ciao. le porte le ho aperte io. sono collegata ad un server.
non riesco a trovare i file che mi hai indicato.ho seguito il percorso ma non ci sono.
ecco il rapporto di combofix
ComboFix 12-11-09.01 - Simona 12/11/2012 9.20.30.4.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.2038.1298 [GMT 1:00]
Eseguito da: c:\documents and settings\Simona\Desktop\e-invoice\ComboFix.exe
Opzioni usate :: c:\documents and settings\Simona\Desktop\CFScript.txt
AV: Symantec Endpoint Protection *Enabled/Updated* {FB06448E-52B8-493A-90F3-E43226D3305C}
* Creato nuovo punto di ripristino
.
ATTENZIONE - QUESTO PC NON HA LA CONSOLE DI RIPRISTINO DI EMERGENZA INSTALLATA !!
.
FILE ::
"c:\programmi\Spybot - Search & Destroy\TeaTimer.exe"
.
.
((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Simona\Dati applicazioni\EmoticoonsToolbar
c:\documents and settings\Simona\Dati applicazioni\EmoticoonsToolbar\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\7z.dll
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\AppLib.Zip.dll
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\Pos.exe
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\Pos.InstallLog
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\Pos.InstallState
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PosService\settings\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PowerOffer
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PowerOffer\InstallHelper.exe
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PowerOffer\System.Data.SQLite.dll
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\PowerOffer\Wait.exe
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\7z.dll
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\AppLib.Zip.dll
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\ServiceUpd.exe
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\ServiceUpd.InstallLog
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\ServiceUpd.InstallState
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\ServUpdater\settings\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\SoftwareUpdater
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\SoftwareUpdater\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\SoftwareUpdater\settings\settings.ini
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\SoftwareUpdater\SoftwareUpdService.exe
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\SoftwareUpdater\SoftwareUpdService.InstallLog
c:\documents and settings\Simona\Impostazioni locali\Dati applicazioni\SoftwareUpdater\SoftwareUpdService.InstallState
c:\programmi\Spybot - Search & Destroy\TeaTimer.exe
.
.
((((((((((((((((((((((((((((((((((((((( Driver/Servizi )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_POWEROFFER_SERVICE
-------\Legacy_SERVUPDATER
-------\Legacy_SOFTWAREUPD
-------\Service_PowerOffer Service
-------\Service_ServUpdater
-------\Service_SoftwareUpd
.
.
((((((((((((((((((((((((( Files Creati Da 2012-10-12 al 2012-11-12 )))))))))))))))))))))))))))))))))))
.
.
2012-10-26 07:01 . 2012-10-26 07:01 -------- d-----w- c:\documents and settings\LocalService\Menu Avvio
2012-10-25 09:58 . 2012-10-25 10:01 -------- d-----w- c:\programmi\MyPcCleaner
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-11-06 08:35 . 2011-11-17 11:35 83912 ----a-w- c:\windows\system32\LMIRfsClientNP.dll
2012-11-06 08:35 . 2011-11-17 11:35 52648 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\LMIproc.dll
2012-11-06 08:35 . 2011-11-17 11:35 31144 ----a-w- c:\windows\system32\LMIport.dll
2012-11-06 08:35 . 2011-11-17 11:34 92072 ----a-w- c:\windows\system32\LMIinit.dll
2012-10-09 17:55 . 2012-04-12 08:06 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-10-09 17:55 . 2011-08-01 07:03 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-24 14:32 . 2012-06-27 07:30 477168 ----a-w- c:\windows\system32\npdeployJava1.dll
2012-09-24 14:32 . 2010-07-28 07:01 473072 ----a-w- c:\windows\system32\deployJava1.dll
2012-09-24 12:51 . 2012-06-27 07:30 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-08-24 13:53 . 2004-08-19 05:00 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-08-23 06:27 . 2007-02-28 16:06 2152448 ------w- c:\windows\system32\ntoskrnl.exe
2012-08-23 06:27 . 2007-02-28 16:06 2031104 ------w- c:\windows\system32\ntkrnlpa.exe
2012-10-24 17:50 . 2012-11-09 13:53 261600 ----a-w- c:\programmi\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LaunchApp"="Alaunch" [X]
"RemoteControl"="c:\programmi\CyberLink\PowerDVD\PDVDServ.exe" [2007-01-08 68640]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-19 208952]
"IMEKRMIG6.1"="c:\windows\ime\imkr6_1\IMEKRMIG.EXE" [2004-08-19 44032]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-19 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-19 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-19 455168]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-28 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-28 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-28 137752]
"RTHDCPL"="RTHDCPL.EXE" [2008-01-28 16859648]
"AzMixerSel"="c:\programmi\Realtek\Audio\InstallShield\AzMixerSel.exe" [2006-07-16 53248]
"LogMeIn GUI"="c:\programmi\LogMeIn\x86\LogMeInSystray.exe" [2011-09-16 63048]
"Adobe ARM"="c:\programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
"SunJavaUpdateSched"="c:\programmi\File comuni\Java\Java Update\jusched.exe" [2012-09-17 254896]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
.
