Mi potete controllare il Log?
Grazie
Logfile of HijackThis v1.99.0
Scan saved at 11.42.22, on 07/10/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Class - {662B86EF-693C-BA2E-B071-9B2804756906} - C:\WINDOWS\ribik1.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [WinVNC] "C:\Programmi\UltraVNC\winvnc.exe" -servicehelper
O4 - HKLM\..\Run: [EPSON Stylus C62 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C62 Series" /O5 "LPT1:" /M "Stylus C62"
O4 - HKLM\..\Run: [gyhy1.exe] C:\WINDOWS\TEMP\gyhy1.exe
O4 - HKLM\..\Run: [aouei] C:\Documents and Settings\Orto2\Dati applicazioni\ratorefaci\sysrtmvs.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
O4 - Startup: anagrafica su 192.168.0.201.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O12 - Plugin for .spop: C:\Programmi\Internet Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone:
www.adslconnection.nameO15 - Trusted Zone:
www.archiviosex.netO15 - Trusted Zone:
www.otherchance.comO15 - Trusted Zone:
www.redfunny.comO15 - Trusted Zone:
www.softlab.nameO15 - Trusted Zone:
www.xxx-content.nameO16 - DPF: {8C875948-9C60-4381-9248-0DF180542D53} (HbtInstObj) -
http://installs.hotbar.com/installs/hbtools/programs/hbtools.cabO16 - DPF: {A135F0B2-55D1-11D5-A222-0000863345EE} (MedWebX Control) -
http://192.168.0.202/MedWeb/MedWeb.cabO16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) -
http://game10.zylom.com/activex/zylomgamesplayer.cabO16 - DPF: {FBFF6F10-A2FC-9544-745F-A1F75A0501AE} -
http://www.italian-toplist.com/cart/gs/trx0028.exeO16 - DPF: {FBFF6F10-ABCD-9544-832F-A1F75A0501AE} -
http://www.ricerchiamo.net/cart/x/trx78.exeO17 - HKLM\System\CCS\Services\Tcpip\..\{D3827033-236E-4081-866E-1A1EF3319309}: NameServer = 151.99.125.2,151.99.250.2
O17 - HKLM\System\CS1\Services\Tcpip\..\{D3827033-236E-4081-866E-1A1EF3319309}: NameServer = 151.99.125.2,151.99.250.2
O17 - HKLM\System\CS2\Services\Tcpip\..\{D3827033-236E-4081-866E-1A1EF3319309}: NameServer = 151.99.125.2,151.99.250.2
O23 - Service: EPSON Printer Status Agent2 - SEIKO EPSON CORPORATION - C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
O23 - Service: OracleClientCache80 - Unknown - C:\orawin95\BIN\ONRSD80.EXE
O23 - Service: VNC Server - UltraVNC - C:\Programmi\UltraVNC\winvnc.exe