Problema Impossibile Cancellarlo...!Aiutatemi!

ReVinx

Utente Attivo
Autore del topic
11 Marzo 2008
462
0
Miglior risposta
0
Ciao raga mio fratello ha scaricato causalmente il file Malware Defender 2009 è un antivirus che accompare ogni 2 sec e da molto fastidio io di antivirus già c'è lò e mi trovo bene con quello che avevo prima ora ho tentato in tutti i modi di cancellare qst nuovo tramite il panello di controllo,start,risorse del computer e dal desktop MA...NIENTE!!!!!! mi ricompare sempre come devo fare!!?!!?
 
Raga nn so nnt ha ftt tt mio fratellodi 9 anni!
Ehm Welictus il link che hai postato non serve tanto eh... nn dice nnt di interessante x rimuoverlo.. e poi primadi postare hoercato con google!
 
Allora probabilmente è un virus prova a fare una scansione del pc con il tuo antivirus se non trova niente scaricati SpyBot Search & Destroy che elimina i spyware forse così dovrebbe togliersi.
 
no?
Come rimuovere da soli Malware Defender 2009

File relativi all’infezione (Malware Defender 2009):

MalwareDefender2009[1].exe
win.exe
malwaredef.exe
hdddriver.dll
jzteaddubm.dll
netdriver.dll


Le librerie Dynamic link utilizzano (Malware Defender 2009):

hdddriver.dll
jzteaddubm.dll
netdriver.dll
Eseguibili da eliminare (Malware Defender 2009):

MalwareDefender2009[1].exe
win.exe
malwaredef.exe


Rimozione delle entrate del registro (Malware Defender 2009):

MICROSOFT\WINDOWS\CURRENTVERSION\RUN\malwaredef
 
Che mene faccio di tutti quei link??
 
cancella i file che stanno scritti...
per farlo credo che tu debba prima terminare il processo di questo virus, in quanto se resta aperto non puoi eliminarlo!.
 
Ma Io Sn Andato In Questo File Cioè Ho Cancellato La Cartella e i File Ma nnt uffa...!
 
Lo So Sto Da Ieri a Cancellarlo Ma Nnt ... Uff..!
 
Nnt e ancora NNT!!!!!!!!!!!!!! ho provato in tutti i modi che mi avete detto ma nnt!!!!!!!
 
Nnt e ancora NNT!!!!!!!!!!!!!! ho provato in tutti i modi che mi avete detto ma nnt!!!!!!!
Secondo me te non hai voglia di leggere e di metterti un po li, le guide che ti hanno postato dicono come eliminare il problema, ma caro mio non si può risolvere tutto in un secondo, tanto meno noi facciamo miracoli.

Ti ho detto, visto che manco l'hai fatto e poi dici "ho provto tT i metdi poxxibili ma nnT!1!1!" scarica hijackthis da
Perfavore, Entra oppure Registrati per vedere i Link!
installa, e quando sei nel programma fai "
Do a system scan and save log file", e dopo di che ti uscirà un log, copia il contenuto e postalo qui. Se posti un altra volta messaggi del genere quando ti diciamo come fare, chiudo il topic.
 
Angel Scsm Cmq Ecco Ora Te Lo Posto:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18.22.56, on 12/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Programmi\RelevantKnowledge\rlvknlg.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Programmi\Java\jre6\bin\jqs.exe
C:\Documents and Settings\All Users\Dati applicazioni\KeenfinderSrch\keenfinder137.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\mdm.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\PixArt\PAC207\Monitor.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\wcenter.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\ctfmon.exe
C:\documents and settings\michele\impostazioni locali\dati applicazioni\kiaos.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\KeenfinderSrch\keenfinder.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Programmi\Windows Live\Messenger\usnsvc.exe
C:\Programmi\Windows Live\Messenger\msnmsgr.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
Perfavore, Entra oppure Registrati per vedere i Link!

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
Perfavore, Entra oppure Registrati per vedere i Link!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
Perfavore, Entra oppure Registrati per vedere i Link!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Perfavore, Entra oppure Registrati per vedere i Link!

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
Perfavore, Entra oppure Registrati per vedere i Link!

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
Perfavore, Entra oppure Registrati per vedere i Link!

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
Perfavore, Entra oppure Registrati per vedere i Link!

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Programmi\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
R3 - URLSearchHook: PHPNukeIT Toolbar - {2c965f3f-8efd-4bfc-a2c5-1672845fdbbf} - C:\Programmi\PHPNukeIT\tbPHP1.dll
O2 - BHO: PHPNukeIT Toolbar - {2c965f3f-8efd-4bfc-a2c5-1672845fdbbf} - C:\Programmi\PHPNukeIT\tbPHP1.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Programmi\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Guida per l'accesso a Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmi\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programmi\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Programmi\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: {eace9a35-a38e-df0a-2fb4-b27fd627e8ef} - {fe8e726d-f72b-4bf2-a0fd-e83a53a9ecae} - C:\WINDOWS\system32\jjhkmg.dll
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Programmi\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: PHPNukeIT Toolbar - {2c965f3f-8efd-4bfc-a2c5-1672845fdbbf} - C:\Programmi\PHPNukeIT\tbPHP1.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
O4 - HKLM\..\Run: [RelevantKnowledge] C:\Programmi\RelevantKnowledge\rlvknlg.exe -boot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [14010409] rundll32.exe "C:\WINDOWS\system32\tukugave.dll",b
O4 - HKLM\..\Run: [CPM17323795] Rundll32.exe "c:\windows\system32\bolanefi.dll",a
O4 - HKLM\..\Run: [CHIN PING PHONE PILE] C:\Documents and Settings\All Users\Dati applicazioni\Proxy Long Chin Ping\cool sign.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [malwaredef] C:\Programmi\Malware Defender 2009\malwaredef.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [programnoun] C:\DOCUME~1\Michele\DATIAP~1\MODEPA~1\SoftwareShow.exe
O4 - HKCU\..\Run: [kiaos] "c:\documents and settings\michele\impostazioni locali\dati applicazioni\kiaos.exe" kiaos
O4 - HKCU\..\Run: [updater] "C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe" /u
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\SHOCKW~1\SWHELP~3.EXE -Update -1103470 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; SIMBAR={FA9B35FB-A284-4895-A1BA-C621421BFF3A}; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; InfoPath.2)" -"http://www.habbo.it/client"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Programmi\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) -
Perfavore, Entra oppure Registrati per vedere i Link!

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) -
Perfavore, Entra oppure Registrati per vedere i Link!

O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) -
Perfavore, Entra oppure Registrati per vedere i Link!

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
Perfavore, Entra oppure Registrati per vedere i Link!

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programmi\Microsoft Office\Office12\GrooveSystemServices.dll
O20 - AppInit_DLLs: c:\windows\system32\bolanefi.dll
O20 - Winlogon Notify: RelevantKnowledge - C:\Programmi\RelevantKnowledge\rlls.dll
O20 - Winlogon Notify: __c00B27C4 - C:\WINDOWS\system32\__c00B27C4.dat (file missing)
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\bolanefi.dll
O21 - SSODL: HardwareDrivers - {44DC7850-840D-4473-BACC-D02595F61ED2} - C:\Documents and Settings\All Users\Application Data\Microsoft\Media Index\Drivers\hdddriver.dll
O21 - SSODL: DriversLoad - {E7B4AF29-A5BE-4586-8552-8A31F577241D} - C:\Documents and Settings\All Users\Application Data\Microsoft\Media Index\Drivers\axhnhprpup.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\bolanefi.dll
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programmi\Java\jre6\bin\jqs.exe
O23 - Service: KeenfinderSrch Service - Unknown owner - C:\Documents and Settings\All Users\Dati applicazioni\KeenfinderSrch\keenfinder137.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Programmi\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Programmi\File comuni\Nero\Lib\NMIndexingService.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe

--
End of file - 12114 bytes
Attendo Risposte...:emoji_smiley:
 
Ultima modifica:
Exterminetor Certo che ho provato ma inutile che ti dia la risposta SEMPRE NIENTE!!!!!!!!!!HO RIAVVIATO ANKE IL PC MA NNT..
 
Fixa queste righe:

- C:\Programmi\RelevantKnowledge\rlvknlg.exe

- C:\Documents and Settings\All Users\Dati applicazioni\KeenfinderSrch\keenfinder137.exe

- C:\documents and settings\michele\impostazioni locali\dati applicazioni\kiaos.exe

- C:\Programmi\KeenfinderSrch\keenfinder.exe

- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
Perfavore, Entra oppure Registrati per vedere i Link!


- Sconosciuto
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Programmi\SweetIM\Toolbars\Internet Explorer\mgHelper.dll

- R3 - URLSearchHook: PHPNukeIT Toolbar - {2c965f3f-8efd-4bfc-a2c5-1672845fdbbf} - C:\Programmi\PHPNukeIT\tbPHP1.dll

- O2 - BHO: PHPNukeIT Toolbar - {2c965f3f-8efd-4bfc-a2c5-1672845fdbbf} - C:\Programmi\PHPNukeIT\tbPHP1.dll

- O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

- O2 - BHO: {eace9a35-a38e-df0a-2fb4-b27fd627e8ef} - {fe8e726d-f72b-4bf2-a0fd-e83a53a9ecae} - C:\WINDOWS\system32\jjhkmg.dll

- O3 - Toolbar: PHPNukeIT Toolbar - {2c965f3f-8efd-4bfc-a2c5-1672845fdbbf} - C:\Programmi\PHPNukeIT\tbPHP1.dll

- O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe

- O4 - HKLM\..\Run: [RelevantKnowledge] C:\Programmi\RelevantKnowledge\rlvknlg.exe -boot

- O4 - HKLM\..\Run: [14010409] rundll32.exe "C:\WINDOWS\system32\tukugave.dll",b

- O4 - HKLM\..\Run: [CPM17323795] Rundll32.exe "c:\windows\system32\bolanefi.dll",a

- O4 - HKLM\..\Run: [CHIN PING PHONE PILE] C:\Documents and Settings\All Users\Dati applicazioni\Proxy Long Chin Ping\cool sign.exe

- O4 - HKLM\..\Run: [malwaredef] C:\Programmi\Malware Defender 2009\malwaredef.exe

- O4 - HKCU\..\Run: [programnoun] C:\DOCUME~1\Michele\DATIAP~1\MODEPA~1\SoftwareShow .exe

- O4 - HKCU\..\Run: [kiaos] "c:\documents and settings\michele\impostazioni locali\dati applicazioni\kiaos.exe" kiaos

- O4 - HKCU\..\Run: [updater] "C:\Documents and Settings\All Users\Application Data\Microsoft\Network\install.exe" /u

- O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\SHOCKW~1\SWHELP~3.EXE -Update -1103470 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; SIMBAR={FA9B35FB-A284-4895-A1BA-C621421BFF3A}; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; InfoPath.2)" -"http://www.habbo.it/client"

- O4 - HKUS\S-1-5-19\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SERVIZIO LOCALE')

- O4 - HKUS\S-1-5-20\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SERVIZIO DI RETE')

- O20 - AppInit_DLLs: c:\windows\system32\bolanefi.dll

- O20 - Winlogon Notify: RelevantKnowledge - C:\Programmi\RelevantKnowledge\rlls.dll

- O20 - Winlogon Notify: __c00B27C4 - C:\WINDOWS\system32\__c00B27C4.dat (file missing)

- O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\bolanefi.dll

- O21 - SSODL: HardwareDrivers - {44DC7850-840D-4473-BACC-D02595F61ED2} - C:\Documents and Settings\All Users\Application Data\Microsoft\Media Index\Drivers\hdddriver.dll

- O21 - SSODL: DriversLoad - {E7B4AF29-A5BE-4586-8552-8A31F577241D} - C:\Documents and Settings\All Users\Application Data\Microsoft\Media Index\Drivers\axhnhprpup.dll

- O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\bolanefi.dll

- O23 - Service: KeenfinderSrch Service - Unknown owner - C:\Documents and Settings\All Users\Dati applicazioni\KeenfinderSrch\keenfinder137.exe
 
Ultima modifica:
cancello qll che ho postate e metto quelle che hai messo te?
 
Ultima modifica: