Chiedo il vostro aiuto Premetto di non essere esperto sull'uso del computer, comunque sono invaso da una serie di trojan e virus che oltre ad inibirmi l'uso dell'antivirus (mc.afee)e di Spybot, non mi permettono di cancellare con Adaware e Spydoctor tutto quello che rilevano,una volta dato il comando cancella il computer si riavvia e questo in modalità provvisoria o normale. Vi sarei grato se potreste aiutarmi a risolvere i problemi. Allego log di Hijack
Logfile of HijackThis v1.99.1
Scan saved at 12:39:47 , on 09/09/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Network Associates\Common Framework\FrameworkService.exe
C:\Programmi\Network Associates\VirusScan\VsTskMgr.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Programmi\Trojan\Spyware Doctor\sdhelp.exe
C:\WINDOWS\system32\UStorSrv.exe
C:\WINDOWS\System32\osndyrn.exe
C:\WINDOWS\Explorer.exe
C:\Programmi\Intel\NCS\PROSet\PRONoMgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmi\Philips\Philips Device Transfer Pop-up\PDeviceConn.exe
C:\Programmi\Conexant\AccessRunner ADSL\CnxDslTb.exe
C:\Programmi\File comuni\Network Associates\TalkBack\TBMon.exe
C:\Programmi\Unlocker\UnlockerAssistant.exe
C:\PROGRA~2\PRINTV~1\pvmodule.exe
C:\WINDOWS\System32\WinzAPI32.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\System32\winauth23.exe
C:\Programmi\File comuni\{644369E2-0AFD-1040-0301-041120030027}\Update.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Programmi\Trojan\Spyware Doctor\swdoctor.exe
C:\Programmi\BHODemon 2\BHODemon.exe
C:\Programmi\Internet Explorer\iexplore.exe
C:\zzazzzzz\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.it/R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
F2 - REG:system.ini: Shell=Explorer.exe osndyrn.exe
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\userinit.exe,osndyrn.exe
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Programmi\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [PSDrvCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [LaunchPDeviceConn] "C:\Programmi\Philips\Philips Device Transfer Pop-up\PDeviceConn.exe"
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Programmi\Conexant\AccessRunner ADSL\CnxDslTb.exe"
O4 - HKLM\..\Run: [ShStatEXE] "C:\Programmi\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Programmi\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Programmi\File comuni\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Programmi\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [cpuxls] bolxeft.exe
O4 - HKLM\..\Run: [PVModule] C:\PROGRA~2\PRINTV~1\pvmodule.exe
O4 - HKLM\..\Run: [Windows Communicator for NT/XP] osndyrn.exe
O4 - HKLM\..\Run: [Windows API Verifier] WinzAPI32.exe
O4 - HKLM\..\Run: [pnsmon] rundll32.exe C:\WINDOWS\System32\pnsmon.dll,start
O4 - HKLM\..\Run: [Windows Microsoft Verifier] winauth23.exe
O4 - HKLM\..\RunServices: [cpuxls] bolxeft.exe
O4 - HKLM\..\RunServices: [Microsoft Update] Sygate.exe
O4 - HKLM\..\RunServices: [Windows modez Verifier] winl0g0z.exe
O4 - HKLM\..\RunServices: [Mgsgi service] qxous.exe
O4 - HKLM\..\RunServices: [Windows API Verifier] WinzAPI32.exe
O4 - HKLM\..\RunServices: [Windows Microsoft Verifier] winauth23.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Programmi\Trojan\Spyware Doctor\swdoctor.exe" /Q
O4 - HKCU\..\Run: [Windows Communicator for NT/XP] osndyrn.exe
O4 - HKCU\..\RunServices: [Microsoft Server Client For Windows NT] msclt.exe
O4 - Startup: BHODemon 2.0.lnk = C:\Programmi\BHODemon 2\BHODemon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = ?
O4 - Global Startup: Gestore Chiave.lnk = C:\ITALWIN\KeyServer.exe
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O17 - HKLM\System\CCS\Services\Tcpip\..\{05C9319F-31E1-47E0-9589-9C80BE61D408}: NameServer = 85.37.17.16 151.99.125.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{05C9319F-31E1-47E0-9589-9C80BE61D408}: NameServer = 85.37.17.16 151.99.125.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{05C9319F-31E1-47E0-9589-9C80BE61D408}: NameServer = 85.37.17.16 151.99.125.1
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Programmi\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Programmi\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Programmi\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Programmi\Trojan\Spyware Doctor\sdhelp.exe
O23 - Service: UStorage Server Service - OTi - C:\WINDOWS\system32\UStorSrv.exe