r16 ha scritto:Certo lionheart .
Falla lo stesso la scansione con Combofix, che vedo se hai qualche "ospite".
Segui scrupolosamente le indicazioni che ho postato.
Niente ... Falso allarme... Tutto è tornato a non funzionare come prima, quindi non era xp-AntiSpy
Ti posto il log di ComboFix (comunque ti volevo ringraziare del tuo aiuto):ComboFix 09-01-21.04 - g & s 2009-01-23 18.08.02.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1040.18.2047.1599 [GMT 1:00]
Eseguito da: c:\documents and settings\g & s\Desktop\ComboFix.exe
* Creato nuovo punto di ripristino
ATTENZIONE - QUESTO PC NON HA LA CONSOLE DI RIPRISTINO DI EMERGENZA INSTALLATA !!
.
ADS - WINDOWS: deleted 48 bytes in 1 streams. ((((((((((((((((((((((((( Files Creati Da 2008-12-23 al 2009-01-23 )))))))))))))))))))))))))))))))))))
.
2009-01-23 14:32 . 2008-04-13 19:13 221,184 --a------ c:\windows\system32\wmpns.dll
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> d--h----- c:\documents and settings\Administrator\Risorse di stampa
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> d--h----- c:\documents and settings\Administrator\Risorse di rete
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> d-------- c:\documents and settings\Administrator\Preferiti
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> d--h----- c:\documents and settings\Administrator\Modelli
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> dr------- c:\documents and settings\Administrator\Menu Avvio
2009-01-23 13:31 . 2009-01-23 18:09 <DIR> d--h----- c:\documents and settings\Administrator\Impostazioni locali
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> d-------- c:\documents and settings\Administrator\Documenti
2009-01-23 13:31 . 2009-01-22 12:38 <DIR> dr-h----- c:\documents and settings\Administrator\Dati applicazioni
2009-01-23 13:31 . 2009-01-23 13:38 <DIR> d-------- c:\documents and settings\Administrator
2009-01-22 23:27 . 2009-01-22 23:27 <DIR> d-------- c:\programmi\Malwarebytes' Anti-Malware
2009-01-22 23:27 . 2009-01-22 23:27 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\Malwarebytes
2009-01-22 23:27 . 2009-01-22 23:27 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Malwarebytes
2009-01-22 23:27 . 2009-01-14 16:11 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2009-01-22 23:27 . 2009-01-14 16:11 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2009-01-22 22:56 . 2009-01-22 23:26 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\Lavasoft
2009-01-22 22:39 . 2009-01-22 22:39 <DIR> d-------- c:\programmi\Trend Micro
2009-01-22 18:55 . 2004-03-09 00:00 1,081,616 --a------ c:\windows\system32\mscomctl.OCX
2009-01-22 18:55 . 2004-03-09 00:00 152,848 --a------ c:\windows\system32\comdlg32.OCX
2009-01-22 18:55 . 2004-03-09 00:00 124,688 --a------ c:\windows\system32\mswinsck.ocx
2009-01-22 18:34 . 2009-01-23 14:54 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\uTorrent
2009-01-22 18:19 . 2009-01-22 18:19 <DIR> d-------- c:\windows\Sun
2009-01-22 18:17 . 2009-01-23 18:01 <DIR> d-------- c:\programmi\eMule
2009-01-22 18:13 . 2009-01-22 18:13 361,600 --a------ c:\windows\system32\drivers\TCPIP.SYS.ORIGINAL
2009-01-22 18:13 . 2009-01-22 18:13 361,600 --a------ c:\windows\system32\dllcache\TCPIP.SYS
2009-01-22 18:11 . 2009-01-22 18:11 <DIR> d-------- c:\programmi\CyberLink
