View Full Version : WinXP Altri utenti connessi, non riesco a risolverlo
neworld1
07-12-2007, 16:25
Mi capita sempre che spegnendo il pc mi appaia un avviso del tipo:
altri utenti connessi al computer in uso, lo spegnimento potrebbe causare la perdita di dati...
(questo mi accade solo quando faccio prima "cambia utente" e poi spengo).
Nel computer non sono presenti altri account ne stampanti condivise ma ho una connessione lan.
Vi allego i log di hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18.51.37, on 06/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\a-squared Free\a2service.exe
C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Programmi\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Programmi\Nero\Nero 7\InCD\InCDsrv.exe
C:\Programmi\Power Translator 11\LogoMedia TranslateDotNet Server.exe
C:\Programmi\Eset\nod32krn.exe
C:\Programmi\Spyware Doctor\svcntaux.exe
C:\Programmi\Spyware Doctor\swdsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Programmi\Spyware Doctor\SDTrayApp.exe
C:\Programmi\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe
C:\Programmi\Eset\nod32kui.exe
C:\Programmi\Nero\Nero 7\InCD\InCD.exe
C:\WINDOWS\system32\rundll32.exe
C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Programmi\Microsoft Office\Office12\GrooveMonitor.exe
C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmi\Spyware Doctor\SDTrayApp.exe
C:\Programmi\File comuni\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe
C:\Programmi\Microsoft Student\Microsoft Encarta 2007 - Premium + Student DVD\EDICT.EXE
C:\Programmi\Google\Google Updater\GoogleUpdater.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programmi\Mozilla Firefox\firefox.exe
C:\PROGRA~1\WinZip\winzip32.exe
C:\Programmi\Nuova cartella\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Programmi\File comuni\Ahead\Lib\NMIndexStoreSvr.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ansa.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programmi\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O3 - Toolbar: (no name) - {84A6AEA7-C34B-4246-9A00-05AD7A36BF00} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Controllo del Calendario di Ulead Photo Express] C:\Programmi\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programmi\File comuni\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Programmi\Nero\Nero 7\InCD\InCD.exe
O4 - HKLM\..\Run: rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Programmi\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [RemoteControl] C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SDTray] "C:\Programmi\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [L07IXLRD_16336796] "C:\Programmi\Microsoft Student\Microsoft Encarta 2007 - Premium + Student DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [swg] C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Google Updater.lnk = C:\Programmi\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://marycosty.spaces.live.com/PhotoUpload/MsnPUpld.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{695C789F-8C9A-4273-A97B-358122C73931}: NameServer = 85.37.17.49 85.38.28.91
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Programmi\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programmi\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: LEC TranslateDotNet Server - Language Engineering Corporation, LLC - C:\Programmi\Power Translator 11\LogoMedia TranslateDotNet Server.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programmi\Eset\nod32krn.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programmi\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programmi\Spyware Doctor\swdsvc.exe
--
End of file - 8202 bytes
e di msn fix:
MSNFix 1.600
C:\Documents and Settings\Standard\Desktop\MSNFix
Fix effettuato il 06/12/2007 - 18.20.47,28 By Standard
modalità normale
************************ Cercare i files presenti
Nessun files trovato
************************ Ricerca le cartelle presenti
... C:\DOCUME~1\ALLUSE~1\DATIAP~1\TEMP\
************************ Eliminazione dei files
************************ Eliminazione delle cartelle
.. OK ... C:\DOCUME~1\ALLUSE~1\DATIAP~1\TEMP\
************************ Pulizia del Registro
************************ Files sospetti
/!\ questi files necessitano di un parere esperto prima di qualsiasi intervento
[C:\PROGRA~1\winPenPack.exe] 6A295F3AF5DCEDF3128F0AAC5668863F
[b]==> Vi saremo grati se vorrete inviare il file C:\DOCUME~1\Standard\Desktop\Upload_Me.zip su http://upload.changelog.fr
I files e le chiavi di registro eliminati sono stati salvati nel file 06122007_18.22.0859.zip
------------------------------------------------------------------------
Auteur : !aur3n7 Contact: http://changelog.fr
------------------------------------------------------------------------
--------------------------------------------- END ---------------------------------------------
grazie in anticipo e scusate se ho sbagliato qual cosa.
murack83pa
07-12-2007, 16:39
ciao
benvenuto nel forum
nn capisco questa frase:
(questo mi accade solo quando faccio prima "cambia utente" e poi spengo).
xchè gli dici cambia utente prima di spegnere?
forse sono io che ho cpt male il tuo problema...
forse gia lo sai, ma in realtà oltre il tuo account(amministratore penso), c'è l'account guest, inoltre(x la modalità provvissoria) c'è l'account administrator
cmq, il tuo log di hijackthis sembra pulito(forse dovresti aggiornare java e potresti anche disinstallare il toolbar di google,se nn ti serve)
xchè hai postato il log di msn fix?hai avuto problemi con msn?
scusami ancora se nn ho ben capito quello che hai scritto
ciao
neworld1
07-12-2007, 17:03
Rispondo in ordine alle tue domande:
Mi è capitato spesso che spingendo il tasto "Spegni" il computer non si spegnesse, ma rimanesse accesso. In questo caso ho provato a spingere il tasto "Disconnetti/Cambia Utente". Dalla schermata degl' account spingo il tasto spegni, e prima di spegnersi appare il messaggio "Altri utenti sono connessi ecc..." e poi spingendo ok si spegne. Adesso non mi si ripresenta più questo problema di spegnimento, ma mi è capitato per scrupolo di spegnere il computer dalla schermata degli account e tutt' ora mi compare il messaggio.
tra l' altro noto ogni tanto una lentezza di internet un po strana.
In passato ho avuto problemi con msn, ma sembra che adesso non ci siano.
grazie.
murack83pa
07-12-2007, 17:18
cpt
vedi nel task manager se c'è qualke processo che occupa molta memoria...
x il resto io x il momento ti posso solo consigliare di scaricare A-squared free 3.0, dalla guida alla disinfezione x gli infetti (http://www.hwupgrade.it/forum/showthread.php?t=1599737), oppure fare una scansione online,i link sono presenti sempre da quella guida
puoi meglio specificare i problemi con msn?
grazie
ciao
Ciao, come ha già detto qualcun altro questo messaggio "
altri utenti connessi al computer in uso, lo spegnimento potrebbe causare la perdita di dati..." appare quando si sta spegnere un computer dove sono presenti più account e uno di questi è sempre aperto (quando si è fatto cambia utente invece di disconnetti).
Quindi tu dici di non avere altri utenti, ma siamo proprio sicuri? Sennò è davvero strano.
Per favore fai cosi fai START - ESEGUI digita control userpasswords2 e premi invio. Ti apparirà una schermata con i nomi di tutti gli utenti del tuo pc, per favore scrivimi esattamente come si chiamano tutti quelli presenti :D
P.s: Aggiorna JAVA: pannello di controllo – java – in alto clicca su “aggiornamento” – in basso a destra clicca su “aggiorna adesso” – adesso segui le istruzioni.
neworld1
07-12-2007, 21:46
grazie per i consigli. ho controllato e non c' è nessun programma che occupa tanta memoria, ho aggiornato java e ci sono 2 account nel computer: il primo è Administrator gruppo Administrators e il secondo è Standard gruppo Administrators. Ho anche scansionato il computer con a-squared ed eliminato qualche minaccia ma il problema persiste.
murack83pa
07-12-2007, 22:00
il tuo account come si chiama?standard?
neworld1
08-12-2007, 09:44
si
murack83pa
08-12-2007, 12:19
io, e credo anche gle, siamo curiosi di scoprire quale minaccia abbia eliminato asquared :D
se puoi postare il log di asquared, x favore ... ;)
neworld1
08-12-2007, 15:39
Ecco il log a-squared:-----------------------------------------------
update initialized 06/12/2007 at 16.57.17
list of used modules:
name: a2cmd.exe, version: 3.0.0.123, md5: 32bbc686595e8971ef5097b65096b1af
name: a2framework.dll, version: 3.0.0.432, md5: 7ca0d1bc5b0d5cb0a3d260e1a912cbf6
name: a2free.exe, version: 3.0.0.362, md5: a5ee64c0f96fbee0c927a3d400643c3d
name: a2freecontmenu.dll, version: 3. 0. 0. 57, md5: c3deb4802a2c89af25bd007008d760c2
name: a2freecontmenu64.dll, version: 3. 0. 0. 57, md5: 5469b24640c8fa680c3c391e4da1bd6b
name: a2service.exe, version: 3.0.0.345, md5: c0c09160883a964b1b6e6cf32643a394
name: a2upd.exe, version: 3.0.0.64, md5: fc7c7be5b3b0258677ee2ecd5dda946e
name: a2update.dll, version: 3.0.0.236, md5: c510abe63a676243ebeaf3e3268eb0bc
name: cabinet.dll, version: 1.00.601.0, md5: 3da024785935aac0e4610f711b97c207
name: engine.dll, version: 3.0.0.316, md5: ccf14c9a18f6662a18cfa071bbf238a6
name: unins000.exe, version: 51.48.0.0, md5: fc26208e33444438bf8b4af485e6c24b
name: unrar.dll, version: n/a, md5: a5fe51b8ce661a935a165803c65a4bf1
06/12/2007 16.57.18 downloading update package information
06/12/2007 16.58.43 117 module(s) (15674770 bytes) must be downloaded
06/12/2007 16.58.43 downloading Signatures\20070401.sig (6615731 bytes)
06/12/2007 16.59.30 file was downloaded successfully
06/12/2007 16.59.30 file was copied to the destination folder
06/12/2007 16.59.30 downloading Signatures\20070402.sig (2533493 bytes)
06/12/2007 16.59.40 file was downloaded successfully
06/12/2007 16.59.40 file was copied to the destination folder
06/12/2007 16.59.40 downloading Signatures\20070402.trc (816181 bytes)
06/12/2007 16.59.43 file was downloaded successfully
06/12/2007 16.59.43 file was copied to the destination folder
06/12/2007 16.59.43 downloading Signatures\20070404.sig (1487694 bytes)
06/12/2007 16.59.49 file was downloaded successfully
06/12/2007 16.59.49 file was copied to the destination folder
06/12/2007 16.59.49 downloading Signatures\20070404.trc (213318 bytes)
06/12/2007 16.59.50 file was downloaded successfully
06/12/2007 16.59.50 file was copied to the destination folder
06/12/2007 16.59.50 downloading Signatures\20070412.sig (80816 bytes)
06/12/2007 16.59.51 file was downloaded successfully
06/12/2007 16.59.51 file was copied to the destination folder
06/12/2007 16.59.51 downloading Signatures\20070417.trc (38872 bytes)
06/12/2007 16.59.51 file was downloaded successfully
06/12/2007 16.59.51 file was copied to the destination folder
06/12/2007 16.59.51 downloading Signatures\20070507.sig (31979 bytes)
06/12/2007 16.59.51 file was downloaded successfully
06/12/2007 16.59.51 file was copied to the destination folder
06/12/2007 16.59.51 downloading Signatures\20070620.sig (34460 bytes)
06/12/2007 16.59.52 file was downloaded successfully
06/12/2007 16.59.52 file was copied to the destination folder
06/12/2007 16.59.52 downloading Signatures\20070706.sig (24446 bytes)
06/12/2007 16.59.52 file was downloaded successfully
06/12/2007 16.59.52 file was copied to the destination folder
06/12/2007 16.59.52 downloading Signatures\20070719.sig (52531 bytes)
06/12/2007 16.59.52 file was downloaded successfully
06/12/2007 16.59.52 file was copied to the destination folder
06/12/2007 16.59.52 downloading Signatures\20070806.sig (29969 bytes)
06/12/2007 16.59.53 file was downloaded successfully
06/12/2007 16.59.53 file was copied to the destination folder
06/12/2007 16.59.53 downloading Signatures\20070821.sig (217303 bytes)
06/12/2007 16.59.54 file was downloaded successfully
06/12/2007 16.59.54 file was copied to the destination folder
06/12/2007 16.59.54 downloading Signatures\20070822.sig (142425 bytes)
06/12/2007 16.59.55 file was downloaded successfully
06/12/2007 16.59.55 file was copied to the destination folder
06/12/2007 16.59.55 downloading Signatures\20070829.sig (36998 bytes)
06/12/2007 16.59.55 file was downloaded successfully
06/12/2007 16.59.55 file was copied to the destination folder
06/12/2007 16.59.55 downloading Signatures\20070903.sig (40673 bytes)
06/12/2007 16.59.55 file was downloaded successfully
06/12/2007 16.59.55 file was copied to the destination folder
06/12/2007 16.59.55 downloading Signatures\20070905.sig (9061 bytes)
06/12/2007 16.59.55 file was downloaded successfully
06/12/2007 16.59.56 file was copied to the destination folder
06/12/2007 16.59.56 downloading Signatures\20070920.sig (56238 bytes)
06/12/2007 16.59.56 file was downloaded successfully
06/12/2007 16.59.56 file was copied to the destination folder
06/12/2007 16.59.56 downloading Signatures\20070924.sig (40839 bytes)
06/12/2007 16.59.56 file was downloaded successfully
06/12/2007 16.59.56 file was copied to the destination folder
06/12/2007 16.59.56 downloading Signatures\20070924.trc (4191 bytes)
06/12/2007 16.59.56 file was downloaded successfully
06/12/2007 16.59.56 file was copied to the destination folder
06/12/2007 16.59.56 downloading Signatures\20070925.sig (16896 bytes)
06/12/2007 16.59.57 file was downloaded successfully
06/12/2007 16.59.57 file was copied to the destination folder
06/12/2007 16.59.57 downloading Signatures\20070925.trc (2865 bytes)
06/12/2007 16.59.57 file was downloaded successfully
06/12/2007 16.59.57 file was copied to the destination folder
06/12/2007 16.59.57 downloading Signatures\20070926.sig (25525 bytes)
06/12/2007 16.59.57 file was downloaded successfully
06/12/2007 16.59.57 file was copied to the destination folder
06/12/2007 16.59.57 downloading Signatures\20070927.sig (43789 bytes)
06/12/2007 16.59.58 file was downloaded successfully
06/12/2007 16.59.58 file was copied to the destination folder
06/12/2007 16.59.58 downloading Signatures\20070927.trc (1833 bytes)
06/12/2007 16.59.58 file was downloaded successfully
06/12/2007 16.59.58 file was copied to the destination folder
06/12/2007 16.59.58 downloading Signatures\20070928.sig (26793 bytes)
06/12/2007 16.59.58 file was downloaded successfully
06/12/2007 16.59.58 file was copied to the destination folder
06/12/2007 16.59.58 downloading Signatures\20070928.trc (2176 bytes)
06/12/2007 16.59.58 file was downloaded successfully
06/12/2007 16.59.58 file was copied to the destination folder
06/12/2007 16.59.58 downloading Signatures\20071001.sig (41896 bytes)
06/12/2007 16.59.59 file was downloaded successfully
06/12/2007 16.59.59 file was copied to the destination folder
06/12/2007 16.59.59 downloading Signatures\20071001.trc (3394 bytes)
06/12/2007 16.59.59 file was downloaded successfully
06/12/2007 16.59.59 file was copied to the destination folder
06/12/2007 16.59.59 downloading Signatures\20071002.sig (18096 bytes)
06/12/2007 16.59.59 file was downloaded successfully
06/12/2007 16.59.59 file was copied to the destination folder
06/12/2007 16.59.59 downloading Signatures\20071002.trc (1498 bytes)
06/12/2007 16.59.59 file was downloaded successfully
06/12/2007 16.59.59 file was copied to the destination folder
06/12/2007 16.59.59 downloading Signatures\20071003.sig (35637 bytes)
06/12/2007 17.00.00 file was downloaded successfully
06/12/2007 17.00.00 file was copied to the destination folder
06/12/2007 17.00.00 downloading Signatures\20071004.sig (37719 bytes)
06/12/2007 17.00.00 file was downloaded successfully
06/12/2007 17.00.00 file was copied to the destination folder
06/12/2007 17.00.00 downloading Signatures\20071004.trc (1180 bytes)
06/12/2007 17.00.00 file was downloaded successfully
06/12/2007 17.00.00 file was copied to the destination folder
06/12/2007 17.00.00 downloading Signatures\20071005.trc (1648 bytes)
06/12/2007 17.00.01 file was downloaded successfully
06/12/2007 17.00.01 file was copied to the destination folder
06/12/2007 17.00.01 downloading Signatures\20071006.trc (1961 bytes)
06/12/2007 17.00.01 file was downloaded successfully
06/12/2007 17.00.01 file was copied to the destination folder
06/12/2007 17.00.01 downloading Signatures\20071008.sig (41229 bytes)
06/12/2007 17.00.01 file was downloaded successfully
06/12/2007 17.00.01 file was copied to the destination folder
06/12/2007 17.00.01 downloading Signatures\20071009.sig (56568 bytes)
06/12/2007 17.00.02 file was downloaded successfully
06/12/2007 17.00.02 file was copied to the destination folder
06/12/2007 17.00.02 downloading Signatures\20071009.trc (2390 bytes)
06/12/2007 17.00.02 file was downloaded successfully
06/12/2007 17.00.02 file was copied to the destination folder
06/12/2007 17.00.02 downloading Signatures\20071010.sig (39789 bytes)
06/12/2007 17.00.02 file was downloaded successfully
06/12/2007 17.00.02 file was copied to the destination folder
06/12/2007 17.00.02 downloading Signatures\20071010.trc (1332 bytes)
06/12/2007 17.00.02 file was downloaded successfully
06/12/2007 17.00.02 file was copied to the destination folder
06/12/2007 17.00.02 downloading Signatures\20071011.sig (47569 bytes)
06/12/2007 17.00.03 file was downloaded successfully
06/12/2007 17.00.03 file was copied to the destination folder
06/12/2007 17.00.03 downloading Signatures\20071011.trc (1345 bytes)
06/12/2007 17.00.03 file was downloaded successfully
06/12/2007 17.00.03 file was copied to the destination folder
06/12/2007 17.00.03 downloading Signatures\20071012.sig (37095 bytes)
06/12/2007 17.00.03 file was downloaded successfully
06/12/2007 17.00.03 file was copied to the destination folder
06/12/2007 17.00.03 downloading Signatures\20071012.trc (1576 bytes)
06/12/2007 17.00.04 file was downloaded successfully
06/12/2007 17.00.04 file was copied to the destination folder
06/12/2007 17.00.04 downloading Signatures\20071014.trc (4360 bytes)
06/12/2007 17.00.04 file was downloaded successfully
06/12/2007 17.00.04 file was copied to the destination folder
06/12/2007 17.00.04 downloading Signatures\20071015.sig (50626 bytes)
06/12/2007 17.00.04 file was downloaded successfully
06/12/2007 17.00.04 file was copied to the destination folder
06/12/2007 17.00.04 downloading Signatures\20071016.sig (34387 bytes)
06/12/2007 17.00.04 file was downloaded successfully
06/12/2007 17.00.04 file was copied to the destination folder
06/12/2007 17.00.05 downloading Signatures\20071016.trc (2332 bytes)
06/12/2007 17.00.05 file was downloaded successfully
06/12/2007 17.00.05 file was copied to the destination folder
06/12/2007 17.00.05 downloading a2cmd.exe (230040 bytes)
06/12/2007 17.00.07 file was downloaded successfully
06/12/2007 17.00.07 file was copied to the destination folder
06/12/2007 17.00.07 downloading a2cmd_readme.txt (4999 bytes)
06/12/2007 17.00.08 file was downloaded successfully
06/12/2007 17.00.08 file was copied to the destination folder
06/12/2007 17.00.08 downloading Signatures\20071017.sig (61828 bytes)
06/12/2007 17.00.08 file was downloaded successfully
06/12/2007 17.00.08 file was copied to the destination folder
06/12/2007 17.00.08 downloading Signatures\20071017.trc (1247 bytes)
06/12/2007 17.00.08 file was downloaded successfully
