ciao menatwork
innanzitutto Grazie!!
il mouse l'ho dovuto muovere perchè mi ha chiesto di connettermi a microsoft perchè non trovava il punto di ripristino d'emergenza e poi mi ha chiesto di riavviare perchè c'era un rookit che andava, comunque adesso ha finito e di seguito posto il log.
2 post perchè mi dice che è troppo lungo.
grazie ancora.
ComboFix 10-05-23.08 - Roberto 24/05/2010 19.05.17.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.2.1252.39.1040.18.958.556 [GMT 2:00]
Eseguito da: c:\documents and settings\Roberto\Desktop\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 100524-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))) )
.
c:\windows\system32\0f649281.dat
c:\windows\system32\1.tmp
c:\windows\system32\24f604c8.dll
c:\windows\system32\Cache
c:\windows\system32\Thumbs.db
La copia infetta di c:\windows\system32\drivers\atapi.sys è stata trovata e disinfettata
ipristinata copia da - Kitty had a snack
.
((((((((((((((((((((((((( Files Creati Da 2010-04-24 al 2010-05-24 )))))))))))))))))))))))))))))))))))
.
2010-05-24 11:08 . 2010-05-24 11:08 388096 ----a-r- c:\documents and settings\Roberto\Dati applicazioni\Microsoft\Installer\{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}\HiJackThis.exe
2010-05-22 15:46 . 2010-05-22 15:46 -------- d-----w- c:\documents and settings\Roberto\Impostazioni locali\Dati applicazioni\Temp
2010-05-21 18:57 . 2010-05-21 18:58 -------- d-----w- c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\Adobe
2010-05-20 22:05 . 2010-05-20 22:05 -------- d-----w- c:\windows\system32\wbem\Repository
2010-05-07 11:27 . 2010-05-07 11:27 57344 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-05-07 11:27 . 2010-05-07 11:23 754984 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\Setup\Resource.dll
2010-05-07 11:27 . 2010-05-07 11:23 1180952 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\Setup\DivXSetup.exe
2010-05-07 11:27 . 2009-11-21 00:03 530625 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DivX7\DivX Plus DirectShow Filters\DivXDSFiltersUninstall.exe
2010-05-07 11:27 . 2009-11-21 00:03 530625 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DivX7\DivX Converter\DivXConverterUninstall.exe
2010-05-07 11:27 . 2010-05-07 11:27 56766 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DivXPlusShortcuts\Uninstaller.ex e
2010-05-07 11:27 . 2010-05-07 11:27 56978 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\WebPlayer\Uninstaller.exe
2010-05-07 11:26 . 2010-05-07 11:26 53600 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\Update\Uninstaller.exe
2010-05-07 11:26 . 2010-05-07 11:26 57679 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\Player\Uninstaller.exe
2010-05-07 11:26 . 2010-05-07 11:26 84040 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\TransferWizard\Uninstaller.exe
2010-05-07 11:26 . 2010-05-07 11:26 57054 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DSDesktopComponents\Uninstaller. exe
2010-05-07 11:26 . 2010-05-07 11:26 54166 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DSAVCDecoder\Uninstaller.exe
2010-05-07 11:26 . 2010-05-07 11:26 57532 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DSASPDecoder\Uninstaller.exe
2010-05-07 11:26 . 2010-05-07 11:26 56458 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DivXDecoderShortcut\Uninstaller. exe
2010-05-07 11:26 . 2010-05-07 11:26 54174 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DSAACDecoder\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 54153 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\DFXPlugin\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 54128 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\Converter\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 54629 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\TranscodeEngine\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 54101 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\MPEG2Plugin\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 57409 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\ControlPanel\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 52963 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\MSVC80CRTRedist\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 54073 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\Qt4.5\Uninstaller.exe
2010-05-07 11:25 . 2010-05-07 11:25 56969 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\ASPEncoder\Uninstaller.exe
2010-05-07 11:23 . 2010-05-07 11:23 144696 ----a-w- c:\documents and settings\All Users\Dati applicazioni\DivX\RunAsUser\RUNASUSERPROCESS.exe
2010-05-07 11:23 . 2010-05-07 11:27 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\DivX
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )
.
