NO SONO UN ESPERTO
ma sicuramente ho dei problemi nel pc,
ho un problema con task manager (disistallato dall’amministratore "sono io") poi explorer.exe ha dei problemi, no mi si apre la pagina di windows update...CHE DEVO FARE????
Logfile of HijackThis v1.99.1
Scan saved at 4.45.11, on 06/05/2005
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\winnt\System32\smss.exe
C:\winnt\system32\csrss.exe
C:\winnt\system32\winlogon.exe
C:\winnt\system32\services.exe
C:\winnt\system32\lsass.exe
C:\winnt\system32\svchost.exe
C:\winnt\system32\spoolsv.exe
C:\WINNT\system32\DRIVERS\CDANTSRV.EXE
C:\WINNT\System32\svchost.exe
C:\winnt\system32\hidserv.exe
C:\WINNT\System32\NMSSvc.exe
C:\OfficeScan NT\ntrtscan.exe
C:\winnt\system32\MSTask.exe
C:\OfficeScan NT\tmlisten.exe
C:\winnt\System32\WBEM\WinMgmt.exe
C:\winnt\system32\PROMon.exe
C:\WINNT\System32\igfxtray.exe
C:\WINNT\System32\hkcmd.exe
C:\OfficeScan NT\pccntmon.exe
C:\Programmi\QuickTime\qttask.exe
C:\Programmi\Java\jre1.5.0_01\bin\jusched.exe
C:\winnt\system32\internat.exe
C:\Programmi\Spyware Doctor\swdoctor.exe
C:\Programmi\WinZip\WZQKPICK.EXE
C:\winnt\explorer.exe
C:\Programmi\LimeWire\LimeWire.exe
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Administrator\Impostazioni locali\Temp\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://g.msn.it/0SEITIT/SAOS01R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.pcw.itR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.pcw.itR0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.it/R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [PROMon.exe] PROMon.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\OfficeScan NT\pccntmon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DeluxeCD] C:\WINNT\system32\cdplayer.exe -tray
O4 - HKLM\..\Run: [Olympic] C:\Documents and Settings\Administrator\Dati applicazioni\sgrunt\IE4321.exe
O4 - HKLM\..\Run: [sm] C:\winnt\sm_exe.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programmi\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [winshost.exe] C:\winnt\system32\winshost.exe
O4 - HKCU\..\Run: [keydrv.exe] C:\winnt\system32\winsystems.exe
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Programmi\Spyware Doctor\swdoctor.exe" /Q
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Programmi\WinZip\WZQKPICK.EXE
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\winnt\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\winnt\web\related.htm
O14 - IERESET.INF: START_PAGE_URL=http://www.pcw.it
O16 - DPF: {15D0E439-4E58-45E1-A9C1-0B1B16749A3C} -
http://akamai.downloadv3.com/binaries/IA/netcmp32_EN.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com/download/msnmessengersetupdownloader.cabO16 - DPF: {B4E0F9CB-BC06-4A33-BBB3-F75F16B6FF5E} (Tristan Class) -
http://htmldialer.parisvoyeur.com/CABSPOLY/cd/1,0,3,8/it/Iseult.cabO17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = Dominio.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = Dominio.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = Dominio.local
O20 - Winlogon Notify: igfxcui - C:\winnt\SYSTEM32\igfxsrvc.dll
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINNT\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Servizio amministrativo di Gestione disco logico (dmadmin) - VERITAS Software Corp. - C:\winnt\System32\dmadmin.exe
O23 - Service: Intel(R) NMS (NMSSvc) - Intel Corporation - C:\WINNT\System32\NMSSvc.exe
O23 - Service: OfficeScanNT RealTime Scan (ntrtscan) - Trend Micro Inc. - C:\OfficeScan NT\ntrtscan.exe
O23 - Service: OfficeScanNT Listener (tmlisten) - Unknown owner - C:\OfficeScan NT\tmlisten.exe