|
|
|
![]() |
|
Strumenti |
![]() |
#2781 |
Junior Member
Iscritto dal: Jul 2006
Messaggi: 25
|
Il problema persiste è di nuovo apparsa la cartella link nei preferiti
Vi mostro lo schermo ![]() Vi riposto il listato di hijackthis Logfile of HijackThis v1.99.1 Scan saved at 2.03.53, on 15/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Unable to get Internet Explorer version! Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe C:\WINDOWS\System32\inetsrv\inetinfo.exe C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\ZONELABS\vsmon.exe C:\Programmi\SAMSUNG\FW LiveUpdate\Liveupdate.exe C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe C:\Programmi\Trust\Ami Mouse 250S Cordless\Amoumain.exe C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE C:\WINDOWS\system32\GSICON.EXE C:\WINDOWS\system32\dslagent.exe C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\DATALA~1.EXE C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\WINDOWS\system32\ctfmon.exe C:\Programmi\Creative\MediaSource\Detector\CTDetect.exe C:\PROGRA~1\FILECO~1\PCSuite\Services\SERVIC~1.EXE C:\Programmi\Windows Media Player\wmplayer.exe C:\Programmi\Internet Explorer\iexplore.exe C:\Programmi\Internet Explorer\iexplore.exe C:\Programmi\Internet Explorer\iexplore.exe C:\Documents and Settings\Stefanoy\Desktop\HijackThis.exe O4 - HKLM\..\Run: [Name of App] C:\Programmi\SAMSUNG\FW LiveUpdate\Liveupdate.exe O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe O4 - HKLM\..\Run: [WheelMouse] Amoumain.exe O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [GSICONEXE] GSICON.EXE O4 - HKLM\..\Run: [EPSON Stylus C42 Series (Copia 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P33 "EPSON Stylus C42 Series (Copia 1)" /O6 "USB001" /M "Stylus C42" O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB O4 - HKLM\..\Run: [DataLayer] C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\DATALA~1.EXE O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [ATIPTA] C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Programmi\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Creative Detector] C:\Programmi\Creative\MediaSource\Detector\CTDetect.exe /R O17 - HKLM\System\CCS\Services\Tcpip\..\{38B87982-3C0C-428C-9E46-A8E566614D9A}: NameServer = 62.211.69.150,212.48.4.15 O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe O23 - Service: Ethernet Packet Service (npacketservice) - Nokia - C:\WINDOWS\system32\npacketsvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZONELABS\vsmon.exe Idee? .... Potrebbe essere la libreria shell32.dll? per ultimo vi mostro la situazione di porte attive e dei task attivi con e senza internet explorer aperto: -------------------------------------------------------------- 15/07/2004 problema di apertura cartella link su preferiti explorer non attivato Connessioni attive Proto Indirizzo locale Indirizzo esterno Stato PID TCP 0.0.0.0:135 0.0.0.0:0 LISTENING 1132 TCP 0.0.0.0:445 0.0.0.0:0 LISTENING 4 TCP 0.0.0.0:1030 0.0.0.0:0 LISTENING 684 TCP 127.0.0.1:1034 0.0.0.0:0 LISTENING 2864 TCP 192.168.1.63:139 0.0.0.0:0 LISTENING 4 UDP 0.0.0.0:445 *:* 4 UDP 0.0.0.0:500 *:* 892 UDP 0.0.0.0:1025 *:* 1324 UDP 0.0.0.0:1060 *:* 1324 UDP 0.0.0.0:1138 *:* 1324 UDP 0.0.0.0:1216 *:* 1324 UDP 0.0.0.0:4500 *:* 892 UDP 127.0.0.1:123 *:* 1196 UDP 127.0.0.1:1900 *:* 1492 UDP 192.168.1.63:123 *:* 1196 UDP 192.168.1.63:137 *:* 4 UDP 192.168.1.63:138 *:* 4 UDP 192.168.1.63:1900 *:* 1492 UDP 192.168.1.63:2051 *:* 420 Nome immagine PID