Rank: Newbie
Iscritto dal : 5/6/2013 Posts: 3
|
Ciao, il mio PC (pentium D 3 GZ - windows XP SP3) è diventato lentissimo. Posto il report prodotto da Combofix. Qualcuno può aiutarmi?
ComboFix 13-05-04.01 - Administrator 04/05/2013 19.00.58.1.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.2047.1572 [GMT 2:00] Eseguito da: c:\documents and settings\Administrator\Desktop\ComboFix.exe . . ((((((((((((((((((((((((((((((((((((( Altre eliminazioni ))))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\documents and settings\Administrator\Dati applicazioni\ACD Systems\ACDSee\ImageDB.ddf c:\documents and settings\Administrator\Impostazioni locali\Dati applicazioni\assembly\tmp c:\documents and settings\Administrator\menust.tmp c:\documents and settings\Administrator\WINDOWS c:\documents and settings\All Users\Dati applicazioni\TEMP c:\documents and settings\Daniele\menust.tmp c:\documents and settings\Daniele\WINDOWS c:\windows\IsUn0410.exe c:\windows\system32\Cache c:\windows\system32\Cache\1e6827c4ae483917.fb c:\windows\system32\Cache\26c630d098e22dd5.fb c:\windows\system32\Cache\272512937d9e61a4.fb c:\windows\system32\Cache\287204568329e189.fb c:\windows\system32\Cache\28bc8f716fd76a47.fb c:\windows\system32\Cache\2c53092c95605355.fb c:\windows\system32\Cache\31a0997e9a5b5eb3.fb c:\windows\system32\Cache\32c84fe32bb74d60.fb c:\windows\system32\Cache\3917078cb68ec657.fb c:\windows\system32\Cache\3ccd0a10dc58a837.fb c:\windows\system32\Cache\5664cf57a87a50bb.fb c:\windows\system32\Cache\590ba23ce359fd0c.fb c:\windows\system32\Cache\609080fd0496bcab.fb c:\windows\system32\Cache\610289e025a3ee9a.fb c:\windows\system32\Cache\651c5d3cdbfb8bd1.fb c:\windows\system32\Cache\6c59ac5e7e7a3ad0.fb c:\windows\system32\Cache\6d03dad1035885d3.fb c:\windows\system32\Cache\73e66093142b97c5.fb c:\windows\system32\Cache\7dd17a0b2c004b11.fb c:\windows\system32\Cache\8586a7cb64c5c19a.fb c:\windows\system32\Cache\95f567698be8a182.fb c:\windows\system32\Cache\a60bcafda48e9102.fb c:\windows\system32\Cache\a8556537add6dfc5.fb c:\windows\system32\Cache\ac745e0228622635.fb c:\windows\system32\Cache\ad10a52aff5e038d.fb c:\windows\system32\Cache\ae6c63683b703de2.fb c:\windows\system32\Cache\bee89115eb39996f.fb c:\windows\system32\Cache\c1fa887b03019701.fb c:\windows\system32\Cache\c4d28dca2e7648be.fb c:\windows\system32\Cache\d201ef9910cd39de.fb c:\windows\system32\Cache\d2e94710a5708128.fb c:\windows\system32\Cache\d79b9dfe81484ec4.fb c:\windows\system32\Cache\e0de16f883bea794.fb c:\windows\system32\Cache\f998975c9cc711ee.fb c:\windows\system32\ceapaza.dll c:\windows\system32\prsgrc.dll c:\windows\system32\scrrun.dll.tmp c:\windows\system32\SETB7.tmp c:\windows\system32\SETBB.tmp c:\windows\system32\SETC3.tmp c:\windows\system32\URTTemp c:\windows\system32\URTTemp\fusion.dll c:\windows\system32\URTTemp\mscoree.dll c:\windows\system32\URTTemp\mscoree.dll.local c:\windows\system32\URTTemp\mscorsn.dll c:\windows\system32\URTTemp\mscorwks.dll c:\windows\system32\URTTemp\msvcr71.dll c:\windows\system32\URTTemp\regtlib.exe c:\windows\unin0410.exe . . ((((((((((((((((((((((((( Files Creati Da 2013-04-04 al 2013-05-04 ))))))))))))))))))))))))))))))))))) . . 2013-05-03 17:50 . 2013-05-03 17:50 -------- d-----w- c:\programmi\Malwarebytes' Anti-Malware 2013-05-03 17:50 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-05-02 15:24 . 2010-05-26 09:41 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll 2013-05-02 15:24 . 2010-05-26 09:41 248672 ----a-w- c:\windows\system32\d3dx11_43.dll 2013-05-02 15:23 . 2010-05-26 09:41 470880 ----a-w- c:\windows\system32\d3dx10_43.dll 2013-05-02 15:23 . 2010-05-26 09:41 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll 2013-05-02 15:21 . 2013-05-02 15:21 -------- d-----w- c:\windows\Logs 2013-05-02 11:28 . 2008-04-07 03:38 22872 ----a-r- c:\windows\system32\AdobePDFUI.dll 2013-05-02 11:28 . 2008-04-07 03:38 45392 ----a-r- c:\windows\system32\AdobePDF.dll 2013-05-02 07:40 . 2012-06-02 13:18 214256 ----a-w- c:\windows\system32\muweb.dll 2013-04-30 12:22 . 2013-05-04 16:53 -------- d-----w- c:\windows\system32\CatRoot2 2013-04-30 11:01 . 2013-04-30 11:01 -------- d-----w- C:\RegBackup 2013-04-30 10:57 . 2008-04-14 01:13 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll 2013-04-30 10:57 . 2001-08-30 21:08 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll 2013-04-30 10:57 . 2008-04-14 01:13 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll 2013-04-30 10:57 . 2001-08-30 21:08 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe 2013-04-30 10:56 . 2001-08-30 21:08 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe 2013-04-30 10:56 . 2001-08-30 21:08 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe 2013-04-30 10:56 . 2001-08-17 18:11 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys 2013-04-30 10:56 . 2004-08-03 20:29 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys 2013-04-30 10:56 . 2004-08-03 20:29 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys 2013-04-30 10:56 . 2008-04-14 01:13 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll 2013-04-30 10:55 . 2008-04-13 17:36 8832 -c--a-w- c:\windows\system32\dllcache\wmiacpi.sys 2013-04-30 10:55 . 2004-08-03 20:31 154624 -c--a-w- c:\windows\system32\dllcache\wlluc48.sys 2013-04-30 10:55 . 2001-08-30 18:46 35402 -c--a-w- c:\windows\system32\dllcache\wlandrv2.sys 2013-04-30 10:53 . 2001-08-17 18:13 19016 -c--a-w- c:\windows\system32\dllcache\w926nd.sys 2013-04-30 10:53 . 2001-08-17 18:13 19528 -c--a-w- c:\windows\system32\dllcache\w840nd.sys 2013-04-30 10:53 . 2001-08-17 19:28 64605 -c--a-w- c:\windows\system32\dllcache\vvoice.sys 2013-04-30 10:53 . 2001-08-17 19:28 397502 -c--a-w- c:\windows\system32\dllcache\vpctcom.sys 2013-04-30 10:53 . 2001-08-17 19:28 604253 -c--a-w- c:\windows\system32\dllcache\vmodem.sys 2013-04-30 10:53 . 2001-08-17 18:14 249402 -c--a-w- c:\windows\system32\dllcache\vinwm.sys 2013-04-30 10:53 . 2001-08-17 19:49 24576 -c--a-w- c:\windows\system32\dllcache\viairda.sys 2013-04-30 10:53 . 2008-04-13 17:40 5376 -c--a-w- c:\windows\system32\dllcache\viaide.sys 2013-04-30 10:53 . 2001-08-17 19:28 687999 -c--a-w- c:\windows\system32\dllcache\usrwdxjs.sys 2013-04-30 10:53 . 2001-08-17 19:28 765884 -c--a-w- c:\windows\system32\dllcache\usrti.sys 2013-04-30 10:53 . 2001-08-17 19:28 113762 -c--a-w- c:\windows\system32\dllcache\usrpda.sys 2013-04-30 10:51 . 2001-08-30 21:08 216576 -c--a-w- c:\windows\system32\dllcache\um34scan.dll 2013-04-30 10:51 . 2001-08-17 19:52 36736 -c--a-w- c:\windows\system32\dllcache\ultra.sys 2013-04-30 10:51 . 2001-08-17 19:48 11520 -c--a-w- c:\windows\system32\dllcache\twotrack.sys 2013-04-30 10:51 . 2001-08-17 18:51 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys 2013-04-30 10:51 . 2001-08-30 21:08 525568 -c--a-w- c:\windows\system32\dllcache\tridxp.dll 2013-04-30 10:51 . 2001-08-17 18:51 159232 -c--a-w- c:\windows\system32\dllcache\tridkbm.sys 2013-04-30 10:51 . 2001-08-30 21:07 440576 -c--a-w- c:\windows\system32\dllcache\tridkb.dll 2013-04-30 10:51 . 2001-08-17 18:51 222336 -c--a-w- c:\windows\system32\dllcache\trid3dm.sys 2013-04-30 10:51 . 2001-08-30 21:07 315520 -c--a-w- c:\windows\system32\dllcache\trid3d.dll 2013-04-30 10:51 . 2001-08-17 18:12 34375 -c--a-w- c:\windows\system32\dllcache\tpro4.sys 2013-04-30 10:51 . 2001-08-30 21:07 43008 -c--a-w- c:\windows\system32\dllcache\tp4res.dll 2013-04-30 10:51 . 2008-04-14 01:14 82944 -c--a-w- c:\windows\system32\dllcache\tp4mon.exe 2013-04-30 10:51 . 2001-08-30 21:08 31744 -c--a-w- c:\windows\system32\dllcache\tp4.dll 2013-04-30 10:50 . 2001-08-30 18:10 4992 -c--a-w- c:\windows\system32\dllcache\toside.sys 2013-04-30 10:50 . 2001-08-17 20:02 230912 -c--a-w- c:\windows\system32\dllcache\tosdvd03.sys 2013-04-30 10:50 . 2001-08-17 20:01 241664 -c--a-w- c:\windows\system32\dllcache\tosdvd02.sys 2013-04-30 10:50 . 2001-08-17 18:10 28232 -c--a-w- c:\windows\system32\dllcache\tos4mo.sys 2013-04-30 10:50 . 2001-08-17 18:14 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys 2013-04-30 10:50 . 2001-08-17 18:51 138528 -c--a-w- c:\windows\system32\dllcache\tgiulnt5.sys 2013-04-30 10:50 . 2001-08-30 21:07 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll 2013-04-30 10:50 . 2008-04-13 17:40 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys 2013-04-30 10:50 . 2001-08-17 18:13 17129 -c--a-w- c:\windows\system32\dllcache\tdkcd31.sys 2013-04-30 10:50 . 2001-08-17 18:13 37961 -c--a-w- c:\windows\system32\dllcache\tdk100b.sys 2013-04-30 10:50 . 2001-08-17 19:49 30464 -c--a-w- c:\windows\system32\dllcache\tbatm155.sys 2013-04-30 10:50 . 