ComboFix 13-12-13.01 - Cristiano 13/12/2013 23:13:08.1.2 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.39.1040.18.4095.2409 [GMT 1:00] Eseguito da: c:\file\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((( Altre eliminazioni ))))))))))))))))))))))))))))))))))))))))))))))))))) . . C:\ErrLog.txt c:\programdata\xml2858.tmp c:\programdata\xml2859.tmp c:\programdata\xml285A.tmp c:\programdata\xml5C80.tmp c:\programdata\xml5D2D.tmp c:\programdata\xml5D3E.tmp c:\programdata\xml5D3F.tmp c:\programdata\xml6E0E.tmp c:\programdata\xml6F18.tmp c:\programdata\xml6F19.tmp c:\programdata\xml6F29.tmp c:\programdata\xml7C41.tmp c:\programdata\xml7C80.tmp c:\programdata\xml7C81.tmp c:\programdata\xml7C92.tmp c:\programdata\xml943.tmp c:\programdata\xmlA9B6.tmp c:\programdata\xmlAA05.tmp c:\programdata\xmlAA06.tmp c:\programdata\xmlAA07.tmp c:\programdata\xmlB76.tmp c:\programdata\xmlB77.tmp c:\programdata\xmlB78.tmp c:\programdata\xmlC0A0.tmp c:\programdata\xmlC19A.tmp c:\programdata\xmlC19B.tmp c:\programdata\xmlC19C.tmp c:\windows\7Loader.TAG c:\windows\IsUn0410.exe . . ((((((((((((((((((((((((( Files Creati Da 2013-11-13 al 2013-12-13 ))))))))))))))))))))))))))))))))))) . . 2013-12-13 22:21 . 2013-12-13 22:21 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-12-13 21:53 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5CEC7D33-44EA-41CF-A785-01E3C29A43BD}\mpengine.dll 2013-12-12 19:45 . 2013-12-13 20:34 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-12-12 19:45 . 2013-12-13 20:34 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-12-11 16:21 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2013-12-11 16:21 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe 2013-12-11 16:21 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL 2013-12-11 16:21 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL 2013-12-11 16:21 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll 2013-12-11 16:17 . 2013-10-04 02:16 116736 ----a-w- c:\windows\system32\drivers\drmk.sys 2013-12-11 16:17 . 2013-10-04 01:36 230400 ----a-w- c:\windows\system32\drivers\portcls.sys 2013-12-11 16:17 . 2013-10-30 02:32 335360 ----a-w- c:\windows\system32\msieftp.dll 2013-12-11 16:17 . 2013-10-30 02:19 301568 ----a-w- c:\windows\SysWow64\msieftp.dll 2013-12-11 16:17 . 2013-10-19 02:18 81408 ----a-w- c:\windows\system32\imagehlp.dll 2013-12-11 16:17 . 2013-10-19 01:36 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll 2013-12-11 16:17 . 2013-11-12 02:23 2048 ----a-w- c:\windows\system32\tzres.dll 2013-12-11 16:17 . 2013-11-12 02:07 2048 ----a-w- c:\windows\SysWow64\tzres.dll 2013-12-11 16:17 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-12-11 16:17 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-12-11 16:17 . 2013-10-30 01:24 3155968 ----a-w- c:\windows\system32\win32k.sys 2013-12-11 16:15 . 2013-10-12 02:32 150016 ----a-w- c:\windows\system32\wshom.ocx 2013-12-11 16:15 . 2013-10-12 02:31 202752 ----a-w- c:\windows\system32\scrrun.dll 2013-12-11 16:15 . 2013-10-12 02:04 121856 ----a-w- c:\windows\SysWow64\wshom.ocx 2013-12-11 16:15 . 2013-10-12 02:03 163840 ----a-w- c:\windows\SysWow64\scrrun.dll 2013-12-11 16:15 . 2013-10-12 01:33 156160 ----a-w- c:\windows\system32\cscript.exe 2013-12-11 16:15 . 2013-10-12 01:33 168960 ----a-w- c:\windows\system32\wscript.exe 2013-12-11 16:15 . 2013-10-12 01:15 141824 ----a-w- c:\windows\SysWow64\wscript.exe 2013-12-11 16:15 . 2013-10-12 01:15 126976 ----a-w- c:\windows\SysWow64\cscript.exe 2013-12-09 17:24 . 2013-12-09 17:24 -------- d-sh--we c:\windows\SysWow64\config\systemprofile\Menu Avvio 2013-12-08 20:51 . 2013-12-08 20:51 -------- d-----w- c:\users\Cristiano\AppData\Roaming\Malwarebytes 2013-12-08 20:48 . 2013-12-08 20:48 -------- d-----w- c:\programdata\Malwarebytes 2013-12-08 20:36 . 2013-12-08 20:38 -------- d-----w- C:\AdwCleaner 2013-12-08 07:19 . 2013-12-08 07:20 -------- d-----w- c:\programdata\DriverGenius 2013-12-04 20:49 . 2013-12-04 21:00 -------- d-----w- c:\users\Cristiano\AppData\Roaming\DirectoryListPrintPro 2013-12-01 13:11 . 2013-12-01 13:11 -------- d-----w- c:\users\Cristiano\AppData\Local\Risen2 2013-11-29 17:56 . 2013-11-29 17:56 -------- d-----w- c:\windows\Migration 2013-11-21 22:36 . 2013-11-21 22:37 -------- d-----w- c:\users\Cristiano\AppData\Roaming\Nico Mak Computing 2013-11-21 21:56 . 2013-11-21 21:56 -------- d-----w- C:\FFOutput 2013-11-16 09:00 . 2013-11-16 09:00 -------- d-----w- c:\windows\it 2013-11-16 08:58 . 2013-02-05 21:06 57840 ----a-w- c:\windows\system32\drivers\fssfltr.sys 2013-11-16 08:58 . 2013-11-16 08:58 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2013-11-16 08:57 . 2013-11-16 08:57 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\db6dc9271cee2a905\DSETUP.dll 2013-11-16 08:57 . 2013-11-16 08:57 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\db6dc9271cee2a905\DXSETUP.exe 2013-11-16 08:57 . 2013-11-16 08:57 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\db6dc9271cee2a905\dsetup32.dll 2013-11-16 08:57 . 2013-11-16 08:57 94040 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\d3e7808e1cee2a904\DSETUP.dll 2013-11-16 08:57 . 2013-11-16 08:57 525656 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\d3e7808e1cee2a904\DXSETUP.exe 2013-11-16 08:57 . 2013-11-16 08:57 1691480 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\d3e7808e1cee2a904\dsetup32.dll 2013-11-16 08:57 . 2013-11-16 08:57 89944 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\d12e2cae1cee2a903\DSETUP.dll 2013-11-16 08:57 . 2013-11-16 08:57 537432 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\d12e2cae1cee2a903\DXSETUP.exe 2013-11-16 08:57 . 2013-11-16 08:57 1801048 ----a-w- c:\program files (x86)\Common Files\Windows Live\.cache\d12e2cae1cee2a903\dsetup32.dll 2013-11-16 08:53 . 2013-10-04 02:28 190464 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll 2013-11-16 08:53 . 2013-10-04 02:25 197120 ----a-w- c:\windows\system32\credui.dll 2013-11-16 08:53 . 2013-10-04 02:24 1930752 ----a-w- c:\windows\system32\authui.dll 2013-11-16 08:53 . 2013-10-04 01:58 152576 ----a-w- c:\windows\SysWow64\SmartcardCredentialProvider.dll 2013-11-16 08:53 . 2013-10-04 01:56 168960 ----a-w- c:\windows\SysWow64\credui.dll 2013-11-16 08:53 . 2013-10-04 01:56 1796096 ----a-w- c:\windows\SysWow64\authui.dll 2013-11-16 08:53 . 2013-09-25 02:23 1030144 ----a-w- c:\windows\system32\TSWorkspace.dll 2013-11-16 08:53 . 2013-09-25 01:57 792576 ----a-w- c:\windows\SysWow64\TSWorkspace.dll 2013-11-15 22:09 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-12-11 16:17 . 2010-01-15 02:25 90708896 ----a-w- c:\windows\system32\MRT.exe 2013-11-13 17:36 . 2011-03-12 08:26 1032416 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2013-11-13 17:36 . 2010-10-20 16:18 65264 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2013-11-13 17:36 . 2011-01-11 17:43 334648 ----a-w- c:\windows\system32\aswBoot.exe 2013-11-13 17:36 . 2010-10-20 16:18 38984 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2013-11-13 17:36 . 2010-10-20 16:18 84328 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2013-11-13 17:35 . 2010-10-20 16:18 43152 ----a-w- c:\windows\avastSS.scr 2013-11-13 17:12 . 2010-10-20 16:18 409832 ----a-w- c:\windows\system32\drivers\aswsp.sys 2013-11-11 04:50 . 2010-01-15 02:24 267936 ------w- c:\windows\system32\MpSigStub.exe 2013-11-01 12:01 . 2013-03-02 06:32 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2013-11-01 12:01 . 2013-03-02 06:32 205320 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2013-11-01 12:01 . 2012-03-03 18:51 92544 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2013-10-25 15:45 . 2013-10-25 15:45 163504 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10145.bin 2013-10-12 02:30 . 2013-11-13 17:28 830464 ----a-w- c:\windows\system32\nshwfp.dll 2013-10-12 02:29 . 2013-11-13 17:28 859648 ----a-w- c:\windows\system32\IKEEXT.DLL 2013-10-12 02:29 . 2013-11-13 17:28 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL 2013-10-12 02:03 . 2013-11-13 17:28 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll 2013-10-12 02:01 . 2013-11-13 17:28 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL 2013-10-08 06:50 . 2013-11-13 17:29 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-10-05 20:25 . 2013-11-13 17:28 1474048 ----a-w- c:\windows\system32\crypt32.dll 2013-10-05 19:57 . 2013-11-13 17:28 1168384 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-10-03 02:23 . 2013-11-13 17:28 404480 ----a-w- c:\windows\system32\gdi32.dll 2013-10-03 02:00 . 2013-11-13 17:28 311808 ----a-w- c:\windows\SysWow64\gdi32.dll 2013-09-28 01:09 . 2013-11-13 17:28 497152 ----a-w- c:\windows\system32\drivers\afd.sys 2013-09-25 02:26 . 2013-11-13 17:28 95680 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2013-09-25 02:26 . 2013-11-13 17:28 154560 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2013-09-25 02:23 . 2013-11-13 17:28 28672 ----a-w- c:\windows\system32\sspisrv.dll 2013-09-25 02:23 . 2013-11-13 17:28 135680 ----a-w- c:\windows\system32\sspicli.dll 2013-09-25 02:23 . 2013-11-13 17:28 28160 ----a-w- c:\windows\system32\secur32.dll 2013-09-25 02:22 . 2013-11-13 17:28 340992 ----a-w- c:\windows\system32\schannel.dll 2013-09-25 02:21 . 2013-11-13 17:28 307200 ----a-w- c:\windows\system32\ncrypt.dll 2013-09-25 02:21 . 2013-11-13 17:28 1447936 ----a-w- c:\windows\system32\lsasrv.dll 2013-09-25 01:58 . 2013-11-13 17:28 96768 ----a-w- c:\windows\SysWow64\sspicli.dll 2013-09-25 01:57 . 2013-11-13 17:28 22016 ----a-w- c:\windows\SysWow64\secur32.dll 2013-09-25 01:57 . 2013-11-13 17:28 247808 ----a-w- c:\windows\SysWow64\schannel.dll 2013-09-25 01:56 . 2013-11-13 17:28 220160 ----a-w- c:\windows\SysWow64\ncrypt.dll 2013-09-25 01:03 . 2013-11-13 17:28 30720 ----a-w- c:\windows\system32\lsass.exe . . ((((((((((((((((((((((((((((((((((((( Punti Reg Caricati )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* i valori vuoti & legittimi/default non sono visualizzati. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2013-11-13 3568312] "AvastUI.exe"="c:\program files\Alwil Software\Avast5\AvastUI.exe" [2013-11-13 3568312] "20131121"="c:\program files\Alwil Software\Avast5\setup\emupdate\7674a923-12d2-46dd-9117-8c2d123c3900.exe" [2013-11-23 180184] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "mixer9"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] @="" . R2 57xx SteelVine Manager;57xx SteelVine;c:\program files (x86)\ASUS\Drive Xpert\SteelVine.exe;c:\program files (x86)\ASUS\Drive Xpert\SteelVine.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 7ByteIo;7ByteIo;c:\program files (x86)\Hot CPU Tester Pro 4 LE\SysInfoX64.sys;c:\program files (x86)\Hot CPU Tester Pro 4 LE\SysInfoX64.sys [x] R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x] R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys;c:\windows\SYSNATIVE\DRIVERS\ew_usbenumfilter.sys [x] R3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\DRIVERS\ewusbnet.sys;c:\windows\SYSNATIVE\DRIVERS\ewusbnet.sys [x] R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x] R3 huawei_cdcecm;huawei_cdcecm;c:\windows\system32\DRIVERS\ew_jucdcecm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcecm.sys [x] R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys;c:\windows\SYSNATIVE\DRIVERS\ew_juextctrl.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 ivusb;Initio Driver for USB Default Controller;c:\windows\system32\DRIVERS\ivusb.sys;c:\windows\SYSNATIVE\DRIVERS\ivusb.sys [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x] R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x] R4 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S0 mv61xx;mv61xx;c:\windows\system32\DRIVERS\mv61xx.sys;c:\windows\SYSNATIVE\DRIVERS\mv61xx.sys [x] S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x] S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [x] S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys;c:\windows\SYSNATIVE\drivers\aswFsBlk.sys [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 RalinkRegistryWriter64;Ralink Registry Writer 64;c:\program files (x86)\Ralink\Common\RaRegistry64.exe;c:\program files (x86)\Ralink\Common\RaRegistry64.exe [x] S2 WDBackup;WD Backup;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [x] S2 WDDriveService;WD Drive Manager;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe;c:\program files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [x] S2 WDRulesService;WD Rules;c:\program files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe;c:\program files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe [x] S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys;c:\windows\SYSNATIVE\DRIVERS\ArcSoftKsUFilter.sys [x] S3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x] S3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x] . . Contenuto della cartella 'Scheduled Tasks' . 2013-12-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-21 06:27] . 2013-12-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-21 06:27] . 2013-12-08 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2223300681-4218495014-3192664254-1000Core.job - c:\users\Cristiano\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-16 06:46] . 2013-12-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2223300681-4218495014-3192664254-1000UA.job - c:\users\Cristiano\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-16 06:46] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2013-11-13 17:36 326944 ----a-w- c:\program files\Alwil Software\Avast5\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "snpstd3"="c:\windows\vsnpstd3.exe" [2007-05-10 835584] . ------- Scansione supplementare ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SYSTEM32\blank.htm TCP: DhcpNameServer = 192.168.1.254 FF - ProfilePath - c:\users\Cristiano\AppData\Roaming\Mozilla\Firefox\Profiles\80qtlgrd.default-1386872737985\ FF - prefs.js: browser.startup.homepage - hxxp://www.silgmaris.it/h/ . - - - - CHIAVI ORFANE RIMOSSE - - - - . HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start AddRemove-Indeo® software - c:\windows\IsUn0410.exe AddRemove-{31AE3593-448E-43AB-B865-C235F64B0FB5} - c:\programdata\{59E3981A-853B-4024-80E5-72FC64DF4CB7}\EGR-ShellExtension_setup.exe . . . --------------------- CHIAVI DI REGISTRO BLOCCATE --------------------- . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . [HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security] @Denied: (Full) (Everyone) . Ora fine scansione: 2013-12-13 23:23:26 ComboFix-quarantined-files.txt 2013-12-13 22:23 . Pre-Run: 207.709.970.432 byte disponibili Post-Run: 207.521.849.344 byte disponibili . - - End Of File - - 049879859F851077898D835055BAE4F3 A36C5E4F47E84449FF07ED3517B43A31