Ciao grazie mille, sono riuscita a risolvere il problema, almeno credo. L'unica cosa che volevo chiedere è se combofix è proprio necessario, perchè non riesco ad installarlo dal link che mi hai dato. Inoltre come antivirus posso usare Virit da solo, o mi consigli qualcos'altro?
Intanto posto il log che di Norman e quello che ho fatto ora di Hijack:
Norman Malware Cleaner
Copyright © 1990 - 2008, Norman ASA. Built 2008/07/07 18:58:09
Norman Scanner Engine Version: 5.92.08
Nvcbin.def Version: 5.92.00, Date: 2008/07/07 18:58:09, Variants: 1826343
Running pre-scan cleanup routine:
Operating System: Microsoft Windows XP Home 5.1.2600(Safe mode) Service Pack 3
Logged on user: USER-CO5717CE3K\Administrator
Set registry value: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLS = "cru629.dat" -> ""
Scan started: 16/07/2008 23:23:31
Scanning running processes and process memory...
Number of processes/threads found: 563
Number of processes/threads scanned: 563
Number of processes/threads not scanned: 0
Number of infected processes/threads terminated: 0
Total scanning time: 21s
Scanning file system...
Scanning: C:\*.*
C:\Documents and Settings\user\Impostazioni locali\Temporary Internet Files\Content.IE5\IY6P0LW3\Install[1].exe (Infected with W32/Zlob.BWUT)
Deleted file
C:\WINDOWS\braviax.exe (Infected with Tibs.CICV)
Deleted file
C:\WINDOWS\cru629.dat (Infected with W32/Smalldoor.BZKQ)
Deleted file
C:\WINDOWS\system32\braviax.exe (Infected with Tibs.CICV)
Deleted file
C:\WINDOWS\system32\cru629.dat (Infected with W32/Smalldoor.BZKQ)
Deleted file
C:\WINDOWS\system32\univrs32.dat (Infected with W32/Agent.DYJS)
Deleted file
C:\WINDOWS\system32\winivstr.exe (Infected with W32/Zlob.BWUT)
Deleted file
Scanning: D:\*.*
D:\ABC\shinhwa.-.[Vol.8-State.Of.The.Art.](MP3).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\films\Lover__(Aein)_-_(The_Intimate).(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\films\Over.The.Rainbow.2002.DVDRip.XviD-YYddr.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\films\Over.The._Rainbow.(2002)-Sky.[kloofy].(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\films\Over.The._Rainbow.(2002)-Sky.[kloofy].(subs.2ya.com).rar/RR (Error whilst scanning file: I/O Error)
D:\ABC\films\Over.The._Rainbow.2002.DVDRip.XviD-liny01.[kloofy].(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\April[1].Snow.2005.iNT.2AUDiO.DVDRip.XviD.2CD-NGuy.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\April[1].Snow.2005.PROPER.DVDRip.XviD-ESPiSE.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Musa_2cd_PostX_sub_eng[1].srt.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Musa_2cd_PostX_sub_eng[1].srt.(subs.2ya.com).rar/RR (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Red[1].Eye.2005.DVDRip.XviD-LUXURY(fixed).(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\The[1].Uninvited.2003.DVDRiP-WRD.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Wanee[1].and.Junah.EnCn-XMCS.srt.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Wanee[1].and.Junah.EnCn-XMCS.srt.(subs.2ya.com).rar/RR (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Bystanders.2005.DVDRip.XviD.AC3.2CD-CaYEnnE.(subs.2ya.com)\Bystanders[1].2005.DVDRip.XviD.AC3.2CD-CaYEnnE.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Il Mare\Il[1].Mare.AC3.2CD.eng.fixed.[O-Deka-K].srt.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Il Mare\Il[1].Mare.AC3.2CD.[menschenhasser].(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Jan Dara\Jan[1].Dara.2001.limited.Menos.srt.(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\Jan Dara\Jan[1].Dara.2001.limited.Menos.srt.(subs.2ya.com).rar/RR (Error whilst scanning file: I/O Error)
D:\ABC\sottotitoli\the sweet sex and love\The.Sweet.Sex.and.Love.2003.DVDRip.DivX.dts-K2.[FadeToBlack].(subs.2ya.com).rar/CMT (Error whilst scanning file: I/O Error)
D:\INCOMING COPIATO DA C\Spyware.Doctor.v5.0.0.169.Multilangages.Incl-Crack.rar/Spyware Doctor 5.0.0.169 Crack.zip/Sdu12.exe (Infected with W32/Agent.DPDZ)
Deleted file
Scanning: c:\System Volume Information\*.*
Running post-scan cleanup routine:
Number of files found: 114667
Number of archives unpacked: 705
Number of files scanned: 114627
Number of files not scanned: 40
Number of files skipped due to exclude list: 0
Number of infected files found: 8
Number of infected files repaired/deleted: 8
Number of infections removed: 8
Total scanning time: 1h 36m 13s
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18.17.08, on 17/07/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\VEXPLITE\MONLITE.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\VEXPLITE\viritsvc.exe
D:\ABC\subsoftware\Hijackaiuto.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [VIRIT LITE MONITOR] C:\VEXPLITE\MONLITE.EXE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {072039AB-2117-4ED5-A85F-9B9EB903E021} (NowStarter Control) -
http://www.clubbox.co.kr/neo.fld/NowStarter.cabO23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Programmi\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Virit eXplorer Lite (viritsvclite) - TG Soft Sas
www.tgsoft.it - C:\VEXPLITE\viritsvc.exe
--
End of file - 3323 bytes
Devo fare ancora qualche operazione?