Punto informatico Network
Login Esegui login | Non sei registrato? Iscriviti ora (è gratuito!)
Username: Password:
  • Annuncio Pubblicitario

virus!!!

Un virus si è intromesso nel tuo computer? Vuoi navigare in tutta sicurezza? Sono sicure le transazione online? Come impedire a malintenzionati di intromettersi nel tuo pc? Come proteggere i tuoi dati? Qui trovi le risposte a queste ed altre domande

Re: virus!!!

Messaggioda pmarco66 » mer gen 18, 2012 6:26 pm

ok fatto
Avatar utente
pmarco66
Aficionado
Aficionado
 
Messaggi: 132
Iscritto il: mer ago 20, 2008 1:21 pm

Re: virus!!!

Messaggioda hashcat » mer gen 18, 2012 6:27 pm

Per completare la pulizia / risolvere alcuni problemi potrebbe essere necessario il disco di Windows 7, ne possiedi uno?
In caso contrario hai la possibilità di fartelo prestare?

P.S.: Fatto cosa?
<<Intelligence is the ability to avoid doing work, yet getting the work done.>>
Linus Torvalds

EX [MLI] Power User.
Avatar utente
hashcat
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 2285
Iscritto il: lun ott 25, 2010 1:26 pm

Re: virus!!!

Messaggioda pmarco66 » mer gen 18, 2012 7:20 pm

si ho il disco di windows 7
"ok fatto" era relativo al post del log di otl
c'e' presenza di worm nel pc?
Avatar utente
pmarco66
Aficionado
Aficionado
 
Messaggi: 132
Iscritto il: mer ago 20, 2008 1:21 pm


Re: virus!!!

Messaggioda hashcat » mer gen 18, 2012 9:45 pm

pmarco66 ha scritto:si ho il disco di windows 7
"ok fatto" era relativo al post del log di otl
c'e' presenza di worm nel pc?

Avrei bisogno di visionare quel log (OTL). A prima vista non ci sono segni evidenti di infezioni attive, tutt'al più qualche rimasuglio e qualche modifica al registro di sistema (niente di grave). Per quanto riguarda la modalità provvisoria ho un idea per ripristinarla.

Purtroppo al momento sono occupato, domani ti spiegherò per esteso cosa fare.

[ciao]
<<Intelligence is the ability to avoid doing work, yet getting the work done.>>
Linus Torvalds

EX [MLI] Power User.
Avatar utente
hashcat
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 2285
Iscritto il: lun ott 25, 2010 1:26 pm

Re: virus!!!

Messaggioda hashcat » gio gen 19, 2012 3:09 pm

Mentre aspetto di poter leggere il log di OTL ti suggerisco alcuni passaggi da fare:

  1. Scarica l'ultima versione di Combofix da qui e salvalo sul Desktop
  2. Disconnetti il computer da Internet
  3. Termina ogni programma inutile
  4. Chiudi/disabilita ogni Antivirus/Antispyware/Antimalware e qualunque programma di sicurezza in generale in modo che non
    interferisca con Combofix
  5. Premi WIN+R , digita notepad.exe e premi Invio
  6. Assicurati che sotto la casella formato sia disablitata la funzione "A capo automatico"
  7. Copia ed incolla nella finestra del Blocco Note il seguente script:

    Codice: Seleziona tutto
    KillAll::

    RegLock::
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

    ClearJavaCache::

    Reboot::


  8. Salva il seguente script come CFScript.txt nello stesso percorso di Combofix
  9. Trascina il file CFScript.txt sopra Combofix come mostrato nell'immagine sottostante:

    Immagine

  10. Terminata la procedura Combofix produrrà un log che si troverà in C:\ComboFix[Numero più grande].txt
  11. Il computer verrà riavviato
  12. Includi il log nel tuo prossimo messaggio

Dopo aver fatto ciò scarica il file generic_reg_fix.reg ed eseguilo.
Riavvia il computer.

Per tentare di ripristinare la modalità provvisoria utilizza Refresh PC
Per l'installazione del programma segui questi passaggi, con l'installazione predefinita viene installato il PUP:Zugo

Immagine

Dopo averlo installato, avvialo e clicca su Refresh My Windows 7 Settings:

Immagine

A questo punto esegui nuovamente il file generic_reg_fix.reg e riavvia il computer.

