Ciao a tutti!
sono un nuovo iscritto a questo forum, e spero che voi aiutamici potrete aiutarmi nei miei problemi informatici:
1- pc lentissimo all'avvio e anche nell'apertura di molti programmi.
2- praticamente 3-4 volte al giorno si apre una finestra di errore con explorer.exe, strano perchè explorer non lo uso mai. cmq non è un grave problema, basta cliccare su "ok" e nel giro di 2 minuti si risolve tutto.
3- altra finestra di errore che si apre da sola: errore dwrt32. E questo è già più grave perchè poi devo riavviare il pc, siccome non funziona più niente, nemmeno il mouse!
4- Classica schermata blu e conseguente riavvio del computer. ormai ci sono abituato...
Tentando di risolvere i miei problemi da solo ho sguazzato nella rete in cerca di soluzioni e ho fatto la scansione completa con MALWAREBYTES-ANTIMALWARE. Questo è il responso:
Aiutatemi vi prego!!!
Malwarebytes' Anti-Malware 1.41
Versione del database: 2974
Windows 5.1.2600 Service Pack 3
13/10/2009 19.24.44
mbam-log-2009-10-13 (19-24-28).txt
Tipo di scansione: Scansione completa (C:\|D:\|)
Elementi scansionati: 172423
Tempo trascorso: 1 hour(s), 24 minute(s), 51 second(s)
Processi delle memoria infetti: 1
Moduli della memoria infetti: 2
Chiavi di registro infette: 8
Valori di registro infetti: 7
Elementi dato del registro infetti: 2
Cartelle infette: 0
File infetti: 96
Processi delle memoria infetti:
C:\WINDOWS\AhnRpta.exe (Trojan.Backdoor) -> No action taken.
Moduli della memoria infetti:
C:\WINDOWS\system32\e8main0.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\Bitkv0.dll (Spyware.OnlineGames) -> No action taken.
Chiavi di registro infette:
HKEY_CLASSES_ROOT\CLSID\{bb4c402f-882a-4526-8c08-51278ea437c1} (Spyware.OnlineGames) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{c5f43bef-ce2f-46d8-afe6-a647bacd1f09} (Spyware.OnlineGames) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{c5f43bef-ce2f-afe6-46d8-a647bacd1f09} (Spyware.OnlineGames) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\NOD32KVBIT (Trojan.Frethog) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Give4Free Plugin (Adware.Give4free) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Give4Free Plugin (Adware.Give4free) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\MADOWN (Worm.Magania) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Trymedia Systems (Adware.TryMedia) -> No action taken.
Valori di registro infetti:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{bb4c402f-882a-4526-8c08-51278ea437c1} (Spyware.OnlineGames) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{c5f43bef-ce2f-46d8-afe6-a647bacd1f09} (Spyware.OnlineGames) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\kamsoft (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vamsoft (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\host-domain-lookup.com (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\www.host-domain-lookup.com (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cdoosoft (Spyware.OnlineGames) -> No action taken.
Elementi dato del registro infetti:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> No action taken.
Cartelle infette:
(Nessun elemento malevolo rilevato)
File infetti:
C:\WINDOWS\system32\e8main0.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\Bitkv0.dll (Spyware.OnlineGames) -> No action taken.
C:\0c9k.exe (Spyware.OnlineGames) -> No action taken.
C:\10nb.exe (Worm.Magania) -> No action taken.
C:\2fiji.com (Spyware.OnlineGames) -> No action taken.
C:\3c.exe (Spyware.OnlineGames) -> No action taken.
C:\3j2h0tf.bat (Worm.Magania) -> No action taken.
C:\3yalgc.exe (Spyware.OnlineGames) -> No action taken.
C:\dogyx90.exe (Spyware.OnlineGames) -> No action taken.
C:\eyt.exe (Spyware.OnlineGames) -> No action taken.
C:\fsaht.cmd (Spyware.OnlineGames) -> No action taken.
C:\gbm6n.exe (Spyware.OnlineGames) -> No action taken.
C:\gi2ky.exe (Spyware.OnlineGames) -> No action taken.
C:\icxpa.cmd (Spyware.OnlineGames) -> No action taken.
C:\ph.exe (Worm.Magania) -> No action taken.
C:\q1alx.exe (Worm.Magania) -> No action taken.
C:\qcod.exe (Worm.Magania) -> No action taken.
C:\qv9qc9f.exe (Worm.AutoRun) -> No action taken.
C:\rdsfk.com (Spyware.OnlineGames) -> No action taken.
C:\rg9g9bgq.exe (Spyware.OnlineGames) -> No action taken.
C:\s3ek.exe (Spyware.OnlineGames) -> No action taken.
C:\6phx.com (Spyware.OnlineGames) -> No action taken.
C:\aphqg.exe (Worm.Magania) -> No action taken.
C:\bycfht.exe (Spyware.OnlineGames) -> No action taken.
C:\cj3k.exe (Worm.Magania) -> No action taken.
C:\sm.exe (Spyware.OnlineGames) -> No action taken.
C:\wrsf.exe (Spyware.OnlineGames) -> No action taken.
C:\yudald.bat (Trojan.GameThief) -> No action taken.
C:\lhh3v.exe (Spyware.OnlineGames) -> No action taken.
C:\m.exe (Spyware.OnlineGames) -> No action taken.
C:\nu.cmd (Spyware.OnlineGames) -> No action taken.
C:\o8tf6l.exe (Spyware.OnlineGames) -> No action taken.
C:\o9bxu.exe (Worm.Magania) -> No action taken.
C:\Programmi\Trend Micro\HijackThis\backups\backup-20081110-153838-734.dll (Adware.Chiem) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP708\A0644731.EXE (Trojan.FlyStudio) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP708\A0645755.EXE (Trojan.FlyStudio) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP708\A0645756.EXE (Trojan.FlyStudio) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP709\A0645767.EXE (Trojan.FlyStudio) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP711\A0653021.exe (Spyware.OnlineGames) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP712\A0654089.exe (Spyware.OnlineGames) -> No action taken.
C:\System Volume Information\_restore{161B6758-C94C-45E9-9B16-16CB50A7F9E0}\RP713\A0654112.exe (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\nmdfgds0.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\nmdfgds1.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\olhrwef.exe (Trojan.GameThief) -> No action taken.
C:\WINDOWS\system32\4EA053\d83a70.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\4EA053\i-123.exe (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\4EA053\RegEx.fnr (Worm.AutoRun) -> No action taken.
C:\WINDOWS\system32\4EA053\TPULETE2.EXE (Trojan.FlyStudio) -> No action taken.
C:\WINDOWS\system32\4EA053\XX-F980D.EXE (Trojan.Downloader) -> No action taken.
C:\WINDOWS\system32\4EA053\Z8-23EBB.EXE (Trojan.FlyStudio) -> No action taken.
C:\Documents and Settings\oem.YOUR-154EF2BC30\Impostazioni locali\Temp\QRC.exe (Adware.QUADRegClean) -> No action taken.
C:\Documents and Settings\oem.YOUR-154EF2BC30\Impostazioni locali\Temp\nmdfgds1.dll (Worm.Magania) -> No action taken.
C:\Documents and Settings\oem.YOUR-154EF2BC30\Impostazioni locali\Temporary Internet Files\Content.IE5\F8WFT14D\QUAD_RegistryCleaner_v.1.5.97[1].exe (Adware.QUADRegClean) -> No action taken.
C:\sp1jensi.exe (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\kav321.dll (Spyware.OnlineGames) -> No action taken.
C:\e2.cmd (Trojan.GameThief) -> No action taken.
C:\b.exe (Trojan.Agent) -> No action taken.
C:\i.exe (Trojan.Agent) -> No action taken.
C:\p.exe (Trojan.Agent) -> No action taken.
C:\cv22.cmd (Trojan.Agent) -> No action taken.
C:\minm.cmd (Trojan.Agent) -> No action taken.
C:\p1y2.cmd (Trojan.Agent) -> No action taken.
C:\xih9.cmd (Trojan.Agent) -> No action taken.
C:\n6t1h.cmd (Trojan.Agent) -> No action taken.
C:\nq0cq.cmd (Trojan.Agent) -> No action taken.
C:\rcukd.cmd (Trojan.Agent) -> No action taken.
C:\yannh.cmd (Trojan.Agent) -> No action taken.
C:\08dgu.com (Trojan.Agent) -> No action taken.
C:\0bcobed.exe (Spyware.OnlineGames) -> No action taken.
C:\68.exe (Trojan.Agent) -> No action taken.
C:\6fnlpetp.exe (Trojan.Agent) -> No action taken.
C:\86l2qw.bat (Spyware.OnlineGames) -> No action taken.
C:\8rcahp.exe (Spyware.OnlineGames) -> No action taken.
C:\itsduel.exe (Trojan.Agent) -> No action taken.
C:\lky.exe (Trojan.Agent) -> No action taken.
C:\opgde.exe (Spyware.OnlineGames) -> No action taken.
C:\pnt.com (Trojan.Agent) -> No action taken.
C:\pook.com (Trojan.Agent) -> No action taken.
C:\vfjc8mxm.exe (Spyware.OnlineGames) -> No action taken.
C:\xdw.com (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\amvo.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\amvo0.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\amvo1.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\Bitkv1.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\ckvo.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\ckvo0.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\ckvo1.dll (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\gasretyw0.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\gasretyw1.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\kamsoft.exe (Trojan.Agent) -> No action taken.
C:\WINDOWS\system32\kav320.dll (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\system32\vamsoft.exe (Trojan.Agent) -> No action taken.
C:\Documents and Settings\oem.YOUR-154EF2BC30\Impostazioni locali\Temp\cvasds0.dll (Spyware.OnlineGames) -> No action taken.
C:\Documents and Settings\oem.YOUR-154EF2BC30\Impostazioni locali\Temp\cvasds1.dll (Spyware.OnlineGames) -> No action taken.
C:\Documents and Settings\oem.YOUR-154EF2BC30\Impostazioni locali\Temp\herss.exe (Spyware.OnlineGames) -> No action taken.
C:\WINDOWS\AhnRpta.exe (Trojan.Backdoor) -> No action taken.