|
|||||||
|
|
|
![]() |
|
|
Strumenti |
|
|
#1 |
|
Senior Member
Iscritto dal: Sep 2006
Città: Avellino
Messaggi: 3435
|
collegamento impossibile "click to get more info"
raga in qualunque sito visito mi esce un collegamento "click to get more info" che porta ad un motore di ricerca per adulti...che faccio!!
__________________
CaseH2O:Armor+LCS VH600LBWS-Procio:Q9550 E0 [email protected]Mobo:rampage formula X48-Ram:8gb(4*2) ocz reaper pc8500-Vga:Msi Forz II 6950 2gb 840@1325-Audio:supremeFxII/hd-SSD/HD/Dvd:Corsair force f120+2XRaptor 74adfd raid0+2x500wdsata2-dvdnecAD7173Ssata Monitor/Tv3D: Sony led 3D 40ex720-Ali:enermax modu82+ 525w-Mouse Gamer:zykon Z1-Ups:Riello 600VA Il mio pc
|
|
|
|
|
|
#2 |
|
Senior Member
Iscritto dal: Aug 2007
Città: Lucca Sesso: FEMMINA
Messaggi: 2495
|
posta il log di hijackthis
|
|
|
|
|
|
#3 |
|
Senior Member
Iscritto dal: Sep 2006
Città: Avellino
Messaggi: 3435
|
Logfile of HijackThis v1.99.1
Scan saved at 17.53.20, on 30/09/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe C:\Programmi\Eset\nod32krn.exe C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\WINDOWS\System32\PAStiSvc.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe C:\Programmi\Eset\nod32kui.exe C:\Programmi\HP\hpcoretech\hpcmpmgr.exe C:\Programmi\Internet Explorer\iexplore.exe C:\Programmi\WinRAR\WinRAR.exe C:\DOCUME~1\ghi\IMPOST~1\Temp\Rar$EX00.625\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.alice.it/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,C:\WINDOWS\SERVICES.EXE O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {1E3DB58C-6B98-4CB6-9477-B0D07973CCB8} - C:\WINDOWS\system32\DivX2.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [HP Component Manager] "C:\Programmi\HP\hpcoretech\hpcmpmgr.exe" O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn...taller_gmn.cab O16 - DPF: {42C559C0-2E84-11D5-A3C6-00010219529D} (siacapi-core-install) - https://ib.cim-italia.it/ib/Actalis/...re-install.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://fastfoto.fotopixel.it/uploade...eUploader4.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab O16 - DPF: {E6ACF817-0A85-4EBE-9F0A-096C6488CFEA} (NTR ActiveX 1.1.8) - http://www.inquiero.com/inquiero/mod...ivex118_24.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: MPService - Unknown owner - C:\Programmi\Canon\FAX Canon\mpservic.exe (file missing) O23 - Service: NBService - Nero AG - C:\Programmi\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programmi\Eset\nod32krn.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
__________________
CaseH2O:Armor+LCS VH600LBWS-Procio:Q9550 E0 [email protected]Mobo:rampage formula X48-Ram:8gb(4*2) ocz reaper pc8500-Vga:Msi Forz II 6950 2gb 840@1325-Audio:supremeFxII/hd-SSD/HD/Dvd:Corsair force f120+2XRaptor 74adfd raid0+2x500wdsata2-dvdnecAD7173Ssata Monitor/Tv3D: Sony led 3D 40ex720-Ali:enermax modu82+ 525w-Mouse Gamer:zykon Z1-Ups:Riello 600VA Il mio pc
Ultima modifica di gam76 : 30-09-2007 alle 18:02. |
|
|
|
|
|
#4 |
|
Senior Member
Iscritto dal: Aug 2007
Città: Lucca Sesso: FEMMINA
Messaggi: 2495
|
allora fissa queste voci:
O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn...taller_gmn.cab O16 - DPF: {42C559C0-2E84-11D5-A3C6-00010219529D} (siacapi-core-install) - https://ib.cim-italia.it/ib/Actalis/...re-install.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://fastfoto.fotopixel.it/uploade...eUploader4.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab O16 - DPF: {E6ACF817-0A85-4EBE-9F0A-096C6488CFEA} (NTR ActiveX 1.1.8) - http://www.inquiero.com/inquiero/mod...ivex118_24.cab questa voce mi è sconosciuta, O2 - BHO: (no name) - {1E3DB58C-6B98-4CB6-9477-B0D07973CCB8} - C:\WINDOWS\system32\DivX2.dll. semmai vai analizzare il percorso C:\ ecc.. su virustotal e se è infetta, fissala. PEr questa voce: F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,C:\WINDOWS\SERVICES.EXE mi sono "documentata" su google, trovando che fa fixata, poi bisogna scaricare KILLBOX e cancellare quel file in questo modo: inserisci il percorso completo in Full Path, poi seleziona DELETE ON REBOOT e clicca sulla X rotonda a destra. Per questa ultima voce aspetta RIVERSIDE o LANCETTA per essere sicuro di non fare danni
__________________
Disinfettare da disk knight.exe / Icone desktop sparite? / Guida Rimozione Virus MSN Guida "Impossibile installare alcuni aggiornamenti XP / Ultima modifica di Gle89 : 30-09-2007 alle 18:53. |
|
|
|
|
|
#5 |
|
Senior Member
Iscritto dal: Sep 2006
Città: Avellino
Messaggi: 3435
|
Logfile of HijackThis v1.99.1
Scan saved at 17.53.20, on 30/09/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe C:\Programmi\Eset\nod32krn.exe C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\WINDOWS\System32\PAStiSvc.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe C:\Programmi\Eset\nod32kui.exe C:\Programmi\HP\hpcoretech\hpcmpmgr.exe C:\Programmi\Internet Explorer\iexplore.exe C:\Programmi\WinRAR\WinRAR.exe C:\DOCUME~1\ghi\IMPOST~1\Temp\Rar$EX00.625\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.alice.it/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,,C:\WINDOWS\SERVICES.EXE O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {1E3DB58C-6B98-4CB6-9477-B0D07973CCB8} - C:\WINDOWS\system32\DivX2.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [HP Component Manager] "C:\Programmi\HP\hpcoretech\hpcmpmgr.exe" O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn...taller_gmn.cab O16 - DPF: {42C559C0-2E84-11D5-A3C6-00010219529D} (siacapi-core-install) - https://ib.cim-italia.it/ib/Actalis/...re-install.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://fastfoto.fotopixel.it/uploade...eUploader4.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab O16 - DPF: {E6ACF817-0A85-4EBE-9F0A-096C6488CFEA} (NTR ActiveX 1.1.8) - http://www.inquiero.com/inquiero/mod...ivex118_24.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: MPService - Unknown owner - C:\Programmi\Canon\FAX Canon\mpservic.exe (file missing) O23 - Service: NBService - Nero AG - C:\Programmi\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programmi\Eset\nod32krn.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
__________________
CaseH2O:Armor+LCS VH600LBWS-Procio:Q9550 E0 [email protected]Mobo:rampage formula X48-Ram:8gb(4*2) ocz reaper pc8500-Vga:Msi Forz II 6950 2gb 840@1325-Audio:supremeFxII/hd-SSD/HD/Dvd:Corsair force f120+2XRaptor 74adfd raid0+2x500wdsata2-dvdnecAD7173Ssata Monitor/Tv3D: Sony led 3D 40ex720-Ali:enermax modu82+ 525w-Mouse Gamer:zykon Z1-Ups:Riello 600VA Il mio pc
|
|
|
|
|
|
#6 |
|
Senior Member
Iscritto dal: Sep 2006
Città: Avellino
Messaggi: 3435
|
sto impazzendo
__________________
CaseH2O:Armor+LCS VH600LBWS-Procio:Q9550 E0 [email protected]Mobo:rampage formula X48-Ram:8gb(4*2) ocz reaper pc8500-Vga:Msi Forz II 6950 2gb 840@1325-Audio:supremeFxII/hd-SSD/HD/Dvd:Corsair force f120+2XRaptor 74adfd raid0+2x500wdsata2-dvdnecAD7173Ssata Monitor/Tv3D: Sony led 3D 40ex720-Ali:enermax modu82+ 525w-Mouse Gamer:zykon Z1-Ups:Riello 600VA Il mio pc
|
|
|
|
|
|
#7 |
|
Senior Member
Iscritto dal: Aug 2007
Città: Lucca Sesso: FEMMINA
Messaggi: 2495
|
scusa ho editato il mio post precedente...ti ho dato istruzioni li
|
|
|
|
|
|
#8 | |
|
Senior Member
Iscritto dal: Sep 2006
Città: Avellino
Messaggi: 3435
|
Quote:
ti ringrazio sei stata gentilissima...cmq ho risolto in modo drastico...ho usato il punto di ripristino!! non ci ho cappito un gran che' di quello che hai scritto prima...eheheh
__________________
CaseH2O:Armor+LCS VH600LBWS-Procio:Q9550 E0 [email protected]Mobo:rampage formula X48-Ram:8gb(4*2) ocz reaper pc8500-Vga:Msi Forz II 6950 2gb 840@1325-Audio:supremeFxII/hd-SSD/HD/Dvd:Corsair force f120+2XRaptor 74adfd raid0+2x500wdsata2-dvdnecAD7173Ssata Monitor/Tv3D: Sony led 3D 40ex720-Ali:enermax modu82+ 525w-Mouse Gamer:zykon Z1-Ups:Riello 600VA Il mio pc
Ultima modifica di gam76 : 30-09-2007 alle 19:24. |
|
|
|
|
|
| Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 13:49.




















