| 
                 
                
                
                 
                
		 
	
		| Precedente :: Successivo   | 
	 
	
	
		| Autore | 
		Messaggio | 
	 
	
		letal32 Mortale pio
  
 
  Registrato: 27/04/07 00:10 Messaggi: 20
 
  | 
		
			
				 Inviato: 27 Apr 2007 00:21    Oggetto: Il troyan exinjs mi tormenta e il dialer smss... peggio | 
				     | 
			 
			
				
  | 
			 
			
				Ringrazio innanzitutto quelli che mi aiuteranno 
 
Ho un problema riscontrato da poco. il mio antivirus mi rileva un troyan di nome exinjs che non riesce a eliminare mi rileva inoltre il dialer smss.exe.
 
Ho utilizzato vari servizi di scan online e non sono serviti.
 
Posto qui il log Hijackthis e vi prego aiutatemi!!!!!!!!
 
 
Logfile of HijackThis v1.99.1
 
Scan saved at 23.54.02, on 26/04/2007
 
Platform: Windows XP SP2 (WinNT 5.01.2600)
 
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
 
 
Running processes:
 
C:\WINDOWS\System32\smss.exe
 
C:\WINDOWS\system32\winlogon.exe
 
C:\WINDOWS\system32\services.exe
 
C:\WINDOWS\system32\lsass.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\WINDOWS\System32\svchost.exe
 
C:\WINDOWS\system32\spoolsv.exe
 
C:\WINDOWS\Explorer.EXE
 
C:\Programmi\iolo\System Mechanic Professional 6\IoloSGCtrl.exe
 
C:\Programmi\Network Associates\Common Framework\FrameworkService.exe
 
C:\Programmi\Network Associates\VirusScan\Mcshield.exe
 
C:\Programmi\Network Associates\VirusScan\VsTskMgr.exe
 
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
 
C:\WINDOWS\system32\nvsvc32.exe
 
C:\Programmi\SiteAdvisor\6021\SAService.exe
 
C:\Programmi\Analog Devices\Core\smax4pnp.exe
 
C:\Programmi\Network Associates\VirusScan\SHSTAT.EXE
 
C:\Programmi\Network Associates\Common Framework\UpdaterUI.exe
 
C:\Programmi\File comuni\Network Associates\TalkBack\TBMon.exe
 
C:\WINDOWS\system32\RUNDLL32.EXE
 
C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\DATALA~1.EXE
 
C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
 
C:\WINDOWS\system32\rundll32.exe
 
C:\Programmi\iolo\System Mechanic Professional 6\SystemGuardAlerter.exe
 
C:\Programmi\iTunes\iTunesHelper.exe
 
C:\WINDOWS\system32\ctfmon.exe
 
C:\Programmi\Messenger\msmsgs.exe
 
C:\Programmi\iolo\System Mechanic Professional 6\SMSystemAnalyzer.exe
 
C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
 
C:\PROGRA~1\FILECO~1\PCSuite\Services\SERVIC~1.EXE
 
C:\Programmi\iPod\bin\iPodService.exe
 
C:\Programmi\iolo\System Mechanic Professional 6\SMTrayNotify.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\Programmi\Internet Explorer\IEXPLORE.EXE
 
C:\Programmi\SiteAdvisor\6021\SiteAdv.exe
 
C:\Programmi\Internet Explorer\iexplore.exe
 
C:\WINDOWS\regedit.exe
 
C:\Programmi\Spybot - Search & Destroy\SpybotSD.exe
 
C:\PROGRA~1\FREEDO~1\fdm.exe
 
C:\Programmi\WinRAR\WinRAR.exe
 
C:\DOCUME~1\user\IMPOST~1\Temp\Rar$EX00.719\HijackThis.exe
 
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
 
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe //ICWLaunch
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
 
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Programmi\SiteAdvisor\6021\SiteAdv.dll
 
O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Programmi\NewDotNet\newdotnet7_48.dll
 
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
 
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_07\bin\ssv.dll
 
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Programmi\Free Download Manager\iefdmcks.dll
 
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Programmi\SiteAdvisor\6021\SiteAdv.dll
 
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programmi\Analog Devices\Core\smax4pnp.exe
 
O4 - HKLM\..\Run: [ShStatEXE] "C:\Programmi\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
 
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Programmi\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
 
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Programmi\File comuni\Network Associates\TalkBack\TBMon.exe"
 
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
 
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
 
O4 - HKLM\..\Run: [DataLayer] C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\DATALA~1.EXE
 
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
 
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s
 
O4 - HKLM\..\Run: [SystemGuardAlerter] "C:\Programmi\iolo\System Mechanic Professional 6\SystemGuardAlerter.exe"
 
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmi\iTunes\iTunesHelper.exe"
 
O4 - HKLM\..\Run: [.nvsvc] C:\WINDOWS\system\smss.exe /w
 
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
 
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
 
O4 - HKCU\..\Run: [updateMgr] "C:\Programmi\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
 
O4 - HKCU\..\Run: [SMSystemAnalyzer] "C:\Programmi\iolo\System Mechanic Professional 6\SMSystemAnalyzer.exe"
 
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
 
O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
 
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
 
O8 - Extra context menu item: Scarica con Free Download Manager - file://C:\Programmi\Free Download Manager\dllink.htm
 
O8 - Extra context menu item: Scarica selezionati con Free Download Manager - file://C:\Programmi\Free Download Manager\dlselected.htm
 
O8 - Extra context menu item: Scarica tutto con Free Download Manager - file://C:\Programmi\Free Download Manager\dlall.htm
 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_07\bin\ssv.dll
 
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_07\bin\ssv.dll
 
O9 - Extra button: Panda ActiveScan - {653D93AF-C741-4e5e-8C1B-59BA43F93E16} - http://www.pandasoftware.com/activescan (file missing)
 
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
 
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmi\File comuni\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
 
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O11 - Options group: [INTERNATIONAL] International*
 
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
 
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab2.cab
 
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
 
O17 - HKLM\System\CCS\Services\Tcpip\..\{14C011D5-50E0-494D-A75A-A1E42CBD179A}: NameServer = 62.211.69.150 212.48.4.15
 
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Programmi\SiteAdvisor\6021\SiteAdv.dll
 
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
 
O23 - Service: iolo System Guard (IOLO_SRV) - Unknown owner - C:\Programmi\iolo\System Mechanic Professional 6\IoloSGCtrl.exe
 
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Programmi\iPod\bin\iPodService.exe
 
O23 - Service: Servizio di framework di McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Programmi\Network Associates\Common Framework\FrameworkService.exe
 
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Programmi\Network Associates\VirusScan\Mcshield.exe
 
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Programmi\Network Associates\VirusScan\VsTskMgr.exe
 
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Programmi\SiteAdvisor\6021\SAService.exe | 
			 
		  | 
	 
	
		| Top | 
		 | 
	 
	
		  | 
	 
	
		Orange Dio maturo
  
 
  Registrato: 18/02/07 13:20 Messaggi: 2224 Residenza: Roma
  | 
		
			
				 Inviato: 27 Apr 2007 09:52    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				da Installazione Applicazioni disinstalla NewDotNet.
 
 
metti HiJack in una cartella permanente in C:/ o Documenti (importante)
 
 
disattiva il ripristino
 
avvia in mod. provvisoria
 
avvia HiJack seleziona "Do a system scan only"
 
metti la spunta alle voci indicate e premi Fix checked"
 
 
O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Programmi\NewDotNet\newdotnet7_48.dll
 
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s
 
O4 - HKLM\..\Run: [.nvsvc] C:\WINDOWS\system\smss.exe /w
 
 
 
trova e cancella C:\WINDOWS\system\smss.exe
 
 
controlli ActiveX dal sito www.systemrequirementslab.com li hai messi tu? non sembra essere pericoloso, però è meglio essere sicuri.    
 
 
posta un nuovo log | 
			 
		  | 
	 
	
		| Top | 
		 | 
	 
	
		  | 
	 
	
		letal32 Mortale pio
  
 
  Registrato: 27/04/07 00:10 Messaggi: 20
 
  | 
		
			
				 Inviato: 27 Apr 2007 16:10    Oggetto: Grazie | 
				     | 
			 
			
				
  | 
			 
			
				Grazie di tutto penso di aver risolto tutto! 
 
Nello scan di hijackthis non ho trovato tutte le chiavi che mi hai detto di fixare questa non c'era
 
 
O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Programmi\NewDotNet\newdotnet7_48.dll 
 
 
non ho poi potuto cancellare il file smss.exe perchè non c'era più e neppure la cartella di NewDotNet.
 
Ti posto un nuovo log per controllare se è tutto a posto.
 
Ah!!! i malware sono scomparsi o sono rimaste tracce nel registro?
 
Il controllo activeX è per un sito internet che uso spesso quindi non è maligno
 
 
 
Logfile of HijackThis v1.99.1
 
Scan saved at 15.54.27, on 27/04/2007
 
Platform: Windows XP SP2 (WinNT 5.01.2600)
 
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
 
 
Running processes:
 
C:\WINDOWS\System32\smss.exe
 
C:\WINDOWS\system32\winlogon.exe
 
C:\WINDOWS\system32\services.exe
 
C:\WINDOWS\system32\lsass.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\WINDOWS\System32\svchost.exe
 
C:\WINDOWS\system32\spoolsv.exe
 
C:\WINDOWS\Explorer.EXE
 
C:\Programmi\iolo\System Mechanic Professional 6\IoloSGCtrl.exe
 
C:\Programmi\Network Associates\Common Framework\FrameworkService.exe
 
C:\Programmi\Network Associates\VirusScan\Mcshield.exe
 
C:\Programmi\Network Associates\VirusScan\VsTskMgr.exe
 
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
 
C:\WINDOWS\system32\nvsvc32.exe
 
C:\Programmi\SiteAdvisor\6021\SAService.exe
 
C:\Programmi\Analog Devices\Core\smax4pnp.exe
 
C:\Programmi\Network Associates\VirusScan\SHSTAT.EXE
 
C:\Programmi\Network Associates\Common Framework\UpdaterUI.exe
 
C:\Programmi\File comuni\Network Associates\TalkBack\TBMon.exe
 
C:\WINDOWS\system32\RUNDLL32.EXE
 
C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\DATALA~1.EXE
 
C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
 
C:\Programmi\iolo\System Mechanic Professional 6\SystemGuardAlerter.exe
 
C:\Programmi\iTunes\iTunesHelper.exe
 
C:\WINDOWS\system32\ctfmon.exe
 
C:\Programmi\Messenger\msmsgs.exe
 
C:\Programmi\iolo\System Mechanic Professional 6\SMSystemAnalyzer.exe
 
C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
 
C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
 
C:\PROGRA~1\FILECO~1\PCSuite\Services\SERVIC~1.EXE
 
C:\Programmi\iPod\bin\iPodService.exe
 
C:\Documents and Settings\user\Documenti\HijackThis.exe
 
C:\WINDOWS\system32\wuauclt.exe
 
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
 
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
 
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe //ICWLaunch
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
 
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Programmi\SiteAdvisor\6021\SiteAdv.dll
 
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
 
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_07\bin\ssv.dll
 
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Programmi\Free Download Manager\iefdmcks.dll
 
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Programmi\SiteAdvisor\6021\SiteAdv.dll
 
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programmi\Analog Devices\Core\smax4pnp.exe
 
O4 - HKLM\..\Run: [ShStatEXE] "C:\Programmi\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
 
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Programmi\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
 
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Programmi\File comuni\Network Associates\TalkBack\TBMon.exe"
 
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
 
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
 
O4 - HKLM\..\Run: [DataLayer] C:\PROGRA~1\FILECO~1\PCSuite\DATALA~1\DATALA~1.EXE
 
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
 
O4 - HKLM\..\Run: [SystemGuardAlerter] "C:\Programmi\iolo\System Mechanic Professional 6\SystemGuardAlerter.exe"
 
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmi\iTunes\iTunesHelper.exe"
 
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
 
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
 
O4 - HKCU\..\Run: [updateMgr] "C:\Programmi\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
 
O4 - HKCU\..\Run: [SMSystemAnalyzer] "C:\Programmi\iolo\System Mechanic Professional 6\SMSystemAnalyzer.exe"
 
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
 
O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
 
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
 
O8 - Extra context menu item: Scarica con Free Download Manager - file://C:\Programmi\Free Download Manager\dllink.htm
 
O8 - Extra context menu item: Scarica selezionati con Free Download Manager - file://C:\Programmi\Free Download Manager\dlselected.htm
 
O8 - Extra context menu item: Scarica tutto con Free Download Manager - file://C:\Programmi\Free Download Manager\dlall.htm
 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_07\bin\ssv.dll
 
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_07\bin\ssv.dll
 
O9 - Extra button: Panda ActiveScan - {653D93AF-C741-4e5e-8C1B-59BA43F93E16} - http://www.pandasoftware.com/activescan (file missing)
 
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
 
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmi\File comuni\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
 
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O11 - Options group: [INTERNATIONAL] International*
 
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
 
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab2.cab
 
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
 
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Programmi\SiteAdvisor\6021\SiteAdv.dll
 
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
 
O23 - Service: iolo System Guard (IOLO_SRV) - Unknown owner - C:\Programmi\iolo\System Mechanic Professional 6\IoloSGCtrl.exe
 
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Programmi\iPod\bin\iPodService.exe
 
O23 - Service: Servizio di framework di McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Programmi\Network Associates\Common Framework\FrameworkService.exe
 
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Programmi\Network Associates\VirusScan\Mcshield.exe
 
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Programmi\Network Associates\VirusScan\VsTskMgr.exe
 
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Programmi\SiteAdvisor\6021\SAService.exe | 
			 
		  | 
	 
	
		| Top | 
		 | 
	 
	
		  | 
	 
	
		aris73 Eroe in grazia degli dei
  
  
  Registrato: 26/04/07 22:33 Messaggi: 102
 
  | 
		
			
				 Inviato: 27 Apr 2007 16:53    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				il log é ok adesso, possibilmente le voci che non trovi sono state rimosse durante la disinstallazione, se vuoi un ulteriore "controllo" puoi scaricarti spybot lo aggiorni e lo fai scansionare da provvisoria, 1° metodo all'avvio premere più volte il tasto F8
 
2° metodo start-->esegui-->apri msconfig ok-->boot.ini-->spunta casella SAFEBOOT-->applica ( per ritornare in mod. normale stesso percorso e togliere laspunta)
 
 
ciao | 
			 
		  | 
	 
	
		| Top | 
		 | 
	 
	
		  | 
	 
	
		 | 
	 
 
  
	 
	    
	   | 
	
Non puoi inserire nuovi argomenti Non puoi rispondere a nessun argomento Non puoi modificare i tuoi messaggi Non puoi cancellare i tuoi messaggi Non puoi votare nei sondaggi
  | 
   
 
  
 
		 |