Precedente :: Successivo |
Autore |
Messaggio |
freenets1 Comune mortale

Registrato: 17/10/12 09:33 Messaggi: 2
|
Inviato: 17 Ott 2012 09:45 Oggetto: |
|
|
Ciao a tutti, anche io ho lo stesso problema con ad.yieldmanager.
Ho eseguito la scansione con OTL e questi sono i risultati
File OTL.txt
OTL logfile created on: 17/10/2012 9.08.44 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\SKY\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000410 | Country: Italia | Language: ITA | Date Format: dd/MM/yyyy
1,87 Gb Total Physical Memory | 0,84 Gb Available Physical Memory | 44,61% Memory free
3,72 Gb Paging File | 2,94 Gb Available in Paging File | 78,93% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programmi
Drive C: | 74,52 Gb Total Space | 14,93 Gb Free Space | 20,03% Space Free | Partition Type: NTFS
Drive Z: | 122,30 Gb Total Space | 74,87 Gb Free Space | 61,22% Space Free | Partition Type: NTFS
Computer Name: FASTWEB | User Name: SKY | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/10/17 09.07.39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\SKY\Desktop\OTL.exe
PRC - [2012/10/10 12.06.17 | 001,239,064 | ---- | M] (Google Inc.) -- C:\Programmi\Google\Chrome\Application\chrome.exe
PRC - [2012/10/06 12.51.02 | 000,161,768 | ---- | M] (Oracle Corporation) -- C:\Programmi\Java\jre7\bin\jqs.exe
PRC - [2012/09/12 11.59.21 | 000,917,984 | ---- | M] (Mozilla Corporation) -- C:\Programmi\Mozilla Firefox\firefox.exe
PRC - [2012/09/07 17.04.46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- C:\Programmi\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012/08/13 13.33.30 | 003,064,000 | ---- | M] (Skype Technologies S.A.) -- C:\Documents and Settings\All Users\Dati applicazioni\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2012/07/16 16.31.32 | 007,445,416 | ---- | M] (TeamViewer GmbH) -- C:\Programmi\TeamViewer\Version7\TeamViewer.exe
PRC - [2012/07/16 16.22.42 | 000,106,408 | ---- | M] (TeamViewer GmbH) -- C:\Programmi\TeamViewer\Version7\tv_w32.exe
PRC - [2012/06/03 10.44.46 | 000,071,096 | ---- | M] () -- C:\Programmi\CDBurnerXP\NMSAccessU.exe
PRC - [2012/03/07 02.15.17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Programmi\AVAST Software\Avast\AvastUI.exe
PRC - [2012/03/07 02.15.14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Programmi\AVAST Software\Avast\AvastSvc.exe
PRC - [2011/10/11 15.11.32 | 000,349,648 | ---- | M] (Unreal Streaming Technologies.) -- C:\Programmi\UnrealStreaming\UMediaServer\UMediaServer.exe
PRC - [2011/09/08 12.19.40 | 000,937,984 | ---- | M] (Mediatrix) -- C:\Programmi\Unit Manager Network 3.2\UnitManager\UnitManager.exe
PRC - [2010/05/31 16.09.48 | 000,135,168 | ---- | M] () -- C:\WINDOWS\system32\ChgService.exe
PRC - [2010/03/09 00.40.36 | 000,144,672 | ---- | M] (Nuance Communications, Inc.) -- C:\Programmi\Nuance\PaperPort\PDFProFiltSrvPP.exe
PRC - [2008/09/17 03.38.35 | 000,086,016 | R--- | M] () -- C:\WINDOWS\system32\SupportAppXL\onda_mon.exe
PRC - [2007/09/16 04.29.42 | 000,151,552 | ---- | M] (ND) -- C:\DShutdown.exe
PRC - [2007/06/13 15.22.28 | 001,035,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006/10/26 14.40.34 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\mdm.exe
PRC - [2006/07/13 17.59.48 | 000,131,131 | ---- | M] (NVIDIA Corporation) -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
PRC - [2006/07/13 17.59.32 | 000,065,599 | ---- | M] (NVIDIA Corporation) -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
PRC - [2006/04/03 19.04.02 | 000,020,543 | ---- | M] (Apache Software Foundation) -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe
PRC - [2004/08/19 17.39.46 | 000,073,796 | ---- | M] (Smart Link) -- C:\WINDOWS\system32\slserv.exe
PRC - [2004/08/19 15.39.42 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Programmi\Outlook Express\msimn.exe
========== Modules (No Company Name) ==========
MOD - [2012/10/16 21.27.57 | 001,817,600 | ---- | M] () -- C:\Programmi\AVAST Software\Avast\defs\12101601\algo.dll
MOD - [2012/10/10 12.06.15 | 000,460,312 | ---- | M] () -- C:\Programmi\Google\Chrome\Application\22.0.1229.94\ppgooglenaclpluginchrome.dll
MOD - [2012/10/10 12.06.12 | 004,005,912 | ---- | M] () -- C:\Programmi\Google\Chrome\Application\22.0.1229.94\pdf.dll
MOD - [2012/10/10 12.04.44 | 000,156,712 | ---- | M] () -- C:\Programmi\Google\Chrome\Application\22.0.1229.94\avutil-51.dll
MOD - [2012/10/10 12.04.43 | 000,275,496 | ---- | M] () -- C:\Programmi\Google\Chrome\Application\22.0.1229.94\avformat-54.dll
MOD - [2012/10/10 12.04.42 | 002,168,360 | ---- | M] () -- C:\Programmi\Google\Chrome\Application\22.0.1229.94\avcodec-54.dll
MOD - [2012/10/09 09.49.20 | 009,814,968 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll
MOD - [2012/09/12 11.59.13 | 002,244,064 | ---- | M] () -- C:\Programmi\Mozilla Firefox\mozjs.dll
MOD - [2012/06/03 10.44.46 | 000,071,096 | ---- | M] () -- C:\Programmi\CDBurnerXP\NMSAccessU.exe
MOD - [2012/01/08 15.41.12 | 000,093,696 | ---- | M] () -- C:\Programmi\FileZilla FTP Client\fzshellext.dll
MOD - [2011/08/12 17.22.22 | 000,253,952 | ---- | M] () -- C:\Programmi\Unit Manager Network 3.2\UnitManager\libsnmpv42.dll
MOD - [2011/08/06 19.28.46 | 002,078,208 | ---- | M] () -- C:\Programmi\webcam 7\IPCameraRTSP.ax
MOD - [2010/10/28 13.06.36 | 000,036,864 | ---- | M] () -- C:\Programmi\Unit Manager Network 3.2\UnitManager\XalanMessages_1_10.dll
MOD - [2010/07/08 13.00.14 | 000,028,672 | ---- | M] () -- C:\Programmi\Unit Manager Network 3.2\UnitManager\omnithread2_rt.dll
MOD - [2010/07/08 13.00.10 | 000,901,120 | ---- | M] () -- C:\Programmi\Unit Manager Network 3.2\UnitManager\omniDynamic280_rt.dll
MOD - [2010/07/08 13.00.10 | 000,684,032 | ---- | M] () -- C:\Programmi\Unit Manager Network 3.2\UnitManager\libeay32.dll
MOD - [2010/07/08 13.00.10 | 000,327,680 | ---- | M] () -- C:\Programmi\Unit Manager Network 3.2\UnitManager\omniORB280_rt.dll
MOD - [2010/05/31 16.09.48 | 000,135,168 | ---- | M] () -- C:\WINDOWS\system32\ChgService.exe
MOD - [2010/02/22 15.30.02 | 000,190,976 | ---- | M] () -- C:\WINDOWS\system32\WgaLogon.dll
MOD - [2009/02/27 20.42.50 | 000,311,296 | ---- | M] () -- C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\pdfshell.ITA
MOD - [2009/02/27 16.38.20 | 000,139,264 | R--- | M] () -- C:\Programmi\Brother\BrUtilities\BrLogAPI.dll
MOD - [2008/09/17 03.38.35 | 000,086,016 | R--- | M] () -- C:\WINDOWS\system32\SupportAppXL\onda_mon.exe
MOD - [2008/06/04 08.53.14 | 000,026,624 | ---- | M] () -- C:\WINDOWS\system32\spd__l.dll
MOD - [2007/08/14 04.42.32 | 000,022,723 | ---- | M] () -- C:\WINDOWS\system32\cl31ml3.dll
MOD - [2007/02/13 23.41.24 | 000,022,723 | ---- | M] () -- C:\WINDOWS\system32\ps3200l3.dll
MOD - [2006/04/03 19.04.02 | 000,876,544 | ---- | M] () -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\libeay32.dll
MOD - [2006/04/03 19.04.02 | 000,159,744 | ---- | M] () -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\ssleay32.dll
MOD - [2006/04/03 19.04.02 | 000,024,691 | ---- | M] () -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\modules\mod_auth.so
MOD - [2004/08/19 15.39.18 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
========== Services (SafeList) ==========
SRV - File not found [Auto | Stopped] -- C:\Programmi\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012/10/09 09.49.21 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/10/06 12.51.02 | 000,161,768 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Programmi\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2012/09/12 11.59.15 | 000,114,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/09/11 08.00.54 | 004,537,664 | ---- | M] () [Auto | Running] -- c:\programmi\file comuni\akamai/netsession_win_5891ae0.dll -- (Akamai)
SRV - [2012/09/07 17.04.46 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Programmi\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012/09/07 17.04.46 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Programmi\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/08/13 13.33.30 | 003,064,000 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\Documents and Settings\All Users\Dati applicazioni\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012/06/07 19.12.14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Programmi\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/06/03 10.44.46 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Programmi\CDBurnerXP\NMSAccessU.exe -- (NMSAccess)
SRV - [2012/03/07 02.15.14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Programmi\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/10/11 15.11.32 | 000,349,648 | ---- | M] (Unreal Streaming Technologies.) [Auto | Running] -- C:\Programmi\UnrealStreaming\UMediaServer\UMediaServer.exe -- (UMediaServer)
SRV - [2011/09/08 12.19.40 | 000,937,984 | ---- | M] (Mediatrix) [Auto | Running] -- C:\Programmi\Unit Manager Network 3.2\UnitManager\UnitManager.exe -- (UnitMgr_3_2)
SRV - [2011/07/27 21.27.48 | 004,999,680 | ---- | M] (Moonware Studios) [On_Demand | Stopped] -- C:\Programmi\webcam 7\wService.exe -- (w7Svc)
SRV - [2011/05/25 14.06.20 | 000,037,664 | ---- | M] (Apple Inc.) [Disabled | Stopped] -- C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010/12/22 17.32.32 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010/12/10 12.22.30 | 000,010,240 | ---- | M] (Microsoft) [Auto | Stopped] -- C:\Programmi\NetBalancer\SeriousBit.NetBalancer.Service.exe -- (NetBalancer Windows Service)
SRV - [2010/08/09 04.04.02 | 000,131,888 | ---- | M] (Samsung Electronics CO., LTD.) [On_Demand | Stopped] -- C:\WINDOWS\system32\SUPDSvc.exe -- (Samsung UPD Service)
SRV - [2010/06/25 19.07.20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Programmi\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2010/05/31 16.09.48 | 000,135,168 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\ChgService.exe -- (Change Modem Device Service)
SRV - [2010/03/09 00.40.36 | 000,144,672 | ---- | M] (Nuance Communications, Inc.) [Auto | Running] -- C:\Programmi\Nuance\PaperPort\PDFProFiltSrvPP.exe -- (PDFProFiltSrvPP)
SRV - [2010/01/25 08.22.56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) [On_Demand | Stopped] -- C:\Programmi\Browny02\BrYNSvc.exe -- (BrYNSvc)
SRV - [2009/02/05 18.38.14 | 000,462,848 | ---- | M] () [Auto | Stopped] -- C:\Programmi\Generic\USB Server\NPW\NPWService.exe -- (NPWService)
SRV - [2008/11/06 13.37.22 | 000,093,848 | ---- | M] (SiSoftware) [On_Demand | Stopped] -- C:\Programmi\SiSoftware\SiSoftware Sandra Lite (Valutazione) 2012\RpcAgentSrv.exe -- (SandraAgentSrv)
SRV - [2008/10/31 11.38.24 | 000,661,504 | ---- | M] () [On_Demand | Stopped] -- C:\Programmi\IPCamera Recorder\SendMailService.exe -- (IPCamMailSender)
SRV - [2008/09/17 03.38.35 | 000,086,016 | R--- | M] () [Auto | Running] -- C:\WINDOWS\system32\SupportAppXL\onda_mon.exe -- (ONDA Autorun CDROM Monitor)
SRV - [2006/10/26 20.49.34 | 000,441,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programmi\File comuni\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2006/10/26 14.40.34 | 000,335,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\mdm.exe -- (MDM)
SRV - [2006/10/26 14.03.08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2006/07/13 17.59.48 | 000,131,131 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe -- (nSvcIp)
SRV - [2006/07/13 17.59.32 | 000,065,599 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe -- (nSvcLog)
SRV - [2006/04/03 19.04.02 | 000,020,543 | ---- | M] (Apache Software Foundation) [Auto | Running] -- C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe -- (ForcewareWebInterface)
SRV - [2004/08/19 17.39.46 | 000,073,796 | ---- | M] (Smart Link) [Auto | Running] -- C:\WINDOWS\System32\slserv.exe -- (SLService)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2012/09/07 17.04.46 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012/06/03 10.44.46 | 000,005,504 | ---- | M] () [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2012/03/07 02.03.51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012/03/07 02.03.38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012/03/07 02.02.43 | 000,024,408 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswKbd.sys -- (aswKbd)
DRV - [2012/03/07 02.02.00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (AswRdr)
DRV - [2012/03/07 02.01.53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012/03/07 02.01.39 | 000,095,704 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2012/03/07 02.01.30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2012/03/07 01.58.29 | 000,024,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011/02/16 17.52.46 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM)
DRV - [2010/11/23 16.56.23 | 000,393,088 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService)
DRV - [2010/11/23 16.55.11 | 000,057,856 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2010/11/23 16.55.11 | 000,020,480 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2010/08/16 15.31.08 | 000,016,472 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pwdrvio.sys -- (pwdrvio)
DRV - [2010/08/16 15.31.06 | 000,011,104 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pwdspio.sys -- (pwdspio)
DRV - [2010/06/25 19.07.14 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2010/05/21 05.34.12 | 000,827,488 | R--- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rt2870.sys -- (rt2870)
DRV - [2010/05/15 00.04.00 | 000,028,776 | ---- | M] (SeriousBit) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nbdrv.sys -- (Nbdrv)
DRV - [2010/04/12 10.44.34 | 000,059,388 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2010/01/05 20.31.32 | 001,714,176 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\athuw.sys -- (AR9271)
DRV - [2009/11/04 16.04.28 | 000,103,424 | ---- | M] (Mobile Connector) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cmnsusbser.sys -- (cmnsusbser)
DRV - [2009/08/07 23.46.56 | 000,023,112 | ---- | M] (SiSoftware) [Kernel | On_Demand | Stopped] -- C:\Programmi\SiSoftware\SiSoftware Sandra Lite (Valutazione) 2012\WNt500x86\sandra.sys -- (SANDRA)
DRV - [2009/01/16 14.48.44 | 000,171,136 | ---- | M] ( ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GenHC.sys -- (EST_Server)
DRV - [2009/01/06 14.45.50 | 000,027,136 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\GenBus.sys -- (EST_BusEnum)
DRV - [2008/09/16 17.32.20 | 000,104,960 | ---- | M] (ONDA Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ONDAusbnmea.sys -- (ONDAusbnmea)
DRV - [2008/09/16 17.31.56 | 000,110,080 | ---- | M] (ONDA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ONDAusbnet.sys -- (ONDAusbnet)
DRV - [2008/09/16 17.31.32 | 000,104,960 | ---- | M] (ONDA Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ONDAusbmdm6k.sys -- (ONDAusbmdm6k)
DRV - [2008/09/16 17.31.08 | 000,104,960 | ---- | M] (ONDA Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ONDAusbser6k.sys -- (ONDAusbser6k)
DRV - [2007/02/21 14.53.22 | 000,192,512 | ---- | M] (MorningSound Co., Ltd.) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\VirtualCam.sys -- (VirtualCam)
DRV - [2007/02/13 19.40.50 | 000,041,984 | ---- | M] (Samsung Electronics Co., Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\DGIVECP.SYS -- (DgiVecp)
DRV - [2006/12/13 17.52.50 | 000,020,992 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem)
DRV - [2006/06/14 13.53.00 | 000,029,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbccid.sys -- (USBCCID)
DRV - [2004/10/27 16.21.30 | 000,145,920 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService)
DRV - [2004/08/13 11.56.20 | 000,005,810 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004/08/04 00.41.46 | 000,095,424 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\slnthal.sys -- (SlNtHal)
DRV - [2004/08/04 00.41.46 | 000,013,240 | ---- | M] (Smart Link) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\slwdmsup.sys -- (SlWdmSup)
DRV - [2004/08/04 00.41.44 | 000,404,990 | ---- | M] (Smart Link) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\slntamr.sys -- (Slntamr)
DRV - [2004/08/04 00.41.40 | 000,180,360 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ntmtlfax.sys -- (NtMtlFax)
DRV - [2004/08/04 00.41.40 | 000,126,686 | ---- | M] (Smart Link) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mtlmnt5.sys -- (Mtlmnt5)
DRV - [2004/08/04 00.41.40 | 000,013,776 | ---- | M] (Smart Link) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\RecAgent.sys -- (RecAgent)
DRV - [2004/08/04 00.41.38 | 001,309,184 | ---- | M] (Smart Link) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mtlstrm.sys -- (Mtlstrm)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://pdv.sky.it/
IE - HKCU\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=110822&tt=100512_1_&babsrc=SP_ss&mntrId=b416cd690000000000000018f3108ad9
IE - HKCU\..\SearchScopes\{95BB7529-66F6-4D51-AD55-AE012CE1BC59}: "URL" = http://www.google.com/search?hl=en&q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;127.0.0.1:9421;
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.it/"
FF - prefs.js..extensions.enabledAddons: plugin@yontoo.com:1.20.00
FF - prefs.js..extensions.enabledAddons: {9AA46F4F-4DC7-4c06-97AF-5035170634FE}:4.18
FF - prefs.js..extensions.enabledAddons: {9EB34849-81D3-4841-939D-666D522B889A}:1.5.7.158
FF - prefs.js..extensions.enabledAddons: {dc572301-7619-498c-a57d-39143191b318}:0.4.0.3
FF - prefs.js..extensions.enabledAddons: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:6.2.0.10687
FF - prefs.js..extensions.enabledAddons: webbooster@iminent.com:5.14.1.0
FF - prefs.js..extensions.enabledAddons: {33e0daa6-3af3-d8b5-6752-10e949c61516}:1.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}:6.0.25
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..keyword.URL: "http://search.babylon.com/?affID=110822&tt=100512_1_&babsrc=KW_ss&mntrId=b416cd690000000000000018f3108ad9&q="
FF - prefs.js..network.proxy.type: 0
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Programmi\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Programmi\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2: C:\Programmi\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Programmi\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Programmi\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Programmi\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Programmi\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\NetDvr_Plugins: C:\Programmi\NetDvr\Plugins\npDvr.dll (DVR)
FF - HKCU\Software\MozillaPlugins\@nds.com/PCShowPlugin: C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Sky Italia\Sky Go Player\npPCShowPlugin.dll (NDS)
FF - HKCU\Software\MozillaPlugins\@nds.com/PlayerPlugin: C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Sky Italia\Sky Go Player\npPlayerPlugin.dll (NDS)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\NDS.com/PlayerPlugin: C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Sky Italia\Sky Go Player\npPlayerPlugin.dll (NDS)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\wrc@avast.com: C:\Programmi\AVAST Software\Avast\WebRep\FF [2012/03/17 10.20.01 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\webbooster@iminent.com: C:\Programmi\Iminent\webbooster@iminent.com [2012/09/17 18.05.58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Programmi\Mozilla Firefox\components [2012/09/12 11.59.25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Programmi\Mozilla Firefox\plugins [2012/08/20 10.11.11 | 000,000,000 | ---D | M]
[2010/12/18 10.06.22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Extensions
[2012/09/17 18.08.46 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions
[2011/05/02 16.19.36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2012/09/17 18.08.46 | 000,000,000 | ---D | M] (Complitly - Speed up your search with your personal search suggestions tool) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
[2012/02/08 12.09.08 | 000,000,000 | ---D | M] (WebSlingPlayer) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\{9EB34849-81D3-4841-939D-666D522B889A}
[2012/05/12 11.42.34 | 000,000,000 | ---D | M] (Yontoo) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\plugin@yontoo.com
[2012/08/20 08.58.09 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\staged
[2011/08/06 09.28.06 | 000,003,793 | ---- | M] () (No name found) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\{66E978CD-981F-47DF-AC42-E3CF417C1467}.xpi
[2012/08/20 08.58.09 | 000,061,403 | ---- | M] () (No name found) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi
[2012/07/23 10.39.36 | 000,702,524 | ---- | M] () (No name found) -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi
[2010/10/28 10.41.06 | 000,005,529 | ---- | M] () -- C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\Firefox\Profiles\paerzjbj.default\searchplugins\SearchquWebSearch.xml
[2011/11/10 18.22.02 | 000,000,000 | ---D | M] (No name found) -- C:\Programmi\Mozilla Firefox\extensions
[2012/08/24 15.49.09 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Programmi\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2012/09/17 18.05.58 | 000,000,000 | ---D | M] ("Iminent Minibar") -- C:\PROGRAMMI\IMINENT\WEBBOOSTER@IMINENT.COM
[2012/09/12 11.59.23 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Programmi\mozilla firefox\components\browsercomps.dll
[2009/04/27 09.20.38 | 000,126,976 | ---- | M] () -- C:\Programmi\mozilla firefox\plugins\np_hoem_x.dll
[2012/06/20 10.01.02 | 000,001,393 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\amazon-it.xml
[2012/05/12 11.42.43 | 000,002,352 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\babylon.xml
[2012/09/12 11.59.07 | 000,002,465 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\bing.xml
[2012/06/20 10.01.02 | 000,000,744 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\eBay-it.xml
[2012/06/20 10.01.02 | 000,000,817 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\hoepli.xml
[2010/10/28 10.41.06 | 000,005,529 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\SearchquWebSearch.xml
[2012/06/20 10.01.02 | 000,001,182 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\wikipedia-it.xml
[2012/06/20 10.01.02 | 000,000,953 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\yahoo-it.xml
========== Chrome ==========
CHR - homepage:
CHR - default_search_provider: Web Search (Enabled)
CHR - default_search_provider: search_url = http://www.searchqu.com/web?src=crb&systemid=403&q={searchTerms}
CHR - default_search_provider: suggest_url =
CHR - homepage:
CHR - plugin: Shockwave Flash (Enabled) = C:\Programmi\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Programmi\Google\Chrome\Application\22.0.1229.94\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Programmi\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Programmi\Google\Chrome\Application\22.0.1229.94\pdf.dll
CHR - plugin: Skype Click to Call (Enabled) = C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.2.0.10687_0\npSkypeChromePlugin.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Documents and Settings\SKY\Dati applicazioni\Mozilla\plugins\np-mswmp.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Programmi\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Programmi\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: HOEM ActiveX plugin (Enabled) = C:\Programmi\Mozilla Firefox\plugins\np_hoem_x.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Programmi\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Programmi\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Programmi\Google\Update\1.3.21.115\npGoogleUpdate3.dll
CHR - plugin: NDS PCShow Plugin (Enabled) = C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Sky Italia\Sky Go Player\npPCShowPlugin.dll
CHR - plugin: PCShow Player Plugin (Enabled) = C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Sky Italia\Sky Go Player\npPlayerPlugin.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Programmi\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\WINDOWS\system32\npDeployJava1.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Programmi\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Programmi\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - Extension: avast! WebRep = C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
O1 HOSTS File: ([2001/08/31 12.00.00 | 000,000,768 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (VirtualCamera IEMenu Class) - {0246A1A7-820A-469A-85A7-7B7F01EB808C} - C:\Programmi\VirtualCamera\VirtualCameraMenu.dll File not found
O2 - BHO: (Complitly) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Documents and Settings\SKY\Dati applicazioni\Complitly\Complitly.dll (SimplyGen)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (PlusIEEventHelper Class) - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Programmi\Nuance\PDF Viewer Plus\bin\PlusIEContextMenu.dll (Zeon Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (IMinent WebBooster (BHO)) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Programmi\Iminent\Iminent.WebBooster.InternetExplorer.dll (Iminent)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmi\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Programmi\Yontoo\YontooIEClient.dll (Yontoo LLC)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avast] C:\Programmi\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [DShutdown] C:\DShutdown.exe (ND)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [PPort12reminder] C:\Programmi\Nuance\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [StartupDelayer] C:\Programmi\r2 Studios\Startup Delayer\Startup Launcher.exe (r2 Studios)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: Aggiungi a PDF esistente - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Aggiungi destinazione link a PDF esistente - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Apri con PDF Viewer Plus - C:\Programmi\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation)
O8 - Extra context menu item: Converti destinazione link in Adobe PDF - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Converti in Adobe PDF - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Programmi\Generic\USB Server\NPW\NPWprint.dll (Elite Silicon Technology Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Programmi\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKCU\..Trusted Domains: no-ip.org ([medicservice] http in Siti attendibili)
O15 - HKCU\..Trusted Domains: sky.it ([pdv] https in Intranet locale)
O15 - HKCU\..Trusted Domains: skytv.it ([fieldsrv] https in Intranet locale)
O15 - HKCU\..Trusted Ranges: Range1 ([http] in Siti attendibili)
O15 - HKCU\..Trusted Ranges: Range1979 ([http] in Siti attendibili)
O15 - HKCU\..Trusted Ranges: Range2 ([http] in Siti attendibili)
O15 - HKCU\..Trusted Ranges: Range3 ([http] in Siti attendibili)
O15 - HKCU\..Trusted Ranges: Range4 ([http] in Siti attendibili)
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://go.microsoft.com/fwlink/?linkid=58813 (Office Genuine Advantage Validation Tool)
O16 - DPF: {06314967-EECF-11D2-9D64-0000949887BE} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_ERM_ContentSync.cab (Siebel ERM eBriefings Offline Content Synchronization Control)
O16 - DPF: {108D3206-846A-4A93-BACB-F0572D043ED7} http://192.168.1.234:81/webrec.cab (SurveillanceCtrl Control)
O16 - DPF: {16CE473B-0F57-4A10-BE6B-74533F2D2704} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Microsite_Layout.cab (Siebel Microsite Layout Designer)
O16 - DPF: {173D9E48-B527-4AA0-A929-30B446002AA8} http://wimax.changeip.org:82/DVRemoteAx.cab (DVRemoteControl Class)
O16 - DPF: {1B31FBEF-692B-4245-94DC-0DB31A785B83} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Configurator.cab (CSSAxConfigurator Class)
O16 - DPF: {20DA7177-A7B6-48E6-9270-FDBC67B49175} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Configurator.cab (CSSAxConfigurator Class)
O16 - DPF: {26EB4A1A-FC75-4512-B592-45552A64D019} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_iHelp.cab (Siebel iHelp)
O16 - DPF: {2BD363BE-2917-4CBB-B5F2-56BF18ECBD5B} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Test_Automation.cab (Siebel Test Automation)
O16 - DPF: {2FDBDF02-237E-4225-B636-7BB8E1F92280} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_CTI_Toolbar.cab (Siebel Callcenter Communications Toolbar)
O16 - DPF: {3B8682FB-B7D3-400A-AB69-06BE6A292740} http://circomaresantantioco.dyndns.org:50083/WebClient.cab (Avigilon Control Center Client)
O16 - DPF: {4647F918-445B-4020-A2A9-2EF4015ABFF9} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Gantt_Chart.cab (Siebel Gantt Chart)
O16 - DPF: {4750F588-96F1-4512-BEF1-6880C2A308CE} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Calendar.cab (Siebel Calendar)
O16 - DPF: {4EB6A027-A340-4CFB-BFE3-BEED26C8409B} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Task_Simulator.cab (Siebel TaskUI Multi-Column Tree Control)
O16 - DPF: {4FE7BF79-03CD-4CE2-9451-3788C468BC92} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Marketing_Allocation.cab (Siebel Marketing Allocation)
O16 - DPF: {5402529E-00CC-4989-9065-D5E466BEE060} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Prodselection.cab (Siebel Product Selection)
O16 - DPF: {5EDEA7DC-96C2-4F53-8810-31CF8A0946C2} http://medicservice.no-ip.org:9001/iFlyNPSX.CAB (iFly NetPlayers ActiveX 1.0)
O16 - DPF: {5FDFC964-2009-4A87-8415-31C0E997D122} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/iTools.cab (Reg Error: Key error.)
O16 - DPF: {632A7E08-EFC8-4640-B43E-AC500FD2383D} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Smartscript.cab (Siebel SmartScript)
O16 - DPF: {6B69D219-7158-4C96-A5C3-27CA4F6B1F30} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_HI_Client.cab (Siebel High Interactivity Framework)
O16 - DPF: {72BE406E-1B78-4CC4-8787-4C4D5E43B5E9} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Marketing_HTML_Editor.cab (Siebel Marketing HTML Editor)
O16 - DPF: {76B341CF-A03A-4D10-88E1-71DBBB5075D5} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Prodselection.cab (Siebel Product Selection)
O16 - DPF: {7E06938B-4733-4845-94B0-8F241C994420} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Marketing_Allocation.cab (Siebel Marketing Allocation)
O16 - DPF: {83AA6A38-E444-4E0B-9BA7-53A5DE6B7972} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Marketing_Calendar.cab (Siebel Event Calendar)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Reg Error: Value error.)
O16 - DPF: {8B84ABE0-D6FF-4767-9FE9-9D9E0D84F743} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_OutBound_mail.cab (Siebel Email Support for Microsoft Outlook and Lotus Notes)
O16 - DPF: {8C244272-1DC1-4CE7-9C6C-FABCA09EB543} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Desktop_Integration.cab (Siebel Desktop Integration)
O16 - DPF: {93E5204A-4344-4381-8912-8A7091E0FAE5} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/iSign.cab (CIC iSign)
O16 - DPF: {956DBA65-DE1A-47BB-A51A-D2EC9836055C} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Gantt_Chart.cab (Siebel Gantt Chart)
O16 - DPF: {9B479D7B-916A-45B0-B042-D42865A60E21} http://94.39.239.202/DvrOcx.cab (DvrOcx Control)
O16 - DPF: {9D1DD603-DCCE-4738-ABAE-B367B170EEB1} http://192.168.0.202:52000/LvrWeb.cab (LvrWeb Control)
O16 - DPF: {A9741B85-C472-42A6-ACBA-A1346BF09396} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Catalog_Navigator.cab (Siebel CSSAxCatalogNavigator Class)
O16 - DPF: {B2B2C3F9-CFB2-49CC-942D-103E68E09B74} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_OutBound_mail.cab (Siebel Email Support for Microsoft Outlook and Lotus Notes)
O16 - DPF: {C684E71E-3EEE-4A9B-A3B5-60C41F8E3CC1} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Catalog_Navigator.cab (Siebel CSSAxCatalogNavigator Class)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CC28C780-CF10-4DE9-9FC7-C954AE48649E} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Calendar.cab (Siebel Calendar)
O16 - DPF: {CD9C0F1B-D8F9-4229-B76C-5EF6B14372E4} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_HI_Client.cab (Siebel High Interactivity Framework)
O16 - DPF: {D523461C-EBF3-480E-85BE-EB027B0002B5} http://79.171.164.15:81/DvrClientOCX.cab (DvrClientOCX Control)
O16 - DPF: {DB7ACFA2-9634-4C98-BC9D-FB9416153022} http://circomaresantantioco.dyndns.org:82/control/nvEPLMedia.cab (nvEPLMedia Control)
O16 - DPF: {DD678CF8-FB6B-43F4-8783-2F7A809FC07B} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Smartscript.cab (Siebel SmartScript)
O16 - DPF: {E99699E7-8BAC-408A-9410-0A7B8D6FAFE2} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_Marketing_HTML_Editor.cab (Siebel Marketing HTML Editor)
O16 - DPF: {EC4DAAE3-3057-4121-A85D-896FF25FD8A2} https://fieldsrv.skytv.it/ecommunications_ita/20420/applets/SiebelAx_CTI_Toolbar.cab (Siebel Callcenter Communications Toolbar)
O16 - DPF: {F6F6C06D-D5BD-4869-93B1-1A8C423CF88E} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_UInbox.cab (UInboxDynBtn Class)
O16 - DPF: {F9BF64A0-5A65-43E0-ACDB-B223E7F9DDD9} http://192.168.0.163/WEBWATCH2.cab (WebWatch2 Control)
O16 - DPF: {FCCED7AE-121D-4205-84AE-34C9016A02DC} https://fieldsrv.skytv.it/ecommunications_ita/20444/applets/SiebelAx_Marketing_Calendar.cab (Siebel Event Calendar)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BD7F4173-93D3-49CD-AF7C-B2B743B5D739}: NameServer = 192.168.2.1
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programmi\File comuni\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programmi\File comuni\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programmi\File comuni\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - c:\Programmi\File comuni\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programmi\File comuni\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programmi\File comuni\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - C:\WINDOWS\System32\WgaLogon.dll ()
O24 - Desktop Components:0 (Pagina iniziale corrente) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Colline.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Colline.bmp
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2010/11/23 12.24.57 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{565fa2a0-260b-11e0-89f9-0018f3108ad9}\Shell - "" = AutoRun
O33 - MountPoints2\{565fa2a0-260b-11e0-89f9-0018f3108ad9}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL fAbrIzIO.exE
O33 - MountPoints2\{7eedc876-65d8-11e0-8a83-0018f3108ad9}\Shell\AutoRun\command - "" = F:\APPInst.exe
O33 - MountPoints2\{a00a7561-4e13-11e0-8a52-0018f3108ad9}\Shell\AutoRun\command - "" = E:\infocamere\bkmlauncher.exe
O33 - MountPoints2\{a00a7561-4e13-11e0-8a52-0018f3108ad9}\Shell\Shell00\Command - "" = E:\infocamere\bkmlauncher.exe
O33 - MountPoints2\{a00a7561-4e13-11e0-8a52-0018f3108ad9}\Shell\Shell01\Command - "" = E:\infocamere\bkmlauncher.exe
O33 - MountPoints2\{b779817a-f6ec-11df-898a-d624927d7e0e}\Shell - "" = AutoRun
O33 - MountPoints2\{b779817a-f6ec-11df-898a-d624927d7e0e}\Shell\AutoRun\command - "" = F:\.\ShowModem.exe
O33 - MountPoints2\{c2ff156e-69aa-11e0-8a89-0018f3108ad9}\Shell - "" = AutoRun
O33 - MountPoints2\{c2ff156e-69aa-11e0-8a89-0018f3108ad9}\Shell\AutoRun\command - "" = E:\Windows\AutoRun.exe
O33 - MountPoints2\{e0e3f4b2-759b-11e0-8aa3-0018f3108ad9}\Shell\AutoRun\command - "" = E:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
========== Files/Folders - Created Within 30 Days ==========
[2012/10/17 09.07.38 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\SKY\Desktop\OTL.exe
[2012/10/12 19.19.38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Dati applicazioni\Malwarebytes
[2012/10/12 19.19.31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\Malwarebytes' Anti-Malware
[2012/10/12 19.19.29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dati applicazioni\Malwarebytes
[2012/10/12 19.19.27 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2012/10/12 19.19.26 | 000,000,000 | ---D | C] -- C:\Programmi\Malwarebytes' Anti-Malware
[2012/10/12 19.18.56 | 010,524,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\SKY\Desktop\mbam-setup-1.65.0.1400.exe
[2012/10/10 10.23.14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Menu Avvio\Programmi\IngeFast
[2012/10/10 10.13.15 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\SKY\Recent
[2012/10/10 10.02.57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\CCleaner
[2012/10/10 10.02.55 | 000,000,000 | ---D | C] -- C:\Programmi\CCleaner
[2012/10/09 17.57.17 | 000,000,000 | ---D | C] -- C:\Programmi\IngeFast
[2012/10/08 19.03.46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\3CX VoIP Phone
[2012/10/08 19.03.09 | 000,000,000 | ---D | C] -- C:\Programmi\3CXPhone
[2012/10/08 19.03.09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\3CX Phone
[2012/10/06 12.52.51 | 000,000,000 | ---D | C] -- C:\Programmi\File comuni\Java
[2012/10/06 12.51.31 | 000,246,760 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2012/10/06 12.51.20 | 000,093,672 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2012/10/06 12.51.19 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2012/10/06 12.51.19 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2012/10/03 18.07.30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Desktop\Nuova cartella
[2012/09/28 09.13.13 | 000,000,000 | ---D | C] -- C:\DVR
[2012/09/22 12.13.23 | 007,437,526 | ---- | C] (Copyright İ 2011 Vista Software www.vtaskstudio.com ) -- C:\Documents and Settings\SKY\Desktop\vtasksetup.exe
[2012/09/18 12.05.11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Desktop\Accensioni - Spegnimenti
[2012/09/18 11.59.58 | 000,151,552 | ---- | C] (ND) -- C:\DShutdown.exe
[2012/09/17 18.46.34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dati applicazioni\Canneverbe Limited
[2012/09/17 18.46.33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Dati applicazioni\Canneverbe Limited
[2012/09/17 18.45.51 | 000,000,000 | ---D | C] -- C:\Programmi\CDBurnerXP
[2012/09/17 18.09.37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Uniblue
[2012/09/17 18.09.25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Dati applicazioni\EasyBurner
[2012/09/17 18.09.03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\Easy Burner
[2012/09/17 18.09.01 | 000,000,000 | ---D | C] -- C:\Programmi\EasyBurner
[2012/09/17 18.08.31 | 000,000,000 | ---D | C] -- C:\Programmi\Complitly
[2012/09/17 18.08.31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Dati applicazioni\Complitly
[2012/09/17 18.07.37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SKY\Dati applicazioni\Iminent
[2012/09/17 18.07.07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dati applicazioni\Iminent
[2012/09/17 18.06.02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\Iminent
[2012/09/17 18.05.49 | 000,000,000 | ---D | C] -- C:\Programmi\Iminent
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012/10/17 09.14.00 | 000,000,430 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{1C24CA24-BFCF-48AB-B06F-D8607D8195CB}.job
[2012/10/17 09.07.39 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\SKY\Desktop\OTL.exe
[2012/10/17 08.49.02 | 000,000,525 | ---- | M] () -- C:\WINDOWS\RemoteWebInfo.INF
[2012/10/17 08.49.00 | 000,000,978 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/10/17 08.43.00 | 000,001,234 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-1844823847-1801674531-1003UA.job
[2012/10/17 08.37.01 | 000,001,124 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012/10/17 07.49.01 | 000,000,464 | ---- | M] () -- C:\DShutdown.ini
[2012/10/17 07.48.53 | 000,073,451 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2012/10/17 07.48.24 | 000,001,120 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012/10/17 07.48.23 | 000,000,252 | ---- | M] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2012/10/17 07.48.23 | 000,000,248 | ---- | M] () -- C:\WINDOWS\tasks\DriverScanner.job
[2012/10/17 07.48.03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/10/16 17.01.44 | 000,077,431 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Fattura di Vendita n.936.pdf
[2012/10/16 16.43.00 | 000,001,182 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-1844823847-1801674531-1003Core.job
[2012/10/15 12.06.21 | 000,545,262 | ---- | M] () -- C:\WINDOWS\System32\perfh010.dat
[2012/10/15 12.06.21 | 000,495,958 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012/10/15 12.06.21 | 000,099,786 | ---- | M] () -- C:\WINDOWS\System32\perfc010.dat
[2012/10/15 12.06.21 | 000,084,442 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012/10/15 12.05.14 | 000,002,371 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Launch USBServer.exe.lnk
[2012/10/15 09.11.04 | 000,002,262 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/10/13 11.10.04 | 000,002,516 | -HS- | M] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2012/10/12 19.19.01 | 010,524,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\SKY\Desktop\mbam-setup-1.65.0.1400.exe
[2012/10/12 19.09.04 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2012/10/12 16.21.15 | 000,000,129 | ---- | M] () -- C:\key.bak
[2012/10/12 12.00.00 | 000,000,480 | ---- | M] () -- C:\WINDOWS\tasks\One-Click Tweak.job
[2012/10/12 09.29.48 | 000,109,694 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Odl 8-16219969948 Lella Antonio.pdf
[2012/10/11 19.37.55 | 001,897,966 | ---- | M] () -- C:\WINDOWS\System32\iCMS.dat
[2012/10/11 19.32.43 | 000,002,167 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iCMS.lnk
[2012/10/10 10.23.24 | 000,000,213 | ---- | M] () -- C:\Documents and Settings\All Users\.pinpad.cfg
[2012/10/09 16.26.57 | 000,078,414 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Fattura di Vendita n.908.pdf
[2012/10/09 09.49.20 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012/10/09 09.49.20 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012/10/09 08.46.38 | 000,000,190 | ---- | M] () -- C:\Documents and Settings\SKY\RmUserCfg.ini
[2012/10/08 19.41.17 | 000,253,050 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Modulo riordino grossisti kit tw2 08-10-2012.pdf
[2012/10/08 19.28.05 | 000,205,122 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Modulo riordino grossisti kit tw2.pdf
[2012/10/06 12.51.05 | 000,093,672 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll
[2012/10/06 12.50.59 | 000,246,760 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe
[2012/10/06 12.50.59 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe
[2012/10/06 12.50.58 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe
[2012/10/06 12.50.58 | 000,143,872 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl
[2012/10/06 12.50.57 | 000,821,736 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npDeployJava1.dll
[2012/10/06 12.50.56 | 000,746,984 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll
[2012/10/06 12.10.15 | 000,000,706 | ---- | M] () -- C:\WINDOWS\RemoteSetup.inf
[2012/10/05 17.05.31 | 000,000,961 | ---- | M] () -- C:\WINDOWS\Brpfx04a.ini
[2012/10/05 17.03.06 | 007,645,359 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\CCI05102012_0000.jpg
[2012/10/05 16.49.06 | 002,025,081 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Immagine (73).jpg
[2012/10/05 16.49.06 | 002,010,626 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Immagine (72).jpg
[2012/10/05 16.49.06 | 001,777,909 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Immagine (74).jpg
[2012/10/05 16.49.05 | 001,236,257 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Immagine (71).jpg
[2012/10/03 11.23.37 | 000,008,712 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\RIBA ERRE_DI.pdf
[2012/09/28 12.30.34 | 000,013,312 | ---- | M] () -- C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012/09/28 11.24.59 | 000,108,555 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Fattura parcella n.4 C.pdf
[2012/09/27 19.01.50 | 000,064,201 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\listino_RV_1_settembre.pdf
[2012/09/26 09.06.25 | 001,716,171 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\EDR-4LAN-VGA ita v1.pdf
[2012/09/26 08.56.15 | 000,132,029 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\CLI-ORDINE_0025451_00(146)[1].pdf
[2012/09/25 18.43.00 | 000,608,633 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\Passaporto Sergio.pdf
[2012/09/22 12.13.36 | 007,437,526 | ---- | M] (Copyright İ 2011 Vista Software www.vtaskstudio.com ) -- C:\Documents and Settings\SKY\Desktop\vtasksetup.exe
[2012/09/21 12.16.18 | 000,246,722 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\tabelle sintesi partita iva settembre 2012.pdf
[2012/09/21 09.55.14 | 000,000,096 | ---- | M] () -- C:\WINDOWS\NVSInfo.INF
[2012/09/21 09.55.09 | 000,002,650 | ---- | M] () -- C:\WINDOWS\WEB_BACKUP.inf
[2012/09/21 09.19.21 | 083,023,306 | ---- | M] () -- C:\Documents and Settings\All Users\Dati applicazioni\dsgsdgdsgdsgw.pad
[2012/09/19 16.22.35 | 000,029,683 | ---- | M] () -- C:\Documents and Settings\SKY\Desktop\SOAS_8-16016599682_8-7CVVBEQ_2012919162111.pdf
[2012/09/17 18.06.40 | 000,000,580 | ---- | M] () -- C:\WINDOWS\System32\InstallUtil.InstallLog
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012/10/16 17.01.44 | 000,077,431 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Fattura di Vendita n.936.pdf
[2012/10/12 16.21.15 | 000,000,129 | ---- | C] () -- C:\key.bak
[2012/10/12 09.29.48 | 000,109,694 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Odl 8-16219969948 Lella Antonio.pdf
[2012/10/10 10.23.14 | 000,001,844 | ---- | C] () -- C:\Documents and Settings\All Users\.java.policy
[2012/10/10 10.23.14 | 000,000,662 | ---- | C] () -- C:\Documents and Settings\All Users\.nets.ks
[2012/10/10 10.23.14 | 000,000,213 | ---- | C] () -- C:\Documents and Settings\All Users\.pinpad.cfg
[2012/10/09 16.26.57 | 000,078,414 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Fattura di Vendita n.908.pdf
[2012/10/08 19.38.32 | 000,253,050 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Modulo riordino grossisti kit tw2 08-10-2012.pdf
[2012/10/08 19.28.05 | 000,205,122 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Modulo riordino grossisti kit tw2.pdf
[2012/10/05 17.03.04 | 007,645,359 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\CCI05102012_0000.jpg
[2012/10/05 16.49.06 | 002,025,081 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Immagine (73).jpg
[2012/10/05 16.49.06 | 001,777,909 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Immagine (74).jpg
[2012/10/05 16.49.05 | 002,010,626 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Immagine (72).jpg
[2012/10/05 16.49.05 | 001,236,257 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Immagine (71).jpg
[2012/10/03 11.23.37 | 000,008,712 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\RIBA ERRE_DI.pdf
[2012/09/28 11.18.52 | 000,108,555 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Fattura parcella n.4 C.pdf
[2012/09/26 09.06.25 | 001,716,171 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\EDR-4LAN-VGA ita v1.pdf
[2012/09/26 08.56.15 | 000,132,029 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\CLI-ORDINE_0025451_00(146)[1].pdf
[2012/09/25 18.43.00 | 000,608,633 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Passaporto Sergio.pdf
[2012/09/22 12.40.01 | 000,064,201 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\listino_RV_1_settembre.pdf
[2012/09/21 12.16.18 | 000,246,722 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\tabelle sintesi partita iva settembre 2012.pdf
[2012/09/21 08.17.53 | 083,023,306 | ---- | C] () -- C:\Documents and Settings\All Users\Dati applicazioni\dsgsdgdsgdsgw.pad
[2012/09/19 16.22.35 | 000,029,683 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\SOAS_8-16016599682_8-7CVVBEQ_2012919162111.pdf
[2012/09/18 12.04.41 | 000,000,464 | ---- | C] () -- C:\DShutdown.ini
[2012/09/18 11.48.52 | 000,000,057 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\SPEGNIMENTO SERVER.BAT
[2012/09/18 11.48.51 | 000,000,024 | ---- | C] () -- C:\Documents and Settings\SKY\Desktop\Accensione SERVER.bat
[2012/09/17 20.01.38 | 000,343,202 | ---- | C] () -- C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\WPFFontCache_v0400-System.dat
[2012/09/17 18.45.58 | 000,001,520 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\CDBurnerXP.lnk
[2012/09/17 18.45.56 | 000,005,504 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2012/09/17 18.08.47 | 000,000,248 | ---- | C] () -- C:\WINDOWS\tasks\DriverScanner.job
[2012/09/17 18.06.27 | 000,000,580 | ---- | C] () -- C:\WINDOWS\System32\InstallUtil.InstallLog
[2012/09/14 09.00.20 | 000,000,159 | ---- | C] () -- C:\Documents and Settings\SKY\DvrCfg.ini
[2012/08/04 11.20.05 | 000,000,628 | ---- | C] () -- C:\WINDOWS\Sys |
|
Top |
|
 |
freenets1 Comune mortale

Registrato: 17/10/12 09:33 Messaggi: 2
|
Inviato: 17 Ott 2012 09:49 Oggetto: |
|
|
[2012/08/04 11.20.05 | 000,000,628 | ---- | C] () -- C:\WINDOWS\System32\LVRWeb.ini
[2012/06/27 18.37.07 | 000,000,961 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini
[2012/06/27 18.37.07 | 000,000,149 | ---- | C] () -- C:\WINDOWS\brpcfx.ini
[2012/06/27 18.35.07 | 000,000,176 | ---- | C] () -- C:\WINDOWS\brdfxspd.dat
[2012/06/27 18.35.07 | 000,000,086 | ---- | C] () -- C:\WINDOWS\Brfaxrx.ini
[2012/06/27 16.24.54 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\BRTCPCON.DLL
[2012/06/27 16.24.45 | 000,000,114 | ---- | C] () -- C:\WINDOWS\System32\BRLMW03A.INI
[2012/06/27 16.24.42 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\BRADM10A.DAT
[2012/05/28 10.24.42 | 000,000,164 | ---- | C] () -- C:\WINDOWS\UnitManagerClient.INI
[2012/03/16 09.36.24 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/03/12 17.41.48 | 000,000,043 | ---- | C] () -- C:\WINDOWS\gswin32.ini
[2012/02/20 20.39.18 | 000,810,496 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2012/02/20 20.39.18 | 000,183,808 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2012/02/20 18.24.40 | 000,001,216 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2012/02/20 18.19.52 | 000,080,896 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2012/01/18 17.30.36 | 000,017,408 | ---- | C] () -- C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\WebpageIcons.db
[2011/11/22 10.51.21 | 011,272,192 | ---- | C] () -- C:\Documents and Settings\SKY\Dati applicazioni\Sandra.mdb
[2011/06/16 15.48.56 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\DvrOcxFAR.dll
[2011/06/13 13.02.14 | 000,484,416 | ---- | C] () -- C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\FontCache3.0.0.0.dat
[2011/05/26 11.14.59 | 000,013,931 | R--- | C] () -- C:\WINDOWS\System32\RaCoInst.dat
[2011/05/12 14.22.58 | 000,022,528 | ---- | C] () -- C:\WINDOWS\System32\DvrOcxDEU(JSJ).dll
[2011/04/14 11.00.02 | 000,000,136 | ---- | C] () -- C:\Documents and Settings\SKY\tmpSubjectDN
[2011/04/13 18.17.22 | 000,725,064 | ---- | C] () -- C:\WINDOWS\System32\pwNative.exe
[2011/04/13 18.17.21 | 000,016,472 | ---- | C] () -- C:\WINDOWS\System32\pwdrvio.sys
[2011/04/13 18.17.21 | 000,011,104 | ---- | C] () -- C:\WINDOWS\System32\pwdspio.sys
[2011/02/14 12.52.14 | 000,259,888 | ---- | C] () -- C:\WINDOWS\SUPDRun.exe
[2011/02/14 12.52.13 | 000,026,624 | ---- | C] () -- C:\WINDOWS\System32\spd__l.dll
[2011/02/14 12.52.12 | 000,283,136 | ---- | C] () -- C:\WINDOWS\System32\DscPnt.dll
[2011/02/14 12.52.12 | 000,151,552 | ---- | C] () -- C:\WINDOWS\System32\spd__ci.exe
[2011/02/14 12.42.52 | 000,022,723 | ---- | C] () -- C:\WINDOWS\System32\cl31ml3.dll
[2011/02/14 11.53.39 | 000,171,136 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\GenHC.sys
[2011/01/17 21.07.51 | 000,000,030 | ---- | C] () -- C:\WINDOWS\USDL_GrandPrix_v1.6.4_XP.INI
[2011/01/17 10.21.03 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\SKY\Dati applicazioni\$_hpcst$.hpc
[2011/01/04 10.41.56 | 000,000,027 | ---- | C] () -- C:\Documents and Settings\SKY\.mobione.locator
[2010/12/30 19.38.53 | 001,897,966 | ---- | C] () -- C:\WINDOWS\System32\iCMS.dat
[2010/12/27 18.53.28 | 000,021,504 | ---- | C] () -- C:\WINDOWS\System32\DvrOcxROM.dll
[2010/12/27 18.53.28 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\DvrOcxRUS(DIT).dll
[2010/12/27 18.53.28 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\DvrOcxCSY.dll
[2010/12/27 18.53.26 | 000,021,504 | ---- | C] () -- C:\WINDOWS\System32\DvrOcxTRK(KNOWLEDGE).dll
[2010/12/18 10.05.58 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/11/26 17.27.34 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL
[2010/11/26 12.21.07 | 000,002,516 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
[2010/11/26 12.21.07 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\4790AECC4E.sys
[2010/11/24 19.59.12 | 000,000,190 | ---- | C] () -- C:\Documents and Settings\SKY\RmUserCfg.ini
[2010/11/24 17.47.40 | 000,495,616 | ---- | C] () -- C:\WINDOWS\System32\Tx32.dll
[2010/11/24 17.47.35 | 000,000,530 | ---- | C] () -- C:\WINDOWS\System32\ic32.ini
[2010/11/24 13.14.03 | 000,013,312 | ---- | C] () -- C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/24 09.36.07 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/11/23 19.53.11 | 000,005,810 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2010/11/23 19.46.17 | 000,022,723 | ---- | C] () -- C:\WINDOWS\System32\ps3200l3.dll
[2010/11/23 13.10.09 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010/11/23 13.08.54 | 000,324,320 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/11/23 12.36.15 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\ChgService.exe
[2010/11/23 12.27.20 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010/11/23 12.21.34 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
========== ZeroAccess Check ==========
[2011/01/11 13.39.41 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2010/04/16 17.35.24 | 001,506,816 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009/02/09 12.18.59 | 000,473,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2004/08/19 15.39.30 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
< End of report >
e questo il file extras.txt
OTL Extras logfile created on: 17/10/2012 9.08.44 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\SKY\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.13)
Locale: 00000410 | Country: Italia | Language: ITA | Date Format: dd/MM/yyyy
1,87 Gb Total Physical Memory | 0,84 Gb Available Physical Memory | 44,61% Memory free
3,72 Gb Paging File | 2,94 Gb Available in Paging File | 78,93% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Programmi
Drive C: | 74,52 Gb Total Space | 14,93 Gb Free Space | 20,03% Space Free | Partition Type: NTFS
Drive Z: | 122,30 Gb Total Space | 74,87 Gb Free Space | 61,22% Space Free | Partition Type: NTFS
Computer Name: FASTWEB | User Name: SKY | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = ChromeHTML] -- C:\Programmi\Google\Chrome\Application\chrome.exe (Google Inc.)
.url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- Reg Error: Key error. File not found
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- "C:\Programmi\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Programmi\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Programmi\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Programmi\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
"54925:UDP" = 54925:UDP:*:Enabled:BrotherNetwork Scanner
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Programmi\Microsoft ActiveSync\rapimgr.exe" = C:\Programmi\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Programmi\Microsoft ActiveSync\wcescomm.exe" = C:\Programmi\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Programmi\Microsoft ActiveSync\WCESMgr.exe" = C:\Programmi\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Programmi\Simple Port Forwarding\spf.exe" = C:\Programmi\Simple Port Forwarding\spf.exe:*:Enabled:Simple Port Forwarding By PcWinTech.com -- (PcWinTech.com)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\system32\sessmgr.exe" = %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019 -- (Microsoft Corporation)
"C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe" = C:\Programmi\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe:*:Enabled:Apache HTTP Server -- (Apache Software Foundation)
"C:\Programmi\uTorrent\uTorrent.exe" = C:\Programmi\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Programmi\Microsoft Office\Office12\OUTLOOK.EXE" = C:\Programmi\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook -- (Microsoft Corporation)
"C:\Programmi\Microsoft Office\Office12\GROOVE.EXE" = C:\Programmi\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove -- (Microsoft Corporation)
"C:\Programmi\Microsoft Office\Office12\ONENOTE.EXE" = C:\Programmi\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Programmi\Skype\Plugin Manager\skypePM.exe" = C:\Programmi\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager
"C:\Programmi\Microsoft ActiveSync\rapimgr.exe" = C:\Programmi\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Programmi\Microsoft ActiveSync\wcescomm.exe" = C:\Programmi\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Programmi\Microsoft ActiveSync\WCESMgr.exe" = C:\Programmi\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"C:\Programmi\Generic\USB Server\NPW\NPWService.exe" = C:\Programmi\Generic\USB Server\NPW\NPWService.exe:*:Enabled:NPWService -- ()
"C:\WINDOWS\system32\SUPDSvc.exe" = C:\WINDOWS\system32\SUPDSvc.exe:*:Enabled:Samsung UPD Service -- (Samsung Electronics CO., LTD.)
"%windir%\Network Diagnostic\xpnetdiag.exe" = %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000 -- (Microsoft Corporation)
"C:\Programmi\Avigilon\Avigilon Camera Installation Tool\CameraInstallerDaemonApp_u.exe" = C:\Programmi\Avigilon\Avigilon Camera Installation Tool\CameraInstallerDaemonApp_u.exe:*:Enabled:Avigilon Camera Installation Tool Daemon -- ()
"C:\Programmi\Avigilon\Avigilon Camera Installation Tool\CameraInstallerClientApp_u.exe" = C:\Programmi\Avigilon\Avigilon Camera Installation Tool\CameraInstallerClientApp_u.exe:*:Enabled:Avigilon Camera Installation Tool Client -- ()
"C:\Programmi\Simple Port Forwarding\spf.exe" = C:\Programmi\Simple Port Forwarding\spf.exe:*:Enabled:Simple Port Forwarding By PcWinTech.com -- (PcWinTech.com)
"C:\Programmi\Bonjour\mDNSResponder.exe" = C:\Programmi\Bonjour\mDNSResponder.exe:*:Enabled: Servizio Bonjour -- (Apple Inc.)
"C:\Programmi\iTunes\iTunes.exe" = C:\Programmi\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
"C:\Programmi\File comuni\Apple\Apple Application Support\WebKit2WebProcess.exe" = C:\Programmi\File comuni\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit -- (Apple Inc.)
"C:\Programmi\Avigilon\Avigilon Control Center Client\DvrClientClrApp_u.exe" = C:\Programmi\Avigilon\Avigilon Control Center Client\DvrClientClrApp_u.exe:*:Enabled:Avigilon Control Center Client -- ()
"C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Akamai\netsession_win.exe" = C:\Documents and Settings\SKY\Impostazioni locali\Dati applicazioni\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface -- (Akamai Technologies, Inc)
"C:\Programmi\SiSoftware\SiSoftware Sandra Lite (Valutazione) 2012\RpcAgentSrv.exe" = C:\Programmi\SiSoftware\SiSoftware Sandra Lite (Valutazione) 2012\RpcAgentSrv.exe:*:Enabled:SiSoftware Deployment Agent Service -- (SiSoftware)
"C:\Programmi\SiSoftware\SiSoftware Sandra Lite (Valutazione) 2012\WNt500x86\RpcSandraSrv.exe" = C:\Programmi\SiSoftware\SiSoftware Sandra Lite (Valutazione) 2012\WNt500x86\RpcSandraSrv.exe:*:Enabled:SiSoftware Sandra Agent Service -- (SiSoftware)
"C:\Programmi\TeamViewer\Version7\TeamViewer.exe" = C:\Programmi\TeamViewer\Version7\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application -- (TeamViewer GmbH)
"C:\Programmi\TeamViewer\Version7\TeamViewer_Service.exe" = C:\Programmi\TeamViewer\Version7\TeamViewer_Service.exe:*:Enabled:Teamviewer Remote Control Service
"C:\Programmi\webcam 7\wLite.exe" = C:\Programmi\webcam 7\wLite.exe:*:Enabled:webcam 7 -- (Moonware Studios)
"C:\Programmi\webcam 7\wService.exe" = C:\Programmi\webcam 7\wService.exe:*:Enabled:webcam 7 Service -- (Moonware Studios)
"C:\Programmi\Brother\Brmfl10f\FAXRX.exe" = C:\Programmi\Brother\Brmfl10f\FAXRX.exe:*:Enabled:FAXRX.EXE -- (Brother Industries Ltd.)
"C:\Programmi\Skype\Phone\Skype.exe" = C:\Programmi\Skype\Phone\Skype.exe:*:Enabled:Skype -- (Skype Technologies S.A.)
"C:\Programmi\Iminent\Iminent.exe" = C:\Programmi\Iminent\Iminent.exe:*:Enabled:Iminent Firewall Rule -- (Iminent)
"C:\Programmi\Iminent\Iminent.Messengers.exe" = C:\Programmi\Iminent\Iminent.Messengers.exe:*:Enabled:Iminent.Messengers Firewall Rule -- (Iminent)
"C:\Programmi\3CXPhone\3CXPhone.exe" = C:\Programmi\3CXPhone\3CXPhone.exe:*:Enabled:3CXPhone -- (3CX Ltd)
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{B6BFCD02-BA0E-41A9-9C9C-6624C4BB475F}" = Corel Graphics - Windows Shell Extension
"{010C0B4A-DC93-4BB4-893B-BDDE95355A3E}" = Freeware PDF Unlocker
"{0673654C-5296-453B-9798-B61CD7E03FEB}" = SES Driver
"{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}" = Scansoft PDF Professional
"{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA}" = Uniblue RegistryBooster
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0D00056E-1A0A-4DDC-A81B-81581770DABA}" = Motorola mobile PhoneTools
"{0DF8FA4D-299C-4250-9F09-C14E47E12224}" = 3CXPhone
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{12FEC00C-027C-4A34-9AAB-562EDA43DC18}_is1" = MiniTool Partition Wizard Home Edition 5.2
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
"{1A91E8F7-B111-B66E-8099-0D88B2BB031C}" = iBBDemo2
"{1D52CABE-4FE4-4B6C-AB6D-9324EAE682D3}" = Unit Manager Express
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6423DE-7959-4178-80E0-023C7EAA5347}" = NVIDIA ForceWare Network Access Manager
"{26A24AE4-039D-4CA4-87B4-2F83216025FF}" = Java(TM) 6 Update 26
"{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7
"{28656860-4728-433C-8AD4-D1A930437BC8}" = Nuance PDF Viewer Plus
"{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{350C9410-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3ACCCFB3-7B17-4E9F-ACB0-46868FCD4487}" = Brother MFL-Pro Suite MFC-7360N
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F30BC2B-5441-3149-91D7-FAA2332E2F5F}" = Microsoft Windows SDK for Windows 7 Headers and Libraries (30514)
"{4FFBB818-B13C-11E0-931D-B2664824019B}_is1" = Complitly
"{520C2939-555B-40BF-A91B-8B671AB560EB}" = Easy Burner
"{52F23554-8277-4403-9128-06A3801EFFD3}" = Code 128 Excel Add In
"{55CA4086-0D2C-30E3-A7B5-C76BA737CECE}" = Microsoft .NET Framework 3.5 Language Pack SP1 - ita
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{6813B620-4109-4E66-9A28-4F32789851D2}" = Dual codec internet relative software
"{685DC569-E22C-4D15-98EB-EE74D4D428F0}" = IPCamSourceVideo
"{691BD252-796D-4AE3-924C-C48A1CD4BEDF}" = OpenOffice.org 3.2
"{6A3F9D74-BB80-4451-8CA1-4B3A857F1359}" = Supporto applicazioni Apple
"{6BF6FA12-4DA0-4BBD-A91C-81B1A1DDCE74}" = iCMS
"{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}" = Nuance PaperPort 12
"{6EF2FDAB-7FBF-4AB9-92CD-594BDDB6A56B}" = PaperPort Image Printer
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{779DECD7-E072-4B56-9B6B-BEB5973EEEB5}" = MobileMe Control Panel
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7E84C38A-25FF-42C8-AD63-09A9CB3F9D17}" = Avigilon Control Center Client
"{8040527F-DD74-4B45-8A06-C4BF145B6C76}" = Brother Product Research and Support Program
"{805A7890-3138-44E4-8DAA-480C55516989}" = MainConcept MJPEG Codec Demo
"{842F9881-E181-30B3-A152-008D61433274}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - ITA
"{85E0DA75-0795-4377-B079-CFB9F7C5691F}" = Phone Software Update - Windows Mobile
"{86BA3130-5938-3192-BBCF-6B0A2D86FA58}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - ITA
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.02
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8B5D3F44-8150-4471-B093-28BA8A7D67C8}" = Phone Software Update - Windows Mobile
"{8F4507EF-C5F3-46CE-9718-9D3698821333}" = Motorola Driver Installation
"{90120000-0010-0410-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Italian) 12
"{90120000-0015-0410-0000-0000000FF1CE}" = Microsoft Office Access MUI (Italian) 2007
"{90120000-0016-0410-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Italian) 2007
"{90120000-0018-0410-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Italian) 2007
"{90120000-0019-0410-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Italian) 2007
"{90120000-001A-0410-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Italian) 2007
"{90120000-001B-0410-0000-0000000FF1CE}" = Microsoft Office Word MUI (Italian) 2007
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0410-0000-0000000FF1CE}" = Microsoft Office Proof (Italian) 2007
"{90120000-0020-0410-0000-0000000FF1CE}" = Pacchetto di compatibilità per Office System 2007
"{90120000-002C-0410-0000-0000000FF1CE}" = Microsoft Office Proofing (Italian) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0410-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Italian) 2007
"{90120000-006E-0410-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Italian) 2007
"{90120000-00A1-0410-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Italian) 2007
"{90120000-00BA-0410-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Italian) 2007
"{928D2FB1-291A-362B-89A4-7075A9D904A4}" = Microsoft Windows SDK for Windows 7 (7.1)
"{93A1B09E-BAFA-4628-A5B6-921CB026955A}" = Corel Paint Shop Pro Photo XI
"{93D34EE3-99B3-4DB1-8B0A-0A657466F90D}" = MT503HSA MTV
"{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync
"{9C5725B7-2219-410C-A364-90767F71F00C}" = Digitalizzazione di rete
"{A0028B1B-EFC3-4EFF-BC3C-16129A9C466E}" = crystal
"{A0C9D290-E514-490B-BAE2-EFD4EDD48658}" = USB PHONE KMU-30A
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A3A77807-E352-4786-BA53-7EF8DAFF69D5}" = Avigilon Control Center Player
"{A6E71E28-43CB-423E-B415-B7C00D77902E}" = Iminent
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AC76BA86-1040-7D70-7761-000000000004}" = Adobe Acrobat 9 Pro Extended - Italiano, Español, Nederlands, Português
"{AC76BA86-1040-7D70-7761-000000000004}{AC76BA86-1040-7D70-7761-000000000004}" = Adobe Acrobat 9 Pro Extended - Italiano, Español, Nederlands, Português
"{AC76BA86-7AD7-1040-7B44-A95000000001}" = Adobe Reader 9.5.2 - Italiano
"{AD51B531-1C25-4592-9D40-CA6B584557DC}_is1" = IngeFast 1.06
"{B359EF4D-49B0-419E-B33C-847CD00BAFAE}" = USB Server
"{B6BFCD02-BA0E-41A9-9C9C-6624C4BB475F}" = Corel Graphics - Windows Shell Extension
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C23CD6DA-1958-43A5-ADD0-59396572E02E}" = Apple Mobile Device Support
"{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1" = Uniblue DriverScanner
"{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1" = SiSoftware Sandra Lite (Valutazione) 2012
"{C615B4A6-DDE8-4325-BCF8-E53E913D95E9}_is1" = AMR to MP3 Converter 1.4
"{C73CA646-73B3-4AEF-A136-C37505745174}" = iTunes
"{C8AED900-8C52-43B6-B4F9-7BEF858AF5CD}" = Sky Go Player
"{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D03482C5-9AD8-496D-B388-692AE04C93AF}" = Bonjour
"{D1B10CE4-9513-45A6-A090-C35CA146D34B}" = Avigilon Camera Installation Tool
"{D91CBC0D-D45B-4FE7-AF44-E2BDD302CD9F}" = WebSlingPlayer ActiveX
"{DB75941E-30C4-4D97-B000-D17C764B998C}" = Brother BRAdmin Light 1.18.0001
"{DD3EE2F9-FB3C-492F-98CB-AB11BF49955B}" = Unit Manager Network 3.2
"{E268ADBD-A002-4684-AEDF-EA0F83F7E00B}" = WOL Magic Packet Sender
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Codificatore di Windows Media 9 Series
"{E9D8B18B-7178-42CD-9076-423EABCC36CF}" = Unreal Media Server v 8.0
"{EB1BE39D-4C36-40A0-8CFB-079A2D14CB79}" = Windows Genuine Advantage Validation 1.9.42.0 Cracked
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype 5.10
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"435403D41CB143EFFFCE801AFA6A0778EBC1DB1F" = Pacchetto driver Windows - Microsoft (USBCCID) SmartCardReader (08/01/2006 5.2.3790.2724)
"54AF1A79317861A0D38F1C9B69C66F93BBD29CFD" = Pacchetto driver Windows - Sagem Monetel (usbser) Ports (10/09/2006 5.1.2600.0)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.6
"Advanced PC Tweaker_is1" = Advanced PC Tweaker v4.2
"Akamai" = Akamai NetSession Interface Service
"A-PDF Text Extractor_is1" = A-PDF Text Extractor 1.4
"avast" = avast! Free Antivirus
"Avigilon Camera Installation Tool" = Avigilon Camera Installation Tool
"Avigilon Control Center Client" = Avigilon Control Center Client
"Avigilon Control Center Player" = Avigilon Control Center Player
"BASE" = BASE
"Bulba" = Bulba 2006.05
"CCleaner" = CCleaner
"ENTERPRISE" = Microsoft Office Enterprise 2007
"FASTWEB Key Version_is1" = FASTWEB Key version 5.306
"ffdshow_is1" = ffdshow [rev 890] [2007-02-06]
"FileZilla Client" = FileZilla Client 3.5.3
"Google Chrome" = Google Chrome
"iBBDemo2" = iBBDemo2
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie7" = Windows Internet Explorer 7
"IMBoosterARP" = Iminent
"InstallShield_{1F6423DE-7959-4178-80E0-023C7EAA5347}" = NVIDIA ForceWare Network Access Manager
"InstallShield_{805A7890-3138-44E4-8DAA-480C55516989}" = MainConcept MJPEG Codec Demo
"InstallShield_{B359EF4D-49B0-419E-B33C-847CD00BAFAE}" = USB Server
"IP Video System Design Tool_is1" = IP Video System Design Tool v.6.3.0.510
"LanSpy_is1" = LanSpy
"LanWhoIs_is1" = LanWhoIs
"Macromedia Shockwave Player" = Macromedia Shockwave Player
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versione 1.65.0.1400
"MCMJPG" = MainConcept MJPG software codec (Remove Only)
"Microsoft .NET Framework 3.5 Language Pack SP1 - ita" = Microsoft .NET Framework 3.5 - Language Pack SP1 (italiano)
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Mozilla Firefox 15.0.1 (x86 it)" = Mozilla Firefox 15.0.1 (x86 it)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NetBalancer_is1" = NetBalancer
"NetDvrPlugin" = NetDvrPlugin 1.0
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"NVIDIA Drivers" = NVIDIA Drivers
"PowerISO" = PowerISO
"Recuva" = Recuva
"SAMSUNG CDMA Modem" = SAMSUNG CDMA Modem Driver Set
"SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set
"Samsung Universal Print Driver" = Samsung Universal Print Driver
"SDKSetup_7.1.7600.0.30514" = Microsoft Windows SDK for Windows 7 (7.1)
"Simple Port Forwarding" = Simple Port Forwarding
"Startup Delayer" = Startup Delayer v3.0 (build 326)
"TeamViewer 7" = TeamViewer 7
"TeliumUsbPortUpdaterInstaller_1.8" = Telium Usb Port Updater Installer 1.8 (remove only)
"Uniblue RegistryBooster" = Uniblue RegistryBooster
"uTorrent" = µTorrent
"VH Toolkit_is1" = VH Toolkit 1.0.46.0
"VLC media player" = VLC media player 1.1.9
"WBFS Manager 3.0" = WBFS Manager 3.0
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"webcam 7" = webcam 7
"WIC" = Windows Imaging Component
"Windows Media Encoder 9" = Codificatore di Windows Media 9 Series
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"WinPcapInst" = WinPcap 4.1.2
"WinRAR archiver" = WinRAR gestione archivi
"Wireshark" = Wireshark 1.4.6
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"Xerox Phaser 3200MFP" = Xerox Phaser 3200MFP
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Akamai" = Akamai NetSession Interface
"com.poweredbypulse.profile-0-rb-10081-1294130517453" = MobiOne Studio 1.0.1
"FLV Player" = FLV Player
"Game Organizer" = EasyBits GO
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 16/10/2012 13.26.08 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {7B849a69-220F-451E-B3FE-2CB811AF94AE}. Probabile errore di registrazione.
Error - 16/10/2012 13.26.08 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}. Probabile errore di registrazione.
Error - 16/10/2012 13.33.07 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {7B849a69-220F-451E-B3FE-2CB811AF94AE}. Probabile errore di registrazione.
Error - 16/10/2012 13.33.07 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}. Probabile errore di registrazione.
Error - 16/10/2012 14.01.34 | Computer Name = FASTWEB | Source = Brother BrLog | ID = 1001
Description = STI BrtSTI: [2012/10/16 20:01:34.734]: [00003348]: SendSKeySettingToDevice::
Snmp Load Error[-1] To[192.168.0.19]
Error - 16/10/2012 14.02.47 | Computer Name = FASTWEB | Source = Brother BrLog | ID = 1001
Description = STI BrtSTI: [2012/10/16 20:02:47.000]: [00003348]: SendSKeySettingToDevice::
Snmp Load Error[-1] To[192.168.0.19]
Error - 17/10/2012 1.48.14 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {7B849a69-220F-451E-B3FE-2CB811AF94AE}. Probabile errore di registrazione.
Error - 17/10/2012 1.48.14 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}. Probabile errore di registrazione.
Error - 17/10/2012 1.48.14 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {7B849a69-220F-451E-B3FE-2CB811AF94AE}. Probabile errore di registrazione.
Error - 17/10/2012 1.48.14 | Computer Name = FASTWEB | Source = Userenv | ID = 1041
Description = Impossibile ricercare e caricare la voce di Registro di sistema DllName
per {CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}. Probabile errore di registrazione.
[ System Events ]
Error - 15/10/2012 9.58.08 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio VirtualCamera non è stato avviato per il seguente errore:
%%1058
Error - 16/10/2012 2.19.46 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio TeamViewer 7 non è stato avviato per il seguente errore:
%%2
Error - 16/10/2012 2.19.46 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio VirtualCamera non è stato avviato per il seguente errore:
%%1058
Error - 16/10/2012 2.20.10 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7034
Description = Interruzione imprevista del servizio NVIDIA Display Driver Service.
Questo evento si è già verificato 1 volta(e).
Error - 16/10/2012 10.08.38 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio TeamViewer 7 non è stato avviato per il seguente errore:
%%2
Error - 16/10/2012 10.08.38 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio VirtualCamera non è stato avviato per il seguente errore:
%%1058
Error - 17/10/2012 1.49.52 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio NPWService non è stato avviato per il seguente errore:
%%1083
Error - 17/10/2012 1.49.52 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio TeamViewer 7 non è stato avviato per il seguente errore:
%%2
Error - 17/10/2012 1.49.52 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7000
Description = Il servizio VirtualCamera non è stato avviato per il seguente errore:
%%1058
Error - 17/10/2012 1.49.58 | Computer Name = FASTWEB | Source = Service Control Manager | ID = 7034
Description = Interruzione imprevista del servizio NVIDIA Display Driver Service.
Questo evento si è già verificato 1 volta(e).
< End of report >
grazie e atutti per l'aiuto e....
SCUSATE PER LA LUNGHEZZA DEI POST... |
|
Top |
|
 |
bdoriano Amministratore


Registrato: 02/04/07 12:05 Messaggi: 14391 Residenza: 3° pianeta del sistema solare...
|
Inviato: 17 Ott 2012 13:47 Oggetto: |
|
|
Per cortesia, i logs caricali su uno dei servizi indicato qui e posta qui il link che ti viene assegnato. |
|
Top |
|
 |
|
|
Non puoi inserire nuovi argomenti Non puoi rispondere a nessun argomento Non puoi modificare i tuoi messaggi Non puoi cancellare i tuoi messaggi Non puoi votare nei sondaggi
|
|