Ho fatto quanto mi hai sugerito, ecco il log di combofix. Ancora grazie. Devo fare altro ?
ComboFix 09-02-04.04 - Fili 2009-02-05 14.10.03.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1040.18.1535.1167 [GMT 1:00]
Eseguito da: f:\documents and settings\Fili\Desktop\ComboFix.exe
AV: avast! antivirus 4.8.1296 [VPS 090204-0] *On-access scanning disabled* (Updated)
* Creato nuovo punto di ripristino
ATTENZIONE - QUESTO PC NON HA LA CONSOLE DI RIPRISTINO DI EMERGENZA INSTALLATA !!
.
((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.
f:\documents and settings\All Users\Desktop\webmediaplayer.lnk
f:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer
f:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Condizioni generali.url
f:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Disinstalla.lnk
f:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Riservatezza.url
f:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\WebMediaPlayer.lnk
f:\documents and settings\All Users\Menu Avvio\Programmi\WebMediaPlayer\Website.url
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\Config.xml
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\db\Aliases.dbs
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\db\Sites.dbs
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\dwld\WhiteList.xip
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\report\aggr_storage.xml
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\report\send_storage.xml
f:\documents and settings\Fili\Dati applicazioni\ShoppingReport\cs\res1\WhiteList.dbs
f:\documents and settings\Fili\Impostazioni locali\Dati applicazioni\earhhdt.dat
f:\documents and settings\Fili\Impostazioni locali\Dati applicazioni\earhhdt_nav.dat
f:\documents and settings\Fili\Impostazioni locali\Dati applicazioni\earhhdt_navps.dat
f:\programmi\ShoppingReport
f:\programmi\webmediaplayer
f:\programmi\webmediaplayer\resources\wmp_translation_file.xml
f:\programmi\webmediaplayer\skins\classic.skn
f:\programmi\webmediaplayer\sqlite3.dll
f:\programmi\webmediaplayer\uninst.exe
f:\programmi\webmediaplayer\WebMediaPlayer.exe
f:\windows\system32\AVSredirect.dll
f:\windows\system32\axtovlmmj.exe
f:\windows\system32\xy.exe
.
((((((((((((((((((((((((( Files Creati Da 2009-01-05 al 2009-02-05 )))))))))))))))))))))))))))))))))))
.
2009-02-04 22:28 . 2009-02-04 22:28 <DIR> d-------- f:\programmi\Trend Micro
2009-02-04 12:27 . 2009-02-04 12:27 <DIR> d-------- f:\programmi\Windows Defender
2009-02-04 10:53 . 2009-02-04 10:53 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\Printer Info Cache
2009-02-04 10:37 . 2009-02-04 11:48 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\U3
2009-02-04 09:32 . 2009-02-04 09:32 <DIR> d-------- f:\programmi\html2pop3
2009-02-03 15:55 . 2009-02-03 17:34 <DIR> d-------- f:\programmi\WebSite X5 Evolution
2009-02-03 00:21 . 1997-07-19 17:00 604,432 --a------ f:\windows\system32\COMCTL32.OCX
2009-02-03 00:21 . 1998-03-13 11:06 389,120 --a------ f:\windows\system32\Atx32.ocx
2009-02-03 00:21 . 2005-08-23 14:54 388,608 --a------ f:\windows\system32\3DABM8U.OCX
