Moderatori: m.paolo, kadosh, Luke57
:OTL
PRC - C:\Users\marianna\AppData\Local\ServUpdater\ServiceUpd.exe (ServiceUpd)
SRV - (SoftwareUpd) -- C:\Users\marianna\AppData\Local\SoftwareUpdater\SoftwareUpdService.exe File not found
SRV - (ServUpdater) -- C:\Users\marianna\AppData\Local\ServUpdater\ServiceUpd.exe (ServiceUpd)
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.findeer.com
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.findeer.com
IE - HKU\S-1-5-21-3894304167-2661753477-3684089030-1000\..\SearchScopes\{E067ED7B-ADDD-4A36-BA72-A53984CC5E8A}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYIT&apn_uid=DB233E38-5105-4E88-ACD0-4EAA969BC2D5&apn_sauid=56BCE31C-E698-4597-B5E9-50EB3110BC9D
[2013/12/03 17.53.35 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/06/07 14.38.40 | 000,000,128 | ---- | C] () -- C:\Users\marianna\AppData\Roaming\wklnhst.dat
:Files
ipconfig /flushdns /c
:commands
[Reboot]
pc infettato ho fatto scanzione con combofix allego report Autore: demodemo |
Forum: Sicurezza e Privacy Risposte: 18 |
Visitano il forum: Nessuno e 14 ospiti