/01/2009|02.23] C:\Program Files\Common Files\Adobe
[10/01/2008|10.16] C:\Program Files\Common Files\Ahead
[10/01/2008|10.29] C:\Program Files\Common Files\DESIGNER
[28/11/2008|22.28] C:\Program Files\Common Files\InstallShield
[15/04/2008|22.19] C:\Program Files\Common Files\Java
[18/03/2008|23.22] C:\Program Files\Common Files\microsoft shared
[11/02/2009|21.11] C:\Program Files\Common Files\Nokia
[11/02/2009|20.31] C:\Program Files\Common Files\PCSuite
[10/01/2008|10.23] C:\Program Files\Common Files\PX Storage Engine
[02/11/2006|12.18] C:\Program Files\Common Files\Services
[02/11/2006|12.18] C:\Program Files\Common Files\SpeechEngines
[08/08/2008|12.44] C:\Program Files\Common Files\System
[10/01/2008|11.40] C:\Program Files\Common Files\WindowsLiveInstaller
[0|File] C:\Program Files\Common Files\byte
[16|Directory] C:\Program Files\Common Files\byte disponibili
--------------------\\ Process
( 58 Processes )
... OK !
--------------------\\ Searching with S_Lop
No Lop folder found !
--------------------\\ Searching for Lop Files - Folders
No Lop folder found !
--------------------\\ Searching within the Registry
..... OK !
--------------------\\ Checking the Hosts file
Hosts file CLEAN
--------------------\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net Rootkit scan 2009-02-15 13:22:17
Windows 5.1.2600 Service Pack 2 NTFS
detected NTDLL code modification:
ZwEnumerateKey, ZwQueryKey, ZwOpenKey, ZwClose, ZwEnumerateValueKey, ZwQueryValueKey, ZwOpenFile, ZwQueryDirectoryFile, ZwQuerySystemInformation
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 1884
--------------------\\ Searching for other infections
--------------------\\ Cracks & Keygens ..
C:\Users\Marco\AppData\Roaming\uTorrent\FM2009.9-2-0.Update.and.Crack.Permaximum.rar.torrent
C:\Users\Marco\AppData\Roaming\uTorrent\Football.Manager.2009.crack.and.licence.torrent
C:\Users\Marco\AppData\Roaming\uTorrent\NFs most wanted +crack +cd-key +trainer.iso.torrent
C:\Users\Marco\AppData\Roaming\uTorrent\[Pc game] Football Manager 2009 [FM2009 + crack + ita,eng,fr,de].iso.torrent
C:\Users\Marco\Documents\Desktop\Incoming\Football_Manager_2009___Patch_9.1.0___Crack.4509289.TPB.torrent
C:\Users\Marco\Documents\Desktop\Incoming\Max Payne Patch v1.05 Crack.rar
C:\Users\Marco\Documents\Desktop\MaRcO\FM2009.9-2-0.Update.and.Crack.Permaximum.rar
C:\Users\Marco\Documents\Desktop\MaRcO\Football.Manager.2009.crack.and.licence
C:\Users\Marco\Documents\Desktop\MaRcO\FM\Crack
C:\Users\Marco\Documents\Desktop\MaRcO\FM\Crack\fm234.rar
C:\Users\Marco\Documents\Desktop\MaRcO\Football.Manager.2009.crack.and.licence\Football.Manager.2009.crack.and.licence.rar
[F:1428][D:25]-> C:\Users\Marco\AppData\Local\Temp
[F:101][D:1]-> C:\Users\Marco\AppData\Roaming\MICROS~1\Windows\Cookies
[F:172][D:4]-> C:\Users\Marco\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:96][D:4]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 14/02/2009|13.04 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 14/02/2009|13.12 - Option : [2]
3 - "C:\Lop SD\LopR_3.txt" - 15/02/2009|13.21 - Option : [1]
4 - "C:\Lop SD\LopR_4.txt" - 15/02/2009|13.24 - Option : [2]
--------------------\\ Scan completed at 13.24.16
[ UAC => 1 ]
(questo log l'ho copiato e incollato!)
cosa sarebbe uno screen-shot????
scusa l'ignoranza