Precedente :: Successivo |
Autore |
Messaggio |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 05 Set 2013 13:03 Oggetto: Aiuto Combofix! Pc leeeento e che si impalla! |
|
|
Ciao a tutti,
ho un problema con il PC e ho bisogno del vostro prezioso aiuto.
Fino a qualche settimana fa il mio pc era velocissimo, poi ho preso un virus che ho rimosso con ComboFix (PriceGong) ma il pc continua ad essere lento, le pagine non si aprono e anche i file excel, word, ecc si aprono con ritardo di decine di minuti.
Vi riporto l'esito dell'ultimo Combofix, purtroppo non posso disattivare il Trend Micro OfficeScan Antivirus.
Mi potete aiutare? grazie!
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-21 09:12 . 2012-04-16 08:30 692104 ------w- c:\windows\system32\FlashPlayerApp.exe
2013-08-21 09:12 . 2011-08-23 07:47 71048 ------w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-08-02 23:48 . 2006-10-18 19:47 1543680 ------w- c:\windows\system32\wmvdecod.dll
2013-07-26 02:47 . 2008-07-24 18:00 920064 ------w- c:\windows\system32\wininet.dll
2013-07-26 02:47 . 2008-07-24 18:00 43520 ------w- c:\windows\system32\licmgr10.dll
2013-07-26 02:47 . 2008-07-24 18:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-07-25 15:54 . 2008-07-24 18:00 385024 ------w- c:\windows\system32\html.iec
2013-07-18 12:20 . 2012-02-21 11:07 22064 ----a-w- c:\windows\DCEBoot.exe
2013-07-10 10:37 . 2008-07-24 18:00 406016 ------w- c:\windows\system32\usp10.dll
2013-07-04 07:34 . 2008-04-13 18:54 2153472 ------w- c:\windows\system32\ntoskrnl.exe
2013-07-04 07:34 . 2008-04-13 18:55 2032128 ------w- c:\windows\system32\ntkrnlpa.exe
2013-06-18 19:50 . 2010-10-24 19:25 211560 ------w- c:\windows\system32\drivers\MpFilter.sys
2013-06-13 15:26 . 2013-06-13 15:26 220320 ------w- c:\windows\system32\F5FltSrv.exe
2013-06-13 15:26 . 2013-06-13 15:26 21280 ------w- c:\windows\system32\drivers\F5FltDrv.sys
2013-06-13 15:26 . 2013-06-13 15:26 379312 ------w- c:\windows\system32\F5InstallerService.exe
2013-06-05 09:08 . 2008-07-24 18:00 1876736 ------w- c:\windows\system32\win32k.sys
2013-06-04 07:22 . 2008-07-24 18:00 563712 ------w- c:\windows\system32\qedit.dll
2011-08-22 12:19 . 2011-08-22 12:19 926560 ------w- c:\programmi\DivXInstaller.exe
2010-10-19 12:05 . 2010-10-19 12:05 293176 ------w- c:\programmi\SoftonicDownloader_per_pdf-to-word.exe
2009-08-19 11:42 . 2012-10-11 15:28 439296 ----a-w- c:\programmi\setup.exe
2009-08-19 11:42 . 2012-10-11 15:28 358400 ----a-w- c:\programmi\Instalacion.msi
.
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}"= "c:\programmi\uTorrentBar_IT\prxtbuTo0.dll" [2013-07-09 226592]
.
[HKEY_CLASSES_ROOT\clsid\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
2013-07-09 07:30 226592 ----a-w- c:\programmi\uTorrentBar_IT\prxtbuTo0.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}"= "c:\programmi\uTorrentBar_IT\prxtbuTo0.dll" [2013-07-09 226592]
.
[HKEY_CLASSES_ROOT\clsid\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{4AE0C3D6-F713-4EED-BC65-25DC3FFDAAC1}"= "c:\programmi\uTorrentBar_IT\prxtbuTo0.dll" [2013-07-09 226592]
.
[HKEY_CLASSES_ROOT\clsid\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsgCenterExe"="c:\programmi\real\realplayer\update\RealOneMessageCenter.exe" [2012-08-20 79048]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LenovoFSC"="c:\programmi\Lenovo\FanSpeedControl\LenovoFSC.exe" [2008-09-26 40960]
"Mouse Suite 98 Daemon"="c:\program files\Lenovo\Mouse Suite\ICO.EXE" [2009-11-06 98304]
"RTHDCPL"="RTHDCPL.EXE" [2008-09-09 16851968]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-11-12 141336]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-11-12 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-11-12 141336]
"TVT Scheduler Proxy"="c:\programmi\File comuni\Lenovo\Scheduler\scheduler_proxy.exe" [2008-11-24 487424]
"OfficeScanNT Monitor"="c:\programmi\Trend Micro\OfficeScan Client\pccntmon.exe" [2012-01-19 879144]
"Adobe Acrobat Speed Launcher"="c:\programmi\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2013-05-08 44128]
"Acrobat Assistant 8.0"="c:\programmi\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2013-05-08 642664]
"Adobe ARM"="c:\programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"DivXUpdate"="c:\programmi\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
"mylbx"="c:\programmi\My Lockbox\mylbx.exe" [2010-05-28 1699552]
"MSC"="c:\programmi\Microsoft Security Client\msseces.exe" [2013-06-20 995176]
"TkBellExe"="c:\programmi\real\realplayer\update\realsched.exe" [2012-08-20 296096]
"MobileBroadband"="c:\programmi\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe" [2011-04-19 408576]
"SDTray"="c:\programmi\Spybot - Search & Destroy 2\SDTray.exe" [2012-11-13 3825176]
"SunJavaUpdateSched"="c:\programmi\File comuni\Java\Java Update\jusched.exe" [2011-04-08 254696]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"DWQueuedReporting"="c:\progra~1\FILECO~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\system32\acaptuser32.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\TrendAntivirus]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\Skype\\Phone\\Skype.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"36280:TCP"= 36280:TCP:Trend Micro OfficeScan Listener
.
R0 FSProFilter;FSPro File Filter;c:\windows\system32\drivers\FSPFltd.sys [06/10/2011 11.14.23 43792]
R1 MpKslea6491af;MpKslea6491af;\??\c:\documents and settings\All Users\Dati applicazioni\Microsoft\Microsoft Antimalware\Definition Updates\{C8D3AA2D-F722-4206-BA21-89F046C25F43}\MpKslea6491af.sys --> c:\documents and settings\All Users\Dati applicazioni\Microsoft\Microsoft Antimalware\Definition Updates\{C8D3AA2D-F722-4206-BA21-89F046C25F43}\MpKslea6491af.sys [?]
R1 tvtumon;tvtumon;c:\windows\system32\drivers\tvtumon.sys [09/05/2008 18.50.48 46144]
R2 F5 Networks Component Installer;F5 Networks Component Installer;c:\windows\system32\F5InstallerService.exe [13/06/2013 17.26.19 379312]
R2 F5FltSrv;F5 Networks DNS Relay Proxy Service;c:\windows\system32\F5FltSrv.exe [13/06/2013 17.26.20 220320]
R2 fsproflt;FSPro Filter Service;c:\windows\system32\fsproflt.exe [06/10/2011 11.14.24 142648]
R2 MarimbaCliente;Marimba_Cliente;c:\program files\marimba\tuner\Tuner.exe [06/06/2011 23.12.44 36957]
R2 MBAMScheduler;MBAMScheduler;c:\programmi\Malwarebytes' Anti-Malware\mbamscheduler.exe [15/05/2013 13.12.37 418376]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\programmi\Spybot - Search & Destroy 2\SDFSSvc.exe [15/05/2013 13.50.22 1103392]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\programmi\Spybot - Search & Destroy 2\SDUpdSvc.exe [15/05/2013 13.50.26 1369624]
R2 tmevtmgr;tmevtmgr;c:\windows\system32\drivers\tmevtmgr.sys [17/06/2010 10.59.15 62728]
R2 TmFilter;Trend Micro Filter;c:\programmi\Trend Micro\OfficeScan Client\TmXpflt.sys [22/01/2008 16.06.58 264504]
R2 TmPreFilter;Trend Micro PreFilter;c:\programmi\Trend Micro\OfficeScan Client\TmPreflt.sys [22/01/2008 16.06.58 36664]
R2 TVT Backup Protection Service;TVT Backup Protection Service;c:\programmi\Lenovo\Rescue and Recovery\rrpservice.exe [24/11/2008 16.34.02 520192]
R2 TVT_UpdateMonitor;TVT Windows Update Monitor;c:\programmi\Lenovo\Rescue and Recovery\UpdateMonitor.exe [09/05/2008 18.50.46 360448]
R2 VmbService;Servizio Vodafone Mobile Broadband;c:\programmi\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe [19/04/2011 17.12.22 9216]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\drivers\ew_jubusenum.sys [11/01/2013 12.02.23 72832]
R3 staccel;staccel;c:\windows\system32\drivers\staccel.sys [13/12/2012 2.38.06 32864]
R3 SuperIO;Lenovo ASD HWM Driver;c:\windows\system32\drivers\spio.sys [06/03/2008 15.33.50 5760]
R3 TmProxy;OfficeScan NT Proxy Service;c:\programmi\Trend Micro\OfficeScan Client\TmProxy.exe [22/01/2008 16.06.58 689680]
R3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\drivers\tvti2c.sys [20/11/2008 3.46.47 37184]
R3 urvpndrv;F5 Networks VPN Adapter;c:\windows\system32\drivers\covpndrv.sys [09/11/2012 6.02.48 35488]
S1 abgzhmfg;abgzhmfg;\??\c:\windows\system32\drivers\abgzhmfg.sys --> c:\windows\system32\drivers\abgzhmfg.sys [?]
S1 afvpiwpp;afvpiwpp;\??\c:\windows\system32\drivers\afvpiwpp.sys --> c:\windows\system32\drivers\afvpiwpp.sys [?]
S1 alzgdxql;alzgdxql;\??\c:\windows\system32\drivers\alzgdxql.sys --> c:\windows\system32\drivers\alzgdxql.sys [?]
S1 amuyuowo;amuyuowo;\??\c:\windows\system32\drivers\amuyuowo.sys --> c:\windows\system32\drivers\amuyuowo.sys [?]
S1 apmqtbzw;apmqtbzw;\??\c:\windows\system32\drivers\apmqtbzw.sys --> c:\windows\system32\drivers\apmqtbzw.sys [?]
S1 aqluwcfo;aqluwcfo;\??\c:\windows\system32\drivers\aqluwcfo.sys --> c:\windows\system32\drivers\aqluwcfo.sys [?]
S1 asfdkxxp;asfdkxxp;\??\c:\windows\system32\drivers\asfdkxxp.sys --> c:\windows\system32\drivers\asfdkxxp.sys [?]
S1 atceidor;atceidor;\??\c:\windows\system32\drivers\atceidor.sys --> c:\windows\system32\drivers\atceidor.sys [?]
S1 atmcouqz;atmcouqz;\??\c:\windows\system32\drivers\atmcouqz.sys --> c:\windows\system32\drivers\atmcouqz.sys [?]
S1 avslhlqj;avslhlqj;\??\c:\windows\system32\drivers\avslhlqj.sys --> c:\windows\system32\drivers\avslhlqj.sys [?]
S1 awcgxhrn;awcgxhrn;\??\c:\windows\system32\drivers\awcgxhrn.sys --> c:\windows\system32\drivers\awcgxhrn.sys [?]
S1 awjngqlu;awjngqlu;\??\c:\windows\system32\drivers\awjngqlu.sys --> c:\windows\system32\drivers\awjngqlu.sys [?]
S1 bbfyfqtp;bbfyfqtp;\??\c:\windows\system32\drivers\bbfyfqtp.sys --> c:\windows\system32\drivers\bbfyfqtp.sys [?]
S1 bfouniqj;bfouniqj;\??\c:\windows\system32\drivers\bfouniqj.sys --> c:\windows\system32\drivers\bfouniqj.sys [?]
S1 bfrtheno;bfrtheno;\??\c:\windows\system32\drivers\bfrtheno.sys --> c:\windows\system32\drivers\bfrtheno.sys [?]
S1 bgrnjefz;bgrnjefz;\??\c:\windows\system32\drivers\bgrnjefz.sys --> c:\windows\system32\drivers\bgrnjefz.sys [?]
S1 bhqovyut;bhqovyut;\??\c:\windows\system32\drivers\bhqovyut.sys --> c:\windows\system32\drivers\bhqovyut.sys [?]
S1 biyymnpq;biyymnpq;\??\c:\windows\system32\drivers\biyymnpq.sys --> c:\windows\system32\drivers\biyymnpq.sys [?]
S1 bjaniqzg;bjaniqzg;\??\c:\windows\system32\drivers\bjaniqzg.sys --> c:\windows\system32\drivers\bjaniqzg.sys [?]
S1 bnlpadup;bnlpadup;\??\c:\windows\system32\drivers\bnlpadup.sys --> c:\windows\system32\drivers\bnlpadup.sys [?]
S1 bozpjngq;bozpjngq;\??\c:\windows\system32\drivers\bozpjngq.sys --> c:\windows\system32\drivers\bozpjngq.sys [?]
S1 bpetrnid;bpetrnid;\??\c:\windows\system32\drivers\bpetrnid.sys --> c:\windows\system32\drivers\bpetrnid.sys [?]
S1 bpvzyfvh;bpvzyfvh;\??\c:\windows\system32\drivers\bpvzyfvh.sys --> c:\windows\system32\drivers\bpvzyfvh.sys [?]
S1 bqowqzrv;bqowqzrv;\??\c:\windows\system32\drivers\bqowqzrv.sys --> c:\windows\system32\drivers\bqowqzrv.sys [?]
S1 bsliyhyv;bsliyhyv;\??\c:\windows\system32\drivers\bsliyhyv.sys --> c:\windows\system32\drivers\bsliyhyv.sys [?]
S1 btlproej;btlproej;\??\c:\windows\system32\drivers\btlproej.sys --> c:\windows\system32\drivers\btlproej.sys [?]
S1 btlycmns;btlycmns;\??\c:\windows\system32\drivers\btlycmns.sys --> c:\windows\system32\drivers\btlycmns.sys [?]
S1 btncxaeu;btncxaeu;\??\c:\windows\system32\drivers\btncxaeu.sys --> c:\windows\system32\drivers\btncxaeu.sys [?]
S1 bucxdofy;bucxdofy;\??\c:\windows\system32\drivers\bucxdofy.sys --> c:\windows\system32\drivers\bucxdofy.sys [?]
S1 bxduvfat;bxduvfat;\??\c:\windows\system32\drivers\bxduvfat.sys --> c:\windows\system32\drivers\bxduvfat.sys [?]
S1 byuuqfwn;byuuqfwn;\??\c:\windows\system32\drivers\byuuqfwn.sys --> c:\windows\system32\drivers\byuuqfwn.sys [?]
S1 bzdhsjad;bzdhsjad;\??\c:\windows\system32\drivers\bzdhsjad.sys --> c:\windows\system32\drivers\bzdhsjad.sys [?]
S1 cgtxefhv;cgtxefhv;\??\c:\windows\system32\drivers\cgtxefhv.sys --> c:\windows\system32\drivers\cgtxefhv.sys [?]
S1 cpaqezdc;cpaqezdc;\??\c:\windows\system32\drivers\cpaqezdc.sys --> c:\windows\system32\drivers\cpaqezdc.sys [?]
S1 cqjkxuec;cqjkxuec;\??\c:\windows\system32\drivers\cqjkxuec.sys --> c:\windows\system32\drivers\cqjkxuec.sys [?]
S1 crddbwlh;crddbwlh;\??\c:\windows\system32\drivers\crddbwlh.sys --> c:\windows\system32\drivers\crddbwlh.sys [?]
S1 cshnbnjs;cshnbnjs;\??\c:\windows\system32\drivers\cshnbnjs.sys --> c:\windows\system32\drivers\cshnbnjs.sys [?]
S1 cxstjbay;cxstjbay;\??\c:\windows\system32\drivers\cxstjbay.sys --> c:\windows\system32\drivers\cxstjbay.sys [?]
S1 czxilpkm;czxilpkm;\??\c:\windows\system32\drivers\czxilpkm.sys --> c:\windows\system32\drivers\czxilpkm.sys [?]
S1 czxsrisz;czxsrisz;\??\c:\windows\system32\drivers\czxsrisz.sys --> c:\windows\system32\drivers\czxsrisz.sys [?]
S1 dbjcibdk;dbjcibdk;\??\c:\windows\system32\drivers\dbjcibdk.sys --> c:\windows\system32\drivers\dbjcibdk.sys [?]
S1 dcljmmfh;dcljmmfh;\??\c:\windows\system32\drivers\dcljmmfh.sys --> c:\windows\system32\drivers\dcljmmfh.sys [?]
S1 ddlupxfm;ddlupxfm;\??\c:\windows\system32\drivers\ddlupxfm.sys --> c:\windows\system32\drivers\ddlupxfm.sys [?]
S1 deijtdri;deijtdri;\??\c:\windows\system32\drivers\deijtdri.sys --> c:\windows\system32\drivers\deijtdri.sys [?]
S1 dfdozdzb;dfdozdzb;\??\c:\windows\system32\drivers\dfdozdzb.sys --> c:\windows\system32\drivers\dfdozdzb.sys [?]
S1 dfqnkyer;dfqnkyer;\??\c:\windows\system32\drivers\dfqnkyer.sys --> c:\windows\system32\drivers\dfqnkyer.sys [?]
S1 dhyubcya;dhyubcya;\??\c:\windows\system32\drivers\dhyubcya.sys --> c:\windows\system32\drivers\dhyubcya.sys [?]
S1 dilstltr;dilstltr;\??\c:\windows\system32\drivers\dilstltr.sys --> c:\windows\system32\drivers\dilstltr.sys [?]
S1 dioedtum;dioedtum;\??\c:\windows\system32\drivers\dioedtum.sys --> c:\windows\system32\drivers\dioedtum.sys [?]
S1 diwsrmtx;diwsrmtx;\??\c:\windows\system32\drivers\diwsrmtx.sys --> c:\windows\system32\drivers\diwsrmtx.sys [?]
S1 djvzvhir;djvzvhir;\??\c:\windows\system32\drivers\djvzvhir.sys --> c:\windows\system32\drivers\djvzvhir.sys [?]
S1 dlzhwbzs;dlzhwbzs;\??\c:\windows\system32\drivers\dlzhwbzs.sys --> c:\windows\system32\drivers\dlzhwbzs.sys [?]
S1 dmwudpmr;dmwudpmr;\??\c:\windows\system32\drivers\dmwudpmr.sys --> c:\windows\system32\drivers\dmwudpmr.sys [?]
S1 dqxqmaac;dqxqmaac;\??\c:\windows\system32\drivers\dqxqmaac.sys --> c:\windows\system32\drivers\dqxqmaac.sys [?]
S1 dtkpdkgg;dtkpdkgg;\??\c:\windows\system32\drivers\dtkpdkgg.sys --> c:\windows\system32\drivers\dtkpdkgg.sys [?]
S1 dtpbufke;dtpbufke;\??\c:\windows\system32\drivers\dtpbufke.sys --> c:\windows\system32\drivers\dtpbufke.sys [?]
S1 durvdnmz;durvdnmz;\??\c:\windows\system32\drivers\durvdnmz.sys --> c:\windows\system32\drivers\durvdnmz.sys [?]
S1 dzizhfrr;dzizhfrr;\??\c:\windows\system32\drivers\dzizhfrr.sys --> c:\windows\system32\drivers\dzizhfrr.sys [?]
S1 ebxvaqkn;ebxvaqkn;\??\c:\windows\system32\drivers\ebxvaqkn.sys --> c:\windows\system32\drivers\ebxvaqkn.sys [?]
S1 edqaoayf;edqaoayf;\??\c:\windows\system32\drivers\edqaoayf.sys --> c:\windows\system32\drivers\edqaoayf.sys [?]
S1 egtizcdb;egtizcdb;\??\c:\windows\system32\drivers\egtizcdb.sys --> c:\windows\system32\drivers\egtizcdb.sys [?]
S1 emahbrsx;emahbrsx;\??\c:\windows\system32\drivers\emahbrsx.sys --> c:\windows\system32\drivers\emahbrsx.sys [?]
S1 emuvaaeq;emuvaaeq;\??\c:\windows\system32\drivers\emuvaaeq.sys --> c:\windows\system32\drivers\emuvaaeq.sys [?]
S1 esuvmlxo;esuvmlxo;\??\c:\windows\system32\drivers\esuvmlxo.sys --> c:\windows\system32\drivers\esuvmlxo.sys [?]
S1 evofnhtn;evofnhtn;\??\c:\windows\system32\drivers\evofnhtn.sys --> c:\windows\system32\drivers\evofnhtn.sys [?]
S1 eylfcrbv;eylfcrbv;\??\c:\windows\system32\drivers\eylfcrbv.sys --> c:\windows\system32\drivers\eylfcrbv.sys [?]
S1 eyxspsps;eyxspsps;\??\c:\windows\system32\drivers\eyxspsps.sys --> c:\windows\system32\drivers\eyxspsps.sys [?]
S1 fafcpvyg;fafcpvyg;\??\c:\windows\system32\drivers\fafcpvyg.sys --> c:\windows\system32\drivers\fafcpvyg.sys [?]
S1 fdivxyqa;fdivxyqa;\??\c:\windows\system32\drivers\fdivxyqa.sys --> c:\windows\system32\drivers\fdivxyqa.sys [?]
S1 fdpmnymc;fdpmnymc;\??\c:\windows\system32\drivers\fdpmnymc.sys --> c:\windows\system32\drivers\fdpmnymc.sys [?]
S1 fevngffs;fevngffs;\??\c:\windows\system32\drivers\fevngffs.sys --> c:\windows\system32\drivers\fevngffs.sys [?]
S1 fgeilvuv;fgeilvuv;\??\c:\windows\system32\drivers\fgeilvuv.sys --> c:\windows\system32\drivers\fgeilvuv.sys [?]
S1 fhhhprqk;fhhhprqk;\??\c:\windows\system32\drivers\fhhhprqk.sys --> c:\windows\system32\drivers\fhhhprqk.sys [?]
S1 fiyauerv;fiyauerv;\??\c:\windows\system32\drivers\fiyauerv.sys --> c:\windows\system32\drivers\fiyauerv.sys [?]
S1 fjsaysue;fjsaysue;\??\c:\windows\system32\drivers\fjsaysue.sys --> c:\windows\system32\drivers\fjsaysue.sys [?]
S1 foaogsce;foaogsce;\??\c:\windows\system32\drivers\foaogsce.sys --> c:\windows\system32\drivers\foaogsce.sys [?]
S1 fqfhshlg;fqfhshlg;\??\c:\windows\system32\drivers\fqfhshlg.sys --> c:\windows\system32\drivers\fqfhshlg.sys [?]
S1 fqxqgwlm;fqxqgwlm;\??\c:\windows\system32\drivers\fqxqgwlm.sys --> c:\windows\system32\drivers\fqxqgwlm.sys [?]
S1 funkcvub;funkcvub;\??\c:\windows\system32\drivers\funkcvub.sys --> c:\windows\system32\drivers\funkcvub.sys [?]
S1 fxyscmkn;fxyscmkn;\??\c:\windows\system32\drivers\fxyscmkn.sys --> c:\windows\system32\drivers\fxyscmkn.sys [?]
S1 ghmlvrxh;ghmlvrxh;\??\c:\windows\system32\drivers\ghmlvrxh.sys --> c:\windows\system32\drivers\ghmlvrxh.sys [?]
S1 gibfedbu;gibfedbu;\??\c:\windows\system32\drivers\gibfedbu.sys --> c:\windows\system32\drivers\gibfedbu.sys [?]
S1 giwsfgkn;giwsfgkn;\??\c:\windows\system32\drivers\giwsfgkn.sys --> c:\windows\system32\drivers\giwsfgkn.sys [?]
S1 gpqhivew;gpqhivew;\??\c:\windows\system32\drivers\gpqhivew.sys --> c:\windows\system32\drivers\gpqhivew.sys [?]
S1 gqrfuwnk;gqrfuwnk;\??\c:\windows\system32\drivers\gqrfuwnk.sys --> c:\windows\system32\drivers\gqrfuwnk.sys [?]
S1 gtfjjehi;gtfjjehi;\??\c:\windows\system32\drivers\gtfjjehi.sys --> c:\windows\system32\drivers\gtfjjehi.sys [?]
S1 gxzpihic;gxzpihic;\??\c:\windows\system32\drivers\gxzpihic.sys --> c:\windows\system32\drivers\gxzpihic.sys [?]
S1 hbadicvy;hbadicvy;\??\c:\windows\system32\drivers\hbadicvy.sys --> c:\windows\system32\drivers\hbadicvy.sys [?]
S1 hdeqgsts;hdeqgsts;\??\c:\windows\system32\drivers\hdeqgsts.sys --> c:\windows\system32\drivers\hdeqgsts.sys [?]
S1 hdntjrey;hdntjrey;\??\c:\windows\system32\drivers\hdntjrey.sys --> c:\windows\system32\drivers\hdntjrey.sys [?]
S1 hfzwnumd;hfzwnumd;\??\c:\windows\system32\drivers\hfzwnumd.sys --> c:\windows\system32\drivers\hfzwnumd.sys [?]
S1 hjpbnajm;hjpbnajm;\??\c:\windows\system32\drivers\hjpbnajm.sys --> c:\windows\system32\drivers\hjpbnajm.sys [?]
S1 hkgwrmvl;hkgwrmvl;\??\c:\windows\system32\drivers\hkgwrmvl.sys --> c:\windows\system32\drivers\hkgwrmvl.sys [?]
S1 hnfbgdcb;hnfbgdcb;\??\c:\windows\system32\drivers\hnfbgdcb.sys --> c:\windows\system32\drivers\hnfbgdcb.sys [?]
S1 hnrqeqgk;hnrqeqgk;\??\c:\windows\system32\drivers\hnrqeqgk.sys --> c:\windows\system32\drivers\hnrqeqgk.sys [?]
S1 hrblkmuc;hrblkmuc;\??\c:\windows\system32\drivers\hrblkmuc.sys --> c:\windows\system32\drivers\hrblkmuc.sys [?]
S1 htajzheg;htajzheg;\??\c:\windows\system32\drivers\htajzheg.sys --> c:\windows\system32\drivers\htajzheg.sys [?]
S1 hwvrwlxh;hwvrwlxh;\??\c:\windows\system32\drivers\hwvrwlxh.sys --> c:\windows\system32\drivers\hwvrwlxh.sys [?]
S1 hxdobwnc;hxdobwnc;\??\c:\windows\system32\drivers\hxdobwnc.sys --> c:\windows\system32\drivers\hxdobwnc.sys [?]
S1 iahftlra;iahftlra;\??\c:\windows\system32\drivers\iahftlra.sys --> c:\windows\system32\drivers\iahftlra.sys [?]
S1 ibgcisux;ibgcisux;\??\c:\windows\system32\drivers\ibgcisux.sys --> c:\windows\system32\drivers\ibgcisux.sys [?]
S1 ibldkxtp;ibldkxtp;\??\c:\windows\system32\drivers\ibldkxtp.sys --> c:\windows\system32\drivers\ibldkxtp.sys [?]
S1 idvfzsjv;idvfzsjv;\??\c:\windows\system32\drivers\idvfzsjv.sys --> c:\windows\system32\drivers\idvfzsjv.sys [?]
S1 idvmjmib;idvmjmib;\??\c:\windows\system32\drivers\idvmjmib.sys --> c:\windows\system32\drivers\idvmjmib.sys [?]
S1 ifczmhyn;ifczmhyn;\??\c:\windows\system32\drivers\ifczmhyn.sys --> c:\windows\system32\drivers\ifczmhyn.sys [?]
S1 ifgktlpm;ifgktlpm;\??\c:\windows\system32\drivers\ifgktlpm.sys --> c:\windows\system32\drivers\ifgktlpm.sys [?]
S1 igzirlhr;igzirlhr;\??\c:\windows\system32\drivers\igzirlhr.sys --> c:\windows\system32\drivers\igzirlhr.sys [?]
S1 ihatcdlf;ihatcdlf;\??\c:\windows\system32\drivers\ihatcdlf.sys --> c:\windows\system32\drivers\ihatcdlf.sys [?]
S1 insqnban;insqnban;\??\c:\windows\system32\drivers\insqnban.sys --> c:\windows\system32\drivers\insqnban.sys [?]
S1 ippqyowb;ippqyowb;\??\c:\windows\system32\drivers\ippqyowb.sys --> c:\windows\system32\drivers\ippqyowb.sys [?]
S1 iqkynare;iqkynare;\??\c:\windows\system32\drivers\iqkynare.sys --> c:\windows\system32\drivers\iqkynare.sys [?]
S1 ismofodr;ismofodr;\??\c:\windows\system32\drivers\ismofodr.sys --> c:\windows\system32\drivers\ismofodr.sys [?]
S1 itcodqlq;itcodqlq;\??\c:\windows\system32\drivers\itcodqlq.sys --> c:\windows\system32\drivers\itcodqlq.sys [?]
S1 ivarfxoh;ivarfxoh;\??\c:\windows\system32\drivers\ivarfxoh.sys --> c:\windows\system32\drivers\ivarfxoh.sys [?]
S1 jcnogobr;jcnogobr;\??\c:\windows\system32\drivers\jcnogobr.sys --> c:\windows\system32\drivers\jcnogobr.sys [?]
S1 jgjnzrij;jgjnzrij;\??\c:\windows\system32\drivers\jgjnzrij.sys --> c:\windows\system32\drivers\jgjnzrij.sys [?]
S1 jhfoppgx;jhfoppgx;\??\c:\windows\system32\drivers\jhfoppgx.sys --> c:\windows\system32\drivers\jhfoppgx.sys [?]
S1 jikjspgb;jikjspgb;\??\c:\windows\system32\drivers\jikjspgb.sys --> c:\windows\system32\drivers\jikjspgb.sys [?]
S1 jizkcrjw;jizkcrjw;\??\c:\windows\system32\drivers\jizkcrjw.sys --> c:\windows\system32\drivers\jizkcrjw.sys [?]
S1 jobumder;jobumder;\??\c:\windows\system32\drivers\jobumder.sys --> c:\windows\system32\drivers\jobumder.sys [?]
S1 junehftt;junehftt;\??\c:\windows\system32\drivers\junehftt.sys --> c:\windows\system32\drivers\junehftt.sys [?]
S1 jvruampr;jvruampr;\??\c:\windows\system32\drivers\jvruampr.sys --> c:\windows\system32\drivers\jvruampr.sys [?]
S1 jyqtpgou;jyqtpgou;\??\c:\windows\system32\drivers\jyqtpgou.sys --> c:\windows\system32\drivers\jyqtpgou.sys [?]
S1 kbwvsupa;kbwvsupa;\??\c:\windows\system32\drivers\kbwvsupa.sys --> c:\windows\system32\drivers\kbwvsupa.sys [?]
S1 kclxknet;kclxknet;\??\c:\windows\system32\drivers\kclxknet.sys --> c:\windows\system32\drivers\kclxknet.sys [?]
S1 kdfvitxl;kdfvitxl;\??\c:\windows\system32\drivers\kdfvitxl.sys --> c:\windows\system32\drivers\kdfvitxl.sys [?]
S1 kdgcaume;kdgcaume;\??\c:\windows\system32\drivers\kdgcaume.sys --> c:\windows\system32\drivers\kdgcaume.sys [?]
S1 kefagnns;kefagnns;\??\c:\windows\system32\drivers\kefagnns.sys --> c:\windows\system32\drivers\kefagnns.sys [?]
S1 knuslxez;knuslxez;\??\c:\windows\system32\drivers\knuslxez.sys --> c:\windows\system32\drivers\knuslxez.sys [?]
S1 kocrscpj;kocrscpj;\??\c:\windows\system32\drivers\kocrscpj.sys --> c:\windows\system32\drivers\kocrscpj.sys [?]
S1 kqacnhib;kqacnhib;\??\c:\windows\system32\drivers\kqacnhib.sys --> c:\windows\system32\drivers\kqacnhib.sys [?]
S1 ktprxmrc;ktprxmrc;\??\c:\windows\system32\drivers\ktprxmrc.sys --> c:\windows\system32\drivers\ktprxmrc.sys [?]
S1 ktskgifp;ktskgifp;\??\c:\windows\system32\drivers\ktskgifp.sys --> c:\windows\system32\drivers\ktskgifp.sys [?]
S1 kttxnpbj;kttxnpbj;\??\c:\windows\system32\drivers\kttxnpbj.sys --> c:\windows\system32\drivers\kttxnpbj.sys [?]
S1 kukioytl;kukioytl;\??\c:\windows\system32\drivers\kukioytl.sys --> c:\windows\system32\drivers\kukioytl.sys [?]
S1 kxlwlikd;kxlwlikd;\??\c:\windows\system32\drivers\kxlwlikd.sys --> c:\windows\system32\drivers\kxlwlikd.sys [?]
S1 lcvumghg;lcvumghg;\??\c:\windows\system32\drivers\lcvumghg.sys --> c:\windows\system32\drivers\lcvumghg.sys [?]
S1 ldjkbmss;ldjkbmss;\??\c:\windows\system32\drivers\ldjkbmss.sys --> c:\windows\system32\drivers\ldjkbmss.sys [?]
S1 lfbdqtwh;lfbdqtwh;\??\c:\windows\system32\drivers\lfbdqtwh.sys --> c:\windows\system32\drivers\lfbdqtwh.sys [?]
S1 lffwoqat;lffwoqat;\??\c:\windows\system32\drivers\lffwoqat.sys --> c:\windows\system32\drivers\lffwoqat.sys [?]
S1 lflobwcd;lflobwcd;\??\c:\windows\system32\drivers\lflobwcd.sys --> c:\windows\system32\drivers\lflobwcd.sys [?]
S1 lpthdzpd;lpthdzpd;\??\c:\windows\system32\drivers\lpthdzpd.sys --> c:\windows\system32\drivers\lpthdzpd.sys [?]
S1 lqmeunos;lqmeunos;\??\c:\windows\system32\drivers\lqmeunos.sys --> c:\windows\system32\drivers\lqmeunos.sys [?]
S1 lrioilwk;lrioilwk;\??\c:\windows\system32\drivers\lrioilwk.sys --> c:\windows\system32\drivers\lrioilwk.sys [?]
S1 lybmyopv;lybmyopv;\??\c:\windows\system32\drivers\lybmyopv.sys --> c:\windows\system32\drivers\lybmyopv.sys [?]
S1 lzekfqqj;lzekfqqj;\??\c:\windows\system32\drivers\lzekfqqj.sys --> c:\windows\system32\drivers\lzekfqqj.sys [?]
S1 lzxnxand;lzxnxand;\??\c:\windows\system32\drivers\lzxnxand.sys --> c:\windows\system32\drivers\lzxnxand.sys [?]
S1 maymoeic;maymoeic;\??\c:\windows\system32\drivers\maymoeic.sys --> c:\windows\system32\drivers\maymoeic.sys [?]
S1 mbkckexx;mbkckexx;\??\c:\windows\system32\drivers\mbkckexx.sys --> c:\windows\system32\drivers\mbkckexx.sys [?]
S1 mcetcupd;mcetcupd;\??\c:\windows\system32\drivers\mcetcupd.sys --> c:\windows\system32\drivers\mcetcupd.sys [?]
S1 mefssjbt;mefssjbt;\??\c:\windows\system32\drivers\mefssjbt.sys --> c:\windows\system32\drivers\mefssjbt.sys [?]
S1 mgjxljqp;mgjxljqp;\??\c:\windows\system32\drivers\mgjxljqp.sys --> c:\windows\system32\drivers\mgjxljqp.sys [?]
S1 mhuxkpzq;mhuxkpzq;\??\c:\windows\system32\drivers\mhuxkpzq.sys --> c:\windows\system32\drivers\mhuxkpzq.sys [?]
S1 mnrjdtmi;mnrjdtmi;\??\c:\windows\system32\drivers\mnrjdtmi.sys --> c:\windows\system32\drivers\mnrjdtmi.sys [?]
S1 mofalhqb;mofalhqb;\??\c:\windows\system32\drivers\mofalhqb.sys --> c:\windows\system32\drivers\mofalhqb.sys [?]
S1 mozvndee;mozvndee;\??\c:\windows\system32\drivers\mozvndee.sys --> c:\windows\system32\drivers\mozvndee.sys [?]
S1 mqkaydxt;mqkaydxt;\??\c:\windows\system32\drivers\mqkaydxt.sys --> c:\windows\system32\drivers\mqkaydxt.sys [?]
S1 mtnhedrp;mtnhedrp;\??\c:\windows\system32\drivers\mtnhedrp.sys --> c:\windows\system32\drivers\mtnhedrp.sys [?]
S1 mvnykpuz;mvnykpuz;\??\c:\windows\system32\drivers\mvnykpuz.sys --> c:\windows\system32\drivers\mvnykpuz.sys [?]
S1 mvtkomln;mvtkomln;\??\c:\windows\system32\drivers\mvtkomln.sys --> c:\windows\system32\drivers\mvtkomln.sys [?]
S1 mxbovfsi;mxbovfsi;\??\c:\windows\system32\drivers\mxbovfsi.sys --> c:\windows\system32\drivers\mxbovfsi.sys [?]
S1 myqhtqiy;myqhtqiy;\??\c:\windows\system32\drivers\myqhtqiy.sys --> c:\windows\system32\drivers\myqhtqiy.sys [?]
S1 mzjmlgut;mzjmlgut;\??\c:\windows\system32\drivers\mzjmlgut.sys --> c:\windows\system32\drivers\mzjmlgut.sys [?]
S1 mzppjsxy;mzppjsxy;\??\c:\windows\system32\drivers\mzppjsxy.sys --> c:\windows\system32\drivers\mzppjsxy.sys [?]
S1 naaepljd;naaepljd;\??\c:\windows\system32\drivers\naaepljd.sys --> c:\windows\system32\drivers\naaepljd.sys [?]
S1 ncuywmwm;ncuywmwm;\??\c:\windows\system32\drivers\ncuywmwm.sys --> c:\windows\system32\drivers\ncuywmwm.sys [?]
S1 ncwfxljf;ncwfxljf;\??\c:\windows\system32\drivers\ncwfxljf.sys --> c:\windows\system32\drivers\ncwfxljf.sys [?]
S1 nkncdseg;nkncdseg;\??\c:\windows\system32\drivers\nkncdseg.sys --> c:\windows\system32\drivers\nkncdseg.sys [?]
S1 nlpncebw;nlpncebw;\??\c:\windows\system32\drivers\nlpncebw.sys --> c:\windows\system32\drivers\nlpncebw.sys [?]
S1 nmgjwxwm;nmgjwxwm;\??\c:\windows\system32\drivers\nmgjwxwm.sys --> c:\windows\system32\drivers\nmgjwxwm.sys [?]
S1 nnqvqqsi;nnqvqqsi;\??\c:\windows\system32\drivers\nnqvqqsi.sys --> c:\windows\system32\drivers\nnqvqqsi.sys [?]
S1 npyprnkl;npyprnkl;\??\c:\windows\system32\drivers\npyprnkl.sys --> c:\windows\system32\drivers\npyprnkl.sys [?]
S1 ntgvtfav;ntgvtfav;\??\c:\windows\system32\drivers\ntgvtfav.sys --> c:\windows\system32\drivers\ntgvtfav.sys [?]
S1 nvdzuqoe;nvdzuqoe;\??\c:\windows\system32\drivers\nvdzuqoe.sys --> c:\windows\system32\drivers\nvdzuqoe.sys [?]
S1 nwrsncee;nwrsncee;\??\c:\windows\system32\drivers\nwrsncee.sys --> c:\windows\system32\drivers\nwrsncee.sys [?]
S1 odcvqeid;odcvqeid;\??\c:\windows\system32\drivers\odcvqeid.sys --> c:\windows\system32\drivers\odcvqeid.sys [?]
S1 odfnbyku;odfnbyku;\??\c:\windows\system32\drivers\odfnbyku.sys --> c:\windows\system32\drivers\odfnbyku.sys [?]
S1 odjsyxce;odjsyxce;\??\c:\windows\system32\drivers\odjsyxce.sys --> c:\windows\system32\drivers\odjsyxce.sys [?]
S1 ogjmuwgm;ogjmuwgm;\??\c:\windows\system32\drivers\ogjmuwgm.sys --> c:\windows\system32\drivers\ogjmuwgm.sys [?]
S1 oimunbwb;oimunbwb;\??\c:\windows\system32\drivers\oimunbwb.sys --> c:\windows\system32\drivers\oimunbwb.sys [?]
S1 oiqgkiyo;oiqgkiyo;\??\c:\windows\system32\drivers\oiqgkiyo.sys --> c:\windows\system32\drivers\oiqgkiyo.sys [?]
S1 okqmiars;okqmiars;\??\c:\windows\system32\drivers\okqmiars.sys --> c:\windows\system32\drivers\okqmiars.sys [?]
S1 okwntaxu;okwntaxu;\??\c:\windows\system32\drivers\okwntaxu.sys --> c:\windows\system32\drivers\okwntaxu.sys [?]
S1 ontdgxrr;ontdgxrr;\??\c:\windows\system32\drivers\ontdgxrr.sys --> c:\windows\system32\drivers\ontdgxrr.sys [?]
S1 oosccolg;oosccolg;\??\c:\windows\system32\drivers\oosccolg.sys --> c:\windows\system32\drivers\oosccolg.sys [?]
S1 oralggno;oralggno;\??\c:\windows\system32\drivers\oralggno.sys --> c:\windows\system32\drivers\oralggno.sys [?]
S1 ouxvoqtt;ouxvoqtt;\??\c:\windows\system32\drivers\ouxvoqtt.sys --> c:\windows\system32\drivers\ouxvoqtt.sys [?]
S1 owqnnvrv;owqnnvrv;\??\c:\windows\system32\drivers\owqnnvrv.sys --> c:\windows\system32\drivers\owqnnvrv.sys [?]
S1 oxdouwxk;oxdouwxk;\??\c:\windows\system32\drivers\oxdouwxk.sys --> c:\windows\system32\drivers\oxdouwxk.sys [?]
S1 oxsvehgj;oxsvehgj;\??\c:\windows\system32\drivers\oxsvehgj.sys --> c:\windows\system32\drivers\oxsvehgj.sys [?]
S1 pbazsnth;pbazsnth;\??\c:\windows\system32\drivers\pbazsnth.sys --> c:\windows\system32\drivers\pbazsnth.sys [?]
S1 pdqdvujt;pdqdvujt;\??\c:\windows\system32\drivers\pdqdvujt.sys --> c:\windows\system32\drivers\pdqdvujt.sys [?]
S1 pgdcutsw;pgdcutsw;\??\c:\windows\system32\drivers\pgdcutsw.sys --> c:\windows\system32\drivers\pgdcutsw.sys [?]
S1 phpoujyd;phpoujyd;\??\c:\windows\system32\drivers\phpoujyd.sys --> c:\windows\system32\drivers\phpoujyd.sys [?]
S1 pirauhwq;pirauhwq;\??\c:\windows\system32\drivers\pirauhwq.sys --> c:\windows\system32\drivers\pirauhwq.sys [?]
S1 piyqnqyh;piyqnqyh;\??\c:\windows\system32\drivers\piyqnqyh.sys --> c:\windows\system32\drivers\piyqnqyh.sys [?]
S1 pkoozdna;pkoozdna;\??\c:\windows\system32\drivers\pkoozdna.sys --> c:\windows\system32\drivers\pkoozdna.sys [?]
S1 pllejyyy;pllejyyy;\??\c:\windows\system32\drivers\pllejyyy.sys --> c:\windows\system32\drivers\pllejyyy.sys [?]
S1 pnsalejf;pnsalejf;\??\c:\windows\system32\drivers\pnsalejf.sys --> c:\windows\system32\drivers\pnsalejf.sys [?]
S1 ppxvttkj;ppxvttkj;\??\c:\windows\system32\drivers\ppxvttkj.sys --> c:\windows\system32\drivers\ppxvttkj.sys [?]
S1 prpgghfy;prpgghfy;\??\c:\windows\system32\drivers\prpgghfy.sys --> c:\windows\system32\drivers\prpgghfy.sys [?]
S1 psbnbkdz;psbnbkdz;\??\c:\windows\system32\drivers\psbnbkdz.sys --> c:\windows\system32\drivers\psbnbkdz.sys [?]
S1 ptfrtfgn;ptfrtfgn;\??\c:\windows\system32\drivers\ptfrtfgn.sys --> c:\windows\system32\drivers\ptfrtfgn.sys [?]
S1 puhojqcu;puhojqcu;\??\c:\windows\system32\drivers\puhojqcu.sys --> c:\windows\system32\drivers\puhojqcu.sys [?]
S1 puuxrfyd;puuxrfyd;\??\c:\windows\system32\drivers\puuxrfyd.sys --> c:\windows\system32\drivers\puuxrfyd.sys [?]
S1 pxvebyho;pxvebyho;\??\c:\windows\system32\drivers\pxvebyho.sys --> c:\windows\system32\drivers\pxvebyho.sys [?]
S1 pzlvxsvf;pzlvxsvf;\??\c:\windows\system32\drivers\pzlvxsvf.sys --> c:\windows\system32\drivers\pzlvxsvf.sys [?]
S1 qanwdysr;qanwdysr;\??\c:\windows\system32\drivers\qanwdysr.sys --> c:\windows\system32\drivers\qanwdysr.sys [?]
S1 qefiuikz;qefiuikz;\??\c:\windows\system32\drivers\qefiuikz.sys --> c:\windows\system32\drivers\qefiuikz.sys [?]
S1 qgtepdpm;qgtepdpm;\??\c:\windows\system32\drivers\qgtepdpm.sys --> c:\windows\system32\drivers\qgtepdpm.sys [?]
S1 qiwqcsmi;qiwqcsmi;\??\c:\windows\system32\drivers\qiwqcsmi.sys --> c:\windows\system32\drivers\qiwqcsmi.sys [?]
S1 qlvmdctg;qlvmdctg;\??\c:\windows\system32\drivers\qlvmdctg.sys --> c:\windows\system32\drivers\qlvmdctg.sys [?]
S1 qomiitam;qomiitam;\??\c:\windows\system32\drivers\qomiitam.sys --> c:\windows\system32\drivers\qomiitam.sys [?]
S1 qsddwbyl;qsddwbyl;\??\c:\windows\system32\drivers\qsddwbyl.sys --> c:\windows\system32\drivers\qsddwbyl.sys [?]
S1 qtecxihb;qtecxihb;\??\c:\windows\system32\drivers\qtecxihb.sys --> c:\windows\system32\drivers\qtecxihb.sys [?]
S1 qytrzoze;qytrzoze;\??\c:\windows\system32\drivers\qytrzoze.sys --> c:\windows\system32\drivers\qytrzoze.sys [?]
S1 reocewkm;reocewkm;\??\c:\windows\system32\drivers\reocewkm.sys --> c:\windows\system32\drivers\reocewkm.sys [?]
S1 rerdhzwu;rerdhzwu;\??\c:\windows\system32\drivers\rerdhzwu.sys --> c:\windows\system32\drivers\rerdhzwu.sys [?]
S1 rgmkhqqt;rgmkhqqt;\??\c:\windows\system32\drivers\rgmkhqqt.sys --> c:\windows\system32\drivers\rgmkhqqt.sys [?]
S1 rkmsnytb;rkmsnytb;\??\c:\windows\system32\drivers\rkmsnytb.sys --> c:\windows\system32\drivers\rkmsnytb.sys [?]
S1 rmzfbecb;rmzfbecb;\??\c:\windows\system32\drivers\rmzfbecb.sys --> c:\windows\system32\drivers\rmzfbecb.sys [?]
S1 roorobeu;roorobeu;\??\c:\windows\system32\drivers\roorobeu.sys --> c:\windows\system32\drivers\roorobeu.sys [?]
S1 rqbjnxno;rqbjnxno;\??\c:\windows\system32\drivers\rqbjnxno.sys --> c:\windows\system32\drivers\rqbjnxno.sys [?]
S1 rrbufsqc;rrbufsqc;\??\c:\windows\system32\drivers\rrbufsqc.sys --> c:\windows\system32\drivers\rrbufsqc.sys [?]
S1 rsybfafi;rsybfafi;\??\c:\windows\system32\drivers\rsybfafi.sys --> c:\windows\system32\drivers\rsybfafi.sys [?]
S1 ruykxvmx;ruykxvmx;\??\c:\windows\system32\drivers\ruykxvmx.sys --> c:\windows\system32\drivers\ruykxvmx.sys [?]
S1 rxvylbhy;rxvylbhy;\??\c:\windows\system32\drivers\rxvylbhy.sys --> c:\windows\system32\drivers\rxvylbhy.sys [?]
S1 skdwrang;skdwrang;\??\c:\windows\system32\drivers\skdwrang.sys --> c:\windows\system32\drivers\skdwrang.sys [?]
S1 socjeewv;socjeewv;\??\c:\windows\system32\drivers\socjeewv.sys --> c:\windows\system32\drivers\socjeewv.sys [?]
S1 sspxnkbm;sspxnkbm;\??\c:\windows\system32\drivers\sspxnkbm.sys --> c:\windows\system32\drivers\sspxnkbm.sys [?]
S1 stumkcxn;stumkcxn;\??\c:\windows\system32\drivers\stumkcxn.sys --> c:\windows\system32\drivers\stumkcxn.sys [?]
S1 sxnnoffc;sxnnoffc;\??\c:\windows\system32\drivers\sxnnoffc.sys --> c:\windows\system32\drivers\sxnnoffc.sys [?]
S1 szcqrkiu;szcqrkiu;\??\c:\windows\system32\drivers\szcqrkiu.sys --> c:\windows\system32\drivers\szcqrkiu.sys [?]
S1 takjxbli;takjxbli;\??\c:\windows\system32\drivers\takjxbli.sys --> c:\windows\system32\drivers\takjxbli.sys [?]
S1 taksujgt;taksujgt;\??\c:\windows\system32\drivers\taksujgt.sys --> c:\windows\system32\drivers\taksujgt.sys [?]
S1 taqwmdga;taqwmdga;\??\c:\windows\system32\drivers\taqwmdga.sys --> c:\windows\system32\drivers\taqwmdga.sys [?]
S1 tccfkxcz;tccfkxcz;\??\c:\windows\system32\drivers\tccfkxcz.sys --> c:\windows\system32\drivers\tccfkxcz.sys [?]
S1 tehkuoam;tehkuoam;\??\c:\windows\system32\drivers\tehkuoam.sys --> c:\windows\system32\drivers\tehkuoam.sys [?]
S1 tghnnwcb;tghnnwcb;\??\c:\windows\system32\drivers\tghnnwcb.sys --> c:\windows\system32\drivers\tghnnwcb.sys [?]
S1 tjqqylmj;tjqqylmj;\??\c:\windows\system32\drivers\tjqqylmj.sys --> c:\windows\system32\drivers\tjqqylmj.sys [?]
S1 tlpfxfzm;tlpfxfzm;\??\c:\windows\system32\drivers\tlpfxfzm.sys --> c:\windows\system32\drivers\tlpfxfzm.sys [?]
S1 tmzccmxk;tmzccmxk;\??\c:\windows\system32\drivers\tmzccmxk.sys --> c:\windows\system32\drivers\tmzccmxk.sys [?]
S1 tnnuggmh;tnnuggmh;\??\c:\windows\system32\drivers\tnnuggmh.sys --> c:\windows\system32\drivers\tnnuggmh.sys [?]
S1 tpvixgnd;tpvixgnd;\??\c:\windows\system32\drivers\tpvixgnd.sys --> c:\windows\system32\drivers\tpvixgnd.sys [?]
S1 tshvsuqd;tshvsuqd;\??\c:\windows\system32\drivers\tshvsuqd.sys --> c:\windows\system32\drivers\tshvsuqd.sys [?]
S1 tstfhteo;tstfhteo;\??\c:\windows\system32\drivers\tstfhteo.sys --> c:\windows\system32\drivers\tstfhteo.sys [?]
S1 tvafmgok;tvafmgok;\??\c:\windows\system32\drivers\tvafmgok.sys --> c:\windows\system32\drivers\tvafmgok.sys [?]
S1 uactpfgo;uactpfgo;\??\c:\windows\system32\drivers\uactpfgo.sys --> c:\windows\system32\drivers\uactpfgo.sys [?]
S1 ueogdkue;ueogdkue;\??\c:\windows\system32\drivers\ueogdkue.sys --> c:\windows\system32\drivers\ueogdkue.sys [?]
S1 ujsikoez;ujsikoez;\??\c:\windows\system32\drivers\ujsikoez.sys --> c:\windows\system32\drivers\ujsikoez.sys [?]
S1 ukojfomn;ukojfomn;\??\c:\windows\system32\drivers\ukojfomn.sys --> c:\windows\system32\drivers\ukojfomn.sys [?]
S1 utbxddqd;utbxddqd;\??\c:\windows\system32\drivers\utbxddqd.sys --> c:\windows\system32\drivers\utbxddqd.sys [?]
S1 uuzkkusi;uuzkkusi;\??\c:\windows\system32\drivers\uuzkkusi.sys --> c:\windows\system32\drivers\uuzkkusi.sys [?]
S1 uznnspkh;uznnspkh;\??\c:\windows\system32\drivers\uznnspkh.sys --> c:\windows\system32\drivers\uznnspkh.sys [?]
S1 vfvdhkkn;vfvdhkkn;\??\c:\windows\system32\drivers\vfvdhkkn.sys --> c:\windows\system32\drivers\vfvdhkkn.sys [?]
S1 vjuqgzti;vjuqgzti;\??\c:\windows\system32\drivers\vjuqgzti.sys --> c:\windows\system32\drivers\vjuqgzti.sys [?]
S1 vscmjkkp;vscmjkkp;\??\c:\windows\system32\drivers\vscmjkkp.sys --> c:\windows\system32\drivers\vscmjkkp.sys [?]
S1 vtabdlsn;vtabdlsn;\??\c:\windows\system32\drivers\vtabdlsn.sys --> c:\windows\system32\drivers\vtabdlsn.sys [?]
S1 vuadpfrx;vuadpfrx;\??\c:\windows\system32\drivers\vuadpfrx.sys --> c:\windows\system32\drivers\vuadpfrx.sys [?]
S1 vysmosfx;vysmosfx;\??\c:\windows\system32\drivers\vysmosfx.sys --> c:\windows\system32\drivers\vysmosfx.sys [?]
S1 wdgbzssj;wdgbzssj;\??\c:\windows\system32\drivers\wdgbzssj.sys --> c:\windows\system32\drivers\wdgbzssj.sys [?]
S1 wfjrjkds;wfjrjkds;\??\c:\windows\system32\drivers\wfjrjkds.sys --> c:\windows\system32\drivers\wfjrjkds.sys [?]
S1 wftgpfjt;wftgpfjt;\??\c:\windows\system32\drivers\wftgpfjt.sys --> c:\windows\system32\drivers\wftgpfjt.sys [?]
S1 wjskwjfz;wjskwjfz;\??\c:\windows\system32\drivers\wjskwjfz.sys --> c:\windows\system32\drivers\wjskwjfz.sys [?]
S1 wkusoayz;wkusoayz;\??\c:\windows\system32\drivers\wkusoayz.sys --> c:\windows\system32\drivers\wkusoayz.sys [?]
S1 wlukkekh;wlukkekh;\??\c:\windows\system32\drivers\wlukkekh.sys --> c:\windows\system32\drivers\wlukkekh.sys [?]
S1 wroizjnf;wroizjnf;\??\c:\windows\system32\drivers\wroizjnf.sys --> c:\windows\system32\drivers\wroizjnf.sys [?]
S1 wstxoagj;wstxoagj;\??\c:\windows\system32\drivers\wstxoagj.sys --> c:\windows\system32\drivers\wstxoagj.sys [?]
S1 wvnxcbxg;wvnxcbxg;\??\c:\windows\system32\drivers\wvnxcbxg.sys --> c:\windows\system32\drivers\wvnxcbxg.sys [?]
S1 wxjzhqpu;wxjzhqpu;\??\c:\windows\system32\drivers\wxjzhqpu.sys --> c:\windows\system32\drivers\wxjzhqpu.sys [?]
S1 xahltbdq;xahltbdq;\??\c:\windows\system32\drivers\xahltbdq.sys --> c:\windows\system32\drivers\xahltbdq.sys [?]
S1 xaxfoorx;xaxfoorx;\??\c:\windows\system32\drivers\xaxfoorx.sys --> c:\windows\system32\drivers\xaxfoorx.sys [?]
S1 xbntqjpe;xbntqjpe;\??\c:\windows\system32\drivers\xbntqjpe.sys --> c:\windows\system32\drivers\xbntqjpe.sys [?]
S1 xcuawewp;xcuawewp;\??\c:\windows\system32\drivers\xcuawewp.sys --> c:\windows\system32\drivers\xcuawewp.sys [?]
S1 xedlwaeb;xedlwaeb;\??\c:\windows\system32\drivers\xedlwaeb.sys --> c:\windows\system32\drivers\xedlwaeb.sys [?]
S1 xmpanlwf;xmpanlwf;\??\c:\windows\system32\drivers\xmpanlwf.sys --> c:\windows\system32\drivers\xmpanlwf.sys [?]
S1 xqumgnua;xqumgnua;\??\c:\windows\system32\drivers\xqumgnua.sys --> c:\windows\system32\drivers\xqumgnua.sys [?]
S1 xulltvky;xulltvky;\??\c:\windows\system32\drivers\xulltvky.sys --> c:\windows\system32\drivers\xulltvky.sys [?]
S1 xuytfkqs;xuytfkqs;\??\c:\windows\system32\drivers\xuytfkqs.sys --> c:\windows\system32\drivers\xuytfkqs.sys [?]
S1 xvukkssj;xvukkssj;\??\c:\windows\system32\drivers\xvukkssj.sys --> c:\windows\system32\drivers\xvukkssj.sys [?]
S1 xwpymums;xwpymums;\??\c:\windows\system32\drivers\xwpymums.sys --> c:\windows\system32\drivers\xwpymums.sys [?]
S1 yaegbulc;yaegbulc;\??\c:\windows\system32\drivers\yaegbulc.sys --> c:\windows\system32\drivers\yaegbulc.sys [?]
S1 ydbcnepv;ydbcnepv;\??\c:\windows\system32\drivers\ydbcnepv.sys --> c:\windows\system32\drivers\ydbcnepv.sys [?]
S1 ygnqjjck;ygnqjjck;\??\c:\windows\system32\drivers\ygnqjjck.sys --> c:\windows\system32\drivers\ygnqjjck.sys [?]
S1 yikqmaib;yikqmaib;\??\c:\windows\system32\drivers\yikqmaib.sys --> c:\windows\system32\drivers\yikqmaib.sys [?]
S1 yrymdidi;yrymdidi;\??\c:\windows\system32\drivers\yrymdidi.sys --> c:\windows\system32\drivers\yrymdidi.sys [?]
S1 ywmgixxk;ywmgixxk;\??\c:\windows\system32\drivers\ywmgixxk.sys --> c:\windows\system32\drivers\ywmgixxk.sys [?]
S1 yzjopngs;yzjopngs;\??\c:\windows\system32\drivers\yzjopngs.sys --> c:\windows\system32\drivers\yzjopngs.sys [?]
S1 zccukszn;zccukszn;\??\c:\windows\system32\drivers\zccukszn.sys --> c:\windows\system32\drivers\zccukszn.sys [?]
S1 zhevsjaq;zhevsjaq;\??\c:\windows\system32\drivers\zhevsjaq.sys --> c:\windows\system32\drivers\zhevsjaq.sys [?]
S1 zlvumpct;zlvumpct;\??\c:\windows\system32\drivers\zlvumpct.sys --> c:\windows\system32\drivers\zlvumpct.sys [?]
S1 zmgestsg;zmgestsg;\??\c:\windows\system32\drivers\zmgestsg.sys --> c:\windows\system32\drivers\zmgestsg.sys [?]
S2 RoxLiveShare10;LiveShare P2P Server 10;"c:\programmi\File comuni\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe" --> c:\programmi\File comuni\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe [?]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\programmi\Spybot - Search & Destroy 2\SDWSCSvc.exe [15/05/2013 13.50.27 168384]
S2 SkypeUpdate;Skype Updater;c:\programmi\Skype\Updater\Updater.exe [21/06/2013 9.53.36 162408]
S3 ACSSCR;ACR38 Smart Card Reader;c:\windows\system32\drivers\a38usbxp.sys [03/05/2011 17.08.11 24832]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\drivers\ew_hwusbdev.sys [11/01/2013 12.06.58 102784]
S3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\drivers\ew_usbenumfilter.sys [11/01/2013 12.03.44 11136]
S3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\drivers\ewusbnet.sys [11/01/2013 12.03.54 237440]
S3 F5FltDrv;F5 Networks DNS Relay Driver;c:\windows\system32\drivers\F5FltDrv.sys [13/06/2013 17.26.20 21280]
S3 f5ipfw;F5 Networks StoneWall Filter;c:\windows\system32\drivers\urfltw2k.sys [17/06/2013 19.29.47 10784]
S3 GemCCID;GemCCID;c:\windows\system32\drivers\GemCCID.sys [17/11/2011 15.24.35 89600]
S3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys --> c:\windows\system32\DRIVERS\ewusbdev.sys [?]
S3 onda_lq_cdc_acm;ONDA CDC-ACM driver;c:\windows\system32\drivers\onda_lq_cdc_acm.sys [25/03/2011 17.28.06 67072]
S3 onda_lq_cdc_ecm;onda_lq_cdc_ecm;c:\windows\system32\drivers\onda_lq_cdc_ecm.sys [25/03/2011 17.28.08 33024]
S3 onda_lq_cpo;ONDA Mass Storage Device;c:\windows\system32\drivers\onda_lq_cpo.sys [25/03/2011 17.28.06 9984]
S3 onda_lq_ecm_enum;ONDA DC Enumerator;c:\windows\system32\drivers\onda_lq_ecm_enum.sys [25/03/2011 17.28.08 45184]
S3 onda_lq_ecm_enum_filter;onda_lq_ecm_enum_filter;c:\windows\system32\drivers\onda_lq_ecm_enum_filter.sys [25/03/2011 17.28.08 45184]
.
Contenuto della cartella 'Scheduled Tasks'
.
2013-08-29 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-16 09:13]
.
2013-08-29 c:\windows\Tasks\Check for updates (Spybot - Search & Destroy).job
- c:\programmi\Spybot - Search & Destroy 2\SDUpdate.exe [2013-05-15 12:08]
.
2013-08-29 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-1539946085-1163005597-3154568099-449384.job
- c:\programmi\Real\RealUpgrade\realupgrade.exe [2012-07-27 12:27]
.
2013-08-29 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-1736466025-976769067-526660263-11155.job
- c:\programmi\Real\RealUpgrade\realupgrade.exe [2012-07-27 12:27]
.
2013-08-26 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-1539946085-1163005597-3154568099-449384.job
- c:\programmi\Real\RealUpgrade\realupgrade.exe [2012-07-27 12:27]
.
2013-08-28 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-1736466025-976769067-526660263-11155.job
- c:\programmi\Real\RealUpgrade\realupgrade.exe [2012-07-27 12:27]
.
2013-08-27 c:\windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job
- c:\programmi\Spybot - Search & Destroy 2\SDImmunize.exe [2013-05-15 12:07]
.
2013-07-31 c:\windows\Tasks\Scan the system (Spybot - Search & Destroy).job
- c:\programmi\Spybot - Search & Destroy 2\SDScan.exe [2013-05-15 12:07]
.
.
------- Scansione supplementare -------
.
uStart Page = https://www.google.it/
mStart Page = about:blank
uInternet Settings,ProxyServer = 192.168.200.10:8080
uInternet Settings,ProxyOverride = <local>
uSearchAssistant = about:blank
TCP: DhcpNameServer =
DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} - hxxp://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20110804110550
DPF: {B8693DEF-98AC-43FC-AA00-E7D728334C80} - file://C:/Programmi/F5 VPN/F5_TMP/ur5250x.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://82.170.187.115/activex/AMC.cab
DPF: {E66D35B8-E70D-42A6-B1F5-DB784CB92B15} - file://C:/Programmi/F5 VPN/F5_TMP/urvncx.cab
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-08-29 13:01
Windows 5.1.2600 Service Pack 3 NTFS
.
scansione processi nascosti ...
.
scansione entrate autostart nascoste ...
.
Scansione files nascosti ...
.
Scansione completata con successo
Files nascosti: 0
.
**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_8_800_94_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
.
- - - - - - - > 'winlogon.exe'(736)
c:\windows\system32\igfxdev.dll
.
- - - - - - - > 'explorer.exe'(4440)
c:\windows\system32\WININET.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Ora fine scansione: 2013-08-29 13:03:37
ComboFix-quarantined-files.txt 2013-08-29 11:03
ComboFix2.txt 2013-08-29 10:12
.
Pre-Run: 202.699.280.384 byte disponibili
Post-Run: 202.745.593.856 byte disponibili
.
- - End Of File - - 73728E9C524251E0EB29B5D0614DF966
93AE6BB6E0A444052B75F87C5FBEAE91 |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 05 Set 2013 19:01 Oggetto: |
|
|
Ciao.
Il log di Combofix non è completo.
Inoltre per eliminare manualmente la marea di virus che hai imbarcato mi ci vuole minimo un'ora per compilare uno script.
Nel frattempo:
Scarica Adwcleaner sul desktop:
link
Chiudi tutti i browser, (è importante IE,Firefox Chrome ecc...)
Clicca sul pulsante "Scan".
Finita la scansione clicca su "Clean"
Conferma con OK le varie finestre che ti compariranno.
Il pc si riavvierà, e uscirà il log con le eliminazioni.
Postalo qui.
Per postare il log segui queste indicazioni:
Collegati ad internet e vai alla pagina WikiSend: link
Clicca sul bottone "Sfoglia"
Seleziona il file appena salvato
Clicca su Upload file
Dopo qualche secondo, vieni spostato su una nuova pagina con il link in diversi formati:
Download Link / Forum Link
Seleziona Forum Link, copialo e incollalo in un nuovo messaggio per il forum. |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 06 Set 2013 13:38 Oggetto: |
|
|
oggi ho fatto mille scansioni con diversi antivirus e malware, ma non ho trovato nulla: volevo comunque precisare che i problemi ce li ho con i documenti (di qualsiasi tipo e dimensione, doc, pdf, exce, txt..). Non posso proprio toccarli che la clessidra mi si blocca per diversi minuti..tanto da rinunciarci! nessun problema se devo per esempio aprire o spostare una cartella... |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 06 Set 2013 17:58 Oggetto: |
|
|
Ciao.
Fammi una cortesia:
Rinomina Combofix in uninstall e avvialo.
Si disistallerà lo stesso Combofix.
Poi lo riscarichi fresco:
link
Salvalo sul desktop. (è obbligatorio)
Fai la scansione e posta il log. (con Wikisend) |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 09 Set 2013 10:01 Oggetto: |
|
|
ciao, eccoti il link del combofix. questa volta non mi ha riavviato il pc.
grazie ancora
ComboFix.txt |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 09 Set 2013 17:40 Oggetto: |
|
|
Ciao.
Queste eliminazioni, non sono nemmeno la metà di quelle che dovrebbero essere eliminate.
Per il momento vediamo cosa succede eliminando queste:
Apri un file di testo con il Block Note sul Desktop
Ci incolli il codice che vedi qui sotto, e salvi il file di testo obbligatoriamente con il nome CFScript.txt
Codice: | KillAll::
Driver::
abgzhmfg
afvpiwpp
alzgdxql
amuyuowo
apmqtbzw
aqluwcfo
asfdkxxp
atceidor
atmcouqz
avslhlqj
awcgxhrn
awjngqlu
bbfyfqtp
bfouniqj
bfrtheno
bgrnjefz
bhqovyut
biyymnpq
bjaniqzg
bnlpadup
bozpjngq
bpetrnid
bpvzyfvh
bqowqzrv
bsliyhyv
btlproej
btlycmns
btncxaeu
bucxdofy
bxduvfat
byuuqfwn
bzdhsjad
cgtxefhv
cpaqezdc
cqjkxuec
crddbwlh
cshnbnjs
cxstjbay
czxilpkm
czxsrisz
dbjcibdk
dcljmmfh
ddlupxfm
deijtdri
dfdozdzb
dfqnkyer
dhyubcya
dilstltr
dioedtum
diwsrmtx
djvzvhir
dlzhwbzs
dmwudpmr
dqxqmaac
dtkpdkgg
dtpbufke
durvdnmz
dzizhfrr
ebxvaqkn
edqaoayf
egtizcdb
emahbrsx
emuvaaeq
esuvmlxo
evofnhtn
eylfcrbv
eyxspsps
fafcpvyg
fdivxyqa
fdpmnymc
fevngffs
fgeilvuv
fhhhprqk
fiyauerv
fjsaysue
foaogsce
fqxqgwlm
fqfhshlg
funkcvub
fxyscmkn
ghmlvrxh
gibfedbu
giwsfgkn
gpqhivew
gqrfuwnk
gtfjjehi
gxzpihic
hbadicvy
hdeqgsts
hdntjrey
hfzwnumd
hjpbnajm
hkgwrmvl
hnfbgdcb
hnrqeqgk
hrblkmuc
htajzheg
hwvrwlxh
hxdobwnc
iahftlra
ibgcisux
ibldkxtp
idvfzsjv
idvmjmib
ifczmhyn
ifgktlpm
igzirlhr
ihatcdlf
insqnban
ippqyowb
iqkynare
ismofodr
itcodqlq
ivarfxoh |
e trascinalo sull'icona di ComboFix.
Attendi la fine dei lavori, senza toccare tastiera, mouse o altro.
Posta il log aggiornato di combofix |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 10 Set 2013 10:43 Oggetto: |
|
|
ecco, grazie.
si trattava di virus? ora lavoro molto più veloce. pensi che sia risolto?
ComboFix.txt |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 10 Set 2013 18:55 Oggetto: |
|
|
Citazione: | si trattava di virus? |
Si tratta di virus perche non abbiamo finito.
Apri un file di testo con il Block Note sul Desktop
Ci incolli il codice che vedi qui sotto, e salvi il file di testo obbligatoriamente con il nome CFScript.txt
Codice: | KillAll::
Driver::
jcnogob
jgjnzrij
jhfoppgx
jikjspgb
jizkcrjw
jobumder
junehftt
jvruampr
jyqtpgou
kbwvsupa
kclxknet
kdfvitxl
kdgcaume
kefagnns
knuslxez
kocrscpj
kqacnhib
ktprxmrc
ktskgifp
kttxnpbj
kukioytl
kxlwlikd
lcvumghg
ldjkbmss
lfbdqtwh
lffwoqat
lflobwcd
lpthdzpd
lqmeunos
lrioilwk
lybmyopv
lzekfqqj
lzxnxand
maymoeic
mbkckexx
mcetcupd
mefssjbt
mgjxljqp
mhuxkpzq
mnrjdtmi
mofalhqb
mozvndee
mqkaydxt
mtnhedrp
mvnykpuz
mvtkomln
mxbovfsi
myqhtqiy
mzjmlgut
mzppjsxy
naaepljd
ncuywmwm
ncwfxljf
nkncdseg
nlpncebw
nmgjwxwm
nnqvqqsi
npyprnkl
ntgvtfav
nvdzuqoe
nwrsncee
odcvqeid
odfnbyku
odjsyxce
ogjmuwgm
oimunbwb
oiqgkiyo
okqmiars
okwntaxu
ontdgxrr
oosccolg
oralggno
ouxvoqtt
owqnnvrv
oxdouwxk
oxsvehgj
pbazsnth
pdqdvujt
pgdcutsw
phpoujyd
pirauhwq
piyqnqyh
pkoozdna
pllejyyy
pnsalejf
ppxvttkj
prpgghfy
psbnbkdz
ptfrtfgn
puhojqcu
puuxrfyd
pxvebyho
pzlvxsvf
|
e trascinalo sull'icona di ComboFix.
Attendi la fine dei lavori, senza toccare tastiera, mouse o altro.
Posta il log aggiornato di combofix.
N.B:
Ce ne sono ancora un centinaio da eliminare, per cui ti chiedo un pò di pazienza. |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 11 Set 2013 09:40 Oggetto: |
|
|
grazie a te per la pazienza.
ecco il log ComboFix.txt |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 11 Set 2013 19:32 Oggetto: |
|
|
Apri un file di testo con il Block Note sul Desktop
Ci incolli il codice che vedi qui sotto, e salvi il file di testo obbligatoriamente con il nome CFScript.txt
Codice: | KillAll::
Driver::
jcnogobr
qanwdysr
qefiuikz
qgtepdpm
qiwqcsmi
qlvmdctg
qomiitam
qsddwbyl
qtecxihb
qytrzoze
reocewkm
rerdhzwu
rgmkhqqt
rkmsnytb
rmzfbecb
roorobeu
rqbjnxno
rrbufsqc
rsybfafi
ruykxvmx
rxvylbhy
skdwrang
socjeewv
sspxnkbm
stumkcxn
sxnnoffc
szcqrkiu
takjxbli
taksujgt
taqwmdga
tccfkxcz
tehkuoam
tghnnwcb
tjqqylmj
tlpfxfzm
tmzccmxk
tnnuggmh
tpvixgnd
tshvsuqd
tstfhteo
tvafmgok
uactpfgo
ueogdkue
ujsikoez
ukojfomn
utbxddqd
uuzkkusi
uznnspkh
vfvdhkkn
vjuqgzti
vscmjkkp
vtabdlsn
vuadpfrx
vysmosfx
wdgbzssj
wfjrjkds
wftgpfjt
wjskwjfz
wkusoayz
wlukkekh
wroizjnf
wstxoagj
wvnxcbxg
wxjzhqpu
xahltbdq
xaxfoorx
xbntqjpe
xcuawewp
xedlwaeb
xmpanlwf
xqumgnua
xulltvky
xuytfkqs
xvukkssj
xwpymums
yaegbulc
ydbcnepv
ygnqjjck
yikqmaib
yrymdidi
ywmgixxk
yzjopngs
zccukszn
zhevsjaq
zlvumpct
zmgestsg |
e trascinalo sull'icona di ComboFix.
Attendi la fine dei lavori, senza toccare tastiera, mouse o altro.
Posta il log aggiornato di combofix |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 16 Set 2013 10:23 Oggetto: |
|
|
eccoti il log ComboFix.txt
grazie |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 17 Set 2013 18:27 Oggetto: |
|
|
Avvia OTL.
Sotto "Custom Scans\Fixes" copia-incolla questo codice:
Codice: | :OTL
IE - HKCU\..\SearchScopes\{BBAEB03E-77B6-499B-ABF3-138602F3AB06}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2851640&CUI=UN42441685011602115&UM=1
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Programmi\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
[2013/09/06 13.46.44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\n_a.\Desktop\RK_Quarantine
[2013/09/06 13.46.17 | 000,918,016 | ---- | C] () -- C:\Documents and Settings\nn_a..ENERGIA\Desktop\RogueKiller.exe
@Alternate Data Stream - 13636 bytes -> C:\WINDOWS\System32\drivers\yzjvasij.sys:changelist
:Files
C:\WINDOWS\System32\drivers\yzjvasij.sys
ipconfig /flushdns /c
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command]
""=""%1" %*"
:commands
[purity]
[emptytemp]
[Emptyjava]
[RESETHOSTS]
[EMPTYFLASH]
[start explorer]
[Reboot] |
Clicca sul pulsante RUN FIX.
Lascia fare la scansione senza interferire.
Posta il log.
Dimmi come funziona il pc e se riscontri problemi. |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 18 Set 2013 11:48 Oggetto: |
|
|
09182013_085600.log
ciao, ho avuto un pò di problemi all'inizio perchè appena riavviato il pc è partita la configrazione di adobe e la mascherina Windows intaller, quindi i programmi erano molto lenti.
ora invece sto lavorando tranquillamente..grazie! |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 18 Set 2013 18:27 Oggetto: |
|
|
Ciao.
Da Installazione Applicazioni, disinstalla le versioni installate di Java.
Apri OTL e clicca su CleanUP.
Si disistallerà sia OTL che Combofix.
Acconsenti il riavvio del pc.
Pulisci i files temporanei con CCleaner (registro compreso)
http://forum.zeusnews.com/viewtopic.php?p=282670#282670
Segui questo percorso e svuota la cartella Prefetch : (non eliminare la cartella)
C:\Windows\Prefetch
Svuota il cestino.
Apri CCleaner.
Clicca su "Strumenti".
Clicca su "Ripristino Sistema"
Seleziona TUTTI i punti di ripristino e poi clicca "Rimuovi".
N.B:
Il punto segnalato in grigio (il primo) non lo puoi eliminare per motivi di sicurezza.
Scarica l'ultima versione di Java:
link
Se il pc funziona bene abbiamo concluso. |
|
Top |
|
 |
tt79 Mortale pio

Registrato: 05/09/13 12:21 Messaggi: 23
|
Inviato: 19 Set 2013 10:51 Oggetto: |
|
|
direi che funziona alla grande! grazie mille!!!  |
|
Top |
|
 |
R16 Dio maturo


Registrato: 07/03/08 22:58 Messaggi: 10129
|
Inviato: 19 Set 2013 17:54 Oggetto: |
|
|
Di niente.
Ciao  |
|
Top |
|
 |
|