Pagina 1 di 2 1 2 ultimoultimo
Visualizzazione dei risultati da 1 a 10 su 11
  1. #1
    Utente di HTML.it
    Registrato dal
    Mar 2007
    Messaggi
    11

    analisi file HijackThis

    ciaoa tutti,

    devo avere un virus molto "impestato", addirittura mi blocca l'accesso a HijackThis e ad altre pagine web collegate.

    Posto qui sotto il log...

    Qualcuno mi aiuta?

    Grazie!

    Logfile of HijackThis v1.99.1
    Scan saved at 18.14.32, on 06/03/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\acs.exe
    c:\windows\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programmi\D-Tools\daemon.exe
    C:\Programmi\Winamp\winampa.exe
    C:\Programmi\AntiVir PersonalEdition Classic\avgnt.exe
    C:\Programmi\Java\jre1.5.0_11\bin\jusched.exe
    C:\WINDOWS\system32\Rundll32.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
    C:\Programmi\AntiVir PersonalEdition Classic\sched.exe
    C:\Programmi\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\runservice.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Programmi\Spyware Doctor\sdhelp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Programmi\AntiVir PersonalEdition Classic\avcenter.exe
    C:\Programmi\Java\jre1.5.0_11\bin\jucheck.exe
    C:\Documents and Settings\Lello\Desktop\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
    R3 - URLSearchHook: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe,"c:\wind ows\system32\nokiaword.exe",
    O1 - Hosts: 195.72.134.100 www.bwin.com
    O1 - Hosts: 193.203.227.71 www.betandwin.com
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {2CA330BE-01CA-75D8-B70C-C6EFFB852AB6} - (no file)
    O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_11\bin\ssv.dll
    O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmi\D-Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [WinampAgent] C:\Programmi\Winamp\winampa.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [avgnt] "C:\Programmi\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.5.0_11\bin\jusched.exe "
    O4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntry
    O4 - HKLM\..\Run: [VolPanel] "C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [Spyware Doctor] "C:\Programmi\Spyware Doctor\swdoctor.exe" /Q
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_11\bin\npjpi150_11.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_11\bin\npjpi150_11.dll
    O12 - Plugin for .spop: C:\Programmi\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Programmi\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: LicCtrl Service (LicCtrlService) - Unknown owner - C:\WINDOWS\runservice.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: PostgreSQL Database Server 8.1 (pgsql-8.1) - PostgreSQL Global Development Group - C:\Programmi\PostgreSQL\8.1\bin\pg_ctl.exe
    O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Programmi\Spyware Doctor\sdhelp.exe
    O23 - Service: Apache Tomcat (Tomcat5) - Unknown owner - C:\Programmi\Apache Software Foundation\Tomcat 5.5\bin\tomcat5.exe" //RS//Tomcat5 (file missing)

  2. #2
    Utente di HTML.it L'avatar di OYS
    Registrato dal
    Apr 2006
    Messaggi
    3,142
    Ciao devi fixare:

    F2 - REG:system.ini: UserInit=c:\windows\system32\userinit.exe,"c:\wind ows\system32\nokiaword.exe",

    O1 - Hosts: 195.72.134.100 www.bwin.com

    O1 - Hosts: 193.203.227.71 www.betandwin.com


    La scansione con hijack l'hai fatta in modalità provvisoria? Per caso il virus non ti fa andare su siti con scritte tipo antivirus o anti ecc.? L'antivir va normalmente?

  3. #3
    Utente di HTML.it
    Registrato dal
    Mar 2007
    Messaggi
    11
    Originariamente inviato da OYS
    Ciao devi fixare:


    La scansione con hijack l'hai fatta in modalità provvisoria? Per caso il virus non ti fa andare su siti con scritte tipo antivirus o anti ecc.? L'antivir va normalmente?
    Proprio come dici tu!

    Pensa che non mi faceva neanche aprire Hijack, ho dovuto dare + volte enter alla velocità della luce per salvare il log. Addirittura non riuscivo ad aprire la pagina del forum con questo messaggio!

    Adesso ho scaricato trend micro antivirus e la situazione è migliorata.

    Penso che il problema possa essere dato anche da questi due...

    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\system32\wuauclt.exe

    Che ne dici?

  4. #4
    Utente di HTML.it L'avatar di OYS
    Registrato dal
    Apr 2006
    Messaggi
    3,142
    Hai il famoso virus Bagle
    se riesci a scaricare The Avenger: http://swandog46.geekstogo.com/avenger.zip allora sei a posto!
    The Avenger permette di eliminare (attraverso uno script) i file e le chiavi che non sono visibili o eniminabili. Dunque per eliminare il bagle procedi così:

    Avvia il file avenger.exe (non connesso ad internet)
    Seleziona l'opzione "Input Script Manually"
    Clicca sulla lente d'ingrandimento

    Ti si apre la finestra "View/edit script"
    All'interno del box bianco, copia e incolla il seguente codice ( al posto di **** metti il nome della tua cartella che trovi in C:\Documents and setting):

    Files to delete:
    C:\Documents and Settings\****\Dati applicazioni\hidires\m_hook.sys
    C:\Documents and Settings\****\Dati applicazioni\hidires\hidr.exe
    C:\WINDOWS\system32\wintems.exe
    C:\WINDOWS\system32\hldrrr.exe

    folders to delete:
    C:\Documents and Settings\****\Dati applicazioni\hidires
    C:\WINDOWS\exefld

    registry keys to delete:
    HKLM\SYSTEM\CurrentControlSet\Services\m_hook
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_H OOK

    registry values to delete:
    HKLM\Software\Microsoft\Windows\CurrentVersion\Run | hldrrr


    Clicca sul pulsante Done
    Clicca sull'icona del semaforo verde
    Rispondi Yes
    Il pc si riavvia da solo, se no riavvialo manualmente.

    Alla fine allegami il log di Avenger che si trova in C:/avenger.

  5. #5
    Utente di HTML.it
    Registrato dal
    Mar 2007
    Messaggi
    11
    Ciao,

    ho provato avenger, ma non penso sia il virus bagle, inquanto non ho le cartelle incriminate.

    Ti posto il log


    Logfile of The Avenger version 1, by Swandog46
    Running from registry key:
    \Registry\Machine\System\CurrentControlSet\Service s\dnomobvo

    *******************

    Script file located at: \??\C:\Program Files\dfyeymct.txt
    Script file opened successfully.

    Script file read successfully

    Backups directory opened successfully at C:\Avenger

    *******************

    Beginning to process script file:



    Could not open file C:\Documents and Settings\Lello\Dati applicazioni\hidires\m_hook.sys for deletion
    Deletion of file C:\Documents and Settings\Lello\Dati applicazioni\hidires\m_hook.sys failed!

    Could not process line:
    C:\Documents and Settings\Lello\Dati applicazioni\hidires\m_hook.sys
    Status: 0xc000003a



    Could not open file C:\Documents and Settings\Lello\Dati applicazioni\hidires\hidr.exe for deletion
    Deletion of file C:\Documents and Settings\Lello\Dati applicazioni\hidires\hidr.exe failed!

    Could not process line:
    C:\Documents and Settings\Lello\Dati applicazioni\hidires\hidr.exe
    Status: 0xc000003a



    File C:\WINDOWS\system32\wintems.exe not found!
    Deletion of file C:\WINDOWS\system32\wintems.exe failed!

    Could not process line:
    C:\WINDOWS\system32\wintems.exe
    Status: 0xc0000034



    File C:\WINDOWS\system32\hldrrr.exe not found!
    Deletion of file C:\WINDOWS\system32\hldrrr.exe failed!

    Could not process line:
    C:\WINDOWS\system32\hldrrr.exe
    Status: 0xc0000034



    Folder C:\Documents and Settings\Lello\Dati applicazioni\hidires not found!
    Deletion of folder C:\Documents and Settings\Lello\Dati applicazioni\hidires failed!

    Could not process line:
    C:\Documents and Settings\Lello\Dati applicazioni\hidires
    Status: 0xc0000034



    Folder C:\WINDOWS\exefld not found!
    Deletion of folder C:\WINDOWS\exefld failed!

    Could not process line:
    C:\WINDOWS\exefld
    Status: 0xc0000034



    Registry key HKLM\SYSTEM\CurrentControlSet\Services\m_hook not found!
    Deletion of registry key HKLM\SYSTEM\CurrentControlSet\Services\m_hook failed!

    Could not process line:
    HKLM\SYSTEM\CurrentControlSet\Services\m_hook
    Status: 0xc0000034



    Registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_H OOK not found!
    Deletion of registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_H OOK failed!

    Could not process line:
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_M_H OOK
    Status: 0xc0000034



    Could not delete registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run |hldrrr
    Deletion of registry value HKLM\Software\Microsoft\Windows\CurrentVersion\Run |hldrrr failed!
    Status: 0xc0000034


    Completed script processing.

    *******************

    Finished! Terminate.

