ok ho fatto tutt e per ora non stà succedendo nulla di strano1
vi posto la scansione con avenger
Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\bdasmyai
*******************
Script file located at: \??\C:\rbdfswiw.txt
Script file opened successfully.
Script file read successfully
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
File C:\WINDOWS\system32\qomnooo.dll deleted successfully.
File C:\WINDOWS\system32\tuvuspp.dll deleted successfully.
File C:\WINDOWS\system32\btrxngcq.dll deleted successfully.
File C:\WINDOWS\system32\qcgnxrtb.ini deleted successfully.
File C:\WINDOWS\system32\armvavbq.dll deleted successfully.
File C:\WINDOWS\system32\qbvavmra.ini deleted successfully.
File C:\WINDOWS\system32\ftxrsdrl.ini deleted successfully.
File C:\WINDOWS\system32\teqqlvbm.dll deleted successfully.
File C:\WINDOWS\system32\mbvlqqet.ini deleted successfully.
File C:\WINDOWS\system32\emsoenxx.dll deleted successfully.
File C:\WINDOWS\system32\xxneosme.ini deleted successfully.
File C:\WINDOWS\system32\qudyvudw.dll deleted successfully.
File C:\WINDOWS\system32\wduvyduq.ini deleted successfully.
File C:\WINDOWS\system32\fgwmtsmd.dll deleted successfully.
File C:\WINDOWS\system32\dmstmwgf.ini deleted successfully.
File C:\WINDOWS\system32\ujfvvjft.dll deleted successfully.
File C:\WINDOWS\system32\tfjvvfju.ini deleted successfully.
File C:\WINDOWS\system32\mbuudtxk.dll deleted successfully.
File C:\WINDOWS\system32\kxtduubm.ini deleted successfully.
File C:\WINDOWS\system32\wxtillbf.dll deleted successfully.
File C:\WINDOWS\system32\fbllitxw.ini deleted successfully.
File C:\WINDOWS\system32\gihrbemj.dll deleted successfully.
File C:\WINDOWS\system32\jmebrhig.ini deleted successfully.
File C:\WINDOWS\system32\utsojsvp.dll deleted successfully.
File C:\WINDOWS\system32\pvsjostu.ini deleted successfully.
File C:\WINDOWS\system32\moydpccs.dll deleted successfully.
File C:\WINDOWS\system32\sccpdyom.ini deleted successfully.
File C:\WINDOWS\system32\vlnfvxri.dll deleted successfully.
File C:\WINDOWS\system32\irxvfnlv.ini deleted successfully.
File C:\WINDOWS\system32\lmjmysnq.dll deleted successfully.
File C:\WINDOWS\system32\qnsymjml.ini deleted successfully.
File C:\WINDOWS\system32\tdcanwlq.dll deleted successfully.
File C:\WINDOWS\system32\qlwnacdt.ini deleted successfully.
File C:\WINDOWS\system32\rjwrwpdb.dll deleted successfully.
File C:\WINDOWS\system32\bdpwrwjr.ini deleted successfully.
File C:\WINDOWS\system32\kbbxnxet.dll deleted successfully.
File C:\WINDOWS\system32\texnxbbk.ini deleted successfully.
File C:\WINDOWS\system32\nfdgeaac.dll deleted successfully.
File C:\WINDOWS\system32\caaegdfn.ini deleted successfully.
File C:\WINDOWS\system32\tngxoatb.dll deleted successfully.
File C:\WINDOWS\system32\btaoxgnt.ini deleted successfully.
File C:\WINDOWS\system32\pilfvdyr.dll deleted successfully.
File C:\WINDOWS\system32\rydvflip.ini deleted successfully.
File C:\WINDOWS\system32\ndmbuuia.dll deleted successfully.
File C:\WINDOWS\system32\aiuubmdn.ini deleted successfully.
File C:\WINDOWS\system32\dhdyfamb.dll deleted successfully.
File C:\WINDOWS\system32\bmafydhd.ini deleted successfully.
File C:\WINDOWS\system32\lqavyyso.dll deleted successfully.
File C:\WINDOWS\system32\osyyvaql.ini deleted successfully.
File C:\WINDOWS\system32\cawjqggs.dll deleted successfully.
File C:\WINDOWS\system32\sggqjwac.ini deleted successfully.
File C:\WINDOWS\system32\moyphlfo.dll deleted successfully.
File C:\WINDOWS\system32\oflhpyom.ini deleted successfully.
File C:\WINDOWS\system32\aguxspnf.dll deleted successfully.
File C:\WINDOWS\system32\fnpsxuga.ini deleted successfully.
File C:\WINDOWS\system32\jyhsknll.ini deleted successfully.
File C:\WINDOWS\system32\llnkshyj.dll deleted successfully.
File C:\WINDOWS\system32\clmdihpm.dll deleted successfully.
File C:\WINDOWS\system32\mphidmlc.ini deleted successfully.
File C:\WINDOWS\system32\xgcnamui.dll deleted successfully.
File C:\WINDOWS\system32\scwpmwvu.ini deleted successfully.
File C:\WINDOWS\system32\lemaglgd.dll deleted successfully.
File C:\WINDOWS\system32\uevmvqgn.dll deleted successfully.
File C:\WINDOWS\system32\ngqvmveu.ini deleted successfully.
File C:\WINDOWS\system32\pmnlk.dll deleted successfully.
File C:\WINDOWS\system32\klnmp.bak1 deleted successfully.
File C:\WINDOWS\system32\ceehxavx.dll deleted successfully.
File C:\WINDOWS\system32\xvaxheec.ini deleted successfully.
File C:\WINDOWS\system32\cphatxsp.dll deleted successfully.
File C:\WINDOWS\system32\psxtahpc.ini deleted successfully.
File C:\WINDOWS\system32\wwpjmrvj.dll deleted successfully.
File C:\WINDOWS\system32\jvrmjpww.ini deleted successfully.
File C:\WINDOWS\system32\ssqrp.dll not found!
Deletion of file C:\WINDOWS\system32\ssqrp.dll failed!
Could not process line:
C:\WINDOWS\system32\ssqrp.dll
Status: 0xc0000034
Registry key HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\iifeccc not found!
Deletion of registry key HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\iifeccc failed!
Status: 0xc0000034
Registry key HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\pmnlk not found!
Deletion of registry key HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\pmnlk failed!
Status: 0xc0000034
Registry key HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\qomnooo not found!
Deletion of registry key HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\qomnooo failed!
Status: 0xc0000034
Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{09FA5E49-C8CD-420A-9FBB-54785EA7EF63} deleted successfully.
Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E28F91B-0E78-4774-9638-ED7D6A353418} deleted successfully.
Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8EBE6D20-55AE-4DE5-B9A6-C4530A3F4073} deleted successfully.
Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABB1443B-0F9F-4991-8230-C5DE8EFC02A1 } not found!
Deletion of registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABB1443B-0F9F-4991-8230-C5DE8EFC02A1 } failed!
Status: 0xc0000034
Registry key HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E2EE5C44-C66D-499d-BEAE-A2A79189A63A} deleted successfully.
Could not delete registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run|WindowsUpdate
Deletion of registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run|WindowsUpdate failed!
Status: 0xc0000034
Completed script processing.
*******************
Finished! Terminate.