Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

Problemi chiusura pagina web Opzioni
mangelo
Inviato: Sunday, February 26, 2006 12:45:06 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Da un po' di tempo quando chiudo una finestra di internet mi appare questo errore:"L'istruzione a "0x02c63795" ha fatto riferimento alla memoria a "0x0256f238".La memoria non poteva essere "read". Fare clic su Ok per terminare l'applicazione".
Chi mi può aiutare a risolvere questo fastidioso problema?
Grazie mille.
Sponsor
Inviato: Sunday, February 26, 2006 12:45:06 PM

 
alfonso
Inviato: Sunday, February 26, 2006 12:48:54 PM

Rank: AiutAmico

Iscritto dal : 10/5/2000
Posts: 19,132
Scarica questo programma e leggi le istruzioni per inserire il log
http://www.aiutamici.com/software/descrizione.asp?CodSw=1175


Collaboratore Aiutamici
mangelo
Inviato: Tuesday, February 28, 2006 6:40:02 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Grazie Alfonso, mi è bastato scaricare e lanciare i due programmi (Ad-aware e Spybot) e ho risolto il problema segnalato.
Grazie sei sempre puntuale e preciso nelle richieste d'aiuto.
mangelo
Inviato: Saturday, March 04, 2006 5:17:27 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Alfonso, pensavo che lanciando i programmini avessi risolto il mio problema e invece eccomi nuovamente qua a chiederti aiuto. Il problema continua a persistere e mi sono apparsi i seguenti file di errore:
file nr. 1:
#
# An unexpected error has been detected by HotSpot Virtual Machine:
#
# EXCEPTION_ACCESS_VIOLATION (0xc0000005) at pc=0x05f5136b, pid=2988, tid=4088
#
# Java VM: Java HotSpot(TM) Client VM (1.5.0_06-b05 mixed mode, sharing)
# Problematic frame:
# C 0x05f5136b
#

--------------- T H R E A D ---------------

Current thread (0x074aa980): JavaThread "Thread-10" [_thread_in_native, id=4088]

siginfo: ExceptionCode=0xc0000005, writing address 0x00000000

Registers:
EAX=0x072e709e, EBX=0x05e9ccb0, ECX=0x072e6b78, EDX=0x00a00002
ESP=0x0d7dfa21, EBP=0x0d7dfa50, ESI=0x074aaa40, EDI=0x072e6b78
EIP=0x05f5136b, EFLAGS=0x00010282

Top of Stack: (sp=0x0d7dfa21)
0x0d7dfa21: b06d0e25 9905e9cc 78000001 00072e6b
0x0d7dfa31: 40000000 70074aaa 006d7bf2 2c000000
0x0d7dfa41: 780d7dfa bc0d7dfa 006d0f43 84000000
0x0d7dfa51: 700d7dfa 996d0e1c 10000001 000d7dfb
0x0d7dfa61: 40000000 08074aaa 4026d1be 00074aaa
0x0d7dfa71: 60000000 b80d7dfa 980d7dfa 006d0f43
0x0d7dfa81: c4000000 dc0d7dfa 406d0e1d 10074aaa
0x0d7dfa91: 0c0d7dfb 8f0d7dfb 8f000001 80000001

Instructions: (pc=0x05f5136b)
0x05f5135b: 00 00 00 00 00 01 00 00 00 01 00 00 00 c0 00 00
0x05f5136b: 00 2d 00 00 00 00 00 00 00 00 00 00 00 00 00 00


Stack: [0x0d6e0000,0x0d7e0000), sp=0x0d7dfa21, free space=1022k
Native frames: (J=compiled Java code, j=interpreted, Vv=VM code, C=native code)
C 0x05f5136b
C 0x6d0e1c70
C 0x6d0e1ddc
j sun.awt.windows.WTextAreaPeer.insertText(Ljava/lang/String;I)V+0
j java.awt.TextArea.insertText(Ljava/lang/String;I)V+15
j java.awt.TextArea.appendText(Ljava/lang/String;)V+16
j java.awt.TextArea.append(Ljava/lang/String;)V+2
j q.q(Ljava/lang/String;)V+28
j la.run()V+4309
v ~StubRoutines::call_stub
C 0x6d6f45a9
C 0x6d749317
C 0x6d6f447a
C 0x6d6f41d7
C 0x6d70ed69
C 0x6d779fe3
C 0x6d779fb1
C [msvcrt.dll+0x2a3b0]
C [kernel32.dll+0xb50b]

Java frames: (J=compiled Java code, j=interpreted, Vv=VM code)
j sun.awt.windows.WTextAreaPeer.insertText(Ljava/lang/String;I)V+0
j java.awt.TextArea.insertText(Ljava/lang/String;I)V+15
j java.awt.TextArea.appendText(Ljava/lang/String;)V+16
j java.awt.TextArea.append(Ljava/lang/String;)V+2
j q.q(Ljava/lang/String;)V+28
j la.run()V+4309
v ~StubRoutines::call_stub

--------------- P R O C E S S ---------------

Java Threads: ( =) current thread )
0x0cd9df48 JavaThread "AWT-EventQueue-2" [_thread_blocked, id=260]
0x05f50e08 JavaThread "Thread-12" [_thread_blocked, id=3084]
0x071b2e70 JavaThread "Image Fetcher 2" daemon [_thread_blocked, id=2156]
0x074721f0 JavaThread "Image Animator 3" daemon [_thread_in_vm_trans, id=1244]
0x0cd5edb0 JavaThread "Image Fetcher 1" daemon [_thread_blocked, id=3448]
0x05f82a30 JavaThread "Image Fetcher 3" daemon [_thread_blocked, id=500]
=)0x074aa980 JavaThread "Thread-10" [_thread_in_native, id=4088]
0x05f79248 JavaThread "Java Sound Event Dispatcher" daemon [_thread_blocked, id=396]
0x07315848 JavaThread "Thread-7" [_thread_blocked, id=308]
0x05f7fd18 JavaThread "Thread-6" [_thread_blocked, id=3272]
0x05f7f5b0 JavaThread "Thread-5" [_thread_blocked, id=3344]
0x05f02e30 JavaThread "AWT-EventQueue-0" [_thread_blocked, id=3392]
0x05ef2058 JavaThread "traceMsgQueueThread" daemon [_thread_blocked, id=2376]
0x05ee1de8 JavaThread "AWT-Windows" daemon [_thread_in_native, id=316]
0x05ee1a38 JavaThread "AWT-Shutdown" [_thread_blocked, id=440]
0x05eec8a8 JavaThread "Java2D Disposer" daemon [_thread_blocked, id=2416]
0x02521498 JavaThread "Low Memory Detector" daemon [_thread_blocked, id=3780]
0x0248a2a8 JavaThread "CompilerThread0" daemon [_thread_blocked, id=3788]
0x024803d0 JavaThread "Signal Dispatcher" daemon [_thread_blocked, id=1136]
0x05e91bc8 JavaThread "Finalizer" daemon [_thread_blocked, id=2592]
0x02470ea0 JavaThread "Reference Handler" daemon [_thread_blocked, id=3104]
0x02435180 JavaThread "main" [_thread_in_native, id=2448]

Other Threads:
0x02450d20 VMThread [id=2012]
0x0003e180 WatcherThread [id=2172]

VM state:not at safepoint (normal execution)

VM Mutex/Monitor currently owned by a thread: None

Heap
def new generation total 3136K, used 2031K [0x20b80000, 0x20ee0000, 0x212e0000)
eden space 2816K, 67: used [0x20b80000, 0x20d5ade0, 0x20e40000)
from space 320K, 41: used [0x20e40000, 0x20e60f30, 0x20e90000)
to space 320K, 0% used [0x20e90000, 0x20e90000, 0x20ee0000)
tenured generation total 40236K, used 27602K [0x212e0000, 0x23a2b000, 0x26b80000)
the space 40236K, 68% used [0x212e0000, 0x22dd4a30, 0x22dd4c00, 0x23a2b000)
compacting perm gen total 8192K, used 2311K [0x26b80000, 0x27380000, 0x2ab80000)
the space 8192K, 28% used [0x26b80000, 0x26dc1e00, 0x26dc1e00, 0x27380000)
ro space 8192K, 63% used [0x2ab80000, 0x2b08b178, 0x2b08b200, 0x2b380000)
rw space 12288K, 46% used [0x2b380000, 0x2b919fa8, 0x2b91a000, 0x2bf80000)

Dynamic libraries:
0x00400000 - 0x00419000 C:\Programmi\Internet Explorer\iexplore.exe
0x7c910000 - 0x7c9c6000 C:\WINDOWS\system32\ntdll.dll
0x7c800000 - 0x7c8ff000 C:\WINDOWS\system32\kernel32.dll
0x77be0000 - 0x77c38000 C:\WINDOWS\system32\msvcrt.dll
0x77d10000 - 0x77da0000 C:\WINDOWS\system32\USER32.dll
0x77e40000 - 0x77e87000 C:\WINDOWS\system32\GDI32.dll
0x77e90000 - 0x77f06000 C:\WINDOWS\system32\SHLWAPI.dll
0x77f40000 - 0x77feb000 C:\WINDOWS\system32\ADVAPI32.dll
0x77da0000 - 0x77e31000 C:\WINDOWS\system32\RPCRT4.dll
0x77730000 - 0x7789e000 C:\WINDOWS\system32\SHDOCVW.dll
0x77a50000 - 0x77ae5000 C:\WINDOWS\system32\CRYPT32.dll
0x77af0000 - 0x77b02000 C:\WINDOWS\system32\MSASN1.dll
0x76890000 - 0x76913000 C:\WINDOWS\system32\CRYPTUI.dll
0x76bf0000 - 0x76c1e000 C:\WINDOWS\system32\WINTRUST.dll
0x76c50000 - 0x76c78000 C:\WINDOWS\system32\IMAGEHLP.dll
0x770f0000 - 0x7717c000 C:\WINDOWS\system32\OLEAUT32.dll
0x774b0000 - 0x775ed000 C:\WINDOWS\system32\ole32.dll
0x5bc70000 - 0x5bcc4000 C:\WINDOWS\system32\NETAPI32.dll
0x77180000 - 0x77227000 C:\WINDOWS\system32\WININET.dll
0x76f20000 - 0x76f4d000 C:\WINDOWS\system32\WLDAP32.dll
0x77bd0000 - 0x77bd8000 C:\WINDOWS\system32\VERSION.dll
0x76340000 - 0x7635d000 C:\WINDOWS\system32\IMM32.DLL
0x62e40000 - 0x62e49000 C:\WINDOWS\system32\LPK.DLL
0x74d20000 - 0x74d8b000 C:\WINDOWS\system32\USP10.dll
0x773a0000 - 0x774a2000 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
0x7c9d0000 - 0x7d1ec000 C:\WINDOWS\system32\SHELL32.dll
0x5d4d0000 - 0x5d567000 C:\WINDOWS\system32\comctl32.dll
0x5b180000 - 0x5b1b8000 C:\WINDOWS\system32\uxtheme.dll
0x67330000 - 0x6735f000 C:\PROGRA~1\FILECO~1\SYMANT~1\ANTISPAM\asOEHook.dll
0x7c340000 - 0x7c396000 C:\WINDOWS\system32\MSVCR71.dll
0x746b0000 - 0x746fb000 C:\WINDOWS\system32\MSCTF.dll
0x75f30000 - 0x7602d000 C:\WINDOWS\system32\BROWSEUI.dll
0x20000000 - 0x20013000 C:\WINDOWS\system32\browselc.dll
0x77b10000 - 0x77b32000 C:\WINDOWS\system32\appHelp.dll
0x76f90000 - 0x7700f000 C:\WINDOWS\system32\CLBCATQ.DLL
0x77010000 - 0x770e2000 C:\WINDOWS\system32\COMRes.dll
0x752e0000 - 0x7530e000 C:\WINDOWS\system32\msctfime.ime
0x77230000 - 0x772ce000 C:\WINDOWS\system32\urlmon.dll
0x77f10000 - 0x77f21000 C:\WINDOWS\system32\Secur32.dll
0x778f0000 - 0x779e7000 C:\WINDOWS\system32\SETUPAPI.dll
0x10000000 - 0x1012c000 c:\programmi\google\googletoolbar1.dll
0x71a50000 - 0x71a5a000 C:\WINDOWS\system32\WSOCK32.dll
0x71a30000 - 0x71a47000 C:\WINDOWS\system32\WS2_32.dll
0x71a20000 - 0x71a28000 C:\WINDOWS\system32\WS2HELP.dll
0x76b00000 - 0x76b2e000 C:\WINDOWS\system32\WINMM.dll
0x76330000 - 0x76335000 C:\WINDOWS\system32\MSIMG32.dll
0x59e60000 - 0x59f01000 C:\WINDOWS\system32\DBGHELP.DLL
0x76950000 - 0x76976000 C:\WINDOWS\system32\ntshrui.dll
0x76ae0000 - 0x76af1000 C:\WINDOWS\system32\ATL.DLL
0x76980000 - 0x76a34000 C:\WINDOWS\system32\USERENV.dll
0x76ea0000 - 0x76edc000 C:\WINDOWS\system32\RASAPI32.DLL
0x76e50000 - 0x76e62000 C:\WINDOWS\system32\rasman.dll
0x76e70000 - 0x76e9f000 C:\WINDOWS\system32\TAPI32.dll
0x76e40000 - 0x76e4e000 C:\WINDOWS\system32\rtutils.dll
0x71aa0000 - 0x71ab2000 C:\WINDOWS\system32\MPR.dll
0x75f10000 - 0x75f17000 C:\WINDOWS\System32\drprov.dll
0x71ba0000 - 0x71bae000 C:\WINDOWS\System32\ntlanman.dll
0x71c60000 - 0x71c77000 C:\WINDOWS\System32\NETUI0.dll
0x71c20000 - 0x71c60000 C:\WINDOWS\System32\NETUI1.dll
0x71c10000 - 0x71c17000 C:\WINDOWS\System32\NETRAP.dll
0x71b80000 - 0x71b93000 C:\WINDOWS\System32\SAMLIB.dll
0x75f20000 - 0x75f29000 C:\WINDOWS\System32\davclnt.dll
0x77c40000 - 0x77c63000 C:\WINDOWS\system32\msv1_0.dll
0x76d20000 - 0x76d39000 C:\WINDOWS\system32\iphlpapi.dll
0x0ffd0000 - 0x0fff8000 C:\WINDOWS\system32\rsaenh.dll
0x014a0000 - 0x01766000 C:\WINDOWS\system32\msi.dll
0x79170000 - 0x79196000 C:\WINDOWS\system32\MSCOREE.DLL
0x79040000 - 0x79085000 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
0x01260000 - 0x01296000 C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
0x7c3a0000 - 0x7c41b000 C:\WINDOWS\system32\MSVCP71.dll
0x01770000 - 0x01a45000 C:\WINDOWS\system32\xpsp2res.dll
0x75e40000 - 0x75ef0000 C:\WINDOWS\system32\SXS.DLL
0x01d50000 - 0x01ddc000 C:\WINDOWS\system32\shdoclc.dll
0x7d4b0000 - 0x7d796000 C:\WINDOWS\system32\mshtml.dll
0x74650000 - 0x74677000 C:\WINDOWS\system32\msls31.dll
0x75d50000 - 0x75de1000 C:\WINDOWS\system32\MLANG.dll
0x62900000 - 0x62955000 C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
0x02530000 - 0x0253e000 C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
0x02570000 - 0x025a5000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
0x74910000 - 0x74a40000 C:\WINDOWS\system32\msxml3.dll
0x4d530000 - 0x4d588000 C:\WINDOWS\system32\WINHTTP.dll
0x02ca0000 - 0x02dec000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ConverterCore.dll
0x02df0000 - 0x02eae000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\SolidCore.dll
0x02eb0000 - 0x02f2d000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\MSLUP71.dll
0x02f30000 - 0x02f88000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\MSLUR71.dll
0x76360000 - 0x763aa000 C:\WINDOWS\system32\comdlg32.dll
0x02f90000 - 0x03097000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\MFC71LU.DLL
0x5d360000 - 0x5d36f000 C:\WINDOWS\system32\MFC71ITA.DLL
0x031d0000 - 0x032a5000 C:\Programmi\Spybot - Search and Destroy\SDHelper.dll
0x5f210000 - 0x5f227000 C:\WINDOWS\system32\olepro32.dll
0x6d600000 - 0x6d62d000 C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
0x033c0000 - 0x033d8000 C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
0x6af30000 - 0x6af6d000 C:\Programmi\File comuni\Symantec Shared\ccL30.dll
0x033e0000 - 0x03415000 C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
0x7c120000 - 0x7c139000 C:\WINDOWS\system32\ATL71.DLL
0x71cd0000 - 0x71cec000 C:\WINDOWS\system32\actxprxy.dll
0x75c00000 - 0x75c6e000 C:\WINDOWS\system32\jscript.dll
0x74680000 - 0x746aa000 C:\WINDOWS\system32\msimtf.dll
0x719d0000 - 0x71a10000 C:\WINDOWS\System32\mswsock.dll
0x76ee0000 - 0x76f07000 C:\WINDOWS\system32\DNSAPI.dll
0x76f70000 - 0x76f78000 C:\WINDOWS\System32\winrnr.dll
0x72240000 - 0x72245000 C:\WINDOWS\system32\sensapi.dll
0x76f80000 - 0x76f86000 C:\WINDOWS\system32\rasadhlp.dll
0x66750000 - 0x667a8000 C:\WINDOWS\system32\hnetcfg.dll
0x71a10000 - 0x71a18000 C:\WINDOWS\System32\wshtcpip.dll
0x04550000 - 0x04597000 C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroPDF.dll
0x03c50000 - 0x03c56000 C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroPDF.ITA
0x72c90000 - 0x72c99000 C:\WINDOWS\system32\wdmaud.drv
0x72c80000 - 0x72c88000 C:\WINDOWS\system32\msacm32.drv
0x77bb0000 - 0x77bc5000 C:\WINDOWS\system32\MSACM32.dll
0x77ba0000 - 0x77ba7000 C:\WINDOWS\system32\midimap.dll
0x74dc0000 - 0x74e2c000 C:\WINDOWS\system32\riched20.dll
0x02200000 - 0x022aa000 C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\2006\I\EncWCRes.dll
0x65200000 - 0x65213000 C:\Programmi\Yahoo!\Companion\Installs\cpn\pubmod.dll
0x65000000 - 0x65032000 C:\Programmi\Yahoo!\Companion\Installs\cpn\ypubc.dll
0x325c0000 - 0x325d2000 C:\Programmi\Microsoft Office\OFFICE11\msohev.dll
0x022b0000 - 0x022cd000 C:\PROGRA~1\DOWNLO~1\MDPPH.DLL
0x76270000 - 0x762e1000 C:\WINDOWS\system32\mshtmled.dll
0x07510000 - 0x07a59000 C:\WINDOWS\system32\wmp.dll
0x4ebd0000 - 0x4ed73000 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
0x75df0000 - 0x75e11000 C:\WINDOWS\system32\MSVFW32.dll
0x08260000 - 0x085a2000 C:\WINDOWS\system32\wmploc.dll
0x089f0000 - 0x08a37000 C:\WINDOWS\system32\wmpdxm.dll
0x75920000 - 0x75a18000 C:\WINDOWS\system32\MSGINA.dll
0x76310000 - 0x76320000 C:\WINDOWS\system32\WINSTA.dll
0x745e0000 - 0x7461d000 C:\WINDOWS\system32\ODBC32.dll
0x04eb0000 - 0x04ec8000 C:\WINDOWS\system32\odbcint.dll
0x05090000 - 0x050d0000 C:\WINDOWS\system32\iepeers.dll

VM Arguments:
jvm_args: -Xbootclasspath/a:C:\PROGRA~1\Java\JRE15~2.0_0\lib\deploy.jar;C:\PROGRA~1\Java\JRE15~2.0_0\lib\plugin.jar -Xmx96m -Djavaplugin.maxHeapSize=96m -Xverify:remote -Djavaplugin.version=1.5.0_06 -Djavaplugin.nodotversion=150_06 -Dbrowser=sun.plugin -DtrustProxy=true -Dapplication.home=C:\PROGRA~1\Java\JRE15~2.0_0 -Djava.protocol.handler.pkgs=sun.plugin.net.protocol -Djavaplugin.vm.options=-Djava.class.path=C:\PROGRA~1\Java\JRE15~2.0_0\classes -Xbootclasspath/a:C:\PROGRA~1\Java\JRE15~2.0_0\lib\deploy.jar;C:\PROGRA~1\Java\JRE15~2.0_0\lib\plugin.jar -Xmx96m -Djavaplugin.maxHeapSize=96m -Xverify:remote -Djavaplugin.version=1.5.0_06 -Djavaplugin.nodotversion=150_06 -Dbrowser=sun.plugin -DtrustProxy=true -Dapplication.home=C:\PROGRA~1\Java\JRE15~2.0_0 -Djava.protocol.handler.pkgs=sun.plugin.net.protocol vfprintf
java_command: (unknown>
Launcher Type: generic

Environment Variables:
CLASSPATH="C:\Programmi\Java\jre1.5.0_02\lib\ext\QTJava.zip"
PATH=C:\PROGRA~1\Java\JRE15~2.0_0\bin;C:\PROGRA~1\INCRED~1\bin;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\ATI Technologies\ATI Control Panel;C:\Programmi\File comuni\Ulead Systems\MPEG;C:\PROGRA~1\FILECO~1\SONICS~1\;C:\Programmi\ZipGenius 6\;.
USERNAME=io
OS=Windows_NT
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 4, GenuineIntel



--------------- S Y S T E M ---------------

OS: Windows XP Build 2600 Service Pack 2

CPU:total 2 family 15, cmov, cx8, fxsr, mmx, sse, sse2, ht

Memory: 4k page, physical 1048044k(327520k free), swap 2516860k(1885508k free)

vm_info: Java HotSpot(TM) Client VM (1.5.0_06-b05) for windows-x86, built on Nov 10 2005 11:12:14 by "java_re" with MS VC++ 6.0

*****************************
File nr.2:
#
# An unexpected error has been detected by HotSpot Virtual Machine:
#
# EXCEPTION_PRIV_INSTRUCTION (0xc0000096) at pc=0x03080168, pid=148, tid=3008
#
# Java VM: Java HotSpot(TM) Client VM (1.5.0_06-b05 mixed mode, sharing)
# Problematic frame:
# C [MFC71LU.DLL+0xf0168]
#

--------------- T H R E A D ---------------

Current thread (0x087b9270): JavaThread "Thread-15" [_thread_in_native, id=3008]

siginfo: ExceptionCode=0xc0000096

Registers:
EAX=0x08880cf7, EBX=0x087956d8, ECX=0x088c9178, EDX=0x01310001
ESP=0x0cebfb20, EBP=0x0cebfb50, ESI=0x087b9330, EDI=0x088c9178
EIP=0x03080168, EFLAGS=0x00010a96

Top of Stack: (sp=0x0cebfb20)
0x0cebfb20: 6d0e2539 087956d8 00000199 087b9270
0x0cebfb30: 26d1d558 26d1d558 07d509ec 00000000
0x0cebfb40: 0cebfb2c 0cebfd64 6d0f43bc 00000000
0x0cebfb50: 0cebfb88 0559826f 00000199 0cebfb8c
0x0cebfb60: 0cebfb60 00000000 0cebfb8c 26d1e660
0x0cebfb70: 00000000 26d1d558 0cebfb8c 0cebfbb8
0x0cebfb80: 05592d00 00000000 05596453 213939a0
0x0cebfb90: 213702e8 00000000 213702e8 0cebfb94

Instructions: (pc=0x03080168)
0x03080158: 6e 00 64 00 6f 00 77 00 73 00 0a 00 48 00 65 00
0x03080168: 6c 00 70 00 2d 00 44 00 69 00 73 00 70 00 6c 00


Stack: [0x0cdc0000,0x0cec0000), sp=0x0cebfb20, free space=1022k
Native frames: (J=compiled Java code, j=interpreted, Vv=VM code, C=native code)
C [MFC71LU.DLL+0xf0168]

[error occurred during error reporting, step 120, id 0xc0000005]

Java frames: (J=compiled Java code, j=interpreted, Vv=VM code)
j sun.awt.windows.WTextComponentPeer.getText()Ljava/lang/String;+0
j java.awt.TextComponent.getText()Ljava/lang/String;+14
j java.awt.TextArea.appendText(Ljava/lang/String;)V+10
j java.awt.TextArea.append(Ljava/lang/String;)V+2
j q.q(Ljava/lang/String;)V+28
j la.run()V+4309
v ~StubRoutines::call_stub

--------------- P R O C E S S ---------------

Java Threads: ( => current thread )
0x0d00ae80 JavaThread "AWT-EventQueue-3" [_thread_blocked, id=4076]
0x07eaef10 JavaThread "Thread-43" [_thread_blocked, id=2240]
0x088f9028 JavaThread "Image Animator 2" daemon [_thread_blocked, id=304]
0x07e5de40 JavaThread "Image Fetcher 0" daemon [_thread_blocked, id=3036]
0x07e59810 JavaThread "Image Fetcher 2" daemon [_thread_blocked, id=2644]
0x07e93e48 JavaThread "Image Fetcher 1" daemon [_thread_blocked, id=912]
0x08b2d7e0 JavaThread "Thread-22" [_thread_blocked, id=3496]
0x07de1648 JavaThread "Image Fetcher 3" daemon [_thread_blocked, id=580]
=>0x087b9270 JavaThread "Thread-15" [_thread_in_native, id=3008]
0x07d50220 JavaThread "Java Sound Event Dispatcher" daemon [_thread_blocked, id=2236]
0x088cf9d0 JavaThread "Thread-12" [_thread_blocked, id=2216]
0x088bdd00 JavaThread "Thread-11" [_thread_blocked, id=1608]
0x07d34100 JavaThread "Thread-10" [_thread_blocked, id=2180]
0x0244f4f8 JavaThread "AWT-EventQueue-0" [_thread_blocked, id=1668]
0x07d379b8 JavaThread "AWT-Shutdown" [_thread_blocked, id=1520]
0x07d0d600 JavaThread "traceMsgQueueThread" daemon [_thread_blocked, id=1472]
0x0244f850 JavaThread "AWT-Windows" daemon [_thread_in_native, id=804]
0x07d0b030 JavaThread "Java2D Disposer" daemon [_thread_blocked, id=896]
0x024333e0 JavaThread "Low Memory Detector" daemon [_thread_blocked, id=1480]
0x02464b28 JavaThread "CompilerThread0" daemon [_thread_blocked, id=1476]
0x02445618 JavaThread "Signal Dispatcher" daemon [_thread_blocked, id=904]
0x02456498 JavaThread "Finalizer" daemon [_thread_blocked, id=1112]
0x02450148 JavaThread "Reference Handler" daemon [_thread_blocked, id=1136]
0x02447388 JavaThread "main" [_thread_in_native, id=336]

Other Threads:
0x0244cbe8 VMThread [id=1204]
0x02481ba0 WatcherThread [id=908]

VM state:not at safepoint (normal execution)

VM Mutex/Monitor currently owned by a thread: None

Heap
def new generation total 3136K, used 2205K [0x20b80000, 0x20ee0000, 0x212e0000)
eden space 2816K, 77% used [0x20b80000, 0x20da3958, 0x20e40000)
from space 320K, 4% used [0x20e40000, 0x20e43c28, 0x20e90000)
to space 320K, 0% used [0x20e90000, 0x20e90000, 0x20ee0000)
tenured generation total 40436K, used 30954K [0x212e0000, 0x23a5d000, 0x26b80000)
the space 40436K, 76% used [0x212e0000, 0x2311a860, 0x2311aa00, 0x23a5d000)
compacting perm gen total 8192K, used 2333K [0x26b80000, 0x27380000, 0x2ab80000)
the space 8192K, 28% used [0x26b80000, 0x26dc7500, 0x26dc7600, 0x27380000)
ro space 8192K, 63% used [0x2ab80000, 0x2b08b178, 0x2b08b200, 0x2b380000)
rw space 12288K, 46% used [0x2b380000, 0x2b919fa8, 0x2b91a000, 0x2bf80000)

Dynamic libraries:
0x00400000 - 0x00419000 C:\Programmi\Internet Explorer\iexplore.exe
0x7c910000 - 0x7c9c6000 C:\WINDOWS\system32\ntdll.dll
0x7c800000 - 0x7c8ff000 C:\WINDOWS\system32\kernel32.dll
0x77be0000 - 0x77c38000 C:\WINDOWS\system32\msvcrt.dll
0x77d10000 - 0x77da0000 C:\WINDOWS\system32\USER32.dll
0x77e40000 - 0x77e87000 C:\WINDOWS\system32\GDI32.dll
0x77e90000 - 0x77f06000 C:\WINDOWS\system32\SHLWAPI.dll
0x77f40000 - 0x77feb000 C:\WINDOWS\system32\ADVAPI32.dll
0x77da0000 - 0x77e31000 C:\WINDOWS\system32\RPCRT4.dll
0x77730000 - 0x7789e000 C:\WINDOWS\system32\SHDOCVW.dll
0x77a50000 - 0x77ae5000 C:\WINDOWS\system32\CRYPT32.dll
0x77af0000 - 0x77b02000 C:\WINDOWS\system32\MSASN1.dll
0x76890000 - 0x76913000 C:\WINDOWS\system32\CRYPTUI.dll
0x76bf0000 - 0x76c1e000 C:\WINDOWS\system32\WINTRUST.dll
0x76c50000 - 0x76c78000 C:\WINDOWS\system32\IMAGEHLP.dll
0x770f0000 - 0x7717c000 C:\WINDOWS\system32\OLEAUT32.dll
0x774b0000 - 0x775ed000 C:\WINDOWS\system32\ole32.dll
0x5bc70000 - 0x5bcc4000 C:\WINDOWS\system32\NETAPI32.dll
0x77180000 - 0x77227000 C:\WINDOWS\system32\WININET.dll
0x76f20000 - 0x76f4d000 C:\WINDOWS\system32\WLDAP32.dll
0x77bd0000 - 0x77bd8000 C:\WINDOWS\system32\VERSION.dll
0x76340000 - 0x7635d000 C:\WINDOWS\system32\IMM32.DLL
0x62e40000 - 0x62e49000 C:\WINDOWS\system32\LPK.DLL
0x74d20000 - 0x74d8b000 C:\WINDOWS\system32\USP10.dll
0x773a0000 - 0x774a2000 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
0x7c9d0000 - 0x7d1ec000 C:\WINDOWS\system32\SHELL32.dll
0x5d4d0000 - 0x5d567000 C:\WINDOWS\system32\comctl32.dll
0x5b180000 - 0x5b1b8000 C:\WINDOWS\system32\uxtheme.dll
0x67330000 - 0x6735f000 C:\PROGRA~1\FILECO~1\SYMANT~1\ANTISPAM\asOEHook.dll
0x7c340000 - 0x7c396000 C:\WINDOWS\system32\MSVCR71.dll
0x746b0000 - 0x746fb000 C:\WINDOWS\system32\MSCTF.dll
0x75f30000 - 0x7602d000 C:\WINDOWS\system32\BROWSEUI.dll
0x20000000 - 0x20013000 C:\WINDOWS\system32\browselc.dll
0x77b10000 - 0x77b32000 C:\WINDOWS\system32\appHelp.dll
0x76f90000 - 0x7700f000 C:\WINDOWS\system32\CLBCATQ.DLL
0x77010000 - 0x770e2000 C:\WINDOWS\system32\COMRes.dll
0x752e0000 - 0x7530e000 C:\WINDOWS\system32\msctfime.ime
0x77230000 - 0x772ce000 C:\WINDOWS\system32\urlmon.dll
0x77f10000 - 0x77f21000 C:\WINDOWS\system32\Secur32.dll
0x779f0000 - 0x77a45000 C:\WINDOWS\System32\cscui.dll
0x765b0000 - 0x765cd000 C:\WINDOWS\System32\CSCDLL.dll
0x778f0000 - 0x779e7000 C:\WINDOWS\system32\SETUPAPI.dll
0x10000000 - 0x1012c000 c:\programmi\google\googletoolbar1.dll
0x71a50000 - 0x71a5a000 C:\WINDOWS\system32\WSOCK32.dll
0x71a30000 - 0x71a47000 C:\WINDOWS\system32\WS2_32.dll
0x71a20000 - 0x71a28000 C:\WINDOWS\system32\WS2HELP.dll
0x76b00000 - 0x76b2e000 C:\WINDOWS\system32\WINMM.dll
0x76330000 - 0x76335000 C:\WINDOWS\system32\MSIMG32.dll
0x59e60000 - 0x59f01000 C:\WINDOWS\system32\DBGHELP.DLL
0x76950000 - 0x76976000 C:\WINDOWS\system32\ntshrui.dll
0x76ae0000 - 0x76af1000 C:\WINDOWS\system32\ATL.DLL
0x76980000 - 0x76a34000 C:\WINDOWS\system32\USERENV.dll
0x76ea0000 - 0x76edc000 C:\WINDOWS\system32\RASAPI32.DLL
0x76e50000 - 0x76e62000 C:\WINDOWS\system32\rasman.dll
0x76e70000 - 0x76e9f000 C:\WINDOWS\system32\TAPI32.dll
0x76e40000 - 0x76e4e000 C:\WINDOWS\system32\rtutils.dll
0x71aa0000 - 0x71ab2000 C:\WINDOWS\system32\MPR.dll
0x75f10000 - 0x75f17000 C:\WINDOWS\System32\drprov.dll
0x71ba0000 - 0x71bae000 C:\WINDOWS\System32\ntlanman.dll
0x71c60000 - 0x71c77000 C:\WINDOWS\System32\NETUI0.dll
0x71c20000 - 0x71c60000 C:\WINDOWS\System32\NETUI1.dll
0x71c10000 - 0x71c17000 C:\WINDOWS\System32\NETRAP.dll
0x71b80000 - 0x71b93000 C:\WINDOWS\System32\SAMLIB.dll
0x75f20000 - 0x75f29000 C:\WINDOWS\System32\davclnt.dll
0x77c40000 - 0x77c63000 C:\WINDOWS\system32\msv1_0.dll
0x76d20000 - 0x76d39000 C:\WINDOWS\system32\iphlpapi.dll
0x0ffd0000 - 0x0fff8000 C:\WINDOWS\system32\rsaenh.dll
0x014a0000 - 0x01766000 C:\WINDOWS\system32\msi.dll
0x79170000 - 0x79196000 C:\WINDOWS\system32\MSCOREE.DLL
0x79040000 - 0x79085000 C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
0x01260000 - 0x01296000 C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
0x7c3a0000 - 0x7c41b000 C:\WINDOWS\system32\MSVCP71.dll
0x74dc0000 - 0x74e2c000 C:\WINDOWS\system32\riched20.dll
0x012a0000 - 0x0134a000 C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\2006\I\EncWCRes.dll
0x01770000 - 0x01a45000 C:\WINDOWS\system32\xpsp2res.dll
0x75e40000 - 0x75ef0000 C:\WINDOWS\system32\SXS.DLL
0x01d50000 - 0x01ddc000 C:\WINDOWS\system32\shdoclc.dll
0x7d4b0000 - 0x7d796000 C:\WINDOWS\system32\mshtml.dll
0x74650000 - 0x74677000 C:\WINDOWS\system32\msls31.dll
0x75d50000 - 0x75de1000 C:\WINDOWS\system32\MLANG.dll
0x62900000 - 0x62955000 C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
0x02530000 - 0x0253e000 C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
0x02570000 - 0x025a5000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
0x74910000 - 0x74a40000 C:\WINDOWS\system32\msxml3.dll
0x4d530000 - 0x4d588000 C:\WINDOWS\system32\WINHTTP.dll
0x02ca0000 - 0x02dec000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ConverterCore.dll
0x02df0000 - 0x02eae000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\SolidCore.dll
0x02eb0000 - 0x02f2d000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\MSLUP71.dll
0x02f30000 - 0x02f88000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\MSLUR71.dll
0x76360000 - 0x763aa000 C:\WINDOWS\system32\comdlg32.dll
0x02f90000 - 0x03097000 C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\MFC71LU.DLL
0x5d360000 - 0x5d36f000 C:\WINDOWS\system32\MFC71ITA.DLL
0x031d0000 - 0x032a5000 C:\Programmi\Spybot - Search and Destroy\SDHelper.dll
0x5f210000 - 0x5f227000 C:\WINDOWS\system32\olepro32.dll
0x6d600000 - 0x6d62d000 C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
0x033c0000 - 0x033d8000 C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
0x6af30000 - 0x6af6d000 C:\Programmi\File comuni\Symantec Shared\ccL30.dll
0x033e0000 - 0x03415000 C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
0x7c120000 - 0x7c139000 C:\WINDOWS\system32\ATL71.DLL
0x03530000 - 0x0354d000 C:\PROGRA~1\DOWNLO~1\MDPPH.DLL
0x719d0000 - 0x71a10000 C:\WINDOWS\system32\mswsock.dll
0x66750000 - 0x667a8000 C:\WINDOWS\system32\hnetcfg.dll
0x71a10000 - 0x71a18000 C:\WINDOWS\System32\wshtcpip.dll
0x76ee0000 - 0x76f07000 C:\WINDOWS\system32\DNSAPI.dll
0x76f70000 - 0x76f78000 C:\WINDOWS\System32\winrnr.dll
0x72240000 - 0x72245000 C:\WINDOWS\system32\sensapi.dll
0x76f80000 - 0x76f86000 C:\WINDOWS\system32\rasadhlp.dll
0x75c00000 - 0x75c6e000 C:\WINDOWS\system32\jscript.dll
0x74680000 - 0x746aa000 C:\WINDOWS\system32\msimtf.dll
0x65200000 - 0x65213000 C:\Programmi\Yahoo!\Companion\Installs\cpn\pubmod.dll
0x65000000 - 0x65032000 C:\Programmi\Yahoo!\Companion\Installs\cpn\ypubc.dll
0x325c0000 - 0x325d2000 C:\Programmi\Microsoft Office\OFFICE11\msohev.dll
0x04370000 - 0x043b0000 C:\WINDOWS\system32\iepeers.dll
0x72f70000 - 0x72f96000 C:\WINDOWS\system32\WINSPOOL.DRV
0x66d50000 - 0x66d5c000 C:\WINDOWS\system32\ImgUtil.dll
0x72c90000 - 0x72c99000 C:\WINDOWS\system32\wdmaud.drv
0x72c80000 - 0x72c88000 C:\WINDOWS\system32\msacm32.drv
0x77bb0000 - 0x77bc5000 C:\WINDOWS\system32\MSACM32.dll
0x77ba0000 - 0x77ba7000 C:\WINDOWS\system32\midimap.dll
0x76270000 - 0x762e1000 C:\WINDOWS\system32\mshtmled.dll
0x5e500000 - 0x5e50d000 C:\WINDOWS\system32\PSTOREC.DLL
0x6d590000 - 0x6d5a2000 C:\Programmi\Java\jre1.5.0_06\bin\npjpi150_06.dll
0x6d400000 - 0x6d417000 C:\Programmi\Java\jre1.5.0_06\bin\jpiexp32.dll
0x6d450000 - 0x6d468000 C:\Programmi\Java\jre1.5.0_06\bin\jpishare.dll
0x6d670000 - 0x6d804000 C:\PROGRA~1\Java\JRE15~2.0_0\bin\client\jvm.dll
0x6d280000 - 0x6d288000 C:\PROGRA~1\Java\JRE15~2.0_0\bin\hpi.dll
0x76bb0000 - 0x76bbb000 C:\WINDOWS\system32\PSAPI.DLL
0x6d640000 - 0x6d64c000 C:\PROGRA~1\Java\JRE15~2.0_0\bin\verify.dll

VM Arguments:
jvm_args: -Xbootclasspath/a:C:\PROGRA~1\Java\JRE15~2.0_0\lib\deploy.jar;C:\PROGRA~1\Java\JRE15~2.0_0\lib\plugin.jar -Xmx96m -Djavaplugin.maxHeapSize=96m -Xverify:remote -Djavaplugin.version=1.5.0_06 -Djavaplugin.nodotversion=150_06 -Dbrowser=sun.plugin -DtrustProxy=true -Dapplication.home=C:\PROGRA~1\Java\JRE15~2.0_0 -Djava.protocol.handler.pkgs=sun.plugin.net.protocol -Djavaplugin.vm.options=-Djava.class.path=C:\PROGRA~1\Java\JRE15~2.0_0\classes -Xbootclasspath/a:C:\PROGRA~1\Java\JRE15~2.0_0\lib\deploy.jar;C:\PROGRA~1\Java\JRE15~2.0_0\lib\plugin.jar -Xmx96m -Djavaplugin.maxHeapSize=96m -Xverify:remote -Djavaplugin.version=1.5.0_06 -Djavaplugin.nodotversion=150_06 -Dbrowser=sun.plugin -DtrustProxy=true -Dapplication.home=C:\PROGRA~1\Java\JRE15~2.0_0 -Djava.protocol.handler.pkgs=sun.plugin.net.protocol vfprintf
java_command: (unknown>
Launcher Type: generic

Environment Variables:
CLASSPATH="C:\Programmi\Java\jre1.5.0_02\lib\ext\QTJava.zip"
PATH=C:\PROGRA~1\Java\JRE15~2.0_0\bin;C:\Programmi\Internet Explorer;;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\ATI Technologies\ATI Control Panel;C:\Programmi\File comuni\Ulead Systems\MPEG;C:\PROGRA~1\FILECO~1\SONICS~1\;C:\Programmi\ZipGenius 6\;.
USERNAME=io
OS=Windows_NT
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 4, GenuineIntel



--------------- S Y S T E M ---------------

OS: Windows XP Build 2600 Service Pack 2

CPU:total 2 family 15, cmov, cx8, fxsr, mmx, sse, sse2, ht

Memory: 4k page, physical 1048044k(473904k free), swap 2516860k(2048212k free)

vm_info: Java HotSpot(TM) Client VM (1.5.0_06-b05) for windows-x86, built on Nov 10 2005 11:12:14 by "java_re" with MS VC++ 6.0

*********************
Cosa mi consigli di fare? Grazie.
alfonso
Inviato: Saturday, March 04, 2006 7:38:49 PM

Rank: AiutAmico

Iscritto dal : 10/5/2000
Posts: 19,132
Scarica questo programma e leggi le istruzioni per inserire il log
http://www.aiutamici.com/software/descrizione.asp?CodSw=1175


Collaboratore Aiutamici
mangelo
Inviato: Saturday, March 04, 2006 10:31:13 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Il file salvato dal programma è il seguente:

Logfile of HijackThis v1.99.1
Scan saved at 22.30.11, on 04/03/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\Programmi\Norton Internet Security\ISSVC.exe
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\slserv.exe
C:\Programmi\File comuni\Ulead Systems\DVD\ULCDRSvr.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\Apps\Powercinema\PCMService.exe
C:\apps\ABoard\ABoard.exe
C:\apps\ABoard\AOSD.exe
C:\Programmi\Trust\Trust MD3100 USB ADSL MODEM\CnxDslTb.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0C2.EXE
C:\Programmi\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Programmi\TG 6.0\TrdLaunch.exe
C:\Programmi\TG 6.0\TGWeb.exe
C:\Programmi\TG 6.0\TGOnLine.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\IncrediMail\bin\IncMail.exe
D:\Documents and Settings\io\Documenti\Angelo\Programmi\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tiscali.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://it.rd.yahoo.com/customize/ycomp/defaults/su/*http://it.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://g.msn.it/8SEITIT020100/FRWCompleteAddIns
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Solid Converter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Encarta Web Companion Oggetto helper - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Encarta Web Companion - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: Solid Converter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar1.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Programmi\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32"
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Programmi\Trust\Trust MD3100 USB ADSL MODEM\CnxDslTb.exe"
O4 - HKLM\..\Run: [IncrediMail] C:\Programmi\IncrediMail\bin\IncMail.exe /c
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0C2.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB001" /M "Stylus C64"
O4 - HKLM\..\Run: [TGPro Office] C:\Programmi\TG 6.0\IdxOffice.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
O4 - Global Startup: Avvio veloce di Adobe Reader.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Traduttore di E-Mail.lnk = C:\Programmi\TG 6.0\TrdLaunch.exe
O4 - Global Startup: Traduttore in Internet.lnk = C:\Programmi\TG 6.0\TGWeb.exe
O4 - Global Startup: Traduttore In-Linea.lnk = C:\Programmi\TG 6.0\TGOnLine.exe
O8 - Extra context menu item: &Cerca con Google - res://c:\programmi\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Traduci parola in italiano - res://c:\programmi\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Apri immagine in &Microsoft PhotoDraw - res://C:\PROGRA~1\MICROS~3\Office\1040\phdintl.dll/phdContext.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Link a ritroso - res://c:\programmi\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pagine simili - res://c:\programmi\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Versione cache della pagina - res://c:\programmi\google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmi\File comuni\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Traduttore in Internet - {C873E82E-A38B-45AB-8C74-6F4947BE77B7} - C:\Programmi\TG 6.0\TGWeb.exe
O9 - Extra 'Tools' menuitem: Traduttore in Internet - {C873E82E-A38B-45AB-8C74-6F4947BE77B7} - C:\Programmi\TG 6.0\TGWeb.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe (file missing)
O9 - Extra button: (no name) - SolidConverterPDF - (no file) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\it.htm
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1140715575031
O16 - DPF: {814EA0DA-E0D9-4AA4-833C-A1A6D38E79E9} (DASWebDownload Class) - http://das.microsoft.com/activate/cab/x86/i486/NTANSI/retail/DASAct.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{6FA2527F-276A-4C4C-9D7B-F187A72358D5}: NameServer = 213.205.36.70 213.205.32.70
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter: application/x-internet-signup - {A173B69A-1F9B-4823-9FDA-412F641E65D6} - C:\Programmi\Tiscali\Tiscali Internet\dlls\tiscalifilter.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Programmi\Norton Internet Security\ISSVC.exe
O23 - Service: LEC TranslateDotNet Server - Unknown owner - C:\Programmi\Power Translator\LogoMedia TranslateDotNet Server.exe (file missing)
O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Programmi\File comuni\Ulead Systems\DVD\ULCDRSvr.exe

mangelo
Inviato: Saturday, March 04, 2006 10:32:20 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Il file salvato dal programma è il seguente:

Logfile of HijackThis v1.99.1
Scan saved at 22.30.11, on 04/03/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\Programmi\Norton Internet Security\ISSVC.exe
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\slserv.exe
C:\Programmi\File comuni\Ulead Systems\DVD\ULCDRSvr.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\Apps\Powercinema\PCMService.exe
C:\apps\ABoard\ABoard.exe
C:\apps\ABoard\AOSD.exe
C:\Programmi\Trust\Trust MD3100 USB ADSL MODEM\CnxDslTb.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0C2.EXE
C:\Programmi\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Programmi\TG 6.0\TrdLaunch.exe
C:\Programmi\TG 6.0\TGWeb.exe
C:\Programmi\TG 6.0\TGOnLine.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\IncrediMail\bin\IncMail.exe
D:\Documents and Settings\io\Documenti\Angelo\Programmi\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tiscali.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://it.rd.yahoo.com/customize/ycomp/defaults/su/*http://it.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://g.msn.it/8SEITIT020100/FRWCompleteAddIns
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Solid Converter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Encarta Web Companion Oggetto helper - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Encarta Web Companion - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: Solid Converter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar1.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Programmi\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32"
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Programmi\Trust\Trust MD3100 USB ADSL MODEM\CnxDslTb.exe"
O4 - HKLM\..\Run: [IncrediMail] C:\Programmi\IncrediMail\bin\IncMail.exe /c
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0C2.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB001" /M "Stylus C64"
O4 - HKLM\..\Run: [TGPro Office] C:\Programmi\TG 6.0\IdxOffice.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
O4 - Global Startup: Avvio veloce di Adobe Reader.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Traduttore di E-Mail.lnk = C:\Programmi\TG 6.0\TrdLaunch.exe
O4 - Global Startup: Traduttore in Internet.lnk = C:\Programmi\TG 6.0\TGWeb.exe
O4 - Global Startup: Traduttore In-Linea.lnk = C:\Programmi\TG 6.0\TGOnLine.exe
O8 - Extra context menu item: &Cerca con Google - res://c:\programmi\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Traduci parola in italiano - res://c:\programmi\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Apri immagine in &Microsoft PhotoDraw - res://C:\PROGRA~1\MICROS~3\Office\1040\phdintl.dll/phdContext.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Link a ritroso - res://c:\programmi\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pagine simili - res://c:\programmi\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Versione cache della pagina - res://c:\programmi\google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmi\File comuni\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Traduttore in Internet - {C873E82E-A38B-45AB-8C74-6F4947BE77B7} - C:\Programmi\TG 6.0\TGWeb.exe
O9 - Extra 'Tools' menuitem: Traduttore in Internet - {C873E82E-A38B-45AB-8C74-6F4947BE77B7} - C:\Programmi\TG 6.0\TGWeb.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe (file missing)
O9 - Extra button: (no name) - SolidConverterPDF - (no file) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\it.htm
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1140715575031
O16 - DPF: {814EA0DA-E0D9-4AA4-833C-A1A6D38E79E9} (DASWebDownload Class) - http://das.microsoft.com/activate/cab/x86/i486/NTANSI/retail/DASAct.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{6FA2527F-276A-4C4C-9D7B-F187A72358D5}: NameServer = 213.205.36.70 213.205.32.70
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter: application/x-internet-signup - {A173B69A-1F9B-4823-9FDA-412F641E65D6} - C:\Programmi\Tiscali\Tiscali Internet\dlls\tiscalifilter.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Programmi\Norton Internet Security\ISSVC.exe
O23 - Service: LEC TranslateDotNet Server - Unknown owner - C:\Programmi\Power Translator\LogoMedia TranslateDotNet Server.exe (file missing)
O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Programmi\File comuni\Ulead Systems\DVD\ULCDRSvr.exe

alfonso
Inviato: Saturday, March 04, 2006 11:02:04 PM

Rank: AiutAmico

Iscritto dal : 10/5/2000
Posts: 19,132
Ciao ,
esegui queste operazioni

Disattiva il ripristino di configurazione, leggi qui come fare
http://www.aiutamici.com/software/view.asp?tipo=home&CodSw=257&SH=N

Riavvia in modalità provvisoria, leggi qui come fare
http://www.aiutamici.com/software/view.asp?tipo=home&CodSw=344&SH=N

apri HIJAC THIS ed elimina come indicato in questo articolo
http://www.aiutamici.com/software/descrizione.asp?CodSw=1175
le righe che seguono.

==================================
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe (file missing)
O9 - Extra button: (no name) - SolidConverterPDF - (no file) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\it.htm
-
O23 - Service: LEC TranslateDotNet Server - Unknown owner - C:\Programmi\Power Translator\LogoMedia TranslateDotNet Server.exe (file missing)
==================================


Vai a PANNELLO DI CONTROLLO e clicca su OPZIONI INTERNET
nella finestra che si apre clicca i tre pulsanti
ELIMINA COOKIES - ELIMINA FILE - CANCELLA CRONOOLOGIA

al termine utilizza i programmi AD-AWARE e SPYBOT indicati in questo articolo
http://www.aiutamici.com/software/view.asp?tipo=home&CodSw=388&SH=N

Fai una scansione con questo programma
http://www.aiutamici.com/software/view.asp?tipo=home&CodSw=1286

sempre in modalità provvisoria fai una scansione Antivirus

quindi riavvia il computer e controlla se il problema e risolto, se e tutto OK riattiva il ripristino configurazione disattivato all'inizio di questa procedura e crea un nuovo punto di ripristino, leggi qui alla voce 8
http://www.aiutamici.com/software/view.asp?tipo=home&CodSw=170&SH=N

Fai una scansione con questo programma
http://www.aiutamici.com/software/view.asp?tipo=home&CodSw=931

Collaboratore Aiutamici
mangelo
Inviato: Sunday, March 05, 2006 11:03:48 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Caro Alfonso, ho eseguito con perizia quanto consigliatomi, ma il problema non è ancora risolto. Devo segnalarti inoltre che il programma ETRemover si avvia e circa metà scansione mi appare un errore di Windows e pertanto non riesce a continuare e esce automaticamente.
Ho lanciato il programma HIJAC THIS che mi ha creato il seguente file log:

Logfile of HijackThis v1.99.1
Scan saved at 22.58.07, on 05/03/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\Programmi\Norton Internet Security\ISSVC.exe
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\slserv.exe
C:\Programmi\File comuni\Ulead Systems\DVD\ULCDRSvr.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\RTHDCPL.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\Apps\Powercinema\PCMService.exe
C:\apps\ABoard\ABoard.exe
C:\apps\ABoard\AOSD.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0C2.EXE
C:\Programmi\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
C:\Programmi\TG 6.0\TrdLaunch.exe
C:\Programmi\TG 6.0\TGWeb.exe
C:\Programmi\TG 6.0\TGOnLine.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\io\Documenti\Angelo\Programmi\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tiscali.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://it.rd.yahoo.com/customize/ycomp/defaults/su/*http://it.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://g.msn.it/8SEITIT020100/FRWCompleteAddIns
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Solid Converter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Encarta Web Companion Oggetto helper - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programmi\File comuni\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Encarta Web Companion - {147D6308-0614-4112-89B1-31402F9B82C4} - C:\Programmi\File comuni\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL
O3 - Toolbar: Solid Converter PDF - {259F616C-A300-44F5-B04A-ED001A26C85C} - C:\Programmi\SolidDocuments\SolidConverterPDF\SCPDF\ExploreExtPDF.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar1.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [AzMixerSel] C:\Programmi\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Programmi\File comuni\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32"
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [IncrediMail] C:\Programmi\IncrediMail\bin\IncMail.exe /c
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0C2.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB001" /M "Stylus C64"
O4 - HKLM\..\Run: [TGPro Office] C:\Programmi\TG 6.0\IdxOffice.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
O4 - Global Startup: Avvio veloce di Adobe Reader.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Traduttore di E-Mail.lnk = C:\Programmi\TG 6.0\TrdLaunch.exe
O4 - Global Startup: Traduttore in Internet.lnk = C:\Programmi\TG 6.0\TGWeb.exe
O4 - Global Startup: Traduttore In-Linea.lnk = C:\Programmi\TG 6.0\TGOnLine.exe
O8 - Extra context menu item: &Cerca con Google - res://c:\programmi\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Traduci parola in italiano - res://c:\programmi\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Apri immagine in &Microsoft PhotoDraw - res://C:\PROGRA~1\MICROS~3\Office\1040\phdintl.dll/phdContext.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Link a ritroso - res://c:\programmi\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pagine simili - res://c:\programmi\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Versione cache della pagina - res://c:\programmi\google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Programmi\File comuni\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Traduttore in Internet - {C873E82E-A38B-45AB-8C74-6F4947BE77B7} - C:\Programmi\TG 6.0\TGWeb.exe
O9 - Extra 'Tools' menuitem: Traduttore in Internet - {C873E82E-A38B-45AB-8C74-6F4947BE77B7} - C:\Programmi\TG 6.0\TGWeb.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1140715575031
O16 - DPF: {814EA0DA-E0D9-4AA4-833C-A1A6D38E79E9} (DASWebDownload Class) - http://das.microsoft.com/activate/cab/x86/i486/NTANSI/retail/DASAct.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Filter: application/x-internet-signup - {A173B69A-1F9B-4823-9FDA-412F641E65D6} - C:\Programmi\Tiscali\Tiscali Internet\dlls\tiscalifilter.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Programmi\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Programmi\Norton Internet Security\ISSVC.exe
O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Programmi\File comuni\Ulead Systems\DVD\ULCDRSvr.exe

Grazie della tua cortese attenzione. Angelo
alfonso
Inviato: Monday, March 06, 2006 12:57:07 AM

Rank: AiutAmico

Iscritto dal : 10/5/2000
Posts: 19,132
Il log é pulito da spyware, prova a fare una scansione antivirus on line da questo indirizzo
http://security.symantec.com/sscv6/default.asp?productid=globalsites&langid=it&venid=sym

Collaboratore Aiutamici
kinju
Inviato: Monday, March 06, 2006 11:43:41 AM

Rank: Member

Iscritto dal : 11/26/2005
Posts: 1
<BLOCKQUOTE id=quote><font size=1 face="Sans Serif, Arial, Helvetica" id=quote>quote:<hr height=1 noshade id=quote>
Da un po' di tempo quando chiudo una finestra di internet mi appare questo errore:"L'istruzione a "0x02c63795" ha fatto riferimento alla memoria a "0x0256f238".La memoria non poteva essere "read". Fare clic su Ok per terminare l'applicazione".Chi mi può aiutare a risolvere questo fastidioso problema?
Grazie mille.
<hr height=1 noshade id=quote></BLOCKQUOTE id=quote></font id=quote><font face="Sans Serif, Arial, Helvetica" size=2 id=quote>


Scusate se mi intrometto ma io tempo fa ho avuto lo stesso problema, con la differenza che mi dava sempre il messaggio di errore alla chiusura di windows. Poi ho scoperto che dipendeva da un programma che avevo installato e ho risolto togliendolo. Non so se è la stessa cosa, ma potresti provare ripristinando lo stato del sistema a un momento in cui ancora non ti dava quell' errore. Ciao.
mangelo
Inviato: Monday, March 06, 2006 7:31:18 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Ciao Alfonso
Ho fatto la scansione dal sito che mi hai consigliato ma fortunatamente non ha trovato alcun virus. Visto che il problema persisteva ho provato a disinstallare gli ultimi due programmi che ho caricato, così come consigliato da Kinju. Sembra, dico sembra vada molto meglio,cioè il problema compare meno del solito.
C'è qualche altra possibilità per risolvere il problema o alla fine mi conviene rifformattare tutto? Grazie. Angelo
P.S. Un caro ringraziamento anche a Kinju per il suo interessamento.
kinju
Inviato: Tuesday, March 07, 2006 12:55:19 AM

Rank: Member

Iscritto dal : 11/26/2005
Posts: 1
<BLOCKQUOTE id=quote><font size=1 face="Sans Serif, Arial, Helvetica" id=quote>quote:<hr height=1 noshade id=quote>
Ciao Alfonso
Ho fatto la scansione dal sito che mi hai consigliato ma fortunatamente non ha trovato alcun virus. Visto che il problema persisteva ho provato a disinstallare gli ultimi due programmi che ho caricato, così come consigliato da Kinju. Sembra, dico sembra vada molto meglio,cioè il problema compare meno del solito.
C'è qualche altra possibilità per risolvere il problema o alla fine mi conviene rifformattare tutto? Grazie. Angelo
P.S. Un caro ringraziamento anche a Kinju per il suo interessamento.
<hr height=1 noshade id=quote></BLOCKQUOTE id=quote></font id=quote><font face="Sans Serif, Arial, Helvetica" size=2 id=quote>


Prima di arrivare a formattare puoi provare a fare una pulizia del sistema con questo programma. Prova anche l' opzione "problemi" che dovrebbe correggerti alcuni errori.

http://www.aiutamici.com/software/descrizione.asp?CodSw=1223

Puoi provare anche questi due programmi, se si tratta di qualche problema di windows che è possibile correggere, non ci perdi nulla a provarli prima di formattare. Magari puoi fare prima un punto di ripristino per sicurezza.

http://www.aiutamici.com/software/descrizione.asp?CodSw=1300

http://www.aiutamici.com/software/descrizione.asp?CodSw=1357

Ciao
mangelo
Inviato: Friday, March 10, 2006 4:54:40 PM

Rank: AiutAmico

Iscritto dal : 6/15/2005
Posts: 32
Ciao
ho eseguito quando mi avete detto, ma l'errore ogni tanto riappariva.
Alloro ho provato a disinstallare un programma per volta e alla fine ho scoperto che l'errore era generato dalla toolbar di Google.
Ringrazio Alfonso e Kinju per gli aiuti e gli utili consigli. Grazie. Angelo
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.