  6. #6
    Utente di HTML.it L'avatar di OYS
    Registrato dal
    Apr 2006
    Messaggi
    3,142
    No, non è lui... Posta un log di hijackthis
    guida hijackthis al punto 4

  7. #7
    Utente di HTML.it L'avatar di OYS
    Registrato dal
    Apr 2006
    Messaggi
    3,142
    Originariamente inviato da danizz
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\system32\wuauclt.exe
    Che ne dici?
    wscntfy.exe=Microsoft Windows Security Center
    wuauclt.exe=Update di windows

    Potrebbe essere legato a questi perchè il virus potrebbe bloccare la loro esecuzione...

  8. #8
    Utente di HTML.it
    Registrato dal
    Mar 2007
    Messaggi
    11
    Logfile of HijackThis v1.99.1
    Scan saved at 21.38.16, on 06/03/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\acs.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Programmi\D-Tools\daemon.exe
    C:\Programmi\Winamp\winampa.exe
    C:\Programmi\Java\jre1.5.0_11\bin\jusched.exe
    C:\WINDOWS\system32\Rundll32.exe
    C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
    C:\Programmi\DU Meter\DUMeter.exe
    C:\Programmi\Trend Micro\Internet Security 2007\pccguide.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
    C:\Programmi\Spyware Doctor\swdoctor.exe
    C:\Programmi\Trend Micro\Internet Security 2007\TMAS_OE\TMAS_OEMon.exe
    C:\WINDOWS\runservice.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
    C:\Programmi\Spyware Doctor\sdhelp.exe
    C:\WINDOWS\system32\svchost.exe
    C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
    C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\PROGRA~1\TRENDM~1\INTERN~1\PcScnSrv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programmi\Java\jre1.5.0_11\bin\jucheck.exe
    C:\Programmi\Adobe\Acrobat 5.0\Reader\AcroRd32.exe
    C:\Documents and Settings\Lello\Desktop\HijackThis.exe

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.hao8.cc
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
    R3 - URLSearchHook: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,rundll32 .exe C:\WINDOWS\system32\winsys16_070301.dll start
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {2CA330BE-01CA-75D8-B70C-C6EFFB852AB6} - (no file)
    O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_11\bin\ssv.dll
    O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Programmi\D-Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [WinampAgent] C:\Programmi\Winamp\winampa.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.5.0_11\bin\jusched.exe "
    O4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntry
    O4 - HKLM\..\Run: [VolPanel] "C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
    O4 - HKLM\..\Run: [DU Meter] C:\Programmi\DU Meter\DUMeter.exe
    O4 - HKLM\..\Run: [pccguide.exe] "C:\Programmi\Trend Micro\Internet Security 2007\pccguide.exe"
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [Spyware Doctor] "C:\Programmi\Spyware Doctor\swdoctor.exe" /Q
    O4 - HKCU\..\Run: [OE] "C:\Programmi\Trend Micro\Internet Security 2007\TMAS_OE\TMAS_OEMon.exe"
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_11\bin\npjpi150_11.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_11\bin\npjpi150_11.dll
    O12 - Plugin for .spop: C:\Programmi\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: LicCtrl Service (LicCtrlService) - Unknown owner - C:\WINDOWS\runservice.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
    O23 - Service: Protezione anti-spyware Trend Micro (PcScnSrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcScnSrv.exe
    O23 - Service: PostgreSQL Database Server 8.1 (pgsql-8.1) - PostgreSQL Global Development Group - C:\Programmi\PostgreSQL\8.1\bin\pg_ctl.exe
    O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Programmi\Spyware Doctor\sdhelp.exe
    O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
    O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
    O23 - Service: Apache Tomcat (Tomcat5) - Unknown owner - C:\Programmi\Apache Software Foundation\Tomcat 5.5\bin\tomcat5.exe" //RS//Tomcat5 (file missing)

  9. #9
    Utente di HTML.it L'avatar di OYS
    Registrato dal
    Apr 2006
    Messaggi
    3,142
    Fix checked queste:

    F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSTEM32\Userinit.exe,rundll32 .exe C:\WINDOWS\system32\winsys16_070301.dll start

    O2 - BHO: (no name) - {2CA330BE-01CA-75D8-B70C-C6EFFB852AB6} - (no file)

  10. #10
    Utente di HTML.it
    Registrato dal
    Mar 2007
    Messaggi
    11
    ok fixate!

    Cmq sembra che ora vada meglio!

    Grazie!

    Spero non si ripresentino..

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved.