Ciao R16, Dopo un mese o un mese e mezzo Sembra Che il mio PC abbia nostalgia di te, io e sfacciatamente ti contatto ancora per i tuoi santi consigli: Ho fatto il log di hiackt Dagli un'occhiata per favore, ciao
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23.55.59, il 02/10/2009
Piattaforma: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16876)
Boot mode: Normal
I processi in esecuzione:
C: \ WINDOWS \ System32 \ smss.exe
C: \ WINDOWS \ system32 \ winlogon.exe
C: \ WINDOWS \ system32 \ services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ svchost.exe
C: \ WINDOWS \ System32 \ svchost.exe
C: \ WINDOWS \ system32 \ spoolsv.exe
C: \ Programmi \ Netropa \ Multimedia Keyboard \ nhksrv.exe
C: \ Programmi \ File comuni \ Acronis \ Schedule2 \ schedul2.exe
C: \ Programmi \ File comuni \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ WINDOWS \ system32 \ bgsvcgen.exe
C: \ Programmi \ TOSHIBA \ ConfigFree \ CFSvcs.exe
C: \ WINDOWS \ System32 \ svchost.exe
C: \ WINDOWS \ system32 \ FsUsbExService.Exe
C: \ Programmi \ Java \ jre6 \ bin \ jqs.exe
C: \ Programmi \ File comuni \ Microsoft Shared \ VS7Debug \ mdm.exe
C: \ Programmi \ File comuni \ Nero \ Nero BackItUp 4 \ NBService.exe
C: \ WINDOWS \ Explorer.EXE
C: \ WINDOWS \ system32 \ wbem \ wmiapsrv.exe
C: \ WINDOWS \ system32 \ hkcmd.exe
C: \ WINDOWS \ system32 \ hkcmd.exe
C: \ WINDOWS \ AGRSMMSG.exe
C: \ Programmi \ Apoint2K \ SynTPEnh.exe
C: \ Programmi \ TOSHIBA \ E-KEY \ CeEKey.exe
C: \ Programmi \ TOSHIBA \ TouchPad \ TPTray.exe
C: \ Programmi \ Apoint2K \ Apntex.exe
C: \ WINDOWS \ system32 \ TCtrlIOHook.exe
C: \ WINDOWS \ system32 \ TPSMain.exe
C: \ Programmi \ TOSHIBA \ TOSHIBA Zooming Utility \ SmoothView.exe
C: \ Programmi \ TOSHIBA \ TOSHIBA Controls \ TFncKy.exe
C: \ WINDOWS \ system32 \ CTFMON.EXE
C: \ Programmi \ Google \ GoogleToolbarNotifier \ GoogleToolbarNotifier.exe
C: \ Programmi \ Messenger \ msmsgs.exe
C: \ WINDOWS \ system32 \ TPSBattM.exe
C: \ Programmi \ Trend Micro \ HijackThis \ HijackThis.exe
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page =
http://www.google.it/ - R1 HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157 - R1 HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896 - R1 HKLM \ Software \ Microsoft \ Internet Explorer \ Main, (Default) =
http://g.msn.it/0SEITIT/SAOS01?FORM=TOOLBR - R0 HKLM \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName = Collegamenti
O2 - BHO: Class dsWebAllowBHO - (2F85D76C-0569-466F-A488-493E6BD0E955) - C: \ Programmi \ Windows Desktop Search \ dsWebAllow.dll
O2 - BHO: IEVkbdBHO - (59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C) - C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ ievkbd.dll
O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - C: \ Programmi \ Google \ Google Toolbar \ GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Programmi \ Google \ GoogleToolbarNotifier \ 5.3.4501.1418 \ swg.dll
O2 - BHO: Windows Live Toolbar Helper - (BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Programmi \ Windows Live Toolbar \ msntb.dll
O2 - BHO: Google Dictionary sdch compressione - (C84D72FE-E17D-4195-BB24-76C02E2E7C4E) - C: \ Programmi \ Google \ Google Toolbar \ componenti \ fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Java (tm) Plug-In 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C: \ Programmi \ Java \ jre6 \ bin \ jp2ssv.dll
O2 - BHO: BHO filtro link - (E33CF602-D945-461A-83F0-819F76A199F8) - C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - (E7E6F031-17CE-4C07-BC86-EABFE594F69C) - C: \ Programmi \ Java \ jre6 \ lib \ deploy \ jqs \ IE \ jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - (E99421FB-68DD-40F0-B4AC-B7027CAE2F1A) - C: \ Programmi \ EPSON \ EPSON Web-To-Page \ EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - (EE5D279F-081B-4404-994D-C6B60AAEBA6D) - C: \ Programmi \ EPSON \ EPSON Web-To-Page \ EPSON Web-To-Page.dll
O3 - Toolbar: Windows Live Toolbar - (BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Programmi \ Windows Live Toolbar \ msntb.dll
O3 - Toolbar: Google Toolbar - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - C: \ Programmi \ Google \ Google Toolbar \ GoogleToolbar_32.dll
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ WINDOWS \ system32 \ hkcmd.exe
O4 - HKLM \ .. \ Run: [HotKeysCmds] C: \ WINDOWS \ system32 \ hkcmd.exe
O4 - HKLM \ .. \ Run: [nwiz] AGRSMMSG.exe
O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Programmi \ Apoint2K \ SynTPEnh.exe
O4 - HKLM \ .. \ Run: [CeEKEY] C: \ Programmi \ TOSHIBA \ E-KEY \ CeEKey.exe
O4 - HKLM \ .. \ Run: [TPNF] C: \ Programmi \ TOSHIBA \ TouchPad \ TPTray.exe
O4 - HKLM \ .. \ Run: [hwsetup] C: \ Programmi \ TOSHIBA \ TOSHIBA Applet \ HWSetup.exe hwsetup
O4 - HKLM \ .. \ Run: [SVPWUTIL] C: \ Programmi \ Toshiba \ Windows Utilities \ SVPWUTIL.exe SVPwUTIL
O4 - HKLM \ .. \ Run: [TCtryIOHook] TCtrlIOHook.exe
O4 - HKLM \ .. \ Run: [TPSMain] TPSMain.exe
O4 - HKLM \ .. \ Run: [SmoothView] C: \ Programmi \ TOSHIBA \ TOSHIBA Zooming Utility \ SmoothView.exe
O4 - HKLM \ .. \ Run: [avast!] TFncKy.exe
O4 - HKLM \ .. \ Run: [AVP] "C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ avp.exe"
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Programmi \ QuickTime \ qttask.exe"-atboottime
O4 - HKLM \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE
O4 - HKLM \ .. \ Run: [swg] "C: \ Programmi \ Google \ GoogleToolbarNotifier \ GoogleToolbarNotifier.exe"
O4 - HKLM \ .. \ Run: [MsnMsgr] "C: \ Programmi \ Messenger \ msmsgs.exe" / background
O4 - HKUS \ S-1-5-18 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE (User 'SYSTEM')
O4 - HKUS \. DEFAULT \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE (User 'Default')
O8 - Extra context menu item: & MSN Search - res: / / C: \ Programmi \ MSN Toolbar Suite \ TB \ 02.05.0000.1082 \ it-it \ msntb.dll / search.htm
O8 - Extra context menu item: & Windows Live Search - res: / / C: \ Programmi \ Windows Live Toolbar \ msntb.dll / search.htm
O8 - Extra context menu item: Add to Windows & Live Favorites -
http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Aggiungi ad Anti-Banner - C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ ie_banner_deny.htm
O8 - Extra context menu item: E & sporta in Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office10 \ EXCEL.EXE/3000
O9 - Extra button: & Tastiera Virtuale - (4248FE82-7FCB-46AC-B270-339F08212110) - C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ klwtbbho.dll
O9 - Extra button: Ricerche - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ MICROS ~ 2 \ OFFICE11 \ REFIEBAR.DLL
O9 - Extra button: C & URL ontrollo - (CCF151D8-D089-449F-A5A4-D9909053F20F) - C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ klwtbbho.dll
O9 - Extra button: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programmi \ Messenger \ msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Programmi \ Messenger \ msmsgs.exe
O16 - DPF: (E2883E8F-472 f-4FB0-9522-AC9BF37916A7) -
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab - O17 HKLM \ System \ CCS \ Services \ Tcpip \ .. \ (67D109F3-434F-4B71-9500-5CF048113151): NameServer = 85.37.17.52 85.38.28.92
O20 - AppInit_DLLs: C: \ PROGRA ~ 1 \ KASPER ~ 1 \ KASPER ~ 2 \ mzvkbd3.dll, C: \ PROGRA ~ 1 \ KASPER ~ 1 \ KASPER ~ 2 \ kloehk.dll
O20 - Winlogon Notify:! SASWinLogon - C: \ Programmi \ SUPERAntiSpyware \ SASWINLO.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C: \ Programmi \ File comuni \ Acronis \ Schedule2 \ schedul2.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C: \ Programmi \ File comuni \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C: \ Programmi \ Kaspersky Lab \ Kaspersky Internet Security 2010 \ avp.exe
O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ WINDOWS \ system32 \ bgsvcgen.exe
O23 - Service: ConfigFree Service (CFSvcs) - Toshiba Corporation - C: \ Programmi \ TOSHIBA \ ConfigFree \ CFSvcs.exe
O23 - Service: FsUsbExService - Teruten - C: \ WINDOWS \ system32 \ FsUsbExService.Exe
O23 - Service: Servizio di Google Update (gupdate1c9a702bf95dc54) (gupdate1c9a702bf95dc54) - Google Inc. - C: \ Programmi \ Google \ Update \ GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C: \ Programmi \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C: \ Programmi \ Java \ jre6 \ bin \ jqs.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C: \ Programmi \ File comuni \ Nero \ Nero BackItUp 4 \ NBService.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C: \ Programmi \ Netropa \ Multimedia Keyboard \ nhksrv.exe
O23 - Service: - Nokia. - C: \ Programmi \ PC Connectivity Solution \ ServiceLayer.exe
--
End of file - 8785 bytes