non riesco a installare antivirus nè fare aggiornamenti... come mai ???![]()
non riesco a installare antivirus nè fare aggiornamenti... come mai ???![]()
Facilmente hai un virus che cerca di sopravvivere.Fatti spostare nella sezione apposita.
Amaro C++, il gusto pieno dell'undefined behavior.
Potresti provare ad avviare in modalità provvisoria e fare pulizia da lì. Comunque, ho segnalato il tuo post ad un moderatore che ti sposterà in "Sicurezza informatica e virus", ti guideranno gli utenti di quella sezione.
Amaro C++, il gusto pieno dell'undefined behavior.
ok grazie...comunque in modalità provvisoria riesco ad avviare quasi tutto ma non so da dove iniziare..![]()
ciao
prova a fare questa scansione
scarica combofix sul desktop
devi rinominare il file prima di salvarlo sul desktop in abc.exe
(per rinominare il file, quando lo scarichi ti chiede dove salvarlo e ti compare la casella "nome file" ,basta che cambi il nome che ti appare in abc.exe)
Fatto questo, clicca su start>esegui, nel box bianco copia e incolla questo comando, virgolette comprese:
"%userprofile%\desktop\abc.exe" /killall
Premi OK, se tutto va bene parte il programma che potrebbe impiegare molto (non fare altre manovre durante la scansione),una volta terminata, se tutto è andato bene, in C:\ dovresti trovare il file combofix.txt , riavvia in modalità normale e posta il contenuto del file o allegalo.
ComboFix 11-10-07.04 - Max 07/10/2011 21.11.40.3.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.39.1040.18.1534.1007 [GMT 2:00]
Eseguito da: d:\documents and settings\Max\Documenti\Download\ComboFix.exe
.
.
((((((((((((((((((((((((( Files Creati Da 2011-09-07 al 2011-10-07 )))))))))))))))))))))))))))))))))))
.
.
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )
.
2011-10-07 14:22 . 2008-04-13 17:14 510464 ----a-w- d:\windows\system32\winlogon.exe
2011-09-29 07:23 . 2011-10-07 14:55 134104 ----a-w- d:\programmi\mozilla firefox\components\browsercomps.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2011-10-07 . 90F406811EE1EEE294792D00E21CA16C . 510464 . . [5.1.2600.5512] . . d:\windows\system32\winlogon.exe
.
((((((((((((((((((((((((((((( SnapShot@2011-10-07_16.42.05 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-10-07 18:47 . 2009-08-06 17:24 44768 d:\windows\system32\wups2.dll
+ 2011-10-07 14:07 . 2009-08-06 17:24 53472 d:\windows\system32\wuauclt.exe
+ 2011-10-07 19:01 . 2009-01-07 16:21 26144 d:\windows\system32\spupdsvc.exe
+ 2011-10-07 19:01 . 2009-01-07 16:21 18464 d:\windows\system32\spmsg.dll
+ 2011-10-07 18:47 . 2009-08-06 17:24 35552 d:\windows\system32\SoftwareDistribution\Setup\Ser viceStartup\wups.dll\7.4.7600.226\wups.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 46592 d:\windows\system32\pngfilt.dll
- 2006-03-02 11:00 . 2011-10-07 16:19 72328 d:\windows\system32\perfc010.dat
+ 2006-03-02 11:00 . 2011-10-07 19:07 72328 d:\windows\system32\perfc010.dat
+ 2006-03-02 11:00 . 2011-10-07 19:07 60114 d:\windows\system32\perfc009.dat
- 2006-03-02 11:00 . 2011-10-07 16:19 60114 d:\windows\system32\perfc009.dat
+ 2009-01-07 16:20 . 2009-01-07 16:20 23552 d:\windows\system32\normaliz.dll
+ 2009-01-07 16:20 . 2009-01-07 16:20 24576 d:\windows\system32\nlsdl.dll
+ 2008-04-13 16:49 . 2009-03-08 02:31 48128 d:\windows\system32\mshtmler.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 66560 d:\windows\system32\mshtmled.dll
+ 2008-04-13 17:14 . 2009-03-08 02:31 45568 d:\windows\system32\mshta.exe
+ 2009-03-08 02:31 . 2009-03-08 02:31 13312 d:\windows\system32\msfeedssync.exe
+ 2009-03-08 02:31 . 2009-03-08 02:31 55296 d:\windows\system32\msfeedsbs.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 43008 d:\windows\system32\licmgr10.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 25600 d:\windows\system32\jsproxy.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 94720 d:\windows\system32\inseng.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 34816 d:\windows\system32\imgutil.dll