2001-08-17 19:52 7040 -c--a-w- c:\windows\system32\dllcache\tandqic.sys 2013-04-30 10:48 . 2001-08-30 17:49 286816 -c--a-w- c:\windows\system32\dllcache\stlnata.sys 2013-04-30 10:47 . 2001-08-17 18:51 58368 -c--a-w- c:\windows\system32\dllcache\smiminib.sys 2013-04-30 10:46 . 2001-08-30 21:07 157696 -c--a-w- c:\windows\system32\dllcache\sisv256.dll 2013-04-30 10:46 . 2001-08-17 18:50 50432 -c--a-w- c:\windows\system32\dllcache\sisv.sys 2013-04-30 10:46 . 2004-08-03 20:31 32768 -c--a-w- c:\windows\system32\dllcache\sisnic.sys 2013-04-30 10:46 . 2001-08-30 21:08 238592 -c--a-w- c:\windows\system32\dllcache\sisgrv.dll 2013-04-30 10:46 . 2001-08-17 18:50 104064 -c--a-w- c:\windows\system32\dllcache\sisgrp.sys 2013-04-30 10:46 . 2001-08-30 21:07 150144 -c--a-w- c:\windows\system32\dllcache\sis6306v.dll 2013-04-30 10:46 . 2001-08-17 18:50 68608 -c--a-w- c:\windows\system32\dllcache\sis6306p.sys 2013-04-30 10:46 . 2001-08-30 21:07 252032 -c--a-w- c:\windows\system32\dllcache\sis300iv.dll 2013-04-30 10:46 . 2001-08-17 18:50 101760 -c--a-w- c:\windows\system32\dllcache\sis300ip.sys 2013-04-30 10:44 . 2001-08-30 20:23 23936 -c--a-w- c:\windows\system32\dllcache\sccmn50m.sys 2013-04-30 10:43 . 2004-08-03 20:31 20992 -c--a-w- c:\windows\system32\dllcache\rtl8139.sys 2013-04-30 10:43 . 2001-08-17 18:12 19017 -c--a-w- c:\windows\system32\dllcache\rtl8029.sys 2013-04-30 10:43 . 2001-08-17 18:19 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys 2013-04-30 10:43 . 2001-08-30 21:07 10752 -c--a-w- c:\windows\system32\dllcache\rsmgrstr.dll 2013-04-30 10:43 . 2001-08-17 18:19 3840 -c--a-w- c:\windows\system32\dllcache\rpfun.sys 2013-04-30 10:43 . 2008-04-14 00:50 79360 -c--a-w- c:\windows\system32\dllcache\rocket.sys 2013-04-30 10:43 . 2001-08-17 18:12 37563 -c--a-w- c:\windows\system32\dllcache\rlnet5.sys 2013-04-30 10:43 . 2001-08-30 21:07 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll 2013-04-30 10:43 . 2001-08-17 19:51 19584 -c--a-w- c:\windows\system32\dllcache\rasirda.sys 2013-04-30 10:43 . 2001-08-30 20:10 715338 -c--a-w- c:\windows\system32\dllcache\r2mdmkxx.sys 2013-04-30 10:43 . 2001-08-30 20:10 899754 -c--a-w- c:\windows\system32\dllcache\r2mdkxga.sys 2013-04-30 10:41 . 2001-08-17 19:53 17792 -c--a-w- c:\windows\system32\dllcache\ppa.sys 2013-04-30 10:40 . 2001-08-17 18:11 30282 -c--a-w- c:\windows\system32\dllcache\pcntn5hl.sys 2013-04-30 10:39 . 2001-08-30 19:50 44361 -c--a-w- c:\windows\system32\dllcache\otceth5.sys 2013-04-30 10:39 . 2001-08-17 18:12 27209 -c--a-w- c:\windows\system32\dllcache\otc06x5.sys 2013-04-30 10:39 . 2001-08-17 18:20 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys 2013-04-30 10:39 . 2008-04-13 17:46 61696 -c--a-w- c:\windows\system32\dllcache\ohci1394.sys 2013-04-30 10:39 . 2001-08-17 18:50 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys 2013-04-30 10:39 . 2001-08-30 21:07 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll 2013-04-30 10:39 . 2001-08-17 18:49 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys 2013-04-30 10:39 . 2001-08-30 19:30 9472 -c--a-w- c:\windows\system32\dllcache\ntapm.sys 2013-04-30 10:39 . 2001-08-17 19:53 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys 2013-04-30 10:39 . 2008-04-13 17:54 28672 -c--a-w- c:\windows\system32\dllcache\nscirda.sys 2013-04-30 10:39 . 2001-08-17 18:20 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys 2013-04-30 10:38 . 2001-08-17 18:20 126080 -c--a-w- c:\windows\system32\dllcache\nm5a2wdm.sys 2013-04-30 10:38 . 2001-08-17 18:12 32840 -c--a-w- c:\windows\system32\dllcache\ngrpci.sys 2013-04-30 10:38 . 2004-08-19 13:33 132695 -c--a-w- c:\windows\system32\dllcache\netwlan5.sys 2013-04-30 10:38 . 2001-08-30 19:20 66174 -c--a-w- c:\windows\system32\dllcache\netflx3.sys 2013-04-30 10:38 . 2001-08-17 18:50 39264 -c--a-w- c:\windows\system32\dllcache\neo20xx.sys 2013-04-30 10:38 . 2001-08-30 21:07 60480 -c--a-w- c:\windows\system32\dllcache\neo20xx.dll 2013-04-30 10:38 . 2001-08-17 19:49 15872 -c--a-w- c:\windows\system32\dllcache\ne2000.sys 2013-04-30 10:38 . 2001-08-30 21:07 91488 -c--a-w- c:\windows\system32\dllcache\n9i3disp.dll 2013-04-30 10:38 . 2001-08-17 18:50 27936 -c--a-w- c:\windows\system32\dllcache\n9i3d.sys 2013-04-30 10:38 . 2001-08-17 18:50 33088 -c--a-w- c:\windows\system32\dllcache\n9i128v2.sys 2013-04-30 10:38 . 2001-08-30 21:07 59104 -c--a-w- c:\windows\system32\dllcache\n9i128v2.dll 2013-04-30 10:38 . 2001-08-17 18:50 13664 -c--a-w- c:\windows\system32\dllcache\n9i128.sys 2013-04-30 10:37 . 2001-08-30 21:07 35392 -c--a-w- c:\windows\system32\dllcache\n9i128.dll 2013-04-30 10:37 . 2001-08-30 19:11 130048 -c--a-w- c:\windows\system32\dllcache\n100325.sys 2013-04-30 10:37 . 2001-08-30 19:11 53279 -c--a-w- c:\windows\system32\dllcache\n1000nt5.sys 2013-04-30 10:37 . 2001-08-30 19:11 76544 -c--a-w- c:\windows\system32\dllcache\mxport.sys 2013-04-30 10:37 . 2001-08-30 21:07 7168 -c--a-w- c:\windows\system32\dllcache\mxport.dll 2013-04-30 10:37 . 2001-08-17 19:49 19968 -c--a-w- c:\windows\system32\dllcache\mxnic.sys 2013-04-30 10:37 . 2001-08-30 21:07 19968 -c--a-w- c:\windows\system32\dllcache\mxicfg.dll 2013-04-30 10:37 . 2001-08-30 19:11 22144 -c--a-w- c:\windows\system32\dllcache\mxcard.sys 2013-04-30 10:37 . 2001-08-17 18:50 103296 -c--a-w- c:\windows\system32\dllcache\mtxvideo.sys 2013-04-30 10:37 . 2008-04-13 17:46 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys 2013-04-30 10:37 . 2001-08-17 19:48 12416 -c--a-w- c:\windows\system32\dllcache\msriffwv.sys 2013-04-30 10:36 . 2001-08-17 20:00 2944 -c--a-w- c:\windows\system32\dllcache\msmpu401.sys 2013-04-30 10:36 . 2008-04-13 17:54 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys 2013-04-30 10:35 . 2001-08-17 20:02 35200 -c--a-w- c:\windows\system32\dllcache\msgame.sys 2013-04-30 10:35 . 2001-08-17 19:48 6016 -c--a-w- c:\windows\system32\dllcache\msfsio.sys 2013-04-30 10:35 . 2008-04-13 17:46 51200 -c--a-w- c:\windows\system32\dllcache\msdv.sys . . (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-04-30 13:47 . 2012-01-25 11:10 181064 ----a-w- c:\windows\PSEXESVC.EXE 2013-04-29 14:25 . 2012-06-14 14:42 866720 ----a-w- c:\windows\system32\npdeployJava1.dll 2013-04-29 14:25 . 2010-04-15 07:08 788896 ----a-w- c:\windows\system32\deployJava1.dll 2013-04-29 14:25 . 2007-11-14 18:34 144896 ----a-w- c:\windows\system32\javacpl.cpl 2013-04-26 14:53 . 2012-04-24 08:17 691592 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-04-26 14:53 . 2011-07-26 07:48 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-03-08 08:36 . 2004-08-19 12:00 293888 ----a-w- c:\windows\system32\winsrv.dll 2013-03-07 15:56 . 2004-08-19 15:34 2032128 ----a-w- c:\windows\system32\ntkrnlpa.exe 2013-03-07 15:56 . 2004-08-19 12:00 2153472 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-03-02 01:57 . 2004-08-19 12:00 1867264 ----a-w- c:\windows\system32\win32k.sys 2013-03-02 01:55 . 2004-08-19 12:00 916480 ----a-w- c:\windows\system32\wininet.dll 2013-03-02 01:55 . 2004-08-19 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll 2013-03-02 01:55 . 2004-08-19 12:00 1469440 ----a-w- c:\windows\system32\inetcpl.cpl 2013-03-02 01:08 . 2004-08-19 12:00 385024 ----a-w- c:\windows\system32\html.iec 2013-03-01 09:32 . 2011-12-23 11:32 22328 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys 2013-02-27 07:56 . 2006-03-27 08:28 2067456 ----a-w- c:\windows\system32\mstscax.dll 2013-02-26 22:40 . 2011-12-23 11:32 208184 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys 2013-02-18 15:54 . 2012-10-13 09:19 33112 ----a-w- c:\windows\system32\drivers\avgtpx86.sys 2013-02-14 02:52 . 2010-09-07 02:49 182072 ----a-w- c:\windows\system32\drivers\avgtdix.sys 2013-02-12 00:32 . 2009-04-10 07:53 12928 ----a-w- c:\windows\system32\drivers\usb8023x.sys 2013-02-12 00:32 . 2004-08-19 12:00 12928 ----a-w- c:\windows\system32\drivers\usb8023.sys 2013-02-08 03:37 . 2010-09-07 02:48 96568 ----a-w- c:\windows\system32\drivers\avgmfx86.sys 2013-02-08 03:37 . 2012-09-21 01:46 245048 ----a-w- c:\windows\system32\drivers\avglogx.sys 2013-02-08 03:37 . 2012-04-19 02:50 60216 ----a-w- c:\windows\system32\drivers\avgidshx.sys 2013-02-08 03:37 . 2010-09-07 02:48 170808 ----a-w- c:\windows\system32\drivers\avgldx86.sys 2013-02-08 03:37 . 2010-09-07 02:48 39224 ----a-w- c:\windows\system32\drivers\avgrkx86.sys . . ((((((((((((((((((((((((((((((((((((( Punti Reg Caricati )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* i valori vuoti & legittimi/default non sono visualizzati. REGEDIT4 . [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\programmi\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\windows\system32\acaptuser32.dll . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0sprestrt\0OODBS\0c:\progra~1\AVG\AVG2013\avgrsx.exe /sync /restart . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE] @="" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ashMaiSv . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0] 2008-06-11 20:43 640376 ----a-w- c:\programmi\Adobe\Acrobat 9.0\Acrobat\acrotray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Acrobat Speed Launcher] 2008-06-12 00:25 37232 ----a-w- c:\programmi\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr] 2005-04-11 17:10 65536 ----a-w- c:\windows\Alcmtr.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVG_UI] 2013-03-13 16:15 4394032 ----a-w- c:\programmi\AVG\AVG2013\avgui.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Babylon Client] 2011-03-10 05:23 3265136 ----a-w- c:\program files\Babylon\Babylon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync] 2010-03-13 13:54 91520 ----a-w- c:\programmi\Microsoft Office\Office14\BCSSync.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] 2006-11-16 18:04 139264 ----a-w- c:\programmi\File comuni\Ahead\Lib\NMBgMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe] 2008-04-14 02:14 15360 ----a-w- c:\windows\system32\ctfmon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashGet 3] 2012-03-15 02:05 3090056 ----a-w- c:\program files\FlashGet 3\Flashget3.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FtpServer.exe] 2008-06-13 01:16 704512 ----a-w- c:\programmi\SHARP\Sharpdesk\FTPServer.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] 2012-02-01 13:41 136176 ----atw- c:\documents and settings\Administrator\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndexTray] 2008-09-20 00:16 106496 ----a-w- c:\programmi\SHARP\Sharpdesk\IndexTray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] 2006-01-12 14:40 155648 ----a-w- c:\programmi\File comuni\Ahead\Lib\NeroCheck.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess] 2012-01-20 19:03 719672 ----a-w- c:\programmi\Microsoft Office\Office14\MSOSYNC.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\openvpn-gui] 2009-11-27 12:57 99328 ----a-w- c:\program files\DIC-OpenVPN\bin\openvpn-gui.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PMServiceOpenHelp] 2007-08-15 16:14 20480 ----a-w- c:\program files\PowerManagerII\OpenHelp.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL] 2005-04-26 06:16 14370816 ----a-w- c:\windows\RTHDCPL.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SharpTray] 2008-09-20 00:34 32768 ----a-w- c:\programmi\SHARP\Sharpdesk\SharpTray.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] 2013-02-28 16:50 18642024 ----a-r- c:\programmi\Skype\Phone\Skype.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\snp2std] 2006-09-15 11:21 675840 ----a-w- c:\windows\vsnp2std.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2013-03-12 05:32 253816 ----a-w- c:\programmi\File comuni\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware] 2012-11-06 08:21 4763008 ----a-w- c:\programmi\SUPERAntiSpyware\SUPERANTISPYWARE.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TypeRegChecker] 2008-09-20 00:18 57344 ----a-w- c:\programmi\SHARP\Sharpdesk\TypeRegChecker.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VIAxHCUtl] 2011-03-28 07:18 331776 ----a-r- c:\via_xhci\usb3Monitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vProt] 2013-02-18 15:54 1151152 ----a-w- c:\programmi\AVG Secure Search\vprot.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "xmlprov"=3 (0x3) "WZCSVC"=2 (0x2) "WudfSvc"=2 (0x2) "wuauserv"=2 (0x2) "wscsvc"=2 (0x2) "WPFFontCache_v0400"=3 (0x3) "WMPNetworkSvc"=2 (0x2) "WmiApSrv"=3 (0x3) "Wmi"=3 (0x3) "WmdmPmSN"=3 (0x3) "WinRM"=3 (0x3) "winmgmt"=2 (0x2) "WebClient"=3 (0x3) "W32Time"=3 (0x3) "vToolbarUpdater14.2.0"=2 (0x2) "VSS"=3 (0x3) "UPS"=3 (0x3) "upnphost"=3 (0x3) "TrkWks"=2 (0x2) "Themes"=2 (0x2) "TermService"=3 (0x3) "TapiSrv"=3 (0x3) "SysmonLog"=3 (0x3) "SwPrv"=3 (0x3) "stisvc"=2 (0x2) "SSDPSRV"=3 (0x3) "srservice"=2 (0x2) "Spooler"=2 (0x2) "SkypeUpdate"=2 (0x2) "ShellHWDetection"=2 (0x2) "SharedAccess"=2 (0x2) "SentinelSecurityRuntime"=2 (0x2) "SentinelProtectionServer"=2 (0x2) "SentinelKeysServer"=2 (0x2) "SENS"=2 (0x2) "seclogon"=2 (0x2) "Schedule"=2 (0x2) "SCardSvr"=3 (0x3) "SamSs"=2 (0x2) "RSVP"=3 (0x3) "RemoteRegistry"=2 (0x2) "RDSessMgr"=3 (0x3) "RasMan"=3 (0x3) "RasAuto"=3 (0x3) "ProtectedStorage"=2 (0x2) "PolicyAgent"=2 (0x2) "Pml Driver HPZ12"=2 (0x2) "PlugPlay"=2 (0x2) "osppsvc"=3 (0x3) "ose"=3 (0x3) "OpenVPNService"=3 (0x3) "NtmsSvc"=3 (0x3) "NtLmSsp"=3 (0x3) "Nla"=3 (0x3) "Netman"=3 (0x3) "Netlogon"=3 (0x3) "Net Driver HPZ12"=2 (0x2) "napagent"=3 (0x3) "MSIServer"=3 (0x3) "MSDTC"=3 (0x3) "mnmsrvc"=3 (0x3) "Microsoft SharePoint Workspace Audit Service"=3 (0x3) "MBAMService"=2 (0x2) "MBAMScheduler"=2 (0x2) "LmHosts"=2 (0x2) "lanmanworkstation"=2 (0x2) "lanmanserver"=2 (0x2) "JavaQuickStarterService"=2 (0x2) "ImapiService"=3 (0x3) "idsvc"=3 (0x3) "HTTPFilter"=3 (0x3) "hkmsvc"=3 (0x3) "HidServ"=3 (0x3) "helpsvc"=2 (0x2) "gupdatem"=3 (0x3) "gupdate"=2 (0x2) "FontCache3.0.0.0"=3 (0x3) "FLEXnet Licensing Service"=3 (0x3) "FastUserSwitchingCompatibility"=3 (0x3) "EventSystem"=2 (0x2) "Eventlog"=2 (0x2) "ERSvc"=2 (0x2) "EapHost"=3 (0x3) "DTSRVC"=2 (0x2) "Dot3svc"=3 (0x3) "Dnscache"=2 (0x2) "dmserver"=2 (0x2) "dmadmin"=3 (0x3) "Dhcp"=2 (0x2) "CryptSvc"=3 (0x3) "COMSysApp"=3 (0x3) "clr_optimization_v4.0.30319_32"=2 (0x2) "CiSvc"=3 (0x3) "Browser"=2 (0x2) "BITS"=3 (0x3) "avgwd"=2 (0x2) "AVGIDSAgent"=2 (0x2) "Autodesk Licensing Service"=3 (0x3) "AudioSrv"=2 (0x2) "Ati HotKey Poller"=2 (0x2) "aspnet_state"=3 (0x3) "AppMgmt"=3 (0x3) "ALG"=3 (0x3) "!SASCORE"=2 (0x2) . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Programmi\\Skype\\Plugin Manager\\skypePM.exe"= "c:\\Programmi\\AVG\\AVG10\\avgmfapx.exe"= "c:\\Programmi\\SHARP\\Sharpdesk\\FTPServer.exe"= "c:\\WINDOWS\\system32\\dpvsetup.exe"= "c:\\Documents and Settings\\Administrator\\Impostazioni locali\\Temp\\1EE.tmp\\KMService.exe"= "c:\\Programmi\\Microsoft Office\\Office14\\GROOVE.EXE"= "c:\\Programmi\\Synology\\Assistant\\DSAssistant.exe"= "c:\\Program Files\\FlashGet 3\\FlashGet3.exe"= "c:\\Programmi\\AVG\\AVG2012\\avgmfapx.exe"= "c:\\Programmi\\Messenger\\msmsgs.exe"= "c:\\Programmi\\File comuni\\SafeNet Sentinel\\Sentinel Protection Server\\WinNT\\spnsrvnt.exe"= "c:\\Programmi\\File comuni\\SafeNet Sentinel\\Sentinel Keys Server\\sntlkeyssrvr.exe"= "c:\\Programmi\\AVG\\AVG2013\\avgmfapx.exe"= "c:\\Programmi\\AVG\\AVG2013\\avgnsx.exe"= "c:\\Programmi\\AVG\\AVG2013\\avgdiagex.exe"= "c:\\Programmi\\AVG\\AVG2013\\avgemcx.exe"= "c:\\Programmi\\Skype\\Phone\\Skype.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "5985:TCP"= 5985:TCP:*:Disabled:Gestione remota Windows . R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [19/04/2012 4.50.26 60216] R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [21/09/2012 3.46.00 245048] R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [07/09/2010 4.48.50 39224] R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [23/12/2011 13.32.00 208184] R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [23/12/2011 13.32.08 22328] R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [07/09/2010 4.48.54 170808] R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [07/09/2010 4.49.00 182072] R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [13/10/2012 11.19.14 33112] R1 SASDIFSV;SASDIFSV;c:\programmi\SUPERAntiSpyware\sasdifsv.sys [22/07/2011 18.27.02 12880] R1 SASKUTIL;SASKUTIL;c:\programmi\SUPERAntiSpyware\SASKUTIL.SYS [12/07/2011 23.55.22 67664] R2 AVGIDSAgent;AVGIDSAgent;c:\programmi\AVG\AVG2013\avgidsagent.exe [28/02/2013 0.42.12 4937264] R2 avgwd;AVG WatchDog;c:\programmi\AVG\AVG2013\avgwdsvc.exe [19/02/2013 5.02.02 282624] R2 cpwnt;cpwnt;c:\windows\system32\drivers\CPWNT.SYS [24/11/2006 17.11.27 21824] R2 SentinelFilter;SentinelFilter;e:\ingegneria - cad\Acecad StruCad\Acecad StruCad 11.0 + cracks\Crack\SentinelFilter.sys [21/03/2012 16.25.54 252416] R3 busenum;Synology Virtual USB Hub;c:\windows\system32\drivers\busenum.sys [18/02/2011 8.20.08 46304] R3 tap0801;TAP-Win32 Adapter V8;c:\windows\system32\drivers\tap0801.sys [27/11/2009 14.57.45 26624] R3 VUSB3HUB;VIA USB 3 Root Hub Service;c:\windows\system32\drivers\ViaHub3.sys [30/11/2012 17.01.00 151680] R3 xhcdrv;VIA USB eXtensible Host Controller Service;c:\windows\system32\drivers\xhcdrv.sys [30/11/2012 16.59.40 192128] S2 ALIWEHCD;Print Server Enhanced Controller;c:\windows\system32\Drivers\mfpec.sys --> c:\windows\system32\Drivers\mfpec.sys [?] S2 CPUSB;CPUsb.Sys driver;c:\windows\system32\drivers\CPUSB.sys [24/11/2006 17.15.55 17080] S3 cpuz134;cpuz134;\??\c:\docume~1\ADMINI~1\IMPOST~1\Temp\cpuz134\cpuz134_x32.sys --> c:\docume~1\ADMINI~1\IMPOST~1\Temp\cpuz134\cpuz134_x32.sys [?] S3 eusk3usb;SmartKey 3 USB;c:\windows\system32\drivers\eusk3usb.sys [23/11/2010 9.46.23 43968] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [03/05/2013 19.50.21 22856] S3 TUSB1150;802.11g WLAN USB Adapter;c:\windows\system32\drivers\TUSB1150.sys [27/03/2006 18.59.53 494848] S3 WUSBVBus;Print Server Detector;c:\windows\system32\DRIVERS\mfpvbus.sys --> c:\windows\system32\DRIVERS\mfpvbus.sys [?] S4 !SASCORE;SAS Core Service;c:\programmi\SUPERAntiSpyware\SASCORE.EXE [12/08/2011 1.38.07 116608] S4 AVG Security Toolbar Service;AVG Security Toolbar Service;c:\programmi\AVG\AVG10\Toolbar\ToolbarBroker.exe [14/04/2011 19.16.51 167264] S4 KMService;KMService;c:\windows\system32\srvany.exe [22/02/2012 17.39.53 8192] S4 MBAMScheduler;MBAMScheduler;c:\programmi\Malwarebytes' Anti-Malware\mbamscheduler.exe [03/05/2013 19.50.22 418376] S4 MBAMService;MBAMService;c:\programmi\Malwarebytes' Anti-Malware\mbamservice.exe [03/05/2013 19.50.22 701512] S4 PMService;PMService;c:\program files\PowerManagerII\PMService.exe -service --> c:\program files\PowerManagerII\PMService.exe -service [?] S4 SentinelKeysServer;Sentinel Keys Server;c:\programmi\File comuni\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [22/09/2011 1.03.02 374304] S4 SentinelSecurityRuntime;Sentinel Security Runtime;c:\programmi\File comuni\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [22/09/2011 1.00.00 292384] S4 SkypeUpdate;Skype Updater;c:\programmi\Skype\Updater\Updater.exe [28/02/2013 18.45.16 161384] S4 UsbClientService;UsbClientService;c:\programmi\Synology\Assistant\UsbClientService.exe [18/02/2011 8.18.50 245760] S4 vToolbarUpdater14.2.0;vToolbarUpdater14.2.0;c:\programmi\File comuni\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [18/02/2013 17.55.08 968880] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 . Contenuto della cartella 'Scheduled Tasks' . 2013-05-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\programmi\Google\Update\GoogleUpdate.exe [2011-01-28 16:11] . 2013-05-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\programmi\Google\Update\GoogleUpdate.exe [2011-01-28 16:11] . 2013-05-03 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-329068152-682003330-1006Core.job - c:\documents and settings\Daniele\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2012-03-13 13:41] . 2013-05-04 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-329068152-682003330-1006UA.job - c:\documents and settings\Daniele\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2012-03-13 13:41] . 2013-05-03 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-329068152-682003330-500Core.job - c:\documents and settings\Administrator\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2012-03-13 13:41] . 2013-05-04 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-343818398-329068152-682003330-500UA.job - c:\documents and settings\Administrator\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2012-03-13 13:41] . . ------- Scansione supplementare ------- . uStart Page = about:blank uSearch Page = IE: Aggiungi a PDF esistente - c:\programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html IE: Converti destinazione link in Adobe PDF - c:\programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html IE: Converti destinazione link in PDF esistente - c:\programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html IE: Converti in Adobe PDF - c:\programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html TCP: Interfaces\{4CCACE67-3170-46E4-AEAC-AABE5D4AC590}: NameServer = 193.70.152.15,193.70.152.25 . . ------- Associazioni dei file ------- . .scr=AutoCADScriptFile . - - - - CHIAVI ORFANE RIMOSSE - - - - . WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) AddRemove-{09FF4DB8-7DE9-4D47-B7DB-915DB7D9A8CA} - c:\documents and settings\All Users\Dati applicazioni\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}\bm_installer.exe . . . ************************************************************************** scansione processi nascosti ... . scansione entrate autostart nascoste ... . Scansione files nascosti ... . Scansione completata con successo Files nascosti: . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\!SASCORE] "ImagePath"="\"c:\programmi\SUPERAntiSpyware\SASCORE.EXE\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Memory Cache 4.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NETFramework] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Abiosdsk] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\abp480n5] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI] "ImagePath"="system32\DRIVERS\ACPI.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPIEC] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aec] "ImagePath"="system32\drivers\aec.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD] "ImagePath"="\SystemRoot\System32\drivers\afd.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Aha154x] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78u2] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\akshasp] "ImagePath"="system32\DRIVERS\akshasp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aksusb] "ImagePath"="system32\DRIVERS\aksusb.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Alerter] "ServiceDll"="%SystemRoot%\system32\alrsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ALG] "ImagePath"="%SystemRoot%\System32\alg.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AliIde] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ALIWEHCD] "ImagePath"="System32\Drivers\mfpec.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amsint] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AppMgmt] "ServiceDll"="%SystemRoot%\System32\appmgmts.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\asc] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\asc3350p] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\asc3550] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASP.NET] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASP.NET_1.1.4322] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASP.NET_2.0.50727] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASP.NET_4.0.30319] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aspnet_state] "ImagePath"="%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AsyncMac] "ImagePath"="system32\DRIVERS\asyncmac.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\atapi] "ImagePath"="system32\DRIVERS\atapi.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Atdisk] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ati HotKey Poller] "ImagePath"="%SystemRoot%\system32\Ati2evxx.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ATI Smart] "ImagePath"="c:\windows\system32\ati2sgag.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ati2mtag] "ImagePath"="system32\DRIVERS\ati2mtag.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Atierecord] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Atmarpc] "ImagePath"="system32\DRIVERS\atmarpc.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AudioSrv] "ServiceDll"="%SystemRoot%\System32\audiosrv.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\audstub] "ImagePath"="system32\DRIVERS\audstub.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Autodesk Licensing Service] "ImagePath"="\"c:\programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Avg] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AVG Security Toolbar Service] "ImagePath"="c:\programmi\AVG\AVG10\Toolbar\ToolbarBroker.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AVGIDSAgent] "ImagePath"="c:\programmi\AVG\AVG2013\avgidsagent.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AVGIDSDriver] "ImagePath"="system32\DRIVERS\avgidsdriverx.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AVGIDSHX] "ImagePath"="system32\DRIVERS\avgidshx.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AVGIDSShim] "ImagePath"="system32\DRIVERS\avgidsshimx.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Avgldx86] "ImagePath"="system32\DRIVERS\avgldx86.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Avglogx] "ImagePath"="system32\DRIVERS\avglogx.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Avgmfx86] "ImagePath"="system32\DRIVERS\avgmfx86.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Avgrkx86] "ImagePath"="system32\DRIVERS\avgrkx86.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Avgtdix] "ImagePath"="system32\DRIVERS\avgtdix.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avgtp] "ImagePath"="\??\c:\windows\system32\drivers\avgtpx86.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avgwd] "ImagePath"="c:\programmi\AVG\AVG2013\avgwdsvc.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BattC] "MofImagePath"="System32\Drivers\battc.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Beep] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BITS] "ServiceDll"="%systemroot%\system32\qmgr.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Browser] "ServiceDll"="%SystemRoot%\System32\browser.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\busenum] "ImagePath"="system32\DRIVERS\busenum.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\cbidf2k] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CCDECODE] "ImagePath"="system32\DRIVERS\CCDECODE.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\cd20xrnt] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Cdaudio] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Cdfs] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Cdrom] "ImagePath"="system32\DRIVERS\cdrom.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Changer] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CiSvc] "ImagePath"="%SystemRoot%\system32\cisvc.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ClipSrv] "ImagePath"="%SystemRoot%\system32\clipsrv.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\clr_optimization_v2.0.50727_32] "ImagePath"="c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\clr_optimization_v4.0.30319_32] "ImagePath"="c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CmdIde] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\COMSysApp] "ImagePath"="%SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ContentFilter] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ContentIndex] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Cpqarray] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CPUSB] "ImagePath"="System32\Drivers\CPUSB.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\cpuz134] "ImagePath"="\??\c:\docume~1\ADMINI~1\IMPOST~1\Temp\cpuz134\cpuz134_x32.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\cpwnt] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\CryptSvc] "ServiceDll"="%SystemRoot%\System32\cryptsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dac2w2k] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dac960nt] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DcomLaunch] "ServiceDll"="%SystemRoot%\system32\rpcss.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Dhcp] "ServiceDll"="%SystemRoot%\System32\dhcpcsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Disk] "ImagePath"="system32\DRIVERS\disk.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmadmin] "ImagePath"="%SystemRoot%\System32\dmadmin.exe /com" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmboot] "ImagePath"="System32\drivers\dmboot.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmio] "ImagePath"="system32\DRIVERS\dmio.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmload] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dmserver] "ServiceDll"="%SystemRoot%\System32\dmserver.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DMusic] "ImagePath"="system32\drivers\DMusic.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Dnscache] "ServiceDll"="%SystemRoot%\System32\dnsrslvr.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Dot3svc] "ServiceDll"="%SystemRoot%\System32\dot3svc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\dpti2o] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\drmkaud] "ImagePath"="system32\drivers\drmkaud.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DS1410D] "ImagePath"="SYSTEM32\drivers\DS1410D.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DTSRVC] "ImagePath"="c:\programmi\File comuni\Portrait Displays\Shared\DTSRVC.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\EapHost] "ServiceDll"="%SystemRoot%\System32\eapsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ERSvc] "ServiceDll"="%SystemRoot%\System32\ersvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\eusk3usb] "ImagePath"="System32\Drivers\eusk3usb.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Eventlog] "ImagePath"="%SystemRoot%\system32\services.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\EventSystem] "ServiceDll"="c:\windows\system32\es.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Fastfat] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FastUserSwitchingCompatibility] "ServiceDll"="%SystemRoot%\System32\shsvcs.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Fdc] "ImagePath"="system32\DRIVERS\fdc.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Fips] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FLEXnet Licensing Service] "ImagePath"="\"c:\programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Flpydisk] "ImagePath"="system32\DRIVERS\flpydisk.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FltMgr] "ImagePath"="system32\drivers\fltmgr.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\FontCache3.0.0.0] "ImagePath"="c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Fs_Rec] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ftdisk] "ImagePath"="system32\DRIVERS\ftdisk.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Gpc] "ImagePath"="system32\DRIVERS\msgpc.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gupdate] "ImagePath"="\"c:\programmi\Google\Update\GoogleUpdate.exe\" /svc" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\gupdatem] "ImagePath"="\"c:\programmi\Google\Update\GoogleUpdate.exe\" /medsvc" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\hardlock] "ImagePath"="\??\c:\windows\system32\drivers\hardlock.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Haspnt] "ImagePath"="\??\c:\windows\system32\drivers\Haspnt.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HDAudBus] "ImagePath"="system32\DRIVERS\HDAudBus.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\helpsvc] "ServiceDll"="%WINDIR%\PCHealth\HelpCtr\Binaries\pchsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HidServ] "ServiceDll"="%SystemRoot%\System32\hidserv.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HidUsb] "ImagePath"="system32\DRIVERS\hidusb.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\hkmsvc] "ServiceDll"="%SystemRoot%\System32\kmsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\hpn] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HPZid412] "ImagePath"="system32\DRIVERS\HPZid412.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HPZipr12] "ImagePath"="system32\DRIVERS\HPZipr12.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HPZius12] "ImagePath"="system32\DRIVERS\HPZius12.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HTTP] "ImagePath"="System32\Drivers\HTTP.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\HTTPFilter] "ServiceDll"="%SystemRoot%\System32\w3ssl.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i2omgmt] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i2omp] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt] "ImagePath"="system32\DRIVERS\i8042prt.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\idsvc] "ImagePath"="\"c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Imapi] "ImagePath"="system32\DRIVERS\imapi.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ImapiService] "ImagePath"="%systemroot%\system32\imapi.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\inetaccs] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ini910u] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Inport] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IntcAzAudAddService] "ImagePath"="system32\drivers\RtkHDAud.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IntelIde] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelppm] "ImagePath"="system32\DRIVERS\intelppm.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ip6Fw] "ImagePath"="system32\drivers\ip6fw.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpFilterDriver] "ImagePath"="system32\DRIVERS\ipfltdrv.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpInIp] "ImagePath"="system32\DRIVERS\ipinip.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpNat] "ImagePath"="system32\DRIVERS\ipnat.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPSec] "ImagePath"="system32\DRIVERS\ipsec.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IRENUM] "ImagePath"="system32\DRIVERS\irenum.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ISAPISearch] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\isapnp] "ImagePath"="system32\DRIVERS\isapnp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi] "ImagePath"="system32\DRIVERS\iteatapi.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\JavaQuickStarterService] "ImagePath"="\"c:\programmi\Java\jre7\bin\jqs.exe\" -service -config \"c:\programmi\Java\jre7\lib\deploy\jqs\jqs.conf\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Kbdclass] "ImagePath"="system32\DRIVERS\kbdclass.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdhid] "ImagePath"="system32\DRIVERS\kbdhid.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kmixer] "ImagePath"="system32\drivers\kmixer.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KMService] "ImagePath"="c:\windows\system32\srvany.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KSecDD] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lanmanserver] "ServiceDll"="%SystemRoot%\System32\srvsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lanmanworkstation] "ServiceDll"="%SystemRoot%\System32\wkssvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lbrtfdc] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ldap] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LicenseService] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LmHosts] "ServiceDll"="%SystemRoot%\System32\lmhsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector] "ImagePath"="\??\c:\windows\system32\drivers\mbam.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMScheduler] "ImagePath"="\"c:\programmi\Malwarebytes' Anti-Malware\mbamscheduler.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMService] "ImagePath"="\"c:\programmi\Malwarebytes' Anti-Malware\mbamservice.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Messenger] "ServiceDll"="%SystemRoot%\System32\msgsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Microsoft SharePoint Workspace Audit Service] "ImagePath"="\"c:\programmi\Microsoft Office\Office14\GROOVE.EXE\" /auditservice" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mnmdd] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mnmsrvc] "ImagePath"="c:\windows\system32\mnmsrvc.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Modem] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mouclass] "ImagePath"="system32\DRIVERS\mouclass.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid] "ImagePath"="system32\DRIVERS\mouhid.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MountMgr] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mraid35x] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV] "ImagePath"="system32\DRIVERS\mrxdav.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxSmb] "ImagePath"="system32\DRIVERS\mrxsmb.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC] "ImagePath"="c:\windows\system32\msdtc.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 3.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Msfs] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSKSSRV] "ImagePath"="system32\drivers\MSKSSRV.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSPCLOCK] "ImagePath"="system32\drivers\MSPCLOCK.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSPQM] "ImagePath"="system32\drivers\MSPQM.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mssmbios] "ImagePath"="system32\DRIVERS\mssmbios.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSTEE] "ImagePath"="system32\drivers\MSTEE.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MTsensor] "ImagePath"="system32\DRIVERS\ASACPI.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NABTSFEC] "ImagePath"="system32\DRIVERS\NABTSFEC.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent] "ServiceDll"="%SystemRoot%\System32\qagentrt.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NBService] "ImagePath"="c:\program files\Nero 7\Nero BackItUp\NBService.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisIP] "ImagePath"="system32\DRIVERS\NdisIP.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi] "ImagePath"="system32\DRIVERS\ndistapi.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio] "ImagePath"="system32\DRIVERS\ndisuio.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan] "ImagePath"="system32\DRIVERS\ndiswan.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDProxy] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Net Driver HPZ12] "ServiceDll"="c:\windows\system32\HPZinw12.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS] "ImagePath"="system32\DRIVERS\netbios.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBT] "ImagePath"="system32\DRIVERS\netbt.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetDDE] "ImagePath"="%SystemRoot%\system32\netdde.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetDDEdsdm] "ImagePath"="%SystemRoot%\system32\netdde.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netlogon] "ImagePath"="%SystemRoot%\system32\lsass.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netman] "ServiceDll"="%SystemRoot%\System32\netman.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharing] "ImagePath"="c:\windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Nla] "ServiceDll"="%SystemRoot%\System32\mswsock.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ntfs] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NtLmSsp] "ImagePath"="%SystemRoot%\system32\lsass.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NtmsSvc] "ServiceDll"="%SystemRoot%\system32\ntmssvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NuidFltr] "ImagePath"="system32\DRIVERS\NuidFltr.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Null] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NwlnkFlt] "ImagePath"="system32\DRIVERS\nwlnkflt.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NwlnkFwd] "ImagePath"="system32\DRIVERS\nwlnkfwd.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\O&O Defrag] "ImagePath"="c:\windows\system32\oodag.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\OODBS] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\OpenVPNService] "ImagePath"="c:\program files\DIC-OpenVPN\bin\openvpnserv.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ose] "ImagePath"="\"c:\programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\osppsvc] "ImagePath"="\"c:\programmi\File comuni\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parport] "ImagePath"="system32\DRIVERS\parport.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PartMgr] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ParVdm] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PCI] "ImagePath"="system32\DRIVERS\pci.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PCIDump] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PCIIde] "ImagePath"="system32\DRIVERS\pciide.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Pcmcia] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PDCOMP] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PDFRAME] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pdiddcci] "ImagePath"="System32\DRIVERS\pdiddcci.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PdiPorts] "ImagePath"="System32\Drivers\PdiPorts.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PDRELI] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PDRFRAME] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\perc2] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\perc2hib] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfDisk] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfNet] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfOS] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfProc] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PlugPlay] "ImagePath"="%SystemRoot%\system32\services.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Pml Driver HPZ12] "ServiceDll"="c:\windows\system32\HPZipm12.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PMService] "ImagePath"="c:\program files\PowerManagerII\PMService.exe -service" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent] "ImagePath"="%SystemRoot%\system32\lsass.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PptpMiniport] "ImagePath"="system32\DRIVERS\raspptp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PQNTDrv] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProtectedStorage] "ImagePath"="%SystemRoot%\system32\lsass.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched] "ImagePath"="system32\DRIVERS\psched.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ptilink] "ImagePath"="system32\DRIVERS\ptilink.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PxHelp20] "ImagePath"="system32\DRIVERS\PxHelp20.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql1080] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ql10wnt] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql12160] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql1240] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql1280] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd] "ImagePath"="system32\DRIVERS\rasacd.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto] "ServiceDll"="%SystemRoot%\System32\rasauto.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Rasl2tp] "ImagePath"="system32\DRIVERS\rasl2tp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan] "ServiceDll"="%SystemRoot%\System32\rasmans.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe] "ImagePath"="system32\DRIVERS\raspppoe.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Raspti] "ImagePath"="system32\DRIVERS\raspti.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Rdbss] "ImagePath"="system32\DRIVERS\rdbss.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD] "ImagePath"="System32\DRIVERS\RDPCDD.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPDD] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdpdr] "ImagePath"="system32\DRIVERS\rdpdr.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPNP] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPWD] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDSessMgr] "ImagePath"="c:\windows\system32\sessmgr.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\redbook] "ImagePath"="system32\DRIVERS\redbook.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess] "ServiceDll"="%SystemRoot%\System32\mprdim.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteRegistry] "ServiceDll"="%SystemRoot%\system32\regsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcLocator] "ImagePath"="%SystemRoot%\system32\locator.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs] "ServiceDll"="%SystemRoot%\System32\rpcss.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RSVP] "ImagePath"="%SystemRoot%\system32\rsvp.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SamSs] "ImagePath"="%SystemRoot%\system32\lsass.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SASDIFSV] "ImagePath"="\??\c:\programmi\SUPERAntiSpyware\SASDIFSV.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SASKUTIL] "ImagePath"="\??\c:\programmi\SUPERAntiSpyware\SASKUTIL.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr] "ImagePath"="%SystemRoot%\System32\SCardSvr.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule] "ServiceDll"="%SystemRoot%\system32\schedsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ScsiPort] "ImagePath"="%SystemRoot%\system32\drivers\scsiport.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Secdrv] "ImagePath"="system32\DRIVERS\secdrv.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\seclogon] "ServiceDll"="%SystemRoot%\System32\seclogon.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS] "ServiceDll"="%SystemRoot%\system32\sens.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Sentinel] "ImagePath"="\SystemRoot\System32\Drivers\SENTINEL.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SentinelFilter] "ImagePath"="\??\e:\ingegneria - cad\Acecad StruCad\Acecad StruCad 11.0 + cracks\Crack\SENTINELFILTER.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SentinelKeysServer] "ImagePath"="\"c:\programmi\File comuni\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SentinelProtectionServer] "ImagePath"="\"c:\programmi\File comuni\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SentinelSecurityRuntime] "ImagePath"="\"c:\programmi\File comuni\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\serenum] "ImagePath"="system32\DRIVERS\serenum.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Serial] "ImagePath"="system32\DRIVERS\serial.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelEndpoint 3.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelEndpoint 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelOperation 3.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelOperation 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelService 3.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelService 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Sfloppy] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess] "ServiceDll"="%SystemRoot%\System32\ipnathlp.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ShellHWDetection] "ServiceDll"="%SystemRoot%\System32\shsvcs.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Simbad] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SkypeUpdate] "ImagePath"="c:\programmi\Skype\Updater\Updater.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SLIP] "ImagePath"="system32\DRIVERS\SLIP.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SMSvcHost 3.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SMSvcHost 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SNP2STD] "ImagePath"="system32\DRIVERS\snp2sxp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SNTNLUSB] "ImagePath"="system32\DRIVERS\SNTNLUSB.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SONYPVU1] "ImagePath"="system32\DRIVERS\SONYPVU1.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Sparrow] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\splitter] "ImagePath"="system32\drivers\splitter.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Spooler] "ImagePath"="%SystemRoot%\system32\spoolsv.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sr] "ImagePath"="system32\DRIVERS\sr.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\srservice] "ServiceDll"="%SystemRoot%\system32\srsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Srv] "ImagePath"="system32\DRIVERS\srv.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SSDPSRV] "ServiceDll"="%SystemRoot%\System32\ssdpsrv.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\stisvc] "ServiceDll"="%SystemRoot%\system32\wiaservc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\streamip] "ImagePath"="system32\DRIVERS\StreamIP.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\swenum] "ImagePath"="system32\DRIVERS\swenum.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\swmidi] "ImagePath"="system32\drivers\swmidi.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SwPrv] "ImagePath"="c:\windows\system32\dllhost.exe /Processid:{861AEBB7-1C9A-4391-BAFF-83D353DE5DD3}" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\swwd] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\symc810] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\symc8xx] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sym_hi] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sym_u3] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sysaudio] "ImagePath"="system32\drivers\sysaudio.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SysmonLog] "ImagePath"="%SystemRoot%\system32\smlogsvc.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\tap0801] "ImagePath"="system32\DRIVERS\tap0801.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TapiSrv] "ServiceDll"="%SystemRoot%\System32\tapisrv.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip] "ImagePath"="system32\DRIVERS\tcpip.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip6] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TDPIPE] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TDTCP] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TermDD] "ImagePath"="system32\DRIVERS\termdd.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TermService] "ServiceDll"="%SystemRoot%\System32\termsrv.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Themes] "ServiceDll"="%SystemRoot%\System32\shsvcs.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TlntSvr] "ImagePath"="c:\windows\system32\tlntsvr.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TosIde] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TrkWks] "ServiceDll"="%SystemRoot%\system32\trkwks.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TSDDD] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\TUSB1150] "ImagePath"="system32\DRIVERS\tusb1150.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Udfs] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ultra] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Update] "ImagePath"="system32\DRIVERS\update.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\upnphost] "ServiceDll"="%SystemRoot%\System32\upnphost.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\UPS] "ImagePath"="%SystemRoot%\System32\ups.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbaudio] "ImagePath"="system32\drivers\usbaudio.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbccgp] "ImagePath"="system32\DRIVERS\usbccgp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\UsbClientService] "ImagePath"="c:\programmi\Synology\Assistant\UsbClientService.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbehci] "ImagePath"="system32\DRIVERS\usbehci.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbhub] "ImagePath"="system32\DRIVERS\usbhub.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbprint] "ImagePath"="system32\DRIVERS\usbprint.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbscan] "ImagePath"="system32\DRIVERS\usbscan.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\USBSTOR] "ImagePath"="system32\DRIVERS\USBSTOR.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\usbuhci] "ImagePath"="system32\DRIVERS\usbuhci.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\VgaSave] "ImagePath"="\SystemRoot\System32\drivers\vga.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ViaIde] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\VolSnap] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\VSS] "ImagePath"="%SystemRoot%\System32\vssvc.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\vToolbarUpdater14.2.0] "ImagePath"="c:\programmi\File comuni\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\VUSB3HUB] "ImagePath"="system32\DRIVERS\ViaHub3.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\W32Time] "ServiceDll"="%systemroot%\system32\w32time.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\W3SVC] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Wanarp] "ImagePath"="system32\DRIVERS\wanarp.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Wdf01000] "ImagePath"="system32\DRIVERS\Wdf01000.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WDICA] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\wdmaud] "ImagePath"="system32\drivers\wdmaud.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WebClient] "ServiceDll"="%SystemRoot%\System32\webclnt.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Windows Workflow Foundation 3.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Windows Workflow Foundation 4.0.0.0] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\winmgmt] "ServiceDll"="%SystemRoot%\system32\wbem\WMIsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WinRM] "ServiceDll"="%SystemRoot%\system32\WsmSvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Winsock] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WinSock2] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WinTrust] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmdmPmSN] "ServiceDll"="c:\windows\system32\mspmsnsv.dll" -- . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Wmi] "ServiceDll"="%SystemRoot%\System32\advapi32.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmiApRpl] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WmiApSrv] "ImagePath"="c:\windows\system32\wbem\wmiapsrv.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WMPNetworkSvc] "ImagePath"="\"c:\programmi\Windows Media Player\WMPNetwk.exe\"" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WpdUsb] "ImagePath"="system32\DRIVERS\wpdusb.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WPFFontCache_v0400] "ImagePath"="c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WS2IFSL] "ImagePath"="\SystemRoot\System32\drivers\ws2ifsl.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\wscsvc] "ServiceDll"="%SYSTEMROOT%\system32\wscsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WSTCODEC] "ImagePath"="system32\DRIVERS\WSTCODEC.SYS" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\wuauserv] "ServiceDll"="%systemroot%\system32\wuauserv.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WudfPf] "ImagePath"="system32\DRIVERS\WudfPf.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WudfRd] "ImagePath"="system32\DRIVERS\wudfrd.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WudfSvc] "ServiceDll"="%SystemRoot%\System32\WUDFSvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WUSBVBus] "ImagePath"="system32\DRIVERS\mfpvbus.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\WZCSVC] "ServiceDll"="%SystemRoot%\System32\wzcsvc.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\xhcdrv] "ImagePath"="system32\DRIVERS\xhcdrv.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\xmlprov] "ServiceDll"="%SystemRoot%\System32\xmlprov.dll" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\yukonwxp] "ImagePath"="system32\DRIVERS\yk51x86.sys" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{070D725D-2EA2-48EE-94B5-45A50F23D481}] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{07171AC2-0D2A-427d-BCE5-B6C2D6C7058B}] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{4668629B-2F6E-4278-9660-7D1E16C37CC6}] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{4C6E437F-D550-4C92-BA98-F4767781F82F}] . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{4CCACE67-3170-46E4-AEAC-AABE5D4AC590}] . --------------------- CHIAVI DI REGISTRO BLOCCATE --------------------- . [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\Ø•€|ÿÿÿÿ•€|ù•9~*] "0140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL" . [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\h–€|ÿÿÿÿ¤•€|ù•9~*] "0140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL" . [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\€–€|ÿÿÿÿÀ•€|ù•9~*] "0140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL" . [HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*] "OODEFRAG08.00.00.01WORKSTATION"="9661B43A8E814E522A49CA753BD3668812EF3FD416E0D627322D08F33C744431BBB59856AA9139432357297090F820ADD1BDDC4FEFB587983BD4B23C1843C3BA3330C18466C24E211D81CC435E3582066BA9A340895727B164CF5160ACFC44FAC78A9B20D0074CC4B29DD82993E61619E3428A67CA2DA34E4103503F7FAE3ABC39A5A849A939CD896F2303A1CBCEB7F4B4399A435281BC4A567B2EFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74CFEBC9E127BECC74C5D575E7D6A3B9808A9C6AECB7A5D1407FEBC9E127BECC74CA6171C11EC38DE3D7A5BB7E976CEE0D921AD392A650485AC29CA15FDB58503142641522C18CF413490F358E343D79388AFF5BECE5BD6CB127DC5B8E16CE76BDB2ECDFD0A6CF2DCCB37BA512252E8B8BFF51E14404152A87E54E5E5C7372B49FB111E5CD5D98EABE40607BC78CA33DC838C79D8380E36FE6B699A68EF7F3D76004A600273DA5EA3BFD8E5990E54DB2C68D11295423AB356E1B98AEEE9ACFCF3881A76E79AE90D5C334F9548DE9BFD7819E424343FC3F45883088E8E9C31BD65C983F6E954073D14A6CE898C3AD0A737D4AC1F02652C9155815A34BC42FC49110C4C2EC9FE3583AA98FE6A924429DA846CD2A8B23B791B3FA2FABED4E70759E52C0198A94F7BE7A61ACB1366F45C0E9CC74219DC1F3513AEC4F82198EE4CA0F198EFE913CAE769AECFE5927998A82A62DF2D7DF9C1ECF0DB56A487A88DC7C0E957AC8873CD87771174C02C214E4D0D5A430A1568A7B2A027D8144C0D4E7ED3A4800F8E198470F73FD3155917091089AE150FD4EA289B0014E42383330E77649E40B04A3AF3B8C2CBCF5E44789239662E0B3D6528724262C726EF72E8FE3C72F7D672BFED707B2672DD5DCC4684155CC9EDD2242A06C20F0FDBDA11E0A7DB73F49775A3B128D9E38D861786E650F419191F55205FB7BF4157570C0E345FE74EFB6BA161E517772E2068D138A2392CC0D38E8E9F9B315E27B403ECCA5D5678DE9A4FA3974E11FA304EB39B5D29D59467D9C28C19926D49E4DDD7AADDBB0D28767F53E89892BC9086E0ADC22788948A972B571E3ADFBFAD902DE5380F125A15577F1BA4EAC09567C2C4305C7739B26ECF6F78DA6483CABCB5A1D0CB5C8966E1BA91DE4F48C8E8B3E889A840E512452681EF6A1A2ADC08AC525E4EDF772C3135CCD26CA3217E5BADF1E6978BBFD2B298131982F9D53544B65B2AABB146EA8A3AAC82229F161BE18F4BB3139D821A39B3DEFEAADA63B49F98366F47C46217191EEE84F4867F3B4899D66EC39A627067E632D662E2026B9093BFBD145D196856959BE0EDE1E55D2D8F6836E6EAC7BD2028CE7A3AFA184B5E6EC4481A076B7B10D6ADC2A7F90A6782B94A504DB9CC4E9BEE6B67DACF3DAA26F189E473908FCFE89B" . --------------------- Dlls caricate dai processi in esecuzione --------------------- . - - - - - - - > 'winlogon.exe'(1148) c:\windows\system32\Ati2evxx.dll . Ora fine scansione: 2013-05-04 19:17:01 ComboFix-quarantined-files.txt 2013-05-04 17:16 . Pre-Run: 18 751 135 744 byte disponibili Post-Run: 19 304 386 560 byte disponibili . WindowsXP-KB310994-SP2-Pro-BootDisk-ITA.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons UnsupportedDebug="do not select this" /debug multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect . - - End Of File - - D25FB1C4AC60AD2565B97EC1661757A8
|