2009-02-03 00:21 . 1997-03-21 10:51 346,112 --a------ f:\windows\system32\PPRO100.DLL
2009-02-03 00:21 . 1997-03-21 15:05 154,528 --a------ f:\windows\system32\PPRO100.OCX
2009-02-03 00:21 . 1997-10-24 16:19 78,336 --a------ f:\windows\system32\ATX32PIC.DLL
2009-02-03 00:21 . 1997-11-11 16:10 28,160 --a------ f:\windows\system32\ATX32OLE.DLL
2009-02-03 00:18 . 1998-03-04 21:32 237,568 --a------ f:\windows\system32\CompPl32.dll
2009-02-03 00:18 . 2008-03-20 16:25 185,856 --a------ f:\windows\system32\iwpsetup.exe
2009-02-03 00:18 . 1997-11-05 20:03 90,624 --a------ f:\windows\system32\CPWCTL32.OCX
2009-02-03 00:18 . 1997-01-16 00:00 29,696 --a------ f:\windows\system32\VB5STKIT.DLL
2009-02-03 00:18 . 1997-01-16 13:42 6,114 --a------ f:\windows\system32\SHELLLNK.TLB
2009-02-01 17:27 . 2009-02-01 17:28 <DIR> d-------- f:\windows\system32\Adobe
2009-02-01 16:39 . 2002-08-30 18:47 929,844 --a------ f:\windows\system32\Mfc42d.dll
2009-02-01 16:39 . 2000-07-15 15:00 434,252 --a------ f:\windows\system32\Msvcrtd.dll
2009-02-01 16:32 . 2009-02-02 08:54 <DIR> d-------- f:\windows\Downloaded Installations
2009-02-01 09:30 . 2008-03-21 13:57 14,640 --------- f:\windows\system32\spmsgXP_2k3.dll
2009-02-01 09:30 . 2009-02-01 09:30 0 --ah----- f:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
2009-02-01 09:30 . 2009-02-01 09:30 0 --ah----- f:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2009-02-01 09:28 . 2009-02-01 09:38 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\Nokia
2009-02-01 09:27 . 2009-02-01 09:27 <DIR> d-------- f:\programmi\File comuni\PCSuite
2009-02-01 09:27 . 2009-02-01 09:27 <DIR> d-------- f:\programmi\File comuni\Nokia
2009-02-01 09:26 . 2009-02-01 09:26 <DIR> d-------- f:\programmi\PC Connectivity Solution
2009-02-01 09:26 . 2008-09-15 07:29 1,112,288 --a------ f:\windows\system32\wdfcoinstaller01007.dll
2009-02-01 09:26 . 2008-09-15 07:56 659,968 --a------ f:\windows\system32\nmwcdcocls.dll
2009-02-01 09:26 . 2008-09-15 07:56 22,016 --a------ f:\windows\system32\drivers\ccdcmbo.sys
2009-02-01 09:26 . 2008-08-26 09:26 18,816 --a------ f:\windows\system32\drivers\pccsmcfd.sys
2009-02-01 09:26 . 2008-09-15 07:56 17,664 --a------ f:\windows\system32\drivers\ccdcmb.sys
2009-02-01 09:26 . 2008-09-15 07:56 8,064 --a------ f:\windows\system32\drivers\usbser_lowerflt.sys
2009-02-01 09:25 . 2009-02-01 09:27 <DIR> d-------- f:\programmi\Nokia
2009-02-01 09:23 . 2009-02-01 09:23 <DIR> d-------- f:\documents and settings\All Users\Dati applicazioni\Installations
2009-01-31 21:33 . 2009-01-31 21:33 <DIR> d-------- f:\programmi\DIFX
2009-01-31 21:31 . 2009-02-01 09:27 <DIR> d----c--- f:\windows\system32\DRVSTORE
2009-01-31 21:31 . 2009-02-01 09:30 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\PC Suite
2009-01-31 21:31 . 2009-02-01 09:30 <DIR> d-------- f:\documents and settings\All Users\Dati applicazioni\PC Suite
2009-01-31 21:30 . 2009-02-01 09:12 <DIR> d-------- f:\documents and settings\All Users\Dati applicazioni\Downloaded Installations
2009-01-31 21:28 . 2008-04-13 19:45 26,112 --a------ f:\windows\system32\drivers\usbser.sys
2009-01-31 21:28 . 2008-04-13 19:45 26,112 --a--c--- f:\windows\system32\dllcache\usbser.sys
2009-01-31 21:27 . 2009-01-31 21:27 0 --ah----- f:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2009-01-31 21:27 . 2009-01-31 21:27 0 --ah----- f:\windows\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2009-01-26 15:52 . 2009-01-26 15:52 <DIR> d-------- f:\programmi\Windows Media Connect 2
2009-01-26 15:49 . 2009-01-26 15:49 <DIR> d-------- f:\windows\system32\LogFiles
2009-01-26 15:49 . 2009-02-01 09:31 <DIR> d-------- f:\windows\system32\drivers\UMDF
2009-01-26 09:12 . 2009-01-26 09:12 424 --a------ f:\windows\ODBC.INI
2009-01-26 09:11 . 2007-04-09 13:23 28,040 --a------ f:\windows\system32\mdimon.dll
2009-01-26 09:10 . 2009-01-26 09:10 <DIR> d-------- f:\programmi\Microsoft.NET
2009-01-26 09:08 . 2009-01-26 09:10 <DIR> d-------- f:\windows\SHELLNEW
2009-01-25 17:36 . 2009-01-25 17:36 <DIR> d-------- f:\programmi\eRightSoft
2009-01-25 10:23 . 2009-01-25 10:23 <DIR> d-------- f:\windows\system32\IOSUBSYS
2009-01-25 10:23 . 2008-07-31 23:17 9,200 --------- f:\windows\system32\drivers\cdralw2k.sys
2009-01-25 10:23 . 2008-07-31 23:17 9,072 --------- f:\windows\system32\drivers\cdr4_xp.sys
2009-01-23 21:41 . 2009-01-23 21:42 <DIR> d-------- f:\programmi\File comuni\Adobe
2009-01-23 21:39 . 2009-01-24 07:57 <DIR> d-------- f:\documents and settings\All Users\Dati applicazioni\NOS
2009-01-22 07:02 . 2009-01-22 07:02 <DIR> d-------- f:\windows\system32\3Planesoft
2009-01-22 07:02 . 2009-01-22 07:02 <DIR> d-------- f:\programmi\The Lost Watch 3D Screensaver
2009-01-22 07:02 . 2009-01-22 07:02 <DIR> d-------- f:\programmi\3Planesoft Screensaver Manager
2009-01-21 16:36 . 2009-01-21 16:36 <DIR> d-------- f:\documents and settings\All Users\Dati applicazioni\wmp
2009-01-21 15:35 . 2009-01-25 01:10 <DIR> d-------- f:\windows\system32\NtmsData
2009-01-20 21:29 . 2002-09-10 13:00 10,129,408 --a--c--- f:\windows\system32\dllcache\hwxkor.dll
2009-01-20 21:28 . 2009-01-20 21:28 25 --a------ f:\windows\cdplayer.ini
2009-01-20 21:26 . 2001-08-30 23:07 8,704 --a------ f:\windows\system32\kbdjpn.dll
2009-01-20 21:26 . 2001-08-30 23:07 8,704 --a--c--- f:\windows\system32\dllcache\kbdjpn.dll
2009-01-20 21:26 . 2001-08-30 23:07 8,192 --a------ f:\windows\system32\kbdkor.dll
2009-01-20 21:26 . 2001-08-30 23:07 8,192 --a--c--- f:\windows\system32\dllcache\kbdkor.dll
2009-01-20 21:26 . 2008-04-14 03:12 6,144 --a------ f:\windows\system32\kbd106.dll
2009-01-20 21:26 . 2001-08-17 22:55 6,144 --a------ f:\windows\system32\kbd101c.dll
2009-01-20 21:26 . 2001-08-17 22:55 6,144 --a------ f:\windows\system32\kbd101b.dll
2009-01-20 21:26 . 2008-04-14 03:12 6,144 --a--c--- f:\windows\system32\dllcache\kbd106.dll
2009-01-20 21:26 . 2001-08-17 22:55 6,144 --a--c--- f:\windows\system32\dllcache\kbd101c.dll
2009-01-20 21:26 . 2001-08-17 22:55 6,144 --a--c--- f:\windows\system32\dllcache\kbd101b.dll
2009-01-20 21:26 . 2001-08-17 22:55 5,632 --a------ f:\windows\system32\kbd103.dll
