Jump to content

francescod

Members
  • Posts

    2
  • Joined

  • Last visited

Reputation

0 Neutral
  1. hello thank u for help this is my report: Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Versione database: 5072 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 08/11/2010 12.52.55 mbam-log-2010-11-08 (12-52-55).txt Tipo di scansione: Scansione veloce Elementi esaminati: 153375 Tempo trascorso: 10 minuti, 1 secondi Processi infetti in memoria: 0 Moduli di memoria infetti: 0 Chiavi di registro infette: 3 Valori di registro infetti: 2 Voci infette nei dati di registro: 3 Cartelle infette: 0 File infetti: 4 Processi infetti in memoria: (Non sono stati rilevati elementi nocivi) Moduli di memoria infetti: (Non sono stati rilevati elementi nocivi) Chiavi di registro infette: HKEY_CURRENT_USER\SOFTWARE\65MWRMP54G (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\U36VRSFLG6 (Trojan.FakeAlert) -> Quarantined and deleted successfully. Valori di registro infetti: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\65mwrmp54g (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\u36vrsflg6 (Trojan.FakeAlert) -> Quarantined and deleted successfully. Voci infette nei dati di registro: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Cartelle infette: (Non sono stati rilevati elementi nocivi) File infetti: C:\WINDOWS\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job (Trojan.Downloader) -> Quarantined and deleted successfully. C:\WINDOWS\Tasks\{62C40AA6-4406-467a-A5A5-DFDF1B559B7A}.job (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\WINDOWS\Dtapoa.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\Documents and Settings\fdanza\Desktop\explorer.exe (Heuristics.Reserved.Word.Exploit) -> Quarantined and deleted successfully. and now?!
  2. hello, I have recently been infected with TR/Crypt.Epack.Gen2 but my antivirus can not remove it, i make all this things: * Download OTL to your desktop. * Double click on OTL to run it. * When the window appears, underneath Output at the top change it to Minimal Output. * Under the Standard Registry box change it to All. * Under Custom scan's and fixes section paste in the below in bold netsvcs %SYSTEMDRIVE%\*.* %systemroot%\system32\*.dll /lockedfiles %systemroot%\Tasks\*.job /lockedfiles %systemroot%\system32\drivers\*.sys /90 %systemroot%\system32\Spool\prtprocs\w32x86\*.dll * Check the boxes beside LOP Check and Purity Check. * Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long. o When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL. o Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply. ==================== Please download Rootkit Unhooker and save it to your desktop. * Double-click RKUnhookerLE.exe to run it. * Click the Report tab, then click Scan * Check Drivers, Stealth Code, Files, and Code Hooks * Uncheck the rest, then click OK * When prompted to Select Disks for Scan, make sure C:\ is checked and click OK * Wait till the scanner has finished then go File > Save Report * Save the report somewhere you can find it, typically your desktop. Click Close * Copy the entire contents of the report and paste it in your next reply. now these are my reports... PLEASE HELP ME! what i have to do now? thank u all Extras.Txt OTL.Txt Report.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.