Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

pc lento all avvio Opzioni
admg156
Inviato: Thursday, May 20, 2010 9:41:37 AM

Rank: Member

Iscritto dal : 3/7/2010
Posts: 12
vi posto il log speriamo che qualcuno mi possa qualche dritta

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9.17.46, on 20/05/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\AVG\AVG9\avgchsvx.exe
C:\Programmi\AVG\AVG9\avgrsx.exe
C:\Programmi\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\Programmi\MSI\Live Update 3\LMonitor.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Programmi\File comuni\Java\Java Update\jusched.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\S3trayp.exe
C:\Programmi\Windows Live\Messenger\msnmsgr.exe
C:\Programmi\OpenOffice.org 3\program\soffice.exe
C:\Programmi\OpenOffice.org 3\program\soffice.bin
C:\Programmi\AVG\AVG9\avgwdsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\AVG\AVG9\avgemc.exe
C:\Programmi\AVG\AVG9\avgnsx.exe
C:\Programmi\AVG\AVG9\avgcsrvx.exe
C:\Documents and Settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Programmi\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Programmi\Outlook Express\msimn.exe
C:\Programmi\Messenger\msmsgs.exe
C:\Programmi\Trend Micro\HiJackThis\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Programmi\AVG\AVG9\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [LiveMonitor] C:\Programmi\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Programmi\File comuni\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\File comuni\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Programmi\OpenOffice.org 3\program\quickstart.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Programmi\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Programmi\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Programmi\AVG\AVG9\avgwdsvc.exe

--
End of file - 4851 bytes
Sponsor
Inviato: Thursday, May 20, 2010 9:41:37 AM

 
paolopa
Inviato: Thursday, May 20, 2010 10:13:04 AM

Rank: AiutAmico

Iscritto dal : 10/14/2008
Posts: 2,777
il log non presenta infezioni evidenti,ma potrebbe non significare nulla,poi c è questa voce che indica che il tuo antivirus ha qualcosa che non va:
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
ti consiglio di fare anzitutto una scansione con mbam:
Scarica ed installa MalwareBytes:
clicca qui per il download : http://www.aiutamici.com/software?id=80346
Prima di fare la scansione AGGIORNALO. (è molto importante)
Esegui una scansione completa del sistema.
se trova infezioni posta il log che ti rilascera'.
poi vediamo che si puo fare per l antivirus.
admg156
Inviato: Thursday, May 20, 2010 10:32:00 AM

Rank: Member

Iscritto dal : 3/7/2010
Posts: 12
ok grazie ora provvederò
admg156
Inviato: Thursday, May 20, 2010 2:11:33 PM

Rank: Member

Iscritto dal : 3/7/2010
Posts: 12
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Versione database: 4116

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

20/05/2010 14.06.42
mbam-log-2010-05-20 (14-06-42).txt

Tipo di scansione: Scansione completa (C:\|)
Elementi esaminati: 80684
Tempo trascorso: 2 ore, 20 minuti, 1 secondi

Processi infetti in memoria: 0
Moduli di memoria infetti: 0
Chiavi di registro infette: 0
Valori di registro infetti: 0
Voci infette nei dati di registro: 0
Cartelle infette: 0
File infetti: 0

Processi infetti in memoria:
(Non sono stati rilevati elementi nocivi)

Moduli di memoria infetti:
(Non sono stati rilevati elementi nocivi)

Chiavi di registro infette:
(Non sono stati rilevati elementi nocivi)

Valori di registro infetti:
(Non sono stati rilevati elementi nocivi)

Voci infette nei dati di registro:
(Non sono stati rilevati elementi nocivi)

Cartelle infette:
(Non sono stati rilevati elementi nocivi)

File infetti:
(Non sono stati rilevati elementi nocivi)
fdaccc
Inviato: Thursday, May 20, 2010 2:23:49 PM

Rank: AiutAmico

Iscritto dal : 12/12/2009
Posts: 2,114
Non ci sono virus.
Il rallentamento all'avvio è senza dubbio provocato dalla marea di programmi che hai in esecuzione automatica:
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [LiveMonitor] C:\Programmi\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Programmi\File comuni\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\File comuni\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.2.lnk = C:\Programmi\OpenOffice.org 3\program\quickstart.exe


Io ne ho giusto un paio:
Antivirus + Firewall, stampante, ctfmon e basta :)
paolopa
Inviato: Thursday, May 20, 2010 2:38:50 PM

Rank: AiutAmico

Iscritto dal : 10/14/2008
Posts: 2,777
il log di malwarebytes non ha rilevato nulla,meglio cosi.potrebbe anche essere quel file missing di avg a creare problemi, visto che tanto dovresti provare a disinstallare e reinstallare avg per vedere se sparisce,perchè non provi a cambiare antivirus?un utente in questa discussione ha risolto
http://forum.aiutamici.com/yaf_postst69616_continui-rallentamenti.aspx
r16
Inviato: Thursday, May 20, 2010 11:59:40 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Ciao.
Prima di disistallare AVG, prova a fare questa scansione:
Scarica Combofix

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Salvalo sul desktop.

Importante: Disabilita il tuo antivirus e chiudi TUTTI i programmi aperti,(Firewall compreso) e dopo aver scaricato COMBOFIX, chiudi la connessione.

