Ciao! Grazie ancora per tutto, ora ti posto il log di combofix (Spyware Terminator l'ho disinstallato)
ComboFix 08-10-15.01 - Simona 2008-10-15 21.56.59.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1040.18.651 [GMT 2:00]
Eseguito da: C:\Documents and Settings\Simona\Desktop\ComboFix.exe
* Creato nuovo punto di ripristino
ATENÇÃO - ESTA MAQUINA NAO TEM A CONSOLE DE RECUPERAÇÃO INSTALADA !!.
((((((((((((((((((((((((( Files Creati Da 2008-09-15 al 2008-10-15 )))))))))))))))))))))))))))))))))))
.
2008-10-14 16:37 . 2008-10-14 16:39 <DIR> d-------- C:\Programmi\CCleaner
2008-10-11 18:58 . 2008-10-14 16:39 <DIR> d-------- C:\Programmi\Malwarebytes' Anti-Malware
2008-10-11 18:58 . 2008-10-11 18:58 <DIR> d-------- C:\Documents and Settings\Simona\Dati applicazioni\Malwarebytes
2008-10-11 18:58 . 2008-10-11 18:58 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\Malwarebytes
2008-10-11 18:58 . 2008-09-10 00:04 38,528 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-10-11 18:58 . 2008-09-10 00:03 17,200 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-10-11 15:35 . 2008-10-11 15:35 <DIR> d-------- C:\Programmi\Trend Micro
2008-10-11 15:30 . 2008-10-11 15:30 812,344 --a------ C:\Programmi\HJTInstall.exe
2008-10-02 22:00 . 2008-10-15 21:35 519 --a------ C:\hpfr3420.xml
2008-10-01 11:06 . 2008-10-01 11:06 <DIR> d-------- C:\Programmi\File comuni\Hewlett-Packard
2008-10-01 11:04 . 2008-10-01 11:04 <DIR> d-------- C:\Programmi\Hewlett-Packard
2008-10-01 11:00 . 2008-10-01 11:11 19,554 --a------ C:\WINDOWS\hpoins01.dat
2008-10-01 11:00 . 2003-04-22 20:57 16,606 --------- C:\WINDOWS\hpomdl01.dat
2008-09-23 18:50 . 2004-08-03 23:08 26,496 --a--c--- C:\WINDOWS\system32\dllcache\usbstor.sys
2008-09-23 18:29 . 2008-09-23 18:29 7,680 --ahs---- C:\WINDOWS\Thumbs.db
2008-09-22 14:49 . 2004-08-03 23:01 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2008-09-22 14:49 . 2004-08-03 23:01 25,856 --a--c--- C:\WINDOWS\system32\dllcache\usbprint.sys
2008-09-22 14:48 . 2004-08-03 23:08 31,616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys
2008-09-22 14:48 . 2004-08-03 23:08 31,616 --a--c--- C:\WINDOWS\system32\dllcache\usbccgp.sys
2008-09-22 14:39 . 2008-09-22 14:39 <DIR> d-------- C:\Program Files
2008-09-18 22:58 . 2008-09-18 22:58 <DIR> d-------- C:\Documents and Settings\Simona\Dati applicazioni\Ulead Systems
2008-09-18 22:55 . 2008-09-18 22:55 <DIR> d-------- C:\Programmi\Ulead Systems
2008-09-18 22:55 . 2008-09-18 22:55 <DIR> d-------- C:\Programmi\File comuni\Ulead Systems
2008-09-18 22:55 . 2008-09-18 22:55 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\Ulead Systems
2008-09-18 22:55 . 1999-10-15 12:50 1,056,768 --------- C:\WINDOWS\system32\ROBOEX32.DLL
2008-09-18 22:55 . 2006-07-22 19:37 49,152 --------- C:\WINDOWS\system32\INETWH32.dll
2008-09-17 22:19 . 2008-10-08 11:19 <DIR> d-------- C:\Programmi\eMule
2008-09-17 15:33 . 2008-09-17 15:33 <DIR> d-------- C:\Documents and Settings\Simona\Dati applicazioni\Ahead
2008-09-17 15:32 . 2008-10-08 11:22 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-09-15 22:03 . 2008-09-15 22:21 <DIR> d-------- C:\Programmi\Spybot - Search & Destroy
2008-09-15 22:03 . 2008-10-14 16:40 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy
2008-09-15 21:31 . 2008-09-15 21:31 <DIR> d-------- C:\Programmi\Crawler
2008-09-15 20:46 . 2008-09-15 20:49 <DIR> d-------- C:\Programmi\Foxit Reader
2008-09-15 20:23 . 2008-09-15 20:23 <DIR> d-------- C:\Programmi\Xvid
2008-09-15 20:23 . 2007-06-28 18:52 765,952 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-09-15 20:23 . 2007-06-28 18:54 180,224 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-09-15 20:23 . 2007-06-28 18:55 77,824 --a------ C:\WINDOWS\system32\xvid.ax
2008-09-15 20:22 . 2008-09-15 20:22 <DIR> d-------- C:\Programmi\AviSynth 2.5
2008-09-15 20:21 . 2008-09-23 18:30 <DIR> d-------- C:\Programmi\DVD slideshow GUI
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-14 16:07 --------- d-----w C:\Documents and Settings\Simona\Dati applicazioni\Skype
2008-10-14 14:01 --------- d-----w C:\Documents and Settings\Simona\Dati applicazioni\skypePM
2008-09-23 16:30 --------- d-----w C:\Programmi\Avanquest update
2008-09-23 16:30 --------- d-----w C:\Programmi\AutoCAD 2002
2008-09-18 20:56 --------- d--h--w C:\Programmi\InstallShield Installation Information
2008-09-18 20:55 --------- d-----w C:\Programmi\File comuni\InstallShield
2008-09-17 22:16 --------- d-----w C:\Documents and Settings\All Users\Dati applicazioni\BVRP Software
2008-09-16 08:35 --------- d-----w C:\Programmi\smart ripper
2008-09-15 18:51 --------- d-----w C:\Documents and Settings\Simona\Dati applicazioni\AVGTOOLBAR
2008-09-15 18:18 --------- d-----w C:\Programmi\File comuni\Adobe
2008-09-14 20:58 --------- d-----w C:\Documents and Settings\Simona\Dati applicazioni\vlc
2008-09-14 20:57 --------- d-----w C:\Programmi\VideoLAN
2008-09-14 13:26 --------- d-----w C:\Programmi\skype
2008-09-14 13:26 --------- d-----w C:\Programmi\File comuni\Skype
2008-09-14 13:26 --------- d-----w C:\Documents and Settings\All Users\Dati applicazioni\Skype
2008-09-14 12:58 97,928 ----a-w C:\WINDOWS\system32\drivers\avgldx86.sys
2008-09-14 12:58 76,040 ----a-w C:\WINDOWS\system32\drivers\avgtdix.sys
2008-09-14 12:58 10,520 ----a-w C:\WINDOWS\system32\avgrsstx.dll
2008-09-14 12:58 --------- d-----w C:\Programmi\AVG
2008-09-14 12:58 --------- d-----w C:\Documents and Settings\All Users\Dati applicazioni\avg8
2008-09-14 12:20 21,419 ----a-w C:\WINDOWS\system32\drivers\AegisP.sys
2008-09-14 12:20 --------- d-----w C:\Programmi\Intelligent
2008-09-14 12:20 --------- d-----w C:\Documents and Settings\Simona\Dati applicazioni\InstallShield
2008-09-13 09:13 --------- d-----w C:\Programmi\WexTech
2008-09-13 09:13 --------- d-----w C:\Programmi\File comuni\Wextech Shared
2008-09-13 09:13 --------- d-----w C:\Programmi\File comuni\LHSPF
2008-09-13 09:12 --------- d-----w C:\Programmi\Volo View Express
2008-09-13 09:12 --------- d-----w C:\Programmi\File comuni\Autodesk Shared
2008-09-13 09:05 --------- d-----w C:\Programmi\mp3DirectCut
2008-09-13 08:51 --------- d-----w C:\Programmi\SlySoft
2008-09-13 08:47 --------- d-----w C:\Programmi\Motorola Phone Tools
2008-09-13 08:46 24,192 ----a-w C:\Documents and Settings\Simona\usbsermptxp.sys
2008-09-13 08:46 22,768 ----a-w C:\WINDOWS\system32\drivers\usbsermpt.sys
2008-09-13 08:46 22,768 ----a-w C:\Documents and Settings\Simona\usbsermpt.sys
2008-09-13 08:43 --------- d-----w C:\Programmi\7-ZIP
2008-09-13 08:39 --------- d-----w C:\Programmi\File comuni\Ahead
2008-09-13 08:39 --------- d-----w C:\Programmi\Ahead
2008-09-13 08:35 --------- d-----w C:\Documents and Settings\All Users\Dati applicazioni\Ahead
2008-09-13 08:20 --------- d-----w C:\Programmi\SiS VGA Utilities V3.65f
2008-09-13 08:15 --------- d-----w C:\Programmi\Realtek Sound Manager
2008-09-13 08:15 --------- d-----w C:\Programmi\AvRack
2008-09-13 08:00 --------- d-----w C:\Programmi\microsoft frontpage
2008-09-13 07:58 --------- d-----w C:\Programmi\Servizi in linea
2006-01-26 12:20 189,764 ----a-w C:\Programmi\mp3DC139.exe
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15360]
"MSMSGS"="C:\Programmi\Messenger\msmsgs.exe" [2004-08-19 1667584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SiS Windows KeyHook"="C:\WINDOWS\system32\keyhook.exe" [2005-03-04 32768]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 155648]
"AnyDVD"="C:\Programmi\SlySoft\AnyDVD\AnyDVD.exe" [2008-09-13 462848]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-09-29 1234712]
"Ulead AutoDetector v2"="C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe" [2004-11-26 90112]
"SiSPower"="SiSPower.dll" [2005-02-25 C:\WINDOWS\system32\SiSPower.dll]
"AGRSMMSG"="AGRSMMSG.exe" [2004-10-08 C:\WINDOWS\AGRSMMSG.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-19 15360]
C:\Documents and Settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
Intelligent Wireless Utility.lnk - C:\Programmi\Intelligent\Common\RaUI.exe [2008-09-14 1110016]
Utility Tray.lnk - C:\WINDOWS\system32\sistray.exe [2008-09-13 331776]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Programmi\\AVG\\AVG8\\avgemc.exe"=
"C:\\Programmi\\AVG\\AVG8\\avgupd.exe"=
"C:\\Programmi\\eMule\\emule.exe"=
"C:\\Programmi\\Skype\\Phone\\Skype.exe"=
R1 AvgLdx86;AVG Free AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-09-14 97928]
R2 avg8emc;AVG Free8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-09-14 875288]
R2 avg8wd;AVG Free8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-09-14 231704]
R2 AvgTdiX;AVG Free8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-09-14 76040]
.
.
------- Supplementare di scansione -------
.
R0 -: HKCU-Main,Start Page = hxxp://www.google.it/
O8 -: Crawler Search - tbr:iemenu
O8 -: E&sporta in Microsoft Excel - C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O17 -: HKLM\CCS\Interface\{EDC70768-92FB-465E-9CB6-D153AABBBCAC}: NameServer = 194.183.64.10,151.99.125.3
O18 -: Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - %~$path:i
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-10-15 21:58:23
Windows 5.1.2600 Service Pack 2 NTFS
scansione processi nascosti ...
scansione entrate autostart nascoste ...
Scansione files nascosti ...
Scansione completata con successo
Files nascosti: 0
**************************************************************************
.
Ora fine scansione: 2008-10-15 21.59.21
ComboFix-quarantined-files.txt 2008-10-15 19:59:17
Pre-Run: 10.404.442.112 byte disponibili
Post-Run: 10,396,147,712 byte disponibili
153
Ciao!!!