+ 2009-03-08 02:32 . 2009-03-08 02:32 36864 d:\windows\system32\ieudinit.exe
+ 2008-04-13 17:13 . 2009-03-08 02:32 71680 d:\windows\system32\iesetup.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 55808 d:\windows\system32\iernonce.dll
+ 2009-01-07 16:20 . 2009-01-07 16:20 26112 d:\windows\system32\idndl.dll
+ 2009-03-08 02:31 . 2009-03-08 02:31 59904 d:\windows\system32\icardie.dll
+ 2011-10-07 14:07 . 2009-08-06 17:24 53472 d:\windows\system32\dllcache\wuauclt.exe
+ 2008-04-13 17:13 . 2009-03-08 02:31 46592 d:\windows\system32\dllcache\pngfilt.dll
+ 2008-04-13 16:49 . 2009-03-08 02:31 48128 d:\windows\system32\dllcache\mshtmler.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 66560 d:\windows\system32\dllcache\mshtmled.dll
+ 2008-04-13 17:14 . 2009-03-08 02:31 45568 d:\windows\system32\dllcache\mshta.exe
+ 2008-04-13 17:13 . 2009-03-08 02:34 43008 d:\windows\system32\dllcache\licmgr10.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 25600 d:\windows\system32\dllcache\jsproxy.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 94720 d:\windows\system32\dllcache\inseng.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 34816 d:\windows\system32\dllcache\imgutil.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 71680 d:\windows\system32\dllcache\iesetup.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 55808 d:\windows\system32\dllcache\iernonce.dll
+ 2011-10-07 14:06 . 2009-03-08 02:24 68608 d:\windows\system32\dllcache\hmmapi.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 18944 d:\windows\system32\dllcache\corpol.dll
+ 2008-04-13 17:13 . 2009-08-06 17:24 96480 d:\windows\system32\dllcache\cdm.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 72704 d:\windows\system32\dllcache\admparse.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 18944 d:\windows\system32\corpol.dll
+ 2008-04-13 17:13 . 2009-08-06 17:24 96480 d:\windows\system32\cdm.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 72704 d:\windows\system32\admparse.dll
+ 2009-08-06 17:24 . 2009-08-06 17:24 44768 d:\windows\SoftwareDistribution\WebSetup\wups2.dll
+ 2009-08-06 17:24 . 2009-08-06 17:24 35552 d:\windows\SoftwareDistribution\WebSetup\wups.dll
+ 2009-08-06 17:24 . 2009-08-06 17:24 53472 d:\windows\SoftwareDistribution\WebSetup\wuauclt.e xe
+ 2009-08-06 17:24 . 2009-08-06 17:24 96480 d:\windows\SoftwareDistribution\WebSetup\cdm.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 37888 d:\windows\ie8\url.dll
+ 2011-10-07 19:01 . 2009-03-08 18:34 58448 d:\windows\ie8\spuninst\iecustom.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 39424 d:\windows\ie8\pngfilt.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 97280 d:\windows\ie8\occache.dll
+ 2011-10-07 19:01 . 2008-04-13 16:49 57344 d:\windows\ie8\mshtmler.dll
+ 2011-10-07 19:01 . 2008-04-13 17:14 29184 d:\windows\ie8\mshta.exe
+ 2011-10-07 19:01 . 2008-04-13 17:13 22016 d:\windows\ie8\licmgr10.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 15872 d:\windows\ie8\jsproxy.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 96768 d:\windows\ie8\inseng.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 35840 d:\windows\ie8\imgutil.dll
+ 2011-10-07 19:01 . 2008-04-13 17:14 93184 d:\windows\ie8\iexplore.exe
+ 2011-10-07 19:01 . 2008-04-13 17:13 63488 d:\windows\ie8\iesetup.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 49152 d:\windows\ie8\iernonce.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 81920 d:\windows\ie8\ieencode.dll
+ 2011-10-07 19:01 . 2008-04-13 17:14 34304 d:\windows\ie8\ie4uinit.exe
+ 2011-10-07 19:01 . 2008-04-13 17:13 38912 d:\windows\ie8\hmmapi.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 35328 d:\windows\ie8\corpol.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 61440 d:\windows\ie8\admparse.dll
- 2008-04-13 17:14 . 2008-04-13 17:14 121856 d:\windows\system32\xmllite.dll
+ 2008-04-13 17:14 . 2009-01-07 16:21 121856 d:\windows\system32\xmllite.dll
+ 2011-10-07 14:07 . 2009-08-06 17:23 209624 d:\windows\system32\wuweb.dll
+ 2011-10-07 14:07 . 2009-08-06 17:24 327896 d:\windows\system32\wucltui.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 914944 d:\windows\system32\wininet.dll
+ 2009-03-08 02:34 . 2009-03-08 02:34 208384 d:\windows\system32\WinFXDocObj.exe
+ 2008-04-13 17:13 . 2009-03-08 02:34 236544 d:\windows\system32\webcheck.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 420352 d:\windows\system32\vbscript.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 105984 d:\windows\system32\url.dll
+ 2011-10-07 18:47 . 2009-08-06 17:23 575704 d:\windows\system32\SoftwareDistribution\Setup\Ser viceStartup\wuapi.dll\7.4.7600.226\wuapi.dll
- 2006-03-02 11:00 . 2011-10-07 16:19 444138 d:\windows\system32\perfh010.dat
+ 2006-03-02 11:00 . 2011-10-07 19:07 444138 d:\windows\system32\perfh010.dat
+ 2006-03-02 11:00 . 2011-10-07 19:07 397894 d:\windows\system32\perfh009.dat
- 2006-03-02 11:00 . 2011-10-07 16:19 397894 d:\windows\system32\perfh009.dat
+ 2008-04-13 17:13 . 2009-03-08 02:34 109568 d:\windows\system32\occache.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 611840 d:\windows\system32\mstime.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 193536 d:\windows\system32\msrating.dll
+ 2006-03-02 11:00 . 2009-03-08 02:22 156160 d:\windows\system32\msls31.dll
+ 2009-03-08 02:32 . 2009-03-08 02:32 594432 d:\windows\system32\msfeeds.dll
+ 2009-01-07 16:20 . 2009-01-07 16:20 265720 d:\windows\system32\msdbg2.dll
+ 2011-10-07 18:13 . 2011-10-07 18:13 247968 d:\windows\system32\Macromed\Flash\FlashUtil11c_Pl ugin.exe
+ 2008-04-13 17:13 . 2009-03-08 02:33 726528 d:\windows\system32\jscript.dll
+ 2009-03-08 02:22 . 2009-03-08 02:22 164352 d:\windows\system32\ieui.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 183808 d:\windows\system32\iepeers.dll
+ 2008-04-13 17:13 . 2009-03-08 12:09 391536 d:\windows\system32\iedkcs32.dll
+ 2009-03-08 02:11 . 2009-03-08 02:11 445952 d:\windows\system32\ieapfltr.dll
+ 2006-03-02 11:00 . 2009-03-08 02:32 163840 d:\windows\system32\ieakui.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 229376 d:\windows\system32\ieaksie.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 125952 d:\windows\system32\ieakeng.dll
+ 2008-04-13 17:14 . 2009-03-08 02:32 173056 d:\windows\system32\ie4uinit.exe
+ 2008-04-13 17:13 . 2009-03-08 02:31 216064 d:\windows\system32\dxtrans.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 348160 d:\windows\system32\dxtmsft.dll
+ 2011-10-07 14:07 . 2009-08-06 17:23 209624 d:\windows\system32\dllcache\wuweb.dll
+ 2011-10-07 14:07 . 2009-08-06 17:24 327896 d:\windows\system32\dllcache\wucltui.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 914944 d:\windows\system32\dllcache\wininet.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 236544 d:\windows\system32\dllcache\webcheck.dll
+ 2011-10-07 14:07 . 2009-03-08 02:33 759296 d:\windows\system32\dllcache\VGX.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 420352 d:\windows\system32\dllcache\vbscript.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 105984 d:\windows\system32\dllcache\url.dll
+ 2009-01-07 16:20 . 2009-01-07 16:20 134144 d:\windows\system32\dllcache\sqmapi.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 109568 d:\windows\system32\dllcache\occache.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 611840 d:\windows\system32\dllcache\mstime.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 193536 d:\windows\system32\dllcache\msrating.dll
