Visualizzazione dei risultati da 1 a 8 su 8
  1. #1
    Utente di HTML.it
    Registrato dal
    Jan 2009
    Messaggi
    55

    problema computer lento

    Buon giorno a tutti, volevo chiedere qualche aiuto per il mio notebook, è piuttosto lento, utilizzo chrome perchè IE7 ormai è lentissimo, e il computer per accendersi credo ci metta almeno 2-3 minuti. Avete qualche consiglio da darmi?? Nod non mi rileva alcun virus, vi allego il post di Hijack, approfitto anche per un altro consiglio, da qualche giorno la ventola fa un grande rumore, lo porto ad aggiustare o posso fare qualcosa?? grazie dell'aiuto.


    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 14.51.13, on 03/05/2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\HP\QuickPlay\QPService.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
    C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
    C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    C:\Program Files\D-Link\DSL-200\DslStat.exe
    C:\Program Files\D-Link\DSL-200\dslagent.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
    C:\Windows\system32\conime.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\explorer.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    c:\program files\aol\aol toolbar 5.0\AolTbServer.exe
    C:\Windows\system32\Macromed\Flash\FlashUtil9e.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...esario&pf=cnnb
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...esario&pf=cnnb
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TY...esario&pf=cnnb
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: Supporto di collegamento per Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
    O2 - BHO: Guida per l'accesso a Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\s wg.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.ex e" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\2.0"
    O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    O4 - HKLM\..\Run: [DSLSTATEXE] C:\Program Files\D-Link\DSL-200\dslstat.exe icon
    O4 - HKLM\..\Run: [DSLAGENTEXE] C:\Program Files\D-Link\DSL-200\dslagent.exe
    O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVIZIO LOCALE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVIZIO LOCALE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVIZIO DI RETE')
    O4 - Startup: Ritaglio schermata e avvio di OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    O8 - Extra context menu item: &AOL Toolbar Cerca - C:\ProgramData\AOL\ieToolbar\resources\it-IT\local\search.html
    O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
    O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O13 - Gopher Prefix:
    O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/...oUploader5.cab
    O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/actives.../as2stubie.cab
    O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
    O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
    O23 - Service: Google Update Service (gupdate1c984758456f10) (gupdate1c984758456f10) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: Recovery Service for Windows - Unknown owner - C:\Windows\SMINST\BLService.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
    O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

    --
    End of file - 9463 bytes

  2. #2
    Utente di HTML.it L'avatar di menatwork
    Registrato dal
    May 2009
    Messaggi
    4,330
    Buongiorno

    il log e' pulito ma potrebbe esserci qualcosa che hijackthis non rileva

    per cio' che riguarda la ventola rumorosa puoi essere piu' specifico? quella dell'alimentatore o del processore? inizia a fare un po' di pulizia e vediamo se il pc recupera

    scarica ccleaner
    In fase d’installazione levare la spunta altrimenti viene installata Yahoo Tollbar.
    Avvialo e clicca su:
    - Opzioni Avanzate
    Togli la spunta da:
    - Elimina file solo se più vecchi di 48 ore
    Clicca i tasti:
    - Pulizia (il primo in alto a Sinistra)
    - Analizza ( Pulsante in basso Centrale)
    - Avvia Pulizia (Pulsante in basso a Destra)

    Correzione errori File di Registro
    CCleaner
    Cliccare i tasti:
    - Registro (Secondo tasto in alto a Sinistra)
    - Trova Problemi (Pulsante in basso Centrale)
    - Ripara selezionati Pulsante in basso a Destra
    - alla domanda:
    - Vuoi eseguire il Backup delle modifiche del Registro”
    - clicca:
    - SI

    usa anche ATF-Cleaner(Non richiede installazione)
    Spunta la voce:
    - Select all
    Premi il tasto:
    - Empty Select

    elimina anche i programmi inutili in avvio, e' importante per avere un pc piu' scattante

    fai una scansione con combofix

    scaricalo sul desktop ed eseguilo
    (non installare la recovery console)
    Lascia lavorare il programma senza interferire
    Allega il rapporto C:\ComboFix.txt nella tua risposta.

