apri una pagina del blocco note e copia incolla quanto segue

File::
c:\windows\system32\drivers\losfwnkt.sys
c:\windows\system32\drivers\xbicv.sys


Driver::
losfwnkt
xbicv

Registry::
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\R oot\losfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\ losfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\ losfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\ losfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\ losfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\losfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\l osfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\l osfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\l osfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\l osfwnkt]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\R oot\xbicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\ xbicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\ xbicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\ xbicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\ xbicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\xbicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\x bicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\x bicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\x bicv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\x bicv]
salva la pagina nominandola obligatoriamente in CFScript.txt

a questo punto trascina e lascia il file CFScript.txt sull'icona di combofix



lascialo lavorare fino alla fine e posta il nuovo log