+ 2006-03-02 11:00 . 2009-03-08 02:22 156160 d:\windows\system32\dllcache\msls31.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 726528 d:\windows\system32\dllcache\jscript.dll
+ 2011-10-07 14:06 . 2009-03-08 12:09 638816 d:\windows\system32\dllcache\iexplore.exe
+ 2008-04-13 17:13 . 2009-03-08 02:31 183808 d:\windows\system32\dllcache\iepeers.dll
+ 2008-04-13 17:13 . 2009-03-08 12:09 391536 d:\windows\system32\dllcache\iedkcs32.dll
+ 2006-03-02 11:00 . 2009-03-08 02:32 163840 d:\windows\system32\dllcache\ieakui.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 229376 d:\windows\system32\dllcache\ieaksie.dll
+ 2008-04-13 17:13 . 2009-03-08 02:33 125952 d:\windows\system32\dllcache\ieakeng.dll
+ 2008-04-13 17:14 . 2009-03-08 02:32 173056 d:\windows\system32\dllcache\ie4uinit.exe
+ 2008-04-13 17:13 . 2009-03-08 02:31 216064 d:\windows\system32\dllcache\dxtrans.dll
+ 2008-04-13 17:13 . 2009-03-08 02:31 348160 d:\windows\system32\dllcache\dxtmsft.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 128512 d:\windows\system32\dllcache\advpack.dll
+ 2008-04-13 17:13 . 2009-03-08 02:32 128512 d:\windows\system32\advpack.dll
+ 2009-08-06 17:24 . 2009-08-06 17:24 327896 d:\windows\SoftwareDistribution\WebSetup\wucltui.d ll
+ 2009-08-06 17:23 . 2009-08-06 17:23 575704 d:\windows\SoftwareDistribution\WebSetup\wuapi.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 668672 d:\windows\ie8\wininet.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 280576 d:\windows\ie8\webcheck.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 851968 d:\windows\ie8\vgx.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 434176 d:\windows\ie8\vbscript.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 620544 d:\windows\ie8\urlmon.dll
+ 2011-10-07 19:01 . 2009-01-07 16:21 401952 d:\windows\ie8\spuninst\updspapi.dll
+ 2011-10-07 19:01 . 2009-01-07 16:21 234016 d:\windows\ie8\spuninst\spuninst.exe
+ 2011-10-07 19:01 . 2008-04-13 17:13 532480 d:\windows\ie8\mstime.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 146432 d:\windows\ie8\msrating.dll
+ 2011-10-07 19:01 . 2006-03-02 11:00 146432 d:\windows\ie8\msls31.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 449024 d:\windows\ie8\mshtmled.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 512000 d:\windows\ie8\jscript.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 251904 d:\windows\ie8\iepeers.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 323584 d:\windows\ie8\iedkcs32.dll
+ 2011-10-07 19:01 . 2006-03-02 11:00 237568 d:\windows\ie8\ieakui.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 221184 d:\windows\ie8\ieaksie.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 143360 d:\windows\ie8\ieakeng.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 205312 d:\windows\ie8\dxtrans.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 357888 d:\windows\ie8\dxtmsft.dll
+ 2011-10-07 19:01 . 2008-04-13 17:13 101888 d:\windows\ie8\advpack.dll
+ 2011-10-07 14:07 . 2009-08-06 17:23 1929952 d:\windows\system32\wuaueng.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 1206784 d:\windows\system32\urlmon.dll
+ 2008-04-13 17:13 . 2009-03-08 02:41 5937152 d:\windows\system32\mshtml.dll
+ 2011-10-07 18:13 . 2011-10-07 18:13 8522400 d:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2009-03-08 02:32 . 2009-03-08 02:32 1985024 d:\windows\system32\iertutil.dll
+ 2009-02-06 19:07 . 2009-02-06 19:07 3698584 d:\windows\system32\ieapfltr.dat
+ 2011-10-07 14:07 . 2009-08-06 17:23 1929952 d:\windows\system32\dllcache\wuaueng.dll
+ 2008-04-13 17:13 . 2009-03-08 02:34 1206784 d:\windows\system32\dllcache\urlmon.dll
+ 2008-04-13 17:13 . 2009-03-08 02:41 5937152 d:\windows\system32\dllcache\mshtml.dll
+ 2009-08-06 17:23 . 2009-08-06 17:23 1929952 d:\windows\SoftwareDistribution\WebSetup\wuaueng.d ll
+ 2011-10-07 19:01 . 2008-04-13 17:13 3066880 d:\windows\ie8\mshtml.dll
+ 2009-03-08 02:39 . 2009-03-08 02:39 11063808 d:\windows\system32\ieframe.dll
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-13 110592]
"NvCplDaemon"="d:\windows\system32\NvCpl.dll" [2009-03-14 13594624]
"nwiz"="nwiz.exe" [2009-03-14 1657376]
"RTHDCPL"="RTHDCPL.EXE" [2008-07-31 16806912]
"SynTPEnh"="d:\programmi\Synaptics\SynTP\SynTPEnh. exe" [2008-10-17 1347584]
"Malwarebytes' Anti-Malware"="d:\programmi\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-08-31 449608]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\Cur rentVersion\Run]
"CTFMON.EXE"="d:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless_Selector]
2009-05-14 07:23 327680 ----a-w- d:\programmi\Fujitsu\Wireless_Utility\Wireless Selector.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\GloballyOpenPorts\List]
"8406:TCP"= 8406:TCP:jpazgf
.
R2 MBAMService;MBAMService;d:\programmi\Malwarebytes' Anti-Malware\mbamservice.exe [07/10/2011 17.31.12 366152]
R3 FSCSLII;FSCSLII;d:\windows\system32\drivers\FSCSLI I.sys [07/10/2011 16.42.54 14848]
R3 MBAMProtector;MBAMProtector;d:\windows\system32\dr ivers\mbam.sys [07/10/2011 17.31.09 22216]
.
Contenuto della cartella 'Scheduled Tasks'
.
2011-10-07 d:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1060284298-2147103891-1801674531-1004Core.job
- d:\documents and settings\Max\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2011-10-07 15:51]
.
2011-10-07 d:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1060284298-2147103891-1801674531-1004UA.job
- d:\documents and settings\Max\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2011-10-07 15:51]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - d:\documents and settings\Max\Dati applicazioni\Mozilla\Firefox\Profiles\x2m0xoz8.def ault\
.
.
************************************************** ************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-10-07 21:13
Windows 5.1.2600 Service Pack 3 NTFS
.
scansione processi nascosti ...
.
scansione entrate autostart nascoste ...
.
Scansione files nascosti ...
.
Scansione completata con successo
Files nascosti: 0
.
************************************************** ************************
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
.
- - - - - - - > 'explorer.exe'(516)
d:\windows\system32\ieframe.dll
d:\windows\system32\webcheck.dll
.
Ora fine scansione: 2011-10-07 21:14:28
ComboFix-quarantined-files.txt 2011-10-07 19:14
ComboFix2.txt 2011-10-07 18:44
ComboFix3.txt 2011-10-07 16:42
.
Pre-Run: 154.283.438.080 byte disponibili
Post-Run: 154.288.672.768 byte disponibili
.
- - End Of File - - A427F8BC7DB659322B792B02D144DA05
non riesco a vedere di piu'
hai installato I.E.8 oggi?
Ora apri una pagina del blocco note e copia incolla quanto segue
salva la pagina nominandola obligatoriamente in CFScript.txtRegistry::
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\GloballyOpenPorts\List]
"8406:TCP"=-
a questo punto trascina e lascia il file CFScript.txt sull'icona di combofix
lascialo lavorare fino alla fine e riposta il suo log
Posta subito il log poi Scarica e installa malwarebytes.
http://www.malwarebytes.org/
Aggiornalo: clicca sulla scheda "aggiornamenti" => "controlla aggiornamenti"
Esegui una "scansione completa" (seleziona l'opzione)
A scansione completa, fai clic su OK => Mostra i Risultati.
Assicurarti che tutto sia selezionato e clicca clic su Rimuovi selezionati.
Se ti chiede di riavviare, riavvia per completare il processo di pulizia.
Posta il rapporto .