Visualizzazione dei risultati da 1 a 4 su 4
  1. #1

    controllate il mio logo

    Ciao ragazzi,
    mi controllate il log? Mi dite cosa devo fixare?
    grazie

    Logfile of Trend Micro HijackThis v2.0.0 (BETA)
    Scan saved at 12.07.58, on 22/03/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programmi\Ahead\InCD\InCDsrv.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
    C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Programmi\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Programmi\File comuni\OnlineHelpmate\mc.exe
    C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
    C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe
    C:\Programmi\File comuni\BestsellerAntivirus\stmon.exe
    C:\PROGRA~1\FILECO~1\BESTSE~1\uga6pcw.exe
    C:\WINDOWS\Knight.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programmi\RocketDock\RocketDock.exe
    C:\Programmi\Messenger\msmsgs.exe
    C:\Programmi\DNA\btdna.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe
    C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
    C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Programmi\Autodesk\3dsMax8\mentalray\satellite\ raysat_3dsmax8server.exe
    C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Programmi\Viewpoint\Common\ViewpointService.exe
    C:\Programmi\PC Connectivity Solution\ServiceLayer.exe
    C:\Programmi\Viewpoint\Viewpoint Manager\ViewMgr.exe
    C:\Programmi\Windows Live\Messenger\usnsvc.exe
    C:\Documents and Settings\Sony\Desktop\andrea\protezione pc\HiJackThis_v2.exe
    C:\WINDOWS\system32\WISPTIS.EXE
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Programmi\Mozilla Firefox\firefox.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.corriere.it/
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
    O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Programmi\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.D LL
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Programmi\MyWebSearch\bar\2.bin\MWSBAR.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
    O2 - BHO: WebAssist - {85589B5D-D53D-4237-A677-46B82EA275F3} - C:\WINDOWS\system32\8o0bC1aE.dll
    O2 - BHO: Guida per l'accesso a Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Programmi\Viewpoint\Viewpoint Toolbar\3.8.0\ViewBarBHO.dll
    O2 - BHO: {87292833-82eb-e8b8-fe94-f6b349ef973f} - {f379fe94-3b6f-49ef-8b8e-be2833829278} - C:\WINDOWS\system32\uskctqxd.dll (file missing)
    O2 - BHO: (no name) - {FA57E8A3-94B3-4784-9308-416C2DE5DB19} - C:\WINDOWS\system32\vturr.dll (file missing)
    O3 - Toolbar: Security Toolbar - {11A69AE4-FBED-4832-A2BF-45AF82825583} - C:\WINDOWS\system32\fvmmwaco.dll (file missing)
    O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Programmi\File comuni\Viewpoint\Toolbar Runtime\3.8.0\IEViewBar.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Programmi\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [Salestart] "C:\Programmi\File comuni\BestsellerAntivirus\bm.exe" dm=http://bestsellerantivirus.com; ad=http://bestsellerantivirus.com
    O4 - HKLM\..\Run: [Salestart(1)] "C:\Programmi\File comuni\OnlineHelpmate\mc.exe" dm=http://onlinehelpmate.com; ad=http://onlinehelpmate.com
    O4 - HKLM\..\Run: [d8e24006] rundll32.exe "C:\WINDOWS\system32\qyqdidgk.dll",b
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\MWSBAR.DLL,S
    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
    O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
    O4 - HKLM\..\Run: [Salestart(2)] "C:\Programmi\File comuni\BestsellerAntivirus\stmon.exe" dm=http://bestsellerantivirus.com; ad=http://bestsellerantivirus.com
    O4 - HKLM\..\Run: [uga6pcw] "C:\PROGRA~1\FILECO~1\BESTSE~1\uga6pcw.exe" -start
    O4 - HKLM\..\Run: [Disk Knight] C:\WINDOWS\Knight.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [CLOSERDR] C:\DOCUME~1\Sony\DATIAP~1\FREEWA~1\help inter soft.exe
    O4 - HKCU\..\Run: [RocketDock] "C:\Programmi\RocketDock\RocketDock.exe"
    O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Programmi\DNA\btdna.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmi\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
    O4 - Global Startup: Tasto di scelta rapida per l'avvio di AutoCAD.lnk = C:\Programmi\File comuni\Autodesk Shared\acstart17.exe
    O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbar...tml?p=ZRfox000
    O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Inserisci blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programmi\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: Inserisci &blog in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programmi\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://andrebenz.spaces.live.com/Pho...d/MsnPUpld.cab
    O20 - Winlogon Notify: fvmmwaco - fvmmwaco.dll (file missing)
    O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Autodesk Licensing Service - Autodesk - C:\Programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Programmi\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Programmi\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Programmi\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Programmi\Ahead\InCD\InCDsrv.exe
    O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C:\Programmi\Autodesk\3dsMax8\mentalray\satellite\ raysat_3dsmax8server.exe
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Programmi\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Programmi\Viewpoint\Common\ViewpointService.exe