2009-01-20 21:26 . 2001-08-17 22:55 5,632 --a--c--- f:\windows\system32\dllcache\kbd103.dll
2009-01-20 12:02 . 2009-01-20 12:02 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\Canon
2009-01-20 11:50 . 2009-01-20 11:50 <DIR> d-------- f:\programmi\File comuni\xing shared
2009-01-20 11:49 . 2009-01-20 11:49 <DIR> d-------- f:\programmi\Real
2009-01-20 00:36 . 2009-01-20 11:50 <DIR> d-------- f:\programmi\File comuni\Real
2009-01-19 17:01 . 2009-01-19 17:01 164 --a------ f:\windows\wininit.ini
2009-01-19 16:57 . 2009-01-19 16:57 3,882 --a------ f:\windows\mozver.dat
2009-01-19 16:09 . 2009-02-01 17:28 <DIR> d-------- f:\programmi\Google
2009-01-19 09:51 . 2008-10-16 21:04 6,066,176 -----c--- f:\windows\system32\dllcache\ieframe.dll
2009-01-19 09:51 . 2007-04-17 10:32 2,455,488 -----c--- f:\windows\system32\dllcache\ieapfltr.dat
2009-01-19 09:51 . 2007-03-08 06:11 1,032,192 -----c--- f:\windows\system32\dllcache\ieframe.dll.mui
2009-01-19 09:51 . 2008-10-16 21:04 459,264 -----c--- f:\windows\system32\dllcache\msfeeds.dll
2009-01-19 09:51 . 2008-10-16 21:04 383,488 -----c--- f:\windows\system32\dllcache\ieapfltr.dll
2009-01-19 09:51 . 2008-10-16 21:04 267,776 -----c--- f:\windows\system32\dllcache\iertutil.dll
2009-01-19 09:51 . 2008-10-16 21:04 63,488 -----c--- f:\windows\system32\dllcache\icardie.dll
2009-01-19 09:51 . 2008-10-16 21:04 52,224 -----c--- f:\windows\system32\dllcache\msfeedsbs.dll
2009-01-19 09:51 . 2008-10-16 14:11 13,824 -----c--- f:\windows\system32\dllcache\ieudinit.exe
2009-01-19 09:31 . 2009-01-19 09:31 13,646 --a------ f:\windows\system32\wpa.bak
2009-01-19 08:37 . 2009-01-19 08:37 <DIR> d-------- f:\windows\system32\it
2009-01-19 08:37 . 2009-01-19 08:37 <DIR> d-------- f:\windows\l2schemas
2009-01-19 08:08 . 2009-01-19 11:13 <DIR> d-------- f:\windows\system32\it-it
2009-01-18 13:07 . 1998-01-23 12:20 305,152 --a------ f:\windows\IsUn0410.exe
2009-01-18 11:56 . 2008-04-14 03:12 13,463,552 --a--c--- f:\windows\system32\dllcache\hwxjpn.dll
2009-01-18 11:55 . 2006-10-18 21:47 991,744 -----c--- f:\windows\system32\dllcache\drmv2clt.dll
2009-01-17 14:10 . 2009-02-03 21:41 <DIR> d-------- f:\programmi\eMule
2009-01-17 01:51 . 2009-01-25 17:37 <DIR> d-------- F:\Program Files
2009-01-17 01:51 . 1996-07-18 14:06 297,472 --a------ f:\windows\uninst.exe
2009-01-17 01:50 . 2009-01-17 01:50 <DIR> d-------- f:\documents and settings\Fili\WINDOWS
2009-01-17 00:06 . 2009-01-17 00:06 <DIR> d-------- f:\programmi\Microsoft CAPICOM 2.1.0.2
2009-01-16 18:54 . 2008-12-13 07:36 3,593,216 --a--c--- f:\windows\system32\dllcache\mshtml.dll
2009-01-16 18:54 . 2008-08-14 14:22 2,192,896 -----c--- f:\windows\system32\dllcache\ntoskrnl.exe
2009-01-16 18:54 . 2008-08-14 14:22 2,148,864 -----c--- f:\windows\system32\dllcache\ntkrnlmp.exe
2009-01-16 18:54 . 2008-08-14 14:22 2,069,760 -----c--- f:\windows\system32\dllcache\ntkrnlpa.exe
2009-01-16 18:54 . 2008-08-14 14:22 2,027,520 -----c--- f:\windows\system32\dllcache\ntkrpamp.exe
2009-01-16 18:54 . 2008-09-15 16:24 1,846,400 -----c--- f:\windows\system32\dllcache\win32k.sys
2009-01-16 18:53 . 2008-04-11 20:04 691,712 -----c--- f:\windows\system32\dllcache\inetcomm.dll
2009-01-16 18:53 . 2008-10-24 12:21 455,296 -----c--- f:\windows\system32\dllcache\mrxsmb.sys
2009-01-16 18:53 . 2008-10-15 17:36 337,408 -----c--- f:\windows\system32\dllcache\netapi32.dll
2009-01-16 18:53 . 2008-12-11 11:57 333,952 -----c--- f:\windows\system32\dllcache\srv.sys
2009-01-16 18:53 . 2008-05-01 15:34 331,776 -----c--- f:\windows\system32\dllcache\msadce.dll
2009-01-16 18:53 . 2008-10-03 11:02 247,326 -----c--- f:\windows\system32\dllcache\strmdll.dll
2009-01-16 18:53 . 2008-05-08 15:02 203,136 -----c--- f:\windows\system32\dllcache\rmcast.sys
2009-01-16 17:26 . 2009-01-16 17:26 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\CD-LabelPrint
2009-01-16 14:05 . 2009-02-05 14:08 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\OpenOffice.org2
2009-01-16 01:09 . 2009-01-16 01:09 <DIR> d-------- f:\documents and settings\Fili\Dati applicazioni\Ahead
2009-01-16 01:02 . 2009-01-16 01:03 <DIR> d-------- f:\programmi\OpenOffice.org 2.4
2009-01-16 01:01 . 2009-01-16 01:01 <DIR> d-------- f:\programmi\File comuni\Java
2009-01-16 00:52 . 2009-02-04 11:22 116 --a------ f:\windows\NeroDigital.ini
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-01-15 15:52 --------- d-----w f:\programmi\Alwil Software
2009-01-15 14:33 --------- d-----w f:\programmi\microsoft frontpage
2009-01-15 14:32 558,142 ----a-w f:\windows\java\Packages\CN3TVZPF.ZIP
2009-01-15 14:32 155,995 ----a-w f:\windows\java\Packages\CSHB3D3B.ZIP
2009-01-15 14:27 --------- d-----w f:\programmi\Servizi in linea
2009-01-05 22:33 3,751,995 ----a-w f:\windows\system32\GPhotos.scr
2008-12-11 10:57 333,952 ----a-w f:\windows\system32\drivers\srv.sys
2008-12-02 21:37 49,480 ----a-w f:\windows\system32\sirenacm.dll
2006-05-03 10:06 163,328 --sh--r f:\windows\system32\flvDX.dll
2007-02-21 11:47 31,232 --sh--r f:\windows\system32\msfDX.dll
2008-03-16 13:30 216,064 --sh--r f:\windows\system32\nbDX.dll
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="f:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"PC Suite Tray"="f:\programmi\Nokia\Nokia PC Suite 7\PCSuite.exe" [2008-12-03 1205760]
"swg"="f:\programmi\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2009-02-01 171448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="f:\windows\System32\NvCpl.dll" [2003-10-06 5058560]
"avast!"="f:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"SunJavaUpdateSched"="f:\programmi\Java\jre6\bin\jusched.exe" [2009-01-15 136600]
"DHTray"="f:\windows\system32\DHTray.exe" [2007-06-19 331776]
"A0380mon"="f:\windows\system32\A0380mon.exe" [2007-03-22 16384]
"CanonSolutionMenu"="f:\programmi\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="f:\programmi\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"SSBkgdUpdate"="f:\programmi\File comuni\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"OpwareSE4"="f:\programmi\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
"NeroFilterCheck"="f:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"Touch Manager"="f:\programmi\Netropa\Touch Manager\TouchMgr.exe" [2000-08-08 618496]
"TkBellExe"="f:\programmi\File comuni\Real\Update_OB\realsched.exe" [2009-01-20 185896]
"Adobe Reader Speed Launcher"="f:\programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"nwiz"="nwiz.exe" [2003-10-06 f:\windows\system32\nwiz.exe]
"C-Media Mixer"="Mixer.exe" [2002-10-15 f:\windows\mixer.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="f:\windows\System32\CTFMON.EXE" [2008-04-14 15360]
f:\documents and settings\Fili\Menu Avvio\Programmi\Esecuzione automatica\
html2pop3.lnk - f:\programmi\html2pop3\html2pop3.bat [2009-02-04 154]
OpenOffice.org 2.4.lnk - f:\programmi\OpenOffice.org 2.4\program\quickstart.exe [2008-01-21 393216]
f:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
WinZip Quick Pick.lnk - f:\programmi\WinZip\WZQKPICK.EXE [2009-01-15 118784]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.I420"= i420vfw.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"f:\\Programmi\\Windows Live\\Messenger\\wlcsdk.exe"=
"f:\\Programmi\\eMule\\emule.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"f:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
"f:\\Programmi\\CrossLoop\\CrossLoopConnect.exe"=
"d:\\incomedia\\WebSite.exe"=
R1 aswSP;avast! Self Protection;f:\windows\system32\drivers\aswSP.sys [2009-01-15 111184]
R1 msikbd2k;Multimedia Keyboard Filter Driver;f:\windows\system32\drivers\Msikbd2k.sys [2009-01-15 6725]
R2 aswFsBlk;aswFsBlk;f:\windows\system32\drivers\aswFsBlk.sys [2009-01-15 20560]
R2 WinDefend;Windows Defender;f:\programmi\Windows Defender\MsMpEng.exe [2006-11-03 13592]
R3 A0380VID;USB2.0 PC Camera;f:\windows\system32\drivers\A0380Vid.sys [2009-01-15 3927808]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
\Shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{74005e53-ed47-11dd-adc5-0019666238ac}]
\Shell\Auto\command - E:\UFO.exe
\Shell\AutoRun\command - f:\windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL UFO.exe
.
Contenuto della cartella 'Scheduled Tasks'
2009-02-05 f:\windows\Tasks\MP Scheduled Scan.job
- f:\programmi\Windows Defender\MpCmdRun.exe [2006-11-03 19:20]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
IE: Add to Google Photos Screensa&ver - f:\windows\system32\GPhotos.scr/200
IE: E&sporta in Microsoft Excel - c:\micros~1\OFFICE11\EXCEL.EXE/3000
DPF: DirectAnimation Java Classes - file://f:\windows\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://f:\windows\Java\classes\xmldso.cab
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-02-05 14:12:27
Windows 5.1.2600 Service Pack 3 NTFS
scansione processi nascosti ...
scansione entrate autostart nascoste ...
Scansione files nascosti ...
Scansione completata con successo
Files nascosti: 0
**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\h–€|ÿÿÿÿ¤•€|ù•9~*]
"0140110900063D11C8EF10054038389C"="F?\\WINDOWS\\system32\\FM20ENU.DLL"
.
Ora fine scansione: 2009-02-05 14.15.34
ComboFix-quarantined-files.txt 2009-02-05 13:14:32
Pre-Run: 11.057.004.544 byte disponibili
Post-Run: 11,044,147,200 byte disponibili
267 --- E O F --- 2009-01-28 08:22:54