spero di ever eseguito correttamente le operazioni...!!! Grazie cmq shapiro
Malwarebytes' Anti-Malware 1.34
Versione del database: 1868
Windows 5.1.2600 Service Pack 3
19/03/2009 15.30.43
mbam-log-2009-03-19 (15-30-35).txt
Tipo di scansione: Scansione completa (C:\|)
Elementi scansionati: 143344
Tempo trascorso: 1 hour(s), 4 minute(s), 2 second(s)
Processi delle memoria infetti: 0
Moduli della memoria infetti: 0
Chiavi di registro infette: 1
Valori di registro infetti: 2
Elementi dato del registro infetti: 0
Cartelle infette: 2
File infetti: 3
Processi delle memoria infetti:
(Nessun elemento malevolo rilevato)
Moduli della memoria infetti:
(Nessun elemento malevolo rilevato)
Chiavi di registro infette:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\luckytender (Adware.LuckyTender) -> No action taken.
Valori di registro infetti:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\IEudinit (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Mstsc (Trojan.Agent) -> No action taken.
Elementi dato del registro infetti:
(Nessun elemento malevolo rilevato)
Cartelle infette:
C:\Programmi\LuckyTender (Adware.LuckyTender) -> No action taken.
C:\Programmi\LuckyTender\1.3.1 (Adware.LuckyTender) -> No action taken.
File infetti:
C:\Programmi\PC Tune-Up\RdvChk.exe (Spyware.OnlineGames) -> No action taken.
C:\Programmi\LuckyTender\uninst.exe (Adware.LuckyTender) -> No action taken.
C:\Documents and Settings\Alessandro\Impostazioni locali\Temp\mstsc.exe (Trojan.Agent) -> No action taken.
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Professional ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) 4 CPU 3.20GHz )
BIOS : Ver 1.00PARTTBL
USER : Alessandro ( Administrator )
BOOT : Normal boot
Antivirus : AVG Anti-Virus Free 8.0 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:74 Go (Free:27 Go)
D:\ (CD or DVD)
E:\ (Local Disk) - NTFS - Total:465 Go (Free:371 Go)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 19/03/2009|15.35 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ FIX
Deleted! - C:\DOCUME~1\ALESSA~1\Cookies\alessandro@advertising[2].txt
Deleted! - C:\DOCUME~1\ALESSA~1\Cookies\alessandro@adopt.euroclick[2].txt
Deleted! - C:\DOCUME~1\ALESSA~1\DATIAP~1\Objmfcd\01tooluser.exe
Deleted! - C:\DOCUME~1\ALESSA~1\DATIAP~1\Objmfcd\viewplaypop.exe
Deleted! - C:\DOCUME~1\ALESSA~1\DATIAP~1\Objmfcd\xsbnmxgl.exe
Deleted! - C:\DOCUME~1\ALESSA~1\DATIAP~1\Objmfcd
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing folders in DATIAP~1
[18/03/2009|18.43] C:\DOCUME~1\ALESSA~1\DATIAP~1\Adobe
[16/12/2008|12.10] C:\DOCUME~1\ALESSA~1\DATIAP~1\AdobeUM
[06/02/2007|10.05] C:\DOCUME~1\ALESSA~1\DATIAP~1\Ahead
[05/06/2008|15.12] C:\DOCUME~1\ALESSA~1\DATIAP~1\ArcSoft
[28/03/2008|18.40] C:\DOCUME~1\ALESSA~1\DATIAP~1\Autodesk
[07/03/2009|10.24] C:\DOCUME~1\ALESSA~1\DATIAP~1\Avanquest
[08/02/2005|16.37] C:\DOCUME~1\ALESSA~1\DATIAP~1\Cartella di caricamento Share-to-Web
[10/04/2006|14.46] C:\DOCUME~1\ALESSA~1\DATIAP~1\Cyberlink
[09/01/2009|09.08] C:\DOCUME~1\ALESSA~1\DATIAP~1\Google
[24/11/2004|16.35] C:\DOCUME~1\ALESSA~1\DATIAP~1\Help
[08/02/2005|16.47] C:\DOCUME~1\ALESSA~1\DATIAP~1\Hewlett-Packard
[25/10/2004|12.34] C:\DOCUME~1\ALESSA~1\DATIAP~1\Identities
[23/05/2008|08.46] C:\DOCUME~1\ALESSA~1\DATIAP~1\InterTrust
[26/05/2008|08.03] C:\DOCUME~1\ALESSA~1\DATIAP~1\Lavasoft
[11/08/2005|20.41] C:\DOCUME~1\ALESSA~1\DATIAP~1\LG Electronics
[28/02/2008|09.10] C:\DOCUME~1\ALESSA~1\DATIAP~1\Macromedia
[12/03/2009|18.26] C:\DOCUME~1\ALESSA~1\DATIAP~1\Malwarebytes
[19/03/2009|11.23] C:\DOCUME~1\ALESSA~1\DATIAP~1\Microsoft
[28/06/2006|17.39] C:\DOCUME~1\ALESSA~1\DATIAP~1\MSN6
[29/01/2009|11.18] C:\DOCUME~1\ALESSA~1\DATIAP~1\MyHeritage
[05/06/2008|14.48] C:\DOCUME~1\ALESSA~1\DATIAP~1\Nikon
[28/08/2008|08.45] C:\DOCUME~1\ALESSA~1\DATIAP~1\Real
[09/12/2008|18.37] C:\DOCUME~1\ALESSA~1\DATIAP~1\Ringtone
[27/12/2004|11.40] C:\DOCUME~1\ALESSA~1\DATIAP~1\Roxio
[28/10/2004|14.24] C:\DOCUME~1\ALESSA~1\DATIAP~1\Symantec
[29/01/2008|17.16] C:\DOCUME~1\ALESSA~1\DATIAP~1\Uniblue
[18/12/2008|10.13] C:\DOCUME~1\ALESSA~1\DATIAP~1\Vso
[23/11/2007|15.53] C:\DOCUME~1\ALESSA~1\DATIAP~1\WinRAR
[23/11/2007|15.58] C:\DOCUME~1\ALESSA~1\DATIAP~1\Xerox
[0|File] C:\DOCUME~1\ALESSA~1\DATIAP~1\byte
[31|Directory] C:\DOCUME~1\ALESSA~1\DATIAP~1\850 849 280 byte disponibili
[18/03/2009|18.41] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Adobe
[01/06/2007|11.37] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Adobe Systems
[24/06/2006|07.45] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Ahead
[13/11/2008|15.43] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Autodesk
[07/03/2009|09.53] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Avanquest
[13/03/2009|12.13] C:\DOCUME~1\ALLUSE~1\DATIAP~1\avg8
[19/01/2008|08.52] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Bluetooth
[18/12/2008|09.02] C:\DOCUME~1\ALLUSE~1\DATIAP~1\DVD Shrink
[05/06/2008|14.47] C:\DOCUME~1\ALLUSE~1\DATIAP~1\EnterNHelp
[01/08/2008|18.30] C:\DOCUME~1\ALLUSE~1\DATIAP~1\FLEXnet
[07/02/2009|12.05] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Google
[18/03/2009|10.34] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Google Updater
[06/08/2008|14.51] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Grisoft
[24/05/2008|09.59] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Kaspersky Lab
[13/03/2009|08.59] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Lavasoft
[19/04/2007|08.18] C:\DOCUME~1\ALLUSE~1\DATIAP~1\LEICA Geosystems
[29/10/2004|16.46] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Macrovision
[04/02/2009|17.33] C:\DOCUME~1\ALLUSE~1\DATIAP~1\MailFrontier
[12/03/2009|18.25] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Malwarebytes
[07/03/2009|12.40] C:\DOCUME~1\ALLUSE~1\DATIAP~1\MANAGER FLAW EXIT JUMP
[10/02/2009|10.19] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Microsoft
[11/03/2009|08.55] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Microsoft Help
[12/04/2006|11.13] C:\DOCUME~1\ALLUSE~1\DATIAP~1\MSN6
[29/01/2009|11.27] C:\DOCUME~1\ALLUSE~1\DATIAP~1\MyHeritage
[20/06/2006|10.47] C:\DOCUME~1\ALLUSE~1\DATIAP~1\QuickTime
[31/10/2006|09.04] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Symantec
[05/06/2008|14.47] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Ultima_T15
[18/03/2008|18.52] C:\DOCUME~1\ALLUSE~1\DATIAP~1\Windows Genuine Advantage