    --
    End of file - 8792 bytes
    http://www.ravedi.it - il blog del giorno in più

  2. #2
    Utente di HTML.it L'avatar di tognazzi
    Registrato dal
    Jan 2007
    Messaggi
    1,489
    fixa:
    O2 - BHO: {87292833-82eb-e8b8-fe94-f6b349ef973f} - {f379fe94-3b6f-49ef-8b8e-be2833829278} - C:\WINDOWS\system32\uskctqxd.dll (file missing)
    O2 - BHO: (no name) - {FA57E8A3-94B3-4784-9308-416C2DE5DB19} - C:\WINDOWS\system32\vturr.dll (file missing)
    O3 - Toolbar: Security Toolbar - {11A69AE4-FBED-4832-A2BF-45AF82825583} - C:\WINDOWS\system32\fvmmwaco.dll (file missing)
    O4 - HKLM\..\Run: [Salestart(2)] "C:\Programmi\File comuni\BestsellerAntivirus\stmon.exe" dm=http://bestsellerantivirus.com; ad=http://bestsellerantivirus.com
    O4 - HKLM\..\Run: [uga6pcw] "C:\PROGRA~1\FILECO~1\BESTSE~1\uga6pcw.exe" -start
    O4 - HKLM\..\Run: [Disk Knight] C:\WINDOWS\Knight.exe
    O4 - HKLM\..\Run: [Salestart(1)] "C:\Programmi\File comuni\OnlineHelpmate\mc.exe" dm=http://onlinehelpmate.com; ad=http://onlinehelpmate.com
    O4 - HKLM\..\Run: [d8e24006] rundll32.exe "C:\WINDOWS\system32\qyqdidgk.dll",b
    O20 - Winlogon Notify: fvmmwaco - fvmmwaco.dll (file missing)

    la toolbar seguente fixala se la ritieni inutile
    O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Programmi\Viewpoint\Viewpoint Toolbar\3.8.0\ViewBarBHO.dll

    ancora una cosa. c'è una voce che mi lascia perplesso:
    O4 - HKCU\..\Run: [CLOSERDR] C:\DOCUME~1\Sony\DATIAP~1\FREEWA~1\help inter soft.exe
    per me la voce è sospetta, ma non mi arrischio a dirti di fixarla

    se la conosci ok, altrimenti aspetta il giudizio di altri. intanto puoi caricare il file "help inter soft.exe" su http://www.virustotal.com/ o su http://virusscan.jotti.org/

    al termine della scansione posta il risultato

  3. #3
    Moderatore di Sicurezza informatica e virus L'avatar di Habanero
    Registrato dal
    Jun 2001
    Messaggi
    9,782
    alexthecatta, come da relogolamento, per favore specifica il problema riscontrato. Grazie.
    Leggi il REGOLAMENTO!

    E' molto complicato, un mucchio di input e output, una quantità di informazioni, un mucchio di elementi da considerare, ho una quantità di elementi da tener presente...
    Drugo

  4. #4
    sorry, rimedio subito:
    riscontro un rallentamento generale del PC. Le applicazioni si aprono troppo lentamente e una volta aperte diventa difficile, se non impossibile, gestire più programmi allo stesso tempo.
    http://www.ravedi.it - il blog del giorno in più

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved.