Si, proprio così! Quanado avvio il sistema (XP) dopo aver scelto con ke utente connettermi, mi esce una specie di bluescreen con il suggerimento di usare Spyware Doctor per risolvere il problema, dopodiké (aspettando un bel po' di tempo) mi appare il desktop "lampeggiante" nascondendo così le dune desertike scelte come sfondo. Le ho provate tutte ma non riesco a risolvere il problema. In più, il sistema mi sembra piuttosto rallentato.
Logfile of HijackThis v1.98.2
Scan saved at 16.34.10, on 09/05/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Alwil Software\Avast4\aswUpdSv.exe
C:\Programmi\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\oodag.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\anvshell.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Programmi\Alwil Software\Avast4\ashWebSv.exe
C:\Programmi\Logitech\MouseWare\system\em_exec.exe
C:\Programmi\Sony Ericsson\Mobile\audevicemgr.exe
C:\PROGRA~1\SONYER~1\Mobile\CONNEC~1\CONNMN~1.EXE
c:\Programmi\Intuwave Ltd\Shared\mRouterRunTime\mRouterRuntime.exe
C:\PROGRA~1\SONYER~1\Mobile\MOBILE~1\EPMWOR~1.EXE
C:\Programmi\Alwil Software\Avast4\ashSimpl.exe
C:\Programmi\mozilla.org\Mozilla\mozilla.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Diego\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http:\\www.MSN.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://10.0.0.2/R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [anvshell] anvshell.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Outpost Firewall] "C:\Programmi\Agnitum\Outpost Firewall 1.0\outpost.exe" /waitservice
O4 - HKLM\..\Run: [win32 system server] c:\windows\system32\winserver.exe
O4 - HKLM\..\RunServices: [win32 system server] c:\windows\system32\winserver.exe
O4 - HKCU\..\Run: [win32 system server] c:\windows\system32\winserver.exe
O4 - HKCU\..\Run: [Spyware Begone] C:\programmi\freescan\freescan.exe -FastScan
O4 - Global Startup: Monitor conn. telefonica.lnk = ?
O4 - Global Startup: OptiCAL Startup.lnk = C:\Programmi\PANTONE COLORVISION\OptiCAL\OptiCAL.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O10 - Unknown file in Winsock LSP: c:\programmi\adwareremovergold.com\adware remover gold\apptoport.dll
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) -
http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cabO16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{29081BD0-6FB2-4B0E-9EEC-43090FDEE916}: NameServer = 69.50.176.156,195.225.176.31
O17 - HKLM\System\CCS\Services\Tcpip\..\{5AD2A209-43F4-40C3-B967-1D01C9B2E52A}: NameServer = 69.50.176.156,195.225.176.31
O17 - HKLM\System\CCS\Services\Tcpip\..\{A27F870D-C9AD-4147-A759-18428EB04610}: NameServer = 69.50.176.156,195.225.176.31
O17 - HKLM\System\CCS\Services\Tcpip\..\{C91BCF3F-7A7A-4F20-9200-01BEA7F5DB99}: NameServer = 69.50.176.156,195.225.176.31
O17 - HKLM\System\CS1\Services\Tcpip\..\{29081BD0-6FB2-4B0E-9EEC-43090FDEE916}: NameServer = 69.50.176.156,195.225.176.31
O17 - HKLM\System\CS2\Services\Tcpip\..\{29081BD0-6FB2-4B0E-9EEC-43090FDEE916}: NameServer = 69.50.176.156,195.225.176.31
Grazie in anticipo se qualcuno saprà aiutarmi.
Diego
<img src=icon_smile.gif border=0 align=middle>