Come ultimo fai un po' di pulizia con OTL:

  1. Disattiva o termina tutte le protezioni in tempo reale di programmi anti-spyware, antivirus, anti-malware, che possono influenzare OTL
  2. Avvia OTL mediante doppio click
  3. Inserisci questo script nella casella Custom Scans/Fixes di OTL e clicca Run Fix

    Codice: Seleziona tutto
    :Files
    ipconfig /flushdns /c

    :commands
    [PURITY]
    [EMPTYTEMP]
    [EMPTYFLASH]
    [CLEARALLRESTOREPOINTS]


  4. Il computer verrà riavviato.

A questo punto la modalità provvisoria dovrebbe funzionare nuovamente. Per quanto riguarda Sophos ti tocca reinstallare il programma.

Fammi sapere se i problemi sussistono.

[^]
<<Intelligence is the ability to avoid doing work, yet getting the work done.>>
Linus Torvalds

EX [MLI] Power User.
Avatar utente
hashcat
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 2285
Iscritto il: lun ott 25, 2010 1:26 pm

Re: virus!!!

Messaggioda pmarco66 » gio gen 19, 2012 3:22 pm

il file di otl l'ho caricato su mediafire...forse non ho ben capito come si fa...
Avatar utente
pmarco66
Aficionado
Aficionado
 
Messaggi: 132
Iscritto il: mer ago 20, 2008 1:21 pm

Re: virus!!!

Messaggioda hashcat » gio gen 19, 2012 4:13 pm

pmarco66 ha scritto:il file di otl l'ho caricato su mediafire...forse non ho ben capito come si fa...

Carica il file in questione qui sul forum, oppure su paste2.org segnati il link in alto e postalo qui.

[^]
<<Intelligence is the ability to avoid doing work, yet getting the work done.>>
Linus Torvalds

EX [MLI] Power User.
Avatar utente
hashcat
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 2285
Iscritto il: lun ott 25, 2010 1:26 pm

Re: virus!!!

Messaggioda pmarco66 » gio gen 19, 2012 9:41 pm

Avatar utente
pmarco66
Aficionado
Aficionado
 
Messaggi: 132
Iscritto il: mer ago 20, 2008 1:21 pm

Re: virus!!!

Messaggioda pmarco66 » gio gen 19, 2012 10:02 pm

ComboFix 12-01-18.04 - emarco 19/01/2012 21:48:08.3.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1252.39.1040.18.3894.2445 [GMT 1:00]
Eseguito da: c:\users\emarco\Desktop\fgrg44dw45e.exe
Opzioni usate :: c:\users\emarco\Desktop\CFScript.txt
AV: Sophos Anti-Virus *Disabled/Outdated* {479CCF92-4960-B3E0-7373-BF453B467D2C}
SP: Sophos Anti-Virus *Disabled/Outdated* {FCFD2E76-6F5A-BC6E-49C3-843740C13791}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Creato nuovo punto di ripristino
.
.
((((((((((((((((((((((((( Files Creati Da 2011-12-19 al 2012-01-19 )))))))))))))))))))))))))))))))))))
.
.
2012-01-19 20:54 . 2012-01-19 20:54 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-01-18 13:37 . 2012-01-18 13:37 -------- d-----w- c:\users\emarco\AppData\Roaming\Apple Computer
2012-01-18 07:02 . 2012-01-18 07:02 -------- d-----w- c:\program files (x86)\Common Files\Apple
2012-01-18 07:02 . 2012-01-18 07:02 -------- d-----w- c:\program files (x86)\QuickTime
2012-01-18 07:02 . 2012-01-18 07:02 -------- d-----w- c:\programdata\Apple Computer
2012-01-18 06:54 . 2012-01-18 06:54 -------- d-----w- c:\program files (x86)\Apple Software Update
2012-01-17 23:13 . 2011-11-21 11:40 8822856 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7FAAD307-D7F1-4F54-A8DE-033B30DA7821}\mpengine.dll
2012-01-12 20:58 . 2012-01-17 22:49 25160 ----a-w- c:\windows\system32\drivers\hitmanpro36.sys
2012-01-12 20:57 . 2012-01-12 20:57 -------- d-----w- c:\program files\HitmanPro
2012-01-12 20:56 . 2012-01-12 20:58 -------- d-----w- c:\programdata\HitmanPro
2012-01-12 20:43 . 2012-01-17 22:34 -------- d-----w- C:\FyK
2012-01-11 16:51 . 2011-10-26 05:25 1572864 ----a-w- c:\windows\system32\quartz.dll
2012-01-11 16:51 . 2011-10-26 05:25 366592 ----a-w- c:\windows\system32\qdvd.dll
2012-01-11 16:51 . 2011-10-26 04:32 514560 ----a-w- c:\windows\SysWow64\qdvd.dll
2012-01-11 16:51 . 2011-10-26 04:32 1328128 ----a-w- c:\windows\SysWow64\quartz.dll
2012-01-11 16:51 . 2011-11-17 06:41 1731920 ----a-w- c:\windows\system32\ntdll.dll
2012-01-11 16:51 . 2011-11-17 05:38 1292080 ----a-w- c:\windows\SysWow64\ntdll.dll
2012-01-11 16:51 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2012-01-11 16:51 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2012-01-10 12:20 . 2012-01-10 12:20 -------- d-----w- c:\program files (x86)\Common Files\PCSuite
2012-01-10 12:19 . 2012-01-10 12:19 -------- d-----w- c:\program files (x86)\PC Connectivity Solution
2012-01-06 10:47 . 2012-01-06 10:47 -------- d-----w- c:\users\emarco\AppData\Roaming\SUPERAntiSpyware.com
2012-01-06 10:47 . 2012-01-06 10:47 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2012-01-05 10:01 . 2012-01-05 10:01 -------- d-----w- c:\users\emarco\AppData\Roaming\DVDVideoSoft
2012-01-05 10:00 . 2012-01-05 10:01 -------- d-----w- c:\program files (x86)\Common Files\DVDVideoSoft
2012-01-05 10:00 . 2012-01-05 10:00 -------- d-----w- c:\program files (x86)\DVDVideoSoft
2012-01-05 09:37 . 2012-01-05 09:37 -------- d-----w- c:\programdata\eMule
2012-01-05 09:37 . 2012-01-05 09:37 -------- d-----w- c:\users\emarco\AppData\Local\eMule
2012-01-05 09:37 . 2012-01-05 09:37 -------- d-----w- c:\program files (x86)\eMule
2012-01-04 18:22 . 2012-01-04 18:22 -------- d-----w- c:\users\emarco\AppData\Roaming\Panasonic
2012-01-04 18:16 . 2012-01-12 21:17 -------- d-----w- c:\users\Administrator
2012-01-04 18:16 . 2012-01-04 18:16 -------- d-----w- c:\program files (x86)\MP4Tool
2012-01-04 16:19 . 2012-01-04 16:19 -------- d-----w- c:\users\emarco\AppData\Local\Apple
2012-01-04 16:19 . 2012-01-04 16:19 -------- d-----w- c:\programdata\Apple
2012-01-04 16:18 . 2012-01-04 16:18 -------- d-----w- c:\users\emarco\AppData\Local\ArcSoft
2012-01-04 16:17 . 2006-09-18 07:50 22784 ----a-w- c:\windows\SysWow64\drivers\afc.sys
2012-01-04 16:17 . 2005-04-27 15:36 245408 ----a-w- c:\windows\SysWow64\unicows.dll
2012-01-04 16:17 . 2012-01-04 16:17 -------- d-----w- c:\program files (x86)\Common Files\ArcSoft
2012-01-04 16:16 . 2012-01-04 16:17 -------- d-----w- c:\windows\SysWow64\MediaImpression Slideshow
2012-01-04 16:16 . 2012-01-04 16:16 -------- d-----w- c:\program files (x86)\ArcSoft
2012-01-04 16:14 . 2007-06-21 23:10 501912 ----a-w- c:\windows\SysWow64\PICSDK2.dll
2012-01-04 16:14 . 2006-10-30 23:10 71840 ----a-w- c:\windows\SysWow64\EPPicMgr.dll
2012-01-04 16:14 . 2006-10-30 23:10 120992 ----a-w- c:\windows\SysWow64\EpPicPrt.dll
2012-01-04 16:14 . 2006-10-19 23:10 80024 ----a-w- c:\windows\SysWow64\PICSDK.dll
2012-01-04 16:14 . 2006-10-19 23:10 108704 ----a-w- c:\windows\SysWow64\PICEntry.dll
2012-01-04 16:13 . 2008-09-25 20:07 45056 ----a-w- c:\windows\SysWow64\PhDi2.sys
2012-01-04 16:00 . 2012-01-04 16:00 -------- d-----w- c:\users\emarco\AppData\Roaming\InstallShield
2012-01-04 15:57 . 2012-01-04 16:13 -------- d-----w- c:\program files (x86)\Panasonic
2012-01-03 20:27 . 2010-11-16 20:24 750440 ------w- c:\windows\system32\HPDiscoPM9311.dll
2012-01-03 20:27 . 2012-01-03 20:29 -------- d-----w- c:\programdata\HP
2012-01-03 20:27 . 2012-01-03 20:27 -------- d-----w- c:\program files (x86)\HP
2012-01-03 20:26 . 2012-01-03 20:26 -------- d-----w- c:\program files\HP
2012-01-03 20:11 . 2012-01-03 20:32 -------- d-----w- c:\users\emarco\AppData\Local\HP
2012-01-03 13:35 . 2012-01-03 13:35 -------- d-----w- c:\users\emarco\AppData\Local\S2PC
2012-01-03 13:35 . 2008-06-26 02:44 587264 ----a-w- c:\windows\system32\ssmgr64.cpl
2012-01-03 13:35 . 2012-01-03 13:35 -------- d-----w- c:\windows\Samsung
2012-01-03 13:30 . 2001-09-05 02:18 77824 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2012-01-03 13:30 . 2001-09-05 02:18 225280 ----a-w- c:\program files (x86)\Common Files\InstallShield\IScript\iscript.dll
2012-01-03 13:30 . 2001-09-05 02:14 176128 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2012-01-03 13:30 . 2001-09-05 02:13 32768 ----a-w- c:\program files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2012-01-03 13:30 . 2007-10-23 02:53 110592 ----a-r- c:\windows\Wiainst.exe
2012-01-03 13:28 . 2009-02-03 10:08 14848 ----a-w- c:\windows\system32\SaSegFlt.dll
2012-01-03 13:28 . 2009-02-03 10:08 160768 ----a-w- c:\windows\system32\SaMinDrv.dll
2012-01-03 13:28 . 2009-02-03 10:08 36864 ----a-w- c:\windows\system32\SaImgFlt.dll
2012-01-03 13:28 . 2009-02-03 10:08 13312 ----a-w- c:\windows\system32\SaErHdlr.dll
2012-01-03 13:27 . 2012-01-03 13:27 -------- d-----w- c:\program files (x86)\Samsung
2012-01-03 12:37 . 2012-01-03 12:37 -------- d-----w- c:\program files (x86)\FreeTime
2012-01-03 12:14 . 2012-01-03 13:38 -------- d-----w- c:\program files (x86)\Common Files\Hewlett-Packard
2012-01-03 07:36 . 2012-01-03 07:36 -------- d-----w- c:\program files\Common Files\Deterministic Networks
2012-01-03 07:36 . 2012-01-03 07:36 -------- d-----w- c:\program files (x86)\Cisco Systems
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-12-10 14:24 . 2011-01-19 11:56 23152 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-11-24 04:52 . 2011-12-19 21:05 3145216 ----a-w- c:\windows\system32\win32k.sys
2011-11-18 22:03 . 2011-06-09 18:36 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-15 13:29 . 2010-11-02 09:02 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-11-05 05:32 . 2011-12-19 21:05 2048 ----a-w- c:\windows\system32\tzres.dll
2011-11-05 04:26 . 2011-12-19 21:05 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2011-11-04 01:53 . 2011-12-19 21:08 2309120 ----a-w- c:\windows\system32\jscript9.dll
2011-11-04 01:44 . 2011-12-19 21:08 1390080 ----a-w- c:\windows\system32\wininet.dll
2011-11-04 01:44 . 2011-12-19 21:08 1493504 ----a-w- c:\windows\system32\inetcpl.cpl
2011-11-04 01:34 . 2011-12-19 21:08 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2011-11-03 22:47 . 2011-12-19 21:08 1798144 ----a-w- c:\windows\SysWow64\jscript9.dll
2011-11-03 22:40 . 2011-12-19 21:08 1427456 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2011-11-03 22:39 . 2011-12-19 21:08 1127424 ----a-w- c:\windows\SysWow64\wininet.dll
2011-11-03 22:31 . 2011-12-19 21:08 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb
2011-11-01 09:07 . 2011-01-20 18:14 57856 ----a-w- c:\windows\system32\nmwcdclsx64.dll
2011-10-26 05:21 . 2011-12-19 21:05 43520 ----a-w- c:\windows\system32\csrsrv.dll
2011-10-24 13:29 . 2011-10-24 13:29 94208 ----a-w- c:\windows\SysWow64\QuickTimeVR.qtx
2011-10-24 13:29 . 2011-10-24 13:29 69632 ----a-w- c:\windows\SysWow64\QuickTime.qts
.
.
((((((((((((((((((((((((((((( SnapShot_2012-01-17_23.23.58 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-11-02 08:12 . 2012-01-18 18:18 57856 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
- 2009-07-14 05:10 . 2012-01-17 22:27 30226 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-01-19 20:36 30226 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-11-02 08:07 . 2012-01-19 20:36 12202 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3815140021-4139662573-755630772-1000_UserData.bin
- 2010-10-29 14:37 . 2012-01-17 22:29 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-29 14:37 . 2012-01-18 17:15 16384 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-29 14:37 . 2012-01-18 17:15 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-10-29 14:37 . 2012-01-17 22:29 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-01-18 17:15 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2012-01-17 22:29 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2012-01-18 06:54 . 2012-01-18 06:54 27136 c:\windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe
+ 2012-01-19 20:55 . 2012-01-19 20:55 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-01-17 22:24 . 2012-01-17 22:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-01-19 20:55 . 2012-01-19 20:55 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-01-17 22:24 . 2012-01-17 22:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2010-11-02 06:37 . 2012-01-19 08:20 204634 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2010-11-02 14:00 . 2012-01-18 20:36 263458 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-07-14 11:12 . 2012-01-19 20:39 701426 c:\windows\system32\perfh010.dat
- 2009-07-14 11:12 . 2012-01-17 22:30 701426 c:\windows\system32\perfh010.dat
+ 2009-07-14 02:36 . 2012-01-19 20:39 618912 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2012-01-17 22:30 618912 c:\windows\system32\perfh009.dat
- 2009-07-14 11:12 . 2012-01-17 22:30 128740 c:\windows\system32\perfc010.dat
+ 2009-07-14 11:12 . 2012-01-19 20:39 128740 c:\windows\system32\perfc010.dat
- 2009-07-14 02:36 . 2012-01-17 22:30 107232 c:\windows\system32\perfc009.dat
+ 2009-07-14 02:36 . 2012-01-19 20:39 107232 c:\windows\system32\perfc009.dat
+ 2009-07-14 04:46 . 2012-01-18 17:18 119688 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
- 2009-07-14 05:01 . 2012-01-17 22:23 461844 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2012-01-19 20:54 461844 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-01-18 06:54 . 2012-01-18 06:54 2323456 c:\windows\Installer\a361f.msi
+ 2010-11-13 11:40 . 2012-01-19 20:54 21512999 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-3815140021-4139662573-755630772-1000-12288.dat
+ 2012-01-18 07:02 . 2012-01-18 07:02 20311040 c:\windows\Installer\a38cb.msi
+ 2012-01-18 07:00 . 2012-01-18 07:00 26820096 c:\windows\Installer\a38c4.msi
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-12-31 39408]
"PC Suite Tray"="c:\program files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" [2011-12-16 1508408]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"NokiaMServer"="c:\program files (x86)\Common Files\Nokia\MPlatform\NokiaMServer" [X]
"PNMService"="c:\program files (x86)\Intel\IntelPNM\PNMService.exe" [2010-01-20 400896]
"IMSS"="c:\program files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" [2010-09-16 112152]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe" [2008-10-14 623992]
"DellBtrEvent"="c:\program files (x86)\Dell\Reader 2.1\DellBtrEvent.exe" [2010-05-13 160768]
"Sophos AutoUpdate Monitor"="c:\program files (x86)\Sophos\AutoUpdate\almon.exe" [2010-09-21 439536]
"LaCie Hard Drive Configuration"="c:\program files (x86)\LaCie\SAFE Hard Drive\SAFE Hard Drive Configuration.exe" [2007-01-18 3624960]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-12-24 460872]
"Samsung PanelMgr"="c:\windows\Samsung\PanelMgr\SSMMgr.exe" [2009-02-27 552960]
"3170 Scan2PC"="c:\windows\twain_32\Samsung\CLX3170\Scan2Pc.exe" [2009-01-30 503808]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2007-10-11 31232]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2011-10-24 421888]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-09-27 59240]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Dell System Manager.lnk - c:\program files\Dell\Dell System Manager\DCPSysMgr.exe [2010-8-24 1549680]
TdmNotify.lnk - c:\program files\Wave Systems Corp\Trusted Drive Manager\TdmNotify.exe [2010-3-29 185192]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~2\Sophos\SOPHOS~1\sophos_detoured.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sr.sys]
@="FSFilter System Recovery"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SophosAntiVirus]
"DisableMonitoring"=dword:00000001
.
R1 SASDIFSV;SASDIFSV;c:\users\emarco\AppData\Local\Temp\SAS_SelfExtract\SASDIFSV64.SYS [x]
R1 SASKUTIL;SASKUTIL;c:\users\emarco\AppData\Local\Temp\SAS_SelfExtract\SASKUTIL64.SYS [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Servizio di Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-31 136176]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-11-05 1436424]
R3 gupdatem;Servizio Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-31 136176]
R3 SNTUSB64;SafeNet USB SuperPro/UltraPro/HardwareKey;c:\windows\system32\DRIVERS\SNTUSB64.SYS [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Servizio Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [x]
R4 SophosBootDriver;SophosBootDriver;c:\windows\system32\DRIVERS\SophosBootDriver.sys [x]
S1 DVMIO;DVMIO;c:\program files (x86)\Dell\Reader 2.1\dvmio_x64.sys [2010-05-04 20624]
S1 SAVOnAccess;SAVOnAccess;c:\windows\system32\DRIVERS\savonaccess.sys [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 buttonsvc64;Dell ControlPoint Button Service;c:\program files\Dell\Dell ControlPoint\DCPButtonSvc.exe [2009-11-20 373024]
S2 Credential Vault Host Control Service;Credential Vault Host Control Service;c:\program files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [2010-03-23 1039776]
S2 Credential Vault Host Storage;Credential Vault Host Storage;c:\program files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [2010-03-23 31136]
S2 dcpsysmgrsvc;Dell System Manager Service;c:\program files\Dell\Dell System Manager\DCPSysMgrSvc.exe [2010-08-24 517488]
S2 DvmMDES;DeviceVM Meta Data Export Service;c:\program files (x86)\Dell\Reader 2.1\DVMExportService.exe [2010-05-04 327680]
S2 LaCie Safe Hard Drive Enabler;LaCie Safe Hard Drive Enabler;c:\program files (x86)\LaCie\SAFE Hard Drive\SafeService.exe [2006-11-30 61440]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-12-24 652872]
S2 mitsijm2011;Gestore dei processi di Autodesk Moldflow Inventor Tool Suite Integration 2011;c:\program files\Autodesk\Inventor 2011\Moldflow\bin\mitsijm.exe [2010-01-23 673792]
S2 QDLService2kDell;Qualcomm Gobi 2000 Download Service (Dell);c:\program files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exe [2010-04-26 330488]
S2 risdpcie;risdpcie;c:\windows\system32\DRIVERS\risdpe64.sys [x]
S2 Sentinel64;Sentinel64;c:\windows\System32\Drivers\Sentinel64.sys [x]
S2 SentinelKeysServer;Sentinel Keys Server;c:\program files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [2009-09-16 369952]
S2 SentinelSecurityRuntime;Sentinel Security Runtime;c:\program files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [2009-09-16 292128]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys [x]
S2 swi_service;Sophos Web Intelligence Service;c:\program files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [2010-10-08 1541360]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-09-16 2538520]
S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Accelern.sys [x]
S3 cvusbdrv;Dell ControlVault;c:\windows\system32\Drivers\cvusbdrv.sys [x]
S3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;c:\windows\system32\DRIVERS\e1k62x64.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Audio schermo Intel(R);c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 NETw5s64;Driver scheda Intel(R) Wireless WiFi Link per Windows 7 64 Bit;c:\windows\system32\DRIVERS\NETw5s64.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
Contenuto della cartella 'Scheduled Tasks'
.
2012-01-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-31 18:02]
.
2012-01-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-12-31 18:02]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\EnabledUnlockedFDEIconOverlay]
@="{30D3C2AF-9709-4D05-9CF4-13335F3C1E4A}"
[HKEY_CLASSES_ROOT\CLSID\{30D3C2AF-9709-4D05-9CF4-13335F3C1E4A}]
2010-03-29 12:00 60784 ----a-w- c:\program files\Wave Systems Corp\Trusted Drive Manager\TdmIconOverlay.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\UninitializedFdeIconOverlay]
@="{CF08DA3E-C97D-4891-A66B-E39B28DD270F}"
[HKEY_CLASSES_ROOT\CLSID\{CF08DA3E-C97D-4891-A66B-E39B28DD270F}]
2010-03-29 12:00 60784 ----a-w- c:\program files\Wave Systems Corp\Trusted Drive Manager\TdmIconOverlay.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Apoint"="c:\program files\DellTPad\Apoint.exe" [2010-06-04 392048]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-07-28 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-07-28 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-07-28 415256]
"USCService"="c:\program files\Dell\Dell ControlPoint\Security Manager\BcmDeviceAndTaskStatusService.exe" [2010-06-22 34232]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\progra~2\Sophos\SOPHOS~1\sophos_detoured_x64.dll
.
------- Scansione supplementare -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.lnf.infn.it/public/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Append to existing PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&sporta in Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - c:\users\emarco\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: SmarThru4 Capture Selection - c:\program files (x86)\SmarThru 4\x64\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - c:\program files (x86)\SmarThru 4\x64\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - c:\program files (x86)\SmarThru 4\x64\WebCapture.dll.htm
IE: SmarThru4 Web Capture - c:\program files (x86)\SmarThru 4\x64\WebCapture.dll
TCP: DhcpNameServer = 192.168.2.1
.
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Altri processi in esecuzione ------------------------
.
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\program files (x86)\Cisco Systems\VPN Client\cvpnd.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
c:\program files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\program files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
c:\program files (x86)\Sophos\AutoUpdate\ALsvc.exe
c:\program files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
c:\program files (x86)\PC Connectivity Solution\ServiceLayer.exe
c:\program files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\program files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
c:\program files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Ora fine scansione: 2012-01-19 22:01:09 - Il pc è stato riavviato
ComboFix-quarantined-files.txt 2012-01-19 21:01
ComboFix2.txt 2012-01-17 23:26
ComboFix3.txt 2012-01-12 21:17
.
Pre-Run: 28.149.522.432 byte disponibili
Post-Run: 28.005.298.176 byte disponibili
.
- - End Of File - - 63B567D61EB7FBEDDD6C9E774A7E1DF0
Avatar utente
pmarco66
Aficionado
Aficionado
 
Messaggi: 132
Iscritto il: mer ago 20, 2008 1:21 pm

Precedente

Torna a Sicurezza

Chi c’è in linea

Visitano il forum: Nessuno e 4 ospiti

Powered by phpBB © 2002, 2005, 2007, 2008 phpBB Group
Traduzione Italiana phpBB.it

megalab.it: testata telematica quotidiana registrata al Tribunale di Cosenza n. 22/09 del 13.08.2009, editore Master New Media S.r.l.; © Copyright 2008 Master New Media S.r.l. a socio unico - P.I. 02947530784. GRUPPO EDIZIONI MASTER Spa Tutti i diritti sono riservati. Per la pubblicità: Master Advertising