  3. #3
    Utente di HTML.it
    Registrato dal
    Jan 2009
    Messaggi
    55
    ComboFix 10-03-24.02 - Manuel 25/03/2010 11.36.50.1.1 - x86
    Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.39.1040.18.2814.2092 [GMT 1:00]
    Eseguito da: c:\users\Manuel\Documents\Downloads\ComboFix.exe
    AV: Sistema Antivirus NOD32 2.70 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
    SP: Spybot - Search and Destroy *enabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
    SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
    * Resident AV is active

    .

    ((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))) )
    .

    c:\$recycle.bin\S-1-5-21-279720257-3005596748-264909360-500
    c:\$recycle.bin\S-1-5-21-840527427-1085594953-960382659-500

    .
    ((((((((((((((((((((((((( Files Creati Da 2010-02-25 al 2010-03-25 )))))))))))))))))))))))))))))))))))
    .

    2010-03-25 10:50 . 2010-03-25 10:51 -------- d-----w- c:\users\Manuel\AppData\Local\temp
    2010-03-25 10:50 . 2010-03-25 10:50 -------- d-----w- c:\users\Default\AppData\Local\temp
    2010-03-25 10:24 . 2010-03-25 10:25 -------- d-----w- c:\users\Manuel\AppData\Local\Adobe
    2010-03-17 21:11 . 2010-02-12 10:48 293376 ----a-w- c:\windows\system32\browserchoice.exe
    2010-03-02 08:55 . 2010-03-02 08:55 56 ---ha-w- c:\windows\system32\ezsidmv.dat
    2010-02-27 14:26 . 2010-02-27 14:26 -------- d-----w- c:\windows\CheckSur
    2010-02-25 15:22 . 2010-01-25 12:48 472064 ----a-w- c:\windows\system32\secproc.dll
    2010-02-25 15:22 . 2010-01-25 08:34 511488 ----a-w- c:\windows\system32\RMActivate.exe
    2010-02-25 15:22 . 2010-01-25 12:48 151040 ----a-w- c:\windows\system32\secproc_ssp.dll
    2010-02-25 15:22 . 2010-01-25 08:34 347136 ----a-w- c:\windows\system32\RMActivate_ssp.exe
    2010-02-25 15:22 . 2010-01-25 12:48 472576 ----a-w- c:\windows\system32\secproc_isv.dll
    2010-02-25 15:22 . 2010-01-25 08:35 523776 ----a-w- c:\windows\system32\RMActivate_isv.exe
    2010-02-25 15:21 . 2010-01-25 12:48 151040 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
    2010-02-25 15:21 . 2010-01-25 08:35 346624 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
    2010-02-25 15:21 . 2010-01-25 12:45 329216 ----a-w- c:\windows\system32\msdrm.dll
    2010-02-25 10:01 . 2010-01-23 09:44 2048 ----a-w- c:\windows\system32\tzres.dll

