Pagina 1 di 3 1 2 3 ultimoultimo
Visualizzazione dei risultati da 1 a 10 su 28
  1. #1

    Incubo e1xplorer e W1inMoviePlugIn

    spero che qualcuno mi possa aiutare, ho 2 virus (o qualcosa del genere) sul computer e non riesco a toglierli. Si chiamano e1xplorer e W1inMoviePlugIn. Ho provato scaricando diversi antivirus ma niente da fare. Ora ho trovato il programma hijackthis e ho fatto una scansione, non essendo in grado di capire i caratteri cirillici contenuti spero che voi mi sveliate la chiave di lettura o, ancora meglio, una soluzione a questo incubo. Vi ringrazio in anticipo per evitarmi i capelli blu


    la scansione hijackthis è troppo lunga e non riesco a postarla, come fare?????

  2. #2
    ne metto metà qua e metà dopo....

    Logfile of HijackThis v1.99.1
    Scan saved at 9.46.16, on 18/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
    C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
    C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
    C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
    C:\Programmi\Norton Internet Security\ISSVC.exe
    C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
    C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programmi\ewido anti-spyware 4.0\guard.exe
    C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
    C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Programmi\Symantec\LiveUpdate\ALUSchedulerSvc.e xe
    C:\Programmi\File comuni\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    C:\Programmi\File comuni\Softwin\BitDefender Communicator\xcommsvr.exe
    C:\Programmi\File comuni\Symantec Shared\Security Center\SymWSC.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\Programmi\Apoint\Apoint.exe
    C:\WINDOWS\system32\ICO.EXE
    C:\Programmi\Sony\HotKey Utility\HKserv.exe
    C:\Programmi\sony\vaio update 2\VAIOUpdt.exe
    C:\Programmi\sony\vaio power management\SPMgr.exe
    C:\Programmi\Utimaco\SafeGuard PrivateDisk\pdservice.exe
    C:\Programmi\Browser MOUSE\mouse32a.exe
    C:\Programmi\File comuni\Symantec Shared\ccApp.exe
    C:\Programmi\Elaborate Bytes\CloneCD\CloneCDTray.exe
    C:\Programmi\Logitech\io2Software\Pen.TrayIcon.exe
    C:\Programmi\File comuni\PCSuite\DataLayer\DataLayer.exe
    C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe
    C:\Programmi\iTunes\iTunesHelper.exe
    C:\Programmi\QuickTime\qttask.exe
    C:\Programmi\Softwin\BitDefender8\bdnagent.exe
    C:\Programmi\Messenger\msmsgs.exe
    C:\Programmi\Apoint\Apntex.exe
    C:\PROGRA~1\FILECO~1\PCSuite\Services\SERVIC~1.EXE
    C:\Programmi\Microsoft ActiveSync\WCESCOMM.EXE
    C:\Programmi\iPod\bin\iPodService.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\System32\igfxext.exe
    C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe
    C:\Programmi\Skype\Phone\Skype.exe
    C:\Programmi\Sony\HotKey Utility\HKWnd.exe
    C:\PROGRA~1\FILECO~1\Nokia\MPAPI\MPAPI3s.exe
    C:\Programmi\eMule\emule.exe
    C:\Programmi\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    C:\Programmi\sony\sonicstage mastering studio\audio filter\SSMSFilter.exe
    C:\Programmi\3M\PSNLite\PsnLite.exe
    C:\PROGRA~1\3M\PSNLite\PSNGive.exe
    c:\programmi\logitech\io2software\Pen.LplsHost.exe
    C:\Programmi\File comuni\Anoto\3.0\DockingEngine.exe
    C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
    c:\programmi\logitech\io2software\pen.ink.download .exe
    c:\programmi\logitech\io2software\loli.filesystem. accessmanager.server.exe
    C:\Documents and Settings\mau studio\Desktop\CWShredder.exe
    C:\Programmi\Internet Explorer\iexplore.exe
    C:\Programmi\File comuni\Symantec Shared\AdBlocking\NSMdtr.exe
    C:\Programmi\File comuni\Softwin\BitDefender Scan Server\bdss.exe
    c:\programmi\softwin\bitdefender8\bdmcon.exe
    C:\Programmi\Internet Explorer\iexplore.exe
    C:\Programmi\Internet Explorer\iexplore.exe
    C:\Programmi\Internet Explorer\iexplore.exe
    C:\Programmi\Internet Explorer\iexplore.exe
    C:\Programmi\PowerArchiver\POWERARC.EXE