2010-05-23 08:23 . 2007-11-17 09:20 -------- d-----w- c:\programmi\NoAds
2010-05-22 08:16 . 2007-04-28 10:32 -------- d-----w- c:\programmi\emule
2010-05-21 11:23 . 2010-02-03 21:39 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Spyware Terminator
2010-05-21 11:21 . 2010-02-03 21:39 -------- d-----w- c:\documents and settings\Roberto\Dati applicazioni\Spyware Terminator
2010-05-21 11:21 . 2010-02-03 21:39 -------- d-----w- c:\programmi\Spyware Terminator
2010-05-20 22:04 . 2010-02-03 21:45 -------- d-----w- c:\programmi\Malwarebytes' Anti-Malware
2010-05-20 21:00 . 2010-05-20 21:00 32382 ----a-w- c:\windows\SCHEDLGU.TXT.TMP
2010-05-20 17:08 . 2010-05-20 17:08 16 ----a-w- c:\documents and settings\Roberto\Dati applicazioni\qvjsge.dat
2010-05-12 06:12 . 2007-04-26 23:34 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Microsoft Help
2010-05-07 19:29 . 2007-04-28 12:34 -------- d-----w- c:\documents and settings\Roberto\Dati applicazioni\DivX
2010-05-07 11:27 . 2007-04-28 12:33 -------- d-----w- c:\programmi\DivX
2010-05-07 11:25 . 2009-08-14 10:30 -------- d-----w- c:\programmi\File comuni\DivX Shared
2010-04-28 21:12 . 2007-04-28 12:43 -------- d-----w- c:\documents and settings\Roberto\Dati applicazioni\Skype
2010-04-28 20:23 . 2009-01-02 12:13 -------- d-----w- c:\documents and settings\Roberto\Dati applicazioni\skypePM
2010-04-23 16:41 . 2007-04-27 18:11 -------- d-----w- c:\programmi\Lexmark X1100 Series
2010-04-07 11:54 . 2008-03-06 18:00 -------- d-----w- c:\documents and settings\Roberto\Dati applicazioni\dvdcss
2010-04-03 19:31 . 2004-08-30 20:00 538666 ----a-w- c:\windows\system32\perfh010.dat
2010-04-03 19:31 . 2004-08-30 20:00 101030 ----a-w- c:\windows\system32\perfc010.dat
2010-03-31 01:58 . 2007-04-28 11:19 133616 ------w- c:\windows\system32\pxafs.dll
2010-03-31 01:58 . 2007-04-27 21:24 44944 ----a-w- c:\windows\system32\drivers\PxHelp20.sys
2010-03-31 01:58 . 2007-04-27 21:24 125424 ------w- c:\windows\system32\pxinsi64.exe
2010-03-31 01:58 . 2007-04-27 21:24 123888 ------w- c:\windows\system32\pxcpyi64.exe
2010-03-29 22:46 . 2010-02-03 21:45 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-29 22:45 . 2010-02-03 21:45 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-03-11 12:30 . 2004-08-30 20:00 832512 ----a-w- c:\windows\system32\wininet.dll
2010-03-11 12:30 . 2004-08-30 20:00 78336 ----a-w- c:\windows\system32\ieencode.dll
2010-03-11 12:30 . 2004-08-30 20:00 17408 ------w- c:\windows\system32\corpol.dll
2010-03-09 11:09 . 2004-08-30 20:00 430080 ----a-w- c:\windows\system32\vbscript.dll
2010-03-08 17:59 . 2010-03-08 17:59 94208 ----a-w- c:\windows\system32\dpl100.dll
