Mi sta comparendo una nuova connessione di rete come letto in altre discussioni posto i log...perfavore mi potete aiutare...? Grazie mille
Gianbiondo
Logfile of HijackThis v1.99.1
Scan saved at 8.40.43, on 11/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Programmi\Eset\nod32krn.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Programmi\IPM\Adsl\DataWay\dslstat.exe
C:\WINDOWS\system32\dslagent.exe
C:\Programmi\Eset\nod32kui.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Gianluca\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - (no file)
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [DSLSTATEXE] C:\Programmi\IPM\Adsl\DataWay\dslstat.exe icon
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [nod32kui] "C:\Programmi\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [StartCCC] C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Programmi\File comuni\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Programmi\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Programmi\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Programmi\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Programmi\MP3 Player Utilities 4.00\AMVConverter\grab.html
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Programmi\MP3 Player Utilities 4.00\MediaManager\grab.html
O9 - Extra button: BitComet Search - {461CC20B-FB6E-4f16-8FE8-C29359DB100E} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{3162EFC9-9A07-40DF-BFE6-AC533386B94F}: NameServer = 85.37.17.56 85.38.28.98
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NBService - Nero AG - C:\Programmi\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Programmi\File comuni\Ahead\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Programmi\Eset\nod32krn.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Programmi\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Programmi\Spyware Doctor\swdsvc.exe
O23 - Service: ServiceLayer - Nokia. - C:\Programmi\PC Connectivity Solution\ServiceLayer.exe
Find AWF report by noahdfear ©2006
Version 1.40
bak folders found
~~~~~~~~~~~
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\PROGRA~1\ESET\BAK
26/07/2007 16.40 949.376 nod32kui.exe
1 File 949.376 byte
2 Directory 79.977.672.704 byte disponibili
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\WINDOWS\SYSTEM32\BAK
19/08/2004 14.39 15.360 ctfmon.exe
23/03/2006 05.13 77.824 hkcmd.exe
23/03/2006 05.17 118.784 igfxpers.exe
23/03/2006 05.17 94.208 igfxtray.exe
4 File 306.176 byte
2 Directory 79.977.668.608 byte disponibili
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\PROGRA~1\LAVASOFT\AD-AWA~1\BAK
27/07/2007 16.45 4.177.920 Ad-Watch2007.exe
1 File 4.177.920 byte
2 Directory 79.977.668.608 byte disponibili
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\PROGRA~1\ATITEC~1\ATI.ACE\CORE-S~1\BAK
10/11/2006 11.35 90.112 CLIStart.exe
1 File 90.112 byte
2 Directory 79.977.668.608 byte disponibili
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\PROGRA~1\FILECO~1\AHEAD\LIB\BAK
01/03/2007 14.57 153.136 NeroCheck.exe
1 File 153.136 byte
2 Directory 79.977.668.608 byte disponibili
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\PROGRA~1\FILECO~1\REAL\UPDATE~1\BAK
17/08/2007 15.38 185.632 realsched.exe
1 File 185.632 byte
2 Directory 79.977.668.608 byte disponibili
Il volume nell'unit… C non ha etichetta.
Numero di serie del volume: 3C77-FB44
Directory di C:\PROGRA~1\IPM\ADSL\DATAWAY\BAK
01/04/2003 10.32 299.008 dslstat.exe
1 File 299.008 byte
2 Directory 79.977.668.608 byte disponibili
Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~
949376 29 Dec 2007 "C:\Programmi\ESET\nod32kui.exe"
949376 26 Jul 2007 "C:\Programmi\ESET\bak\nod32kui.exe"
15360 19 Aug 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 19 Aug 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
14348 28 Dec 2007 "C:\WINDOWS\system32\hkcmd.exe"
77824 23 Mar 2006 "C:\WINDOWS\system32\bak\hkcmd.exe"
14348 28 Dec 2007 "C:\WINDOWS\system32\igfxpers.exe"
118784 23 Mar 2006 "C:\WINDOWS\system32\bak\igfxpers.exe"
14348 28 Dec 2007 "C:\WINDOWS\system32\igfxtray.exe"
94208 23 Mar 2006 "C:\WINDOWS\system32\bak\igfxtray.exe"
4177920 27 Jul 2007 "C:\Programmi\Lavasoft\Ad-Aware 2007\bak\Ad-Watch2007.exe"
14348 28 Dec 2007 "C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
90112 10 Nov 2006 "C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\bak\CLIStart.exe"
14348 28 Dec 2007 "C:\Programmi\File comuni\Ahead\Lib\NeroCheck.exe"
153136 1 Mar 2007 "C:\Programmi\File comuni\Ahead\Lib\bak\NeroCheck.exe"
14348 28 Dec 2007 "C:\Programmi\File comuni\Real\Update_OB\realsched.exe"
185632 17 Aug 2007 "C:\Programmi\File comuni\Real\Update_OB\bak\realsched.exe"
14348 28 Dec 2007 "C:\Programmi\IPM\Adsl\DataWay\dslstat.exe"
299008 1 Apr 2003 "C:\Programmi\IPM\Adsl\DataWay\bak\dslstat.exe "
299008 1 Apr 2003 "C:\Programmi\Telecom Italia\AdslWizzy\Driver\DataWayUSB\ProgramFiles\ds lstat.exe"
end of report

Rispondi quotando