    C:\DOCUME~1\MAUSTU~1\IMPOST~1\Temp\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://it.rd.yahoo.com/customize/ie/...arch.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://it.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://it.rd.yahoo.com/customize/ie/...arch.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://it.rd.yahoo.com/customize/ie/...arch.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://it.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://it.rd.yahoo.com/customize/ie/...arch.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar2.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar2.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn0\yt.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [Apoint] C:\Programmi\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
    O4 - HKLM\..\Run: [HKSERV.EXE] C:\Programmi\Sony\HotKey Utility\HKserv.exe
    O4 - HKLM\..\Run: [VAIO Update 2] "C:\Programmi\sony\vaio update 2\VAIOUpdt.exe" /Stationary
    O4 - HKLM\..\Run: [SonyPowerCfg] C:\Programmi\sony\vaio power management\SPMgr.exe
    O4 - HKLM\..\Run: [PDService.exe] C:\Programmi\Utimaco\SafeGuard PrivateDisk\pdservice.exe
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] C:\Programmi\Browser MOUSE\mouse32a.exe
    O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Programmi\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Programmi\Elaborate Bytes\CloneCD\CloneCDTray.exe"
    O4 - HKLM\..\Run: [Pen.TrayIcon] C:\Programmi\Logitech\io2Software\Pen.TrayIcon.exe
    O4 - HKLM\..\Run: [DataLayer] C:\Programmi\File comuni\PCSuite\DataLayer\DataLayer.exe
    O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
    O4 - HKLM\..\Run: [aouei] C:\Documents and Settings\mau studio\Dati applicazioni\ratorefaci\sysrtmvs.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmi\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [a-squared] "C:\Programmi\a-squared Anti-Malware\a2guard.exe"
    O4 - HKLM\..\Run: [BDMCon] "C:\Programmi\Softwin\BitDefender8\bdmcon.exe"
    O4 - HKLM\..\Run: [BDNewsAgent] "C:\Programmi\Softwin\BitDefender8\bdnagent.ex e"
    O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programmi\Microsoft ActiveSync\WCESCOMM.EXE"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [LDM] \Program\
    O4 - HKCU\..\Run: [PcSync] C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
    O4 - HKCU\..\Run: [Skype] "C:\Programmi\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmi\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
    O4 - HKCU\..\Run: [eMuleAutoStart] C:\Programmi\eMule\emule.exe -AutoStart
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Programmi\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = ?
    O4 - Global Startup: Audio Filter.lnk = C:\Programmi\sony\sonicstage mastering studio\audio filter\SSMSFilter.exe
    O4 - Global Startup: Avvio veloce di Adobe Reader.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programmi\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Programmi\3M\PSNLite\PsnLite.exe
    O8 - Extra context menu item: &Cerca con Google - res://C:\Programmi\Google\GoogleToolbar2.dll/cmsearch.html
    O8 - Extra context menu item: &Traduci parola in italiano - res://C:\Programmi\Google\GoogleToolbar2.dll/cmwordtrans.html
    O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Link a ritroso - res://C:\Programmi\Google\GoogleToolbar2.dll/cmbacklinks.html
    O8 - Extra context menu item: Pagine simili - res://C:\Programmi\Google\GoogleToolbar2.dll/cmsimilar.html
    O8 - Extra context menu item: Versione cache della pagina - res://C:\Programmi\Google\GoogleToolbar2.dll/cmcache.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Programmi\Microsoft ActiveSync\inetrepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programmi\Microsoft ActiveSync\inetrepl.dll
    O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Programmi\Microsoft ActiveSync\inetrepl.dll
    O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesit.dll
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesit.dll
    O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O14 - IERESET.INF: START_PAGE_URL=http://www.club-vaio.sony-europe.com/
    O15 - Trusted Zone: www.adslconnection.name
    O15 - Trusted Zone: www.hastalavista.it
    O15 - Trusted Zone: www.pornoaccesso.com
    O15 - Trusted Zone: www.softlab.name
    O15 - Trusted Zone: *.sony-europe.com
    O15 - Trusted Zone: *.sonystyle-europe.com
    O15 - Trusted Zone: *.vaio-link.com
    O15 - Trusted Zone: www.xxx-content.name
    O15 - Trusted Zone: www.yeak.net

  3. #3
    ecco un'altra parte


    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programmi\Yahoo!\Common\yinsthelper.dll
    O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.live.com/resource...scbase7617.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
    O16 - DPF: {D6376DD2-C2BD-49B2-A1B1-138F869633F3} (ASPRO Installer Class) - http://acs.pandasoftware.com/actives.../ASPROinst.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{B070986E-D792-4F11-A3B7-554B9564F5BE}: NameServer = 213.140.2.12,213.140.2.21
    O18 - Protocol: bw+0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw+0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw-0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw00s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw10s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw20s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw30s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw40s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw50s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw60s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw70s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw80s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bw90s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwa0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwb0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwc0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwd0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwe0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwf0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Protocol: bwg0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwg0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwh0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwi0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwj0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwk0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwl0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwm0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwn0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwo0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwp0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwq0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwr0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bws0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwt0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwu0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwv0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bww0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwx0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwy0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: bwz0s - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: offline-8876480 - {33D9B7BD-8F6C-4DB1-A5F8-0F4B163492D6} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

  4. #4
    l'ultimo


    O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Programmi\File comuni\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing)
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
    O23 - Service: EvtEng - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Programmi\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Programmi\iPod\bin\iPodService.exe
    O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Programmi\Norton Internet Security\ISSVC.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Programmi\File comuni\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: MSSQLServerADHelper - Unknown owner - C:\Programmi\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe (file missing)
    O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Programmi\File comuni\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Digital Pen rendezvous server (PenRendezvous) - Logitech - C:\Programmi\File comuni\Logitech\Pen\Phal\Service\LPhal.exe
    O23 - Service: Digital Pen Socket to USB protocol (PenSup) - Logitech - C:\Programmi\File comuni\Logitech\Pen\Phal\Service\LPhal.exe
    O23 - Service: RegSrvc - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FILECO~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Programmi\File comuni\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Programmi\File comuni\Sony Shared\AVLib\SSScsiSV.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\Security Center\SymWSC.exe
    O23 - Service: Utilità di pianificazione di LiveUpdate automatico - Symantec Corporation - C:\Programmi\Symantec\LiveUpdate\ALUSchedulerSvc.e xe
    O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Programmi\File comuni\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
    O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Programmi\File comuni\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    O23 - Service: VAIO Entertainment Task Scheduler - Sony Corporation - C:\Programmi\sony\vaio entertainment\VzTaskScheduler.exe
    O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Programmi\File comuni\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHar dwareResourceManager.exe
    O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Programmi\File comuni\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
    O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Programmi\sony\VAIO Media Integrated Server\VMISrv.exe
    O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Programmi\sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
    O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Programmi\sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Programmi\sony\VAIO Media Integrated Server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
    O23 - Service: VAIO Cooporated Initialisation (VCI) - Sony Corporation - C:\Programmi\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe
    O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Programmi\File comuni\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)

  5. #5
    Se ci fosse un'anima pia disponibile ad aiutarmi sarei molto grato... riposto con la speranza che qualcuno, impietosito, decida di aiutarmi. Grazie

  6. #6
    Ciao.

    Prova a fare visita al mio blog... ho pubblicato le istruzioni per rimuovere il primo dei due spyware che ti affligge.

    XXXXX

    Spero di esserti di aiuto. Ciao.
    L'abitudine è l'abitudine, e non si può sbatterla fuori dalla finestra: bisogna, a forza di persuasione, farle scendere le scale un gradino alla volta.

    http://www.lucamellano.com

  7. #7
    Utente di HTML.it L'avatar di mugen
    Registrato dal
    Sep 2004
    Messaggi
    90
    Fai una ricerca in tutte le cartello inserendo come parametro il nome dell'collegamento :
    1)e1xplorer
    2)W1inMoviePlugIn

    elimina tutti i file che la ricerca trova.
    Poi da start-->esegui-->regedit+invio-->modifica-->trova
    cerchi ancora i 2 file incriminati e ne cancelli ogni chiave che trovi.

    Non si dovrebbero piu presentare

    Se hai dei dubbi sono a disposizione.

  8. #8
    Originariamente inviato da luk4s75
    Ciao.

    Prova a fare visita al mio blog... ho pubblicato le istruzioni per rimuovere il primo dei due spyware che ti affligge.

    WebPros

    Spero di esserti di aiuto. Ciao.
    non per fare il rigido, anche perchè non sono io a doverlo fare, ma questo potrebbe essere ritenuto spam

    dovresti copiare nel forum le istruzioni
    Begun the Clone War has

    Sì sì, mi hanno fatto redattore --- SuspectFile

  9. #9
    Originariamente inviato da mugen
    Fai una ricerca in tutte le cartello inserendo come parametro il nome dell'collegamento :
    1)e1xplorer
    2)W1inMoviePlugIn

    elimina tutti i file che la ricerca trova.
    Poi da start-->esegui-->regedit+invio-->modifica-->trova
    cerchi ancora i 2 file incriminati e ne cancelli ogni chiave che trovi.

    Non si dovrebbero piu presentare

    Se hai dei dubbi sono a disposizione.
    Eh no, infatti... hai perfettamente ragione!

    Eccovi le istruzioni prese pari pari dal mio blog... chiedo venia per l'errore:

    Ultimamente mi è capitato un pò troppo spesso di imbattermi in PC infetti con questo fastidiosissimo spyware. Ho deciso quindi di fare una cosa “buona e giusta” e pubblicare le istruzioni per debellare definitivamente questo problema.
    Ultimamente mi è capitato un pò troppo spesso di imbattermi in PC infetti con questo fastidiosissimo spyware. Ho deciso quindi di fare una cosa “buona e giusta” e pubblicare le istruzioni per debellare definitivamente questo problema.

    1. Iniziamo scaricando il software Process Explorer.
    2. Una volta decompresso ed installato, avviatelo.
    3. Nella parte alta del programma, clicchiamo due volte su winlogon.exe e visualizziamo la finestra delle proprietà.
    4. Clicchiamo sul tab THREADS in alto in questa finestra.
    5. Qui individuiamo tutte le voci con scritto winbfi32.dll e clicchiamo sul pulsante kill.
    6. Una volta cancellate tutte le voci suddette clicchiamo su ok.
    7. Ora clicchiamo due volte su explorer.exe e anche in questo caso selezioniamo e killiamo tutte le voci con winbfi32.dll.
    8. Ora scarichiamo il software Ccleaner.
    9. Prima di eseguirlo, andiamo in Opzioni -> Avanzate e togliamo la spunta da elimina file solo se più vecchi di 48 ore).
    10. Al termine della pulizia con Ccleaner riavviamo il tutto.

    A questo punto il problema dovrebbe essere risolto. E’ consigliabile eventualmente anche una “passata” con hijackthis, fixando le seguenti voci:

    O16 - DPF: {7030CC6C-1A88-4591-BB5A-651B9F7F0C30} (WMVHDRatingCtrl Class) - file://F:\components\wmvhdrating.ocx
    O16 - DPF: {4F63D44B-6274-4D60-8AB1-CAA7116B8AF3} (A9Helper.A9) - file://F:\components\A9.ocx
    L'abitudine è l'abitudine, e non si può sbatterla fuori dalla finestra: bisogna, a forza di persuasione, farle scendere le scale un gradino alla volta.

    http://www.lucamellano.com

  10. #10
    Utente di HTML.it
    Registrato dal
    Feb 2006
    Messaggi
    162
    salve ragazzi ho anche io questo problema con il mio desktop;
    navigando su internet ho beccato un trojan, ma nn ricordo il nome, nod32 era riuscito a mettere in quarantena il virus per poi cancellarlo ma notando bene le operazioni del nod ho notato che due trojan nn erano stati messi in quarantena, bene fatto scansione con il nod nulla, fatta con trojan remover l'ho trova e l'ho cancella, fatta con ewido trovato altro virus,... credevo che era tutto a posto ma un bel giorno mi connetto e esce una bella schermata verde con la scritta xxxadult, in pratica la possibilità di accedere ad un sito porno a 3€ al minuto credo! tuttora nn va via devo riavviare il pc per farla scomparire, inoltre si posiziona nei preferiti di IE la pagina in questione e1xplorer, mi cambia nell'address bar indirizzo internet della pagina che ho impostato all'accesso ad internet con il sito infetto indi devo stare attento a nn aprire frettolosamente IE causa nuova infezione direttamente dal sito; compare la maledetta pagina anche nella barra di start, nella cartella documenti e nel menu di accesso dei programmi; allora cancello tutte ste belle pagine a mano poi ricambio l'indirizzo internet, ripulisco i registri con reg supreme, pulisco tutto quello che c'è da pulire con ccleaner e disk cleaner; niente periodicamente esce sta cavolo di schermata...ho notato con il task manager che la schermata si apre attraverso il file eseguibile best_0118.exe terminando questo processo si chiude la schermata invece di riavviare il tutto; sapete dirmi per favore se la procedura su detta va bene per questo maledetto file exe?
    grazie mille aspetto vostre notizie
    Lothlorien

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2024 vBulletin Solutions, Inc. All rights reserved.