Punto informatico Network
Login Esegui login | Non sei registrato? Iscriviti ora (è gratuito!)
Username: Password:
  • Annuncio Pubblicitario

disperazione assoluta

Un virus si è intromesso nel tuo computer? Vuoi navigare in tutta sicurezza? Sono sicure le transazione online? Come impedire a malintenzionati di intromettersi nel tuo pc? Come proteggere i tuoi dati? Qui trovi le risposte a queste ed altre domande

disperazione assoluta

Messaggioda principe.cili » ven gen 08, 2010 7:08 am

Ciao ragazzi miei, innazitutto sono una new entri e vi saluto tutti, domandona, sono disperato, ho installato windows 7 e ne son molto felice, ma dopo questa installazione nonostante aver installato anche malware spysoftware e avast antivirus, quando provo in internet exploter a scrivere delle semplici parole, in google, o qualsiasi cosa presente in internet la tastiera sembra fare fatica a ricevere i tasti che ho spinto, e se scrivo troppo in fretta salta addirituttura delle lettere da me digitate, infatti per scrivere questo testo ho dovuto scriverlo in word, dove qui non mi da alcun problema, e incollarlo nel vostro post,, vi posso chiedere aiuto?? [grazie]
Avatar utente
principe.cili
Neo Iscritto
Neo Iscritto
 
Messaggi: 4
Iscritto il: ven gen 08, 2010 7:01 am

Re: disperazione assoluta

Messaggioda crazy.cat » ven gen 08, 2010 7:59 am

In word la tastiera funziona bene?
Se utilizzi firefox hai problemi anche con quello?

Prova a fare una scansione con combofix e posta il suo log.
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre

Re: disperazione assoluta

Messaggioda principe.cili » ven gen 08, 2010 12:51 pm

ciao, innanzitutto grazie mille dell rispost, due domandepero..
a cosa serve combofix?
e dove lo trovo?
Avatar utente
principe.cili
Neo Iscritto
Neo Iscritto
 
Messaggi: 4
Iscritto il: ven gen 08, 2010 7:01 am


Re: disperazione assoluta

Messaggioda crazy.cat » ven gen 08, 2010 1:02 pm

Combofix è un controllore/pulitore/segnalatore di parecchi problemi. Alla fine della scansione genera un file di testo che riassume i problemi trovati. Vedendo quel file si può fare qualcosa.
http://www.bleepingcomputer.com/combofi ... e-combofix
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre

Re: disperazione assoluta

Messaggioda principe.cili » ven gen 08, 2010 1:31 pm

ComboFix 10-01-04.01 - luca 08/01/2010 13:15:02.1.1 - x86
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.39.1040.18.1014.276 [GMT 1:00]
Eseguito da: c:\users\luca\Desktop\ComboFix.exe
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\luca\AppData\Local\ecapn.dat
c:\users\luca\AppData\Local\ecapn.exe
c:\users\luca\AppData\Local\ecapn_nav.dat
c:\users\luca\AppData\Local\ecapn_navps.dat
c:\users\luca\AppData\Roaming\inst.exe
c:\windows\system32\Drivers\dsjtjo.sys
c:\windows\system32\Drivers\jwkncal.sys

.
((((((((((((((((((((((((((((((((((((((( Driver/Servizi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_hxvjpbye
-------\Service_jxlshnwh


((((((((((((((((((((((((( Files Creati Da 2009-12-08 al 2010-01-08 )))))))))))))))))))))))))))))))))))
.

2010-01-08 12:23 . 2010-01-08 12:27 -------- d-----w- c:\users\luca\AppData\Local\temp
2010-01-08 12:23 . 2010-01-08 12:23 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-01-08 06:07 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-08 06:07 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-08 06:07 . 2010-01-08 06:21 -------- d-----w- C:\Anti-Malware
2010-01-04 05:15 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-01-04 05:15 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-01-04 05:15 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2010-01-04 05:15 . 2009-09-15 11:55 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-01-04 05:15 . 2009-09-15 11:55 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-01-04 05:14 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2010-01-04 05:14 . 2009-09-15 11:55 53328 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-01-04 05:14 . 2010-01-07 12:14 -------- d-----w- C:\avastnew
2009-12-31 10:41 . 2009-12-31 10:49 -------- d-----w- c:\users\luca\AppData\Roaming\Nero
2009-12-31 09:09 . 2009-12-31 09:34 -------- d-----w- c:\program files\Common Files\Nero
2009-12-31 08:42 . 2010-01-07 12:13 -------- d-----w- C:\avast4
2009-12-29 18:22 . 2009-12-29 18:22 -------- d-----w- c:\program files\Wyzo
2009-12-29 12:18 . 2009-12-29 12:18 -------- d-----w- c:\users\luca\AppData\Local\Cooliris
2009-12-29 12:18 . 2009-12-29 12:18 0 ----a-w- c:\windows\nsreg.dat
2009-12-29 12:17 . 2009-12-29 12:17 -------- d-----w- c:\users\luca\AppData\Local\Radical Software Ltd
2009-12-29 12:13 . 2009-12-29 12:13 -------- d-----w- c:\program files\Ask Search Assistant
2009-12-28 18:00 . 2009-12-31 09:18 -------- d-----w- c:\programdata\Nero
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\UC.PIF
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\RAR.PIF
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\PKZIP.PIF
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\LHA.PIF
2009-12-27 11:59 . 2007-09-14 06:02 545 ----a-w- c:\windows\ARJ.PIF
2009-12-26 20:49 . 2009-12-26 20:49 -------- d-----w- c:\users\luca\AppData\Roaming\Malwarebytes
2009-12-26 20:49 . 2009-12-26 20:49 -------- d-----w- c:\programdata\Malwarebytes
2009-12-26 20:36 . 2009-12-26 20:41 -------- d-----w- C:\videoconverter
2009-12-26 16:13 . 2009-12-26 16:14 -------- d-----w- C:\emule
2009-12-26 16:09 . 2010-01-08 05:05 87 ----a-w- c:\users\luca\AppData\Local\keaesp.bat
2009-12-26 15:58 . 2009-12-26 16:13 -------- d-----w- c:\program files\eMule
2009-12-26 15:58 . 2009-12-26 15:58 196552 ----a-w- c:\users\luca\AppData\Local\giqrsm.exe
2009-12-26 14:36 . 2009-12-26 14:36 -------- d-----w- c:\program files\Conduit
2009-12-26 14:36 . 2009-12-26 14:36 -------- d-----w- c:\program files\Search_USA
2009-12-25 15:18 . 2009-12-25 15:29 -------- d-----w- c:\programdata\PC Suite
2009-12-25 15:18 . 2009-12-25 15:19 -------- d-----w- c:\users\luca\AppData\Roaming\Nokia
2009-12-25 15:18 . 2009-12-25 15:18 -------- d-----w- c:\program files\DIFX
2009-12-25 15:17 . 2009-12-25 15:17 -------- d-----w- c:\program files\Common Files\PCSuite
2009-12-25 15:17 . 2009-12-25 15:17 -------- d-----w- c:\program files\Common Files\Nokia
2009-12-25 15:17 . 2009-12-25 15:19 -------- d-----w- c:\users\luca\AppData\Roaming\PC Suite
2009-12-25 15:17 . 2009-12-25 15:17 -------- d-----w- c:\program files\PC Connectivity Solution
2009-12-25 15:17 . 2007-02-22 09:15 90624 ----a-w- c:\windows\system32\nmwcdcls.dll
2009-12-25 15:17 . 2009-12-25 15:17 -------- d-----w- C:\pcsuite
2009-12-25 15:16 . 2009-12-25 15:16 -------- d-----w- c:\programdata\Installations
2009-12-25 09:09 . 2009-12-25 17:51 -------- d-----w- c:\program files\Yahoo!
2009-12-24 22:24 . 2010-01-03 14:07 -------- d-----w- c:\users\luca\AppData\Roaming\vlc
2009-12-23 12:05 . 2009-08-29 06:57 34816 ----a-w- c:\windows\system32\msasn1.dll
2009-12-23 10:54 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2009-12-23 10:53 . 2009-10-29 07:22 2048 ----a-w- c:\windows\system32\tzres.dll
2009-12-23 10:51 . 2009-12-23 10:51 -------- d-----w- c:\program files\MSXML 4.0
2009-12-23 10:36 . 2009-10-02 04:06 728648 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2009-12-23 10:36 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2009-12-23 10:36 . 2009-08-03 05:35 2613248 ----a-w- c:\windows\explorer.exe
2009-12-23 10:35 . 2009-08-19 07:20 442920 ----a-w- c:\windows\system32\winresume.exe
2009-12-23 10:35 . 2009-08-19 07:20 507568 ----a-w- c:\windows\system32\winload.exe
2009-12-23 10:35 . 2009-07-30 16:29 108544 ----a-w- c:\windows\system32\t2embed.dll
2009-12-23 10:35 . 2009-07-30 16:27 71168 ----a-w- c:\windows\system32\fontsub.dll
2009-12-23 10:35 . 2009-07-30 04:44 293888 ----a-w- c:\windows\system32\atmfd.dll
2009-12-23 10:35 . 2009-08-29 06:54 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2009-12-23 05:57 . 2009-12-23 05:57 -------- d-----w- c:\windows\system32\Macromed
2009-12-23 05:55 . 2009-12-23 05:55 -------- d-----w- C:\uTorrent
2009-12-23 05:54 . 2010-01-08 12:27 -------- d-----w- c:\users\luca\AppData\Roaming\uTorrent
2009-12-23 05:43 . 2009-11-02 19:42 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-12-22 20:13 . 2010-01-08 05:43 -------- d-----w- c:\users\luca\AppData\Local\Apple Computer
2009-12-22 20:13 . 2009-12-25 16:12 -------- d-----w- c:\users\luca\AppData\Roaming\Apple Computer
2009-12-22 19:59 . 2008-03-18 17:55 233888 ----a-w- c:\windows\system32\DreamScene.dll
2009-12-22 19:39 . 2009-12-22 19:47 -------- d-----w- C:\TokensBackup
2009-12-22 19:29 . 2009-12-22 19:47 -------- d-----w- C:\T-PoT.1.1
2009-12-22 19:29 . 2009-12-27 11:59 -------- d-----w- C:\totalcmd
2009-12-22 19:29 . 2009-12-27 11:59 -------- d-----w- c:\users\luca\AppData\Roaming\GHISLER
2009-12-22 19:09 . 2009-12-29 18:25 108824 ----a-w- c:\users\luca\AppData\Local\GDIPFONTCACHEV1.DAT
2009-12-22 19:07 . 2009-12-22 19:08 -------- d-----w- c:\users\luca\AppData\Roaming\Vso
2009-12-22 19:07 . 2009-12-22 19:07 -------- d-----w- C:\dvdfab
2009-12-22 18:48 . 2008-11-10 10:41 32656 ----a-w- c:\windows\system32\msonpmon.dll
2009-12-22 18:48 . 2006-10-26 18:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2009-12-22 18:45 . 2009-12-29 17:46 -------- d-----w- c:\program files\Microsoft Works
2009-12-22 18:44 . 2009-12-22 18:44 -------- d-----w- c:\windows\PCHEALTH
2009-12-22 18:44 . 2009-12-22 18:44 -------- d-----w- c:\program files\Microsoft.NET
2009-12-22 18:42 . 2009-12-22 18:42 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-12-22 18:40 . 2009-12-22 18:40 -------- d-----w- c:\users\luca\AppData\Local\Microsoft Help
2009-12-22 18:40 . 2009-12-29 17:57 -------- d-----w- c:\programdata\Microsoft Help
2009-12-22 18:40 . 2009-12-22 18:40 -------- d-----r- C:\MSOCache
2009-12-22 18:38 . 2009-12-22 18:38 -------- d-----w- C:\WinRAR
2009-12-22 18:33 . 2010-01-08 06:01 -------- d-----r- C:\doc luca
2009-12-22 18:32 . 2009-12-22 18:32 -------- d-----w- c:\programdata\SpeedBit
2009-12-22 18:32 . 2009-12-22 18:32 -------- d-----w- C:\DAP
2009-12-22 18:31 . 2007-05-13 11:24 86683 ----a-w- c:\windows\system32\pthreadGC2.dll
2009-12-22 18:31 . 2009-12-24 22:25 -------- d-----w- C:\aoa
2009-12-22 18:30 . 2009-12-22 18:30 -------- d-----w- C:\vlc
2009-12-22 18:26 . 2010-01-08 11:52 -------- d-----w- c:\windows\system32\wbem\Performance
2009-12-22 18:26 . 2009-12-31 09:34 -------- d-sh--w- c:\windows\Installer
2009-12-22 18:13 . 2009-12-22 18:22 -------- d-----w- c:\windows\Panther
2009-12-22 18:13 . 2010-01-08 12:24 -------- d-----w- C:\Boot

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-08 12:04 . 2010-01-08 12:04 3819182 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{B4A64AA3-7CAC-87B6-E375-0D77AF947526}-ComboFix.exe
2010-01-08 11:52 . 2009-07-14 08:21 692376 ----a-w- c:\windows\system32\perfh010.dat
2010-01-08 11:52 . 2009-07-14 08:21 125470 ----a-w- c:\windows\system32\perfc010.dat
2010-01-08 06:09 . 2010-01-08 06:09 5115823 ----a-w- c:\programdata\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-12-31 09:24 . 2008-01-28 19:57 -------- d-----w- c:\program files\Nero
2009-12-25 15:29 . 2009-12-25 15:29 0 ---ha-w- c:\windows\system32\drivers\Msft_User_PCCSWpdDriver_01_05_00.Wdf
2009-12-25 15:17 . 2009-12-25 15:17 9728 ----a-w- c:\programdata\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\CommonCustomActions\UninstPCS.exe
2009-12-25 15:17 . 2009-12-25 15:17 8192 ----a-w- c:\programdata\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\CommonCustomActions\UninstCCD.exe
2009-12-25 15:17 . 2009-12-25 15:17 15360 ----a-w- c:\programdata\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Installations\CommonCustomActions\UninstPCSFEMsi.exe
2009-12-23 21:02 . 2009-12-23 21:02 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2009-12-23 21:02 . 2009-12-22 20:09 -------- d-----w- c:\programdata\Apple
2009-12-23 06:11 . 2009-12-23 06:11 95744 ----a-w- c:\programdata\SpeedBit\DAP\SDCondition.dll
2009-12-22 20:12 . 2009-12-22 20:12 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-12-22 20:12 . 2009-12-22 20:12 -------- d-----w- c:\program files\iPod
2009-12-22 20:12 . 2009-12-22 20:10 -------- d-----w- c:\programdata\Apple Computer
2009-12-22 20:12 . 2009-12-22 20:09 -------- d-----w- c:\program files\Common Files\Apple
2009-12-22 20:11 . 2009-12-22 20:11 -------- d-----w- c:\program files\Bonjour
2009-12-22 20:11 . 2009-12-22 20:10 -------- d-----w- c:\program files\QuickTime
2009-12-22 20:10 . 2009-12-22 20:10 -------- d-----w- c:\program files\Apple Software Update
2009-12-22 19:07 . 2009-12-22 19:07 47360 ----a-w- c:\users\luca\AppData\Roaming\pcouffin.sys
2009-12-22 19:07 . 2009-12-22 19:07 47360 ----a-w- c:\users\luca\AppData\Roaming\pcouffin.sys
2009-12-22 18:58 . 2009-12-22 18:58 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2009-12-22 18:45 . 2009-07-14 04:52 -------- d-----w- c:\program files\MSBuild
2009-12-22 18:22 . 2009-12-22 18:22 -------- d-sh--we c:\programdata\Preferiti
2009-12-22 18:22 . 2009-12-22 18:22 -------- d-sh--we c:\programdata\Modelli
2009-12-22 18:22 . 2009-12-22 18:22 -------- d-sh--we c:\programdata\Menu Avvio
2009-12-22 18:22 . 2009-12-22 18:22 -------- d-sh--we c:\programdata\Documenti
2009-12-22 18:22 . 2009-12-22 18:22 -------- d-sh--we c:\programdata\Dati applicazioni
2009-12-22 18:22 . 2009-12-22 18:22 -------- d-sh--we c:\program files\File comuni
2009-10-28 19:58 . 2009-10-28 19:58 79144 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.

((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{48405d3d-2674-4cd8-b1ef-9a719443bd3f}"= "c:\program files\Search_USA\tbSear.dll" [2009-05-20 2085400]

[HKEY_CLASSES_ROOT\clsid\{48405d3d-2674-4cd8-b1ef-9a719443bd3f}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{48405d3d-2674-4cd8-b1ef-9a719443bd3f}]
2009-05-20 17:05 2085400 ----a-w- c:\program files\Search_USA\tbSear.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FF6C3CF0-4B15-11D1-ABED-709549C10000}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{48405d3d-2674-4cd8-b1ef-9a719443bd3f}"= "c:\program files\Search_USA\tbSear.dll" [2009-05-20 2085400]

[HKEY_CLASSES_ROOT\clsid\{48405d3d-2674-4cd8-b1ef-9a719443bd3f}]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{48405D3D-2674-4CD8-B1EF-9A719443BD3F}"= "c:\program files\Search_USA\tbSear.dll" [2009-05-20 2085400]

[HKEY_CLASSES_ROOT\clsid\{48405d3d-2674-4cd8-b1ef-9a719443bd3f}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\utorrent\uTorrent.exe" [2009-12-23 289584]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-09-05 417792]
"iTunesHelper"="c:\itunes\iTunesHelper.exe" [2009-10-28 141600]
"PCSuiteTrayApplication"="c:\pcsuite\Nokia PC Suite 6\LaunchApplication.exe" [2007-03-23 227328]
"avast!"="c:\avastnew\ashDisp.exe" [2009-11-24 81000]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Nokia.PCSync"="c:\pcsuite\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [04/01/2010 06:15 114768]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\System32\drivers\vwififlt.sys [14/07/2009 00:52 48128]
R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [04/01/2010 06:15 20560]
R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [04/01/2010 06:14 53328]
R3 BthAvrcp;Profilo Bluetooth AVRCP;c:\windows\System32\drivers\BthAvrcp.sys [10/07/2008 15:43 15872]
R3 SFEP;Sony Firmware Extension Parser;c:\windows\System32\drivers\SFEP.sys [03/08/2007 05:36 9344]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\System32\drivers\VSTAZL3.SYS [13/07/2009 23:13 207360]
R3 SrvHsfV92;SrvHsfV92;c:\windows\System32\drivers\VSTDPV3.SYS [13/07/2009 23:13 980992]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\System32\drivers\VSTCNXT3.SYS [13/07/2009 23:13 661504]
R3 yukonw7;Driver miniport NDIS6.2 per controller Ethernet Marvell Yukon;c:\windows\System32\drivers\yk62x86.sys [13/07/2009 23:02 311296]
.
Contenuto della cartella 'Scheduled Tasks'

2010-01-08 c:\windows\Tasks\Malwarebytes' Scheduled Update for luca.job
- c:\anti-malware\mbam.exe [2010-01-08 15:07]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
uInternet Settings,ProxyOverride = *.local
IE: &Clean Traces - c:\dap\Privacy Package\dapcleanerie.htm
IE: &Download with &DAP - c:\dap\dapextie.htm
IE: Download &all with DAP - c:\dap\dapextie2.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\luca\AppData\Roaming\Mozilla\Firefox\Profiles\0clvn0g6.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.it/
FF - plugin: c:\itunes\Mozilla Plugins\npitunes.dll
.
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------

- - - - - - - > 'Explorer.exe'(4040)
c:\pcsuite\Nokia PC Suite 6\PhoneBrowser.dll
c:\pcsuite\Nokia PC Suite 6\PCSCM.dll
c:\pcsuite\Nokia PC Suite 6\Lang\PhoneBrowser_ita.nlr
c:\pcsuite\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Altri processi in esecuzione ------------------------
.
c:\windows\system32\WUDFHost.exe
c:\windows\system32\conhost.exe
c:\avastnew\aswUpdSv.exe
c:\avastnew\ashServ.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\avastnew\ashWebSv.exe
c:\avastnew\ashMaiSv.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\system32\sppsvc.exe
c:\firefox\firefox.exe
c:\windows\system32\DllHost.exe
.
**************************************************************************
.
Ora fine scansione: 2010-01-08 13:34:40 - Il pc è stato riavviato
ComboFix-quarantined-files.txt 2010-01-08 12:34

Pre-Run: 31.726.878.720 byte disponibili
Post-Run: 35.205.296.128 byte disponibili

- - End Of File - - 1A17B115D4278317440ECC3DE75247FA
Avatar utente
principe.cili
Neo Iscritto
Neo Iscritto
 
Messaggi: 4
Iscritto il: ven gen 08, 2010 7:01 am

Re: disperazione assoluta

Messaggioda crazy.cat » ven gen 08, 2010 1:37 pm

Alcune cose sono già state eliminate.
Ci sono alcuni nomi strani in questa cartella, forse non sono niente di pericoloso però li controllerei.
2009-12-26 16:09 . 2010-01-08 05:05 87 ----a-w- c:\users\luca\AppData\Local\keaesp.bat
2009-12-26 15:58 . 2009-12-26 15:58 196552 ----a-w- c:\users\luca\AppData\Local\giqrsm.exe
Fai un controllo con malwarebytes ed elimina quello che trova.
Hai delle toolbar installate nel browser?
Se ne hai, prova a disinstallarle.
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre

Re: disperazione assoluta

Messaggioda principe.cili » ven gen 08, 2010 1:58 pm

nessuna toolbar installata,comunque posso usarlo anche una volta al mese combofix o fa danni? non fa comflitto con emule o torrent vero? per il resto oltre quei due file va tutto bene? ti ringrazio
Avatar utente
principe.cili
Neo Iscritto
Neo Iscritto
 
Messaggi: 4
Iscritto il: ven gen 08, 2010 7:01 am

Re: disperazione assoluta

Messaggioda crazy.cat » ven gen 08, 2010 2:41 pm

principe.cili ha scritto:comunque posso usarlo anche una volta al mese combofix o fa danni?

Basta che riscarichi la versione nuova. In genere non dovrebbe farne di danni.

non fa comflitto con emule o torrent vero?

No

per il resto oltre quei due file va tutto bene?

Non si vede altro di pericoloso.

Il pc come va adesso?
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre


Torna a Sicurezza

Chi c’è in linea

Visitano il forum: Nessuno e 24 ospiti

Powered by phpBB © 2002, 2005, 2007, 2008 phpBB Group
Traduzione Italiana phpBB.it

megalab.it: testata telematica quotidiana registrata al Tribunale di Cosenza n. 22/09 del 13.08.2009, editore Master New Media S.r.l.; © Copyright 2008 Master New Media S.r.l. a socio unico - P.I. 02947530784. GRUPPO EDIZIONI MASTER Spa Tutti i diritti sono riservati. Per la pubblicità: Master Advertising