adesso provo a navigare un po' e poi vi faccio sapere......
grazie ancora per la disponibilità.
------------------------------------------------------------------------------------------
- <REPORT>
- <MALWARE_EVIDENCES>
- <FILE>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd_nav.dat</PATH>
<MD5>4DE3833B7956702B209E5AE9941BD8A7</MD5>
<IS_HIDDEN>1</IS_HIDDEN>
</FILE>
- <FILE>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd_navps.dat</PATH>
<MD5>EAF3EE9379876F34C9AD4914C457EF2A</MD5>
<IS_HIDDEN>1</IS_HIDDEN>
</FILE>
- <FILE>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd.exe</PATH>
<MD5>74668FC94562E8A68221D4FC1DE86FCE</MD5>
<IS_HIDDEN>1</IS_HIDDEN>
- <REGISTRY>
- <REGISTRY_ENTRY>
<KEY>HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run</KEY>
<VALUE>iabwxklgbd</VALUE>
<DATA>c:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd.exe iabwxklgbd</DATA>
<IS_HIDDEN>1</IS_HIDDEN>
</REGISTRY_ENTRY>
</REGISTRY>
- <PROCESSES>
- <PROCESS>
<COMMANDLINE>"C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd.exe" iabwxklgbd</COMMANDLINE>
<IS_HIDDEN>1</IS_HIDDEN>
</PROCESS>
</PROCESSES>
</FILE>
- <FILE>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd.dat</PATH>
<MD5>3A32B5776196E3574AB467EC3EDC2F47</MD5>
<IS_HIDDEN>1</IS_HIDDEN>
</FILE>
</MALWARE_EVIDENCES>
- <DESINFECTION>
- <REGISTRY>
<ACTION>Delete</ACTION>
<KEY>HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run</KEY>
<VALUE>iabwxklgbd</VALUE>
<DONE>1</DONE>
</REGISTRY>
- <FILE>
<ACTION>Delete</ACTION>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd.dat</PATH>
<DONE>1</DONE>
</FILE>
- <FILE>
<ACTION>Delete</ACTION>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd.exe</PATH>
<DONE>1</DONE>
</FILE>
- <FILE>
<ACTION>Delete</ACTION>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd_navps.dat</PATH>
<DONE>1</DONE>
</FILE>
- <FILE>
<ACTION>Delete</ACTION>
<PATH>C:\documents and settings\davide\impostazioni locali\dati applicazioni\iabwxklgbd_nav.dat</PATH>
<DONE>1</DONE>
</FILE>
</DESINFECTION>
</REPORT>