• T4CH
  • NEWS
  • VIDEO
Forum > Internet

Cid

Discussione inserita in 'Internet' da daniela, 1 Agosto 2008.

  1. daniela techNewbie

    Cid

    ragazzi scusate un piccolo problema fastidioso: continuano ad aprirsi le pagine di pubblicità cid che nn sn riuscita ad eliminare in nessuna maniera, forse perché non capisco molto del computer e dopo aver fatto la scansione con hijackthis non sono sicura delle voci che devo eliminare.

    quindi posto qua il logfile e se riuscite a darmi una mano vi offro un gelato :D



    baci







    Running processes:

    C:WINDOWSSystem32smss.exe

    C:WINDOWSsystem32csrss.exe

    C:WINDOWSsystem32winlogon.exe

    C:WINDOWSsystem32services.exe

    C:WINDOWSsystem32lsass.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSsystem32svchost.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007pavsrv51.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007AVENGINE.EXE

    C:WINDOWSsystem32logonui.exe

    C:WINDOWSsystem32svchost.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007TPSrv.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSsystem32spoolsv.exe

    c:programmifile comunilogitechlvmvfmLVPrcSrv.exe

    C:programmia-squared Freea2service.exe

    C:programmiFile comuniAppleMobile Device SupportbinAppleMobileDeviceService.exe

    C:programmiBonjourmDNSResponder.exe

    C:WINDOWSsystem32cisvc.exe

    C:programmiNeroNero8Nero BackItUpNBService.exe

    C:WINDOWSsystem32nvsvc32.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsCtrls.EXE

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PavFnSvr.exe

    c:programmipanda softwarepanda antivirus + firewall 2007firewallPSHOST.EXE

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsImSvc.exe

    C:programmiCyberLinkShared FilesRichVideo.exe

    C:programmiSpyware DoctorpctsAuxs.exe

    C:programmiSpyware DoctorpctsSvc.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSExplorer.EXE

    C:programmiAnalog DevicesCoresmax4pnp.exe

    C:programmiAnalog DevicesSoundMAXSmax4.exe

    C:WINDOWSsystem32RUNDLL32.EXE

    C:programmiCyberLinkPowerDVDPDVDServ.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007APVXDWIN.EXE

    C:programmiHPHP Software UpdateHPWuSchd2.exe

    C:pROGRA~1ALICET~1SMARTB~1MotiveSB.exe

    C:programmiLogitechQuickCam10QuickCam10.exe

    C:programmiFile comuniLogitechLComMgrLVComSX.exe

    C:programmiFile comuniRealUpdate_OBrealsched.exe

    C:programmiJavajre1.6.0_07binjusched.exe

    C:programmiSpyware DoctorpctsTray.exe

    C:programmiFile comuniLogitechLComMgrCommunications_Helper.exe

    C:WINDOWSsystem32ctfmon.exe

    C:programmiSpybot - Search & DestroyTeaTimer.exe

    C:programmiHPDigital Imagingbinhpqtra08.exe

    C:programmiSonySony Picture UtilityVolumeWatcherSPUVolumeWatcher.exe

    C:DOCUME~1userIMPOST~1Tempbwgo0002d547.exe

    C:programmiAlice ti aiutabinmpbtn.exe

    C:programmiHPDigital ImagingbinhpqSTE08.exe

    C:programmiOpenOffice.org 2.4programsoffice.exe

    C:programmiOpenOffice.org 2.4programsoffice.BIN

    C:WINDOWSsystem32cidaemon.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007WebProxy.exe

    C:programmiWindows LiveMessengermsnmsgr.exe

    C:programmiWindows LiveMessengerusnsvc.exe

    C:programmiWindows LiveMessengermsnmsgr.exe

    C:programmiInternet Exploreriexplore.exe

    C:programmiInternet Exploreriexplore.exe

    C:WINDOWSsystem32wuauclt.exe

    C:programmiTrend MicroHijackThisHijackThis.exe

    C:WINDOWSsystem32wbemwmiprvse.exe

    R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://search.live.com/results.aspx?mkt=it-it&q=