[23/07/2008|17.33] C:\DOCUME~1\ALLUSE~1\DATIAP~1\WLInstaller
[0|File] C:\DOCUME~1\ALLUSE~1\DATIAP~1\byte
[31|Directory] C:\DOCUME~1\ALLUSE~1\DATIAP~1\850 849 280 byte disponibili
[04/06/2004|09.33] C:\DOCUME~1\DEFAUL~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~1\DEFAUL~1\DATIAP~1\byte
[3|Directory] C:\DOCUME~1\DEFAUL~1\DATIAP~1\850 845 184 byte disponibili
[13/03/2009|12.13] C:\DOCUME~1\LOCALS~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~1\LOCALS~1\DATIAP~1\byte
[3|Directory] C:\DOCUME~1\LOCALS~1\DATIAP~1\850 845 184 byte disponibili
[13/03/2009|12.13] C:\DOCUME~1\NETWOR~1\DATIAP~1\Microsoft
[0|File] C:\DOCUME~1\NETWOR~1\DATIAP~1\byte
[3|Directory] C:\DOCUME~1\NETWOR~1\DATIAP~1\850 845 184 byte disponibili
--------------------\\ Scheduled Tasks located in C:\WINDOWS\Tasks
[18/03/2009 19.29][--a------] C:\WINDOWS\tasks\SCHEDLGU.TXT
[19/03/2009 08.36][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[19/03/2009 11.35][--a------] C:\WINDOWS\tasks\Google Software Updater.job
[16/03/2009 19.12][--a------] C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[19/03/2009 08.36][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/09/2002 13.00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing Folders in C:\Programmi
[04/03/2009|16.18] C:\Programmi\3GP Player
[11/04/2006|18.15] C:\Programmi\ABBYY FineReader 4.0 Sprint
[18/03/2009|18.52] C:\Programmi\Adobe
[24/06/2006|10.52] C:\Programmi\Ahead
[01/08/2008|11.31] C:\Programmi\Aide PDF to DXF Converter
[31/10/2006|09.09] C:\Programmi\Alwil Software
[13/11/2008|12.20] C:\Programmi\AnswerWorks 4.0
[05/06/2008|14.43] C:\Programmi\ArcSoft
[29/10/2004|16.48] C:\Programmi\AutoCAD 2004
[13/11/2008|15.50] C:\Programmi\AutoCAD 2008
[01/08/2008|10.45] C:\Programmi\Autodesk
[28/03/2008|18.17] C:\Programmi\Autodesk Civil 3D 2006
[13/11/2008|12.20] C:\Programmi\Autodesk Map 3D 2006
[01/08/2008|15.30] C:\Programmi\AutoDWG
[22/12/2008|18.04] C:\Programmi\AVG
[19/03/2009|12.10] C:\Programmi\BitComet
[12/03/2009|11.36] C:\Programmi\CCleaner
[12/11/2008|09.37] C:\Programmi\Codice Fiscale 4
[11/07/2008|08.48] C:\Programmi\Common Files
[04/06/2004|09.30] C:\Programmi\ComPlus Applications
[26/05/2008|07.58] C:\Programmi\CyberLink
[27/01/2009|17.31] C:\Programmi\Defraggler
[09/12/2008|16.30] C:\Programmi\Digisoft AntiDialer
[25/10/2004|12.38] C:\Programmi\directx
[04/03/2009|18.06] C:\Programmi\Docfa30
[04/03/2009|18.02] C:\Programmi\Docfa305
[04/03/2009|18.04] C:\Programmi\Docfa307
[18/12/2008|09.02] C:\Programmi\DVD Shrink
[02/03/2009|10.02] C:\Programmi\eMule
[14/08/2008|08.25] C:\Programmi\ESET
[11/03/2009|10.09] C:\Programmi\Eusing Free Registry Cleaner
[24/04/2008|18.37] C:\Programmi\Fast Image Resizer
[10/11/2008|17.16] C:\Programmi\Fatturazione Professionisti 4
[18/03/2009|19.21] C:\Programmi\File comuni
[27/01/2007|12.12] C:\Programmi\Finson Live Update
[12/11/2007|09.42] C:\Programmi\FotoStation Easy
[08/01/2008|12.24] C:\Programmi\FX Uninstall Information
[10/07/2008|18.27] C:\Programmi\Ghostgum
[10/02/2009|09.51] C:\Programmi\Google
[06/08/2008|14.51] C:\Programmi\Grisoft
[10/12/2008|12.04] C:\Programmi\Hewlett-Packard
[11/04/2007|18.01] C:\Programmi\HP
[07/03/2009|09.55] C:\Programmi\InstallShield Installation Information
[04/06/2004|09.58] C:\Programmi\Intel
[03/10/2008|09.33] C:\Programmi\Internet Explorer
[19/01/2008|08.48] C:\Programmi\IVT Corporation
[06/06/2007|10.03] C:\Programmi\JavaSoft
[13/03/2009|08.59] C:\Programmi\Lavasoft
[26/05/2008|07.54] C:\Programmi\LEICA Geosystems
[12/08/2005|03.24] C:\Programmi\LG PC Suite
[10/12/2008|11.55] C:\Programmi\LGGSM
[10/03/2009|12.05] C:\Programmi\LuckyTender
[19/03/2009|12.11] C:\Programmi\Malwarebytes' Anti-Malware
[03/10/2008|09.37] C:\Programmi\Messenger
[04/03/2008|09.36] C:\Programmi\MessengerPlus! 3(2)
[25/02/2009|19.35] C:\Programmi\Microsoft
[04/10/2008|09.18] C:\Programmi\Microsoft CAPICOM 2.1.0.2
[04/06/2004|09.33] C:\Programmi\microsoft frontpage
[12/03/2007|19.06] C:\Programmi\Microsoft Office
[26/02/2009|15.50] C:\Programmi\Microsoft Silverlight
[28/10/2004|15.43] C:\Programmi\Microsoft Visual Studio
[12/03/2007|18.57] C:\Programmi\Microsoft Visual Studio 8
[12/03/2007|19.07] C:\Programmi\Microsoft Works
[12/03/2007|19.04] C:\Programmi\Microsoft.NET
[16/12/2008|18.49] C:\Programmi\MobileMusic
[03/10/2008|09.33] C:\Programmi\Movie Maker
[12/03/2007|19.06] C:\Programmi\MSBuild
[15/05/2006|17.11] C:\Programmi\MSN
[04/06/2004|09.30] C:\Programmi\MSN Gaming Zone
[23/07/2008|17.35] C:\Programmi\MSN Messenger
[23/09/2008|16.59] C:\Programmi\MSXML 4.0
[13/09/2008|11.43] C:\Programmi\MSXML 6.0
[03/10/2008|09.29] C:\Programmi\NetMeeting
[26/01/2007|12.31] C:\Programmi\NEXT AGENDA 2
[05/06/2008|14.47] C:\Programmi\Nikon
[03/10/2008|09.28] C:\Programmi\Outlook Express
[24/01/2008|18.30] C:\Programmi\Packard Bell NetStore
[10/11/2008|17.17] C:\Programmi\Parcelle e fatture
[18/12/2007|19.38] C:\Programmi\PC Inspector File Recovery
[19/03/2009|12.07] C:\Programmi\PC Tune-Up
[21/08/2005|19.11] C:\Programmi\PIXELA
[23/09/2008|18.21] C:\Programmi\Power Translator 10
[11/07/2008|08.48] C:\Programmi\Powerbullet
[25/07/2006|10.40] C:\Programmi\Pregeo 8.1.5 - versione integrale aggiornata
[27/04/2005|09.21] C:\Programmi\Quark
[12/11/2007|09.44] C:\Programmi\QuickTime
[19/03/2008|15.54] C:\Programmi\RDS
[03/06/2008|10.01] C:\Programmi\Real
[05/04/2006|10.31] C:\Programmi\RMClient
[22/02/2008|17.47] C:\Programmi\RunPack
[29/10/2004|16.31] C:\Programmi\ScanExpress A3 USB
[04/06/2004|09.32] C:\Programmi\Servizi in linea
[11/02/2008|18.41] C:\Programmi\Smallvideosoft
[12/12/2008|11.13] C:\Programmi\SmartKeyDriver
[31/10/2006|09.04] C:\Programmi\Symantec
[19/09/2008|11.32] C:\Programmi\TallStick
[10/03/2009|19.06] C:\Programmi\Trend Micro
[12/12/2005|10.28] C:\Programmi\Ulead Systems
[04/06/2004|09.50] C:\Programmi\Uninstall Information
[26/05/2008|08.02] C:\Programmi\Voltura
[04/03/2009|16.16] C:\Programmi\Voobys
[25/02/2009|19.35] C:\Programmi\Windows Live
[10/02/2009|11.05] C:\Programmi\Windows Live SkyDrive
[09/01/2009|11.51] C:\Programmi\Windows Media Connect 2
[09/01/2009|11.58] C:\Programmi\Windows Media Player
[03/10/2008|09.28] C:\Programmi\Windows NT
[28/10/2004|14.49] C:\Programmi\WindowsUpdate
[29/04/2008|07.57] C:\Programmi\WinRAR
[04/06/2004|09.33] C:\Programmi\xerox
[0|File] C:\Programmi\byte
[111|Directory] C:\Programmi\850 845 184 byte disponibili
--------------------\\ Listing Folders in C:\Programmi\File comuni
[18/03/2009|19.11] C:\Programmi\File comuni\Adobe
[01/06/2007|11.37] C:\Programmi\File comuni\Adobe Systems Shared
[24/06/2006|10.47] C:\Programmi\File comuni\Ahead
[13/11/2008|15.50] C:\Programmi\File comuni\Autodesk Shared
[12/03/2007|19.06] C:\Programmi\File comuni\DESIGNER
[10/12/2008|12.00] C:\Programmi\File comuni\HP
[11/08/2005|20.38] C:\Programmi\File comuni\InstallShield
[18/03/2009|19.21] C:\Programmi\File comuni\Java
[01/08/2008|11.24] C:\Programmi\File comuni\Macrovision Shared
[25/02/2009|19.34] C:\Programmi\File comuni\Microsoft Shared
[04/06/2004|09.31] C:\Programmi\File comuni\MSSoap
[10/12/2008|12.12] C:\Programmi\File comuni\Nikon
[04/06/2004|10.10] C:\Programmi\File comuni\ODBC
[04/03/2008|09.36] C:\Programmi\File comuni\RDPrint
[03/06/2008|10.02] C:\Programmi\File comuni\Real
[22/12/2008|17.50] C:\Programmi\File comuni\Roxio Shared
[04/06/2004|09.31] C:\Programmi\File comuni\Services
[04/06/2004|10.10] C:\Programmi\File comuni\SpeechEngines
[31/10/2006|09.08] C:\Programmi\File comuni\Symantec Shared
[03/10/2008|09.28] C:\Programmi\File comuni\System
[10/02/2009|10.20] C:\Programmi\File comuni\Windows Live
[23/07/2008|17.33] C:\Programmi\File comuni\WindowsLiveInstaller
[23/01/2009|17.05] C:\Programmi\File comuni\Wise Installation Wizard
[03/06/2008|10.02] C:\Programmi\File comuni\xing shared
[0|File] C:\Programmi\File comuni\byte
[26|Directory] C:\Programmi\File comuni\850 841 088 byte disponibili
--------------------\\ Process
( 38 Processes )
... OK !
--------------------\\ Searching with S_Lop
No Lop folder found !
--------------------\\ Searching for Lop Files - Folders
No Lop folder found !
--------------------\\ Searching within the Registry
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
..... OK !
--------------------\\ Checking the Hosts file
Hosts file CLEAN
--------------------\\ Searching for hidden files with Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net Rootkit scan 2009-03-19 15:37:57
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 1
--------------------\\ Searching for other infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp Utilities 2008 serial0 keygen0.exe
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp.Utilities.2008.Keygen.&.Patch.Only
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp.Utilities.2008.Keygen.&.Patch.Only.zip
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp.Utilities.2008.Keygen.&.Patch.Only\AppInitialization.bpl
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp.Utilities.2008.Keygen.&.Patch.Only\CommonForms.bpl
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp.Utilities.2008.Keygen.&.Patch.Only\Keygen.exe
C:\DOCUME~1\ALESSA~1\Desktop\PCtune\TuneUp.Utilities.2008.Keygen.&.Patch.Only\Patch.exe
C:\DOCUME~1\ALESSA~1\Documenti\Musica\Musica\Vecchi\Freez 3GP Video Converter + Crack.rar
[F:55][D:12]-> C:\DOCUME~1\ALESSA~1\IMPOST~1\Temp
[F:18][D:0]-> C:\DOCUME~1\ALESSA~1\Cookies
[F:697][D:4]-> C:\DOCUME~1\ALESSA~1\IMPOST~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 19/03/2009|15.39 - Option : [2]
--------------------\\ Scan completed at 15.39.32