c:\documents and settings\Simona\Menu Avvio\Programmi\Esecuzione automatica\
Atlante.lnk - c:\programmi\Automa\Atlante300\exe\Atlante.exe [2009-9-2 3211264]
conf_Y.lnk - c:\sysintc\Simona\conf_Y\bin\swmenu.exe [2011-4-8 200704]
.
c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
SCMon.lnk - c:\windows\system32\SISCMon.exe [2009-9-2 184320]
smart security registration status.lnk - c:\programmi\charismathics\smart security interface 4.0\CSPregtool.exe [2007-2-26 3686400]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
2012-11-06 08:35 92072 ----a-w- c:\windows\system32\LMIinit.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2012-07-27 20:51 919008 ----a-w- c:\programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eRecoveryService]
2007-07-11 13:07 421888 ----a-w- c:\acer\Empowering Technology\eRecovery\eRAgent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
2007-10-14 19:17 49152 ----a-w- c:\programmi\HP\HP Software Update\hpwuSchd2.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hp Update 3300C]
2002-01-31 08:38 32768 ----a-w- c:\sj650\hpupdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]
2007-01-08 21:17 52256 ----a-w- c:\programmi\CyberLink\PowerDVD\Language\Language.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToolBoxFX]
2008-08-01 07:47 53248 ----a-w- c:\programmi\HP\ToolboxFX\bin\HPTLBXFX.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\CyberLink\\PowerDVD\\PowerDVD.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Programmi\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Programmi\\HP\\HP Color LaserJet CM1312 MFP Series\\hppfsu_cm1312.exe"=
"c:\\Programmi\\HP\\HP Color LaserJet CM1312 MFP Series\\hppfaxnc2.exe"=
"c:\\Programmi\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Programmi\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"c:\\teamportal\\programs\\core\\apache\\bin\\httpd.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Programmi\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Programmi\\Symantec\\Symantec Endpoint Protection\\12.1.671.4971.105\\Bin\\Smc.exe"=
"c:\\Programmi\\Symantec\\Symantec Endpoint Protection\\12.1.671.4971.105\\Bin\\snac.exe"=
"c:\\WINDOWS\\system32\\javaw.exe"=
"c:\\Programmi\\Skype\\Phone\\Skype.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"9999:UDP"= 9999:UDP:LANScope UDP Port
"2804:TCP"= 2804:TCP:LANScope TCP Port
.
R0 SymDS;Symantec Data Store;c:\windows\system32\drivers\SEP\0C01029F\136B.105\x86\SymDS.sys [18/06/2011 8.26.54 340088]
R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\SEP\0C01029F\136B.105\x86\SymEFA.sys [18/06/2011 8.26.54 756856]
R1 BHDrvx86;BHDrvx86;c:\documents and settings\All Users\Dati applicazioni\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Data\Definitions\BASHDefs\20121029.013\BHDrvx86.sys [06/11/2012 15.57.42 995488]
R1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\SEP\0C01029F\136B.105\x86\Ironx86.sys [18/06/2011 8.26.54 136312]
R2 LMIGuardianSvc;LMIGuardianSvc;c:\programmi\LogMeIn\x86\LMIGuardianSvc.exe [26/09/2011 18.15.36 374704]
R2 LMIInfo;LogMeIn Kernel Information Provider;c:\programmi\LogMeIn\x86\rainfo.sys [16/09/2011 15.10.50 12856]
R2 SepMasterService;Symantec Endpoint Protection;c:\programmi\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\ccSvcHst.exe [25/07/2012 8.51.11 137224]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\programmi\File comuni\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [13/08/2012 3.06.22 106656]
R3 euccicr;CryptoIdentity CCID Virtual Reader;c:\windows\system32\drivers\euccicr-x86.sys [02/09/2009 11.42.48 43776]
R3 IDSxpx86;IDSxpx86;c:\documents and settings\All Users\Dati applicazioni\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Data\Definitions\IPSDefs\20121107.001\IDSXpx86.sys [08/11/2012 6.01.12 373728]
S2 eLock2BurnerLockDriver;eLock2BurnerLockDriver;\??\c:\windows\system32\eLock2BurnerLockDriver.sys --> c:\windows\system32\eLock2BurnerLockDriver.sys [?]
S2 eLock2FSCTLDriver;eLock2FSCTLDriver;\??\c:\windows\system32\eLock2FSCTLDriver.sys --> c:\windows\system32\eLock2FSCTLDriver.sys [?]
S2 netlimiter;netlimiter;\??\c:\windows\system32\drivers\netlimiter.sys --> c:\windows\system32\drivers\netlimiter.sys [?]
S2 SkypeUpdate;Skype Updater;c:\programmi\Skype\Updater\Updater.exe [03/07/2012 12.52.02 160944]
S3 euccic;CryptoIdentity CCID;c:\windows\system32\drivers\euccic-x86.sys [02/09/2009 11.42.47 57088]
S3 SCR3xx USB Smart Card Reader;SCR3xx USB Smart Card Reader;c:\windows\system32\drivers\SCR3XX2K.sys [02/09/2009 19.11.17 47488]
S3 STC2DFU;STCII DFU Adapter;c:\windows\system32\drivers\Stc2Dfu.sys [24/10/2004 23.04.00 7796]
S3 SyDvCtrl;SyDvCtrl;c:\programmi\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\SyDvCtrl32.sys [18/06/2011 8.26.52 23984]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
.
Contenuto della cartella 'Scheduled Tasks'
.
2012-11-09 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-12 17:55]
.
2012-11-08 c:\windows\Tasks\OGADaily.job
- c:\windows\system32\OGAVerify.exe [2008-12-31 15:04]
.
2012-11-12 c:\windows\Tasks\OGALogon.job
- c:\windows\system32\OGAVerify.exe [2008-12-31 15:04]
.
.
------- Scansione supplementare -------
.
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
uStart Page = hxxp://www.google.it/
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://it.rd.yahoo.com/customize/ycomp/defaults/su/*http://it.yahoo.com
Trusted Zone: unicreditcorporate.it\online
Trusted Zone: unicreditcorporate.it\unigeb
TCP: Interfaces\{85BBA8ED-612C-4F85-AA8E-43B3444197AE}: NameServer = 151.99.125.1,151.99.0.100
DPF: Microsoft XML Parser for Java - file:///C:/WINDOWS/Java/classes/xmldso.cab
FF - ProfilePath - c:\documents and settings\Simona\Dati applicazioni\Mozilla\Firefox\Profiles\yjn016mn.default-1352469851062\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.it/
FF - ExtSQL: 2012-10-29 11:31; {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}; c:\programmi\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
FF - ExtSQL: 2012-10-29 11:31; {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}; c:\programmi\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
FF - ExtSQL: 2012-10-29 13:25; {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}; c:\programmi\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
FF - ExtSQL: 2012-11-09 10:37; {BBDA0591-3099-440a-AA10-41764D9DB4DB}; c:\documents and settings\All Users\Dati applicazioni\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Data\IPSFFPlgn
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2012-11-12 09:28
Windows 5.1.2600 Service Pack 3 NTFS
.
scansione processi nascosti ...
.
scansione entrate autostart nascoste ...
.
Scansione files nascosti ...
.
Scansione completata con successo
Files nascosti: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SepMasterService]
"ImagePath"="\"c:\programmi\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\ccSvcHst.exe\" /s \"Symantec Endpoint Protection\" /m \"c:\programmi\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\sms.dll\" /prefetch:1"
--
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SmcService]
"ImagePath"="\"c:\programmi\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\Smc.exe\" /prefetch:1"
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Symantec\Symantec Endpoint Protection\CurrentVersion]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,4f,00,46,00,\
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
.
- - - - - - - > 'winlogon.exe'(780)
c:\windows\system32\LMIinit.dll
c:\windows\system32\LMIRfsClientNP.dll
.
- - - - - - - > 'explorer.exe'(3524)
c:\windows\system32\ieframe.dll
c:\programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.dll
c:\programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.ITA
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Altri processi in esecuzione ------------------------
.
c:\windows\System32\SCardSvr.exe
c:\programmi\Java\jre6\bin\jqs.exe
c:\programmi\File comuni\LightScribe\LSSrvc.exe
c:\programmi\LogMeIn\x86\RaMaint.exe
c:\programmi\LogMeIn\x86\LogMeIn.exe
c:\programmi\CyberLink\Shared Files\RichVideo.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\programmi\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\Smc.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\igfxsrvc.exe
c:\windows\system32\wbem\unsecapp.exe
.
**************************************************************************
.
Ora fine scansione: 2012-11-12 09:35:55 - Il pc è stato riavviato
ComboFix-quarantined-files.txt 2012-11-12 08:35
ComboFix2.txt 2012-11-09 11:14
ComboFix3.txt 2011-05-26 10:37
ComboFix4.txt 2010-01-22 09:21
.
Pre-Run: 45.000.945.664 byte disponibili
Post-Run: 44.878.426.112 byte disponibili
.
- - End Of File - - CFE223788FA6ADBA986A28927DEB5D0D
grazie!