Fai un
click destro in un punto vuoto del
Desktopcrea un
Nuovo documento di testo
Ci copi e incolli il codice che vedi sotto, e lo salvi con il nome
CFScript.txte
trascinalo sull'icona di
ComboFix.
partirà la scansione
attendi la fine senza toccare nientese chiede il riavvio del pc
riavviaPosta il log aggiornato di combofix
KillAll::
File::
c:\windows\system32\ConduitEngine.tmp
c:\windows\system32\sho6FFB.tmp
c:\program files\uTorrentBar_IT\prxtbuTor.dll
RenV::
c:\program files\Adobe\Reader 10.0\Reader\Reader_sl .exe
c:\program files\AVG\AVG10\avgtray .exe
c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM .exe
c:\program files\Common Files\Java\Java Update\jusched .exe
c:\program files\Common Files\Ulead Systems\AutoDetector\monitor .exe
c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon .exe
c:\program files\QuickTime\QTTask .exe
Registry::
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}"=-
[-HKEY_CLASSES_ROOT\clsid\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}"=-
"{30F9B915-B755-4826-820B-08FBA6BD249D}"=-
[-HKEY_CLASSES_ROOT\clsid\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]
[-HKEY_CLASSES_ROOT\clsid\{30f9b915-b755-4826-820b-08fba6bd249d}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{4AE0C3D6-F713-4EED-BC65-25DC3FFDAAC1}"=-
[-HKEY_CLASSES_ROOT\clsid\{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1}]