Scusate, penso di essermi preso piu di un spyware perchè ogni tanto mi si apre il browser su diversi siti automaticamente.
Posto qua il log di di HijackThis, anche perchè il pc va molto piu lento rispetto a prima..
Grazie anticipatamente.codice:Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20.57.57, on 03/12/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0011) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe C:\WINDOWS\Explorer.EXE C:\Programmi\Ext2Fsd\Ext2Mgr.exe C:\WINDOWS\TBPanel.exe C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe c:\Programmi\xampp\apache\bin\apache.exe C:\Programmi\Microsoft Office\Office12\GrooveMonitor.exe C:\Sun\SDK\lib\appservService.exe C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe C:\Programmi\VMware\VMware Workstation\vmware-tray.exe C:\WINDOWS\system32\cisvc.exe C:\Programmi\VMware\VMware Workstation\hqtray.exe C:\Programmi\COMODO\Firewall\cmdagent.exe C:\Programmi\File comuni\Real\Update_OB\realsched.exe C:\Programmi\Java\jre1.6.0_07\bin\jusched.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe C:\Programmi\xampp\filezillaftp\filezillaserver.exe C:\WINDOWS\system32\inetsrv\inetinfo.exe C:\Programmi\Norton Ghost\Agent\VProTray.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\PixArt\PAC207\Monitor.exe C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe C:\Programmi\COMODO\SafeSurf\cssurf.exe C:\Programmi\COMODO\Firewall\cfp.exe C:\WINDOWS\RTHDCPL.EXE C:\Sun\SDK\jdk\bin\java.exe C:\Programmi\xampp\apache\bin\apache.exe C:\Programmi\xampp\mysql\bin\mysqld-nt.exe C:\Programmi\Nero\Nero8\Nero BackItUp\NBService.exe C:\Programmi\File comuni\PCSuite\DataLayer\DataLayer.exe C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe C:\Programmi\OpenVPN\bin\openvpn-gui.exe C:\Programmi\Norton Ghost\Agent\VProSvc.exe C:\WINDOWS\system32\ctfmon.exe C:\Programmi\Windows Live\Messenger\MsnMsgr.Exe C:\WINDOWS\system32\nvsvc32.exe C:\PROGRA~1\FILECO~1\PCSuite\Services\SERVIC~1.EXE C:\WINDOWS\system32\IoctlSvc.exe C:\WINDOWS\system32\svchost.exe C:\Programmi\File comuni\Nero\Lib\NMIndexStoreSvr.exe C:\WINDOWS\system32\PnkBstrA.exe C:\WINDOWS\system32\PnkBstrB.exe C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe C:\programmi\voipcheapcom\voipcheapcom.exe C:\Programmi\Google\Google Talk\googletalk.exe C:\Programmi\SightSpeed\SightSpeed.exe C:\WINDOWS\System32\snmp.exe C:\Documents and Settings\Tony\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe c:\Programmi\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\WINDOWS\System32\PAStiSvc.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\Programmi\File comuni\VMware\VMware Virtual Image Editing\vmount2.exe C:\WINDOWS\system32\vmnat.exe C:\Programmi\Windows Live\Contacts\wlcomm.exe C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe C:\Programmi\DAEMON Tools\daemon.exe C:\Programmi\Logitech\Profiler\lwemon.exe C:\Programmi\DNA\btdna.exe C:\PROGRA~1\FILECO~1\Nokia\MPAPI\MPAPI3s.exe C:\WINDOWS\system32\mqsvc.exe C:\Programmi\VMware\VMware Workstation\vmware-authd.exe C:\WINDOWS\system32\vmnetdhcp.exe C:\WINDOWS\system32\mqtgsvc.exe C:\WINDOWS\system32\wscntfy.exe C:\Programmi\File comuni\Nero\Lib\NMIndexingService.exe C:\WINDOWS\system32\dllhost.exe C:\Programmi\Norton Ghost\Shared\Drivers\SymSnapService.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Programmi\Java\jre1.6.0_07\bin\jucheck.exe C:\Programmi\LightSurf\Common\IconMgr.exe C:\Programmi\LightSurf\Color Indicator\TICIcon.exe C:\Programmi\OpenOffice.org 2.4\program\soffice.exe C:\Programmi\OpenOffice.org 2.4\program\soffice.BIN C:\WINDOWS\system32\cidaemon.exe C:\WINDOWS\system32\cidaemon.exe C:\Programmi\Trend Micro\HijackThis\HijackThis.exe
PS. Premetto che ci possono essere piu virus, quali di queste voci sono virus e come eliminarli ?

Rispondi quotando