Il log è il seguenteOriginariamente inviato da adarkar
virus
e penso di poter dire che potresti postare il log di hijackthis, lo trovi in rilievo![]()
(cominciano sempre così)
l'ho ottenuto da regedit, è uguale?)
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"Hcontrol"="C:\\WINDOWS\\ATK0100\\Hcontrol.exe "
"SoundMan"="SOUNDMAN.EXE"
"ATIModeChange"="Ati2mdxx.exe"
"ASUS Live Update"="C:\\Programmi\\ASUS\\ASUS Live Update\\ALU.exe"
"Power_Gear"="C:\\Progra~1\\ASUS\\Power4 Gear\\BatteryLife.exe 1"
"ATIPTA"="C:\\Progra~1\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"SynTPLpr"="C:\\Programmi\\Synaptics\\SynTP\\SynTP Lpr.exe"
"SynTPEnh"="C:\\Programmi\\Synaptics\\SynTP\\SynTP Enh.exe"
"NeroCheck"="C:\\WINDOWS\\system32\\NeroCheck. exe"
"WinampAgent"="C:\\Programmi\\Winamp\\winampa. exe"
"AVGCtrl"="C:\\Programmi\\AVPersonal\\AVGNT.EX E /min"
"WSSAConfiguration"="wmmon32.exe"
"Microsoft Update Machine"="Linux.exe"
"Microsoft Update Time"="wuam.exe"
"WindowsRegKeys update"="winsysi.exe"
"WindowsRegKey update"="Windowsup.exe"
"Cryptographic Service"="C:\\WINDOWS\\System32\\gamtrg.exe"
"nmntflyw"="C:\\WINDOWS\\System32\\ewkjeuri.ex e"
"SYSTEM"="lsas.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\OptionalComponents]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\OptionalComponents\MSFS]
"Installed"="1"