06/12/2007 17.00.08 file was copied to the destination folder
06/12/2007 17.00.08 downloading Signatures\20071018.sig (37708 bytes)
06/12/2007 17.00.09 file was downloaded successfully
06/12/2007 17.00.09 file was copied to the destination folder
06/12/2007 17.00.09 downloading engine.dll (167040 bytes)
06/12/2007 17.00.11 file was downloaded successfully
06/12/2007 17.00.11 file can not be copied, its replacement was queued
06/12/2007 17.00.11 downloading Signatures\20071019.sig (34900 bytes)
06/12/2007 17.00.11 file was downloaded successfully
06/12/2007 17.00.11 file was copied to the destination folder
06/12/2007 17.00.11 downloading Signatures\20071019.trc (1534 bytes)
06/12/2007 17.00.11 file was downloaded successfully
06/12/2007 17.00.11 file was copied to the destination folder
06/12/2007 17.00.11 downloading Signatures\20071022.sig (47245 bytes)
06/12/2007 17.00.12 file was downloaded successfully
06/12/2007 17.00.12 file was copied to the destination folder
06/12/2007 17.00.12 downloading Signatures\20071023.sig (34027 bytes)
06/12/2007 17.00.12 file was downloaded successfully
06/12/2007 17.00.12 file was copied to the destination folder
06/12/2007 17.00.12 downloading Signatures\20071023.trc (7007 bytes)
06/12/2007 17.00.12 file was downloaded successfully
06/12/2007 17.00.12 file was copied to the destination folder
06/12/2007 17.00.12 downloading Signatures\20071024.sig (34881 bytes)
06/12/2007 17.00.12 file was downloaded successfully
06/12/2007 17.00.12 file was copied to the destination folder
06/12/2007 17.00.12 downloading Signatures\20071024.trc (3496 bytes)
06/12/2007 17.00.13 file was downloaded successfully
06/12/2007 17.00.13 file was copied to the destination folder
06/12/2007 17.00.13 downloading Signatures\20071025.sig (41128 bytes)
06/12/2007 17.00.13 file was downloaded successfully
06/12/2007 17.00.13 file was copied to the destination folder
06/12/2007 17.00.13 downloading Signatures\20071025.trc (809 bytes)
06/12/2007 17.00.13 file was downloaded successfully
06/12/2007 17.00.13 file was copied to the destination folder
06/12/2007 17.00.13 downloading Signatures\20071029.sig (40335 bytes)
06/12/2007 17.00.14 file was downloaded successfully
06/12/2007 17.00.14 file was copied to the destination folder
06/12/2007 17.00.14 downloading Signatures\20071029.trc (3572 bytes)
06/12/2007 17.00.14 file was downloaded successfully
06/12/2007 17.00.14 file was copied to the destination folder
06/12/2007 17.00.14 downloading Signatures\20071030.sig (37373 bytes)
06/12/2007 17.00.14 file was downloaded successfully
06/12/2007 17.00.14 file was copied to the destination folder
06/12/2007 17.00.14 downloading Signatures\20071030.trc (1299 bytes)
06/12/2007 17.00.14 file was downloaded successfully
06/12/2007 17.00.14 file was copied to the destination folder
06/12/2007 17.00.14 downloading Signatures\20071031.sig (35023 bytes)
06/12/2007 17.00.15 file was downloaded successfully
06/12/2007 17.00.15 file was copied to the destination folder
06/12/2007 17.00.15 downloading Signatures\20071031.trc (2508 bytes)
06/12/2007 17.00.15 file was downloaded successfully
06/12/2007 17.00.15 file was copied to the destination folder
06/12/2007 17.00.15 downloading Signatures\20071101.sig (20941 bytes)
06/12/2007 17.00.15 file was downloaded successfully
06/12/2007 17.00.15 file was copied to the destination folder
06/12/2007 17.00.15 downloading Signatures\20071101.trc (1025 bytes)
06/12/2007 17.00.15 file was downloaded successfully
06/12/2007 17.00.15 file was copied to the destination folder
06/12/2007 17.00.15 downloading Signatures\20071102.sig (21198 bytes)
06/12/2007 17.00.16 file was downloaded successfully
06/12/2007 17.00.16 file was copied to the destination folder
06/12/2007 17.00.16 downloading Signatures\20071105.sig (68291 bytes)
06/12/2007 17.00.16 file was downloaded successfully
06/12/2007 17.00.16 file was copied to the destination folder
06/12/2007 17.00.16 downloading Signatures\20071105.trc (3909 bytes)
06/12/2007 17.00.16 file was downloaded successfully
06/12/2007 17.00.16 file was copied to the destination folder
06/12/2007 17.00.16 downloading Signatures\20071106.sig (33632 bytes)
06/12/2007 17.00.17 file was downloaded successfully
06/12/2007 17.00.17 file was copied to the destination folder
06/12/2007 17.00.17 downloading Signatures\20071106.trc (1430 bytes)
06/12/2007 17.00.17 file was downloaded successfully
06/12/2007 17.00.17 file was copied to the destination folder
06/12/2007 17.00.17 downloading Signatures\20071107.sig (34225 bytes)
06/12/2007 17.00.17 file was downloaded successfully
06/12/2007 17.00.17 file was copied to the destination folder
06/12/2007 17.00.17 downloading Signatures\20071107.trc (2404 bytes)
06/12/2007 17.00.18 file was downloaded successfully
06/12/2007 17.00.18 file was copied to the destination folder
06/12/2007 17.00.18 downloading Signatures\20071108.sig (35826 bytes)
06/12/2007 17.00.18 file was downloaded successfully
06/12/2007 17.00.18 file was copied to the destination folder
06/12/2007 17.00.18 downloading Signatures\20071109.sig (33008 bytes)
06/12/2007 17.00.18 file was downloaded successfully
06/12/2007 17.00.18 file was copied to the destination folder
06/12/2007 17.00.18 downloading Signatures\20071109.trc (669 bytes)
06/12/2007 17.00.18 file was downloaded successfully
06/12/2007 17.00.18 file was copied to the destination folder
06/12/2007 17.00.18 downloading Signatures\20071112.sig (56269 bytes)
06/12/2007 17.00.19 file was downloaded successfully
06/12/2007 17.00.19 file was copied to the destination folder
06/12/2007 17.00.19 downloading Signatures\20071113.sig (30279 bytes)
06/12/2007 17.00.19 file was downloaded successfully
06/12/2007 17.00.19 file was copied to the destination folder
06/12/2007 17.00.19 downloading Signatures\20071113.trc (1647 bytes)
06/12/2007 17.00.19 file was downloaded successfully
06/12/2007 17.00.19 file was copied to the destination folder
06/12/2007 17.00.19 downloading Signatures\20071114.sig (34076 bytes)
06/12/2007 17.00.20 file was downloaded successfully
06/12/2007 17.00.20 file was copied to the destination folder
06/12/2007 17.00.20 downloading Signatures\20071115.sig (33513 bytes)
06/12/2007 17.00.20 file was downloaded successfully
06/12/2007 17.00.20 file was copied to the destination folder
06/12/2007 17.00.20 downloading Signatures\20071115.trc (1997 bytes)
06/12/2007 17.00.20 file was downloaded successfully
06/12/2007 17.00.20 file was copied to the destination folder
06/12/2007 17.00.20 downloading Signatures\20071116.sig (35098 bytes)
06/12/2007 17.00.21 file was downloaded successfully
06/12/2007 17.00.21 file was copied to the destination folder
06/12/2007 17.00.21 downloading Signatures\20071118.sig (42309 bytes)
06/12/2007 17.00.21 file was downloaded successfully
06/12/2007 17.00.21 file was copied to the destination folder
06/12/2007 17.00.21 downloading Signatures\20071118.trc (3355 bytes)
06/12/2007 17.00.21 file was downloaded successfully
06/12/2007 17.00.21 file was copied to the destination folder
06/12/2007 17.00.21 downloading Signatures\20071120.sig (29270 bytes)
06/12/2007 17.00.22 file was downloaded successfully
06/12/2007 17.00.22 file was copied to the destination folder
06/12/2007 17.00.22 downloading Signatures\20071120.trc (4818 bytes)
06/12/2007 17.00.22 file was downloaded successfully
06/12/2007 17.00.22 file was copied to the destination folder
06/12/2007 17.00.22 downloading Languages\en-us.lng (176980 bytes)
06/12/2007 17.00.23 file was downloaded successfully
06/12/2007 17.00.23 file was copied to the destination folder
06/12/2007 17.00.23 downloading Languages\de-de.lng (196176 bytes)
06/12/2007 17.00.24 file was downloaded successfully
06/12/2007 17.00.24 file was copied to the destination folder
06/12/2007 17.00.24 downloading Signatures\20071121.sig (29173 bytes)
06/12/2007 17.00.24 file was downloaded successfully
06/12/2007 17.00.24 file was copied to the destination folder
06/12/2007 17.00.24 downloading Signatures\20071121.trc (1856 bytes)
06/12/2007 17.00.24 file was downloaded successfully
06/12/2007 17.00.24 file was copied to the destination folder
06/12/2007 17.00.24 downloading Signatures\20071122.sig (40655 bytes)
06/12/2007 17.00.25 file was downloaded successfully
06/12/2007 17.00.25 file was copied to the destination folder
06/12/2007 17.00.25 downloading Signatures\20071122.trc (2238 bytes)
06/12/2007 17.00.25 file was downloaded successfully
06/12/2007 17.00.25 file was copied to the destination folder
06/12/2007 17.00.25 downloading Signatures\20071123.sig (29117 bytes)
06/12/2007 17.00.25 file was downloaded successfully
06/12/2007 17.00.25 file was copied to the destination folder
06/12/2007 17.00.25 downloading Signatures\20071123.trc (1013 bytes)
06/12/2007 17.00.26 file was downloaded successfully
06/12/2007 17.00.26 file was copied to the destination folder
06/12/2007 17.00.26 downloading Languages\fr-fr.lng (202964 bytes)
06/12/2007 17.00.27 file was downloaded successfully
06/12/2007 17.00.27 file was copied to the destination folder
06/12/2007 17.00.27 downloading Signatures\20071126.sig (68208 bytes)
06/12/2007 17.00.28 file was downloaded successfully
06/12/2007 17.00.28 file was copied to the destination folder
06/12/2007 17.00.28 downloading Signatures\20071126.trc (4739 bytes)
06/12/2007 17.00.28 file was downloaded successfully
06/12/2007 17.00.28 file was copied to the destination folder
06/12/2007 17.00.28 downloading Signatures\20071127.sig (30930 bytes)
06/12/2007 17.00.28 file was downloaded successfully
06/12/2007 17.00.28 file was copied to the destination folder
06/12/2007 17.00.29 downloading Signatures\20071127.trc (1483 bytes)
06/12/2007 17.00.29 file was downloaded successfully
06/12/2007 17.00.29 file was copied to the destination folder
06/12/2007 17.00.29 downloading Signatures\20071129.sig (76561 bytes)
06/12/2007 17.00.29 file was downloaded successfully
06/12/2007 17.00.29 file was copied to the destination folder
06/12/2007 17.00.29 downloading Signatures\20071129.trc (2670 bytes)
06/12/2007 17.00.30 file was downloaded successfully
06/12/2007 17.00.30 file was copied to the destination folder
06/12/2007 17.00.30 downloading Languages\nl-nl.lng (187344 bytes)
06/12/2007 17.00.31 file was downloaded successfully
06/12/2007 17.00.31 file was copied to the destination folder
06/12/2007 17.00.31 downloading Signatures\20071203.sig (73701 bytes)
06/12/2007 17.00.31 file was downloaded successfully
06/12/2007 17.00.31 file was copied to the destination folder
06/12/2007 17.00.31 downloading Signatures\20071203.trc (3657 bytes)
06/12/2007 17.00.31 file was downloaded successfully
06/12/2007 17.00.31 file was copied to the destination folder
06/12/2007 17.00.31 downloading Signatures\20071204.sig (35796 bytes)
06/12/2007 17.00.32 file was downloaded successfully
06/12/2007 17.00.32 file was copied to the destination folder
06/12/2007 17.00.32 downloading Signatures\20071204.trc (1067 bytes)
06/12/2007 17.00.32 file was downloaded successfully
06/12/2007 17.00.32 file was copied to the destination folder
06/12/2007 17.00.32 downloading Signatures\20071205.sig (27310 bytes)
06/12/2007 17.00.32 file was downloaded successfully
06/12/2007 17.00.32 file was copied to the destination folder
06/12/2007 17.00.32 downloading Signatures\20071205.trc (1354 bytes)
06/12/2007 17.00.33 file was downloaded successfully
06/12/2007 17.00.33 file was copied to the destination folder
06/12/2007 17.00.33 downloading Signatures\20071206.sig (30889 bytes)
06/12/2007 17.00.33 file was downloaded successfully
06/12/2007 17.00.33 file was copied to the destination folder
06/12/2007 17.00.33 downloading Signatures\20071206.trc (979 bytes)
06/12/2007 17.00.33 file was downloaded successfully
06/12/2007 17.00.33 file was copied to the destination folder
06/12/2007 17.00.33 starting file replacement
06/12/2007 17.00.33 1 modle(s) must be replaced
06/12/2007 17.00.35 engine.dll was replaced
06/12/2007 17.00.35 file replacement was finished successfully
06/12/2007 17.00.35 update process was completed successfully
list of updated modules:
name: a2cmd.exe, version: 3.0.0.126, md5: 6c33b22ade2b3f3bab04eaae62d96bb4
name: a2framework.dll, version: 3.0.0.432, md5: 7ca0d1bc5b0d5cb0a3d260e1a912cbf6
name: a2free.exe, version: 3.0.0.362, md5: a5ee64c0f96fbee0c927a3d400643c3d
name: a2freecontmenu.dll, version: 3. 0. 0. 57, md5: c3deb4802a2c89af25bd007008d760c2
name: a2freecontmenu64.dll, version: 3. 0. 0. 57, md5: 5469b24640c8fa680c3c391e4da1bd6b
name: a2service.exe, version: 3.0.0.345, md5: c0c09160883a964b1b6e6cf32643a394
name: a2upd.exe, version: 3.0.0.64, md5: fc7c7be5b3b0258677ee2ecd5dda946e
name: a2update.dll, version: 3.0.0.236, md5: c510abe63a676243ebeaf3e3268eb0bc
name: cabinet.dll, version: 1.00.601.0, md5: 3da024785935aac0e4610f711b97c207
name: engine.dll, version: 3.0.0.316, md5: 38603458315ea4fc5551d7cb12d0c968
name: unins000.exe, version: 51.48.0.0, md5: fc26208e33444438bf8b4af485e6c24b
name: unrar.dll, version: n/a, md5: a5fe51b8ce661a935a165803c65a4bf1
update finished 06/12/2007 at 17.00.36 without warnings
-----------------------------------------------
update initialized 06/12/2007 at 18.16.02
list of used modules:
name: a2cmd.exe, version: 3.0.0.126, md5: 6c33b22ade2b3f3bab04eaae62d96bb4
name: a2framework.dll, version: 3.0.0.432, md5: 7ca0d1bc5b0d5cb0a3d260e1a912cbf6
name: a2free.exe, version: 3.0.0.362, md5: a5ee64c0f96fbee0c927a3d400643c3d
name: a2freecontmenu.dll, version: 3. 0. 0. 57, md5: c3deb4802a2c89af25bd007008d760c2
name: a2freecontmenu64.dll, version: 3. 0. 0. 57, md5: 5469b24640c8fa680c3c391e4da1bd6b
name: a2service.exe, version: 3.0.0.345, md5: c0c09160883a964b1b6e6cf32643a394
name: a2upd.exe, version: 3.0.0.64, md5: fc7c7be5b3b0258677ee2ecd5dda946e
name: a2update.dll, version: 3.0.0.236, md5: c510abe63a676243ebeaf3e3268eb0bc
name: cabinet.dll, version: 1.00.601.0, md5: 3da024785935aac0e4610f711b97c207
name: engine.dll, version: 3.0.0.318, md5: 38603458315ea4fc5551d7cb12d0c968
name: unins000.exe, version: 51.48.0.0, md5: fc26208e33444438bf8b4af485e6c24b
name: unrar.dll, version: n/a, md5: a5fe51b8ce661a935a165803c65a4bf1
06/12/2007 18.16.03 downloading update package information
06/12/2007 18.16.04 346 module(s) (0 bytes) must be downloaded
update finished 06/12/2007 at 18.16.04 without warnings
-----------------------------------------------
update initialized 08/12/2007 at 16.13.03
list of used modules:
name: a2cmd.exe, version: 3.0.0.126, md5: 6c33b22ade2b3f3bab04eaae62d96bb4
name: a2framework.dll, version: 3.0.0.432, md5: 7ca0d1bc5b0d5cb0a3d260e1a912cbf6
name: a2free.exe, version: 3.0.0.362, md5: a5ee64c0f96fbee0c927a3d400643c3d
name: a2freecontmenu.dll, version: 3. 0. 0. 57, md5: c3deb4802a2c89af25bd007008d760c2
name: a2freecontmenu64.dll, version: 3. 0. 0. 57, md5: 5469b24640c8fa680c3c391e4da1bd6b
name: a2service.exe, version: 3.0.0.345, md5: c0c09160883a964b1b6e6cf32643a394
name: a2upd.exe, version: 3.0.0.64, md5: fc7c7be5b3b0258677ee2ecd5dda946e
name: a2update.dll, version: 3.0.0.236, md5: c510abe63a676243ebeaf3e3268eb0bc
name: cabinet.dll, version: 1.00.601.0, md5: 3da024785935aac0e4610f711b97c207
name: engine.dll, version: 3.0.0.318, md5: 38603458315ea4fc5551d7cb12d0c968
name: unins000.exe, version: 51.48.0.0, md5: fc26208e33444438bf8b4af485e6c24b
name: unrar.dll, version: n/a, md5: a5fe51b8ce661a935a165803c65a4bf1
08/12/2007 16.13.04 downloading update package information
08/12/2007 16.13.09 2 module(s) (29695 bytes) must be downloaded
08/12/2007 16.13.09 downloading Signatures\20071207.sig (28291 bytes)
08/12/2007 16.13.09 file was downloaded successfully
08/12/2007 16.13.09 file was copied to the destination folder
08/12/2007 16.13.09 downloading Signatures\20071207.trc (1404 bytes)
08/12/2007 16.13.10 file was downloaded successfully
08/12/2007 16.13.10 file was copied to the destination folder
08/12/2007 16.13.10 update process was completed successfully
list of updated modules:
name: a2cmd.exe, version: 3.0.0.126, md5: 6c33b22ade2b3f3bab04eaae62d96bb4
name: a2framework.dll, version: 3.0.0.432, md5: 7ca0d1bc5b0d5cb0a3d260e1a912cbf6
name: a2free.exe, version: 3.0.0.362, md5: a5ee64c0f96fbee0c927a3d400643c3d
name: a2freecontmenu.dll, version: 3. 0. 0. 57, md5: c3deb4802a2c89af25bd007008d760c2
name: a2freecontmenu64.dll, version: 3. 0. 0. 57, md5: 5469b24640c8fa680c3c391e4da1bd6b
name: a2service.exe, version: 3.0.0.345, md5: c0c09160883a964b1b6e6cf32643a394
name: a2upd.exe, version: 3.0.0.64, md5: fc7c7be5b3b0258677ee2ecd5dda946e
name: a2update.dll, version: 3.0.0.236, md5: c510abe63a676243ebeaf3e3268eb0bc
name: cabinet.dll, version: 1.00.601.0, md5: 3da024785935aac0e4610f711b97c207
name: engine.dll, version: 3.0.0.318, md5: 38603458315ea4fc5551d7cb12d0c968
name: unins000.exe, version: 51.48.0.0, md5: fc26208e33444438bf8b4af485e6c24b
name: unrar.dll, version: n/a, md5: a5fe51b8ce661a935a165803c65a4bf1
update finished 08/12/2007 at 16.13.10 without warnings
comunque da un po di tempo sto riscontrando questo problema: quando uso explorer(quasi mai) alcune volte, quando lo apro , va alla pagina: http://faststat.net/, nonostante questa non sia la pagina predefinita come la prima. dopo che si è verificato in propietà di explorer spunta http://faststat.net/ come pagina iniziale, in più si crea una cartella in C:\Documents and Settings\Standard\Impostazioni locali\Temp del nome di: fastes.net. inoltre in C:\Documents and Settings\Standard appaiono file exe conla figura del mondo che analizzati non appaiono virus (ve ne ho messi alcuni in allegato) in più appare una icona dal nome di accesso con sempre la figura del mondo sul desktop. ultima cosa (questa appare sia con explorer che con mozzilla) è che ultimamente appaiono ripetutamente per circa 1 minuto schermate di accesso a www.msnusers.com da sole con la frase:Welcome to MSN Communities! Please sign-in with your Passport account.
allegati rimossi da xcdegasp
scusate per non avervelo detto prima ma con explorer non ci vado quasi mai e quindi mi ero dimenticato del problema.
neworld1
10-12-2007, 21:17
ciao, per piacere potete dirmi qual cosa? grazie.
Prima di tutto il log che hai inserito non è quello della scansione di A-squared.
Poi, cosa più importante, quei tre file contengono tutti e tre un dialer.
Non ho seguito tutta la discussione, perciò per adesso, per evitare di farti ripetere cose già fatte, non ti dico cosa fare. Quando mi sarò riletto i vari post vedo se riesco a darti una mano.
Edit: Hai fatto una scansione in modalità deep con A-squared? Se si, devi allegare il log della scansione.
Riverside
10-12-2007, 21:41
ciao, per piacere potete dirmi qual cosa? grazie.
Inizia da qui (e per favore leggi attentamente, le modalità con le quali devi allegare i log)
Disattiva il Ripristino configurazione di sistema ovvero procedi in questa maniera:
● tasto destro del mouse sull'icona Risorse del Computer
● seleziona la voce Proprietà
● apri la scheda Ripristino configurazione di Sistema
● spunta la voce Disattiva ripristino configurazione di sistema
● conferma, la modifica, con Applica e, poi Ok
Lo lasci disattivato fino a quanto il problema non sarà risolto
Scarica questi software e tool per eseguire una pulizia:
CCLEANER: clicca qui per il download (http://download.piriform.com/ccsetup201.exe)
una volta installato, lancia il programma, nel menu di sinistra portati alla voce Opzioni e nella finestra successiva clicca su:
● Impostazioni, e spunta la voce Cancellazione sicura (lenta)
poi su:
● Avanzate, togli la spunta alla voce Cancella solo file più vecchi di 48 ore
● alla voce Pulizia, spunta tutte le voci comprese nella sezione Avanzate
● nel menu a sinistra, clicca sulla voce Pulizia, clicca su tasto Avvia Pulizia per eseguire la scansione
● sempre nel menu a sinistra, clicca sulla voce Registro, spunta tutte le voci comprese nella sezione, clicca sul tasto Trova problemi ed avvia una scansione
● al termine della scansione clicca sulla voce Ripara selezionati e prosegui
ASQUARED ANTIDIALER FREE: clicca qui per il download (http://download5.emsisoft.com/a2AntiDialerSetup.exe)
una volta installato, scarica gli aggiornamenti e poi, esegui una scansione del sistema.
PANDA ANTIROOTKIT: clicca qui per il download (http://research.pandasoftware.com/blogs/images/AntiRootkit.zip)
Non è necessaria l'installazione (è un tool stand-alone); una volta lanciato, si aggiorna in automatico ed esegue la scansione (ovviamente rimuove tutti gli eventuali rootkit che rileva)
BITDEFENDER ONLINE SCANNER
● esegui una scansione online da: clicca qui per lo scan online (http://www.bitdefender.com/scan8/ie.html)
● una volta aperta la pagina, clicca I AGREE: ti farà scaricare un activex, tu segui la procedura guidata.
Al termine allega il Report che verrà rilasciato.
Installa HIJACKTHIS: clicca qui per il download (http://www.trendsecure.com/portal/en-US/threat_analytics/HiJackThis.zip)
● crea una apposta nuova Cartella in C:/Programmi (chiamala HThis)
● scompatta, all'interno della cartella creata, il file Zip (verrà creata una icona)
● lancialo, clicca su Do a system scan and save a logfile ed una volta che è stata creata la list, clicca su Save Log
allega il log di HijackThis per farlo controllare
pulisci gli ADS:
● rilancia HTHIS
● clicca sulla voce Open the Misc Tool section
● clicca su Open ADS Spy
● clicca su Scan
● se venissero rilevati ADS spunta tutte le caselline e clicca su Remove Selected
Per quanto riguarda la pubblicazione dei log e/o report che ti sono stati e ti verrano richiesti:
● se il relativo txt generato è al max 20 kb, deve essere allegato alla discussione, utilizzando l'apposita funzione Gestisci Allegati;
● se superiore a 20 kb, hostato su Zshare clicca qui per raggiungere ZShare (http://www.zshare.net/), pubblicando, nella discussione, il link che verrà rilasciato per il download
xcdegasp
10-12-2007, 22:03
ciao, per piacere potete dirmi qual cosa? grazie.
sinceramente non so come tu non abbia fatto ad accorgertene che hai compresso degli exe lo ritengo alquanto difficile farlo involontariamente.
il log postato è quello degli aggiornamenti e ti sarei grato se la prossima volta che posti un log lungo eterno usassi uno spazio remoto (es: www.zshare.net ) e postasse il semplice link per il download...
gradirei chiarimenti in privato! :)
Angelus88
11-12-2007, 00:52
comunque da un po di tempo sto riscontrando questo problema: quando uso explorer(quasi mai) alcune volte, quando lo apro , va alla pagina: http://faststat.net/, nonostante questa non sia la pagina predefinita come la prima. dopo che si è verificato in propietà di explorer spunta http://faststat.net/ come pagina iniziale, in più si crea una cartella in C:\Documents and Settings\Standard\Impostazioni locali\Temp del nome di: fastes.net. inoltre in C:\Documents and Settings\Standard appaiono file exe conla figura del mondo che analizzati non appaiono virus (ve ne ho messi alcuni in allegato) in più appare una icona dal nome di accesso con sempre la figura del mondo sul desktop. ultima cosa (questa appare sia con explorer che con mozzilla) è che ultimamente appaiono ripetutamente per circa 1 minuto schermate di accesso a www.msnusers.com da sole con la frase:Welcome to MSN Communities! Please sign-in with your Passport account.
Questo succede anche nel pc di un mio amico... il virus era czvhost, Trojan.Zapchas.F
Soluzioni?
Chill-Out
11-12-2007, 08:01
sinceramente non so come tu non abbia fatto ad accorgertene che hai compresso degli exe lo ritengo alquanto difficile farlo involontariamente.
il log postato è quello degli aggiornamenti e ti sarei grato se la prossima volta che posti un log lungo eterno usassi uno spazio remoto (es: www.zshare.net ) e postasse il semplice link per il download...
gradirei chiarimenti in privato! :)
questo è uno dei motivi, se non il principale del perchè non gradisco file .zip ;)
xcdegasp
11-12-2007, 14:24
infatti pure io non trovo bella la strada dei log zippati, sopratutto da pc infetti o possibili tali...
però non possiamo far togliere questa possibilità utilissima in altri casi :(
neworld1
11-12-2007, 22:19
A quanto pare ho combinato un casino. Mi scuso per ciò che ho fatto, comunque mi sono sconosciute le cause del perchè non debba allegare file zip. sicuramente sono io ignorante in materia. comunque ecco il log a-squared (spero quello buono):a-squared Free - Version 3.0
Last update: 11/12/2007 15.25.53
Impostazioni scansione:
Oggetti: Memoria, Tracce, Cookies, C:\
Archivio scansioni: On
Scientifico: On
ADS Scan: On
Scansione avviata: 11/12/2007 15.40.16
C:\Documents and Settings\Standard\Dati applicazioni\Mozilla\Firefox\Profiles\ueab854y.default\cookies.txt:15 rilevati: Trace.TrackingCookie
C:\Documents and Settings\Standard\Desktop\Anti virus\MSNFix\incl\Process.#xe rilevati: Riskware.RiskTool.Win32.Processor.20
C:\Programmi\eMule\Incoming\10 euro gratis senza depositare soldi - Come guadagnare con il casinò via internet.rar/10 euro gratis senza depositare soldi - Come guadagnare con il casin• via internet.exe rilevati: Adware.Win32.Casino.w
Scansionati
Files: 185643
Tracce: 347644
Cookies: 24
Processi: 47
Rilevato
Files: 2
Tracce: 0
Cookies: 1
Processi: 0
Chiavi registro: 0
Fine scansione: 11/12/2007 18.28.52
Tempo scansione: 2.48.36
comunque vi ringrazio per avermi detto che quei file erano dei dialer, come faccio ad eliminarli?
grazie
murack83pa
11-12-2007, 22:30
ma che cavolo scarichi con emule???? :eek:
hai fatto quello che ti ha detto river?
se no, allora fallo....e allega tutti i log richiesti secondo le regole di sezione ;)
neworld1
12-12-2007, 15:46
a-squared anti-dialer non ha rilevato nulla, panda antirootkit non ha rilevato niente, bitdefender mi dice che per completare la scansione ci vogliono 240 ore, e hijacktis mi da questo log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16.35.48, on 12/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Programmi\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe
C:\Programmi\Eset\nod32kui.exe
C:\Programmi\Nero\Nero 7\InCD\InCD.exe
C:\WINDOWS\system32\rundll32.exe
C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Programmi\Microsoft Office\Office12\GrooveMonitor.exe
C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmi\Spyware Doctor\SDTrayApp.exe
C:\Programmi\File comuni\Real\Update_OB\realsched.exe
C:\Programmi\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe
C:\Programmi\Microsoft Student\Microsoft Encarta 2007 - Premium + Student DVD\EDICT.EXE
C:\Programmi\Messenger\msmsgs.exe
C:\Programmi\Google\Google Updater\GoogleUpdater.exe
C:\Programmi\a-squared Free\a2service.exe
C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Programmi\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Programmi\Nero\Nero 7\InCD\InCDsrv.exe
C:\Programmi\Power Translator 11\LogoMedia TranslateDotNet Server.exe
C:\Programmi\Eset\nod32krn.exe
C:\Programmi\Spyware Doctor\svcntaux.exe
C:\Programmi\Spyware Doctor\swdsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\Programmi\MSN Messenger\usnsvc.exe
C:\Programmi\eMule\emule.exe
C:\Programmi\Windows Media Player\wmplayer.exe
C:\Programmi\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\Programmi\a-squared Anti-Dialer\a2service.exe
C:\Programmi\a-squared Anti-Dialer\a2adguard.exe
C:\Documents and Settings\Standard\Desktop\Anti virus\Hijackthis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ansa.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programmi\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmi\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {84A6AEA7-C34B-4246-9A00-05AD7A36BF00} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar1.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmi\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [Controllo del Calendario di Ulead Photo Express] C:\Programmi\Ulead Systems\Ulead Photo Express 5 SE\calcheck.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programmi\File comuni\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Programmi\Nero\Nero 7\InCD\InCD.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Programmi\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [RemoteControl] C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SDTray] "C:\Programmi\Spyware Doctor\SDTrayApp.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [a-squared] "C:\Programmi\a-squared Anti-Dialer\a2adguard.exe"
O4 - HKLM\..\Run: [a-squared Anti-Dialer] "C:\Programmi\a-squared Anti-Dialer\a2adguard.exe" /d=60
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [L07IXLRD_16336796] "C:\Programmi\Microsoft Student\Microsoft Encarta 2007 - Premium + Student DVD\EDICT.EXE" -m
O4 - HKCU\..\Run: [swg] C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Google Updater.lnk = C:\Programmi\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://marycosty.spaces.live.com/PhotoUpload/MsnPUpld.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{695C789F-8C9A-4273-A97B-358122C73931}: NameServer = 85.37.17.49 85.38.28.91
O23 - Service: a-squared Anti-Dialer Service (a2AntiDialer) - Emsi Software GmbH - C:\Programmi\a-squared Anti-Dialer\a2service.exe
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Programmi\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programmi\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: LEC TranslateDotNet Server - Language Engineering Corporation, LLC - C:\Programmi\Power Translator 11\LogoMedia TranslateDotNet Server.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programmi\Eset\nod32krn.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programmi\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programmi\Spyware Doctor\swdsvc.exe
--
End of file - 9556 bytes
neworld1
16-12-2007, 11:18
per favore potete darmi una qualsiasi risposta?
grazie.
il log è pulito, dovresti installare un firewall.
Quei file che avevi ci sono ancora?
Fai una scansione con PrevxCSI e allega il log, se non lo hai già fatto.
murack83pa
17-12-2007, 13:53
:old:
vBulletin® v3.6.4, Copyright ©2000-2025, Jelsoft Enterprises Ltd.