Doppio click su combofix.exe (comparirà una videata.)

E' probabile che ti siano inviati messaggi dall'antivirus,(o dallo stesso Combofix) tu ignorali.

Se ti verrà chiesto se vuoi Installare LA CONSOLE DI RIPRISTINO DI EMERGENZA, clicca NO.

Durante l'operazione di scansione è importante non usare il PC (neanche il mouse) e attendere pazientemente la fine delle operazioni.
Al termine, verrà creato un file log sul Desktop, chiamato C:\ComboFix.txt. Postalo qui.
admg156
Inviato: Friday, May 21, 2010 1:33:39 PM

Rank: Member

Iscritto dal : 3/7/2010
Posts: 12
ComboFix 10-05-20.A0 - alessio 21/05/2010 12.38.52.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.1982.1439 [GMT 2:00]
Eseguito da: c:\documents and settings\alessio.ALESSIO-6FC89EE\Documenti\Downloads\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

ATTENZIONE - QUESTO PC NON HA LA CONSOLE DI RIPRISTINO DI EMERGENZA INSTALLATA !!
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\programmi\Automated Content Enhancer
c:\programmi\Automated Content Enhancer\4.1.0.5050\ACECommon.dll
c:\programmi\Automated Content Enhancer\4.1.0.5050\ACEIEAddOn.dll
c:\programmi\Automated Content Enhancer\4.1.0.5050\ACEIEAddOnSub.dll
c:\programmi\Automated Content Enhancer\4.1.0.5050\ACEIEAddOnSubL.dll
c:\programmi\Automated Content Enhancer\4.1.0.5050\acepx.exe
c:\programmi\Automated Content Enhancer\4.1.0.5050\Data\config.md
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\chrome.manifest
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\chrome\ACEAddOn.jar
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\chrome\content\ACEAddOn.js
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\chrome\content\ACEAddOn.xul
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\components\ACEFFAddOn.dll
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\components\ACEFFAddOn.xpt
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\components\ACEFFHelperComponent.js
c:\programmi\Automated Content Enhancer\4.1.0.5050\FF\install.rdf
c:\programmi\Automated Content Enhancer\4.1.0.5050\unins000.dat
c:\programmi\Automated Content Enhancer\4.1.0.5050\unins000.exe
c:\programmi\Customized Platform Advancer
c:\programmi\Customized Platform Advancer\3.1.0.1540\CPACommon.dll
c:\programmi\Customized Platform Advancer\3.1.0.1540\CPAHelper.exe
c:\programmi\Customized Platform Advancer\3.1.0.1540\CPAIEAddOn.dll
c:\programmi\Customized Platform Advancer\3.1.0.1540\CPAIEAddOnSub.dll
c:\programmi\Customized Platform Advancer\3.1.0.1540\Data\config.md
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\chrome.manifest
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\chrome\content\CPAAddOn.js
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\chrome\content\CPAAddOn.xul
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\chrome\CPAAddOn.jar
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\components\CPAFFAddOn.dll
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\components\CPAFFAddOn.xpt
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\components\CPAFFHelperComponent.js
c:\programmi\Customized Platform Advancer\3.1.0.1540\FF\install.rdf
c:\programmi\Customized Platform Advancer\3.1.0.1540\unins000.dat
c:\programmi\Customized Platform Advancer\3.1.0.1540\unins000.exe
c:\programmi\Seekapp
c:\programmi\Web Search Operator
c:\programmi\Web Search Operator\3.1.0.1800\Data\config.md
c:\programmi\Web Search Operator\3.1.0.1800\FF\chrome.manifest
c:\programmi\Web Search Operator\3.1.0.1800\FF\chrome\content\WSOAddOn.js
c:\programmi\Web Search Operator\3.1.0.1800\FF\chrome\content\WSOAddOn.xul
c:\programmi\Web Search Operator\3.1.0.1800\FF\chrome\WSOAddOn.jar
c:\programmi\Web Search Operator\3.1.0.1800\FF\components\WSOFFAddOn.dll
c:\programmi\Web Search Operator\3.1.0.1800\FF\components\WSOFFAddOn.xpt
c:\programmi\Web Search Operator\3.1.0.1800\FF\components\WSOFFHelperComponent.js
c:\programmi\Web Search Operator\3.1.0.1800\FF\install.rdf
c:\programmi\Web Search Operator\3.1.0.1800\unins000.dat
c:\programmi\Web Search Operator\3.1.0.1800\unins000.exe
c:\programmi\Web Search Operator\3.1.0.1800\WSO.dll
c:\programmi\Web Search Operator\3.1.0.1800\WSOCommon.dll
c:\programmi\Web Search Operator\3.1.0.1800\wsopx.exe

.
((((((((((((((((((((((((( Files Creati Da 2010-04-21 al 2010-05-21 )))))))))))))))))))))))))))))))))))
.

2010-05-19 11:41 . 2010-05-19 11:41 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\Malwarebytes
2010-05-19 11:41 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-05-19 11:41 . 2010-05-19 11:41 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\Malwarebytes
2010-05-19 11:41 . 2010-05-19 11:41 -------- d-----w- c:\programmi\Malwarebytes' Anti-Malware
2010-05-19 11:41 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-05-19 11:40 . 2010-05-19 11:40 388096 ----a-r- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-05-19 11:40 . 2010-05-19 11:40 -------- d-----w- c:\programmi\Trend Micro
2010-05-17 06:49 . 2010-05-17 06:49 -------- d-----w- c:\programmi\ATI Technologies
2010-05-17 06:49 . 2010-05-17 06:49 -------- d-----w- c:\programmi\ATI
2010-05-17 06:47 . 2010-05-17 06:47 -------- d-----w- C:\ATI
2010-05-15 10:17 . 2010-05-15 10:17 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\BVRP Software
2010-05-15 10:14 . 2008-04-13 18:45 26112 -c--a-w- c:\windows\system32\dllcache\usbser.sys
2010-05-15 10:14 . 2008-04-13 18:45 26112 ----a-w- c:\windows\system32\drivers\usbser.sys
2010-05-15 10:12 . 2010-05-15 10:20 25600 ----a-w- c:\windows\system32\drivers\usbsermptxp.sys
2010-05-15 10:12 . 2010-05-15 10:20 25600 ----a-w- c:\documents and settings\alessio.ALESSIO-6FC89EE\usbsermptxp.sys
2010-05-15 10:12 . 2010-05-15 10:20 22768 ----a-w- c:\documents and settings\alessio.ALESSIO-6FC89EE\usbsermpt.sys
2010-05-15 10:10 . 2010-05-15 10:24 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\BVRP Software
2010-05-12 07:04 . 2008-04-13 18:45 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2010-05-12 07:04 . 2008-04-13 18:45 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2010-05-12 07:04 . 2001-08-30 21:07 5632 ----a-w- c:\windows\system32\ptpusb.dll
2010-05-12 07:04 . 2008-04-14 02:13 159232 ----a-w- c:\windows\system32\ptpusd.dll
2010-05-03 12:07 . 2010-05-03 12:07 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-05-03 05:46 . 2010-05-03 05:46 -------- d-----w- c:\windows\system32\wbem\Repository
2010-04-28 19:26 . 2010-04-28 19:26 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\dvdcss
2010-04-28 19:25 . 2010-04-28 20:03 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\vlc
2010-04-25 09:15 . 2009-08-13 15:15 512000 -c----w- c:\windows\system32\dllcache\jscript.dll
2010-04-25 07:40 . 2010-04-25 07:40 0 ----a-w- c:\windows\nsreg.dat
2010-04-25 07:40 . 2010-04-25 07:40 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Mozilla
2010-04-24 12:11 . 2008-07-06 12:06 89088 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\filterpipelineprintproc.dll
2010-04-24 12:11 . 2008-07-06 12:06 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2010-04-24 12:11 . 2008-07-06 12:06 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2010-04-24 12:11 . 2008-07-06 12:06 575488 ------w- c:\windows\system32\xpsshhdr.dll
2010-04-24 12:11 . 2008-07-06 12:06 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2010-04-24 12:11 . 2008-07-06 12:06 1676288 ------w- c:\windows\system32\xpssvcs.dll
2010-04-24 12:11 . 2008-07-06 12:06 117760 ------w- c:\windows\system32\prntvpt.dll
2010-04-24 12:11 . 2008-07-06 10:50 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2010-04-24 12:11 . 2008-07-06 10:50 597504 ------w- c:\windows\system32\Spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2010-04-24 12:11 . 2010-04-24 12:11 -------- d-----w- C:\4bb011abe0daf9330dc0a158
2010-04-24 12:08 . 2010-04-24 12:08 -------- d-----w- c:\programmi\MSXML 6.0
2010-04-24 11:07 . 2009-08-06 17:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-04-24 11:07 . 2009-08-06 17:23 215920 ----a-w- c:\windows\system32\muweb.dll
2010-04-24 10:43 . 2010-04-24 10:43 -------- d-----r- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\Brother
2010-04-24 10:33 . 2008-04-13 18:46 10880 ----a-w- c:\windows\system32\drivers\ndisip.sys
2010-04-24 10:33 . 2008-04-13 18:39 5504 ----a-w- c:\windows\system32\drivers\mstee.sys
2010-04-24 10:33 . 2008-04-13 18:46 15232 ----a-w- c:\windows\system32\drivers\streamip.sys
2010-04-24 10:33 . 2008-04-13 18:46 11136 ----a-w- c:\windows\system32\drivers\slip.sys
2010-04-24 10:33 . 2008-04-13 18:46 19200 ----a-w- c:\windows\system32\drivers\wstcodec.sys
2010-04-24 10:33 . 2008-04-13 18:46 85248 ----a-w- c:\windows\system32\drivers\nabtsfec.sys
2010-04-24 10:33 . 2008-04-13 18:46 17024 ----a-w- c:\windows\system32\drivers\ccdecode.sys
2010-04-24 10:33 . 2008-04-14 02:13 54784 ----a-w- c:\windows\system32\vfwwdm32.dll
2010-04-24 10:24 . 2007-02-01 11:19 1520640 ----a-w- c:\windows\system32\BrWia07a.dll
2010-04-24 10:24 . 2007-01-26 12:06 45568 ----a-w- c:\windows\system32\BrUsi07a.dll
2010-04-24 10:24 . 2004-10-15 10:50 15295 ----a-w- c:\windows\system32\drivers\BrScnUsb.sys
2010-04-24 10:15 . 2010-04-24 10:15 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Adobe
2010-04-24 07:27 . 2010-04-24 07:27 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\Driver Whiz
2010-04-24 06:45 . 2010-04-24 06:45 242696 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avgtdix.sys
2010-04-24 06:44 . 2010-04-24 06:44 1689952 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avgupd.dll
2010-04-23 18:05 . 2010-05-21 10:18 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Tracing
2010-04-23 16:23 . 2004-08-19 13:23 701440 ------w- c:\windows\system32\drivers\ati2mtag.sys
2010-04-23 15:38 . 2010-02-24 13:11 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-04-23 15:36 . 2008-04-13 18:45 2944 ----a-w- c:\windows\system32\drivers\drmkaud.sys
2010-04-23 15:36 . 2008-04-13 18:39 4992 ----a-w- c:\windows\system32\drivers\mspqm.sys
2010-04-23 15:36 . 2008-04-13 19:17 83072 ----a-w- c:\windows\system32\drivers\wdmaud.sys
2010-04-23 15:36 . 2008-04-13 18:45 172416 ----a-w- c:\windows\system32\drivers\kmixer.sys
2010-04-23 15:36 . 2008-04-13 19:15 60800 ----a-w- c:\windows\system32\drivers\sysaudio.sys
2010-04-23 15:36 . 2008-04-13 18:39 5376 ----a-w- c:\windows\system32\drivers\mspclock.sys
2010-04-23 15:36 . 2008-04-13 18:39 7552 ----a-w- c:\windows\system32\drivers\mskssrv.sys
2010-04-23 15:36 . 2008-04-13 18:45 52864 ----a-w- c:\windows\system32\drivers\dmusic.sys
2010-04-23 15:36 . 2008-04-13 18:45 56576 ----a-w- c:\windows\system32\drivers\swmidi.sys
2010-04-23 15:36 . 2008-04-13 16:39 142592 ----a-w- c:\windows\system32\drivers\aec.sys
2010-04-23 15:36 . 2008-04-13 18:45 6272 ----a-w- c:\windows\system32\drivers\splitter.sys
2010-04-23 15:36 . 2001-08-17 21:59 3072 ----a-w- c:\windows\system32\drivers\audstub.sys
2010-04-23 15:36 . 2008-04-13 18:47 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-04-23 15:35 . 2008-04-14 02:13 4096 ----a-w- c:\windows\system32\ksuser.dll
2010-04-23 15:35 . 2008-04-13 19:19 146048 ----a-w- c:\windows\system32\drivers\portcls.sys
2010-04-23 15:35 . 2008-04-13 18:45 60160 ----a-w- c:\windows\system32\drivers\drmk.sys
2010-04-23 15:35 . 2008-04-13 18:45 60032 ----a-w- c:\windows\system32\drivers\usbaudio.sys
2010-04-23 15:34 . 2008-04-14 01:49 58368 ----a-w- c:\windows\system32\drivers\redbook.sys
2010-04-23 15:34 . 2001-08-17 21:46 6400 ----a-w- c:\windows\system32\drivers\enum1394.sys
2010-04-23 15:34 . 2001-08-17 20:13 27165 ----a-w- c:\windows\system32\drivers\fetnd5.sys
2010-04-23 15:33 . 2008-04-13 18:36 44672 ----a-w- c:\windows\system32\drivers\uagp35.sys
2010-04-23 15:33 . 2008-04-14 02:13 76800 ----a-w- c:\windows\system32\usbui.dll
2010-04-23 15:30 . 2007-10-29 12:00 85532 -c--a-w- c:\windows\system32\dllcache\dgsetup.dll
2010-04-23 15:29 . 2010-04-23 13:42 -------- d-----w- c:\documents and settings\All Users.WINDOWS
2010-04-23 15:29 . 2010-04-23 13:44 -------- d--h--w- c:\documents and settings\Default User.WINDOWS
2010-04-23 15:28 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-04-23 15:28 . 2008-04-21 21:14 219136 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-04-23 15:27 . 2008-06-14 17:32 272768 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-04-23 15:27 . 2008-06-14 17:32 272768 ------w- c:\windows\system32\drivers\bthport.sys
2010-04-23 15:27 . 2008-08-14 10:04 138496 -c----w- c:\windows\system32\dllcache\afd.sys
2010-04-23 15:27 . 2009-12-31 16:50 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2010-04-23 15:26 . 2009-10-15 16:29 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-04-23 15:26 . 2009-10-15 16:29 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-04-23 15:25 . 2010-05-21 10:27 1 ----a-w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-04-23 15:25 . 2010-04-23 15:25 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\OpenOffice.org
2010-04-23 15:23 . 2010-04-23 15:23 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Identities
2010-04-23 15:21 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-04-23 15:21 . 2010-01-29 14:59 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2010-04-23 15:21 . 2010-01-29 14:59 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2010-04-23 15:21 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-04-23 15:17 . 2010-04-29 05:22 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Temp
2010-04-23 15:17 . 2010-04-23 15:19 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google
2010-04-23 15:16 . 2010-04-23 15:16 -------- d-s---w- c:\documents and settings\alessio.ALESSIO-6FC89EE\UserData
2010-04-23 15:15 . 2010-04-23 15:15 -------- d-----w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Scansoft
2010-04-23 15:08 . 2010-04-23 15:08 333192 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avgldx86.sys
2010-04-23 15:08 . 2010-04-23 15:08 28424 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avgmfx86.sys
2010-04-23 15:07 . 2010-04-23 15:07 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2010-04-23 15:03 . 2010-04-24 15:17 19080 ----a-w- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\GDIPFONTCACHEV1.DAT
2010-04-23 15:03 . 2010-04-23 14:02 800536 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avginet.dll
2010-04-23 15:03 . 2010-04-23 14:02 613656 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avgiproxy.exe
2010-04-23 15:03 . 2010-04-23 14:02 1007896 ----a-w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\avg9\update\backup\avgupd.exe
2010-04-23 14:44 . 2010-04-23 14:45 -------- d-----w- c:\programmi\open office
2010-04-23 14:33 . 2010-04-24 10:37 50 ----a-w- c:\windows\system32\bridf07a.dat
2010-04-23 14:32 . 2007-01-26 14:19 56832 ----a-w- c:\windows\system32\brinsstr.dll
2010-04-23 14:32 . 2007-01-26 13:06 34816 ------w- c:\windows\system32\BrWiaNCp.dll
2010-04-23 14:32 . 2007-02-06 17:50 61952 ------w- c:\windows\system32\BrNetSti.dll
2010-04-23 14:32 . 2007-01-18 11:51 163840 ------w- c:\windows\system32\NSSearch.dll
2010-04-23 14:32 . 2006-12-26 17:39 37376 ------w- c:\windows\system32\Brnsplg.dll
2010-04-23 14:32 . 2006-11-20 18:48 9728 ------w- c:\windows\system32\BrSti07a.dll
2010-04-23 14:32 . 2002-11-26 11:43 106496 ------w- c:\windows\system32\BrMuSNMP.dll
2010-04-23 14:32 . 2007-02-15 11:54 131072 ------w- c:\windows\brunin03.dll
2010-04-23 14:29 . 2010-04-23 14:29 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\InstallShield
2010-04-23 14:27 . 2010-04-23 14:27 -------- d-----w- c:\documents and settings\All Users.WINDOWS\Dati applicazioni\Brother
2010-04-23 14:19 . 2004-04-15 02:57 42496 ----a-r- c:\windows\system32\drivers\fetnd5b.sys
2010-04-23 14:19 . 2007-04-04 05:55 18432 ----a-r- c:\windows\system32\RtkCoInst.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-17 10:12 . 2008-07-31 09:57 -------- d--h--w- c:\programmi\InstallShield Installation Information
2010-05-15 17:44 . 2009-04-03 11:12 -------- d-----w- c:\programmi\Windows Live SkyDrive
2010-05-15 10:21 . 2009-02-17 10:24 -------- d-----w- c:\programmi\Motorola Phone Tools
2010-05-15 10:16 . 2009-02-17 10:26 -------- d-----w- c:\programmi\Avanquest update
2010-04-25 09:36 . 2007-10-29 12:00 79292 ----a-w- c:\windows\system32\perfc010.dat
2010-04-25 09:36 . 2007-10-29 12:00 478808 ----a-w- c:\windows\system32\perfh010.dat
2010-04-24 13:46 . 2010-04-23 13:43 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-04-24 10:33 . 2008-12-21 08:45 -------- d-----w- c:\programmi\File comuni\LogiShrd
2010-04-24 10:19 . 2009-03-05 11:59 -------- d-----w- c:\programmi\File comuni\ScanSoft Shared
2010-04-23 14:48 . 2010-03-20 17:14 -------- d-----w- c:\programmi\JRE
2010-04-23 14:48 . 2010-03-20 17:14 -------- d-----w- c:\programmi\OpenOffice.org 3
2010-04-23 14:42 . 2008-07-31 09:40 -------- d-----w- c:\programmi\Brother
2010-04-23 14:16 . 2008-07-31 09:57 -------- d-----w- c:\programmi\Realtek
2010-04-13 19:49 . 2010-03-20 17:16 1 ----a-w- c:\documents and settings\alessio\Dati applicazioni\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-04-11 12:54 . 2010-03-18 00:25 17720 ----a-w- c:\documents and settings\alessio\Impostazioni locali\Dati applicazioni\GDIPFONTCACHEV1.DAT
2010-04-07 06:50 . 2010-04-04 17:33 -------- d-----w- c:\documents and settings\alessio\Dati applicazioni\vlc
2010-04-04 18:36 . 2010-04-04 17:23 -------- d-----w- c:\documents and settings\alessio\Dati applicazioni\U3
2010-04-03 11:40 . 2010-03-21 07:57 -------- d-----w- c:\documents and settings\alessio\Dati applicazioni\Skype
2010-04-03 10:44 . 2010-03-21 08:03 -------- d-----w- c:\documents and settings\alessio\Dati applicazioni\skypePM
2010-04-02 17:09 . 2008-12-05 07:15 -------- d-----w- c:\programmi\CCleaner
2010-04-01 15:16 . 2010-04-01 15:09 25600 ----a-w- c:\documents and settings\alessio\usbsermptxp.sys
2010-04-01 15:16 . 2010-04-01 15:09 22768 ----a-w- c:\documents and settings\alessio\usbsermpt.sys
2010-03-26 06:12 . 2010-03-26 06:12 -------- d-----r- c:\documents and settings\alessio\Dati applicazioni\Brother
2010-03-21 16:53 . 2010-03-21 16:53 503808 ----a-w- c:\documents and settings\alessio\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-103e0c1c-n\msvcp71.dll
2010-03-21 16:53 . 2010-03-21 16:53 499712 ----a-w- c:\documents and settings\alessio\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-103e0c1c-n\jmc.dll
2010-03-21 16:53 . 2010-03-21 16:53 348160 ----a-w- c:\documents and settings\alessio\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-103e0c1c-n\msvcr71.dll
2010-03-21 16:53 . 2010-03-21 16:53 61440 ----a-w- c:\documents and settings\alessio\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-32e90866-n\decora-sse.dll
2010-03-21 16:53 . 2010-03-21 16:53 12800 ----a-w- c:\documents and settings\alessio\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-32e90866-n\decora-d3d.dll
2010-03-09 11:09 . 2007-10-29 12:00 430080 ----a-w- c:\windows\system32\vbscript.dll
2010-02-26 05:41 . 2007-10-29 12:00 669696 ----a-w- c:\windows\system32\wininet.dll
2010-02-26 05:41 . 2007-10-29 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-02-24 13:11 . 2007-10-29 12:00 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2009-07-25 19:40 . 2009-07-25 19:40 3725779 ----a-w- c:\programmi\File comuni\alq.exe
2009-08-20 15:36 . 2009-08-20 15:36 97376 ----a-w- c:\programmi\mozilla firefox\components\FFPDFConverter.dll
.

((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe" [2010-04-23 136176]
"msnmsgr"="c:\programmi\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LiveMonitor"="c:\programmi\MSI\Live Update 3\LMonitor.exe" [2007-01-17 496640]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"SSBkgdUpdate"="c:\programmi\File comuni\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"SunJavaUpdateSched"="c:\programmi\File comuni\Java\Java Update\jusched.exe" [2010-02-18 248040]
"Adobe Reader Speed Launcher"="c:\programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-04-04 36272]
"Adobe ARM"="c:\programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
"VTTimer"="VTTimer.exe" [2006-09-21 53248]
"S3Trayp"="S3trayp.exe" [2007-02-05 176128]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\alessio\Menu Avvio\Programmi\Esecuzione automatica\
OpenOffice.org 3.2.lnk - c:\programmi\OpenOffice.org 3\program\quickstart.exe [2009-12-15 384000]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-04-23 15:07 12464 ----a-w- c:\windows\system32\avgrsstx.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\AVG\\AVG9\\avgupd.exe"=
"c:\\Programmi\\AVG\\AVG9\\avgnsx.exe"=
"c:\\Programmi\\AVG\\AVG9\\avgemc.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [23/04/2010 16.02.57 216200]
R1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\drivers\avgtdix.sys [23/04/2010 16.03.03 242896]
R2 avg9emc;AVG Free E-mail Scanner;c:\programmi\AVG\AVG9\avgemc.exe [23/04/2010 17.06.55 916760]
R2 avg9wd;AVG Free WatchDog;c:\programmi\AVG\AVG9\avgwdsvc.exe [23/04/2010 17.07.49 308064]
.
Contenuto della cartella 'Scheduled Tasks'

2010-05-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-492894223-682003330-1003Core.job
- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2010-04-23 15:17]

2010-05-21 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-492894223-682003330-1003UA.job
- c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2010-04-23 15:17]
.
.
------- Scansione supplementare -------
.
FF - ProfilePath - c:\documents and settings\alessio.ALESSIO-6FC89EE\Dati applicazioni\Mozilla\Firefox\Profiles\7hmr28i8.default\
FF - plugin: c:\documents and settings\alessio.ALESSIO-6FC89EE\Impostazioni locali\Dati applicazioni\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX POLICIES ----
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-05-21 12:45
Windows 5.1.2600 Service Pack 3 NTFS

scansione processi nascosti ...

scansione entrate autostart nascoste ...

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0

**************************************************************************
.
Ora fine scansione: 2010-05-21 12:47:49
ComboFix-quarantined-files.txt 2010-05-21 10:47

Pre-Run: 9.474.777.088 byte disponibili
Post-Run: 9.468.149.760 byte disponibili

- - End Of File - - 242FB29AA26EE17D44636CA43141EE1A
fdaccc
Inviato: Friday, May 21, 2010 1:41:31 PM

Rank: AiutAmico

Iscritto dal : 12/12/2009
Posts: 2,114
Ma bravo, ti aveva detto di salvare combofix sul desktop, non nella cartella Downloads.
Fortuna che ( forse ) non ti deve fare eseguire script alcuno.
paolopa
Inviato: Friday, May 21, 2010 1:44:02 PM

Rank: AiutAmico

Iscritto dal : 10/14/2008
Posts: 2,777
meno male che c è r16.....
r16
Inviato: Friday, May 21, 2010 11:37:37 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Scarica TFC by OldTimer sul desktop
http://oldtimer.geekstogo.com/TFC.exe
chiudi tutti i programmi
avvia TFC, clicca su "star"
al termine della scansione ti chiederà il riavvio, dai ok.

Per eliminare i vari Tooll scaricati:
Scarica OTC by OldTimer sul desktop:
http://oldtimer.geekstogo.com/OTC.exe
doppio clic per eseguirlo
Clicca su CleanUp.
Ti chiederà di riavviare il pc.
Clicca sì.

Disistalla AVG così :
Cessane l'esecuzione dalla Tray Bar, (vicino all'orologio di Windows)
Vai in "Installazione Applicazioni" e "rimuovi" AVG.
Esegui questo Tool per eliminare eventuali "rimasugli":
http://download.avg.com/filedir/util/avg_arm_sup_____.dir/avgremover.exe

Fai una pulizia con CCleaner.(registro compreso)
Spegni il pc. (non riavviarlo, lo spegni)

Lo riaccendi.
Scarica Avira:
http://www.aiutamici.com/software?ID=10908
Fai una scansione completa.
Posta il log.
admg156
Inviato: Saturday, May 22, 2010 8:49:20 AM

Rank: Member

Iscritto dal : 3/7/2010
Posts: 12


Avira AntiVir Personal
Data del file di report: sabato 22 maggio 2010 08:42

Ricerca di 1265407 virus e programmi indesiderati.

Concesso in licenza a : Avira AntiVir Personal - FREE Antivirus
Numero di serie : 0000149996-ADJIE-0000001
Piattaforma : Windows XP
Versione di Windows : (Service Pack 3) [5.1.2600]
Modalità di avvio : Booting eseguito regolarmente
Nome utente : alessio
Nome computer : ALESSIO-6FC89EE

Informazioni sulla versione:
BUILD.DAT : 9.0.0.21 21699 Bytes 04/12/2009 14:20:00
AVSCAN.EXE : 9.0.3.10 466689 Bytes 13/10/2009 09:26:40
AVSCAN.DLL : 9.0.3.0 47873 Bytes 03/03/2009 09:14:29
LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 09:35:56
LUKERES.DLL : 9.0.2.0 12545 Bytes 03/03/2009 09:15:14
VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 05:35:52
VBASE001.VDF : 7.10.0.1 2048 Bytes 06/11/2009 05:35:56
VBASE002.VDF : 7.10.0.2 2048 Bytes 06/11/2009 05:35:58
VBASE003.VDF : 7.10.0.3 2048 Bytes 06/11/2009 05:36:02
VBASE004.VDF : 7.10.0.4 2048 Bytes 06/11/2009 05:36:04
VBASE005.VDF : 7.10.0.5 2048 Bytes 06/11/2009 05:36:08
VBASE006.VDF : 7.10.0.6 2048 Bytes 06/11/2009 05:36:12
VBASE007.VDF : 7.10.0.7 2048 Bytes 06/11/2009 05:36:16
VBASE008.VDF : 7.10.0.8 2048 Bytes 06/11/2009 05:36:18
VBASE009.VDF : 7.10.0.9 2048 Bytes 06/11/2009 05:36:22
VBASE010.VDF : 7.10.0.10 2048 Bytes 06/11/2009 05:36:30
VBASE011.VDF : 7.10.0.11 2048 Bytes 06/11/2009 05:36:34
VBASE012.VDF : 7.10.0.12 2048 Bytes 06/11/2009 05:36:38
VBASE013.VDF : 7.10.0.13 2048 Bytes 06/11/2009 05:36:40
VBASE014.VDF : 7.10.0.14 2048 Bytes 06/11/2009 05:36:44
VBASE015.VDF : 7.10.0.15 2048 Bytes 06/11/2009 05:36:46
VBASE016.VDF : 7.10.0.16 2048 Bytes 06/11/2009 05:36:48
VBASE017.VDF : 7.10.0.17 2048 Bytes 06/11/2009 05:36:50
VBASE018.VDF : 7.10.0.18 2048 Bytes 06/11/2009 05:36:54
VBASE019.VDF : 7.10.0.19 2048 Bytes 06/11/2009 05:36:56
VBASE020.VDF : 7.10.0.20 2048 Bytes 06/11/2009 05:36:58
VBASE021.VDF : 7.10.0.21 2048 Bytes 06/11/2009 05:37:00
VBASE022.VDF : 7.10.0.22 2048 Bytes 06/11/2009 05:37:04
VBASE023.VDF : 7.10.0.23 2048 Bytes 06/11/2009 05:37:06
VBASE024.VDF : 7.10.0.24 2048 Bytes 06/11/2009 05:37:10
VBASE025.VDF : 7.10.0.25 2048 Bytes 06/11/2009 05:37:12
VBASE026.VDF : 7.10.0.26 2048 Bytes 06/11/2009 05:37:14
VBASE027.VDF : 7.10.0.27 2048 Bytes 06/11/2009 05:37:16
VBASE028.VDF : 7.10.0.28 2048 Bytes 06/11/2009 05:37:18
VBASE029.VDF : 7.10.0.29 2048 Bytes 06/11/2009 05:37:20
VBASE030.VDF : 7.10.0.30 2048 Bytes 06/11/2009 05:37:22
VBASE031.VDF : 7.10.0.33 2048 Bytes 06/11/2009 05:37:24
Motore : 8.2.1.59
AEVDF.DLL : 8.1.1.2 106867 Bytes 08/11/2009 05:38:52
AESCRIPT.DLL : 8.1.2.43 528764 Bytes 08/11/2009 05:38:48
AESCN.DLL : 8.1.2.5 127346 Bytes 08/11/2009 05:38:46
AESBX.DLL : 8.1.1.1 246132 Bytes 08/11/2009 05:38:44
AERDL.DLL : 8.1.3.2 479604 Bytes 08/11/2009 05:38:42
AEPACK.DLL : 8.2.0.3 422261 Bytes 08/11/2009 05:38:40
AEOFFICE.DLL : 8.1.0.38 196987 Bytes 08/11/2009 05:38:38
AEHEUR.DLL : 8.1.0.178 2093431 Bytes 08/11/2009 05:38:34
AEHELP.DLL : 8.1.7.0 237940 Bytes 08/11/2009 05:38:30
AEGEN.DLL : 8.1.1.71 364916 Bytes 08/11/2009 05:38:28
AEEMU.DLL : 8.1.1.0 393587 Bytes 08/11/2009 05:38:26
AECORE.DLL : 8.1.8.2 184694 Bytes 08/11/2009 05:38:24
AEBB.DLL : 8.1.0.3 53618 Bytes 08/11/2009 05:38:20
AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 06:48:02
AVPREF.DLL : 9.0.3.0 44289 Bytes 26/08/2009 13:14:06
AVREP.DLL : 8.0.0.3 155905 Bytes 20/01/2009 12:34:28
AVREG.DLL : 9.0.0.0 36609 Bytes 07/11/2008 13:25:10
AVARKT.DLL : 9.0.0.3 292609 Bytes 24/03/2009 13:05:45
AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 08:37:12
SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 13:03:49
SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 06:21:38
NETNT.DLL : 9.0.0.0 11521 Bytes 07/11/2008 13:41:28
RCIMAGE.DLL : 9.0.0.25 2438913 Bytes 17/06/2009 12:11:50
RCTEXT.DLL : 9.0.73.0 87809 Bytes 03/11/2009 06:16:42

Impostazioni di configurazione per la scansione attuale:
Nome del job................................: Breve scansione del sistema dopo l'installazione
File di configurazione......................: c:\programmi\avira\antivir desktop\setupprf.dat
Report......................................: basso
Azione primaria.............................: interattivo
Azione secondaria...........................: ignora
Scansione dei record master di avvio........: Attivo
Scansiona record di avvio...................: Attivo
Scansione dei programmi attivi..............: Attivo
Scansiona la registrazione..................: Attivo
Cerca Rootkits..............................: Non attivo
Controllo di integrità dei file di sistema..: Non attivo
Modalità di scansione file..................: Selezione intelligente dei file
Scansione degli archivi.....................: Attivo
Limita la profondità di ricorsione..........: 20
Archivio estensioni Smart...................: Attivo
Macro euristico.............................: Attivo
File euristico..............................: medio
Categorie irregolari delle minacce..........: +APPL,+GAME,+JOKE,+PCK,+PFS,+SPR,

Avvio della scansione: sabato 22 maggio 2010 08:42

La scansione dei processi in esecuzione verrà avviata:
Scansione processo 'avscan.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'notepad.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'avgnt.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'sched.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'avguard.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'msiexec.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'msnmsgr.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'S3Trayp.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'VTTimer.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'jusched.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'RTHDCPL.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'LMonitor.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'alg.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'wscntfy.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'explorer.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'spoolsv.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'svchost.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'lsass.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'services.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'winlogon.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'csrss.exe' - '1' modulo(i) scansionato(i)
Scansione processo 'smss.exe' - '1' modulo(i) scansionato(i)
28 processi scansionati con '28' Moduli

Avvio della scansione dei record master di avvio:
Record master di avvio dell'Hard Disk 0
[INFO] Nessun virus è stato trovato!
Record master di avvio dell'Hard Disk 1
[INFO] Nessun virus è stato trovato!
Record master di avvio dell'Hard Disk 2
[INFO] Nessun virus è stato trovato!

Avvio della scansione dei record di avvio:

Avvio della scansione dei file eseguibili (registro):
Il registro è stato scansionato ( 43 file ).



Fine della scansione: sabato 22 maggio 2010 08:42
Tempo impiegato: 00:08 Minuto(i)

La scansione è stata completamente eseguita.

0 Directory scansionate
71 I file sono stati scansionati
0 Rilevati virus e/o programmi indesiderati
0 I file sono stati classificati come sospetti
0 I file sono stati eliminati
0 I virus o i programmi indesiderati sono stati riparati
0 File spostati in quarantena
0 File rinominati
0 Impossibile scansionare i file
71 File non infetti
0 Archivi scansionati
0 Avvisi
0 Note
r16
Inviato: Saturday, May 22, 2010 11:33:07 PM
Rank: AiutAmico

Iscritto dal : 8/7/2007
Posts: 11,016
Tutto pulito.
Problemi?
admg156
Inviato: Sunday, May 23, 2010 6:24:27 PM

Rank: Member

Iscritto dal : 3/7/2010
Posts: 12
all avvio cmq è sempre lento ... cioè.. tra la schermata di check del sistema.. alla shcermata di windows .. passerà circa 2/3 min il carimento di windows è lento
fdaccc
Inviato: Sunday, May 23, 2010 6:28:40 PM

Rank: AiutAmico

Iscritto dal : 12/12/2009
Posts: 2,114
Hai una marea di programmi all'avvio, tieni solo antivirus firewall
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.