Condividi:        

Antivirus e firewall possono bastare?

Come rimuovere virus e spyware? Le carte di credito sono davvero sicure in rete? È possibile navigare anonimi? Con quali programmi tutelare la propria privacy? Come proteggere i file importanti? Se volete una risposta a queste e altre domande questo è il luogo giusto!

Moderatori: m.paolo, kadosh, Luke57

Antivirus e firewall possono bastare?

Postdi michele69 » 22/08/06 14:56

Ciao. Penso che tutti gli utenti di IE sono preoccupati di tutelare la privacy e altri dati personali conservati nel proprio computer.
Il mio problema è determinato dal timore di essere in qualche modo spiati.
Esiste un sistema o un programma che possa effettuare un controllo e rimuovere eventuali minacce?
Utilizzo l'antivirus Antivir e anche se mi sembra che non ci sono virus il report mi indica più volte il termine WARNING.
Potete consigliami anche un buon FIREWALL gratuito?
Vi invio il REPORT di AntiVir PersonalEdition Classic e il file Log di HijackThis

GRAZIE.


AntiVir PersonalEdition Classic
Report file date: martedì 22 agosto 2006 13:49

Scanning for 484329 virus strains and unwanted programs.

Licensed to: AntiVir PersonalEdition Classic
Serial number: 0000149996-WURGE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: LuigiDT
Computer name: LUIGI

Version informations:
AVSCAN.EXE : 7.0.0.42 557096 13/02/2006 12:41:55
AVSCAN.DLL : 7.0.0.42 53288 13/02/2006 12:41:55
LUKE.DLL : 7.0.0.42 118824 13/02/2006 12:41:55
LUKERES.DLL : 7.0.0.42 25640 13/02/2006 12:41:55
ANTIVIR0.VDF : 6.35.0.1 7371264 13/02/2006 12:41:55
ANTIVIR1.VDF : 6.35.1.122 1270784 13/02/2006 12:41:55
ANTIVIR2.VDF : 6.35.1.123 2048 13/02/2006 12:41:55
ANTIVIR3.VDF : 6.35.1.124 5120 13/02/2006 12:41:55
AVEWIN32.DLL : 7.1.1.2 1782272 13/02/2006 12:41:55
AVPREF.DLL : 7.0.0.1 49192 13/02/2006 12:41:55
AVREP.DLL : 6.35.1.100 757800 13/02/2006 12:41:55
AVRPBASE.DLL : 7.0.0.0 2162728 05/05/2006 07:20:07
AVPACK32.DLL : 7.1.0.1 335912 13/02/2006 12:41:55
AVREG.DLL : 6.31.0.90 27688 13/02/2006 12:41:55
NETNT.DLL : 6.32.0.0 6696 13/02/2006 12:41:55
NETNW.DLL : 6.32.0.0 9768 13/02/2006 12:41:55
RCIMAGE.DLL : 7.0.0.71 1642536 13/02/2006 12:41:57
RCTEXT.DLL : 7.0.0.75 77864 13/02/2006 12:41:57

Configuration settings for the scan:
Jobname: '%s'.................: Local Drives
Configuration file............: C:\Programmi\AntiVir PersonalEdition Classic\alldrives.avp
Boot sectors..................: C,D,E,F,H,G
Scan memory...................: 1
Process scan..................: 1
Scan all files................: 1
Scan archives.................: 1
Recursion depth...............: 20
Smart extensions..............: 1
Macro heuristic...............: 1
File heuristic................: -1
Primary action................: 1
Secondary action..............: 0

Start of the scan: martedì 22 agosto 2006 13:49


The scan over running processes will be started
30 Processes was scanned

Start scanning boot sectors:

Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'D:\'
[NOTE] No virus was found!
Boot sector 'E:\'
[NOTE] In the drive 'E:\' no data medium is inserted!
Boot sector 'F:\'
[NOTE] In the drive 'F:\' no data medium is inserted!
Boot sector 'H:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( 11 files ).


Starting the file scan:

C:\pagefile.sys
[WARNING] The file could not be opened!
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\system.LOG
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\software.LOG
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\default.LOG
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\SAM.LOG
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\SECURITY.LOG
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\DEFAULT
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\SECURITY
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\SOFTWARE
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\SYSTEM
[WARNING] The file could not be opened!
C:\WINDOWS\system32\config\SAM
[WARNING] The file could not be opened!
C:\Documents and Settings\NetworkService\ntuser.dat.LOG
[WARNING] The file could not be opened!
C:\Documents and Settings\NetworkService\NTUSER.DAT
[WARNING] The file could not be opened!
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG
[WARNING] The file could not be opened!
C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat
[WARNING] The file could not be opened!
C:\Documents and Settings\LocalService\ntuser.dat.LOG
[WARNING] The file could not be opened!
C:\Documents and Settings\LocalService\NTUSER.DAT
[WARNING] The file could not be opened!
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG
[WARNING] The file could not be opened!
C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat
[WARNING] The file could not be opened!
C:\Documents and Settings\LuigiDT\ntuser.dat.LOG
[WARNING] The file could not be opened!
C:\Documents and Settings\LuigiDT\ntuser.dat
[WARNING] The file could not be opened!
C:\Documents and Settings\LuigiDT\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG
[WARNING] The file could not be opened!
C:\Documents and Settings\LuigiDT\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat
[WARNING] The file could not be opened!
The path E:\ could not be found!
Periferica non pronta.

The path F:\ could not be found!
Periferica non pronta.

The path G:\ could not be found!
Periferica non pronta.



End of the scan: martedì 22 agosto 2006 14:27
Used time: 37:59 min

The scan has been done completely.

5174 Scanning directories
337576 Files were scanned
0 viruses and/or unwanted programs was found
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
6927 Archives were scanned
24 Warnings
0 Notes

Questo invece è il logfile di HijackThis.


Logfile of HijackThis v1.99.1
Scan saved at 14.37.07, on 22/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Programmi\AntiVir PersonalEdition Classic\sched.exe
C:\Programmi\AntiVir PersonalEdition Classic\avguard.exe
C:\Programmi\File comuni\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\BillP Studios\WinPatrol\winpatrol.exe
C:\Programmi\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\ADSL\StarModem ADSL USB MODEM\dslmon.exe
C:\WINDOWS\winhlp32.exe
C:\Documents and Settings\LuigiDT\Desktop\Software Installato\hijackthis_199\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://pc-cillin9.antivirus.com/en/90/p ... TWP9002002
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
O4 - HKLM\..\Run: [WinPatrol] C:\Programmi\BillP Studios\WinPatrol\winpatrol.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [9xadiras] 9xadiras.exe
O4 - HKLM\..\Run: [2kadiras] 2kadiras.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Programmi\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Programmi\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Programmi\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Programmi\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Programmi\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Programmi\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Programmi\WinHTTrack\WinHTTrackIEBar.dll
O13 - WWW Prefix:
O13 - Home Prefix:
O13 - Mosaic Prefix:
O13 - FTP Prefix:
O13 - Gopher Prefix:
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com.tw
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/ka ... nicode.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://paris.trafic.ville.wanadoo.fr/Co ... ontrol.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnme ... loader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{35CEBBC9-853A-48C5-8E47-B3448D81490A}: NameServer = 193.70.152.15 193.70.152.25
O23 - Service: AntiVir Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Service (AntiVirService) - AVIRA GmbH - C:\Programmi\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE




GRAZIE!!!!!!!
michele69
Newbie
 
Post: 4
Iscritto il: 21/08/06 08:14

Sponsor
 

Postdi andorra24 » 22/08/06 15:23

Ciao, il log di antivir dice che non e' stato trovato nessun virus. Quei messaggi di WARNING sono normali e si riferiscono a dei files del sistema operativo che non possono essere scansionati dall'antivirus.

Per quanto riguarda il log di hijackthis direi che puoi eliminare queste voci premendo fix checked:
O13 - WWW Prefix:
O13 - Home Prefix:
O13 - Mosaic Prefix:
O13 - FTP Prefix:
O13 - Gopher Prefix:

Per quanto riguarda la tua prima domanda posso consigliarti un paio di ottimi antispyware/antimalwares che puoi usare per scansionare il tuo pc di tanto in tanto e sono entrambi free:
http://www.superantispyware.com/downloa ... PYWAREFREE
http://www.ewido.net/en/

Per quanto riguarda la domanda sul firewall gratuito potrei citarti Zone Alarm oppure Comodo Personal Firewall di cui c'e' una guida che posso linkarti:
http://www.megalab.it/articoli.php?id=867
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo


Torna a Sicurezza e Privacy


Topic correlati a "Antivirus e firewall possono bastare?":

Antivirus Windows 10
Autore: franco11
Forum: Software Windows
Risposte: 6

Chi c’è in linea

Visitano il forum: Nessuno e 28 ospiti