2009-01-22 18:11 . 2009-01-22 18:11 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\CyberLink
2009-01-22 18:11 . 2000-10-16 09:37 36,864 --------- c:\windows\system32\ctrldll.dll
2009-01-22 18:11 . 2000-10-16 09:37 32,768 --------- c:\windows\system32\rmctrl.exe
2009-01-22 18:09 . 2009-01-22 18:09 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\Apple Computer
2009-01-22 18:07 . 2009-01-22 18:07 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\vlc
2009-01-22 18:07 . 2009-01-22 18:07 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Apple Computer
2009-01-22 18:07 . 2009-01-22 18:08 54,156 --ah----- c:\windows\QTFont.qfn
2009-01-22 18:07 . 2009-01-22 18:08 1,409 --a------ c:\windows\QTFont.for
2009-01-22 18:05 . 2009-01-22 18:05 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\LightScribe
2009-01-22 18:04 . 2009-01-22 18:04 <DIR> d-------- c:\programmi\File comuni\LightScribe
2009-01-22 18:04 . 2009-01-22 18:04 <DIR> d-------- c:\documents and settings\g & s\Tracing
2009-01-22 18:03 . 2009-01-22 18:03 <DIR> d-------- c:\programmi\Windows Live SkyDrive
2009-01-22 18:03 . 2009-01-22 18:03 <DIR> d-------- c:\programmi\Microsoft
2009-01-22 18:02 . 2009-01-22 18:04 <DIR> d-------- c:\programmi\Windows Live
2009-01-22 18:02 . 2009-01-22 18:02 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\Ahead
2009-01-22 18:00 . 2009-01-22 18:04 <DIR> d-------- c:\programmi\File comuni\Ahead
2009-01-22 17:58 . 2009-01-22 17:58 <DIR> d-------- c:\programmi\File comuni\Windows Live
2009-01-22 17:55 . 2009-01-22 17:55 <DIR> d-------- c:\programmi\xp-AntiSpy
2009-01-22 17:53 . 2009-01-22 17:53 <DIR> d-------- c:\programmi\Java
2009-01-22 17:53 . 2009-01-22 17:53 410,984 --a------ c:\windows\system32\deploytk.dll
2009-01-22 17:53 . 2009-01-22 17:53 73,728 --a------ c:\windows\system32\javacpl.cpl
2009-01-22 17:49 . 2009-01-22 17:49 <DIR> d-------- c:\windows\system32\Adobe
2009-01-22 17:47 . 2009-01-22 17:48 <DIR> d-------- c:\programmi\File comuni\Adobe
2009-01-22 17:43 . 2009-01-22 17:43 <DIR> d-------- c:\programmi\r2 Studios
2009-01-22 17:43 . 2009-01-22 17:43 <DIR> d-------- c:\documents and settings\g & s\Dati applicazioni\r2 Studios
2009-01-22 17:43 . 2009-01-22 17:43 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\SlySoft
2009-01-22 17:43 . 2009-01-22 17:43 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\r2 Studios
2009-01-22 17:34 . 2009-01-22 17:34 685,816 --a------ c:\windows\system32\drivers\sptd.sys
2009-01-22 17:31 . 2009-01-22 17:35 <DIR> d-------- c:\programmi\File comuni\Acronis
2009-01-22 17:31 . 2009-01-22 17:31 971,584 --a------ c:\windows\system32\drivers\tdrpm147.sys
2009-01-22 17:31 . 2009-01-22 17:31 540,000 --a------ c:\windows\system32\drivers\timntr.sys
2009-01-22 17:31 . 2009-01-22 17:31 44,704 --a------ c:\windows\system32\drivers\tifsfilt.sys
2009-01-22 17:15 . 2000-10-20 18:28 765,952 -ra------ c:\windows\system\crlds3d.dll
2009-01-22 17:15 . 2001-11-23 12:08 712,704 -ra------ c:\windows\system32\Audio3D.dll
2009-01-22 17:15 . 2001-11-23 12:08 712,704 -ra------ c:\windows\system32\a3d.dll
2009-01-22 17:15 . 2002-09-30 20:24 417,999 -ra------ c:\windows\system32\drivers\cmuda.sys
2009-01-22 17:15 . 2002-08-12 19:18 380,928 -ra------ c:\windows\system\cmicnfg.cpl
2009-01-22 17:15 . 2002-09-30 17:02 49,152 -ra------ c:\windows\system32\cmuda.dll
2009-01-22 17:15 . 2002-08-01 13:54 28,672 -ra------ c:\windows\system32\udaprop.dll
2009-01-22 17:09 . 2009-01-22 22:54 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Spybot - Search & Destroy
2009-01-22 17:08 . 2003-03-18 20:12 1,047,552 --a------ c:\windows\system32\mfc71u.dll
2009-01-22 17:07 . 2009-01-22 17:07 0 --a------ c:\windows\nsreg.dat
2009-01-22 16:50 . 2009-01-22 16:50 <DIR> d-------- c:\programmi\File comuni\Stardock
2009-01-22 16:33 . 2009-01-22 16:33 <DIR> d-------- c:\windows\Motive
2009-01-22 16:32 . 2009-01-22 16:32 <DIR> d-------- c:\programmi\File comuni\Motive
2009-01-22 16:32 . 2009-01-22 16:32 <DIR> d-------- c:\programmi\Common Files
2009-01-22 16:32 . 2009-01-22 16:32 <DIR> d-------- c:\documents and settings\All Users\Dati applicazioni\Motive
2009-01-22 16:31 . 2009-01-22 16:32 <DIR> d-------- c:\programmi\Motive
2009-01-22 16:31 . 2009-01-22 18:12 <DIR> d--h----- c:\programmi\InstallShield Installation Information
2009-01-22 16:31 . 2009-01-22 16:33 <DIR> d-------- c:\programmi\Alice ti aiuta
2009-01-22 16:30 . 2009-01-22 16:30 <DIR> d-------- c:\programmi\Telecom Italia
2009-01-22 16:30 . 2009-01-22 16:30 <DIR> d-------- c:\programmi\File comuni\InstallShield
2009-01-22 16:24 . 2009-01-22 16:24 <DIR> d-------- c:\programmi\Sygate
2009-01-22 16:24 . 2009-01-22 16:24 <DIR> d-------- c:\programmi\File comuni\Wise Installation Wizard
2009-01-22 16:24 . 2005-09-27 12:15 83,592 --a------ c:\windows\system32\SSSensor.dll
2009-01-22 16:24 . 2005-09-27 11:43 61,008 --a------ c:\windows\system32\drivers\Teefer.sys
2009-01-22 16:24 . 2005-09-27 11:44 21,075 --a------ c:\windows\system32\drivers\wpsdrvnt.sys
2009-01-22 16:24 . 2005-09-27 12:16 14,944 --a------ c:\windows\system32\drivers\wg6n.sys
2009-01-22 16:24 . 2005-09-27 12:16 14,944 --a------ c:\windows\system32\drivers\wg5n.sys
2009-01-22 16:24 . 2005-09-27 12:16 14,944 --a------ c:\windows\system32\drivers\wg4n.sys
2009-01-22 16:24 . 2005-09-27 12:16 14,944 --a------ c:\windows\system32\drivers\wg3n.sys
2009-01-22 16:23 . 2009-01-22 16:23 <DIR> d-------- c:\programmi\Alwil Software
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-22 17:13 361,600 ----a-w c:\windows\system32\drivers\TCPIP.SYS
2009-01-22 15:31 155,995 ----a-w c:\windows\java\Packages\JLNZVRZN.ZIP
2009-01-22 11:03 549,888 ----a-w c:\windows\system32\winlogon.exe
2009-01-22 11:02 --------- d-----w c:\programmi\VistaExperience.org
2009-01-22 10:58 --------- d-----w c:\programmi\UWP Utilities
2009-01-22 10:57 --------- d-----w c:\programmi\System
2009-01-22 10:56 --------- d-----w c:\programmi\Windows Sidebar
2009-01-22 10:55 --------- d-----w c:\programmi\Alky for Applications
2009-01-22 10:50 --------- d-----w c:\programmi\Servizi in linea
2009-01-22 10:44 --------- d-----w c:\programmi\Windows Media Connect 2
2008-12-02 21:37 49,480 ----a-w c:\windows\system32\sirenacm.dll
2008-12-01 16:52 103,360 ----a-w c:\windows\system32\drivers\AnyDVD.sys
2008-11-24 14:32 57,344 ----a-w c:\windows\system32\ff_vfw.dll
2008-11-19 17:21 93,128 ------w c:\windows\system32\ElbyCDIO.dll
2008-11-12 23:28 54,784 ----a-w c:\windows\system32\dmutil.dll
2008-11-12 23:28 52,736 ----a-w c:\windows\system32\wzcsapi.dll
2008-11-12 23:28 49,664 ----a-w c:\windows\system32\cnbjmon.dll
2008-11-12 23:28 483,840 ----a-w c:\windows\system32\wzcsvc.dll
