| Precedente :: Successivo   | 
	
	
	
		| Autore | 
		Messaggio | 
	
	
		VMMARCO Mortale devoto
  
 
  Registrato: 28/04/06 23:09 Messaggi: 12
 
  | 
		
			
				 Inviato: 28 Apr 2006 23:17    Oggetto: * Backdoor.Win32.IRCBot.nw [Risolto] | 
				     | 
			 
			
				
  | 
			 
			
				Salve a tutti sono nuovo di questo forum c'è qualcuno cosi' gentile da aiutarmi con il log di hijack Vi ringrazio 
 
saluti Marco
 
 
Logfile of HijackThis v1.99.1
 
Scan saved at 23.07.01, on 28/04/2006
 
Platform: Windows XP SP2 (WinNT 5.01.2600)
 
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 
 
Running processes:
 
C:\WINDOWS\System32\smss.exe
 
C:\WINDOWS\system32\winlogon.exe
 
C:\WINDOWS\system32\services.exe
 
C:\WINDOWS\system32\lsass.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\Programmi\Windows Defender\MsMpEng.exe
 
C:\WINDOWS\System32\svchost.exe
 
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
 
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
 
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
 
C:\WINDOWS\system32\spoolsv.exe
 
C:\WINDOWS\Explorer.EXE
 
C:\Programmi\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
 
C:\Programmi\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE
 
C:\WINDOWS\system32\CTHELPER.EXE
 
C:\WINDOWS\system32\RUNDLL32.EXE
 
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
 
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F2.EXE
 
C:\Programmi\Windows Defender\MSASCui.exe
 
C:\WINDOWS\system32\ctfmon.exe
 
C:\Programmi\MSN Messenger\msnmsgr.exe
 
C:\Programmi\BinarySense\HDDlife\HDDlifePro.exe
 
C:\PROGRA~1\Webshots\webshots.scr
 
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 
C:\WINDOWS\system32\CTsvcCDA.exe
 
C:\Programmi\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
 
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
 
C:\WINDOWS\system32\nvsvc32.exe
 
C:\WINDOWS\system32\SerBBOX.exe
 
C:\UpsEye32\UpsBBox.exe
 
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
 
C:\WINDOWS\System32\svchost.exe
 
C:\Programmi\RealVNC\VNC4\WinVNC4.exe
 
C:\WINDOWS\system32\MsPMSPSv.exe
 
C:\Programmi\eBay\eBay Toolbar2\eBayTBDaemon.exe
 
C:\Programmi\Internet Explorer\iexplore.exe
 
C:\Documents and Settings\Marco\Desktop\hijackthis\HijackThis.exe
 
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.stazionemeteoolmeto.com/
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
 
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
 
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Programmi\eBay\eBay Toolbar2\eBayTB.dll
 
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
 
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar3.dll
 
O2 - BHO: CBHO Object - {CBA74CDA-DF78-4AD9-954E-3B15D0A993DE} - C:\Programmi\CoreStreet\SpoofStick\SpoofStickBHO.dll
 
O3 - Toolbar: SpoofStick - {4D46ED77-1429-4CF6-8F63-C84B5D710BAF} - C:\Programmi\CoreStreet\SpoofStick\SpoofStick.dll
 
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Programmi\eBay\eBay Toolbar2\eBayTB.dll
 
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar3.dll
 
O4 - HKLM\..\Run: [CTSysVol] C:\Programmi\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
 
O4 - HKLM\..\Run: [CTDVDDet] C:\Programmi\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE
 
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
 
O4 - HKLM\..\Run: [CTStartup] "C:\Programmi\Creative\Splash Screen\CTEaxSpl.EXE" /run
 
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
 
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
 
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
 
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
 
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
 
O4 - HKLM\..\Run: [EPSON Stylus Photo R300 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F2.EXE /P30 "EPSON Stylus Photo R300 Series" /O6 "USB002" /M "Stylus Photo R300"
 
O4 - HKLM\..\Run: [Windows Defender] "C:\Programmi\Windows Defender\MSASCui.exe" -hide
 
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
 
O4 - HKCU\..\Run: [IncrediMail] C:\Programmi\IncrediMail\bin\IncMail.exe /c
 
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
 
O4 - Startup: HDDlife.lnk = C:\Programmi\BinarySense\HDDlife\HDDlifePro.exe
 
O4 - Startup: Webshots.lnk = C:\Programmi\Webshots\Launcher.exe
 
O8 - Extra context menu item: &Cerca con Google - res://c:\programmi\google\GoogleToolbar3.dll/cmsearch.html
 
O8 - Extra context menu item: &eBay Search - res://C:\Programmi\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
 
O8 - Extra context menu item: &Traduci parola in italiano - res://c:\programmi\google\GoogleToolbar3.dll/cmwordtrans.html
 
O8 - Extra context menu item: Link a ritroso - res://c:\programmi\google\GoogleToolbar3.dll/cmbacklinks.html
 
O8 - Extra context menu item: Pagine simili - res://c:\programmi\google\GoogleToolbar3.dll/cmsimilar.html
 
O8 - Extra context menu item: Versione cache della pagina - res://c:\programmi\google\GoogleToolbar3.dll/cmcache.html
 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_04\bin\npjpi150_04.dll
 
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_04\bin\npjpi150_04.dll
 
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 
O16 - DPF: {2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B} (DownloadManager Control) - http://dlmanager.akamaitools.com.edgesuite.net/dlmanager/versions/activex/dlm-activex-2.0.5.0.cab
 
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
 
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - https://scan.safety.live.com/resource/download/scanner/en-us/wlscbase3401.cab
 
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1108234691875
 
O16 - DPF: {66D393D5-4D80-497C-9F4F-F3839E090202} (PlayerOCX Control) - http://www.pysoft.com/Downloads/WebCamPlayerOCX.cab
 
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
 
O16 - DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) - http://download.zonelabs.com/bin/promotions/spywaredetector/ICSScanner37390.cab
 
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://85.33.228.200/activex/AxisCamControl.cab
 
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
 
O17 - HKLM\System\CCS\Services\Tcpip\..\{EB19D4C9-382D-4B32-ACEF-0B01B8F8CE45}: NameServer = 212.216.112.112,212.216.172.62
 
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
 
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
 
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
 
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
 
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
 
O23 - Service: Norton Ghost - Symantec Corporation - C:\Programmi\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
 
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
 
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
O23 - Service: UPS BBox service  (SerBBOX) - MicroDowell S.p.a. - C:\WINDOWS\system32\SerBBOX.exe
 
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
 
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
 
O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe
 
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Programmi\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
 
 
Vi ricordo di visitare il mio sito [edit: rimosso] | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		holifay Dio maturo
  
  
  Registrato: 08/03/05 10:48 Messaggi: 2912 Residenza: Milano
  | 
		
			
				 Inviato: 28 Apr 2006 23:41    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				Ciao Marco e benvenuto nel forum  
 
 
Il log te lo analizzo, ma il link personale te lo rimuovo: non è ammesso  
 
 
Hai questo IRC trojan: http://www.sophos.com/virusinfo/analyses/trojbdoorxd.html
 
 
Riavvia in modalità provvisoria (premi F8 al boot subito dopo il caricamento del BIOS) e cerca ed elimina dal PC questi file:
 
- smss.exe (solo se NON si trova in C:\WINDOWS\System32)
 
- nvsvcd.exe
 
- netf.dll
 
 
Poi avvia HijackThis e metti un segno di spunta sulla casella accanto a questa voce. Poi premi fix checked:
 
 	  | Citazione: | 	 		  | O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe | 	  
 
 
Riavvia in modalità normale e collgati al sito di Kaspersky. Fai una scansione online con database esteso e salva il log.
 
 
Posta qui nel forum il log di Kaspersky e un nuovo log di HijackThis.
 
 
Ciao | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		VMMARCO Mortale devoto
  
 
  Registrato: 28/04/06 23:09 Messaggi: 12
 
  | 
		
			
				 Inviato: 29 Apr 2006 15:36    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				| scusa tanto non lo sapevo adesso faccio quello che mi ai detto e ancora grazie | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		VMMARCO Mortale devoto
  
 
  Registrato: 28/04/06 23:09 Messaggi: 12
 
  | 
		
			
				 Inviato: 29 Apr 2006 17:24    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				[quote="VMMARCO"]Ecco tutto quello che mi è stato richiesto file log e risultato scansione
 
 
Logfile of HijackThis v1.99.1
 
Scan saved at 17.20.12, on 29/04/2006
 
Platform: Windows XP SP2 (WinNT 5.01.2600)
 
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 
 
Running processes:
 
C:\WINDOWS\System32\smss.exe
 
C:\WINDOWS\system32\winlogon.exe
 
C:\WINDOWS\system32\services.exe
 
C:\WINDOWS\system32\lsass.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\Programmi\Windows Defender\MsMpEng.exe
 
C:\WINDOWS\System32\svchost.exe
 
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
 
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
 
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
 
C:\WINDOWS\Explorer.EXE
 
C:\WINDOWS\system32\spoolsv.exe
 
C:\Programmi\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
 
C:\Programmi\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE
 
C:\WINDOWS\system32\CTHELPER.EXE
 
C:\WINDOWS\system32\RUNDLL32.EXE
 
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
 
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F2.EXE
 
C:\Programmi\Windows Defender\MSASCui.exe
 
C:\WINDOWS\system32\ctfmon.exe
 
C:\Programmi\MSN Messenger\msnmsgr.exe
 
C:\PROGRA~1\Webshots\webshots.scr
 
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 
C:\WINDOWS\system32\CTsvcCDA.exe
 
C:\Programmi\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
 
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
 
C:\WINDOWS\system32\nvsvc32.exe
 
C:\WINDOWS\system32\SerBBOX.exe
 
C:\UpsEye32\UpsBBox.exe
 
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
 
C:\WINDOWS\System32\svchost.exe
 
C:\Programmi\RealVNC\VNC4\WinVNC4.exe
 
C:\WINDOWS\system32\MsPMSPSv.exe
 
C:\Programmi\Internet Explorer\iexplore.exe
 
C:\Programmi\eBay\eBay Toolbar2\eBayTBDaemon.exe
 
C:\Documents and Settings\Marco\Desktop\Antivirus\hijackthis\HijackThis.exe
 
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.stazionemeteoolmeto.com/
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
 
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
 
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Programmi\eBay\eBay Toolbar2\eBayTB.dll
 
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
 
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar3.dll
 
O2 - BHO: CBHO Object - {CBA74CDA-DF78-4AD9-954E-3B15D0A993DE} - C:\Programmi\CoreStreet\SpoofStick\SpoofStickBHO.dll
 
O3 - Toolbar: SpoofStick - {4D46ED77-1429-4CF6-8F63-C84B5D710BAF} - C:\Programmi\CoreStreet\SpoofStick\SpoofStick.dll
 
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Programmi\eBay\eBay Toolbar2\eBayTB.dll
 
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar3.dll
 
O4 - HKLM\..\Run: [CTSysVol] C:\Programmi\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
 
O4 - HKLM\..\Run: [CTDVDDet] C:\Programmi\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE
 
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
 
O4 - HKLM\..\Run: [CTStartup] "C:\Programmi\Creative\Splash Screen\CTEaxSpl.EXE" /run
 
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
 
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
 
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
 
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
 
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
 
O4 - HKLM\..\Run: [EPSON Stylus Photo R300 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F2.EXE /P30 "EPSON Stylus Photo R300 Series" /O6 "USB002" /M "Stylus Photo R300"
 
O4 - HKLM\..\Run: [Windows Defender] "C:\Programmi\Windows Defender\MSASCui.exe" -hide
 
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
 
O4 - HKCU\..\Run: [IncrediMail] C:\Programmi\IncrediMail\bin\IncMail.exe /c
 
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
 
O4 - Startup: HDDlife.lnk = C:\Programmi\BinarySense\HDDlife\HDDlifePro.exe
 
O4 - Startup: Webshots.lnk = C:\Programmi\Webshots\Launcher.exe
 
O8 - Extra context menu item: &Cerca con Google - res://c:\programmi\google\GoogleToolbar3.dll/cmsearch.html
 
O8 - Extra context menu item: &eBay Search - res://C:\Programmi\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
 
O8 - Extra context menu item: &Traduci parola in italiano - res://c:\programmi\google\GoogleToolbar3.dll/cmwordtrans.html
 
O8 - Extra context menu item: Link a ritroso - res://c:\programmi\google\GoogleToolbar3.dll/cmbacklinks.html
 
O8 - Extra context menu item: Pagine simili - res://c:\programmi\google\GoogleToolbar3.dll/cmsimilar.html
 
O8 - Extra context menu item: Versione cache della pagina - res://c:\programmi\google\GoogleToolbar3.dll/cmcache.html
 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_04\bin\npjpi150_04.dll
 
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_04\bin\npjpi150_04.dll
 
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
 
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 
O16 - DPF: {2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B} (DownloadManager Control) - http://dlmanager.akamaitools.com.edgesuite.net/dlmanager/versions/activex/dlm-activex-2.0.5.0.cab
 
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
 
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - https://scan.safety.live.com/resource/download/scanner/en-us/wlscbase3401.cab
 
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1108234691875
 
O16 - DPF: {66D393D5-4D80-497C-9F4F-F3839E090202} (PlayerOCX Control) - http://www.pysoft.com/Downloads/WebCamPlayerOCX.cab
 
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
 
O16 - DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) - http://download.zonelabs.com/bin/promotions/spywaredetector/ICSScanner37390.cab
 
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://85.33.228.200/activex/AxisCamControl.cab
 
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
 
O17 - HKLM\System\CCS\Services\Tcpip\..\{EB19D4C9-382D-4B32-ACEF-0B01B8F8CE45}: NameServer = 212.216.112.112,212.216.172.62
 
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
 
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
 
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
 
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
 
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
 
O23 - Service: Norton Ghost - Symantec Corporation - C:\Programmi\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
 
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
 
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
O23 - Service: UPS BBox service  (SerBBOX) - MicroDowell S.p.a. - C:\WINDOWS\system32\SerBBOX.exe
 
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
 
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
 
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Programmi\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
 
 
come faccio a mandarti il risultato di karspesky???????????? 
 
 
 
ooooooooo ancora grazie dell'interessamento[/url] | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		holifay Dio maturo
  
  
  Registrato: 08/03/05 10:48 Messaggi: 2912 Residenza: Milano
  | 
		
			
				 Inviato: 29 Apr 2006 22:32    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				Perchè non riesci a mandarmi il log di Kaspersky? Forse non lo salva? Sinceramente non ricordo se c'è l'opzione... Comunque ti ha trovato qualcosa? E tu sei riuscito a trovare i file che ti dicevo?
 
 
Il log adesso è quasi pulito. Avvia Hijackthis e poi chiudi tutte le finestre di gestione risorse e del browser Internet. Poi seleziona questa voce mettendo un segno di spunta sulla casella corrispondente e premi "Fix checked"
 
 	  | Citazione: | 	 		  | O16 - DPF: {2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B} (DownloadManager Control) - http://dlmanager.akamaitools.com.edgesuite.net/dlmanager/versions/activex/dlm-ac tivex-2.0.5.0.cab | 	  
 
 
Controlla poi facendo un nuovo log che sia stata eliminata. 
 
 
Il PC funziona bene adesso? | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		VMMARCO Mortale devoto
  
 
  Registrato: 28/04/06 23:09 Messaggi: 12
 
  | 
		
			
				 Inviato: 29 Apr 2006 22:56    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				eccoti il nuovo log
 
 
Logfile of HijackThis v1.99.1
 
Scan saved at 22.54.02, on 29/04/2006
 
Platform: Windows XP SP2 (WinNT 5.01.2600)
 
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
 
 
Running processes:
 
C:\WINDOWS\System32\smss.exe
 
C:\WINDOWS\system32\winlogon.exe
 
C:\WINDOWS\system32\services.exe
 
C:\WINDOWS\system32\lsass.exe
 
C:\WINDOWS\system32\svchost.exe
 
C:\Programmi\Windows Defender\MsMpEng.exe
 
C:\WINDOWS\System32\svchost.exe
 
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
 
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
 
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
 
C:\WINDOWS\system32\spoolsv.exe
 
C:\WINDOWS\Explorer.EXE
 
C:\Programmi\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
 
C:\Programmi\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE
 
C:\WINDOWS\system32\CTHELPER.EXE
 
C:\WINDOWS\system32\RUNDLL32.EXE
 
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
 
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F2.EXE
 
C:\Programmi\Windows Defender\MSASCui.exe
 
C:\WINDOWS\system32\ctfmon.exe
 
C:\Programmi\MSN Messenger\msnmsgr.exe
 
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
 
C:\PROGRA~1\Webshots\webshots.scr
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 
C:\WINDOWS\system32\CTsvcCDA.exe
 
C:\Programmi\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
 
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
 
C:\WINDOWS\system32\nvsvc32.exe
 
C:\WINDOWS\system32\SerBBOX.exe
 
C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
 
C:\UpsEye32\UpsBBox.exe
 
C:\WINDOWS\System32\svchost.exe
 
C:\Programmi\RealVNC\VNC4\WinVNC4.exe
 
C:\WINDOWS\system32\MsPMSPSv.exe
 
C:\Programmi\eBay\eBay Toolbar2\eBayTBDaemon.exe
 
C:\Documents and Settings\Marco\Desktop\Antivirus\hijackthis\HijackThis.exe
 
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.stazionemeteoolmeto.com/
 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=56626&homepage=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
 
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
 
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Programmi\eBay\eBay Toolbar2\eBayTB.dll
 
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
 
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar3.dll
 
O2 - BHO: CBHO Object - {CBA74CDA-DF78-4AD9-954E-3B15D0A993DE} - C:\Programmi\CoreStreet\SpoofStick\SpoofStickBHO.dll
 
O3 - Toolbar: SpoofStick - {4D46ED77-1429-4CF6-8F63-C84B5D710BAF} - C:\Programmi\CoreStreet\SpoofStick\SpoofStick.dll
 
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Programmi\eBay\eBay Toolbar2\eBayTB.dll
 
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar3.dll
 
O4 - HKLM\..\Run: [CTSysVol] C:\Programmi\Creative\SBAudigy2\Surround Mixer\CTSysVol.exe
 
O4 - HKLM\..\Run: [CTDVDDet] C:\Programmi\Creative\SBAudigy2\DVDAudio\CTDVDDet.EXE
 
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
 
O4 - HKLM\..\Run: [CTStartup] "C:\Programmi\Creative\Splash Screen\CTEaxSpl.EXE" /run
 
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
 
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
 
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
 
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
 
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
 
O4 - HKLM\..\Run: [EPSON Stylus Photo R300 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0F2.EXE /P30 "EPSON Stylus Photo R300 Series" /O6 "USB002" /M "Stylus Photo R300"
 
O4 - HKLM\..\Run: [Windows Defender] "C:\Programmi\Windows Defender\MSASCui.exe" -hide
 
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
 
O4 - HKCU\..\Run: [IncrediMail] C:\Programmi\IncrediMail\bin\IncMail.exe /c
 
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
 
O4 - Startup: HDDlife.lnk = C:\Programmi\BinarySense\HDDlife\HDDlifePro.exe
 
O4 - Startup: Webshots.lnk = C:\Programmi\Webshots\Launcher.exe
 
O8 - Extra context menu item: &Cerca con Google - res://c:\programmi\google\GoogleToolbar3.dll/cmsearch.html
 
O8 - Extra context menu item: &eBay Search - res://C:\Programmi\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
 
O8 - Extra context menu item: &Traduci parola in italiano - res://c:\programmi\google\GoogleToolbar3.dll/cmwordtrans.html
 
O8 - Extra context menu item: Link a ritroso - res://c:\programmi\google\GoogleToolbar3.dll/cmbacklinks.html
 
O8 - Extra context menu item: Pagine simili - res://c:\programmi\google\GoogleToolbar3.dll/cmsimilar.html
 
O8 - Extra context menu item: Versione cache della pagina - res://c:\programmi\google\GoogleToolbar3.dll/cmcache.html
 
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_04\bin\npjpi150_04.dll
 
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_04\bin\npjpi150_04.dll
 
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
 
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
 
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
 
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - https://scan.safety.live.com/resource/download/scanner/en-us/wlscbase3401.cab
 
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1108234691875
 
O16 - DPF: {66D393D5-4D80-497C-9F4F-F3839E090202} (PlayerOCX Control) - http://www.pysoft.com/Downloads/WebCamPlayerOCX.cab
 
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
 
O16 - DPF: {7F8C8173-AD80-4807-AA75-5672F22B4582} (ICSScanner Class) - http://download.zonelabs.com/bin/promotions/spywaredetector/ICSScanner37390.cab
 
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://85.33.228.200/activex/AxisCamControl.cab
 
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
 
O17 - HKLM\System\CCS\Services\Tcpip\..\{EB19D4C9-382D-4B32-ACEF-0B01B8F8CE45}: NameServer = 212.216.112.112,212.216.172.62
 
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
 
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
 
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
 
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
 
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
 
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
 
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
 
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
 
O23 - Service: Norton Ghost - Symantec Corporation - C:\Programmi\Norton SystemWorks\Norton Ghost\Agent\PQV2iSvc.exe
 
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
 
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
O23 - Service: UPS BBox service  (SerBBOX) - MicroDowell S.p.a. - C:\WINDOWS\system32\SerBBOX.exe
 
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
 
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
 
O23 - Service: VNC Server Version 4 (WinVNC4) - Unknown owner - C:\Programmi\RealVNC\VNC4\WinVNC4.exe" -service (file missing)
 
 
L'antivirus mi ha trovato qualche file infetto io lo salvato sul compiuter ma non so come spedirtelo è un html per il resto sembra tutto a posto .......
 
 
Ti ringrazio moltissimo se avessi bisogno per un'altra macchina posso disturbarti ancora Grazie ancora | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		holifay Dio maturo
  
  
  Registrato: 08/03/05 10:48 Messaggi: 2912 Residenza: Milano
  | 
		
			
				 Inviato: 29 Apr 2006 23:01    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				Il log l'avrei guardato per vedere solo se c'era qualche file che non aveva potuto cancellare, ma se tu leggi che è riuscito a disinfettare o cancellare tutto, no problem.
 
 
Il PC va bene adesso?
 
 
 
Se hai un altro computer da controllare, apri un nuovo post. 
 
 
Ciao  
 
 
 
 
 
PS: puoi "disturbarci" quando vuoi, poi ti mandiamo il conto a casa!!!  
 
 
  | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		VMMARCO Mortale devoto
  
 
  Registrato: 28/04/06 23:09 Messaggi: 12
 
  | 
		
			
				 Inviato: 30 Apr 2006 20:59    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				Grazie siete gentilissimi
 
 
ma se devo spedire qualche file come faccio a postarvelo sul forum non ci sono riuscito.......... | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		holifay Dio maturo
  
  
  Registrato: 08/03/05 10:48 Messaggi: 2912 Residenza: Milano
  | 
		
			
				 Inviato: 30 Apr 2006 22:59    Oggetto:  | 
				     | 
			 
			
				
  | 
			 
			
				 	  | VMMARCO ha scritto: | 	 		  Grazie siete gentilissimi
 
 
ma se devo spedire qualche file come faccio a postarvelo sul forum non ci sono riuscito.......... | 	  
 
 
se il file è in formato testo, allora copia/incolla il contenuto. Altrimenti puoi utilizazzare servizi gratuiti di web hosting come www.mytempdir.com. Lo carichi lì e poi posti il link.
 
 
Ciao | 
			 
		  | 
	
	
		| Top | 
		 | 
	
	
		  | 
	
	
		 |