No, non si apre nessuna pagina pubblicitaria.
Ecco il Combofix:
ComboFix 09-06-22.0D - Dott.GuidoDelGiudice 23/06/2009 17.45.44.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.39.1040.18.502.205 [GMT 2:00]
Eseguito da: c:\programmi\ComboFix.exe
ATTENZIONE - QUESTO PC NON HA LA CONSOLE DI RIPRISTINO DI EMERGENZA INSTALLATA !!
.
((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\m
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\11s11ro1s1a2.sys
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1055500.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1062171.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1064375.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1066703.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1068312.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1070906.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1071125.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1076312.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1077937.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1078187.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1079953.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1085140.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1087125.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1087296.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1090171.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1108312.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1120421.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1130203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1131625.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1276359.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1285515.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1288921.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1298140.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1300781.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1301640.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1356156.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1358875.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1359593.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1425171.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1465390.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1474453.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1484578.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1513656.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1530437.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1550062.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1551984.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1552062.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1569343.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1571078.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1571203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1736046.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1745078.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1745171.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1755203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1755500.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1756796.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1757078.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1765828.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1766718.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1773484.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1776390.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1777734.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1779000.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1782156.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1783203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1786812.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1787750.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1787859.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1806609.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1810031.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1810312.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1874468.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1878781.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1879140.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1880406.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1882593.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\1882875.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2060203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2061390.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2061500.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2070984.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2073562.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2073593.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2312140.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2313687.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2313781.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2441968.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2479890.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2482093.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2482406.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2483328.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2484843.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\2485125.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3390265.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3407000.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3412687.