    R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://g.msn.it/0SEITIT/SAOS01?FORM=TOOLBR

    R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.it/

    R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://home.sweetim.com

    R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://g.msn.it/0SEITIT/SAOS01?FORM=TOOLBR

    R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = 127.0.0.1;*.local

    R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Collegamenti

    O2 - BHO: Supporto di collegamento per Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:programmiFile comuniAdobeAcrobatActiveXAcroIEHelper.dll

    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:programmiRealRealPlayerrpbrowserrecordplugin.dll

    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:pROGRA~1SPYBOT~1SDHelper.dll

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:programmiJavajre1.6.0_07binssv.dll

    O2 - BHO: Windows Live Call HoverToCall class - {7E853D72-626A-48EC-A868-BA8D5E23E045} - C:programmiWindows LiveMessengerHTC.DLL

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmigooglegoogletoolbar2.dll

    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:programmiWindows Live Toolbarmsntb.dll

    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:programmiWindows Live Toolbarmsntb.dll

    O3 - Toolbar: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)

    O3 - Toolbar: (no name) - {cd36797a-70f3-4acd-8825-623d3b896881} - (no file)

    O3 - Toolbar: (no name) - {4F11ACBB-393F-4C86-A214-FF3D0D155CC3} - (no file)

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmigooglegoogletoolbar2.dll

    O4 - HKLM..Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe

    O4 - HKLM..Run: [SoundMAXPnP] C:programmiAnalog DevicesCoresmax4pnp.exe

    O4 - HKLM..Run: [SoundMAX] "C:programmiAnalog DevicesSoundMAXSmax4.exe" /tray

    O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup

    O4 - HKLM..Run: [nwiz] nwiz.exe /install

    O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit

    O4 - HKLM..Run: [RemoteControl] C:programmiCyberLinkPowerDVDPDVDServ.exe

    O4 - HKLM..Run: [LanguageShortcut] C:programmiCyberLinkPowerDVDLanguageLanguage.exe

    O4 - HKLM..Run: [APVXDWIN] "C:programmiPanda SoftwarePanda Antivirus + Firewall 2007APVXDWIN.EXE" /s

    O4 - HKLM..Run: [HP Software Update] C:programmiHPHP Software UpdateHPWuSchd2.exe

    O4 - HKLM..Run: [Motive SmartBridge] C:pROGRA~1ALICET~1SMARTB~1MotiveSB.exe

    O4 - HKLM..Run: [LogitechQuickCamRibbon] "C:programmiLogitechQuickCam10QuickCam10.exe" /hide

    O4 - HKLM..Run: [LVCOMSX] "C:programmiFile comuniLogitechLComMgrLVComSX.exe"

    O4 - HKLM..Run: [TkBellExe] "C:programmiFile comuniRealUpdate_OBrealsched.exe" -osboot

    O4 - HKLM..Run: [SunJavaUpdateSched] "C:programmiJavajre1.6.0_07binjusched.exe"

    O4 - HKLM..Run: [ISTray] "C:programmiSpyware DoctorpctsTray.exe"

    O4 - HKLM..Run: [NBKeyScan] "C:programmiNeroNero8Nero BackItUpNBKeyScan.exe"

    O4 - HKLM..Run: [LogitechCommunicationsManager] "C:programmiFile comuniLogitechLComMgrCommunications_Helper.exe"

    O4 - HKLM..Run: [Frag Ooze Cash Scr] C:Documents and SettingsAll UsersDati applicazioniclose poke frag oozeAtom Camp.exe

    O4 - HKLM..Run: [AppleSyncNotifier] C:programmiFile comuniAppleMobile Device SupportbinAppleSyncNotifier.exe