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )
    .
    2010-03-25 10:30 . 2008-08-30 02:30 147390 ----a-w- c:\programdata\nvModes.dat
    2010-03-25 10:28 . 2009-11-27 14:35 -------- d-----w- c:\users\Manuel\AppData\Roaming\uTorrent
    2010-03-25 10:26 . 2009-03-25 11:13 -------- d-----w- c:\users\Manuel\AppData\Roaming\Skype
    2010-03-25 10:17 . 2009-01-31 12:19 -------- d-----w- c:\programdata\Spybot - Search & Destroy
    2010-03-24 10:30 . 2009-02-01 13:48 -------- d-----w- c:\programdata\Google Updater
    2010-03-17 18:24 . 2008-06-06 21:43 662846 ----a-w- c:\windows\system32\perfh010.dat
    2010-03-17 18:24 . 2008-06-06 21:43 120326 ----a-w- c:\windows\system32\perfc010.dat
    2010-03-10 11:36 . 2008-06-06 13:20 -------- d-----w- c:\programdata\Microsoft Help
    2010-03-10 11:33 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
    2010-02-25 15:10 . 2008-10-31 17:33 102424 ----a-w- c:\users\Manuel\AppData\Local\GDIPFONTCACHEV1.DAT
    2010-02-24 09:16 . 2009-10-03 08:29 181632 ------w- c:\windows\system32\MpSigStub.exe
    2010-02-22 18:28 . 2008-06-06 13:37 588472 ----a-w- c:\windows\system32\ezsvc7x.dll
    2010-02-13 13:38 . 2009-02-01 13:48 -------- d-----w- c:\program files\Google
    2010-01-21 11:37 . 2009-03-08 11:33 680 ----a-w- c:\users\Manuel\AppData\Local\d3d9caps.dat
    2009-12-28 12:35 . 2010-02-10 20:59 11776 ----a-w- c:\windows\system32\tsbyuv.dll
    2009-12-28 12:35 . 2010-02-10 20:59 1314816 ----a-w- c:\windows\system32\quartz.dll
    2009-12-28 12:32 . 2010-02-10 20:59 22528 ----a-w- c:\windows\system32\msyuv.dll
    2009-12-28 12:32 . 2010-02-10 20:59 31744 ----a-w- c:\windows\system32\msvidc32.dll
    2009-12-28 12:32 . 2010-02-10 20:59 123904 ----a-w- c:\windows\system32\msvfw32.dll
    2009-12-28 12:32 . 2010-02-10 20:59 13312 ----a-w- c:\windows\system32\msrle32.dll
    2009-12-28 12:31 . 2010-02-10 20:59 82944 ----a-w- c:\windows\system32\mciavi32.dll
    2009-12-28 12:31 . 2010-02-10 20:59 50176 ----a-w- c:\windows\system32\iyuv_32.dll
    2009-12-28 12:28 . 2010-02-10 20:59 65024 ----a-w- c:\windows\system32\avicap32.dll
    2009-12-28 12:28 . 2010-02-10 20:59 91136 ----a-w- c:\windows\system32\avifil32.dll
    2008-12-28 20:08 . 2008-12-28 20:08 22 --sha-w- c:\windows\SMINST\HPCD.sys
    .

    ((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Nota* i valori vuoti & legittimi/default non sono visualizzati.
    REGEDIT4

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
    2009-09-02 13:56 1175944 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2009-09-02 1175944]

    [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
    [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
    "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2009-09-02 1175944]

    [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
    [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]
    "LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-02-26 2289664]
    "MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2009-07-26 3883856]
    "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
    "Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-03-11 24095528]
    "Google Update"="c:\users\Manuel\AppData\Local\Google\Upda te\GoogleUpdate.exe" [2009-08-20 133104]
    "uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2009-11-27 289584]
    "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2009-10-30 369200]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-03 13535776]
    "NvMediaCenter"="c:\windows\system32\NvMcTray. dll" [2008-05-03 92704]
    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-04-17 1049896]
    "UCam_Menu"="c:\program files\CyberLink\YouCam\MUITransfer\MUIStartMenu.ex e" [2007-12-24 222504]
    "QPService"="c:\program files\HP\QuickPlay\QPService.exe" [2008-04-01 468264]
    "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-21 1008184]
    "QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2008-03-14 202032]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
    "HP Software Update"="c:\program files\Hp\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
    "hpWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2008-04-15 488752]
    "DSLSTATEXE"="c:\program files\D-Link\DSL-200\dslstat.exe" [2005-12-12 344064]
    "DSLAGENTEXE"="c:\program files\D-Link\DSL-200\dslagent.exe" [2005-08-25 65536]
    "HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2008-10-09 75008]
    "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
    "nod32kui"="c:\program files\Eset\nod32kui.exe" [2009-07-24 949376]

    c:\users\Manuel\AppData\Roaming\Microsoft\Windows\ Start Menu\Programs\Startup\
    Ritaglio schermata e avvio di OneNote 2007.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2008-10-25 98696]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\policies\system]
    "EnableUIADesktopToggle"= 0 (0x0)

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
    "aux"=wdmaud.drv

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\Wdf01000.sys]
    @="Driver"

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\SafeBoot\Minimal\WinDefend]
    @="Service"

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
    "DisableMonitoring"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
    "DisableMonitoring"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
    "DisableMonitoring"=dword:00000001

    R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2009-11-28 691696]
    R2 gupdate;Servizio di Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2009-12-30 135664]
    R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
    S0 pavboot;pavboot;c:\windows\system32\drivers\pavboo t.sys [2009-06-30 28552]
    S1 nod32drv;nod32drv;c:\windows\system32\drivers\nod3 2drv.sys [2009-07-24 15424]
    S2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe [2008-01-21 21504]
    S2 Recovery Service for Windows;Recovery Service for Windows;c:\windows\SMINST\BLService.exe [2008-04-25 361808]
    S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
    S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [2008-05-03 42528]


    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
    ezSharedSvc

    [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
    2008-02-26 12:06 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
    .
    Contenuto della cartella 'Scheduled Tasks'

    2010-03-25 c:\windows\Tasks\Google Software Updater.job
    - c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-01 22:46]

    2010-03-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2009-12-30 15:14]

    2010-03-25 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2009-12-30 15:14]

    2010-03-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-279720257-3005596748-264909360-1000Core.job
    - c:\users\Manuel\AppData\Local\Google\Update\Google Update.exe [2009-08-20 10:48]

    2010-03-25 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-279720257-3005596748-264909360-1000UA.job
    - c:\users\Manuel\AppData\Local\Google\Update\Google Update.exe [2009-08-20 10:48]

    2010-03-12 c:\windows\Tasks\HPCeeScheduleForManuel.job
    - c:\program files\hewlett-packard\sdp\ceement\HPCEE.exe [2008-06-06 13:14]

    2010-03-25 c:\windows\Tasks\User_Feed_Synchronization-{6259E61B-0660-44FD-8FB8-BDC03ED20F13}.job
    - c:\windows\system32\msfeedssync.exe [2008-01-21 02:34]
    .
    .
    ------- Scansione supplementare -------
    .
    uStart Page = hxxp://it.ask.com?o=15161&l=dis
    mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=it_it&c=83&bd=Presario &pf=cnnb
    IE: &AOL Toolbar Cerca - c:\programdata\AOL\ieToolbar\resources\it-IT\local\search.html
    IE: E&sporta in Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
    LSP: c:\windows\system32\imon.dll
    .

    ************************************************** ************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2010-03-25 11:51
    Windows 6.0.6001 Service Pack 1 NTFS

    scansione processi nascosti ...

    scansione entrate autostart nascoste ...

    Scansione files nascosti ...

    Scansione completata con successo
    Files nascosti: 0

    ************************************************** ************************
    .
    --------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

    [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Cl ass\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
    @Denied: (A) (Users)
    @Denied: (A) (Everyone)
    @Allowed: (B 1 2 3 4 5) (S-1-5-20)
    "BlindDial"=dword:00000000
    .
    Ora fine scansione: 2010-03-25 11:57:45
    ComboFix-quarantined-files.txt 2010-03-25 10:57

  4. #4
    Utente di HTML.it L'avatar di menatwork
    Registrato dal
    May 2009
    Messaggi
    4,330
    sei sicuro di avermi inviato il llog intero? sembra un po' corto

    comunque combofix non rileva niente...hai fatto le pulizie che ti ho consigliato? hai eliminato i programmi inutili all'avvio di windows?

  5. #5
    Utente di HTML.it
    Registrato dal
    Jan 2009
    Messaggi
    55
    Ora scrivo da un altro computer ma credo di aver postato tutto, come faccio a eliminare i programmi inutili all'avvio?? grazie dell'aiuto.
    Ho fatto quello che mi hai detto senza scaricare ccleaner, già l'avevo, anche se non nell'ultima versione. La ventola non so se dell'alimentatore o processore, è quella che guardando i tasti, si trova in alto a sinistra.

  6. #6
    Utente di HTML.it L'avatar di menatwork
    Registrato dal
    May 2009
    Messaggi
    4,330
    per eliminare i programmi inutili all'avvio puoi usare anche revo unistaller

    vai su strumenti>>>programmi ad avvio automatico e togli la spunta da quelli che ritieni inutili all'avvio...lascia comunque quelli per la protezione(antivirus)

    la ventola in alto a sinistra dovrebbe essere dell'alimentatore ma comunque ti conviene sostituirla prima che ti abbandoni

  7. #7
    Puoi farlo anche senza nessun software.

    facendo questi passi:

    - Andare su "esegui" (nel tasto start)

    - Digitare "msconfig"

    - Andare nella scheda "avvio"

    - deselezionare o selezionare gli elementi da caricare all'avvio

    Ciao

  8. #8
    anch'io avendo lo stesso problema ho provato ad eseguire le tue istruzione, ma il link "msconfig" non mi risulta.
    "Il dubbio è uno dei nomi dell'intelligenza." Jorges Luis Borges

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved.