<blockquote id="quote"><font size="1" face="Verdana, Arial, Helvetica" id="quote">citazione:<hr height="1" noshade id="quote"><i>Messaggio inserito da crazy.cat</i>
<br />Fai una scansione con questo, ti permette di salvare il log della scansione in un file di testo, lo apri e posti il contenuto qui
http://www.spywareinfo.com/~merijn/files/HijackThis.exe <hr height="1" noshade id="quote"></blockquote id="quote"></font id="quote">
Logfile of HijackThis v1.97.7
Scan saved at 17.11.56, on 18/06/04
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSYSTEMKERNEL32.DLL
C:WINDOWSSYSTEMMSGSRV32.EXE
C:WINDOWSSYSTEMSPOOL32.EXE
C:WINDOWSSYSTEMMPREXE.EXE
C:WINDOWSSYSTEMMSTASK.EXE
C:PROGRAMMIEXECUTIVE SOFTWAREDISKEEPERLITEDKSERVICE.EXE
C:WINDOWSSYSTEMmmtask.tsk
C:WINDOWSEXPLORER.EXE
C:POWER95VI_GRM.EXE
C:WINDOWSTASKMON.EXE
C:WINDOWSSYSTEMSYSTRAY.EXE
C:PROGRAMMINORTON ANTIVIRUSNAVAPW32.EXE
C:WINDOWSSYSTEMCNXDSLTB.EXE
C:WINDOWSSYSTEMSTIMON.EXE
C:WINDOWSSYSTEMWMIEXE.EXE
C:PROGRAMMISPYWAREGUARDSGMAIN.EXE
C:PROGRAMMIHEWLETT-PACKARDDIGITAL IMAGINGBINHPOTDD01.EXE
C:PROGRAMMIHEWLETT-PACKARDDIGITAL IMAGINGBINHPOHMR08.EXE
C:WINDOWSWEBSHOTS.SCR
C:PROGRAMMISPYWAREGUARDSGBHP.EXE
C:PROGRAMMIHEWLETT-PACKARDDIGITAL IMAGINGBINHPOEVM08.EXE
C:WINDOWSSYSTEMHPZIPM12.EXE
C:PROGRAMMIHEWLETT-PACKARDDIGITAL IMAGINGBINHPOSTS08.EXE
C:WINDOWSSYSTEMRNAAPP.EXE
C:WINDOWSSYSTEMTAPISRV.EXE
C:PROGRAMMIMICROSOFT OFFICEOFFICEEXCEL.EXE
C:PROGRAMMIINTERNET EXPLORERIEXPLORE.EXE
C:PROGRAMMIUTILITIESHIJACKTHIS.EXE
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page =
http://www.google.it/
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Collegamenti
F1 - win.ini: load=C:POWER95vi_grm.exe
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:ProgrammiNorton AntiVirusNavShExt.dll
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:PROGRAMMIADOBEACROBAT 5.0READERACTIVEXACROIEHELPER.OCX
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:PROGRAMMISPYWAREGUARDDLPROTECT.DLL
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:ProgrammiNorton AntiVirusNavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSYSTEMMSDXM.OCX
O4 - HKLM..Run: [TaskMonitor] C:WINDOWS askmon.exe
O4 - HKLM..Run: [SystemTray] SysTray.Exe
O4 - HKLM..Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM..Run: [NAV Agent] C:PROGRA~1NORTON~1NAVAPW32.EXE
O4 - HKLM..Run: [ICSMGR] ICSMGR.EXE
O4 - HKLM..Run: [CnxDslTaskBar] C:WINDOWSSYSTEMCnxDslTb.exe
O4 - HKLM..Run: [StillImageMonitor] C:WINDOWSSYSTEMSTIMON.EXE
O4 - HKLM..Run: [Symantec NetDriver Monitor] C:PROGRA~1SYMANTECLIVEUP~1SNDMON.EXE
O4 - HKLM..RunServices: [ScriptBlocking] "C:ProgrammiFile comuniSymantec SharedScript BlockingSBServ.exe" -reg
O4 - HKLM..RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM..RunServices: [SchedulingAgent] C:WINDOWSSYSTEMmstask.exe
O4 - HKLM..RunServices: [DkService] C:ProgrammiExecutive SoftwareDiskeeperLiteDkService.exe
O4 - Startup: Microsoft Office.lnk = C:ProgrammiMicrosoft OfficeOfficeOSA9.EXE
O4 - Startup: EPSON Controllo in background.lnk = C:ESM2STMS.exe
O4 - Startup: SpywareGuard.lnk = C:ProgrammiSpywareGuardsgmain.exe
O4 - Startup: hpoddt01.exe.lnk = C:ProgrammiHewlett-PackardDigital Imaginginhpotdd01.exe
O4 - Startup: hp psc 1000 series.lnk = C:ProgrammiHewlett-PackardDigital Imaginginhpohmr08.exe
O4 - Startup: Webshots.lnk = C:ProgrammiWebshotsLauncher.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://download.macromedia.com/pub/shoc ... wflash.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) -
http://it.f1.pg.photos.yahoo.com/ocx/us ... r1_9us.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
http://download.macromedia.com/pub/shoc ... tor/sw.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) -
http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) -
http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoftware.com/activescan/as5/asinst.cab
<blockquote id="quote"><font size="1" face="Verdana, Arial, Helvetica" id="quote">citazione:<hr height="1" noshade id="quote">
Scarica e aggiorna anche Spybot e poi fai la scansione e pulizia
http://www.safer-networking.org/index.p ... e=download
Aspetto il log e poi vediamo come andare avanti
<hr height="1" noshade id="quote"></blockquote id="quote"></font id="quote">
c'è la versione in italiano?