    O4 - HKLM..Run: [QuickTime Task] "C:programmiQuickTimeqttask.exe" -atboottime

    O4 - HKLM..Run: [iTunesHelper] "C:programmiiTunesiTunesHelper.exe"

    O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe

    O4 - HKCU..Run: [LDM] C:programmiLogitechDesktop Messenger8876480ProgramLogitechDesktopMessenger.exe

    O4 - HKCU..Run: [SpybotSD TeaTimer] C:programmiSpybot - Search & DestroyTeaTimer.exe

    O4 - HKCU..Run: [SPAM KNOB] C:DOCUME~1userDATIAP~11warneqmoreextrahide.exe

    O4 - HKCU..Run: [Uniblue RegistryBooster 2] C:programmiUniblueRegistryBooster 2RegistryBooster.exe /S

    O4 - HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SERVIZIO LOCALE')

    O4 - HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SERVIZIO DI RETE')

    O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'Default user')

    O4 - Startup: OpenOffice.org 2.4.lnk = C:programmiOpenOffice.org 2.4programquickstart.exe

    O4 - Startup: Utilità controllo supporti di Picture Motion Browser.lnk = C:programmiSonySony Picture UtilityVolumeWatcherSPUVolumeWatcher.exe

    O4 - Global Startup: Alice ti aiuta.lnk = C:programmiAlice ti aiutabinmatcli.exe

    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:programmiHPDigital Imagingbinhpqtra08.exe

    O8 - Extra context menu item: &Point&&Go - C:programmiFile comuniExpert SystemPGPlatformPGPlatform.htm

    O8 - Extra context menu item: &Windows Live Search - res://C:programmiWindows Live Toolbarmsntb.dll/search.htm

    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx

    O8 - Extra context menu item: Apri in nuova scheda in primo piano - res://C:programmiWindows Live ToolbarComponentsit-itmsntabres.dll.mui/230?7a8b10699ddf49d598565b3ef6de78e1

    O8 - Extra context menu item: Apri in nuova scheda in secondo piano - res://C:programmiWindows Live ToolbarComponentsit-itmsntabres.dll.mui/229?7a8b10699ddf49d598565b3ef6de78e1

    O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:pROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:programmiJavajre1.6.0_07binssv.dll

    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:programmiJavajre1.6.0_07binssv.dll

    O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:pROGRA~1MICROS~2OFFICE11REFIEBAR.DLL

    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:pROGRA~1SPYBOT~1SDHelper.dll

    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:pROGRA~1SPYBOT~1SDHelper.dll

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:programmiMessengermsmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:programmiMessengermsmsgs.exe

    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:programmiYahoo!Commonyinsthelper.dll

    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1183629262296

    O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-57c2c68b365e1697.spaces.live.com/PhotoUpload/MsnPUpld.cab

    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:programmiLogitechDesktop Messenger8876480ProgramGAPlugProtocol-8876480.dll

    O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:programmia-squared Freea2service.exe

    O23 - Service: Adobe LM Service - Adobe Systems - C:programmiFile comuniAdobe Systems SharedServiceAdobelmsvc.exe

    O23 - Service: Apple Mobile Device - Apple Inc. - C:programmiFile comuniAppleMobile Device SupportbinAppleMobileDeviceService.exe

    O23 - Service: Bonjour Service - Apple Inc. - C:programmiBonjourmDNSResponder.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:programmiGoogleCommonGoogle UpdaterGoogleUpdaterService.exe

    O23 - Service: Servizio iPod (iPod Service) - Apple Inc. - C:programmiiPodbiniPodService.exe

    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:programmifile comunilogitechlvmvfmLVPrcSrv.exe

    O23 - Service: LVSrvLauncher - Logitech Inc. - C:programmiFile comuniLogitechSrvLnchSrvLnch.exe

    O23 - Service: NBService - Unknown owner - C:programmiNeroNero 7Nero BackItUpNBService.exe (file missing)

    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:programmiNeroNero8Nero BackItUpNBService.exe

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32nvsvc32.exe

    O23 - Service: Panda Software Controller - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsCtrls.EXE

    O23 - Service: Panda Function Service (PAVFNSVR) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PavFnSvr.exe

    O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007pavsrv51.exe

    O23 - Service: Pml Driver HPZ12 - HP - C:WINDOWSsystem32HPZipm12.exe

    O23 - Service: Panda Host Service (PSHost) - Panda Software International - c:programmipanda softwarepanda antivirus + firewall 2007firewallPSHOST.EXE

    O23 - Service: Panda IManager Service (PSIMSVC) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsImSvc.exe

    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:programmiCyberLinkShared FilesRichVideo.exe

    O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:programmiSpyware DoctorpctsAuxs.exe

    O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:programmiSpyware DoctorpctsSvc.exe

    O23 - Service: ServiceLayer - Nokia. - C:programmiPC Connectivity SolutionServiceLayer.exe

    O23 - Service: Panda TPSrv (TPSrv) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007TPSrv.exe

    O24 - Desktop Component 0: (no name) - http://www.lannaronca.it/Sfondi 6/cartoni_animati208.jpg
    daniela, 1 Agosto 2008
    #1
  2. Davide Amministratore

    Scusa hai provato una pulizia con System Mechanic?
    Davide, 1 Agosto 2008
    #2
  3. daniela techNewbie

    no solo con spyware doctor e smart pc professional!
    daniela, 1 Agosto 2008
    #3
  4. Jena techNewbie

    fixa queste voci:



    R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://home.sweetim.com



    O4 - HKLM..Run: [Frag Ooze Cash Scr] C:Documents and SettingsAll UsersDati applicazioniclose poke frag oozeAtom Camp.exe



    O4 - HKCU..Run: [SPAM KNOB] C:DOCUME~1userDATIAP~11warneqmoreextrahide.ex e



    O3 - Toolbar: (no name) - {4596013b-6c31-408b-a266-deae5c086dc2} - (no file)



    O3 - Toolbar: (no name) - {cd36797a-70f3-4acd-8825-623d3b896881} - (no file)



    O3 - Toolbar: (no name) - {4F11ACBB-393F-4C86-A214-FF3D0D155CC3} - (no file)





    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:programmiYahoo!Commonyinsthelper.dll

    Controllate se conoscete il sito web altrimenti eliminatelo (Fix). Oggetti ActiveX sconosciuti oppure oggetti ActiveX provenienti da siti web sconosciuti devono sempre essere eliminati. Se il nome dell'oggetto ActiveX o dell'indirizzo (URL) contiene le parole 'dialer', 'casino', 'free plugin' ecc, deve essere immediatamente cancellato (pulsante Fix di HijackThis)!



    O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-57c2c68b365e1697.spaces.l...d/MsnPUpld.cab

    Controllate se conoscete il sito web altrimenti eliminatelo (Fix). Oggetti ActiveX sconosciuti oppure oggetti ActiveX provenienti da siti web sconosciuti devono sempre essere eliminati. Se il nome dell'oggetto ActiveX o dell'indirizzo (URL) contiene le parole 'dialer', 'casino', 'free plugin' ecc, deve essere immediatamente cancellato (pulsante Fix di HijackThis)!



    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab

    Controllate se conoscete il sito web altrimenti eliminatelo (Fix). Oggetti ActiveX sconosciuti oppure oggetti ActiveX provenienti da siti web sconosciuti devono sempre essere eliminati. Se il nome dell'oggetto ActiveX o dell'indirizzo (URL) contiene le parole 'dialer', 'casino', 'free plugin' ecc, deve essere immediatamente cancellato (pulsante Fix di HijackThis)!



    Dopo aver fixato le voci spstette scarica e lancia ATF cleaner dopodiche rifai la scansione con HiJackThis con relativo log:

    http://www.scanwith.com/download/ATF_Cleaner.htm





    In avvio ci sono molte voci inutili che eliminerai togliendo il segno di "spunta" da: Start - Esegui, scrivi: msconfig - Ok. Liguetta avvio.

    Qui lascerai soltanto cio che riguarda l'antivirus poichè le voci che elimini si possono ripristinare con la stessa procedura.
    Jena, 1 Agosto 2008
    #4
  5. daniela techNewbie

    jena ho fatto come hai detto, ma le pagine continuano lo stesso a riaprirsi!!!!
    daniela, 1 Agosto 2008
    #5
  6. Jena techNewbie

    riposta un log di hijackthis e vediamo cosa è rimasto. Hai tantissima roba in avvio.

    Inoltre, hai tolto il supefluo da msconfig ??
    Jena, 1 Agosto 2008
    #6
  7. daniela techNewbie

    ECCOLO DI NUOVO....L'ALTRA DOMANDA INVECE NN L'HO CAPITA...SAPPI CHE NN SN MOLTO BRAVA CON I COMPUTER!!!!







    C:WINDOWSSystem32smss.exe

    C:WINDOWSsystem32csrss.exe

    C:WINDOWSsystem32winlogon.exe

    C:WINDOWSsystem32services.exe

    C:WINDOWSsystem32lsass.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSsystem32svchost.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007pavsrv51.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007AVENGINE.EXE

    C:WINDOWSsystem32svchost.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007TPSrv.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSsystem32svchost.exe

    C:WINDOWSsystem32spoolsv.exe

    c:programmifile comunilogitechlvmvfmLVPrcSrv.exe

    C:programmia-squared Freea2service.exe

    C:programmiFile comuniAppleMobile Device SupportbinAppleMobileDeviceService.exe

    C:programmiBonjourmDNSResponder.exe

    C:WINDOWSsystem32cisvc.exe

    C:programmiNeroNero8Nero BackItUpNBService.exe

    C:WINDOWSsystem32nvsvc32.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsCtrls.EXE

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PavFnSvr.exe

    C:WINDOWSExplorer.EXE

    c:programmipanda softwarepanda antivirus + firewall 2007firewallPSHOST.EXE

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsImSvc.exe

    C:programmiCyberLinkShared FilesRichVideo.exe

    C:programmiSpyware DoctorpctsAuxs.exe

    C:programmiSpyware DoctorpctsSvc.exe

    C:WINDOWSsystem32svchost.exe

    C:programmiSpyware DoctorpctsTray.exe

    C:programmiAnalog DevicesCoresmax4pnp.exe

    C:programmiAnalog DevicesSoundMAXSmax4.exe

    C:WINDOWSsystem32RUNDLL32.EXE

    C:programmiCyberLinkPowerDVDPDVDServ.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007APVXDWIN.EXE

    C:programmiHPHP Software UpdateHPWuSchd2.exe

    C:pROGRA~1ALICET~1SMARTB~1MotiveSB.exe

    C:programmiLogitechQuickCam10QuickCam10.exe

    C:programmiFile comuniLogitechLComMgrLVComSX.exe

    C:programmiFile comuniRealUpdate_OBrealsched.exe

    C:programmiJavajre1.6.0_07binjusched.exe

    C:programmiFile comuniLogitechLComMgrCommunications_Helper.exe

    C:programmiiTunesiTunesHelper.exe

    C:WINDOWSsystem32ctfmon.exe

    C:programmiSpybot - Search & DestroyTeaTimer.exe

    C:programmiInternet Exploreriexplore.exe

    C:programmiHPDigital Imagingbinhpqtra08.exe

    C:programmiSonySony Picture UtilityVolumeWatcherSPUVolumeWatcher.exe

    C:DOCUME~1userIMPOST~1Tempbwgo00019209.exe

    C:programmiOpenOffice.org 2.4programsoffice.exe

    C:programmiAlice ti aiutabinmpbtn.exe

    C:programmiOpenOffice.org 2.4programsoffice.BIN

    C:programmiHPDigital ImagingbinhpqSTE08.exe

    C:programmiSpyware DoctorpctsTray.exe

    C:programmiiPodbiniPodService.exe

    C:WINDOWSsystem32WgaTray.exe

    C:WINDOWSSystem32alg.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007WebProxy.exe

    C:programmiInternet Exploreriexplore.exe

    C:WINDOWSsystem32cidaemon.exe

    C:programmiRealRealPlayerRecordingManager.exe

    C:programmiInternet Exploreriexplore.exe

    C:programmiInternet Exploreriexplore.exe

    C:programmiWindows LiveMessengermsnmsgr.exe

    C:programmiWindows LiveMessengerusnsvc.exe

    C:programmiPanda SoftwarePanda Antivirus + Firewall 2007avciman.exe

    C:programmiInternet Exploreriexplore.exe

    C:programmiWindows Live Toolbarmsn_sl.exe

    C:WINDOWSsystem32wuauclt.exe

    C:programmiTrend MicroHijackThisHijackThis.exe

    C:WINDOWSsystem32wbemwmiprvse.exe

    R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://search.live.com/results.aspx?mkt=it-it&q=

    R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://g.msn.it/0SEITIT/SAOS01?FORM=TOOLBR

    R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.it/

    R1 - HKCUSoftwareMicrosoftInternet ExplorerSearchURL,(Default) = http://g.msn.it/0SEITIT/SAOS01?FORM=TOOLBR

    R1 - HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = 127.0.0.1;*.local

    R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Collegamenti

    O2 - BHO: Supporto di collegamento per Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:programmiFile comuniAdobeAcrobatActiveXAcroIEHelper.dll

    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:programmiRealRealPlayerrpbrowserrecordplugin.dll

    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:pROGRA~1SPYBOT~1SDHelper.dll

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:programmiJavajre1.6.0_07binssv.dll

    O2 - BHO: Windows Live Call HoverToCall class - {7E853D72-626A-48EC-A868-BA8D5E23E045} - C:programmiWindows LiveMessengerHTC.DLL

    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:programmigooglegoogletoolbar2.dll

    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:programmiWindows Live Toolbarmsntb.dll

    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:programmiWindows Live Toolbarmsntb.dll

    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:programmigooglegoogletoolbar2.dll

    O4 - HKLM..Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe

    O4 - HKLM..Run: [SoundMAXPnP] C:programmiAnalog DevicesCoresmax4pnp.exe

    O4 - HKLM..Run: [SoundMAX] "C:programmiAnalog DevicesSoundMAXSmax4.exe" /tray

    O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup

    O4 - HKLM..Run: [nwiz] nwiz.exe /install

    O4 - HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit

    O4 - HKLM..Run: [RemoteControl] C:programmiCyberLinkPowerDVDPDVDServ.exe

    O4 - HKLM..Run: [LanguageShortcut] C:programmiCyberLinkPowerDVDLanguageLanguage.exe

    O4 - HKLM..Run: [APVXDWIN] "C:programmiPanda SoftwarePanda Antivirus + Firewall 2007APVXDWIN.EXE" /s

    O4 - HKLM..Run: [HP Software Update] C:programmiHPHP Software UpdateHPWuSchd2.exe

    O4 - HKLM..Run: [Motive SmartBridge] C:pROGRA~1ALICET~1SMARTB~1MotiveSB.exe

    O4 - HKLM..Run: [LogitechQuickCamRibbon] "C:programmiLogitechQuickCam10QuickCam10.exe" /hide

    O4 - HKLM..Run: [LVCOMSX] "C:programmiFile comuniLogitechLComMgrLVComSX.exe"

    O4 - HKLM..Run: [TkBellExe] "C:programmiFile comuniRealUpdate_OBrealsched.exe" -osboot

    O4 - HKLM..Run: [SunJavaUpdateSched] "C:programmiJavajre1.6.0_07binjusched.exe"

    O4 - HKLM..Run: [ISTray] "C:programmiSpyware DoctorpctsTray.exe"

    O4 - HKLM..Run: [NBKeyScan] "C:programmiNeroNero8Nero BackItUpNBKeyScan.exe"

    O4 - HKLM..Run: [LogitechCommunicationsManager] "C:programmiFile comuniLogitechLComMgrCommunications_Helper.exe"

    O4 - HKLM..Run: [AppleSyncNotifier] C:programmiFile comuniAppleMobile Device SupportbinAppleSyncNotifier.exe

    O4 - HKLM..Run: [QuickTime Task] "C:programmiQuickTimeqttask.exe" -atboottime

    O4 - HKLM..Run: [iTunesHelper] "C:programmiiTunesiTunesHelper.exe"

    O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe

    O4 - HKCU..Run: [LDM] C:programmiLogitechDesktop Messenger8876480ProgramLogitechDesktopMessenger.exe

    O4 - HKCU..Run: [SpybotSD TeaTimer] C:programmiSpybot - Search & DestroyTeaTimer.exe

    O4 - HKCU..Run: [Uniblue RegistryBooster 2] C:programmiUniblueRegistryBooster 2RegistryBooster.exe /S

    O4 - HKCU..Run: [SPAM KNOB] C:DOCUME~1userDATIAP~11warneqmoreextrahide.exe

    O4 - HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SERVIZIO LOCALE')

    O4 - HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SERVIZIO DI RETE')

    O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM')

    O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'Default user')

    O4 - Startup: OpenOffice.org 2.4.lnk = C:programmiOpenOffice.org 2.4programquickstart.exe

    O4 - Startup: Utilità controllo supporti di Picture Motion Browser.lnk = C:programmiSonySony Picture UtilityVolumeWatcherSPUVolumeWatcher.exe

    O4 - Global Startup: Alice ti aiuta.lnk = C:programmiAlice ti aiutabinmatcli.exe

    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:programmiHPDigital Imagingbinhpqtra08.exe

    O8 - Extra context menu item: &Point&&Go - C:programmiFile comuniExpert SystemPGPlatformPGPlatform.htm

    O8 - Extra context menu item: &Windows Live Search - res://C:programmiWindows Live Toolbarmsntb.dll/search.htm

    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx

    O8 - Extra context menu item: Apri in nuova scheda in primo piano - res://C:programmiWindows Live ToolbarComponentsit-itmsntabres.dll.mui/230?7a8b10699ddf49d598565b3ef6de78e1

    O8 - Extra context menu item: Apri in nuova scheda in secondo piano - res://C:programmiWindows Live ToolbarComponentsit-itmsntabres.dll.mui/229?7a8b10699ddf49d598565b3ef6de78e1

    O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:pROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000

    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:programmiJavajre1.6.0_07binssv.dll

    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:programmiJavajre1.6.0_07binssv.dll

    O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:pROGRA~1MICROS~2OFFICE11REFIEBAR.DLL

    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:pROGRA~1SPYBOT~1SDHelper.dll

    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:pROGRA~1SPYBOT~1SDHelper.dll

    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe

    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:programmiMessengermsmsgs.exe

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:programmiMessengermsmsgs.exe

    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1183629262296

    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:programmiLogitechDesktop Messenger8876480ProgramGAPlugProtocol-8876480.dll

    O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:programmia-squared Freea2service.exe

    O23 - Service: Adobe LM Service - Adobe Systems - C:programmiFile comuniAdobe Systems SharedServiceAdobelmsvc.exe

    O23 - Service: Apple Mobile Device - Apple Inc. - C:programmiFile comuniAppleMobile Device SupportbinAppleMobileDeviceService.exe

    O23 - Service: Bonjour Service - Apple Inc. - C:programmiBonjourmDNSResponder.exe

    O23 - Service: Google Updater Service (gusvc) - Google - C:programmiGoogleCommonGoogle UpdaterGoogleUpdaterService.exe

    O23 - Service: Servizio iPod (iPod Service) - Apple Inc. - C:programmiiPodbiniPodService.exe

    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:programmifile comunilogitechlvmvfmLVPrcSrv.exe

    O23 - Service: LVSrvLauncher - Logitech Inc. - C:programmiFile comuniLogitechSrvLnchSrvLnch.exe

    O23 - Service: NBService - Unknown owner - C:programmiNeroNero 7Nero BackItUpNBService.exe (file missing)

    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:programmiNeroNero8Nero BackItUpNBService.exe

    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:WINDOWSsystem32nvsvc32.exe

    O23 - Service: Panda Software Controller - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsCtrls.EXE

    O23 - Service: Panda Function Service (PAVFNSVR) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PavFnSvr.exe

    O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007pavsrv51.exe

    O23 - Service: Pml Driver HPZ12 - HP - C:WINDOWSsystem32HPZipm12.exe

    O23 - Service: Panda Host Service (PSHost) - Panda Software International - c:programmipanda softwarepanda antivirus + firewall 2007firewallPSHOST.EXE

    O23 - Service: Panda IManager Service (PSIMSVC) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007PsImSvc.exe

    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:programmiCyberLinkShared FilesRichVideo.exe

    O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:programmiSpyware DoctorpctsAuxs.exe

    O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:programmiSpyware DoctorpctsSvc.exe

    O23 - Service: ServiceLayer - Nokia. - C:programmiPC Connectivity SolutionServiceLayer.exe

    O23 - Service: Panda TPSrv (TPSrv) - Panda Software International - C:programmiPanda SoftwarePanda Antivirus + Firewall 2007TPSrv.exe

    O24 - Desktop Component 0: (no name) - http://www.lannaronca.it/Sfondi 6/cartoni_animati208.jpg
    daniela, 4 Agosto 2008
    #7
  8. cobra techAddicted

    Vorrei aiutarti anche io,ma non ti conosco,non ho visto le tue presentazioni nell'apposita sezione,se non ti disturba e se lo fai,

    lo gradirei.



    cobra
    cobra, 4 Agosto 2008
    #8
  9. daniela techNewbie

    non ho capito cosa intendi per presentazioni....se intendi la domanda, il mio problema, allora c'è ma avevo messo insieme anche il logfile già la prima volta quindi si trovano tutte e due insieme....
    daniela, 4 Agosto 2008
    #9
  10. cobra techAddicted

    [quote name='daniela']non ho capito cosa intendi per presentazioni....se intendi la domanda, il mio problema, allora c'è ma avevo messo insieme anche il logfile già la prima volta quindi si trovano tutte e due insieme....[/quote]

    O4 - HKCU..Run: [SPAM KNOB] C:DOCUME~1userDATIAP~11warneqmoreextrahide.ex e

    O24 - Desktop Component 0: (no name) - http://www.lannaronca.it/Sfondi%206/...animati208.jpg

    [IMG]

    Spunta queste 2 voci e premi il pulsante fix.

    Per l'altra mia richiesta: http://www.techforum.it/f55/ qui' ti ti presenti





    cobra.
    cobra, 4 Agosto 2008
    #10
  11. cobra techAddicted

    Effettivamnete una voce era erroneamente identica all'altra,

    ora sono corrette,se non sei certa del sito: O24 - Desktop Component 0: (no name) - http://www.lannaronca.it/Sfondi%206/...animati208.jpg



    spunta e fixa le due voci.



    cobra



    [IMG]
    cobra, 4 Agosto 2008
    #11
Password dimenticata?
SU TERMINI DI SERVIZIO CONTATTACI