2010-02-28 17:14 . 2010-02-28 17:14 4998707 ----a-w- c:\programmi\flvplayer_setup_2.0.25.exe
2010-02-24 12:31 . 2004-08-30 20:00 454016 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-03 21:25 . 2010-02-03 21:25 646776 ----a-w- c:\programmi\SpywareTerminatorSetup.exe
2010-02-03 18:11 . 2010-02-03 18:11 6480280 ----a-w- c:\programmi\vnlt6565.exe
2010-02-03 18:10 . 2010-02-03 18:10 5115824 ----a-w- c:\programmi\mbam-setup.exe
2010-02-03 18:09 . 2010-02-03 18:09 9694356 ----a-w- c:\programmi\spybotsd152.zip
2010-01-30 10:59 . 2010-01-30 10:59 1401344 ----a-w- c:\programmi\HijackThis.msi
2010-01-27 18:13 . 2010-01-27 18:13 15582536 ----a-w- c:\programmi\sd_5.1.zip
2010-01-24 11:09 . 2010-01-24 11:08 32494896 ----a-w- c:\programmi\QuickTimeInstaller.exe
2009-12-20 17:20 . 2009-12-20 17:19 91338304 ----a-w- c:\programmi\Ad-AwareInstallation.exe
2009-05-03 18:58 . 2009-05-03 18:58 10894157 ----a-w- c:\programmi\Jasc Animation Shop 3.11 Full.zip
2009-02-15 09:56 . 2009-02-15 09:56 6948362 ----a-w- c:\programmi\PocketDivXEncoder_0.3.60_2.rar
2008-11-11 12:22 . 2008-11-11 12:22 2955128 ----a-w- c:\programmi\ccsetup213.exe
2008-10-11 12:08 . 2008-10-11 12:08 307811 ----a-w- c:\programmi\_Office.Genuine.Advantage.Validation. v1.7.102.0 Cracked-Squiccio(Chicchedicala).zip
2008-06-07 22:23 . 2008-06-07 22:24 399000 ----a-w- c:\programmi\switchsetup.exe
2008-05-19 04:11 . 2009-02-15 09:58 7101440 ----a-w- c:\programmi\PocketDivXEncoder_0.3.60_2.exe
2008-05-18 20:04 . 2008-05-18 20:04 3168382 ----a-w- c:\programmi\SopCast_3.0.3_by_Myp2p.eu_official.zi p
2008-04-05 15:48 . 2008-04-05 15:49 1491592 ----a-w- c:\programmi\install_flash_player.exe
2008-03-27 22:55 . 2008-03-27 22:54 376146 ----a-w- c:\programmi\AlbumWrap_Extractor.zip
2008-03-08 11:35 . 2008-03-08 11:35 1423640 ----a-w- c:\programmi\dopdf.exe
2008-01-04 20:50 . 2008-01-04 20:50 976836 ----a-w- c:\programmi\slsk157test12c.exe
2007-11-11 21:24 . 2007-11-11 21:24 15622673 ----a-w- c:\programmi\adaware2007l.zip
2007-09-16 08:23 . 2007-09-16 08:23 51418424 ----a-w- c:\programmi\iTunesSetup.exe
2007-05-03 20:14 . 2007-05-03 20:14 4297883 ----a-w- c:\programmi\BitComet_0.70.zip
2007-04-28 12:17 . 2007-04-28 12:17 98512 ----a-w- c:\programmi\RealPlayer10-5GOLD_it.exe
2003-11-20 12:54 . 2007-04-28 14:22 307723 ----a-w- c:\programmi\oggdropXPd.zip
.
codice:
<pre>
c:\programmi\Alwil Software\Avast4\ashDisp .exe
c:\programmi\CyberLink\PowerDVD\PDVDServ .exe
c:\programmi\CyberLink\PowerDVD\Language\Language .exe
c:\programmi\File comuni\Ahead\Lib\NeroCheck .exe
c:\programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier .exe
c:\programmi\Sony\SonicStage\SsAAD .exe
c:\programmi\VIA\RAID\raid_tool .exe
c:\windows\system32\ctfmon .exe
</pre>