Ciao Alfonso, da un paio di giorni mi si aprono in continuazione finestre del firewall ZoneAlarm che mi segnalano dei tentativi di accesso, mi puoi controllare il log.... grazie
Logfile of HijackThis v1.99.0
Scan saved at 19.39.04, on 01/06/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
H:\WINDOWS\System32\smss.exe
H:\WINDOWS\system32\winlogon.exe
H:\WINDOWS\system32\services.exe
H:\WINDOWS\system32\lsass.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\Programmi\Ahead\InCD\InCDsrv.exe
H:\WINDOWS\system32\LEXBCES.EXE
H:\WINDOWS\system32\spoolsv.exe
H:\WINDOWS\system32\LEXPPS.EXE
H:\Programmi\Eset\nod32krn.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\system32\ZoneLabs\vsmon.exe
H:\WINDOWS\Explorer.EXE
H:\WINDOWS\SOUNDMAN.EXE
H:\Programmi\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
H:\Programmi\Ahead\InCD\InCD.exe
H:\Programmi\Eset\nod32kui.exe
H:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
H:\Programmi\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
H:\PAPRPORT\fbdirect.exe
H:\Programmi\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
H:\PAPRPORT\FBDirect.exe
H:\Programmi\Winamp\winampa.exe
H:\Programmi\Zone Labs\ZoneAlarm\zlclient.exe
H:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
H:\Programmi\Messenger\msmsgs.exe
H:\Programmi\ADSL\StarModem ADSL USB MODEM\dslmon.exe
H:\Documents and Settings\PAOLO\Documenti\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.libero.it/R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [RemoteControl] "H:\Programmi\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [InCD] H:\Programmi\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [NeroFilterCheck] H:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [nod32kui] "H:\Programmi\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] H:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [CamMonitor] H:\Programmi\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [fbdirect] H:\PAPRPORT\fbdirect.exe
O4 - HKLM\..\Run: [OpwareSE2] "H:\Programmi\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [PP7600usb] H:\PAPRPORT\FBDirect.exe
O4 - HKLM\..\Run: [WinampAgent] H:\Programmi\Winamp\winampa.exe
O4 - HKLM\..\Run: [Zone Labs Client] H:\Programmi\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [MSMSGS] "H:\Programmi\Messenger\msmsgs.exe" /background
O4 - Global Startup: DSLMON.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = H:\Programmi\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Programmi\Messenger\msmsgs.exe
O23 - Service: InCD Helper - Ahead Software AG - H:\Programmi\Ahead\InCD\InCDsrv.exe
O23 - Service: LexBce Server - Lexmark International, Inc. - H:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NOD32 Kernel Service - Eset - H:\Programmi\Eset\nod32krn.exe
O23 - Service: TrueVector Internet Monitor - Zone Labs, LLC - H:\WINDOWS\system32\ZoneLabs\vsmon.exe