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3416625.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3427421.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3433750.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3440484.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3442062.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3442203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3500796.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3502546.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3516859.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3696437.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3699015.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3699046.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3704250.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3705765.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3706015.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3712859.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3714828.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3714953.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3736187.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3740265.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3744687.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3746171.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3762109.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3763859.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\3764437.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4018312.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4019625.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4019687.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4027843.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4029187.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4029265.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4153500.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4156203.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4160859.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4161968.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4165109.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4166671.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4236390.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4240812.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4241000.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4371281.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4374765.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4375593.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4376875.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4379640.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\4379843.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\728656.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\737312.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\740437.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\744328.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\755218.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\761625.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\768140.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\769953.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers\downld\770406.exe
c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\Microsoft\Internet Explorer\Quick Launch\AntivirusXP.lnk
c:\windows\system32\senekacrhnrvam.dat
c:\windows\system32\senekampucblxs.dat
c:\windows\system32\test.ttt
c:\windows\system32\twxyxyxx.ini
c:\windows\system32\twxyxyxx.ini2
c:\windows\system32\uDefNUtv.ini
c:\windows\system32\uDefNUtv.ini2
c:\windows\system32\win32hlp.cnf
c:\windows\Tasks\pzznanbs.job
c:\windows\ufdata2000.log
.
((((((((((((((((((((((((((((((((((((((( Driver/Servizi )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_111111S1RO1S1A
-------\Legacy_BOONTY_GAMES
-------\Service_Boonty Games
-------\Service_seneka
((((((((((((((((((((((((( Files Creati Da 2009-05-23 al 2009-06-23 )))))))))))))))))))))))))))))))))))
.
2009-06-23 15:43 . 2009-06-23 15:42 3039024 ----a-r- c:\programmi\ComboFix.exe
2009-06-22 21:57 . 2008-07-08 12:54 148496 ----a-w- c:\windows\system32\drivers\79993412.sys
2009-06-22 19:58 . 2009-06-22 19:59 42315312 ----a-w- c:\programmi\setup_7.0.0.290_22.06.2009_22-58.exe
2009-06-22 07:51 . 2009-06-22 20:56 -------- d-----w- c:\programmi\FindyKill
2009-06-22 07:51 . 2009-06-22 07:51 517009 ----a-w- c:\programmi\FindyKill.exe
2009-06-21 22:14 . 2009-06-21 22:14 -------- d-----w- c:\programmi\Spybot - Search & Destroy
2009-06-21 22:11 . 2009-06-21 22:11 -------- d-----w- c:\programmi\spybotsd152
2009-06-21 20:24 . 2009-06-21 20:24 -------- d-----w- c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\Google
2009-06-21 17:50 . 2009-06-23 15:51 -------- d--h--w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\drivers
2009-06-21 07:37 . 2009-06-21 07:37 -------- d-----w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\dvdcss
2009-06-21 07:35 . 2009-06-21 07:37 -------- d-----w- c:\programmi\DVDSmith Movie Backup
2009-06-21 07:34 . 2009-06-21 07:34 2034448 ----a-w- c:\programmi\dvdsmith-movie-backup.exe
2009-06-17 17:36 . 2009-06-17 17:36 1915520 ----a-w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
2009-06-05 22:12 . 2009-06-05 22:12 -------- d-----w- c:\programmi\Garmin GPS Plugin
2009-06-05 19:47 . 2009-06-05 19:47 -------- d-----w- c:\programmi\DIFX
2009-06-05 19:47 . 2009-06-05 19:48 -------- d-----w- c:\programmi\Garmin
2009-05-31 21:35 . 2009-05-31 21:35 -------- d-----w- c:\documents and settings\LocalService\Impostazioni locali\Dati applicazioni\Google
2009-05-30 22:26 . 2009-05-30 22:27 -------- d-----w- c:\programmi\eMule AdunanzA
2009-05-30 08:24 . 2009-05-30 08:24 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\GARMIN
2009-05-29 12:21 . 2009-05-30 08:24 -------- d-----w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\GARMIN
2009-05-29 12:19 . 2007-09-06 13:53 18944 ----a-w- c:\windows\system32\drivers\SiLib.sys
2009-05-29 12:19 . 2007-09-06 13:53 14848 ----a-w- c:\windows\system32\drivers\DSI_SiUSBXp_3_1.sys
2009-05-29 12:19 . 2009-05-29 12:19 -------- dc----w- C:\Garmin
2009-05-27 21:15 . 2009-05-27 21:15 -------- d-----w- c:\programmi\NCH Swift Sound
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-23 16:06 . 2009-02-26 21:15 17248288 --sha-w- c:\windows\system32\drivers\fidbox.dat
2009-06-23 16:02 . 2009-02-26 21:15 201644 --sha-w- c:\windows\system32\drivers\fidbox.idx
2009-06-23 14:20 . 2008-12-12 21:26 -------- d-----w- c:\programmi\Navilog1
2009-06-23 05:31 . 2006-03-02 12:00 48766 ----a-w- c:\windows\system32\perfc010.dat
2009-06-23 05:31 . 2006-03-02 12:00 348104 ----a-w- c:\windows\system32\perfh010.dat
2009-06-23 02:14 . 2009-02-17 09:43 104960 ----a-w- c:\windows\system32\userinit.exe
2009-06-22 05:26 . 2008-07-14 10:28 1234712 ----a-w- c:\documents and settings\All Users\Dati applicazioni\avg8\update\backup\avgtray.exe
2009-06-22 05:26 . 2008-07-14 10:28 231192 ----a-w- c:\documents and settings\All Users\Dati applicazioni\avg8\update\backup\avgwdsvc.exe
2009-06-22 05:26 . 2008-07-14 10:28 873752 ----a-w- c:\documents and settings\All Users\Dati applicazioni\avg8\update\backup\avgemc.exe
2009-06-22 05:26 . 2008-07-14 10:28 311576 ----a-w- c:\documents and settings\All Users\Dati applicazioni\avg8\update\backup\avgrsx.exe
2009-06-21 23:41 . 2008-05-19 15:55 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\avg8
2009-06-21 22:14 . 2009-02-18 23:02 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Spybot - Search & Destroy
2009-06-21 18:18 . 2009-06-21 18:40 172182 ----a-w- c:\windows\pchealth\helpctr\Config\Cache\Personal_32_1040.dat
2009-06-21 08:36 . 2008-05-22 09:03 -------- d-----w- c:\programmi\eMule
2009-06-15 16:41 . 2008-05-20 21:33 -------- d-----w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\CoreFTP
2009-05-31 21:37 . 2008-12-20 18:45 -------- d-----w- c:\programmi\Google
2009-05-30 22:30 . 2008-05-20 21:39 -------- d-----w- c:\programmi\AdunanzA
2009-05-15 19:13 . 2009-05-15 14:21 -------- d-----w- c:\programmi\NCH Software
2009-05-15 14:22 . 2009-05-15 14:22 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\NCH Software
2009-05-15 14:21 . 2009-05-15 14:21 -------- d-----w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\NCH Software
2009-05-15 14:21 . 2009-05-15 14:20 453264 ----a-w- c:\programmi\debutsetup.exe
2009-05-15 13:24 . 2009-05-15 13:24 -------- d-----w- c:\programmi\Trust
2009-05-15 13:24 . 2008-05-19 14:19 -------- d--h--w- c:\programmi\InstallShield Installation Information
2009-03-31 19:15 . 2009-03-31 19:15 152576 ----a-w- c:\documents and settings\Dott.GuidoDelGiudice\Dati applicazioni\Sun\Java\jre1.6.0_13\lzma.dll
2009-02-18 22:41 . 2009-02-18 22:41 9694356 ----a-w- c:\programmi\spybotsd152.zip
2008-12-13 14:24 . 2008-12-13 14:23 724952 ----a-w- c:\programmi\avenger.zip
2008-12-12 22:06 . 2008-12-12 22:06 2539400 ----a-w- c:\programmi\mbam-setup.exe
2008-12-12 21:25 . 2008-12-12 21:25 576862 ----a-w- c:\programmi\Navilog1.exe
2008-12-11 09:40 . 2008-12-11 09:40 4530016 ----a-w- c:\programmi\isobuster_all_lang.exe
2008-09-15 08:26 . 2008-09-15 08:26 2801569 ----a-w- c:\programmi\DeepBurner1.exe
2008-09-11 12:59 . 2008-09-11 12:59 29962241 ----a-w- c:\programmi\SUPERsetup.exe
2008-09-10 09:01 . 2008-09-10 09:00 4960294 ----a-w- c:\programmi\RivaEncoderSetup.exe
2008-06-23 19:40 . 2008-06-23 19:40 59839784 ----a-w- c:\programmi\iTunesSetup.exe
2008-06-12 10:03 . 2008-06-12 10:03 15951256 ----a-w- c:\programmi\java.exe
2008-06-04 11:07 . 2008-06-04 11:06 28979464 ----a-w- c:\programmi\FileFormatConverters.exe
2008-05-12 10:14 . 2008-06-04 22:15 1175282 ----a-w- c:\programmi\fhsetup.exe
2008-05-12 09:57 . 2008-06-04 22:16 1244944 ----a-w- c:\programmi\FlashCatcher.exe
2008-04-14 10:32 . 2008-05-20 22:09 984832 ----a-w- c:\programmi\Pdf Password Remover 2.5 Crack.rar
2008-04-10 13:57 . 2008-05-20 22:15 3558791 ----a-w- c:\programmi\youtubedownloader.exe
2007-12-06 08:45 . 2008-05-20 22:07 1232943 ----a-w- c:\programmi\install_textsoap.exe
2006-06-20 10:07 . 2008-08-01 14:53 13999801 ----a-w- c:\programmi\movieconverter.exe
2005-11-04 09:59 . 2008-05-20 22:08 1382485 ----a-w- c:\programmi\jpegoptimizer.exe
2004-11-10 08:32 . 2008-05-20 22:15 2421920 ----a-w- c:\programmi\winzip90.exe
2004-03-30 23:32 . 2008-05-20 22:14 86016 ----a-w- c:\programmi\txtclean.exe
.
------- Sigcheck -------
[-] 2008-04-14 02:14 26624 DF69726907357C3ADD243F48902B0331 c:\windows\SoftwareDistribution\Download\8dab4f2c899f11c2863dff51dfb836e7\userinit.exe
[-] 2009-06-23 02:14 104960 13A3D30F7E9FAC9B41D0F930B5A185D9 c:\windows\system32\userinit.exe
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2006-03-02 15360]
"ANT Agent"="c:\garmin\ANT Agent\ANT Agent.exe" [2009-05-21 11026008]
"SpybotSD TeaTimer"="c:\programmi\Spybot - Search & Destroy\TeaTimer.exe" [2009-06-21 2097488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HWSetup"="c:\programmi\TOSHIBA\TOSHIBA Applet\HWSetup.exe" [2004-12-23 28672]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2005-04-28 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2005-04-28 126976]
"Acrobat Assistant 7.0"="c:\programmi\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" [2004-12-14 483328]
"SSBkgdUpdate"="c:\programmi\File comuni\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-09-28 185896]
"OpwareSE4"="c:\programmi\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-10-11 75304]
"QuickTime Task"="c:\programmi\QuickTime\qttask.exe" [2007-04-27 282624]
"iTunesHelper"="c:\programmi\iTunes\iTunesHelper.exe" [2007-06-28 270648]
"ISUSPM Startup"="c:\progra~1\FILECO~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-07-27 221184]
"ISUSScheduler"="c:\programmi\File comuni\InstallShield\UpdateService\issch.exe" [2005-02-16 81920]
"EPSON Stylus C46 Series"="c:\windows\System32\spool\DRIVERS\W32X86\3\E_S4I0T1.EXE" [2004-01-13 99840]
"DataLayer"="c:\programmi\File comuni\PCSuite\DataLayer\DataLayer.exe" [2005-09-06 820736]
"PCSuiteTrayApplication"="c:\programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [2005-06-29 176128]
"SunJavaUpdateSched"="c:\programmi\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"snpstd"="c:\windows\vsnpstd.exe" [2004-06-10 286720]
"TFncKy"="TFncKy.exe" [BU]
"AGRSMMSG"="AGRSMMSG.exe" - c:\windows\agrsmmsg.exe [2005-04-28 88363]
"NDSTray.exe"="NDSTray.exe" [BU]
"BluetoothAuthenticationAgent"="bthprops.cpl" - c:\windows\system32\bthprops.cpl [2004-08-19 110592]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2006-03-02 15360]
c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
Avvio veloce di Adobe Acrobat.lnk - c:\windows\Installer\{AC76BA86-1034-4700-7760-000000000002}\SC_Acrobat.exe [2008-5-20 25214]
Avvio veloce di Adobe Reader.lnk - c:\programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-9-23 29696]
BTTray.lnk - c:\programmi\WIDCOMM\Software Bluetooth\BTTray.exe [2005-9-16 610365]
RAMASST.lnk - c:\windows\system32\RAMASST.exe [2008-5-19 155648]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSetActiveDesktop"= 1 (0x1)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\Messenger\\msmsgs.exe"=
"c:\\Programmi\\iTunes\\iTunes.exe"=
"c:\\Programmi\\eMule\\emule.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\SAGENT4.EXE"=
"c:\\Programmi\\eMule AdunanzA\\eMule_AdnzA.exe"=
R1 is-5O00Fdrv;is-5O00Fdrv;c:\windows\system32\drivers\79993412.sys [22/06/2009 23.57.34 148496]
R3 WSIMD;wsimd Service;c:\windows\system32\drivers\wsimd.sys [19/05/2008 16.22.27 57408]
S2 gupdate1c9e237b8b5021e;Servizio di Google Update (gupdate1c9e237b8b5021e);c:\programmi\Google\Update\GoogleUpdate.exe [31/05/2009 23.35.28 133104]
S2 osrtvsmr;osrtvsmr;\??\c:\windows\system32\drivers\osrtvsmr.sys --> c:\windows\system32\drivers\osrtvsmr.sys [?]
S3 SDVC05;USB SDVC05;c:\windows\system32\drivers\SDVC05.sys [09/09/2008 16.35.26 18088]
.
Contenuto della cartella 'Scheduled Tasks'
2009-06-23 c:\windows\Tasks\GoogleUpdateTaskMachine.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2009-05-31 21:35]
.
- - - - CHIAVI ORFANE RIMOSSE - - - -
HKCU-Run-BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - c:\programmi\File comuni\Nero\Lib\NMBgMonitor.exe
HKLM-Run-NBKeyScan - c:\programmi\Nero\Nero8\Nero BackItUp\NBKeyScan.exe
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.libero.it/
uSearchURL,(Default) = hxxp://www.google.com/keyword/%s
IE: c:\programmi\WIDCOMM\Software Bluetooth\btsendto_ie_ctx.htm
IE: Converti destinazione link in Adobe PDF - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Converti destinazione link in file PDF esistente - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Converti i link selezionati in Adobe PDF - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Converti i link selezionati in file PDF esistente - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Converti in Adobe PDF - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Converti nel file PDF esistente - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Converti selezione in Adobe PDF - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Converti selezione in file PDF esistente - c:\programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Download &Flash Movies - c:\programmi\Flash2X\Flash Hunter\save.htm
IE: E&sporta in Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: {E2424145-6457-4791-8900-4B70DA9EA85B} = 151.99.125.2
Name-Space Handler: ftp\* - {419A0123-4312-1122-A0C0-434FDA6DA542} - c:\programmi\CoreFTP\pftpns.dll
FF - ProfilePath -
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-06-23 18:04
Windows 5.1.2600 Service Pack 2 NTFS
scansione processi nascosti ...
scansione entrate autostart nascoste ...
Scansione files nascosti ...
Scansione completata con successo
Files nascosti: 0
**************************************************************************
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
- - - - - - - > 'explorer.exe'(1996)
c:\programmi\ScanSoft\OmniPageSE4.0\OpHookSE4.dll
.
------------------------ Altri processi in esecuzione ------------------------
.
c:\programmi\File comuni\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
c:\programmi\TOSHIBA\ConfigFree\CFSvcs.exe
c:\windows\system32\DVDRAMSV.exe
c:\programmi\Java\jre6\bin\jqs.exe
c:\programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\system32\wdfmgr.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\programmi\TOSHIBA\ConfigFree\NDSTray.exe
c:\windows\system32\rundll32.exe
c:\programmi\WIDCOMM\Software Bluetooth\BTStackServer.exe
c:\programmi\iPod\bin\iPodService.exe
.
**************************************************************************
.
Ora fine scansione: 2009-06-23 18.11.23 - Il pc è stato riavviato
ComboFix-quarantined-files.txt 2009-06-23 16:11
Pre-Run: 11.137.646.592 byte disponibili
Post-Run: 11.109.302.272 byte disponibili
364 --- E O F --- 2009-06-23 05:33