Visualizzazione dei risultati da 1 a 3 su 3

Discussione: wmalog sapete cos'è

  1. #1
    Utente di HTML.it L'avatar di duffy
    Registrato dal
    Nov 2000
    Messaggi
    94

    wmalog sapete cos'è

    all'avvio del pc ho trovato nella cartella C:\TEMP un file WMAlog.txt con questo contenuto:
    Initializing DRM
    reader->Open
    OnStatus(WMT_OPENED) 0
    SetEvent(OpenEvent)
    We're here
    OnStatus(WMT_STARTED)

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    OnStatus(WMT_EOF)

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    Throw data out

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    Throw data out

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    Throw data out

    End of the reading transaction

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    OnStatus(WMT_STARTED)

    Start reading transaction

    End of the reading transaction

    OnStatus(WMT_STOPPED)

    qualcuno di cosa si tratta

  2. #2
    Utente di HTML.it L'avatar di duffy
    Registrato dal
    Nov 2000
    Messaggi
    94
    ho rimosso la settimana scorsa linkoptimizer
    o rifatto ora la scansione con RKR nn trova nulla
    Virit nemmeno

    (forse l'ho fatto con un po troppi programmi avviati )
    Logfile of HijackThis v1.99.1
    Scan saved at 22.59.21, on 25/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe
    C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
    C:\WINDOWS\system32\crypserv.exe
    C:\PROGRA~1\Iomega\System32\AppServices.exe
    C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Programmi\Photodex\ProShowGold\ScsiAccess.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\Tablet.exe
    C:\VEXPLITE\viritsvc.exe
    C:\WINDOWS\system32\WFXSVC.EXE
    C:\Programmi\Iomega\AutoDisk\ADService.exe
    C:\Programmi\Symantec\WinFax\WFXMOD32.EXE
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 9.exe
    C:\Programmi\HP\hpcoretech\hpcmpmgr.exe
    C:\Programmi\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
    C:\WINDOWS\system32\hphmon05.exe
    C:\WINDOWS\system32\wfxsnt40.exe
    C:\Programmi\Iomega\AutoDisk\ADUserMon.exe
    C:\Programmi\Iomega\DriveIcons\ImgIcon.exe
    C:\Programmi\Nortek Mouse Application\MouseDrv.exe
    C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Programmi\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    C:\WINDOWS\twain_32\Flatbed\Usb\Detector.exe
    C:\WINDOWS\system32\WTablet\TabUserW.exe
    C:\Programmi\AutoPostit\Postit.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Programmi\html2pop3228\html2pop3.exe
    C:\Programmi\AutoPostit\cntr.exe
    C:\Programmi\Adobe\Acrobat 5.0\Acrobat\Acrobat.exe
    C:\Programmi\Internet Explorer\IEXPLORE.EXE
    C:\Programmi\Internet Explorer\IEXPLORE.EXE
    C:\WINDOWS\system32\msiexec.exe
    C:\Programmi\MSN Messenger\msnmsgr.exe
    C:\Documents and Settings\Administrator\Desktop\hijackthis\HijackTh is.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 9.exe
    O4 - HKLM\..\Run: [HPHUPD05] C:\Programmi\Hewlett-Packard\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Programmi\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [HP Software Update] "C:\Programmi\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
    O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe
    O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
    O4 - HKLM\..\Run: [ADUserMon] C:\Programmi\Iomega\AutoDisk\ADUserMon.exe
    O4 - HKLM\..\Run: [Iomega Drive Icons] C:\Programmi\Iomega\DriveIcons\ImgIcon.exe
    O4 - HKLM\..\Run: [Deskup] C:\Programmi\Iomega\DriveIcons\deskup.exe /IMGSTART
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [CreativeMouse ] C:\Programmi\Nortek Mouse Application\MouseDrv.exe
    O4 - HKLM\..\Run: [ATIPTA] C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [VIRIT LITE MONITOR] C:\VEXPLITE\MONLITE.EXE
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - Startup: Adobe Gamma.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Startup: AutoPostit.lnk = C:\Programmi\AutoPostit\Postit.exe
    O4 - Startup: Collegamento a html2pop3.exe.lnk = C:\Programmi\html2pop3228\html2pop3.exe
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Programmi\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
    O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Detector.lnk = C:\WINDOWS\twain_32\Flatbed\Usb\Detector.exe
    O4 - Global Startup: TabUserW.exe.lnk = C:\WINDOWS\system32\WTablet\TabUserW.exe
    O8 - Extra context menu item: &Cerca con Google - res://C:\Programmi\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Traduci parola in italiano - res://C:\Programmi\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Link a ritroso - res://C:\Programmi\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Pagine simili - res://C:\Programmi\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Versione cache della pagina - res://C:\Programmi\Google\GoogleToolbar1.dll/cmcache.html
    O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab
    O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Trend Micro ActiveX Scan Agent 6.5) - http://eu-housecall.trendmicro-europ...vex/hcImpl.cab
    O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/A...oadcontrol.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{EA0C328F-D713-4E5D-AB54-37C7B6FA844D}: NameServer = 62.211.69.150 212.48.4.15
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe
    O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
    O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
    O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
    O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: ScsiAccess - Unknown owner - C:\Programmi\Photodex\ProShowGold\ScsiAccess.exe
    O23 - Service: TabletService - Wacom Technology, Corp. - C:\WINDOWS\system32\Tablet.exe
    O23 - Service: Virit eXplorer Lite (viritsvclite) - TG Soft Sas www.tgsoft.it - C:\VEXPLITE\viritsvc.exe
    O23 - Service: WinFax PRO (wfxsvc) - Symantec Corporation - C:\WINDOWS\system32\WFXSVC.EXE
    O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Programmi\Iomega\AutoDisk\ADService.exe

  3. #3
    Utente di HTML.it L'avatar di duffy
    Registrato dal
    Nov 2000
    Messaggi
    94
    forse ho trovato su google cercando WMT_STOPPED
    uno dei comndi scritti nel file mi manda a una pagina di microsoft
    in cu parlano di window media

    nn capisco come sia venuto fuori ma meglio cosi
    se non è un virus

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2024 vBulletin Solutions, Inc. All rights reserved.