Pagina 1 di 6 1 2 3 ... ultimoultimo
Visualizzazione dei risultati da 1 a 10 su 59

Discussione: Sistema rallentato.

  1. #1
    Utente di HTML.it
    Registrato dal
    Jan 2005
    Messaggi
    385

    Sistema rallentato.

    Salve.
    Ho formattato partizionato l'HD, in quanto ho messo su C XO pro e su D Linux OpenSUSE.

    Bene, ora l'avvio con Windows è lento, nel senso che si avvia tutto ma poi, ad un certo punto, avviene un blocco che dura qualche minuto. Pare che la cosa accada quando mi collego ad Internet, come se si avviasse qualcosa che blocca tutto (dev'esere potente per bloccare un Intel dual core 3.2 GHz!).
    Ho provato a togliere qualcosa che parte in automatico, come l'update di AVG, ma niente.
    In pratica durante il blocco non si avvia neanche task manager o il blocco note, poi dopo un po' si sblocca tutto e parte anche ciò che avevo tentato di avviare.
    Se invece riavvio in quanto è tutto bloccato, al secondo avvio funziona già meglio.

    Tra le altre cose che sono riuscito a notare con il task manager (appena riesco ad aprirlo) c'è un msiexec, che ha parecchie risorse in uso anche se ovviamente calante quando si sblocca il PC e riesco a vedere.

    Aggiungo che, rispetto a prima di formattare, credo di aver installato in più solo Visual Studio 2005 e qualcos'altro, cioè non è cambiato tantissimo (aggiungo che prima della formattazione, quando mi colòegavo ad Internet, si creava un piccolo blocco ma durava pochissimo).

    In ogni caso ho eseguito HijackThis al termine di un blocco: ecco il log... qualcuno che ci capisce può darmi qualche dritta?

    Logfile of HijackThis v1.99.1
    Scan saved at 12.10.39, on 01/08/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16473)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programmi\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\WINDOWS\system32\inetsrv\inetinfo.exe
    C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\tcpsvcs.exe
    C:\WINDOWS\System32\snmp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\ALCWZRD.EXE
    C:\Programmi\digicom\Michelangelo USB ADSL\CnxDslTb.exe
    C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\Programmi\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
    C:\Programmi\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
    C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
    C:\Programmi\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Programmi\File comuni\InstallShield\UpdateService\issch.exe
    C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programmi\Messenger\msmsgs.exe
    C:\Documents and Settings\Amministratore\Desktop\HijackThis.exe
    C:\WINDOWS\system32\wuauclt.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programmi\Canon\Easy-WebPrint\Toolband.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [Collegamento alla pagina delle proprietà di High Definition Audio] HDAudPropShortcut.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [PRONoMgrWired] C:\Programmi\Intel\PROSetWired\NCS\PROSet\PRONoMgr .exe
    O4 - HKLM\..\Run: [CnxDslTaskBar] C:\Programmi\digicom\Michelangelo USB ADSL\CnxDslTb.exe
    O4 - HKLM\..\Run: [ATIPTA] C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Programmi\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
    O4 - HKLM\..\Run: [OpwareSE2] "C:\Programmi\ScanSoft\OmniPageSE2.0\OpwareSE2.exe "
    O4 - HKLM\..\Run: [OPSE reminder] "C:\Programmi\ScanSoft\OmniPageSE2.0\EregIta\Ereg. exe" -r "C:\Programmi\ScanSoft\OmniPageSE2.0\EregIta\ereg. ini"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Programmi\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Programmi\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKLM\..\Run: [CorelDRAW Graphics Suite 11b] C:\Programmi\Corel\Corel Graphics 12\Languages\IT\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=081107 serial=DR12CEM-7485795-GYT lang=IT
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FILECO~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Programmi\File comuni\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe "
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
    O8 - Extra context menu item: Aggiungi all'elenco di stampa Easy-WebPrint - res://C:\Programmi\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
    O8 - Extra context menu item: Anteprima Easy-WebPrint - res://C:\Programmi\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
    O8 - Extra context menu item: Converti destinazione link in Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Converti destinazione link in file PDF esistente - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Converti i link selezionati in Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Converti i link selezionati in file PDF esistente - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Converti in Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Converti nel file PDF esistente - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Converti selezione in Adobe PDF - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Converti selezione in file PDF esistente - res://C:\Programmi\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Stampa ad alta velocità Easy-WebPrint - res://C:\Programmi\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
    O8 - Extra context menu item: Stampa Easy-WebPrint - res://C:\Programmi\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
    O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Programmi\File comuni\Microsoft Shared\Help\hxds.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Programmi\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
    O23 - Service: SQL Server (SQLEXPRESS) (MSSQL$SQLEXPRESS) - Unknown owner - C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS (file missing)
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Programmi\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

  2. #2
    Utente bannato
    Registrato dal
    Jun 2007
    Messaggi
    3,899
    per me il log è pulito... ma ti consiglio lo stesso di fare una scansione online con kaspersky, perchè un file infetto c'è, ma poi si ricrea da solo, quindi bisogna trovare altri files...

    ps: questa discussione andava fatta in sicurezza.... ci penseranno i moderatori...

  3. #3
    Utente di HTML.it
    Registrato dal
    Jan 2005
    Messaggi
    385

    Aggiornamento.

    Ho avviato il PC e sono riuscito ad avviare subito il task manager, per vedere che succede.

    Dunque: le CPU risultano usate al minimo nel grafico, ma Ciclo idle del sistema sta al massimo... 97-98-99, e se avvio qualcosa non parte.
    Poi a un certo punto Ciclo idle del sistema scende sui 60, e le cose che avevo avviato prima partono.

    Ricordo anche che l'HD è appena formattato (se può servire).

  4. #4
    Utente bannato
    Registrato dal
    Jun 2007
    Messaggi
    3,899
    fai uno scan online con kapsersky...

  5. #5
    Utente di HTML.it
    Registrato dal
    Jan 2005
    Messaggi
    385
    FATTO! Ha trovato qualcosa, ma non ci capisco molto... che devo fare?

    KASPERSKY ONLINE SCANNER REPORT
    Thursday, August 02, 2007 12:35:36 PM
    Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
    Kaspersky Online Scanner version: 5.0.93.0
    Kaspersky Anti-Virus database last update: 2/08/2007
    Kaspersky Anti-Virus database records: 370729


    Scan Settings
    Scan using the following antivirus database extended
    Scan Archives true
    Scan Mail Bases true

    Scan Target My Computer
    A:\
    C:\
    E:\
    F:\
    G:\

    Scan Statistics
    Total number of scanned objects 117579
    Number of viruses found 1
    Number of infected objects 16
    Number of suspicious objects 0
    Duration of the scan process 03:19:40

    Infected Object Name Virus Name Last Action
    C:\Documents and Settings\All Users\Dati applicazioni\avg7\Log\emc.log Object is locked skipped

    C:\Documents and Settings\All Users\Dati applicazioni\Grisoft\Avg7Data\avg7log.log Object is locked skipped

    C:\Documents and Settings\All Users\Dati applicazioni\Grisoft\Avg7Data\avg7log.log.lck Object is locked skipped

    C:\Documents and Settings\Amministratore\Cookies\index.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Cronologia\History.IE5\MSHist01200708022007 0803\index.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Identities\{1F015A6B-F3C4-4C07-B3B4-16BB410DE0E4}\Microsoft\Outlook Express\Folders.dbx Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Identities\{1F015A6B-F3C4-4C07-B3B4-16BB410DE0E4}\Microsoft\Outlook Express\Offline.dbx Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Identities\{1F015A6B-F3C4-4C07-B3B4-16BB410DE0E4}\Microsoft\Outlook Express\Posta in arrivo.dbx Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Feeds Cache\index.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\paolofioretto@hot mail.com\SharingMetadata\Logs\Dfsr00005.log Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\paolofioretto@hot mail.com\SharingMetadata\pending.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\paolofioretto@hot mail.com\SharingMetadata\Working\database_E4B0_3CD 6_B03C_B142\dfsr.db Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\paolofioretto@hot mail.com\SharingMetadata\Working\database_E4B0_3CD 6_B03C_B142\fsr.log Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\paolofioretto@hot mail.com\SharingMetadata\Working\database_E4B0_3CD 6_B03C_B142\fsrtmp.log Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Messenger\paolofioretto@hot mail.com\SharingMetadata\Working\database_E4B0_3CD 6_B03C_B142\tmp.edb Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Windows Live Contacts\paolofioretto@hotmail.com\real\members.st g Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Dati applicazioni\Microsoft\Windows Live Contacts\paolofioretto@hotmail.com\shadow\members. stg Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temp\~DF19A2.tmp Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temp\~DF19CC.tmp Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temp\~DF2A52.tmp Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temp\~DF2ADE.tmp Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temp\~DFF14B.tmp Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temp\~DFF175.tmp Object is locked skipped

    C:\Documents and Settings\Amministratore\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\Amministratore\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\Amministratore\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Impostazioni locali\Cronologia\History.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\LocalService\Impostazioni locali\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

    C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Documents and Settings\NetworkService\Impostazioni locali\Dati applicazioni\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    C:\Documents and Settings\NetworkService\Impostazioni locali\Temp\Perflib_Perfdata_35c.dat Object is locked skipped

    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

    C:\Inetpub\catalog.wci\00000002.ps1 Object is locked skipped

    C:\Inetpub\catalog.wci\00000002.ps2 Object is locked skipped

    C:\Inetpub\catalog.wci\cicat.fid Object is locked skipped

    C:\Inetpub\catalog.wci\cicat.hsh Object is locked skipped

    C:\Inetpub\catalog.wci\CiCL0001.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiP10000.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiP20000.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiPT0000.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiSL0001.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiSP0000.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiST0000.000 Object is locked skipped

    C:\Inetpub\catalog.wci\CiVP0000.000 Object is locked skipped

    C:\Inetpub\catalog.wci\INDEX.000 Object is locked skipped

    C:\Inetpub\catalog.wci\propstor.bk1 Object is locked skipped

    C:\Inetpub\catalog.wci\propstor.bk2 Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\master.mdf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\mastlog.ldf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\model.mdf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\modellog.ldf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdbdata.mdf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\msdblog.ldf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\tempdb.mdf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Data\templog.ldf Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\ERRORLOG Object is locked skipped

    C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\LOG\log_45.trc Object is locked skipped

    C:\System Volume Information\catalog.wci\00000002.ps1 Object is locked skipped

    C:\System Volume Information\catalog.wci\00000002.ps2 Object is locked skipped

    C:\System Volume Information\catalog.wci\0001000B.ci Object is locked skipped

    C:\System Volume Information\catalog.wci\cicat.fid Object is locked skipped

    C:\System Volume Information\catalog.wci\cicat.hsh Object is locked skipped

    C:\System Volume Information\catalog.wci\CiCL0001.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiP10000.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiP20000.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiPT0000.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiSL0001.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiSP0000.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiST0000.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\CiVP0000.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\INDEX.000 Object is locked skipped

    C:\System Volume Information\catalog.wci\propstor.bk1 Object is locked skipped

    C:\System Volume Information\catalog.wci\propstor.bk2 Object is locked skipped

    C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

  6. #6
    Utente di HTML.it
    Registrato dal
    Jan 2005
    Messaggi
    385
    Questo è il continuo (tutto non entrava!)


    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007329.exe/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007329.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007329.exe RarSFX: infected - 2 skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007333.exe/data.rar/keyfinder.exe/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007333.exe/data.rar/keyfinder.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007333.exe/data.rar/keyfinder.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007333.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP40\A0007333.exe RarSFX: infected - 4 skipped

    C:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP54\change.log Object is locked skipped

    C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

    C:\WINDOWS\Internet Logs\fwdbglog.txt Object is locked skipped

    C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped

    C:\WINDOWS\Internet Logs\IAMDB.RDB Object is locked skipped

    C:\WINDOWS\Internet Logs\PC.ldb Object is locked skipped

    C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped

    C:\WINDOWS\SchedLgU.Txt Object is locked skipped

    C:\WINDOWS\SoftwareDistribution\ReportingEvents.lo g Object is locked skipped

    C:\WINDOWS\Sti_Trace.log Object is locked skipped

    C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

    C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

    C:\WINDOWS\system32\CnxDslWz.log Object is locked skipped

    C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

    C:\WINDOWS\system32\config\default Object is locked skipped

    C:\WINDOWS\system32\config\default.LOG Object is locked skipped

    C:\WINDOWS\system32\config\Internet.evt Object is locked skipped

    C:\WINDOWS\system32\config\SAM Object is locked skipped

    C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

    C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

    C:\WINDOWS\system32\config\SECURITY Object is locked skipped

    C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

    C:\WINDOWS\system32\config\software Object is locked skipped

    C:\WINDOWS\system32\config\software.LOG Object is locked skipped

    C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

    C:\WINDOWS\system32\config\system Object is locked skipped

    C:\WINDOWS\system32\config\system.LOG Object is locked skipped

    C:\WINDOWS\system32\h323log.txt Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MA P Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MA P Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DAT A Object is locked skipped

    C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

    C:\WINDOWS\Temp\Perflib_Perfdata_410.dat Object is locked skipped

    C:\WINDOWS\Temp\ZLT04de3.TMP Object is locked skipped

    C:\WINDOWS\Temp\ZLT04de6.TMP Object is locked skipped

    C:\WINDOWS\wiadebug.log Object is locked skipped

    C:\WINDOWS\wiaservc.log Object is locked skipped

    C:\WINDOWS\WindowsUpdate.log Object is locked skipped

    E:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008352.exe/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008352.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008352.exe RarSFX: infected - 2 skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008356.exe/data.rar/keyfinder.exe/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008356.exe/data.rar/keyfinder.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008356.exe/data.rar/keyfinder.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008356.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP44\A0008356.exe RarSFX: infected - 4 skipped

    E:\System Volume Information\_restore{946C05E1-66D3-4846-B0E4-D612D9B3CA22}\RP54\change.log Object is locked skipped

    Scan process completed.

  7. #7
    Utente bannato
    Registrato dal
    Jun 2007
    Messaggi
    3,899
    dice che ne trova uno.. ma io non lo vedo.. tu??

  8. #8
    Utente bannato
    Registrato dal
    Jun 2007
    Messaggi
    3,899
    rigurdando il log ho trovato quello che ha trovato... anche se per ora sono innocui...

    si tolgono semplicemente svuotando il ripsristino di sistema e poi riattivandolo...

    se vuoi rifai una scansione online...

  9. #9
    Utente di HTML.it
    Registrato dal
    Jan 2005
    Messaggi
    385
    Ho svuotando il ripristino di sistema, riattivandolo poi, e la "sosta" è durata di meno.

    In ogni caso ho fatto dele prove ed ora sono sicuro che il problema si verifica aolo quando mi collego ad Internet, mentre se parte il Pc e non mi collego, le aplicazioni partono normalmente.

    In ogni caso, se può servire, farò un'altra scansione.

  10. #10
    Utente bannato
    Registrato dal
    Jun 2007
    Messaggi
    3,899
    ma si dai...

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved.