Ho seguito i tuoi suggerimanti, ma la situazione non è affatto migliorata.
Ora ti posto i risultati della scansione e di hijackthis:
---------------------------------------------------------
ewido anti-malware - Rapporto Scansione
---------------------------------------------------------
+ Creato il: 16.09.28, 10/02/2006
+ Report-Checksum: A037270
+ Risultati scansione:
HKLM\SOFTWARE\Classes\CLSID\{83A5F7B7-DC75-44CE-9195-264F41709FA9} -> Adware.Virtumonde : Pulito con Backup
HKLM\SOFTWARE\Classes\CLSID\{EA0D26BD-9029-431A-86E0-83152D67828A} -> Adware.180Solutions : Pulito con Backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A5F7B7-DC75-44CE-9195-264F41709FA9} -> Adware.Virtumonde : Pulito con Backup
HKU\.DEFAULT\Software\Avenue Media -> Adware.InternetOptimizer : Pulito con Backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt -> Adware.InternetOptimizer : Pulito con Backup
HKU\.DEFAULT\Software\Policies\Avenue Media -> Adware.InternetOptimizer : Pulito con Backup
C:\WINNT\Downloaded Program Files\MediaGatewayX.dll -> Adware.WinAD : Pulito con Backup
C:\WINNT\Downloaded Program Files\UWA6P_0001_N68M2301NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Pulito con Backup
C:\WINNT\Downloaded Program Files\UWAS6_0001_N68M2301NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.d : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temp\Cookies\biagio@sel.as-eu.falkag[1].txt -> TrackingCookie.Falkag : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temp\Cookies\biagio@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temp\Cookies\biagio@casalemedia[1].txt -> TrackingCookie.Casalemedia : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temp\Cookies\biagio@atdmt[2].txt -> TrackingCookie.Atdmt : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temporary Internet Files\Content.IE5\KHAJ0PE3\MacromediaFlashPlayerFreeDownloadFor%20InternetExplorer[1].cab/smallActive.dll -> Hijacker.Small.hj : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temporary Internet Files\Content.IE5\72O7NT45\bridge-c11[1].cab/MediaGatewayX.dll -> Adware.WinAD : Pulito con Backup
C:\Documents and Settings\Biagio\Impostazioni locali\Temporary Internet Files\Content.IE5\Y5RGTW7I\MediaGateway[1].exe -> Adware.WinAD : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@lop[1].txt -> TrackingCookie.Lop : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@mediaplex[1].txt -> TrackingCookie.Mediaplex : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@atdmt[2].txt -> TrackingCookie.Atdmt : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@doubleclick[1].txt -> TrackingCookie.Doubleclick : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@findwhat[1].txt -> TrackingCookie.Findwhat : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@images.lop[1].txt -> TrackingCookie.Lop : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@perf.overture[1].txt -> TrackingCookie.Overture : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@z1.adserver[1].txt -> TrackingCookie.Adserver : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@fastclick[2].txt -> TrackingCookie.Fastclick : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@revenue[2].txt -> TrackingCookie.Revenue : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@bluestreak[2].txt -> TrackingCookie.Bluestreak : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@casinotropez[1].txt -> TrackingCookie.Casinotropez : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@advertising[2].txt -> TrackingCookie.Advertising : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@casalemedia[1].txt -> TrackingCookie.Casalemedia : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@as1.falkag[2].txt -> TrackingCookie.Falkag : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@counter2.hitslink[2].txt -> TrackingCookie.Hitslink : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@serving-sys[2].txt -> TrackingCookie.Serving-sys : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@statcounter[1].txt -> TrackingCookie.Statcounter : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@www.casinotropez[1].txt -> TrackingCookie.Casinotropez : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@cz6.clickzs[2].txt -> TrackingCookie.Clickzs : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@meetupcom.122.2o7[1].txt -> TrackingCookie.2o7 : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@yadro[1].txt -> TrackingCookie.Yadro : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@adtech[1].txt -> TrackingCookie.Adtech : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@hitbox[1].txt -> TrackingCookie.Hitbox : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@sel.as-eu.falkag[1].txt -> TrackingCookie.Falkag : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@2o7[2].txt -> TrackingCookie.2o7 : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@112.2o7[1].txt -> TrackingCookie.2o7 : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@ads20.bpath[2].txt -> TrackingCookie.Bpath : Pulito con Backup
C:\Documents and Settings\Biagio\Cookies\biagio@ehg-nokiafin.hitbox[2].txt -> TrackingCookie.Hitbox : Pulito con Backup
::Fine Rapporto
Logfile of HijackThis v1.99.1
Scan saved at 16.19.29, on 10/02/2006
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\WINNT\System32\svchost.exe
C:\Programmi\ewido anti-malware\ewidoctrl.exe
C:\Programmi\ewido anti-malware\ewidoguard.exe
C:\Programmi\File comuni\Microsoft Shared\VS7Debug\mdm.exe
C:\Programmi\Norton AntiVirus\navapsvc.exe
C:\Programmi\Norton AntiVirus\IWP\NPFMntor.exe
C:\PROGRA~1\Alice\ALICEE~1\app\pppoeservice.exe
C:\WINNT\system32\regsvc.exe
C:\Programmi\Norton AntiVirus\SAVScan.exe
C:\WINNT\system32\MSTask.exe
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
C:\WINNT\Explorer.EXE
C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\mspmspsv.exe
C:\WINNT\system32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\Programmi\MessengerPlus! 3\MsgPlus.exe
C:\Programmi\File comuni\PCSuite\DataLayer\DataLayer.exe
C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\WINNT\system32\ctfmon.exe
C:\PROGRA~1\FILECO~1\PCSuite\Services\SERVIC~1.EXE
C:\Mario\Nuova cartella\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.popup-freesex-adv.biz/landin ... gin=9glpes
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: (no name) - {E365CC4A-A0ED-7F17-7DB8-9BA59EFF320D} - C:\DOCUME~1\Biagio\DATIAP~1\FREE64~1\Burnopen.exe (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Programmi\File comuni\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [Run Service Vxdrun] vxddirectx32.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Windows Secutiy Management Kernel module] management.exe
O4 - HKLM\..\Run: [NI.UWFX5T_0001_N57M1412] "C:\WINNT\Downloaded Program Files\UWFX5T_0001_N57M1412NetInstaller.exe" -nag
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Programmi\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [EggsGplHelpBrowse] C:\Documents and Settings\All Users\Dati applicazioni\Morebolteggsgpl\16FREE.exe
O4 - HKLM\..\Run: [DataLayer] C:\Programmi\File comuni\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\RunServices: [Run Service Vxdrun] vxddirectx32.exe
O4 - HKLM\..\RunServices: [Windows Secutiy Management Kernel module] management.exe
O4 - HKCU\..\Run: [ntdll.dll] ctfmon.exe
O4 - HKCU\..\Run: [Run Service Vxdrun] vxddirectx32.exe
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - HKCU\..\Run: [waitmore] C:\DOCUME~1\Biagio\DATIAP~1\FIVEWE~1\HtmTrans.exe
O4 - HKCU\..\Run: [ciakaisen.exe] C:\WINNT\system32\ciakaisen.exe
O4 - HKCU\..\RunServices: [Run Service Vxdrun] vxddirectx32.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&sporta in Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O15 - Trusted Zone:
http://www.ciritorno.biz
O23 - Service: Win Logon ( Microsoft Windows Logon Process) - Unknown owner - C:\WINNT\winlogon.exe (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINNT\QmlhZ2lv\command.exe (file missing)
O23 - Service: windows dll service (dll service) - Unknown owner - C:\WINNT\rund1132.exe (file missing)
O23 - Service: Servizio amministrativo di Gestione disco logico (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: ewido security suite control - ewido networks - C:\Programmi\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Programmi\ewido anti-malware\ewidoguard.exe
O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) - Symantec Corporation - C:\Programmi\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Programmi\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: PPPoE Service (PPPoEService) - Unknown owner - C:\PROGRA~1\Alice\ALICEE~1\app\pppoeservice.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FILECO~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Service Hosts (ServiceHost) - Unknown owner - C:\WINNT\shost.exe (file missing)
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
Grazie mille
Mario