2008-11-12 23:28 47,616 ----a-w c:\windows\system32\iyuv_32.dll
2008-11-12 23:28 35,328 ----a-w c:\windows\system32\pid.dll
2008-11-12 23:28 23,552 ----a-w c:\windows\system32\wdmaud.drv
2008-11-12 23:28 20,992 ----a-w c:\windows\system32\hid.dll
2008-11-12 23:28 2,069,248 ----a-w c:\windows\system32\ntkrnlpa.exe
2008-11-12 23:28 16,896 ----a-w c:\windows\system32\msyuv.dll
2008-11-12 23:28 15,360 ----a-w c:\windows\system32\pjlmon.dll
2008-11-12 23:22 1,379,840 ----a-w c:\windows\system32\msxml6.dll
2008-11-12 23:22 1,106,944 ----a-w c:\windows\system32\msxml3.dll
2008-11-12 14:25 2,192,384 ----a-w c:\windows\system32\ntoskrnl.exe
2008-11-12 10:43 8,028,672 ----a-w c:\windows\system32\winntbbu.dll
2008-11-11 23:15 467,984 ----a-w c:\windows\system32\d3dx10_39.dll
2008-11-11 22:39 5,705,728 ----a-w c:\windows\system32\logonui.exe
2008-11-11 22:19 3,282,944 ----a-w c:\windows\system32\msgina.dll
2008-11-11 21:57 1,554,432 ----a-w c:\windows\explorer.exe
2008-11-07 20:29 8,704 ----a-w c:\windows\system32\wdfmgr.exe
2008-11-07 20:28 94,720 ----a-w c:\windows\system32\mshta.exe
2008-11-07 20:28 70,144 ----a-w c:\windows\system32\iesetup.dll
2008-11-07 20:28 58,880 ----a-w c:\windows\system32\sol.exe
2008-11-07 20:28 57,344 ----a-w c:\windows\system32\freecell.exe
2008-11-07 20:28 129,536 ----a-w c:\windows\system32\mshearts.exe
2008-11-07 20:28 108,032 ----a-w c:\windows\system32\winmine.exe
2008-11-07 20:28 1,565,184 ----a-w c:\windows\system32\spider.exe
2008-11-07 20:28 1,384,960 ----a-w c:\windows\system32\cards.dll
2008-11-07 20:26 96,256 ----a-w c:\windows\system32\drwtsn32.exe
2008-11-07 20:25 984,576 ----a-w c:\windows\system32\netplwiz.dll
2008-11-07 20:24 957,952 ----a-w c:\windows\system32\gpedit.dll
2008-11-07 20:23 80,896 ----a-w c:\windows\system32\dfrgres.dll
2008-11-07 20:13 16,384 ----a-w c:\windows\system32\lcid.exe
2008-10-31 23:50 219,648 ----a-w c:\windows\system32\uxtheme.dll
2008-10-31 23:50 140,800 ----a-w c:\windows\system32\sfc_os.dll
2008-10-31 23:37 96,792 ----a-w c:\windows\system32\basecsp.dll
2008-10-31 23:37 85,504 ----a-w c:\windows\system32\pintool.exe
2008-10-31 23:37 151,552 ----a-w c:\windows\system32\ifxcardm.dll
2008-10-31 23:37 133,120 ----a-w c:\windows\system32\axaltocm.dll
2008-10-31 23:36 253,952 ----a-w c:\windows\system32\es.dll
2008-10-31 23:35 74,240 ----a-w c:\windows\system32\mscms.dll
2008-10-31 23:35 247,296 ----a-w c:\windows\system32\mswsock.dll
2008-10-31 23:30 691,712 ----a-w c:\windows\system32\inetcomm.dll
2008-10-31 23:21 78,336 ----a-w c:\windows\system32\ieencode.dll
2008-10-31 23:21 48,128 ----a-w c:\windows\system32\mshtmler.dll
2008-10-31 23:21 40,960 ----a-w c:\windows\system32\licmgr10.dll
2008-10-31 23:21 36,352 ----a-w c:\windows\system32\imgutil.dll
2008-10-31 23:21 26,112 ----a-w c:\windows\system32\idndl.dll
2008-10-31 23:21 24,576 ----a-w c:\windows\system32\nlsdl.dll
2008-10-31 23:21 23,552 ----a-w c:\windows\system32\normaliz.dll
2008-10-31 23:21 17,408 ----a-w c:\windows\system32\corpol.dll
2008-10-31 23:21 156,160 ----a-w c:\windows\system32\msls31.dll
2008-10-31 23:21 1,571,840 ----a-w c:\windows\system32\sfcfiles.dll
2008-10-31 23:21 1,001,984 ----a-w c:\windows\system32\syssetup.dll
2008-10-28 22:35 684,032 ----a-w c:\windows\system32\divx.dll
2008-10-26 11:56 1,847,040 ------w c:\windows\system32\dllcache\win32k.sys
.
------- Sigcheck -------
2009-01-22 18:13 361600 1f39c7bdba4c5f3f01c4eabf7edbf4b3 c:\windows\system32\dllcache\TCPIP.SYS
2009-01-22 18:13 361600 1f39c7bdba4c5f3f01c4eabf7edbf4b3 c:\windows\system32\drivers\TCPIP.SYS
2009-01-22 12:03 549888 b93931ea1b7e9acca65c131b5fb5e4ca c:\windows\system32\winlogon.exe
2008-11-13 00:28 2069248 150ca250a7ce4b34d73324d26b7a05cd c:\windows\system32\ntkrnlpa.exe
2008-11-12 15:25 2192384 69a96bb49818d89eb282c441743fd6ac c:\windows\system32\ntoskrnl.exe
2008-11-11 22:57 1554432 34fcb51206354a071e17547dfeebab32 c:\windows\explorer.exe
2008-11-07 21:26 25088 91b6aac828f8bbe1796275424e44dfb0 c:\windows\system32\ctfmon.exe
2008-11-07 21:27 111616 6c01b44d2a5a66137e80e8537e761914 c:\windows\system32\wuauclt.exe
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-11-07 25088]
"AlcoholAutomount"="d:\programmi\Alcohol Soft\Alcohol 120\axcmd.exe" [2007-07-02 220544]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\programmi\File comuni\Ahead\Lib\NMBgMonitor.exe" [2006-09-13 139264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"SmcService"="c:\progra~1\Sygate\SPF\smc.exe" [2005-09-27 2635472]
"Motive SmartBridge"="c:\progra~1\ALICET~1\SMARTB~1\MotiveSB.exe" [2006-04-21 438359]
"Adobe Reader Speed Launcher"="d:\programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"SunJavaUpdateSched"="c:\programmi\Java\jre6\bin\jusched.exe" [2009-01-22 136600]
"NeroFilterCheck"="c:\programmi\File comuni\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"RemoteControl"="c:\windows\system32\rmctrl.exe" [2000-10-16 32768]
"StartupDelayer"="c:\programmi\r2 Studios\Startup Delayer\Startup Launcher.exe" [2008-11-29 73728]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-11-07 25088]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"_nltide_3"="advpack.dll" [2008-08-26 c:\windows\system32\advpack.dll]
c:\documents and settings\g & s\Menu Avvio\Programmi\Esecuzione automatica\
Stardock ObjectDock.lnk - d:\programmi\Stardock\ObjectDock\ObjectDock.exe [2009-01-22 3581680]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSMConfigurePrograms"= 1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSMConfigurePrograms"= 1 (0x1)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-01-22 111184]
R1 vcdrom;Virtual CD-ROM Device Driver;c:\programmi\System\CPL Bonus\vcdrom.sys [2009-01-22 8576]
R4 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-01-22 20560]
--- Altri Servizi/Drivers In Memoria ---
*NewlyCreated* - VCDROM
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"c:\programmi\File comuni\LightScribe\LSRunOnce.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D58F39FF-953E-4F45-898F-59F243B9A523}]
RUNDLL32 advpack.dll,LaunchINFSection Sidebar.inf,Register
.
- - - - CHIAVI ORFANE RIMOSSE - - - -
HKLM-Run-Cmaudio - cmicnfg.cpl
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.com/
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
FF - ProfilePath - c:\documents and settings\g & s\Dati applicazioni\Mozilla\Firefox\Profiles\z6szr43r.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - plugin: d:\programmi\Adobe\Reader 9.0\Reader\browser\nppdf32.dll
FF - plugin: d:\programmi\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: d:\programmi\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin2.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin3.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin4.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin5.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin6.dll
FF - plugin: d:\programmi\QuickTime\Plugins\npqtplugin7.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-01-23 18:09:07
Windows 5.1.2600 Service Pack 3 NTFS
scansione processi nascosti ...
scansione entrate autostart nascoste ...
Scansione files nascosti ...
Scansione completata con successo
Files nascosti: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\vsdatant]
"ImagePath"=""
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
- - - - - - - > 'winlogon.exe'(728)
c:\windows\system32\sfc_os.dll
c:\windows\system32\cscui.dll
- - - - - - - > 'lsass.exe'(784)
c:\windows\system32\scecli.dll
.
Ora fine scansione: 2009-01-23 18.10.17
ComboFix-quarantined-files.txt 2009-01-23 17:10:15
Pre-Run: 6.889.615.360 byte disponibili
Post-Run: 6,883,708,928 byte disponibili
271