Condividi:        

Aiutooooooooo

Come rimuovere virus e spyware? Le carte di credito sono davvero sicure in rete? È possibile navigare anonimi? Con quali programmi tutelare la propria privacy? Come proteggere i file importanti? Se volete una risposta a queste e altre domande questo è il luogo giusto!

Moderatori: m.paolo, kadosh, Luke57

Aiutooooooooo

Postdi Palestinese » 30/08/06 18:18

Vi prego aiutatemi. Dopo una faticosa procedura manuale (diversi sfare scaricati e alla fine ho dovuto cancellare il rootkit da dos con l’Avenger!) trovata in rete Linkoptimizer non compare più ma… dopo un po’ che mi connetto si riblocca tutto…Non si aprono nuove finestre, e si blocca ciò che ho aperto, Ctrl+Alt+Canc non viene nemmeno preso in considerazione dal PC che… devo resettare di forza e, come ora, devo ripristinare la configurazione precedente per scrivervi dalla modalità provvisoria!!!!!!! Ciò capita perfino se non mi connetto. Immaginate la difficoltà di fare una scansione on line… Ogni volta che finisce devo resettare il PC!!!
Ho rifatto la Scansione di Bitdefender e… Tutto OK.

HJT:

Logfile of HijackThis v1.99.1
Scan saved at 13.02.57, on 30/08/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\system32\slserv.exe
C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\VEXPLITE\viritsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
C:\Programmi\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe
C:\Programmi\MessengerPlus! 3\MsgPlus.exe
C:\WINDOWS\System32\rundll32.exe
C:\Programmi\Roxio\Easy CD Creator 6\AudioCentral\Playlist.exe
C:\Programmi\Alice ti aiuta\bin\mpbtn.exe
C:\PROGRA~1\SONYER~1\MOBILE~1\DbgOut.exe
C:\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://edit.europe.yahoo.com/config/mail?.intl=it
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Programmi\File comuni\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Programmi\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxioAudioCentral] "C:\Programmi\Roxio\Easy CD Creator 6\AudioCentral\RxMon.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Programmi\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CnxTrApp] rundll32.exe "C:\Programmi\Aethra\ADSL EB1070 USB\CnxTrApp.dll",AppEntry -REG "Aethra\ADSL EB1070 USB"
O4 - HKLM\..\Run: [VIRIT LITE MONITOR] C:\VEXPLITE\MONLITE.EXE
O4 - Global Startup: Alice ti aiuta.lnk = C:\Programmi\Alice ti aiuta\bin\matcli.exe
O8 - Extra context menu item: &Google Search - res://c:\programmi\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\programmi\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\programmi\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\programmi\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\programmi\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\programmi\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: Yahoo! Hearts - http://download.games.yahoo.com/games/c ... /ht1_x.cab
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://opalestinese.spaces.msn.com//Pho ... nPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resourc ... oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 6781738572
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Programmi\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: HMY - Unknown owner - C:\DOCUME~1\Antonio\IMPOST~1\Temp\HMY.exe (file missing)
O23 - Service: JJCGOMKM - Unknown owner - C:\DOCUME~1\Antonio\IMPOST~1\Temp\JJCGOMKM.exe (file missing)
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Virit eXplorer Lite (viritsvclite) - TG Soft Sas http://www.tgsoft.it - C:\VEXPLITE\viritsvc.exe

L’ADS-Spy non dà risultati.

VirIt nemmeno.
L’Ad-Aware :
Ad-Aware SE Build 1.06r1
Logfile Created on:mercoledì 30 agosto 2006 13.25.07
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R119 15.08.2006
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):15 total references
Tracking Cookie(TAC index:3):8 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file

Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects


30-08-2006 13.25.07 - Scan started. (Full System Scan)

MRU List Object Recognized!
Location: : C:\Documents and Settings\Antonio\recent
Description : list of recently opened documents


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\adobe\acrobat reader\6.0\avgeneral\crecentfiles
Description : list of recently used files in adobe reader


MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct3d


MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct X


MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\internet explorer
Description : last download directory used in microsoft internet explorer


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\internet explorer\typedurls
Description : list of recently entered addresses in microsoft internet explorer


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\mediaplayer\medialibraryui
Description : last selected node in the microsoft windows media player media library


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\mediaplayer\preferences
Description : last playlist index loaded in microsoft windows media player


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\mediaplayer\preferences
Description : last playlist loaded in microsoft windows media player


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\search assistant\acmru
Description : list of recent search terms used with the search assistant


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
Description : list of recent programs opened


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
Description : list of recently saved files, stored according to file extension


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\windows\currentversion\explorer\recentdocs
Description : list of recent documents opened


MRU List Object Recognized!
Location: : S-1-5-21-682003330-1343024091-839522115-1005\software\microsoft\windows media\wmsdk\general
Description : windows media sdk


Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 640
ThreadCreationTime : 30-08-2006 11.18.33
BasePriority : Normal


#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 896
ThreadCreationTime : 30-08-2006 11.18.40
BasePriority : High


#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 940
ThreadCreationTime : 30-08-2006 11.18.41
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Applicazione Servizi e Controller
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : services.exe

#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 952
ThreadCreationTime : 30-08-2006 11.18.41
BasePriority : Normal
FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
ProductVersion : 5.1.2600.1106
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe

#:5 [ati2evxx.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1120
ThreadCreationTime : 30-08-2006 11.18.42
BasePriority : Normal


#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1148
ThreadCreationTime : 30-08-2006 11.18.43
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:7 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1284
ThreadCreationTime : 30-08-2006 11.18.43
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:8 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1768
ThreadCreationTime : 30-08-2006 11.18.45
BasePriority : Normal
FileVersion : 5.1.2600.0 (XPClient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe

#:9 [ati2evxx.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 228
ThreadCreationTime : 30-08-2006 11.18.51
BasePriority : Normal


#:10 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 284
ThreadCreationTime : 30-08-2006 11.18.52
BasePriority : Normal
FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
ProductVersion : 6.00.2800.1106
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Esplora risorse
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : EXPLORER.EXE

#:11 [btntservice.exe]
FilePath : C:\Programmi\IVT Corporation\BlueSoleil\
ProcessID : 528
ThreadCreationTime : 30-08-2006 11.18.52
BasePriority : High


#:12 [slserv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 632
ThreadCreationTime : 30-08-2006 11.18.55
BasePriority : Normal
FileVersion : 2.80.00(24Apr2000)
ProductVersion : 2.80.00
ProductName : Modem
FileDescription : User-Level Modem Service
InternalName : slserv
LegalCopyright : Copyright © 1999-2000
OriginalFilename : slserv.exe

#:13 [smagent.exe]
FilePath : C:\Programmi\Analog Devices\SoundMAX\
ProcessID : 360
ThreadCreationTime : 30-08-2006 11.18.56
BasePriority : Normal
FileVersion : 3, 2, 6, 0
ProductVersion : 3, 2, 6, 0
ProductName : SoundMAX service agent
CompanyName : Analog Devices, Inc.
FileDescription : SoundMAX service agent component
InternalName : SMAgent
LegalCopyright : Copyright © 2002
OriginalFilename : SMAgent.exe

#:14 [drgtodsc.exe]
FilePath : C:\Programmi\Roxio\Easy CD Creator 6\DragToDisc\
ProcessID : 860
ThreadCreationTime : 30-08-2006 11.18.58
BasePriority : Normal
FileVersion : 6.0.0.209
ProductVersion : 6.0.0.209
ProductName : Drag-to-Disc
CompanyName : Roxio
FileDescription : Drag To Disc Application
InternalName : D2D
LegalCopyright : Copyright (c) 1999-2003 Roxio, Inc.
LegalTrademarks : Copyright (c) 1999-2003 Roxio, Inc.
OriginalFilename : BurnCtrl.EXE

#:15 [rxmon.exe]
FilePath : C:\Programmi\Roxio\Easy CD Creator 6\AudioCentral\
ProcessID : 388
ThreadCreationTime : 30-08-2006 11.18.58
BasePriority : Normal


#:16 [msgplus.exe]
FilePath : C:\Programmi\MessengerPlus! 3\
ProcessID : 864
ThreadCreationTime : 30-08-2006 11.18.59
BasePriority : Normal


#:17 [rundll32.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 876
ThreadCreationTime : 30-08-2006 11.18.59
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Modulo di esecuzione DLL come applicazioni
InternalName : rundll
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : RUNDLL.EXE

#:18 [monlite.exe]
FilePath : C:\VEXPLITE\
ProcessID : 1004
ThreadCreationTime : 30-08-2006 11.18.59
BasePriority : Normal
FileVersion : 5.1
ProductVersion : 5, 1, 0, 1
ProductName : VirIT eXplorer Antivirus
CompanyName : TG Soft S.a.s.
FileDescription : Monitor dei processi VirIT Security Monitor
InternalName : MONITOR
LegalCopyright : Copyright © 1997, 2004
OriginalFilename : MONITOR.exe

#:19 [starwindservice.exe]
FilePath : C:\Programmi\Alcohol Soft\Alcohol 120\StarWind\
ProcessID : 1200
ThreadCreationTime : 30-08-2006 11.19.00
BasePriority : Normal
FileVersion : 2.6.1 Build 0x20050401
ProductVersion : 2.6.1 Build 0x20050401
ProductName : StarWind
CompanyName : Rocket Division Software
FileDescription : StarWind iSCSI Target (Alcohol Edition)
InternalName : StarWind
LegalCopyright : Copyright (c) Rocket Division Software 2003-2005. All rights reserved.
OriginalFilename : StarWind

#:20 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1240
ThreadCreationTime : 30-08-2006 11.19.02
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe

#:21 [winword.exe]
FilePath : C:\Programmi\Microsoft Office\OFFICE11\
ProcessID : 1356
ThreadCreationTime : 30-08-2006 11.19.03
BasePriority : Normal


#:22 [viritsvc.exe]
FilePath : C:\VEXPLITE\
ProcessID : 1372
ThreadCreationTime : 30-08-2006 11.19.03
BasePriority : Normal
FileVersion : 1, 1, 0, 1
ProductVersion : 1, 1, 0, 1
ProductName : TG Soft viritsvc
CompanyName : TG Soft Sas http://www.tgsoft.it
FileDescription : VirIT eXplorer Service
InternalName : viritsvc
LegalCopyright : Copyright © 2006
OriginalFilename : viritsvc.exe
Comments : VirIT eXplorer Service - http://www.tgsoft.it

#:23 [playlist.exe]
FilePath : C:\Programmi\Roxio\Easy CD Creator 6\AudioCentral\
ProcessID : 1728
ThreadCreationTime : 30-08-2006 11.19.17
BasePriority : Normal


#:24 [mpbtn.exe]
FilePath : C:\Programmi\Alice ti aiuta\bin\
ProcessID : 1096
ThreadCreationTime : 30-08-2006 11.19.18
BasePriority : Normal


#:25 [viritexp.exe]
FilePath : C:\VEXPLITE\
ProcessID : 1456
ThreadCreationTime : 30-08-2006 11.20.04
BasePriority : Normal
FileVersion : 5, 2, 0, 0
ProductVersion : 5, 2, 0, 0
ProductName : VirIT eXplorer Antivirus
CompanyName : TG Soft S.a.s.
FileDescription : VirIT eXplorer Antivirus for Windows
InternalName : Viritexp
LegalCopyright : Copyright © 1998, 2005
LegalTrademarks : TG Soft S.a.s.
OriginalFilename : viritexp.exe

#:26 [notepad.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2120
ThreadCreationTime : 30-08-2006 11.22.42
BasePriority : Normal
FileVersion : 5.1.2600.0 (xpclient.010817-1148)
ProductVersion : 5.1.2600.0
ProductName : Sistema operativo Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Blocco note
InternalName : Notepad
LegalCopyright : © Microsoft Corporation. Tutti i diritti riservati.
OriginalFilename : NOTEPAD.EXE

#:27 [hijackthis.exe]
FilePath : C:\HJT\
ProcessID : 2180
ThreadCreationTime : 30-08-2006 11.23.51
BasePriority : Normal
FileVersion : 1.99.0001
ProductVersion : 1.99.0001
ProductName : HijackThis
CompanyName : Soeperman Enterprises Ltd.
FileDescription : HijackThis
InternalName : HijackThis
LegalCopyright : Freeware
OriginalFilename : HijackThis.exe
Comments : Version history is in Help section

#:28 [ad-aware.exe]
FilePath : C:\Programmi\Lavasoft\Ad-Aware SE Personal\
ProcessID : 2248
ThreadCreationTime : 30-08-2006 11.24.48
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved

Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 15


Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 15


Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 15


Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»


Tracking Cookie Object Recognized!
Type : IECache Entry
Data : antonio@studenti.adbureau[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:3
Value : Cookie:antonio@studenti.adbureau.net/
Expires : 01-03-2007 2.00.00
LastSync : Hits:3
UseCount : 0
Hits : 3

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : antonio@atdmt[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:4
Value : Cookie:antonio@atdmt.com/
Expires : 28-08-2011 2.00.00
LastSync : Hits:4
UseCount : 0
Hits : 4

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : antonio@bluestreak[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:1
Value : Cookie:antonio@bluestreak.com/
Expires : 26-08-2016 11.37.28
LastSync : Hits:1
UseCount : 0
Hits : 1

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : antonio@mediaplex[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:2
Value : Cookie:antonio@mediaplex.com/
Expires : 22-06-2009 2.00.00
LastSync : Hits:2
UseCount : 0
Hits : 2

Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 4
Objects found so far: 19



Deep scanning and examining files (C:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : antonio@doubleclick[1].txt
TAC Rating : 3
Category : Data Miner
Comment :
Value : C:\Documents and Settings\Antonio\Impostazioni locali\Temp\Cookies\antonio@doubleclick[1].txt

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mario@atdmt[2].txt
TAC Rating : 3
Category : Data Miner
Comment :
Value : C:\Documents and Settings\Mario\Cookies\mario@atdmt[2].txt

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mario@doubleclick[1].txt
TAC Rating : 3
Category : Data Miner
Comment :
Value : C:\Documents and Settings\Mario\Cookies\mario@doubleclick[1].txt

Tracking Cookie Object Recognized!
Type : IECache Entry
Data : mario@mediaplex[2].txt
TAC Rating : 3
Category : Data Miner
Comment :
Value : C:\Documents and Settings\Mario\Cookies\mario@mediaplex[2].txt

Disk Scan Result for C:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 23


Deep scanning and examining files (D:)
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Disk Scan Result for D:\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 23


Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 23




Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 23

13.34.11 Scan Complete

Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00.09.03.265
Objects scanned:136338
Objects identified:8
Objects ignored:0
New critical objects:8

Si BLOCCA anche all'avvio...
Palestinese
Utente Junior
 
Post: 32
Iscritto il: 09/06/06 14:59

Sponsor
 

Postdi ADMINISTRATOR » 31/08/06 17:16

secondo me fai prima a prendere in considerazione la possibilità di fare un backup dei dati e cambiare pc...

mi sa che è l'opzione più saggia, considerando che non si sa di preciso perchè si blocca il tuo S.O.

le cause potrebbero essere tante ma piuttosto che rischiare di perdere tutti i dati nell'hardisk...pensa seriamente ad un backup...sempre secondo un mio giudizio personale...:)
ADMINISTRATOR
Utente Senior
 
Post: 136
Iscritto il: 10/04/06 15:10

Postdi Alexsandra » 31/08/06 19:21

Fai una pulizia con CCleaner e poi uno scandisk (scegli l'opzione di riparare ......), e dopo fai una defframentazione.
Se guardi nel tuo log hai una marea di processi in avvio, togli tutti quelli che fanno riferimento ad applicazioni,in avvio dovresti avere i processi di sistema,glia AV e i FW.
Avatar utente
Alexsandra
Utente Senior
 
Post: 2358
Iscritto il: 09/01/06 20:31

Perdonami l'ignoranza

Postdi Palestinese » 01/09/06 14:17

Da scandisk in poi non ho capito bene... Cosa devo usare per togliere sti processi? Killarli con HJT?
Palestinese
Utente Junior
 
Post: 32
Iscritto il: 09/06/06 14:59

Postdi Alexsandra » 01/09/06 15:48

Anche da msconfig, togli tutte le applicazioni che partono all'avvio che non ti servono, anche con Regseeker hai questa opzione.
Avatar utente
Alexsandra
Utente Senior
 
Post: 2358
Iscritto il: 09/01/06 20:31

...capito...

Postdi Palestinese » 01/09/06 20:19

fatto ma... nulla da fare... si blocca
Palestinese
Utente Junior
 
Post: 32
Iscritto il: 09/06/06 14:59

Postdi hydra » 02/09/06 10:01

Un utente junior dovrebbe sapere che si devono dare titoli pertinenti al problema (e non Aiutoooooo). Inoltrte dovrebbe sapere che sul forum ci sono varie sezioni e che un problema di virus è si un problema software, ma nello specifico un problema da Sicurezza, in quanto
Il Webmaster quando ha aperto la sezione Sicurezza ha scritto:Come rimuovere virus e spyware? Le carte di credito sono davvero sicure in rete? È possibile navigare anonimi? Con quali programmi tutelare la propria privacy? Come proteggere i file importanti? Se volete una risposta a queste e altre domande questo è il luogo giusto!

Non vedo altra soluzione che spostare il topic.
Avatar utente
hydra
Moderatore
 
Post: 7007
Iscritto il: 19/07/04 08:06
Località: Vallis Duplavis


Torna a Sicurezza e Privacy


Topic correlati a "Aiutooooooooo":

aiutooooooooo
Autore: robert fripp
Forum: Reti, ADSL e wireless
Risposte: 2
Aiutooooooooo
Autore: AndreJero
Forum: Assistenza Hardware
Risposte: 0
aiutooooooooo
Autore: marycam
Forum: Sicurezza e Privacy
Risposte: 11
aiutooooooooo
Autore: KH2203
Forum: Sicurezza e Privacy
Risposte: 8

Chi c’è in linea

Visitano il forum: Nessuno e 9 ospiti