Servizi ========================= ====== ============================================= System Idle Process 0 N/D System 4 N/D SMSS.EXE 536 N/D CSRSS.EXE 808 N/D WINLOGON.EXE 832 N/D SERVICES.EXE 880 Eventlog, PlugPlay LSASS.EXE 892 PolicyAgent, ProtectedStorage, SamSs ATI2EVXX.EXE 1044 Ati HotKey Poller SVCHOST.EXE 1060 DcomLaunch, TermService SVCHOST.EXE 1132 RpcSs SVCHOST.EXE 1196 AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Netman, Nla, RasMan, Schedule, seclogon, SENS, SharedAccess, ShellHWDetection, srservice, TapiSrv, Themes, TrkWks, W32Time, winmgmt, wscsvc, wuauserv, WZCSVC SVCHOST.EXE 1324 Dnscache SVCHOST.EXE 1492 LmHosts, RemoteRegistry, SSDPSRV, WebClient EXPLORER.EXE 1516 N/D SPOOLSV.EXE 1812 Spooler AVGAMSVR.EXE 1948 Avg7Alrt AVGUPSVC.EXE 2024 Avg7UpdSvc SVCHOST.EXE 284 BthServ SAgent2.exe 420 EPSONStatusAgent2 INETINFO.EXE 684 IISADMIN SMAgent.exe 752 SoundMAX Agent Service (default) SVCHOST.EXE 1244 stisvc VSMON.EXE 1604 vsmon Liveupdate.exe 1644 N/D ZLCLIENT.EXE 1652 N/D Amoumain.exe 1696 N/D TRAYAP~1.EXE 1856 N/D GSICON.EXE 936 N/D DSLAGENT.EXE 164 N/D DATALA~1.EXE 188 N/D RUNDLL32.EXE 160 N/D AVGCC.EXE 216 N/D ATIPTAXX.EXE 256 N/D CTFMON.EXE 280 N/D CTDetect.exe 440 N/D SERVIC~1.EXE 612 N/D alg.exe 2864 ALG cmd.exe 2132 N/D NOTEPAD.EXE 3632 N/D tasklist.exe 3928 N/D wmiprvse.exe 3716 N/D 15/07/2004 problema di apertura cartella link su preferiti explorer attivato Proto Indirizzo locale Indirizzo esterno Stato PID TCP 0.0.0.0:135 0.0.0.0:0 LISTENING 1132 TCP 0.0.0.0:445 0.0.0.0:0 LISTENING 4 TCP 0.0.0.0:1030 0.0.0.0:0 LISTENING 684 TCP 127.0.0.1:1034 0.0.0.0:0 LISTENING 2864 TCP 192.168.1.63:139 0.0.0.0:0 LISTENING 4 TCP 192.168.1.63:1632 66.249.91.104:80 ESTABLISHED 4028 TCP 192.168.1.63:1636 66.249.85.99:80 ESTABLISHED 4028 TCP 192.168.1.63:1637 38.99.76.17:80 TIME_WAIT 0 TCP 192.168.1.63:1647 38.99.76.77:80 TIME_WAIT 0 UDP 0.0.0.0:445 *:* 4 UDP 0.0.0.0:500 *:* 892 UDP 0.0.0.0:1025 *:* 1324 UDP 0.0.0.0:1060 *:* 1324 UDP 0.0.0.0:1138 *:* 1324 UDP 0.0.0.0:1216 *:* 1324 UDP 0.0.0.0:4500 *:* 892 UDP 127.0.0.1:123 *:* 1196 UDP 127.0.0.1:1627 *:* 4028 UDP 127.0.0.1:1900 *:* 1492 UDP 192.168.1.63:123 *:* 1196 UDP 192.168.1.63:137 *:* 4 UDP 192.168.1.63:138 *:* 4 UDP 192.168.1.63:1900 *:* 1492 UDP 192.168.1.63:2051 *:* 420 Nome immagine PID Servizi ========================= ====== ============================================= System Idle Process 0 N/D System 4 N/D SMSS.EXE 536 N/D CSRSS.EXE 808 N/D WINLOGON.EXE 832 N/D SERVICES.EXE 880 Eventlog, PlugPlay LSASS.EXE 892 PolicyAgent, ProtectedStorage, SamSs ATI2EVXX.EXE 1044 Ati HotKey Poller SVCHOST.EXE 1060 DcomLaunch, TermService SVCHOST.EXE 1132 RpcSs SVCHOST.EXE 1196 AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Netman, Nla, RasMan, Schedule, seclogon, SENS, SharedAccess, ShellHWDetection, srservice, TapiSrv, Themes, TrkWks, W32Time, winmgmt, wscsvc, wuauserv, WZCSVC SVCHOST.EXE 1324 Dnscache SVCHOST.EXE 1492 LmHosts, RemoteRegistry, SSDPSRV, WebClient EXPLORER.EXE 1516 N/D SPOOLSV.EXE 1812 Spooler AVGAMSVR.EXE 1948 Avg7Alrt AVGUPSVC.EXE 2024 Avg7UpdSvc SVCHOST.EXE 284 BthServ SAgent2.exe 420 EPSONStatusAgent2 INETINFO.EXE 684 IISADMIN SMAgent.exe 752 SoundMAX Agent Service (default) SVCHOST.EXE 1244 stisvc VSMON.EXE 1604 vsmon Liveupdate.exe 1644 N/D ZLCLIENT.EXE 1652 N/D Amoumain.exe 1696 N/D TRAYAP~1.EXE 1856 N/D GSICON.EXE 936 N/D DSLAGENT.EXE 164 N/D DATALA~1.EXE 188 N/D RUNDLL32.EXE 160 N/D AVGCC.EXE 216 N/D ATIPTAXX.EXE 256 N/D CTFMON.EXE 280 N/D CTDetect.exe 440 N/D SERVIC~1.EXE 612 N/D alg.exe 2864 ALG NOTEPAD.EXE 3632 N/D IEXPLORE.EXE 4028 N/D cmd.exe 800 N/D NOTEPAD.EXE 1348 N/D tasklist.exe 3352 N/D wmiprvse.exe 3788 N/D ------------------------------------------------ Saluti Nonno Ultima modifica di nonno_62 : 15-07-2006 alle 02:23. |
![]() |
![]() |
![]() |
#2782 | |
Member
Iscritto dal: Mar 2006
Città: Bologna
Messaggi: 178
|
grazie Andorra !!!!!
Quote:
Grazie molte cara Andorra per aver esaminato il log astopuntomi sa davvero che si tratta di una estensione Firefox
__________________
''Credo che ognuno di noi debba essere giudicato per ciò che ha fatto. Contano le azioni non le parole. Se dovessimo dar credito ai discorsi, saremmo tutti bravi e irreprensibili''. Parole di Giovanni Falcone assassinato dalla mafia |
|
![]() |
![]() |
![]() |
#2783 | |
Senior Member
Iscritto dal: Jul 2005
Messaggi: 663
|
Quote:
![]() ![]() Mi ha trovato 1 dll tra gli elementi sospetti e l'ho eliminata. Per la cronaca, ho fatto clic su "Explain detected item...": la dll partiva all'avvio di IE e oltre a visualizzare la finestra di ricerca fasulla e a impallare l'explorer per un po', non consentiva la disattivazione del ripristino di sistema di win Niente male però ![]()
__________________
▲ Parlare di guerra non mi piace, è troppo audace, preferisco parlare di forze di pace ▲ lucamad79.leonardo.it ▲ Guida a Easy Boot ▲ RETEEEE!!! Cliccami e rivivi i mondiali Ciao Steve... |
|
![]() |
![]() |
![]() |
#2784 | |
Member
Iscritto dal: Nov 2004
Città: Bergamo
Messaggi: 245
|
Salve ragazzi:
Questo è il mio log Quote:
|
|
![]() |
![]() |
![]() |
#2785 |
Senior Member
Iscritto dal: Dec 2001
Città: Italy
Messaggi: 3447
|
ho un pc con win 98 che ha un problema, quando si accende la memoria occupata skizza subito a 160 MB e piano piano aumenta fino a oltre 200 MB...arrivando ad un punto limite in cui la macchina non ce la fa piu e schianta ( ha 128 mb di ram)
ho paura che sia un virus che causa questo....AWG me ne ha tolti qualcuno e lostesso lo Stinger ha fatot un po di pulizia. Ma il problema rimane... Vi posto il Log di hijackthis magari vedete qualcosa di grave che mi è sfuggito.. Logfile of HijackThis v1.99.1 Scan saved at 11.00.21, on 15/07/2006 Platform: Windows 2000 SP4 (WinNT 5.00.2195) MSIE: Internet Explorer v5.00 SP4 (5.00.2920.0000) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\Programmi\Sygate\SPF\smc.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\WINDOWS\System32\svchost.exe C:\Programmi\Norton SystemWorks\Norton GoBack\GBPoll.exe C:\WINDOWS\system32\regsvc.exe C:\WINDOWS\system32\MSTask.exe C:\WINDOWS\System32\WBEM\WinMgmt.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Programmi\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\Programmi\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe C:\WINDOWS\system32\taskmgr.exe C:\Programmi\Internet Explorer\IEXPLORE.EXE C:\_inst\HijackThis.exe C:\WINDOWS\system32\HPBPRO.EXE R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti R3 - Default URLSearchHook is missing O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: Class - {740DD4C8-88CB-33EC-4C1E-452D42D895AC} - C:\WINDOWS\isyaa1.dll (file missing) O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx O3 - Toolbar: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [SystemTray] SysTray.Exe O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon O4 - HKLM\..\Run: [StatusClient] C:\Programmi\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe /auto O4 - HKLM\..\Run: [TomcatStartup] C:\Programmi\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe O4 - HKLM\..\Run: [HPLJ Config] C:\Programmi\Hewlett-Packard\hp LaserJet 1150_1300\SetConfig.exe -c Network -p hpLaserJet1300n -pn "hp LaserJet 1300n UNO" -n 0 -l 1040 -sl 120000 O4 - HKLM\..\Run: [winspoolsmss32] C:\WINDOWS\system32\wincrypt.exe O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKCU\..\Run: [dataservice] C:\WINDOWS\system32\wincrypt.exe O4 - Startup: conf_F.lnk = C:\sysintc\user5\conf_F\bin\swmenu.exe O4 - Global Startup: EPSON Status Monitor 3 Environment Check.lnk = C:\WINDOWS\SYSTEM32\spool\drivers\w32x86\3\E_SRCV03.EXE O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office\OSA9.EXE O14 - IERESET.INF: START_PAGE_URL=http://it.msn.com O14 - IERESET.INF: MS_START_PAGE_URL=http://it.msn.com O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O23 - Service: Servizio amministrativo di Gestione disco logico (dmadmin) - VERITAS Software Corp. - C:\WINDOWS\System32\dmadmin.exe O23 - Service: GBPoll - Symantec Corporation - C:\Programmi\Norton SystemWorks\Norton GoBack\GBPoll.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Programmi\Sygate\SPF\smc.exe spero possiate aiutarmi, grazie ![]() __________________ |
![]() |
![]() |
![]() |
#2786 | |
Member
Iscritto dal: Dec 2005
Città: Verona
Messaggi: 266
|
Quote:
__________________
"La teoria è quando si sa tutto ma non funziona niente. La pratica è quando funziona tutto ma non si sa il perché. In ogni caso si finisce sempre con il coniugare la teoria con la pratica: non funziona niente e non si sa il perché". Albert Einstein Ultima modifica di Mirko1986 : 15-07-2006 alle 16:04. |
|
![]() |
![]() |
![]() |
#2787 | |
Senior Member
Iscritto dal: Dec 2001
Città: Italy
Messaggi: 3447
|
Quote:
ok grazie swmenu lo conosco, wincript no... ma ho paura che sia qualcosa dell'antivirus o del firewall |
|
![]() |
![]() |
![]() |
#2788 | |
Member
Iscritto dal: Dec 2005
Città: Verona
Messaggi: 266
|
Quote:
![]()
__________________
"La teoria è quando si sa tutto ma non funziona niente. La pratica è quando funziona tutto ma non si sa il perché. In ogni caso si finisce sempre con il coniugare la teoria con la pratica: non funziona niente e non si sa il perché". Albert Einstein |
|
![]() |
![]() |
![]() |
#2789 | |
Senior Member
Iscritto dal: Mar 2004
Città: Rimini
Messaggi: 10296
|
Quote:
dato che non ho trovato informazioni definitive su Internet... puoi dirmi di quale software si tratta? Così mi aggiorno ![]()
__________________
sometimes they come back *** Life Happens! - (Professionista I.T. - Tecnico Telecomunicazioni) Latitude E6420 I7 2760QM SSD Crucial M4-512GB --- Tecra R840 I5 2520M SSD Samsung 830-256GB --- Macbook Pro 13,3" I5 2435M SSD Samsung 830-256GB |
|
![]() |
![]() |
![]() |
#2790 |
Senior Member
Iscritto dal: Oct 2005
Città: San Lazzaro di Savena
Messaggi: 419
|
ciao mi potete analizzare questo log
grazie Logfile of HijackThis v1.99.1 Scan saved at 11.36.25, on 16/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Programmi\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Programmi\Analog Devices\SoundMAX\SMTray.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe C:\WINDOWS\system32\hphmon04.exe C:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\Programmi\Adobe\Acrobat 7.0\Distillr\Acrotray.exe C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe C:\Programmi\Windows Defender\MSASCui.exe C:\Programmi\iTunes\iTunesHelper.exe C:\Programmi\QuickTime\qttask.exe C:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Programmi\File comuni\Symantec Shared\ccApp.exe C:\WINDOWS\system32\ctfmon.exe C:\Programmi\Microsoft ActiveSync\WCESCOMM.EXE C:\WINDOWS\system32\drivers\CDAC11BA.EXE C:\Programmi\ewido anti-spyware 4.0\guard.exe C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Programmi\Norton AntiVirus\navapsvc.exe C:\WINDOWS\System32\nvsvc32.exe C:\Programmi\Norton AntiVirus\SAVScan.exe C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe C:\Programmi\SAGEM\SAGEM F@st 800-840\dslmon.exe C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\WINDOWS\System32\svchost.exe C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\Programmi\iPod\bin\iPodService.exe C:\WINDOWS\system32\HPHipm11.exe C:\Programmi\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\spider.exe C:\Programmi\Messenger\msmsgs.exe C:\Documents and Settings\F.Ruscelloni\Desktop\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.repubblica.it/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmi\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [Smapp] C:\Programmi\Analog Devices\SoundMAX\SMTray.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe O4 - HKLM\..\Run: [HPHmon04] C:\WINDOWS\system32\hphmon04.exe O4 - HKLM\..\Run: [HPHUPD04] "C:\Programmi\HP Photosmart 11\hphinstall\UniPatch\hphupd04.exe" O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Programmi\Adobe\Acrobat 7.0\Distillr\Acrotray.exe" O4 - HKLM\..\Run: [MsgCenterExe] "C:\Programmi\File comuni\Real\Update_OB\RealOneMessageCenter.exe" -osboot O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [Windows Defender] "C:\Programmi\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmi\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programmi\Microsoft ActiveSync\WCESCOMM.EXE" O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? O4 - Global Startup: DSLMON.lnk = C:\Programmi\SAGEM\SAGEM F@st 800-840\dslmon.exe O4 - Global Startup: hp psc 1000 series.lnk = ? O4 - Global Startup: hpoddt01.exe.lnk = ? O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert to existing PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Crea preferiti portatile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Programmi\Microsoft ActiveSync\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programmi\Microsoft ActiveSync\INetRepl.dll O9 - Extra 'Tools' menuitem: Crea preferiti portatile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programmi\Microsoft ActiveSync\INetRepl.dll O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O15 - Trusted Zone: *.rossoalice.it O15 - Trusted Zone: *.rossoalice.virgilio.it O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1145447872160 O17 - HKLM\System\CCS\Services\Tcpip\..\{906A4981-C76E-4BB3-8E3F-21F21CB0FC09}: NameServer = 85.37.17.52 85.38.28.92 O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Programmi\ewido anti-spyware 4.0\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Programmi\iPod\bin\iPodService.exe O23 - Service: Servizio Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Programmi\Norton AntiVirus\navapsvc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FILECO~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
__________________
Pc: Amd Athlon X2 3800+, Ram 1 Gb, Nvidia GeForce 6100 |
![]() |
![]() |
![]() |
#2791 | |
Senior Member
Iscritto dal: Jul 2005
Messaggi: 663
|
Quote:
![]() Come si fa a fare un backup con questo progr?
__________________
▲ Parlare di guerra non mi piace, è troppo audace, preferisco parlare di forze di pace ▲ lucamad79.leonardo.it ▲ Guida a Easy Boot ▲ RETEEEE!!! Cliccami e rivivi i mondiali Ciao Steve... |
|
![]() |
![]() |
![]() |
#2792 | |
Senior Member
Iscritto dal: Mar 2004
Città: Rimini
Messaggi: 10296
|
Quote:
pulito ed immacolato ![]() Se vuoi risparmiare un briciolo di memoria, puoi togliere dall'esecuzione automatica (run) i soliti software inutili: iTunes, helper stampante, Acrobat ecc.
__________________
sometimes they come back *** Life Happens! - (Professionista I.T. - Tecnico Telecomunicazioni) Latitude E6420 I7 2760QM SSD Crucial M4-512GB --- Tecra R840 I5 2520M SSD Samsung 830-256GB --- Macbook Pro 13,3" I5 2435M SSD Samsung 830-256GB |
|
![]() |
![]() |
![]() |
#2793 | |
Senior Member
Iscritto dal: Oct 2005
Città: San Lazzaro di Savena
Messaggi: 419
|
Quote:
__________________
Pc: Amd Athlon X2 3800+, Ram 1 Gb, Nvidia GeForce 6100 |
|
![]() |
![]() |
![]() |
#2794 | |
Senior Member
Iscritto dal: Jul 2005
Messaggi: 663
|
Quote:
![]()
__________________
▲ Parlare di guerra non mi piace, è troppo audace, preferisco parlare di forze di pace ▲ lucamad79.leonardo.it ▲ Guida a Easy Boot ▲ RETEEEE!!! Cliccami e rivivi i mondiali Ciao Steve... |
|
![]() |
![]() |
![]() |
#2795 | |
Senior Member
Iscritto dal: Aug 2005
Città: quella di Dante
Messaggi: 841
|
Quote:
potresti usare un programmino come winpatrol o arovax shield che ti avvisa quando un software sta cercando di aggiungersi allo startup.. |
|
![]() |
![]() |
![]() |
#2796 | |
Senior Member
Iscritto dal: Jul 2005
Messaggi: 663
|
Quote:
![]()
__________________
▲ Parlare di guerra non mi piace, è troppo audace, preferisco parlare di forze di pace ▲ lucamad79.leonardo.it ▲ Guida a Easy Boot ▲ RETEEEE!!! Cliccami e rivivi i mondiali Ciao Steve... |
|
![]() |
![]() |
![]() |
#2797 |
Member
Iscritto dal: Nov 2004
Città: Bergamo
Messaggi: 245
|
Non mi avete risposto al mio
![]() ![]() ![]() Logfile of HijackThis v1.99.1 Scan saved at 11.56.51, on 15/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe C:\Programmi\Trust\Trust MD3100 USB ADSL MODEM\CnxDslTb.exe C:\Programmi\DAEMON Tools\daemon.exe C:\Programmi\Eset\nod32kui.exe C:\DOCUME~1\Freeman\IMPOST~1\Temp\7zO2B.tmp\DeeEnEs.exe C:\PROGRA~1\MESSEN~1\Msmsgs.exe C:\WINDOWS\system32\cisvc.exe C:\Programmi\FileZilla Server\FileZilla Server.exe C:\Programmi\Eset\nod32krn.exe C:\Programmi\Kerio\Personal Firewall\persfw.exe C:\WINDOWS\system32\svchost.exe C:\Programmi\RealVNC\VNC4\winvnc4.exe C:\Programmi\MSN Messenger\msnmsgr.exe C:\Programmi\ICQLite\ICQLite\ICQLite.exe C:\WINDOWS\system32\svchost.exe C:\Programmi\Mozilla Firefox\firefox.exe C:\Programmi\Winamp\winamp.exe C:\mIRC\mirc.exe C:\Programmi\WinRAR\WinRAR.exe C:\DOCUME~1\Freeman\IMPOST~1\Temp\Rar$EX00.187\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programmi\ICQLite\ICQToolbar\toolbaru.dll O1 - Hosts: 151.25.109.198 sadtimes.hazard.hz O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Idea2 SidebarBrowserMonitor Class - {45AD732C-2CE2-4666-B366-B2214AD57A49} - C:\Programmi\Desktop Sidebar\sbhelp.