win 10 pro desktop
nessun problema
tutto ok .... ho bisogno di un Vs parere grazie :O)
iphiderlib. ............ anonimo
Quietzone Core Service ...... virtuale
ZDs ...zdl .... chiavetta net
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 00:25:41, on 09/11/2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16412)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhostw.exe
C:\Windows\system32\sihost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Process Lasso\processgovernor.exe
C:\Program Files\Process Lasso\processlasso.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Program Files\Quietzone\RQZ\rvsgui.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\ApplicationFrameHost.exe
C:\Windows\ImmersiveControlPanel\SystemSettings.exe
C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1001.16470.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.13821.0_x86__8wekyb3d8bbwe\Video.UI.exe
C:\Windows\System32\InstallAgent.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Program Files\Wind Connection Manager\UnifiedUi.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
C:\Windows\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Mr. Mago MagOO\Desktop\PortableApps\HiJackThis\HijackThisPortable\HijackThisPortable.exe
C:\Users\Mr. Mago MagOO\Desktop\PortableApps\HiJackThis\HijackThisPortable\HijackThisPortable.exe
C:\Users\Mr. Mago MagOO\Desktop\PortableApps\HiJackThis\HijackThisPortable\App\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/p/?LinkId=255141R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'SERVIZIO DI RETE')
O4 - Global Startup: Quietzone.lnk = C:\Program Files\Quietzone\RQZ\rvsgui.exe
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: I&nvia a OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync - Chiamata con un clic - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync - Chiamata con un clic - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: &Note collegate di OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Note collegate di OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O10 - Unknown file in Winsock LSP: c:\program files\ip hider ever\iphiderlib.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{d0fb2cd4-0adc-4776-ae2a-6b01c6dd89eb}: NameServer = 212.52.97.25
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 12\DfsdkS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Quietzone Communication and Storage Service (rccsvc) - Returnil and its licensors - C:\Program Files\Quietzone\RQZ\rccsvc.exe
O23 - Service: Realtek87B - Realtek - C:\Program Files\REALTEK\RTL8187B Wireless LAN Utility\RtlService.exe
O23 - Service: Quietzone Core Service (rsssvc) - Returnil and its licensors - C:\Program Files\Quietzone\RQZ\rsssvc.exe
O23 - Service: ZDServ - Unknown owner - C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe
--
End of file - 6936 bytes