Here is ComboFix log
“amministratore” - 2007-07-04 21.52.17 - ComboFix 07-07-04.4 - Service Pack 2
((((((((((((((((((((((((( Files Created from 2007-06-04 to 2007-07-04 )))))))))))))))))))))))))))))))
2007-07-04 21:50 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-06-27 00:07 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-06-12 15:40 21,504 --a------ C:\WINDOWS\system32\drivers\motmodem.sys
2007-06-12 15:40 1,419,232 --a------ C:\WINDOWS\system32\wdfcoinstaller01005.dll
2007-06-12 15:39 d-------- C:\Programmi\File comuni\Motorola Shared
2007-06-12 15:39 d-------- C:\DOCUME~1\AMMINI~1\DATIAP~1\InstallShield
2007-06-11 09:34 d-------- C:\Programmi\File comuni\Skype
2007-06-11 09:28 d-------- C:\DOCUME~1\AMMINI~1\DATIAP~1\Skype
2007-06-11 09:21 d-------- C:\Programmi\iTunes
2007-06-07 21:47 d-------- C:\Programmi\ADSL
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-06-22 13:44:07 -------- d-----w C:\DOCUME~1\AMMINI~1\DATIAP~1\OpenOffice.org2
2007-06-16 08:08:14 -------- d-----w C:\Programmi\EA SPORTS
2007-06-14 14:51:02 98,304 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2007-06-13 16:55:40 -------- d-----w C:\DOCUME~1\AMMINI~1\DATIAP~1\Screenshot Sender
2007-06-12 13:41:10 -------- d-----w C:\Programmi\Motorola Phone Tools
2007-06-11 07:34:23 -------- d-----w C:\Programmi\Skype
2007-06-07 20:29:37 -------- d–h–w C:\Programmi\InstallShield Installation Information
2007-05-16 15:12:56 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-06 21:28:33 -------- d-----w C:\Programmi\QuickTime
2007-05-05 17:38:18 20,964 ----a-w C:\WINDOWS\War3Unin.dat
2007-05-02 13:38:08 2,829 ----a-w C:\WINDOWS\War3Unin.pif
2007-05-02 13:38:08 126,976 ----a-w C:\WINDOWS\War3Unin.exe
2007-04-30 15:46:10 745,600 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-04-30 15:35:28 95,872 ----a-w C:\WINDOWS\system32\AVASTSS.scr
2007-04-25 14:21:04 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:14:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
2007-04-16 20:47:36 33,624 ----a-w C:\WINDOWS\system32\wups.dll
2007-04-16 20:45:54 1,710,936 ----a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-16 20:45:48 549,720 ----a-w C:\WINDOWS\system32\wuapi.dll
2007-04-16 20:45:42 325,976 ----a-w C:\WINDOWS\system32\wucltui.dll
2007-04-16 20:45:36 203,096 ----a-w C:\WINDOWS\system32\wuweb.dll
2007-04-16 20:45:28 92,504 ----a-w C:\WINDOWS\system32\cdm.dll
2007-04-16 20:45:20 53,080 ----a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-16 20:45:20 43,352 ----a-w C:\WINDOWS\system32\wups2.dll
2007-04-16 20:44:20 271,224 ----a-w C:\WINDOWS\system32\mucltui.dll
2007-04-16 20:44:18 208,248 ----a-w C:\WINDOWS\system32\muweb.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
Note empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
2006-12-18 05:16 59032 --a------ C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
2007-05-28 14:52 722472 --a------ C:\Programmi\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
2007-03-14 03:43 501400 --a------ C:\Programmi\Java\jre1.6.0_01\bin\ssv.dll
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{9030D464-4C02-4ABF-8ECC-5164760863C6}]
2006-08-31 21:33 322368 --a------ C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“VTTimer”=“VTTimer.exe” [2004-12-10 12:54 C:\WINDOWS\system32\VTTimer.exe]
“Smapp”=“C:\Programmi\Analog Devices\SoundMAX\SMTray.exe” [2003-05-05 09:57]
“SunJavaUpdateSched”=“C:\Programmi\Java\jre1.6.0_01\bin\jusched.exe” [2007-03-14 03:43]
“Hazon clic”=“C:\Programmi\Garzanti Linguistica\Hazon clic\HAZON.exe” [2003-05-22 16:13]
“SSBkgdUpdate”=“C:\Programmi\File comuni\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe” [2003-09-29 17:00]
“Easy-PrintToolBox”=“C:\Programmi\Canon\Easy-PrintToolBox\BJPSMAIN.exe” [2004-01-14 03:10]
“ATIPTA”=“C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe” [2004-11-24 21:10]
“TkBellExe”=“C:\Programmi\File comuni\Real\Update_OB\realsched.exe” [2005-12-15 00:17]
“ATICCC”=“C:\Programmi\ATI Technologies\ATI.ACE\CLIStart.exe” [2006-05-10 11:12]
“RemoteControl”=“C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe” [2004-11-02 20:24]
“HP Software Update”=“D:\Programmi\HP\HP Software Update\HPWuSchd2.exe” [2006-02-19 03:41]
“avast!”=“D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe” [2007-04-30 17:42]
“QuickTime Task”=“C:\Programmi\QuickTime\qttask.exe” [2007-04-27 09:41]
“iTunesHelper”=“C:\Programmi\iTunes\iTunesHelper.exe” [2007-06-01 16:51]
“!AVG Anti-Spyware”=“D:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe” [2007-06-11 11:25]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“C:\WINDOWS\system32\ctfmon.exe” [2004-08-19 16:39]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
“{57B86673-276A-48B2-BAE7-C6DBB3020EB8}”=“D:\Programmi\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll” [2007-05-30 14:29]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard]
Contents of the ‘Scheduled Tasks’ folder
2007-06-17 19:31:00 C:\WINDOWS\tasks\AppleSoftwareUpdate.job
catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-07-04 21:56:37
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden files: 0
Completion time: 2007-07-04 21.57.46
--- E O F ---