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Programmi\ICQLite\ICQToolbar\toolbaru.dll O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll O4 - HKLM\..\Run: [MPS] C:\ACER\PSM.EXE O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Programmi\Trust\Trust MD3100 USB ADSL MODEM\CnxDslTb.exe" O4 - HKLM\..\Run: [DAEMON Tools] "C:\Programmi\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [BDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKCU\..\Run: [MessengerPlus3] "C:\Programmi\MessengerPlus! 3\MsgPlus.exe" /WinStart O4 - HKCU\..\Run: [DeeEnEs] C:\DOCUME~1\Freeman\IMPOST~1\Temp\7zO2B.tmp\DeeEnEs.exe O4 - HKCU\..\Run: [MSMSGS] "C:\PROGRA~1\MESSEN~1\Msmsgs.exe" /background O4 - HKCU\..\RunOnce: [ICQ Lite] C:\Programmi\ICQLite\ICQLite\ICQLite.exe -trayboot O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Programmi\ICQLite\ICQToolbar\toolbaru.dll/SEARCH.HTML O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Scarica con FlashGet - C:\Programmi\FlashGet\jc_link.htm O8 - Extra context menu item: Scarica tutto con FlashGet - C:\Programmi\FlashGet\jc_all.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - C:\Programmi\Desktop Sidebar\sbhelp.dll O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - C:\Programmi\Desktop Sidebar\sbhelp.dll O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programmi\ICQLite\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Programmi\ICQLite\ICQLite\ICQLite.exe O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe O9 - Extra button: @C:\Programmi\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: @C:\Programmi\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binar...nt.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://andrekose.spaces.msn.com//Ph...ad/MsnPUpld.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binar...nt.cab31267.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binar...ro.cab32846.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binar...wn.cab31267.cab O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads.../ampx_en_dl.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{DF360DF4-4CA5-4114-9662-36893B8521CF}: NameServer = 85.37.17.40 85.38.28.85 O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: FileZilla Server FTP server (FileZilla Server) - Unknown owner - C:\Programmi\FileZilla Server\FileZilla Server.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programmi\Eset\nod32krn.exe O23 - Service: Kerio Personal Firewall (PersFw) - Kerio Technologies - C:\Programmi\Kerio\Personal Firewall\persfw.exe O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Programmi\RealVNC\VNC4\winvnc4.exe" -service (file missing) Thx :P |
![]() |
![]() |
![]() |
#2798 | |
Senior Member
Iscritto dal: Jan 2006
Città: messina-milano
Messaggi: 15987
|
Quote:
non ho capito se è gratuito o costa 29 dollari?????? |
|
![]() |
![]() |
![]() |
#2799 | |
Senior Member
Iscritto dal: May 2005
Città: Palermo
Messaggi: 6390
|
Quote:
|
|
![]() |
![]() |
![]() |
#2800 | |
Senior Member
Iscritto dal: Jan 2006
Città: messina-milano
Messaggi: 15987
|
Quote:
ora provo ad installarlo insieme a safesec ![]() |
|
![]() |
![]() |
![]() |
Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 11:05.