Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

cosa devo cancellare con hijackthis per numeri strani con il cellulare Opzioni
kocis98
Inviato: Sunday, August 24, 2008 4:19:55 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
quando mi collego con il cellulare dela tre dopo un po il cellulare inizia a scollegarsi e mi da dei nymeri strani e nin mi fa connettere .
questa e quello che mi esce con hijackthis:
Logfile of HijackThis v1.99.1
Scan saved at 16.12.08, on 24/08/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\spoolw.exe
C:\WINDOWS\System32\igfxsvc.exe
C:\Programmi\DU Meter\DUMeter.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\spoolw.exe
C:\WINDOWS\System32\igfxsvc.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\sergio\Desktop\hijackthis\HijackThis.exe

O4 - HKLM\..\Run: [DU Meter] C:\Programmi\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [spoolw] C:\WINDOWS\System32\spoolw.exe
O4 - HKCU\..\Run: [igfxsvc] C:\WINDOWS\System32\igfxsvc.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe

Sponsor
Inviato: Sunday, August 24, 2008 4:19:55 PM

 
shapiro
Inviato: Sunday, August 24, 2008 7:33:02 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
scarica hijackthis


http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php#

Ricordati di mettere HIJACKTHIS in una cartella a lui dedicata (in Programmi o Documenti), l'importante è che non si trovi sul desktop o in cartelle temporanee è importante se vuoi salvare i backup

Apri HijackThis e fixa queste voci:

O4 - HKCU\..\Run: [spoolw] C:\WINDOWS\System32\spoolw.exe

O4 - HKCU\..\Run: [igfxsvc] C:\WINDOWS\System32\igfxsvc.exe




scarica Avenger da qui

http://swandog46.geekstogo.com/avenger.zip

lo installi e lo lanci

Copi e incolli nella finestra: "Input script here" il testo così come lo vedi scritto:


files to delete:
C:\WINDOWS\System32\spoolw.exe
C:\WINDOWS\System32\igfxsvc.exe


clicca sul pulsante "Execute"
Il pc dovrebbe riavviarsi da solo,se così non fosse riavvialo manualmente

posta il log di avenger che trovi in c:\




alla fine dai una bella ripulita con ccleaner e dovresti essere a posto

scaricalo da qui

http://www.filehippo.com/download_ccleaner/





fammi sapere come e' andata








kocis98
Inviato: Sunday, August 24, 2008 9:10:00 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
ciao o provato ma niente da fare le scritte rimangono sempre
questo e il log che mi esce
//////////////////////////////////////////
Avenger Pre-Processor log
//////////////////////////////////////////

Platform: Windows XP (build 2600)
Sun Aug 24 20:25:24 2008

20:25:24: Error: Invalid script. A valid script must begin with a command directive.
Aborting execution!


//////////////////////////////////////////


//////////////////////////////////////////
Avenger Pre-Processor log
//////////////////////////////////////////

Platform: Windows XP (build 2600)
Sun Aug 24 20:25:46 2008

20:25:46: Error: Invalid script. A valid script must begin with a command directive.
Aborting execution!


//////////////////////////////////////////


Logfile of The Avenger Version 2.0, (c) by Swandog46
http://swandog46.geekstogo.com

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!


Completed script processing.

*******************

Finished! Terminate.



//////////////////////////////////////////
Avenger Pre-Processor log
//////////////////////////////////////////

Platform: Windows XP (build 2600)
Sun Aug 24 20:42:11 2008

20:42:11: Error: Invalid script. A valid script must begin with a command directive.
Aborting execution!


//////////////////////////////////////////


//////////////////////////////////////////
Avenger Pre-Processor log
//////////////////////////////////////////

Platform: Windows XP (build 2600)
Sun Aug 24 20:43:05 2008

20:43:05: Error: Invalid script. A valid script must begin with a command directive.
Aborting execution!


//////////////////////////////////////////


Logfile of The Avenger Version 2.0, (c) by Swandog46
http://swandog46.geekstogo.com

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!

File "C:\WINDOWS\System32\spoolw.exe" deleted successfully.
File "C:\WINDOWS\System32\igfxsvc.exe" deleted successfully.

Completed script processing.

*******************

Finished! Terminate.



//////////////////////////////////////////
Avenger Pre-Processor log
//////////////////////////////////////////

Platform: Windows XP (build 2600)
Sun Aug 24 20:58:50 2008

20:58:50: Error: Invalid script. A valid script must begin with a command directive.
Aborting execution!


//////////////////////////////////////////


Logfile of The Avenger Version 2.0, (c) by Swandog46
http://swandog46.geekstogo.com

Platform: Windows XP

*******************

Script file opened successfully.
Script file read successfully.

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:

Rootkit scan active.
No rootkits found!

File "C:\WINDOWS\System32\spoolw.exe" deleted successfully.
File "C:\WINDOWS\System32\igfxsvc.exe" deleted successfully.

Completed script processing.

*******************

Finished! Terminate.

e questo e quello che mi esce con hijck dopo la procedura descritta

Logfile of HijackThis v1.99.1
Scan saved at 21.09.09, on 24/08/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\spoolw.exe
C:\WINDOWS\System32\igfxsvc.exe
C:\Programmi\DU Meter\DUMeter.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\spoolw.exe
C:\WINDOWS\System32\igfxsvc.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\3\FastMobileModem\MMModem.exe
C:\Programmi\Internet Explorer\iexplore.exe
C:\Programmi\hijackthis\HijackThis.exe

O4 - HKLM\..\Run: [DU Meter] C:\Programmi\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [spoolw] C:\WINDOWS\System32\spoolw.exe
O4 - HKCU\..\Run: [igfxsvc] C:\WINDOWS\System32\igfxsvc.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{65BE9B5F-3DAA-44CF-BD0D-734B60C9BF49}: NameServer = 62.13.171.1 62.13.171.2
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe

kocis98
Inviato: Sunday, August 24, 2008 9:13:23 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
dimenticavo la procedura lo fatta sia prima in mobiloita provvisoria e disabilitando la spunta su ripristino configurazIo di sistema e sia poi in modalita normale ma non cambia niente
shapiro
Inviato: Sunday, August 24, 2008 9:23:03 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
probabilmente Il trojan Gromozon impedisce di avviare molti tool tra questi avenger..prova ad andare in provvisoria e ripeti quello che ti ho scritto nell'altro post
shapiro
Inviato: Sunday, August 24, 2008 9:25:11 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
prova questo

http://www.killbox.net/downloads/KillBox.exe

1) Carica il file mediante il tasto a cartellina (uno alla volta)
2) Seleziona Delete on Reboot
3) Clicca sulla X bianca a sfondo rosso
Il computer verrà riavviato, e il file nel 99% dei casi sarà eliminato senza problemi ..
kocis98
Inviato: Sunday, August 24, 2008 10:59:32 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
O SCARICATO QUEL PROGRAMMA MA DI DA QUESTO ERRORE ..
POI COMUNQUE DOMANI PROVO A CASA DA MIO COGNATO
COMPONENT MSCOMCTL.OCX OR ONE OF ITS DEPENDENCIES NOT CORRECT REGISTERED: A FILE IS MISSING OR INVALID
shapiro
Inviato: Sunday, August 24, 2008 11:19:10 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
fai la cosa piu' semplice cerca di cancellarli manualmente se ci riesci visualizza file e cartelle nascosti e procedi
r16
Inviato: Monday, August 25, 2008 12:34:36 AM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
shapiro ha scritto:
probabilmente Il trojan Gromozon impedisce di avviare molti tool tra questi avenger..prova ad andare in provvisoria e ripeti quello che ti ho scritto nell'altro post

Precisazione:
Quello non è il Gromozon.
E, anche se lo fosse, bisognerebbe fare tutta un'altra procedura.
E' (anzi sono) 2 Troyan,di vecchia generazione,ma che purtroppo trovano "cibo" in pc con S.O piuttosto datati,(o non aggiornati) come quello dell'amico kocis98 .
Per prima cosa consiglio kocis98 ,di aggiornare HijackThis, ha una versione molto vecchia:
http://www.aiutaamici.com/software?ID=11175
Poi, il log che hai postato, non è completo di tutte le voci.
Poi esegui ALLA LETTERA queste operazioni:
Assicurati di avere accesso a file e cartelle nascosti
(Pannello di controllo-> Opzioni Cartella-> Visualizzazione)
1) Metti la spunta su: Visualizza file e cartelle nascoste
2) Togli la spunta: nascondi file protetti di sistema

Disattiva il ripristino configurazione di sistema, e tienilo disattivato, fino alla soluzione del problema http://guide.aiutamici.com/guide?C1=7&C2=68&ID=80121
Scarica VIRIT :
http://www.tgsoft.it/italy/download.htm lo aggiorni (cliccando sulla parabola in alto) e fai la scansione in Modalità Provvisoria (è molto importante).
Posta anche il log.
Scarica Spy-Bot da qui http://www.aiutaamici.com/software?ID=10831 e fai una scansione sempre in Modalità Provvisoria.
Dai una pulita (registro compreso)con CCleaner http://www.aiutaamici.com/software?ID=11223
RIAVVIA IL PC.
*********************************************************************************************************
POI:
Scarica: Malwarebytes' Anti-MalwareMalwarebyte e salvalo sul desktop. : http://www.besttechie.net/tools/mbam-setup.exe

Doppio click sull'icona di mbam-setup.exe che hai salvato sul desktop (o dove vuoi tu)
e procedi con l'installazione
Assicurati che ci siano entrambi i segni di spunta su :Aggiorna Malwarebytes' Anti-Malware e Avvia, e clicca Fine
Al primo avvio, ti comparirà un messaggio di benvenuto, Assicurati che il collegamento Internet sia attivo e clicca OK
Attendi la fine dell'aggiornamento.
Compare la schermata principale.
Clicca Scansiona
Potrebbe volerci parecchio tempo,(dipende quanto è infettato il pc) quindi bisogna avere un pò di pazienza.

Al termine della scansione, clicca OK

Assicurati che tutti i files evidenziati siano selezionati e clicca Rimuovi Selezionati

Quando la disinfezione sarà completata, verrà aperto Notepad con il risultato dell'operazione.
Posta qui il log.
*********************************************************************************************************
POI:
Importante: Disabilita il tuo antivirus (anche Virit) e chiudi TUTTI i programmi aperti,e dopo aver scaricato COMBOFIX, chiudi la connessione.

Scarica Combofix
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
Salvalo sul desktop.
Doppio click su combofix.exe (comparirà una videata.)
Digita 1 premi Invio e segui le indicazioni.
Al termine, verrà creato un file log chiamato C:\ComboFix.txt. Postalo qui.
Durante l'operazione di scansione è importante non usare il PC e attendere pazientemente la fine delle operazioni.
Posta un nuovo log di HijackThis (aggiornato).Sempre in questo topic.

ComboFix non funziona in modalità provvisoria
Se, nonostate questa "cura" non eliminasse i file infetti (C:\WINDOWS\System32\spoolw.exe-C:\WINDOWS\System32\igfxsvc.exe) bisogna agire sull'Editor del Registro.
shapiro
Inviato: Monday, August 25, 2008 9:35:30 AM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
ciao r16 se mi avessi dato il tempo di rispondere, avrei trovato un'altra soluzione...comunque per quello che riguarda il trojan leggi qui e' tratto dal sito SUSPECTFILE

http://www.suspectfile.com/forum/viewtopic.php?t=434

questo e' quello che dovrebbe fare

per quello che riguarda invece l'uso di combofix personalmente lo sconsiglio in quanto il programma molte volte elimina dei programmi innocui e spesso crea problemi al pc
r16
Inviato: Monday, August 25, 2008 11:13:39 AM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
shapiro ha scritto:
ciao r16 se mi avessi dato il tempo di rispondere, avrei trovato un'altra soluzione...comunque per quello che riguarda il trojan leggi qui e' tratto dal sito SUSPECTFILE

http://www.suspectfile.com/forum/viewtopic.php?t=434

questo e' quello che dovrebbe fare

per quello che riguarda invece l'uso di combofix personalmente lo sconsiglio in quanto il programma molte volte elimina dei programmi innocui e spesso crea problemi al pc

Non è quello che dovrebbe fare,per il semplice motivo che kocis98 ,NON è infetto da tale Virus.(che in realtà è un Rootkit)
Sono d'accordo che il Gromozon inibisce dei tooll (tra cui Avenger),ma se Avenger non funziona in questo caso, sono altre le ragioni,certamente non per colpa del Grozomon che non ha.
Per quanto riguarda Combofix,io invece lo ritengo il miglior programma anti-Malware che ci sia in circolazione.
E anche ammesso che qualche volta elimina per troppo zelo alcuni file, ti dà sempre la possibilità di tornare indietro,perchè crea un Punto di Ripristino antecedente la scansione.
Naturalmente,rispetto le tue opinioni,il mondo è bello perchè non tutti la pensiamo allo stesso modo.
Ciao.
shapiro
Inviato: Monday, August 25, 2008 11:58:37 AM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
Commenta:
Per quanto riguarda Combofix,io invece lo ritengo il miglior programma anti-Malware che ci sia in circolazione.
E anche ammesso che qualche volta elimina per troppo zelo alcuni file, ti dà sempre la possibilità di tornare indietro,



a me combofix ha massacrato mezzo registro quindi lo sconsiglio nel modo piu' assoluto, e non solo a me ci sono stati altri casi...comunque ognuno usa i tool che crede


per quello che riguarda te, KOCIS98, tenuto conto di quanto ti ho detto, l'alternativa e' usare CUREIT DR WEB e' veramente fantastico....quello che fa' promette e te ne accorgeraI usandolo....dopo la scansione preliminare, scegli quella completa...VEDRAI QUANTA SCHIFEZZA TI TOGLIE, COMPRESO QUELLO CHE HAI

lo puoi scaricare da qui

ftp://ftp.drweb.com/pub/drweb/cureit/launch.exe


CIAO
kocis98
Inviato: Tuesday, August 26, 2008 11:04:58 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
o usato dr web ma mi sembra che non e cambiato niente questo e il log che o fatto con il nuovo hijackthis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22.59.08, on 26/08/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\DU Meter\DUMeter.exe
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\3\FastMobileModem\MMModem.exe
C:\Programmi\Internet Explorer\iexplore.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe

O4 - HKLM\..\Run: [DU Meter] C:\Programmi\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O17 - HKLM\System\CCS\Services\Tcpip\..\{65BE9B5F-3DAA-44CF-BD0D-734B60C9BF49}: NameServer = 62.13.171.1 62.13.171.2
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe
O24 - Desktop Component 0: (no name) - http://cache.secondamano.it/mmo/8/388/280/8_-2085034440_hoved.jpg
O24 - Desktop Component 1: (no name) - http://www.bodyjewelleryshop.com/gallery/data/500/Image002-1.jpg

--
End of file - 2109 bytes
kocis98
Inviato: Tuesday, August 26, 2008 11:10:42 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
mi ero dimenticato la visualizazzione dei file da abilitare o fatto nuovamente la scansione con hijackthis mi esce questo
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23.09.49, on 26/08/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\DU Meter\DUMeter.exe
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\3\FastMobileModem\MMModem.exe
C:\Programmi\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe

O4 - HKLM\..\Run: [DU Meter] C:\Programmi\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O17 - HKLM\System\CCS\Services\Tcpip\..\{65BE9B5F-3DAA-44CF-BD0D-734B60C9BF49}: NameServer = 62.13.171.1 62.13.171.2
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe
O24 - Desktop Component 0: (no name) - http://cache.secondamano.it/mmo/8/388/280/8_-2085034440_hoved.jpg
O24 - Desktop Component 1: (no name) - http://www.bodyjewelleryshop.com/gallery/data/500/Image002-1.jpg

--
End of file - 2142 bytes
r16
Inviato: Tuesday, August 26, 2008 11:12:48 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Vorrei sapere se hai eseguito le istruzioni che ti ho dato.
shapiro
Inviato: Tuesday, August 26, 2008 11:36:17 PM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
Commenta:
o usato dr web ma mi sembra che non e cambiato niente


a me sembra che le voci infette non ci sono piu' ....
kocis98
Inviato: Wednesday, August 27, 2008 11:16:44 PM
Rank: AiutAmico

Iscritto dal : 1/18/2001
Posts: 207
chiedo scusa a shapiro e a r16 siccome o visto che eravate in discussione voi alla fine o usato il programma dr web e o postato quello di prima
poi leggendo bene o fatto anche quello di r16 e adesso vi posto tutti i log usciti
questo e spybot :

--- Search result list ---
Hint of the Day: Click the bar at the right of this to see more information! ()


Complimenti!: Non sono state riscontrate minacce immediate. ()



--- Spybot - Search & Destroy version: 1.6.0 (build: 20080707) ---

2008-08-27 unins000.exe (51.49.0.0)
2008-07-07 blindman.exe (1.0.0.8)
2008-07-07 SDMain.exe (1.0.0.6)
2008-07-07 SDWinSec.exe (1.0.0.12)
2008-07-07 Update.exe (1.6.0.7)
2008-07-07 SDUpdate.exe (1.6.0.8)
2008-07-07 SpybotSD.exe (1.6.0.30)
2008-07-07 TeaTimer.exe (1.6.0.20)
2008-07-07 SDFiles.exe (1.6.0.4)
2008-07-07 SDShred.exe (1.0.2.3)
2008-07-07 advcheck.dll (1.6.1.12)
2008-07-07 SDHelper.dll (1.6.0.12)
2008-07-07 Tools.dll (2.1.5.7)
2008-06-14 DelZip179.dll (1.79.11.1)
2007-04-02 aports.dll (2.1.0.0)
2008-06-19 sqlite3.dll
2007-11-07 Includes\Revision.sbi (*)
2008-06-03 Includes\Cookies.sbi (*)
2008-06-03 Includes\Dialer.sbi (*)
2008-07-23 Includes\HeavyDuty.sbi (*)
2008-08-19 Includes\Hijackers.sbi (*)
2008-08-05 Includes\Keyloggers.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2008-08-27 Includes\Malware.sbi (*)
2008-08-05 Includes\PUPS.sbi (*)
2008-06-18 Includes\Security.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-08-12 Includes\Spyware.sbi (*)
2008-08-05 Includes\Adware.sbi (*)
2008-06-03 Includes\Tracks.uti
2008-08-05 Includes\Trojans.sbi (*)
2008-08-05 Includes\DialerC.sbi (*)
2008-08-26 Includes\HijackersC.sbi (*)
2008-08-26 Includes\KeyloggersC.sbi (*)
2008-08-26 Includes\MalwareC.sbi (*)
2008-08-26 Includes\PUPSC.sbi (*)
2008-08-26 Includes\SecurityC.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2008-08-26 Includes\SpywareC.sbi (*)
2008-08-26 Includes\AdwareC.sbi (*)
2008-08-27 Includes\TrojansC.sbi (*)
2007-12-24 Plugins\TCPIPAddress.dll
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll



--- System information ---
Windows XP (Build: 2600) (5.1.2600)


--- Startup entries list ---
Located: HK_LM:Run, DU Meter
command: C:\Programmi\DU Meter\DUMeter.exe
file: C:\Programmi\DU Meter\DUMeter.exe
size: 1469952
MD5: F123D04B93FC612FE759ECEE406990E8

Located: HK_LM:Run, NeroCheck
command: C:\WINDOWS\System32\\NeroCheck.exe
file: C:\WINDOWS\System32\\NeroCheck.exe
size: 155648
MD5: 3E4C03CEFAD8DE135263236B61A49C90

Located: HK_LM:Run, SoundMan
command: SOUNDMAN.EXE
file: C:\WINDOWS\SOUNDMAN.EXE
size: 67584
MD5: E0584EE5E7F07F04A879B19A37465588

Located: HK_LM:Run, VIRIT LITE MONITOR
command: C:\VEXPLITE\MONLITE.EXE
file: C:\VEXPLITE\MONLITE.EXE
size: 245760
MD5: E20BE564E5A555EE92E36AB09CCC6F3B

Located: HK_CU:Run, CTFMON.EXE
where: .DEFAULT...
command: C:\WINDOWS\System32\CTFMON.EXE
file: C:\WINDOWS\System32\CTFMON.EXE
size: 13312
MD5: 9E907FFD27E55A7C8B85843ED22767A7

Located: HK_CU:Run, igfxsvc
where: PE_C_ADMINISTRATOR...
command: C:\WINDOWS\System32\igfxsvc.exe
file: C:\WINDOWS\System32\igfxsvc.exe
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: HK_CU:Run, spoolw
where: PE_C_ADMINISTRATOR...
command: C:\WINDOWS\System32\spoolw.exe
file: C:\WINDOWS\System32\spoolw.exe
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: HK_CU:Run, msnmsgr
where: S-1-5-21-2000478354-1767777339-725345543-1003...
command: "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
file: C:\Programmi\MSN Messenger\msnmsgr.exe
size: 5674352
MD5: F4D7FD84CC8DBFE2256E402EE55DF74C

Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-18...
command: C:\WINDOWS\System32\CTFMON.EXE
file: C:\WINDOWS\System32\CTFMON.EXE
size: 13312
MD5: 9E907FFD27E55A7C8B85843ED22767A7

Located: WinLogon, crypt32chain
command: crypt32.dll
file: crypt32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, cryptnet
command: cryptnet.dll
file: cryptnet.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, cscdll
command: cscdll.dll
file: cscdll.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, Schedule
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, SensLogn
command: WlNotify.dll
file: WlNotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, termsrv
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!

Located: WinLogon, wlballoon
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!



--- Browser helper object list ---


--- ActiveX list ---
{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
DPF name:
CLSID name: Shockwave Flash Object
Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf
Codebase: http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
description: Macromedia Shockwave Flash Player
classification: Legitimate
known filename:
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\System32\Macromed\Flash\
Long name: Flash9e.ocx
Short name: FLASH9E.OCX
Date (created): 2007-11-21 01:04:14
Date (last access): 2008-08-27
Date (last write): 2007-11-21 01:04:14
Filesize: 2987392
Attributes: readonly archive
MD5: D3C50535C26190FEAD7785A03499C0AC
CRC32: A77C3E92
Version: 9.0.115.0



--- Process list ---
PID: 0 ( 0) [System]
PID: 148 ( 4) \SystemRoot\System32\smss.exe
size: 45568
PID: 200 ( 148) \??\C:\WINDOWS\system32\csrss.exe
size: 4096
PID: 224 ( 148) \??\C:\WINDOWS\system32\winlogon.exe
size: 432640
PID: 268 ( 224) C:\WINDOWS\system32\services.exe
size: 101888
MD5: 47D6B593DBC04C586AFE1078118DCFC0
PID: 280 ( 224) C:\WINDOWS\system32\lsass.exe
size: 11776
MD5: 12ADB791CEA13FE038D63979A5FCAE43
PID: 444 ( 268) C:\WINDOWS\system32\svchost.exe
size: 12800
MD5: E65C61DA8F552C16BE0C62320F256882
PID: 492 ( 268) C:\WINDOWS\system32\svchost.exe
size: 12800
MD5: E65C61DA8F552C16BE0C62320F256882
PID: 704 ( 684) C:\WINDOWS\Explorer.EXE
size: 1003520
MD5: 1597BC081CD26A36D727887279429C7A
PID: 796 ( 704) C:\Programmi\Windows NT\Accessori\WORDPAD.EXE
size: 203776
MD5: 74662B35DEF0361279A8DD46EA02C41C
PID: 1208 ( 704) C:\Programmi\Spybot - Search & Destroy\SpybotSD.exe
size: 4891472
MD5: 3B1B5D09D3C9C4CD39D4DB06ED7A0855
PID: 4 ( 0) System


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 2008-08-27 17:05:12

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\System32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


--- Winsock Layered Service Provider list ---


--- Uninstall list ---
(AddressBook)

Adobe Flash Player ActiveX 9.0.115.0 (Adobe Flash Player ActiveX)
uninstall cmd: C:\WINDOWS\System32\Macromed\Flash\uninstall_activeX.exe
publisher: Adobe Systems Incorporated
help link: http://www.adobe.com/go/flashplayer_support/

ATI - Programma di disinstallazione 6.14.10.1008 (All ATI Software)
uninstall cmd: C:\Programmi\ATI Technologies\UninstallAll\AtiCimUn.exe

ATI Display Driver 8.02-040515a-016385C-Acer (ATI Display Driver)
uninstall cmd: rundll32 C:\WINDOWS\System32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean

(Branding)

CCleaner (remove only) (CCleaner)
uninstall cmd: "C:\Programmi\CCleaner\uninst.exe"

(Connection Manager)

(DirectAnimation)

(DirectDrawEx)

DU Meter (dumeter3_is1)
install location: C:\Programmi\DU Meter\
uninstall cmd: "C:\Programmi\DU Meter\unins000.exe"
publisher: Hagel Technologies

DVD Shrink 3.2 (DVD Shrink_is1)
install location: C:\Programmi\DVD Shrink\
uninstall cmd: "C:\Programmi\DVD Shrink\unins000.exe"
publisher: DVD Shrink
help link: http://www.dvdshrink.org

eMule (eMule)
uninstall cmd: "C:\Programmi\eMule\Uninstall.exe"

(Fontcore)

HijackThis 2.0.2 2.0.2 (HijackThis)
uninstall cmd: "C:\Programmi\Trend Micro\HijackThis\HijackThis.exe" /uninstall
publisher: TrendMicro

(ICW)

(IE40)

(IE4Data)

(IE5BAKEX)

(IEData)

(InstallShield Uninstall Information)

LG PC Sync 1.00.0000 (InstallShield_{0E3469E7-E33A-4A79-99B7-24883BE62EC9})
version: 16777216
version (major): 1
estimated size: 10160
install date: 20080817
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\_is2D\
uninstall cmd: C:\PROGRA~1\FILECO~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{0E3469E7-E33A-4A79-99B7-24883BE62EC9} /l1040
publisher: LG Electronics
comments: Commenti
contact: Reparto Supporto clienti
help link: http://www.societa.com/help
help telephone: 1-555-555-4505
readme: Readme.txt

Fast Mobile Modem 4.0.16 (InstallShield_{547403EA-BC01-4824-86FB-8DAB59B1C2DE})
version: 67108880
version (major): 4
estimated size: 4144
install date: 20080227
install source: C:\WINDOWS\Downloaded Installations\{04F7A170-17B7-484E-9191-40B0CDD409F1}\
uninstall cmd: C:\Programmi\File comuni\InstallShield\Driver\8\Intel 32\IDriver.exe /M{547403EA-BC01-4824-86FB-8DAB59B1C2DE} /l1040
publisher: 3
comments: Commenti
contact: Reparto Supporto clienti
help link: http://www.tre.it

LG Phone Manager 1.00.0000 (InstallShield_{D130E8E3-C39F-4572-A622-8636BBB09865})
version: 16777216
version (major): 1
estimated size: 16707
install date: 20080817
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\_is45\
uninstall cmd: C:\PROGRA~1\FILECO~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{D130E8E3-C39F-4572-A622-8636BBB09865} /l1040
publisher: LG Electronics
comments: Your Comments
contact: Customer Support Department
help link: http://www.lge.com/help
help telephone: 1-555-555-4505
readme: 0

Libro Animato Interattivo Hercules (Libro Animato Interattivo Hercules)
uninstall cmd: C:\DISNEY\HERC_ASB.IT\HRCDEL95.EXE

(Microsoft NetShow Player 2.0)

(MobileOptionPack)

(MPlayer2)

Nero 7 Lite v7.5.1.1 (Nero7Lite_is1)
install location: C:\Programmi\Nero\
uninstall cmd: "C:\Programmi\Nero\unins000.exe"
publisher: Updatepack.nl

(NetMeeting)

Ahead NeroMediaPlayer (NMPUninstallKey)
uninstall cmd: C:\WINDOWS\UNNMP.exe /UNINSTALL

NSS (remove only) 1.0.38.5 Beta (NSS)
uninstall cmd: C:\Programmi\NSS\uninstall.exe
publisher: B-Phreaks Ltd

(OutlookExpress)

(PCHealth)
uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

SAMSUNG CDMA Modem Driver Set (SAMSUNG CDMA Modem)
uninstall cmd: C:\WINDOWS\System32\Samsung_USB_Drivers\3\SSCDUninstall.exe

SAMSUNG Mobile USB Modem Software (SAMSUNG Mobile USB Modem)
uninstall cmd: C:\WINDOWS\System32\Samsung_USB_Drivers\2\SSM_Uninstall.exe

SAMSUNG Mobile USB Modem 1.0 Software (SAMSUNG Mobile USB Modem 1.0)
uninstall cmd: C:\WINDOWS\System32\Samsung_USB_Drivers\1\SS_Uninstall.exe

(SchedulingAgent)

9.0.115.0 (ShockwaveFlash)

SpywareBlaster 4.1 4.1.0 (SpywareBlaster_is1)
install date: 20080823
install location: C:\Programmi\SpywareBlaster\
uninstall cmd: "C:\Programmi\SpywareBlaster\unins000.exe"
publisher: Javacool Software LLC

Synaptics Pointing Device Driver 7.10.10.0 (SynTPDeinstKey)
uninstall cmd: rundll32.exe "C:\Programmi\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

VirIT eXplorer Lite (VIRIT-LT)
uninstall cmd: C:\VEXPLITE\Dislite.exe

Vodafone 804SS USB driver Software (Vodafone 804SS USB driver)
uninstall cmd: C:\WINDOWS\System32\Samsung_USB_Drivers\4\SSVDUninstall.exe

Windows Live Toolbar 03.01.0068 (Windows Live Toolbar)
uninstall cmd: "C:\Programmi\Windows Live Toolbar\UnInstall.exe" {210A79C2-9F6A-43D5-BF1F-CB6D9253DA6C}
publisher: Microsoft Corporation

WinRAR archiver (WinRAR archiver)
uninstall cmd: C:\Programmi\WinRAR\uninstall.exe

WinZip 10.0 (6698) (WinZip)
version (major): 10
install location: C:\PROGRA~1\WINZIP\
uninstall cmd: "C:\Programmi\WinZip\WINZIP32.EXE" /uninstall
publisher: WinZip Computing LP
help link: http://www.winzip.com/xsupport.htm

ATI Control Panel 6.14.10.5107 ({0BEDBD4E-2D34-47B5-9973-57E62B29307C})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"

LG PC Sync 1.00.0000 ({0E3469E7-E33A-4A79-99B7-24883BE62EC9})
version: 16777216
version (major): 1
estimated size: 10160
install date: 20080817
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\_is2D\
publisher: LG Electronics
comments: Commenti
contact: Reparto Supporto clienti
help link: http://www.societa.com/help
help telephone: 1-555-555-4505
readme: Readme.txt

Windows Live Toolbar 03.01.0068 ({210A79C2-9F6A-43D5-BF1F-CB6D9253DA6C})
version: 50397252
version (major): 3
version (minor): 1
estimated size: 4094
install date: 20080227
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\IXP001.TMP\
uninstall cmd: MsiExec.exe /X{210A79C2-9F6A-43D5-BF1F-CB6D9253DA6C}
publisher: Microsoft Corporation

WebFldrs XP 9.50.5318 ({350C97BE-3D7C-4EE8-BAA9-00BCB3D54227})
version: 154277062
version (major): 9
version (minor): 50
estimated size: 2708
install date: 20080227
install source: C:\WINDOWS\System32\
publisher: Microsoft Corporation
help link: http://www.microsoft.com/windows

acer Wireless LAN ({4820DD99-52D1-42BB-927E-B6B6DF231AF5})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{4820DD99-52D1-42BB-927E-B6B6DF231AF5}\setup.EXE" -l0x9 UNINSTALL

Windows Live Sign-in Assistant 4.100.313.1 ({49672EC2-171B-47B4-8CE7-50D7806360D7})
version: 73662777
version (major): 4
version (minor): 100
estimated size: 1264
install date: 20080227
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7}
publisher: Microsoft Corporation

Nokia Connectivity Cable Driver 6.86.11.0 ({4F1DCA42-2030-437C-A94E-736692A499C1})
version: 106299403
version (major): 6
version (minor): 86
estimated size: 2466
install date: 20080610
install location: C:\Programmi\Nokia\Connectivity Cable Driver\
install source: C:\Documents and Settings\All Users\Dati applicazioni\Installations\{5D19E730-D3C6-47F4-AE4B-DCB26EC2D905}\Packages\CCD\Setup\
uninstall cmd: MsiExec.exe /X{4F1DCA42-2030-437C-A94E-736692A499C1}
publisher: Nokia
help link: http://www.nokia.com/nokia/0,8764,75877,00.html

Fast Mobile Modem 4.0.16 ({547403EA-BC01-4824-86FB-8DAB59B1C2DE})
version: 67108880
version (major): 4
estimated size: 4144
install date: 20080227
install source: C:\WINDOWS\Downloaded Installations\{04F7A170-17B7-484E-9191-40B0CDD409F1}\
publisher: 3
comments: Commenti
contact: Reparto Supporto clienti
help link: http://www.tre.it

LightScribe System Software 1.10.19.1 1.10.19.1 ({59046D29-2E6B-4224-BF0D-64F3E7A93F7B})
version: 17432595
version (major): 1
version (minor): 10
estimated size: 21859
install date: 20080310
install location: C:\Programmi\File comuni\LightScribe\
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\{66ADF05F-0E89-43E4-8D44-DD2FE0574050}\
uninstall cmd: MsiExec.exe /X{59046D29-2E6B-4224-BF0D-64F3E7A93F7B}
publisher: Nome società
comments: Commenti
help link: http://www.societa.com/help

Microsoft Visual C++ 2005 Redistributable 8.0.56336 ({7299052b-02a4-4627-81f2-1818da5d550d})
version: 134274064
version (major): 8
estimated size: 5794
install date: 20080610
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\IXP001.TMP\
uninstall cmd: MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
publisher: Microsoft Corporation

USB PC Camera-268 5.7.19204.102 ({75438C0E-9925-412E-AD85-D0E71C6CE2ED})
version: 85937654
install date: 20080408
install location: C:\Programmi\Sonix\USB PC Camera-268
install source: E:\setup.exe
uninstall cmd: C:\Programmi\InstallShield Installation Information\{75438C0E-9925-412E-AD85-D0E71C6CE2ED}\setup.exe -runfromtemp -l0x0010 -removeonly -u
publisher: Sonix

Nero - Burning Rom 5.5.9 ({A4D7B764-4140-11D4-88EB-0050DA3579C0})
version: 84213769
version (major): 5
version (minor): 5
estimated size: 78383
install date: 20080310
install source: E:\Nero55\
uninstall cmd: MsiExec.exe /X{A4D7B764-4140-11D4-88EB-0050DA3579C0}
publisher: ahead software gmbh
contact: Hotline
help link: http://www.nero.com
help telephone: +49 (07248) 911-231
readme: 0

Windows Live Messenger 8.1.0178.00 ({A511414C-4846-4630-8AC0-B156D8CB1FC0})
version: 134283442
version (major): 8
version (minor): 1
estimated size: 32787
install date: 20080227
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /I{A511414C-4846-4630-8AC0-B156D8CB1FC0}
publisher: Microsoft Corporation

Spybot - Search & Destroy 1.6.0 ({B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1)
install date: 20080827
install location: C:\Programmi\Spybot - Search & Destroy\
uninstall cmd: "C:\Programmi\Spybot - Search & Destroy\unins000.exe"
publisher: Safer Networking Limited
help link: http://www.safer-networking.org/index.php?page=support

Samsung PC Studio 3.0.1.60502 ({C4A4722E-79F9-417C-BD72-8D359A090C97})
version: 50331648
install date: 20080606
install location: C:\Programmi\Samsung\Samsung PC Studio 3\
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\bye2F.tmp\Disk1\
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -l0x10 -removeonly
publisher: Samsung Electronics Co., Ltd.
comments: Samsung PC Studio 3 Maintenance
contact: Samsung Electronics Co., Ltd.
help link: http://www.samsungmobile.co.kr
help telephone: +82 2051 4151

Driver ATI ({CE65A3B9-08C3-4A2F-B2CB-8EAC3F17F440})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{CE65A3B9-08C3-4A2F-B2CB-8EAC3F17F440}\setup.exe"

LG Phone Manager 1.00.0000 ({D130E8E3-C39F-4572-A622-8636BBB09865})
version: 16777216
version (major): 1
estimated size: 16707
install date: 20080817
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\_is45\
publisher: LG Electronics
comments: Your Comments
contact: Customer Support Department
help link: http://www.lge.com/help
help telephone: 1-555-555-4505
readme: 0

Samsung PC Studio 3 USB Driver Installer 1.00.0000 ({EBA29752-DDD2-4B62-B2E3-9841F92A3E3A})
version: 16777216
install date: 20080606
install location: C:\Programmi\Samsung\Samsung PC Studio 3
install source: C:\DOCUME~1\sergio\IMPOST~1\Temp\bye2.tmp\Disk1\
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -l0x10 -removeonly
publisher: Samsung Electronics Co., Ltd.
comments: Samsung PC Studio 3 Maintenance
contact: Samsung Electronics Co., Ltd.
help link: http://www.samsungmobile.co.kr
help telephone: +82 2051 4151

Samsung PC Studio 3.0.0.60502 ({EC2B7127-DE13-4E0C-8137-A3658B7FDE54})
version: 50331648
version (major): 3
estimated size: 2689
install date: 20080606
install location: C:\Programmi\Samsung\Samsung PC Studio 3\
install source: C:\Programmi\Samsung\Samsung PC Studio 3\{EC2B7127-DE13-4E0C-8137-A3658B7FDE54}\
publisher: Samsung Electronics Co., Ltd.
contact: Customer Support Department
help link: http://www.samsungmobile.co.kr
help telephone: 1-555-555-4505

SMSC IrCC V5.1.3600.3 SP1 r1.14 ({F1B8DB67-D30E-4FF9-A85F-3CEE51825AA2})
version: 917504
install location: C:\WINDOWS\SMSC\IRDA\V5_1_3600_3
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{F1B8DB67-D30E-4FF9-A85F-3CEE51825AA2}\setup.EXE" -l0x10 UNINSTALL

Realtek AC'97 Audio ({FB08F381-6533-4108-B7DD-039E11FBC27E})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE



--- System Services ---
Service (registry key): Abiosdsk
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 0

Service (registry key): abp480n5
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ACPI
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver ACPI Microsoft
Image path: System32\DRIVERS\ACPI.sys
Image size: 179840
Image MD5: 9ECAC5921945258A42807AF834132826
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): ACPIEC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver del controller integrato Microsoft
Image path: System32\DRIVERS\ACPIEC.sys
Image size: 12160
Image MD5: 49AC5CD87FBDDA62F3E25190019E7627
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): adpu160m
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): aec
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Eliminatore di eco acustico del kernel Microsoft
Image path: system32\drivers\aec.sys
Image size: 122472
Image MD5: B45A744CA0A15A59D8B0307CE9741E92
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): AFD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ambiente supporto di rete AFD
Image path: \SystemRoot\System32\drivers\afd.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): Aha154x
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): aic78u2
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): aic78xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ALCXSENS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Service for WDM 3D Audio Driver
Image path: system32\drivers\ALCXSENS.SYS
Image size: 400384
Image MD5: BA88534A3CEB6161E7432438B9EA4F54
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): ALCXWDM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Service for Realtek AC97 Audio (WDM)
Image path: system32\drivers\ALCXWDM.SYS
Image size: 626204
Image MD5: 5FF6F7E58C798F1474C0BBFFC23CB78D
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Alerter
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Avvisi
Description: Notifica gli avvisi amministrativi agli utenti e computer selezionati. Se il servizio è stato arrestato, i programmi che utilizzano gli avvisi amministrativi non li riceveranno. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation

Service (registry key): ALG
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio Gateway di livello applicazione
Description: Fornisce supporto per plug-in di protocolli di terze parti per la Condivisione connessione Internet e il Firewall della connessione Internet
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\alg.exe
Image size: 40960
Image MD5: F42E163AE91F81C12077AFF17958D03B
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): AliIde
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): amsint
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): AppMgmt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Gestione applicazione
Description: Offre servizi di installazione di software come Assegna, Pubblica e Rimuovi.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1

Service (registry key): Arp1394
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Protocollo client ARP 1394
Description: Protocollo client ARP 1394
Image path: System32\DRIVERS\arp1394.sys
Image size: 54016
Image MD5: BAC00074336440DD961F4AB86D81B118
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): asc
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): asc3350p
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): asc3550
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): AsyncMac
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver per supporti asincroni RAS
Description: Driver per supporti asincroni RAS
Image path: System32\DRIVERS\asyncmac.sys
Image size: 13568
Image MD5: 03F403B07A884FC2AA54A0916C410931
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): atapi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Controller disco rigido IDE/ESDI standard
Image path: System32\DRIVERS\atapi.sys
Image size: 86656
Image MD5: A64013E98426E1877CB653685C5C0009
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Atdisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 0

Service (registry key): Ati HotKey Poller
Registry path: \SYSTEM\CurrentControlSet\Services\
Object name: LocalSystem
Image path: %SystemRoot%\System32\Ati2evxx.exe
Image size: 376832
Image MD5: 59D1A07A686D994838AEE1DB258E3654
Control Set: CurrentControlSet
Start: 2
Type: 272
Error Control: 1

Service (registry key): ati2mtag
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\ati2mtag.sys
Image size: 745984
Image MD5: 2F25457FEC1404470843D8B930EA00B9
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): atiide
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\atiide.sys
Image size: 5632
Image MD5: 899C9F94ED5EC5EFF71AA6E17A084419
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Atmarpc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Protocollo client ARP ATM
Description: Protocollo client ARP ATM
Image path: System32\DRIVERS\atmarpc.sys
Image size: 57216
Image MD5: 8D735CA1CBDB0081B0E3B9FF0EB222D0
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): AudioSrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Audio Windows
Description: Gestisce periferiche audio per programmi basati su Windows. Se il servizio è stato arrestato, le periferiche audio e gli effetti non funzioneranno correttamente. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs

Service (registry key): audstub
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver stub audio
Image path: System32\DRIVERS\audstub.sys
Image size: 3072
Image MD5: D9F724AA26C010A217C97606B160ED68
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): BattC
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): Beep
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): BITS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio trasferimento intelligente in background
Description: Utilizza la larghezza di banda inattiva della rete per trasferire i dati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,RpcSs

Service (registry key): Browser
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Browser di computer
Description: Mantiene un elenco aggiornato dei computer in rete e lo fornisce ai computer designati come browser. Se il servizio è stato arrestato, l'elenco non verrà aggiornato o mantenuto. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,LanmanServer

Service (registry key): caboagp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: ATI Cabo AGP Filter
Image path: System32\DRIVERS\atisgkaf.sys
Image size: 13842
Image MD5: 906FCF0D1DC5B573015BBD21EF54BD88
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): catchme
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \??\C:\ComboFix\catchme.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): cbidf2k
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): CCDECODE
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Decoder sottotitoli codificati
Image path: System32\DRIVERS\CCDECODE.sys
Image size: 16256
Image MD5: 1108137A497C112126B3F1F0E8A021B6
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): cd20xrnt
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Cdaudio
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): Cdfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 2
Error Control: 1
Depends On group: "SCSI CDROM Class"

Service (registry key): Cdrom
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver del CD-ROM
Image path: System32\DRIVERS\cdrom.sys
Image size: 47488
Image MD5: CB762E814F602229A574F4D78D3D6A30
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On group: "SCSI miniport"

Service (registry key): Changer
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): cisvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio di indicizzazione
Description: Indicizza contenuti e proprietà di file su computer locali e remoti, fornisce accesso rapido ai file tramite un flessibile linguaggio di query.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\cisvc.exe
Image size: 5120
Image MD5: CC3326BCEB3EB483FC9009EE8157CF60
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): ClipSrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: ClipBook
Description: Abilita il Visualizzatore Cartella Appunti per la memorizzazione e condivisione delle informazioni con i computer remoti. Se il servizio è stato arrestato, Visualizzatore Cartella Appunti non sarà in grado di condividere informazioni con i computer remoti. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\clipsrv.exe
Image size: 30720
Image MD5: B58526A600C0432556E367325A7F9F43
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: NetDDE

Service (registry key): CmBatt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver batteria a metodo di controllo ACPI Microsoft
Image path: System32\DRIVERS\CmBatt.sys
Image size: 13056
Image MD5: CDB13B73628E9F94AE723BEB94130F06
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): CmdIde
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Compbatt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver della batteria composita Microsoft
Image path: System32\DRIVERS\compbatt.sys
Image size: 9344
Image MD5: DF1B1A24BF52D0EBC01ED4ECE8979F50
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): COMSysApp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Applicazione di sistema COM+
Description: Gestisce la configurazione e registrazione di componenti basati su COM+. Se il servizio viene arrestato, la maggior parte dei componenti basati su COM+ non sono in grado di funzionare correttamente. Se il servizio viene disattivato, tutti i servizi che dipendono esplicitamente da esso non possono essere avviati.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
Image size: 4608
Image MD5: FF21FFE05D7FBE3530DA7A62558F868D
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: rpcss

Service (registry key): ContentFilter
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): ContentIndex
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): Cpqarray
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): CryptSvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizi di crittografia
Description: Fornisce tre servizi di gestione: il servizio Database catalogo, che serve per confermare le firme dei file di Windows; il servizio Archivio principale protetto, per aggiungere e rimuovere dal computer i certificati dell'autorità di certificazione delle fonti attendibili; e il servizio Chiave, che aiuta a registrare i certificati nel computer. Se questo servizio è interrotto, i servizi di gestione non funzioneranno in modo corretto. Se il servizio è disabilitato, tutti i servizi che dipendono direttamente da questo non potranno essere avviati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): dac2w2k
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 0

Service (registry key): dac960nt
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Dhcp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Client DHCP
Description: Gestisce la configurazione di rete registrando e aggiornando indirizzi IP e nomi DNS.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip,Afd,NetBT

Service (registry key): Disk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver del disco
Image path: System32\DRIVERS\disk.sys
Image size: 33664
Image MD5: 43A10CD19D648E57ED039A6CAA667A56
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1
Depends On group: "SCSI miniport"

Service (registry key): dmadmin
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio amministrativo di Gestione disco logico
Description: Configura le unità disco rigido e i volumi. Il servizio viene eseguito soltanto per i processi di configurazione, quindi viene arrestato.
Object name: LocalSystem
Image path: %SystemRoot%\System32\dmadmin.exe /com
Image size: 205312
Image MD5: 38A8D4F0EF1CAECF5CBDC3025DB3F45F
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,PlugPlay,DmServer

Service (registry key): dmboot
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\drivers\dmboot.sys
Image size: 781440
Image MD5: 9EF7CF7C5FD5B0D355A5AB31B9F1EBFF
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): dmio
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver Gestione dischi logici
Image path: System32\drivers\dmio.sys
Image size: 147200
Image MD5: FA699FF52CBC44A7A3F356B5363722D6
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): dmload
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\drivers\dmload.sys
Image size: 5888
Image MD5: E9317282A63CA4D188C0DF5E09C6AC5F
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): dmserver
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Gestione dischi logici
Description: Rileva e controlla le nuove unità disco rigido e invia informazioni sul volume del disco al Servizio amministrativo di Gestione disco logico per la configurazione. Se il servizio è stato arrestato, lo stato del disco dinamico e le informazioni di configurazione potrebbero non essere aggiornate. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,PlugPlay

Service (registry key): DMusic
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Sintetizzatore DLS Microsoft Kernel
Image path: system32\drivers\DMusic.sys
Image size: 50048
Image MD5: EF05974D47D56FA8387F170F05BAE5E7
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Dnscache
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Client DNS
Description: Risolve e salva nella cache nomi DNS per il computer. Se il servizio è stato arrestato, il computer non sarà in grado di risolvere i nomi DNS e di individuare i controller di dominio Active Directory. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip

Service (registry key): dpti2o
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): drmkaud
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Decodificatore audio DRM del kernel Microsoft
Image path: system32\drivers\drmkaud.sys
Image size: 2816
Image MD5: AA94E0CBD79DB63100D0EAE061EB69BC
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): EMSCR
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\EMS7SK.sys
Image size: 58240
Image MD5: 6428A1CE5ABE3E71A97DFDDA0A19546F
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): ERSvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio di segnalazione errori
Description: Consente la segnalazione di errori per servizi e applicazioni eseguiti in ambienti non standard.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 0
Depends On services: RpcSs

Service (registry key): ESDCR
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\ESD7SK.sys
Image size: 36480
Image MD5: 772127B385DEC14B13325D9EFCC0AC14
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): ESMCR
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\ESM7SK.sys
Image size: 330624
Image MD5: C81A299FCE8C3A808079357982B3B585
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): Eventlog
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Registro eventi
Description: Abilita i messaggi del registro eventi rilasciati dai programmi di Windows e rende possibile la visualizzazione dei componenti in Visualizzatore eventi. Impossibile interrompere questo servizio.
Object name: LocalSystem
Image path: %SystemRoot%\system32\services.exe
Image size: 101888
Image MD5: 47D6B593DBC04C586AFE1078118DCFC0
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): EventSystem
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Sistema di eventi COM+
Description: Supporta il servizio di notifica eventi di sistema (SENS), che implementa la distribuzione automatica degli eventi nei componenti COM che eseguono la sottoscrizione. Se il servizio viene arrestato, il servizio SENS viene chiuso e non è più in grado di inviare notifiche di connessione e disconnessione. Se il servizio viene disattivato, i servizi che dipendono esplicitamente da esso non possono essere avviati.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): Fastfat
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 2
Error Control: 1

Service (registry key): FastUserSwitchingCompatibility
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Compatibilità di Cambio rapido utente
Description: Consente la gestione delle applicazioni che richiedono assistenza in un ambiente con più utenti.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: TermService

Service (registry key): Fdc
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): Fips
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): Flpydisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): Fs_Rec
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 8
Error Control: 0

Service (registry key): Ftdisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver archiviazione volumi
Image path: System32\DRIVERS\ftdisk.sys
Image size: 125824
Image MD5: F3269A6EE547EA87B949A1CEA4816B38
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Gpc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Utilità di classificazione pacchetti generica
Description: Utilità di classificazione pacchetti generica
Image path: System32\DRIVERS\msgpc.sys
Image size: 33792
Image MD5: 13591E0A02E85DE2A388F3EC4BD206DF
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): helpsvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Guida in linea e supporto tecnico
Description: Consente l'esecuzione di Guida in linea e supporto tecnico. Se il servizio è arrestato, Guida in linea e supporto tecnico non è disponibile. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): HidServ
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Accesso periferica Human Interface
Description: Abilita l'accesso di input generico alle periferiche Human Interface (HID), che attiva e gestisce l'utilizzo di pulsanti predefiniti su tastiere, telecomandi e altre periferiche multimediali. Se il servizio è stato arrestato, il pulsanti controllati dal servizio non funzioneranno. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): hpn
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): hpt3xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): i2omgmt
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): i2omp
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): i8042prt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver di porta mouse PS/2 e tastiera i8042
Image path: System32\DRIVERS\i8042prt.sys
Image size: 51712
Image MD5: ACD2505D428441777D794AF44A4E319A
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): Imapi
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): ImapiService
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio COM di masterizzazione CD IMAPI
Description: Gestisce la registrazione di CD utilizzando l'interfaccia IMAPI (Image Mastering Applications Programming Interface). Se si arresta il servizio, non sarà possibile registrare dei CD. Se si disabilita il servizio, non sarà possibile avviare ogni servizio che dipende esplicitamente da questo.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\imapi.exe
Image size: 118784
Image MD5: 061B607294ACC57F9DF729533CF978F5
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): inetaccs
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): ini910u
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Inport
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): IntelIde
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): IpFilterDriver
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver filtro traffico IP
Description: Driver filtro traffico IP
Image path: System32\DRIVERS\ipfltdrv.sys
Image size: 32896
Image MD5: 731F22BA402EE4B62748ADAF6363C182
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IpInIp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver tunnel IP in IP
Description: Driver tunnel IP in IP
Image path: System32\DRIVERS\ipinip.sys
Image size: 19584
Image MD5: F56DD863BA732A4E8EE58D486C31250F
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IPN2220
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: acer IPN2220 Wireless LAN Card Driver
Image path: System32\DRIVERS\i2220ntx.sys
Image size: 160896
Image MD5: 79BDD03E45FF33F40B7DF06F9ACBC32F
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): IpNat
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Traduttore indirizzi di rete IP
Description: Traduttore indirizzi di rete IP
Image path: System32\DRIVERS\ipnat.sys
Image size: 76288
Image MD5: 561E2AEDE82CAE972D572C60D4E090BF
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IPSec
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver IPSEC
Description: Driver IPSEC
Image path: System32\DRIVERS\ipsec.sys
Image size: 56064
Image MD5: 87AD207BC4437F215508024559D72F30
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): irda
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Protocollo IrDA
Description: Protocollo IrDA
Image path: System32\DRIVERS\irda.sys
Image size: 55296
Image MD5: 4470057834C57B4DA68E83AB642EF647
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 1

Service (registry key): IRENUM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio enumeratore infrarossi
Image path: System32\DRIVERS\irenum.sys
Image size: 10496
Image MD5: B43201394646B7E98C89056EDDA686B5
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Irmon
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Monitor infrarossi
Description: Supporta periferiche a infrarossi installate sul computer e rileva altre periferiche.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: irda,RpcSs,TermService

Service (registry key): ISAPISearch
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): isapnp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver bus PnP ISA/EISA
Image path: System32\DRIVERS\isapnp.sys
Image size: 36096
Image MD5: EA3245A8E8758D6B84DE189A5CAAA75E
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 3

Service (registry key): Kbdclass
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver classe tastiera
Image path: System32\DRIVERS\kbdclass.sys
Image size: 23936
Image MD5: 572449D86DF8ED12F6D07C9AE2457A7F
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): kmixer
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Mixer wave audio del kernel Microsoft
Image path: system32\drivers\kmixer.sys
Image size: 159232
Image MD5: ECD42891ECC1CA80FCB849511D3DF186
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): KSecDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): lanmanserver
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Server
Description: Supporta la condivisione in rete di file, stampa e named-pipe per il computer in uso. Se il servizio è stato arrestato, queste funzionalità non saranno disponibili. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): lanmanworkstation
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Workstation
Description: Crea e mantiene le connessioni di rete tra client e server remoti. Se il servizio è stato arrestato, le connessioni non saranno disponibili. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): lbrtfdc
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): ldap
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): LicenseService
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): LightScribeService
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LightScribeService Direct Disc Labeling Service
Description: Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work.
Object name: LocalSystem
Image path: C:\Programmi\File comuni\LightScribe\LSSrvc.exe
Image size: 79136
Image MD5: 8577CA80212A3EE1CF2FD1FC91E1CFF6
Control Set: CurrentControlSet
Start: 2
Type: 16
Error Control: 0

Service (registry key): LmHosts
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Helper NetBIOS di TCP/IP
Description: Attiva il servizio Supporto NetBIOS su TCP/IP (NetBT) e risoluzione nomi NetBIOS.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: NetBT,Afd

Service (registry key): Messenger
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Messenger
Description: Transmette Net Send e i messaggi del servizio Alerter tra client e server. Il servizio non è collegato a Windows Messenger. Se il servizio è stato arrestato, i messaggi del servizio Alerter non saranno trasmessi. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,NetBIOS,PlugPlay,RpcSS

Service (registry key): mnmdd
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): mnmsrvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Condivisione desktop remoto di NetMeeting
Description: Consente alle persone autorizzate di accedere al desktop di Windows da postazione remota utilizzando NetMeeting.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\mnmsrvc.exe
Image size: 32768
Image MD5: C41C17A16F60DC3AEDFE47861FA4C91D
Control Set: CurrentControlSet
Start: 3
Type: 272
Error Control: 1

Service (registry key): Modem
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): Mouclass
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver classe mouse
Image path: System32\DRIVERS\mouclass.sys
Image size: 22528
Image MD5: 6B912C8C4DE096038BE65DF5AC9ECB25
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): MountMgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): mraid35x
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): MRxDAV
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Redirector del client WebDav
Description: Redirector del client WebDav
Image path: System32\DRIVERS\mrxdav.sys
Image size: 172672
Image MD5: D30CBA20CC355D3648B9FED5BB55A9D5
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1

Service (registry key): MRxSmb
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: MRXSMB
Description: MRXSMB
Image path: System32\DRIVERS\mrxsmb.sys
Image size: 407680
Image MD5: A3AD34D36242E92C86B0C1BFBD131255
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1

Service (registry key): MSDTC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Distributed Transaction Coordinator
Description: Coordina le transazioni che vengono distribuite in più gestori di risorse, quali database, code di messaggi e file system. Se il servizio viene arrestato le transazioni non vengono eseguite. Se il servizio viene disattivato, i servizi che dipendono esplicitamente da esso non possono essere avviati.
Object name: NT AUTHORITY\NetworkService
Image path: C:\WINDOWS\System32\msdtc.exe
Image size: 6144
Image MD5: EB31A912EA9CBF22FCD0C8341D0C34E3
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS,SamSS

Service (registry key): Msfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1

Service (registry key): MSIRCOMM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Microsoft IR Communications Driver
Image path: System32\DRIVERS\MSIRCOMM.sys
Image size: 20096
Image MD5: 357A9A9AEC851EE4D78F5243176F614B
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSIServer
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Windows Installer
Description: Installa, ripristina e rimuove software in base alle istruzioni contenute nei file .MSI.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\msiexec.exe /V
Image size: 63488
Image MD5: 70AA92ECB069ECEE5D379C04ACBC5C0B
Control Set: CurrentControlSet
Start: 3
Type: 288
Error Control: 1
Depends On services: RpcSs

Service (registry key): MSKSSRV
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Proxy di servizio di flusso Microsoft
Image path: system32\drivers\MSKSSRV.sys
Image size: 6400
Image MD5: 73FF6DDEAC27839583FE6A2573EE60CA
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSPCLOCK
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Proxy clock di flusso Microsoft
Image path: system32\drivers\MSPCLOCK.sys
Image size: 5120
Image MD5: BD8A0DCF208C27E20416BF9E8AED9CF9
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSPQM
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Proxy di gestione qualità di flusso Microsoft
Image path: system32\drivers\MSPQM.sys
Image size: 4608
Image MD5: F6A726B8832DB1F88326B8BE98B11981
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): MSTEE
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Convertitore a T/Sito a sito per flusso Microsoft
Image path: system32\drivers\MSTEE.sys
Image size: 4992
Image MD5: 84C60D6CAADA1B4AB387187E883F520A
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Mup
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Mup
Control Set: CurrentControlSet
Start: 0
Type: 2
Error Control: 1

Service (registry key): NABTSFEC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NABTS/FEC VBI Codec
Image path: System32\DRIVERS\NABTSFEC.sys
Image size: 83712
Image MD5: 536E726644E1E9A8E4B8287CF2B86A4E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NDIS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver di sistema NDIS
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): NdisIP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Connesione TV/Video Microsoft
Image path: System32\DRIVERS\NdisIP.sys
Image size: 8064
Image MD5: 46DDE6CDAA4677EB2D9B7DF35A25F9A2
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NdisTapi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver TAPI NDIS di accesso remoto
Description: Driver TAPI NDIS di accesso remoto
Image path: System32\DRIVERS\ndistapi.sys
Image size: 9600
Image MD5: 08D43BBDACDF23F34D79E44ED35C1B4C
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Ndisuio
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Protocollo I/O modalità utente su NDIS
Description: Protocollo I/O modalità utente su NDIS
Image path: System32\DRIVERS\ndisuio.sys
Image size: 12160
Image MD5: DA77857D9F9BC724D779DF64DA15164B
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NdisWan
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver WAN NDIS di accesso remoto
Description: Driver WAN NDIS di accesso remoto
Image path: System32\DRIVERS\ndiswan.sys
Image size: 88320
Image MD5: DF101384699C87C70E9BD71DDF0E8509
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NDProxy
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): NetBIOS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Interfaccia NetBIOS
Description: Interfaccia NetBIOS
Image path: System32\DRIVERS\netbios.sys
Image size: 33152
Image MD5: 9F880D46EF6DCC865B8EF5C5A4956E3B
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1

Service (registry key): NetBT
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NetBios su Tcpip
Description: NetBios su Tcpip
Image path: System32\DRIVERS\netbt.sys
Image size: 150272
Image MD5: 58A5116194BC0AD86A6BBDBDFA5E1240
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): NetDDE
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: DDE di rete
Description: Fornisce trasporto di rete e protezione per DDE (Dynamic Data Exchange) per programmi in esecuzione sullo stesso computer o su computer diversi. Se il servizio è stato arrestato, trasporto e protezione DDE non saranno disponibili. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\netdde.exe
Image size: 108032
Image MD5: 6B2BE31EF6BFEEEAC5671641D568E97D
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: NetDDEDSDM

Service (registry key): NetDDEdsdm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: DDE DSDM di rete
Description: Gestisce risorse di rete condivise DDE (Dynamic Data Exchange). Se il servizio è stato arrestato, le risorse di rete condivise DDE non saranno disponibili. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\netdde.exe
Image size: 108032
Image MD5: 6B2BE31EF6BFEEEAC5671641D568E97D
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1

Service (registry key): Netlogon
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Accesso rete
Description: Supporta l'autenticazione pass-through di eventi di accesso ad account per computer in un dominio.
Object name: LocalSystem
Image path: %SystemRoot%\System32\lsass.exe
Image size: 11776
Image MD5: 12ADB791CEA13FE038D63979A5FCAE43
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation

Service (registry key): Netman
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Connessioni di rete
Description: Gestisce gli oggetti nella cartella Connessioni di rete e telefoniche in cui è possibile visualizzare connessioni di rete locale (LAN) e connessioni remote.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 288
Error Control: 1
Depends On services: RpcSs

Service (registry key): NIC1394
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: 1394 Net Driver
Image path: System32\DRIVERS\nic1394.sys
Image size: 56960
Image MD5: 807E924D54EC8B3203430CA4D4C08314
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Nla
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: NLA (Network Location Awareness)
Description: Raccoglie e archivia le informazioni relative alla configurazione e al percorso di rete e ne notifica immediatamente le modifiche alle applicazioni.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: Tcpip,Afd

Service (registry key): Npfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1

Service (registry key): Ntfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 2
Error Control: 1

Service (registry key): NtLmSsp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Provider supporto protezione LM NT
Description: Fornisce protezione per i programmi con chiamate a procedure remote (RPC) che usano trasporti diversi da named pipe.
Object name: LocalSystem
Image path: %SystemRoot%\System32\lsass.exe
Image size: 11776
Image MD5: 12ADB791CEA13FE038D63979A5FCAE43
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1

Service (registry key): NtmsSvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Archivi rimovibili
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): Null
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): NwlnkFlt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver filtro traffico IPX
Description: Driver filtro traffico IPX
Image path: System32\DRIVERS\nwlnkflt.sys
Image size: 12416
Image MD5: B305F3FAD35083837EF46A0BBCE2FC57
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: NwlnkFwd

Service (registry key): NwlnkFwd
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver inoltratore traffico IPX
Description: Driver inoltratore traffico IPX
Image path: System32\DRIVERS\nwlnkfwd.sys
Image size: 32512
Image MD5: C99B3415198D1AAB7227F2C88FD664B9
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): ohci1394
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Host controller VIA OHCI compatibile IEEE 1394
Image path: System32\DRIVERS\ohci1394.sys
Image size: 55424
Image MD5: D72273FEFCC1FB32F214E344667C243F
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Parport
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): PartMgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): ParVdm
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 0
Depends On services: Parport
Depends On group: "Parallel arbitrator"

Service (registry key): PCI
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: PCI Bus Driver
Image path: System32\DRIVERS\pci.sys
Image size: 62976
Image MD5: B1CD501E0B5E193F63A40EE29423994B
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): PCIDump
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): PCIIde
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\pciide.sys
Image size: 3328
Image MD5: B2DF00D650FD6C4EE781740ED3C8E67F
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): Pcmcia
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\pcmcia.sys
Image size: 116608
Image MD5: A87B96DFEE3C9F13DD1AECB08F6EE361
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): PDCOMP
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): PDFRAME
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): PDRELI
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): PDRFRAME
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): perc2
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): perc2hib
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): PerfDisk
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): PerfNet
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): PerfOS
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): PerfProc
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): PlugPlay
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Plug and Play
Description: Abilita un computer a riconoscere e adattarsi alle modifiche hardware con il minimo input da parte dell'utente o senza alcun input. Se il servizio viene arrestato o disabilitato, il sistema diventerà instabile.
Object name: LocalSystem
Image path: %SystemRoot%\system32\services.exe
Image size: 101888
Image MD5: 47D6B593DBC04C586AFE1078118DCFC0
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): PolicyAgent
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizi IPSEC
Description: Gestisce la protezione IP e avvia ISAKMP/Oakley (IKE) e il driver di protezione IP.
Object name: LocalSystem
Image path: %SystemRoot%\System32\lsass.exe
Image size: 11776
Image MD5: 12ADB791CEA13FE038D63979A5FCAE43
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS,Tcpip,IPSec

Service (registry key): PptpMiniport
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: WAN Miniport (PPTP)
Description: WAN Miniport (PPTP)
Image path: System32\DRIVERS\raspptp.sys
Image size: 46464
Image MD5: 5849957DC3F7CAE702E03B69744B9BFE
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Processor
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver processore
Image path: System32\DRIVERS\processr.sys
Image size: 33280
Image MD5: B73E73D5ED77AD7021C2B3BADE086D51
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): PRODIGY
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: PRODIGY
Image path: System32\Drivers\PRODIGY.SYS
Image size: 32377
Image MD5: 65937A34C9A5741E3030A86905400D91
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): ProtectedStorage
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Archiviazione protetta
Description: Fornisce l'archiviazione protetta per dati importanti, come chiavi private, per evitare l'accesso di servizi, processi, utenti non autorizzati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 11776
Image MD5: 12ADB791CEA13FE038D63979A5FCAE43
Control Set: CurrentControlSet
Start: 2
Type: 288
Error Control: 1
Depends On services: RpcSs

Service (registry key): PSched
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Utilità di pianificazione pacchetti QoS
Description: Utilità di pianificazione pacchetti QoS
Image path: System32\DRIVERS\psched.sys
Image size: 65920
Image MD5: 7FD061B0B0833D5106244B0CF2A1E68C
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1
Depends On services: Gpc

Service (registry key): Ptilink
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver Direct Parallel Link
Description: Driver Direct Parallel Link
Image path: System32\DRIVERS\ptilink.sys
Image size: 17792
Image MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): ql1080
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Ql10wnt
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ql12160
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ql1240
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): ql1280
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): RasAcd
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver connessione automatica Accesso remoto
Description: Driver connessione automatica Accesso remoto
Image path: System32\DRIVERS\rasacd.sys
Image size: 8832
Image MD5: FE0D99D6F31E4FAD8159F690D68DED9C
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): RasAuto
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Auto Connection Manager di Accesso remoto
Description: Crea una connessione a una rete remota ogni volta che un programma fa riferimento a un DNS remoto o a un nome o indirizzo NetBIOS.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RasMan,Tapisrv

Service (registry key): Rasirda
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: WAN Miniport (IrDA)
Description: WAN Miniport (IrDA)
Image path: System32\DRIVERS\rasirda.sys
Image size: 19584
Image MD5: 0207D26DDF796A193CCD9F83047BB5FC
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Rasl2tp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: WAN Miniport (L2TP)
Description: WAN Miniport (L2TP)
Image path: System32\DRIVERS\rasl2tp.sys
Image size: 48640
Image MD5: 01BD60CDE35D8B60F46EBDF5358D7127
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RasMan
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Connection Manager di Accesso remoto
Description: Crea una connessione di rete.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: Tapisrv

Service (registry key): RasPppoe
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver PPPOE di accesso remoto
Description: Driver PPPOE di accesso remoto
Image path: System32\DRIVERS\raspppoe.sys
Image size: 38912
Image MD5: 888335B3BE346119CF7B4EFF3A3FCA7C
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Raspti
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Direct Parallel
Description: Direct Parallel
Image path: System32\DRIVERS\raspti.sys
Image size: 16512
Image MD5: FDBB1D60066FCFBB7452FD8F9829B242
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Rdbss
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Rdbss
Description: Rdbss
Image path: System32\DRIVERS\rdbss.sys
Image size: 163840
Image MD5: DE300831C74CFF09091E954A1844BDBF
Control Set: CurrentControlSet
Start: 1
Type: 2
Error Control: 1

Service (registry key): RDPCDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: System32\DRIVERS\RDPCDD.sys
Image size: 4224
Image MD5: 4912D5B403614CE99C28420F75353332
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): RDPDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): rdpdr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver redirector periferica Terminal Server
Image path: System32\DRIVERS\rdpdr.sys
Image size: 181632
Image MD5: 57F34F83E278DD804BA4A0593D789312
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): RDPNP
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): RDPWD
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): RDSessMgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Gestione sessione di assistenza mediante desktop remoto
Description: Gestisce e controlla la funzione Assistenza remota. Se il servizio è stato arrestato, l'assistenza remota non sarà disponibile. Prima di arrestare il servizio, consultare la scheda Dipendenze nella finestra di dialogo Proprietà.
Object name: LocalSystem
Image path: C:\WINDOWS\system32\sessmgr.exe
Image size: 131072
Image MD5: 5A124C95F9717254828283B2999A40A1
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): redbook
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver filtro riproduzione CD-ROM audio digitale
Image path: System32\DRIVERS\redbook.sys
Image size: 56576
Image MD5: 3F96198FA5F7C21E87015933A27A1519
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): RemoteAccess
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Routing e Accesso remoto
Description: Offre servizi di routing ad aziende in ambiente LAN e WAN.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSS
Depends On group: NetBIOSGroup

Service (registry key): RemoteRegistry
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Registro di sistema remoto
Description: Abilita gli utenti remoti alla modifica delle impostazioni del Registro di sistema del computer in uso. Se il servizio è stato arrestato, il Registro di sistema potrà essere modificato soltanto dagli utenti del computer. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\system32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): RpcLocator
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: RPC Locator
Description: Gestisce il database del servizio nomi RPC.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\locator.exe
Image size: 68096
Image MD5: 2447A1BB9E75218356299D15F2089980
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: LanmanWorkstation

Service (registry key): RpcSs
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: RPC (Remote Procedure Call)
Description: Fornisce il mapper dell'endpoint e altri servizi RPC.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost -k rpcss
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): RSVP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: QoS RSVP
Description: Fornisce la segnalazione di rete e la funzionalità di installazione di controllo del traffico locale per programmi e applet di controllo QoS compatibili.
Object name: LocalSystem
Image path: %SystemRoot%\System32\rsvp.exe
Image size: 132608
Image MD5: DCE0D20F8FB66DF41D53734BFF9D66F0
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: TcpIp,Afd,RpcSs

Service (registry key): rtl8139
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver NT scheda Fast Ethernet PCI Realtek basata su RTL8139
Image path: System32\DRIVERS\RTL8139.SYS
Image size: 23070
Image MD5: 7A0DB9FC3DC3C620AEA30EA2A6557CAC
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SamSs
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Gestione account di protezione (SAM)
Description: Archivia le informazioni di protezione per gli account utenti locali.
Object name: LocalSystem
Image path: %SystemRoot%\system32\lsass.exe
Image size: 11776
Image MD5: 12ADB791CEA13FE038D63979A5FCAE43
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): SCardDrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Helper smart card
Description: Abilita il supporto per precedenti versioni di lettori di smart card non Plug and Play utilizzati dal computer. Se il servizio è stato arrestato, il computer non supporterà versioni di lettori precedenti. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\SCardSvr.exe
Image size: 95232
Image MD5: 03B2D624A7C42F88D3D14BF6739E60EE
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 0
Depends On group: "Smart Card Reader"

Service (registry key): SCardSvr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: smart card
Description: Gestisce l'accesso alle smart card lette dal computer. Se il servizio viene arrestato, il computer non sarà in grado di leggere le smart card. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\SCardSvr.exe
Image size: 95232
Image MD5: 03B2D624A7C42F88D3D14BF6739E60EE
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 0
Depends On services: PlugPlay

Service (registry key): Schedule
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Utilità di pianificazione
Description: Abilita l'utente a configurare e pianificare operazioni automatizzate sul computer in uso. Se il servizio è stato arrestato, le operazioni non verranno eseguite secondo gli orari pianificati. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 288
Error Control: 1
Depends On services: RpcSs

Service (registry key): Secdrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Secdrv
Description: SafeDisc driver
Image path: System32\DRIVERS\secdrv.sys
Image size: 27440
Image MD5: D26E26EA516450AF9D072635C60387F4
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): seclogon
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Accesso secondario
Description: Abilita l'avvio di processi con credenziali alternative. Se il servizio è stato arrestato, questo tipo di accesso non sarà disponibile. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 288
Error Control: 0

Service (registry key): SENS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Notifica eventi di sistema
Description: Registra eventi di sistema come accessi a Windows, eventi di rete e alimentazione. Notifica questi eventi ai sottoscrittori COM+ Event System.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: EventSystem

Service (registry key): Serial
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 2
Type: 1
Error Control: 0

Service (registry key): Sfloppy
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0
Depends On group: "SCSI miniport"

Service (registry key): SharedAccess
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Firewall della connessione Internet (ICF) / Condivisione connessione Internet (ICS)
Description: Fornisce servizi di conversione indirizzi di rete, indirizzamento e risoluzione nomi e/o servizi di prevenzione intrusione per una rete domestica o una piccola rete aziendale.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: Netman,NLA,RasMan,ALG

Service (registry key): ShellHWDetection
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Rilevamento hardware shell
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 0
Depends On services: RpcSs

Service (registry key): Simbad
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): SLIP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: BDA Slip De-Framer
Image path: System32\DRIVERS\SLIP.sys
Image size: 10752
Image MD5: 80B86F9B9EC4CD0E25627E4A7C54826A
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SMCIRDA
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SMC IrCC Miniport Device Driver
Image path: System32\DRIVERS\smcirda.sys
Image size: 39424
Image MD5: F5FEC5B4B985FBF81927844E75DD5BD1
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SNP2STD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: USB2.0 PC Camera (SNP2STD)
Image path: System32\DRIVERS\snp2sxp.sys
Image size: 12212864
Image MD5: 11FEB56E945687BD356CADB4F62DA199
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Sparrow
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): splitter
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Frazionatore audio del kernel Microsoft
Image path: system32\drivers\splitter.sys
Image size: 5632
Image MD5: 2C55620B197ED2BA93126B76396BFF6E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Spooler
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Spooler di stampa
Description: Carica i file in memoria per stampare in un secondo momento.
Object name: LocalSystem
Image path: %SystemRoot%\system32\spoolsv.exe
Image size: 51200
Image MD5: 4A06D428BC79100F9F79516ADBFE152C
Control Set: CurrentControlSet
Start: 2
Type: 272
Error Control: 1
Depends On services: RPCSS

Service (registry key): sr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver filtro Ripristino configurazione di sistema
Image path: system32\DRIVERS\sr.sys
Image size: 70400
Image MD5: F8070922002A6F6A98D1D52AA1ED0D7C
Control Set: CurrentControlSet
Start: 0
Type: 2
Error Control: 1

Service (registry key): srservice
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio Ripristino configurazione di sistema
Description: Esegue le funzioni di ripristino del sistema. Per interrompere il servizio, disattivare Ripristino configurazione di sistema nella scheda Ripristino configurazione di sistema in Risorse del computer->Proprietà
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): Srv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Srv
Description: Srv
Image path: System32\DRIVERS\srv.sys
Image size: 330368
Image MD5: 94619EB663216F9BF12F9B950FCAB3C0
Control Set: CurrentControlSet
Start: 3
Type: 2
Error Control: 1

Service (registry key): sscdbus
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SAMSUNG USB Composite Device driver (WDM)
Image path: System32\DRIVERS\sscdbus.sys
Image size: 80272
Image MD5: 2D4027C46B4C6E45875E3C4BA3F67492
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): sscdmdfl
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SAMSUNG CDMA Modem Filter
Description: SAMSUNG CDMA Modem Filter
Image path: System32\DRIVERS\sscdmdfl.sys
Image size: 10864
Image MD5: F548F1EBA107BC19E91189E6A460BD0E
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): sscdmdm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: SAMSUNG CDMA Modem Drivers
Description: SAMSUNG CDMA Modem Drivers
Image path: System32\DRIVERS\sscdmdm.sys
Image size: 137884
Image MD5: 71D348D53597379DFE1DE255D70AF13C
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SSDPSRV
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio di rilevamento SSDP
Description: Consente di rilevare le periferiche UPnP nella rete domestica.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1

Service (registry key): stisvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Acquisizione di immagini di Windows (WIA)
Description: Fornisce servizi di acquisizione immagini per scanner e fotocamere.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k imgsvc
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): streamip
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: BDA IPSink
Image path: System32\DRIVERS\StreamIP.sys
Image size: 14592
Image MD5: C0E7E159415C1D10A88297B7EBA01066
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): swenum
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver bus software
Image path: System32\DRIVERS\swenum.sys
Image size: 3840
Image MD5: 064740C5C02DE46723C4B8200EE876DF
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): swmidi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Sintetizzatore Wavetable GS kernel Microsoft
Image path: system32\drivers\swmidi.sys
Image size: 54272
Image MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SwPrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: MS Software Shadow Copy Provider
Description: Consente di gestire le copie replicate del volume basate sul software eseguite dal Servizio copia replicata del volume. Se il servizo è stato arrestato, non sarà possibile gestire le copie replicate del volume basate sul software. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\dllhost.exe /Processid:{BCC99794-4697-4DFB-8725-6A8A7D25EECD}
Image size: 4608
Image MD5: FF21FFE05D7FBE3530DA7A62558F868D
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 0
Depends On services: rpcss

Service (registry key): symc810
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): symc8xx
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): sym_hi
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): sym_u3
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): SynTP
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Synaptics TouchPad Driver
Image path: System32\DRIVERS\SynTP.sys
Image size: 182688
Image MD5: 065D6EFC03486C2039B8C2B4C56E6EDB
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): sysaudio
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Periferica audio di sistema Microsoft Kernel
Image path: system32\drivers\sysaudio.sys
Image size: 57472
Image MD5: D0459F71807CCE71FE26A52F2EDEBAD9
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): SysmonLog
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Avvisi e registri di prestazioni
Description: Raccoglie dati relativi alle prestazioni dal computer locale o da computer remoti sulla base di parametri di pianificazione preconfigurati, quindi scrive i dati in un registro o attiva un avviso. Se il servizio è arrestato, i dati sulle prestazioni non vengono raccolti. Se il servizio è disabilitato, l'avvio di servizi esplicitamente dipendenti da questo non sarà possibile.
Object name: NT Authority\NetworkService
Image path: %SystemRoot%\system32\smlogsvc.exe
Image size: 89088
Image MD5: 3E9F5C1F44B24064AAC3B316B9A89DF7
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): TapiSrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Telefonia
Description: Fornisce supporto API di telefonia (TAPI) per programmi che controllano periferiche di telefonia e connessioni vocali basate su IP sul computer locale e, tramite LAN, su server su cui è in esecuzione il servizio.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs

Service (registry key): Tcpip
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver protocollo TCP/IP
Description: Driver protocollo TCP/IP
Image path: System32\DRIVERS\tcpip.sys
Image size: 327168
Image MD5: E7774698BB0D14B0710A9A31E209F9B6
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1
Depends On services: IPSec

Service (registry key): TDPIPE
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): TDTCP
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): TermDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver della periferica terminale
Image path: System32\DRIVERS\termdd.sys
Image size: 37896
Image MD5: 68B71EB2E79F60640B4B3A1A714317E5
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 1

Service (registry key): TermService
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizi terminal
Description: Consente a più utenti di connettersi in modo interattivo a un computer e la visualizzazione di desktop e applicazioni a computer remoti. Complemento di Desktop remoto (incluso Desktop remoto per amministratori), Cambio rapido utente, Assistenza remota e Terminal Server.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): Themes
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Temi
Description: Consente la gestione dei temi.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): TlntSvr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Telnet
Description: Consente a un utente remoto di accedere a questo computer ed eseguire programmi, oltre a supportare vari client Telnet TCP/IP, inclusi i computer basati su UNIX e Windows. Se il servizio viene interrotto, l'accesso remoto dell'utente ai programmi potrebbe non essere disponibile. Se il servizio viene disattivato, non sarà possibile avviare alcun servizio che ne dipende in modo esplicito.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\tlntsvr.exe
Image size: 62464
Image MD5: D49D99E55F940691CB31743B45768823
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS,TCPIP,NTLMSSP

Service (registry key): TosIde
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): TrkWks
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Manutenzione collegamenti distribuiti client
Description: Gestisce collegamenti tra file NTFS in un computer o tra più computer in un dominio di rete.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): TSDDD
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): U81xbus
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LGE U8XXX driver (WDM)
Image path: System32\DRIVERS\U81xbus.sys
Image size: 52352
Image MD5: 8452977E2331AF70652C3A4C28D2706D
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): U81xmdfl
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LGE U8XXX USB WMC Modem Filter
Description: LGE U8XXX USB WMC Modem Filter
Image path: System32\DRIVERS\U81xmdfl.sys
Image size: 6064
Image MD5: E39C410FCD87570E36DCC34F6D2502B7
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): U81xmdm
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LGE U8XXX USB WMC Modem Driver
Description: LGE U8XXX USB WMC Modem Driver
Image path: System32\DRIVERS\U81xmdm.sys
Image size: 84480
Image MD5: EB0BBF5D8C53F1ABE7911907B276A0B6
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): U81xmgmt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LGE U8XXX USB WMC Device Management Drivers (WDM)
Description: LGE U8XXX USB WMC Device Management Drivers (WDM)
Image path: System32\DRIVERS\U81xmgmt.sys
Image size: 77472
Image MD5: F0EEA020CC5986260B87CB92050AF160
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): U81xobex
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: LGE U8XXX USB WMC OBEX Interface
Description: LGE U8XXX USB WMC OBEX Interface
Image path: System32\DRIVERS\U81xobex.sys
Image size: 75456
Image MD5: AA1EB6BFD8176C25C04B803542BCD7AC
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): Udfs
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 2
Error Control: 1

Service (registry key): ultra
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): Update
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver aggiornamento microcodice
Image path: System32\DRIVERS\update.sys
Image size: 137088
Image MD5: 164CFAE1D766905F56C432ACFC54F28C
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): uploadmgr
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Upload Manager
Description: Gestisce i trasferimenti di file sincroni ed asincroni tra client e server in rete. Se il servizio è arrestato, i trasferimenti di file sincroni ed asincroni tra client e server in rete non possono avvenire. Se il servizio è disabilitato, i servizi esplicitamente dipendenti da esso non possono essere avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): upnphost
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Host di periferiche Plug and Play universali
Description: Fornisce supporto per ospitare periferiche Plug and Play universali.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1
Depends On services: SSDPSRV

Service (registry key): UPS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Gruppo di continuità
Description: Gestisce un gruppo di continuità (UPS) connesso al computer.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\ups.exe
Image size: 16384
Image MD5: 642CFFCBA61DDD2BCA8D349D7FB4B8B0
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1

Service (registry key): usbhub
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Hub abilitato USB2
Image path: System32\DRIVERS\usbhub.sys
Image size: 50688
Image MD5: 1766FAA3A5079D0DB3EFB331DAC587ED
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): usbohci
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver miniport per controller open host USB Microsoft
Image path: System32\DRIVERS\usbohci.sys
Image size: 15616
Image MD5: BA6B6215621255F0CD231F08B7D5D8CB
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): USBSTOR
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver archiviazione di massa USB
Image path: System32\DRIVERS\USBSTOR.SYS
Image size: 21760
Image MD5: 694F2B90124EB086C38C18DA97A13E48
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): usnjsvc
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Servizio Messenger Sharing Folders USN Journal Reader
Description: Service installato da Windows Live Messenger per attivare la condivisione di scenari
Object name: LocalSystem
Image path: C:\Programmi\MSN Messenger\usnsvc.exe
Image size: 97136
Image MD5: C5B70A6AA947667CE0E5FC84A05EC8B6
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: rpcss,eventlog

Service (registry key): VgaSave
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: \SystemRoot\System32\drivers\vga.sys
Image size: 0
Image MD5: D41D8CD98F00B204E9800998ECF8427E
Control Set: CurrentControlSet
Start: 1
Type: 1
Error Control: 0

Service (registry key): ViaIde
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 4
Type: 1
Error Control: 1

Service (registry key): VIRAGTLT
Registry path: \SYSTEM\CurrentControlSet\Services\
Image path: system32\drivers\VIRAGTLT.SYS
Image size: 39808
Image MD5: EB0D5129E1C5D5260C0F4A03120128F4
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): viritsvclite
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Virit eXplorer Lite
Object name: LocalSystem
Image path: C:\VEXPLITE\viritsvc.exe
Image size: 57344
Image MD5: 1B4A565FFC9A7FC4D659CE82199C1F3E
Control Set: CurrentControlSet
Start: 2
Type: 272
Error Control: 1

Service (registry key): VolSnap
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 1
Error Control: 1

Service (registry key): VSS
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Copia replicata del volume
Description: Gestisce e implementa le copie replicate del volume utilizzate a scopo di backup e altro. Se il servizio è stato arrestato, le copie replicate non saranno disponibili per il backup e il backup potrebbe non riuscire. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\vssvc.exe
Image size: 279552
Image MD5: 428090DCE6071E33D4A5D163C215ABD8
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): W32Time
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Ora di Windows
Description: Assicura la sincronizzazione data e ora su tutti i client e i server della rete. Se il servizio viene interrotto, la sincronizzazione data e ora non sarà disponibile. Se questo servizio è disattivato, non potrà essere avviato alcun servizio che dipende direttamente da esso.

Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): W3SVC
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): Wanarp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver ARP IP di accesso remoto
Description: Driver ARP IP di accesso remoto
Image path: System32\DRIVERS\wanarp.sys
Image size: 33280
Image MD5: 484AF08F15D1306FF2E8B64FE62A160C
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): WDICA
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 0

Service (registry key): wdmaud
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Driver di compatibilità audio Microsoft WINMM WDM
Image path: system32\drivers\wdmaud.sys
Image size: 79616
Image MD5: 1106767A0647BF3BE4535C91F74FE7DA
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): WebClient
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: WebClient
Description: Abilita i programmi basati su Windows per creare, accedere e modificare i file basati su Internet. Se il servizio è stato arrestato, queste funzionalità non saranno disponibili. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: MRxDAV

Service (registry key): winmgmt
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Strumentazione gestione Windows
Description: Fornisce un modello di interfacce e di oggetti comune per accedere alle informazioni di gestione sul sistema operativo, le periferiche, le applicazioni e i servizi. Se il servizio viene interrotto, la maggior parte del software basato su Windows non funzionerà in modo corretto. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %systemroot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 0
Depends On services: RPCSS,Eventlog

Service (registry key): Winsock
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 3
Type: 4
Error Control: 1

Service (registry key): WinSock2
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): WinTrust
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): WmdmPmSp
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Numero di serie del supporto portatile
Description: Recupera il numero di serie di eventuali lettori musicali portatili collegati al computer
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): Wmi
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Estensioni driver di Strumentazione gestione Windows
Description: Contiene informazioni di gestione del sistema destinate a e provenienti dai driver.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 3
Type: 32
Error Control: 1

Service (registry key): WmiApRpl
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): WmiApSrv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Scheda WMI Performance
Description: Fornisce informazioni relative alla libreria delle prestazioni dai provider WMI HiPerf.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\wbem\wmiapsrv.exe
Image size: 117248
Image MD5: F3F7D74FB50F68E9C6EBD205877460F4
Control Set: CurrentControlSet
Start: 3
Type: 16
Error Control: 1
Depends On services: RPCSS

Service (registry key): WSTCODEC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Codec World Standard Teletext
Image path: System32\DRIVERS\WSTCODEC.SYS
Image size: 18560
Image MD5: 0D133AF83165827B0B2F58F30CDE9290
Control Set: CurrentControlSet
Start: 3
Type: 1
Error Control: 1

Service (registry key): wuauserv
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Aggiornamenti automatici
Description: Consente il download e l'installazione di aggiornamenti critici da Windows Update. Se il servizio è disabilitato, il sistema operativo può essere aggiornato manualmente presso il sito Windows Update.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1

Service (registry key): WZCSVC
Registry path: \SYSTEM\CurrentControlSet\Services\
Display name: Zero Configuration reti senza fili
Description: Fornisce la configurazione automatica per le schede 802.11
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Control Set: CurrentControlSet
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs,Ndisuio

Service (registry key): {1DF14C7D-141A-48B2-A7F9-45C431FFE5ED}
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): {549738CD-B92D-4622-A192-9846EA9876EB}
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): {732110AA-C1BD-46BD-9AAA-DF06CDDC0EF0}
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

Service (registry key): {93CC6B8E-F9E7-4432-9E2A-A86815FF20A7}
Registry path: \SYSTEM\CurrentControlSet\Services\
Control Set: CurrentControlSet
Start: 0
Type: 0
Error Control: 0

questo e virit
VirIT eXplorer Lite Log

[SCANSIONE DELLA MEMORIA]
OK

27/08/2008 - 13:06:59

[SCANSIONE DEL REGISTRO]
OK

[C:]
MASTER BOOT RECORD: OK
BOOT SECTOR: OK


[D:]
MASTER BOOT RECORD: OK
BOOT SECTOR: OK


[E:]


[F:]
BOOT SECTOR: OK


Chiavi Registro infette: 0.
Files Infetti: 0.
Files Sospetti: 0.
Files Analizzati: 16094.
Files Totali: 16094.
Chiavi Registro rimosse: 0.
Virus Rimossi: 0.

[SCANSIONE DELLA MEMORIA]
OK

27/08/2008 - 13:21:01

[SCANSIONE DEL REGISTRO]
OK

[C:]
MASTER BOOT RECORD: OK
BOOT SECTOR: OK

C:\WINDOWS\823703.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824906.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\823515.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824718.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824031.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\827718.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\825968.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824078.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\828093.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\823718.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\825312.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824109.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\825531.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\825687.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824796.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824375.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\827468.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\828921.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\827812.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\826984.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\826640.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\4843140.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\826281.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\4832343.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\828015.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\827781.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\823781.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\823187.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\4849515.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\860687.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\825078.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\823015.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\825140.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\832890.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\WINDOWS\824921.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\Impostazioni locali\Temp\Av-test.txt Infetto da EICAR-Test-File
Contattare il Supporto Tecnico TG Soft
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\6758093.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824343.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4929937.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823312.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\2206953.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\825953.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\827187.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826312.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824500.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822328.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822609.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826906.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4837281.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4838187.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822750.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824203.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824562.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\825906.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823625.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823375.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4831328.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4832390.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824890.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822984.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4832015.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4832656.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\13530656.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\13531046.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824609.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826031.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826343.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\827328.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826375.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\825234.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823640.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\825593.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\825281.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4841531.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824875.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823406.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\830578.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\831578.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4842109.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4842265.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\911812.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4841765.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4833328.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826609.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\828968.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822640.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\821484.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822578.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\824843.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\826000.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\821562.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822781.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\4847953.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\858890.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\828234.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822468.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823687.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822625.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823859.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822156.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822671.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\821703.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\821296.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\823750.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\822796.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\Documents and Settings\sergio\DoctorWeb\Quarantine\831671.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001012.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001013.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001014.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001015.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001016.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001017.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001018.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001019.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001020.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001021.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001022.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001023.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001024.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001025.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001026.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001027.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001028.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001029.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001030.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001031.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001032.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001033.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001034.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001035.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001036.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001037.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001038.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001039.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001040.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001041.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001042.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001043.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001044.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001045.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001046.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001047.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001048.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001049.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001050.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001051.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001052.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001053.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001054.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001055.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001056.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001057.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001058.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001059.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001060.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001061.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001062.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001063.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001064.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001065.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001066.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001067.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001068.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001069.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001070.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001071.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001072.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001073.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001074.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001075.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001076.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001077.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001078.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001079.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001080.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001081.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001082.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001083.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001084.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001085.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001086.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001087.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001088.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001089.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001090.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001091.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001092.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001093.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001094.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001095.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001096.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001097.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001098.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001099.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001100.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001101.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001102.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001103.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001104.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001105.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001106.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001107.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001108.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001109.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001110.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001111.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001112.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001113.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001114.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001115.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *
C:\System Volume Information\_restore{37A0575B-F03A-4884-8FB3-78E5ADD5DF7D}\RP2\A0001116.exe Infetto da Trojan.Win32.Agent.Gen
* * * RIMOSSO * * *

[D:]
MASTER BOOT RECORD: OK
BOOT SECTOR: OK


[E:]


[F:]


Chiavi Registro infette: 0.
Files Infetti: 211.
Files Sospetti: 0.
Files Analizzati: 16403.
Files Totali: 16403.
Chiavi Registro rimosse: 0.
Virus Rimossi: 210.

questo e mban:
Malwarebytes' Anti-Malware 1.25
Versione del database: 1089
Windows 5.1.2600

22:49:19 2008-08-27
mbam-log-08-27-2008 (22-49-19).txt

Tipo di scansione: Scansione completa (C:\|)
Elementi scansionati: 47365
Tempo trascorso: 3 minute(s), 41 second(s)

Processi delle memoria infetti: 0
Moduli della memoria infetti: 0
Chiavi di registro infette: 0
Valori di registro infetti: 0
Elementi dato del registro infetti: 0
Cartelle infette: 0
File infetti: 0

Processi delle memoria infetti:
(Nessun elemento malevolo rilevato)

Moduli della memoria infetti:
(Nessun elemento malevolo rilevato)

Chiavi di registro infette:
(Nessun elemento malevolo rilevato)

Valori di registro infetti:
(Nessun elemento malevolo rilevato)

Elementi dato del registro infetti:
(Nessun elemento malevolo rilevato)

Cartelle infette:
(Nessun elemento malevolo rilevato)

File infetti:
(Nessun elemento malevolo rilevato)

questo e combo:
ComboFix 08-08-26.02 - sergio 2008-08-27 22.54.03.3 - FAT32x86
Microsoft Windows XP Professional 5.1.2600.0.1252.1.1040.18.319 [GMT 2:00]
Eseguito da: C:\Documents and Settings\sergio\Desktop\ComboFix.exe

ATENÇÃO - ESTA MAQUINA NAO TEM A CONSOLE DE RECUPERAÇÃO INSTALADA !!
.

((((((((((((((((((((((((( Files Creati Da 2008-07-27 al 2008-08-27 )))))))))))))))))))))))))))))))))))
.

2008-08-27 22:33 . 2007-10-01 23:18 99,584 --a------ C:\WINDOWS\ZTEusbser.sys
2008-08-27 22:17 . 2008-08-27 22:17 <DIR> d-------- C:\Programmi\Malwarebytes' Anti-Malware
2008-08-27 22:17 . 2008-08-27 22:17 <DIR> d-------- C:\Documents and Settings\sergio\Dati applicazioni\Malwarebytes
2008-08-27 22:17 . 2008-08-27 22:17 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\Malwarebytes
2008-08-27 22:17 . 2008-08-17 15:01 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-27 22:17 . 2008-08-17 15:01 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-08-27 13:41 . 2008-08-27 22:53 754 --a------ C:\WINDOWS\WORDPAD.INI
2008-08-27 13:10 . 2008-08-27 13:10 <DIR> d-------- C:\Programmi\Spybot - Search & Destroy
2008-08-27 13:10 . 2008-08-27 13:10 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\Spybot - Search & Destroy
2008-08-27 13:00 . 2008-08-27 13:00 <DIR> d-------- C:\VEXPLITE
2008-08-27 13:00 . 2008-03-17 19:23 39,808 --a------ C:\WINDOWS\system32\drivers\VIRAGTLT.SYS
2008-08-26 22:59 . 2008-08-26 22:59 <DIR> d-------- C:\Programmi\Trend Micro
2008-08-26 22:58 . 2008-08-26 22:58 812,344 --a------ C:\Programmi\HJTInstall.exe
2008-08-26 20:23 . 2008-08-26 20:23 <DIR> d--hs---- C:\FOUND.012
2008-08-26 19:54 . 2008-08-26 19:54 <DIR> d-------- C:\Documents and Settings\sergio\DoctorWeb
2008-08-24 18:31 . 2008-08-24 18:31 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\Nokia
2008-08-24 18:29 . 2008-08-24 18:29 <DIR> d-------- C:\Programmi\CCleaner
2008-08-23 17:25 . 2008-08-23 17:25 <DIR> d-------- C:\Programmi\SpywareBlaster
2008-08-23 17:25 . 2008-08-23 17:25 <DIR> d-------- C:\Documents and Settings\All Users\Dati applicazioni\TEMP
2008-08-23 17:25 . 2005-08-25 19:18 118,784 --a------ C:\WINDOWS\system32\MSSTDFMT.DLL
2008-08-23 16:43 . 2008-08-23 16:43 <DIR> d--hs---- C:\FOUND.011
2008-08-17 13:47 . 2008-08-17 13:47 <DIR> d-------- C:\DISNEY
2008-08-17 13:47 . 2008-08-17 13:47 82 --a------ C:\WINDOWS\HERC_IT.INI
2008-08-17 12:11 . 2008-08-17 12:11 <DIR> d-------- C:\Documents and Settings\sergio\Dati applicazioni\LG Electronics
2008-08-17 12:10 . 2008-08-17 12:10 <DIR> d-------- C:\Programmi\LG PC Suite
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> d--h----- C:\Documents and Settings\Administrator\Risorse di stampa
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> d--h----- C:\Documents and Settings\Administrator\Risorse di rete
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> d-------- C:\Documents and Settings\Administrator\Preferiti
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> d--h----- C:\Documents and Settings\Administrator\Modelli
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> dr------- C:\Documents and Settings\Administrator\Menu Avvio
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> d--h----- C:\Documents and Settings\Administrator\Impostazioni locali
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> d-------- C:\Documents and Settings\Administrator\Documenti
2008-08-11 19:49 . 2008-02-27 15:09 <DIR> dr-h----- C:\Documents and Settings\Administrator\Dati applicazioni
2008-08-11 19:49 . 2008-08-11 19:49 <DIR> d-------- C:\Documents and Settings\Administrator
2008-08-06 23:48 . 2008-08-06 23:48 <DIR> d--hs---- C:\FOUND.010
2008-08-06 12:36 . 2008-08-06 12:36 <DIR> d--hs---- C:\FOUND.009
2008-07-31 22:09 . 2008-07-31 22:09 268 --ah----- C:\sqmdata04.sqm
2008-07-31 22:09 . 2008-07-31 22:09 244 --ah----- C:\sqmnoopt04.sqm

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.

((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="C:\Programmi\MSN Messenger\msnmsgr.exe" [2007-01-19 12:54 5674352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DU Meter"="C:\Programmi\DU Meter\DUMeter.exe" [2005-02-01 19:28 1469952]
"NeroCheck"="C:\WINDOWS\System32\\NeroCheck.exe" [2001-07-09 11:50 155648]
"VIRIT LITE MONITOR"="C:\VEXPLITE\MONLITE.EXE" [2008-08-27 13:02 245760]
"SoundMan"="SOUNDMAN.EXE" [2004-06-18 09:31 67584 C:\WINDOWS\SOUNDMAN.EXE]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2001-08-31 11:00 13312]

R0 atiide;atiide;C:\WINDOWS\System32\DRIVERS\atiide.sys [2004-04-14 10:52]
R0 VIRAGTLT;VIRAGTLT;C:\WINDOWS\System32\drivers\VIRAGTLT.SYS [2008-03-17 19:23]
R2 viritsvclite;Virit eXplorer Lite;C:\VEXPLITE\viritsvc.exe [2008-08-27 13:02]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2008-08-17 15:01]
S3 IPN2220;acer IPN2220 Wireless LAN Card Driver;C:\WINDOWS\System32\DRIVERS\i2220ntx.sys [2004-08-16 11:06]
S3 PRODIGY;PRODIGY;C:\WINDOWS\System32\Drivers\PRODIGY.SYS [2006-08-29 16:56]
S3 SNP2STD;USB2.0 PC Camera (SNP2STD);C:\WINDOWS\System32\DRIVERS\snp2sxp.sys [2007-09-05 13:48]

*Newly Created Service* - MBAMSWISSARMY

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"C:\Programmi\File comuni\LightScribe\LSRunOnce.exe"
.
Contenuto della cartella 'Scheduled Tasks'

2008-08-27 C:\WINDOWS\Tasks\Verifica aggiornamenti per Windows Live Toolbar.job
- C:\Programmi\Windows Live Toolbar\MSNTBUP.EXE [2006-09-27 17:39]
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-27 22:54:34
Windows 5.1.2600 FAT NTAPI

scansione processi nascosti ...

scansione entrate autostart nascoste ...

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0

**************************************************************************
.
Ora fine scansione: 2008-08-27 22:54:53
ComboFix-quarantined-files.txt 2008-08-27 20:54:54
ComboFix2.txt 2008-08-27 20:52:46

Pre-Run: 21,111,177,216 byte disponibili
Post-Run: 21,102,018,560 byte disponibili

94
questo e ultimo di hijthis nuovo fatto alla fine
chiedo scusa per i casini che o fatto
comunque adesso sembra che funziona bene
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22.57.39, on 27/08/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\VEXPLITE\viritsvc.exe
C:\Programmi\DU Meter\DUMeter.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmi\Malwarebytes' Anti-Malware\mbam.exe
C:\WINDOWS\explorer.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O4 - HKLM\..\Run: [DU Meter] C:\Programmi\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [VIRIT LITE MONITOR] C:\VEXPLITE\MONLITE.EXE
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe
O23 - Service: Virit eXplorer Lite (viritsvclite) - TG Soft Sas www.tgsoft.it - C:\VEXPLITE\viritsvc.exe
O24 - Desktop Component 0: (no name) - http://cache.secondamano.it/mmo/8/388/280/8_-2085034440_hoved.jpg
O24 - Desktop Component 1: (no name) - http://www.bodyjewelleryshop.com/gallery/data/500/Image002-1.jpg

--
End of file - 2410 bytes




r16
Inviato: Thursday, August 28, 2008 12:19:36 AM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Non hai disattivato il Ripristino configurazione Sistema.
Disattiva il ripristino configurazione di sistema, http://guide.aiutamici.com/guide?C1=7&C2=68&ID=80121
SPEGNI IL PC.
AVVIA IL PC.
Riattiva il ripristino configurazione di sistema e, se tutto è a posto, creane uno nuovo.
Questa operazione,serve ad eliminare i virus che Virit ha trovato nella cartella C:\System Volume Information\_restore.
Poi ti ha messo in Quarantena anche il DoctorWeb (falso positivo)
Uno dei due (o Virit, o DoctorWeb) devi disistallarlo, perchè entrano in conflitto, e quello che ci rimette sei tu.
Malwarebytes' Anti-Malware lo puoi tenere, oltre a essere valido, non litiga con nessuno.
shapiro
Inviato: Thursday, August 28, 2008 8:57:07 AM

Rank: AiutAmico

Iscritto dal : 8/24/2008
Posts: 4,164
Commenta:
Uno dei due (o Virit, o DoctorWeb) devi disistallarlo, perchè entrano in conflitto, e quello che ci rimette sei tu.




no no dr web e' un'utilita' stand alone quindi non entra in conflitto con nessuno semmai io suggerirei a kocis98 di togliere virit e installare un antivirus un po' piu' ''impegnativo'' come avira o kaspersky ma ce ne sono anche altri altrettanto buoni


kocis98 posta un nuovo log di hijackthis
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.