Visualizzazione dei risultati da 1 a 5 su 5
  1. #1
    Utente di HTML.it
    Registrato dal
    Dec 2006
    Messaggi
    4
    Ciao, ho anche io lo stesso problema.
    Vi posto il report ottenuto dalla scansione, se potete aiutarvi ve ne sarei molto grato.
    Grazie

    http://www.mytempdir.com/1128628

  2. #2
    Utente di HTML.it
    Registrato dal
    Dec 2006
    Messaggi
    4
    Inoltre, ecco il primo report di Avneger:

    Could not open file C:\WINNT\trz1B5.tmp for deletion
    Deletion of file C:\WINNT\trz1B5.tmp failed!

    Could not process line:
    C:\WINNT\trz1B5.tmp
    Status: 0xc000003a



    Could not open file C:\WINNT\system32\lzx32.sys for deletion
    Deletion of file C:\WINNT\system32\lzx32.sys failed!

    Could not process line:
    C:\WINNT\system32\lzx32.sys
    Status: 0xc000003a

    Registry value HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs replaced with dummy successfully.


    Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\pol icies\Explorer\Run|1 not found!
    Deletion of registry key HKLM\Software\Microsoft\Windows\CurrentVersion\pol icies\Explorer\Run|1 failed!
    Status: 0xc0000034


    Completed script processing.

    *******************

    Finished! Terminate.

  3. #3
    Utente di HTML.it
    Registrato dal
    Dec 2006
    Messaggi
    4
    Inoltre, ecco il primo report di Avneger:

    Logfile of The Avenger version 1, by Swandog46
    Running from registry key:
    \Registry\Machine\System\CurrentControlSet\Service s\wqgtyiji

    *******************

    Script file located at: \??\C:\WINDOWS\system32\ucvakfqf.txt
    Script file opened successfully.

    Script file read successfully

    Backups directory opened successfully at C:\Avenger

    *******************

    Beginning to process script file:



    Registry key HKEY_LOCAL_MACHINE\system\controlset001\services\l zx32 not found!
    Deletion of registry key HKEY_LOCAL_MACHINE\system\controlset001\services\l zx32 failed!

    Could not process line:
    HKEY_LOCAL_MACHINE\system\controlset001\services\l zx32
    Status: 0xc0000034



    Could not open file C:\WINNT\ctfmon32.dll for deletion
    Deletion of file C:\WINNT\ctfmon32.dll failed!

    Could not process line:
    C:\WINNT\ctfmon32.dll
    Status: 0xc000003a



    Could not open file C:\WINNT\service32.exe for deletion
    Deletion of file C:\WINNT\service32.exe failed!

    Could not process line:
    C:\WINNT\service32.exe
    Status: 0xc000003a



    Could not open file C:\WINNT\4862161254.exe for deletion
    Deletion of file C:\WINNT\4862161254.exe failed!

    Could not process line:
    C:\WINNT\4862161254.exe
    Status: 0xc000003a



    Could not open file C:\WINNT\trz10.tmp for deletion
    Deletion of file C:\WINNT\trz10.tmp failed!

    Could not process line:
    C:\WINNT\trz10.tmp
    Status: 0xc000003a



    Could not open file C:\WINNT\trz1B5.tmp for deletion
    Deletion of file C:\WINNT\trz1B5.tmp failed!

    Could not process line:
    C:\WINNT\trz1B5.tmp
    Status: 0xc000003a



    Could not open file C:\WINNT\system32\lzx32.sys for deletion
    Deletion of file C:\WINNT\system32\lzx32.sys failed!

    Could not process line:
    C:\WINNT\system32\lzx32.sys
    Status: 0xc000003a

    Registry value HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs replaced with dummy successfully.


    Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\pol icies\Explorer\Run|1 not found!
    Deletion of registry key HKLM\Software\Microsoft\Windows\CurrentVersion\pol icies\Explorer\Run|1 failed!
    Status: 0xc0000034


    Completed script processing.

    *******************

    Finished! Terminate.

  4. #4
    Utente di HTML.it
    Registrato dal
    Dec 2006
    Messaggi
    4
    Ed ecco il secondo report:

    Logfile of The Avenger version 1, by Swandog46
    Running from registry key:
    \Registry\Machine\System\CurrentControlSet\Service s\pveenffc

    *******************

    Script file located at: \??\C:\WINDOWS\laokaqjc.txt
    Script file opened successfully.

    Script file read successfully

    Backups directory opened successfully at C:\Avenger

    *******************

    Beginning to process script file:

    Registry value HKLM\Software\Microsoft\Windows\CurrentVersion\pol icies\Explorer\Run|1 deleted successfully.

    Completed script processing.

    *******************

    Finished! Terminate.

  5. #5
    Moderatore di Sicurezza informatica e virus L'avatar di amvinfe
    Registrato dal
    May 2002
    Messaggi
    6,739
    non rispondere nelle discussioni aperte da ltri se devi esporre un tuo problema, ho diviso le due discussioni.

    Poi con calma ci spieghi cosa stai facendo, perchè io sinceramente ancora non ho capito.
    Grazie
    ==
    Visita il mio blog SuspectFile.com
    ==

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved.