Aiutamici Forum
Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

2 malware + lentezza Opzioni
assurdo
Inviato: Saturday, December 10, 2011 1:43:57 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Buongiorno. Facendo una scansione con Symantec antivirus non ho trovato nessun tipo di virus..Però ogni tanto mi esce la schermata dell'antivirus con i sequenti virus/malware: "Bloodhound.PDF! gen" e "W32.SillyFCD" che si trovano nella cartella temp di C. Cosa devo fare? Ho fatto una grandissima pulizia del computer con qualsiasi programma, ho cercato di liberare spazio su disco, ho seguito tutti i consigli dellla guida Aiutamici, ma il computer resta lentissimo. Può essere che ormai una RAM di 512Mbytes sia troppo poco? Utilizzando il programma SIW ho trovato i sequenti dati: Capacità memoria 512MB, Tipo di memoria DDR (PC3200) e velocità 200 Mhz. Ditemi che dati vi servono. Grazie
Sponsor
Inviato: Saturday, December 10, 2011 1:43:57 PM

 
francescoamato
Inviato: Saturday, December 10, 2011 2:10:19 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Certo la RAM è poca. fai cosi:
Scarica ed installa MalwareBytes:
http://software.aiutamici.com/software?ID=80346
Prima di fare la scansione AGGIORNALO. (è molto importante)
Esegui una scansione completa del sistema.
Elimina gli eventuali file infetti trovati
Allega il log

Allega anche un log di questo programma: http://software.aiutamici.com/software?ID=11175
assurdo
Inviato: Sunday, December 11, 2011 5:12:03 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Ho utilizzato il software MalwareBytes. Il log è il seguente:

Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Versione database: 8348

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

10/12/2011 17.19.56
mbam-log-2011-12-10 (17-19-56).txt

Tipo di scansione: Scansione veloce
Elementi esaminati: 183614
Tempo impiegato: 14 minuti, 56 secondi

Processi infetti in memoria: 0
Moduli di memoria infetti: 0
Chiavi di registro infette: 5
Valori di registro infetti: 1
Voci infette nei dati di registro: 1
Cartelle infette: 0
File infetti: 3

Processi infetti in memoria:
(Non sono stati rilevati elementi nocivi)

Moduli di memoria infetti:
(Non sono stati rilevati elementi nocivi)

Chiavi di registro infette:
HKEY_CLASSES_ROOT\AppID\{A0E1054B-01EE-4D57-A059-4D99F339709F} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\{B0E43034-50F5-1F84-8098-824B44F2DBC3} (Adware.Admedia) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{AFD4AD01-58C1-47DB-A404-FBE00A6C5486} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-0000-0000-0000-000020040000} (Trojan.Dialer) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Valori di registro infetti:
HKEY_CLASSES_ROOT\AppID\main.DLL\AppID (Adware.DeepDive) -> Value: AppID -> Quarantined and deleted successfully.

Voci infette nei dati di registro:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FIREWALLDISABLENOTIFY (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Cartelle infette:
(Non sono stati rilevati elementi nocivi)

File infetti:
c:\programmi\Common\_helper.dll (Adware.DeepDive) -> Quarantined and deleted successfully.
c:\programmi\Common\_helper.sig (Malware.Trace) -> Quarantined and deleted successfully.
c:\programmi\Common\helper.sig (Trojan.Agent) -> Quarantined and deleted successfully.
francescoamato
Inviato: Sunday, December 11, 2011 6:13:33 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Ciao, ripeti lo scan con malwarebytes, ricorda di farla COMPLETA non veloce.
Allega il log, Francesco.
assurdo
Inviato: Monday, December 12, 2011 1:07:47 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Fatta scansione completa (ho guardato se c'erano aggiornamenti nuovi ma non ce n'erano rispetto all'altro ieri).


Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Versione database: 8356

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

12/12/2011 12.58.59
mbam-log-2011-12-12 (12-58-52).txt

Tipo di scansione: Scansione completa (C:\|D:\|)
Elementi esaminati: 266399
Tempo impiegato: 1 ore, 13 minuti, 47 secondi

Processi infetti in memoria: 0
Moduli di memoria infetti: 0
Chiavi di registro infette: 0
Valori di registro infetti: 0
Voci infette nei dati di registro: 1
Cartelle infette: 0
File infetti: 0

Processi infetti in memoria:
(Non sono stati rilevati elementi nocivi)

Moduli di memoria infetti:
(Non sono stati rilevati elementi nocivi)

Chiavi di registro infette:
(Non sono stati rilevati elementi nocivi)

Valori di registro infetti:
(Non sono stati rilevati elementi nocivi)

Voci infette nei dati di registro:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FIREWALLDISABLENOTIFY (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Cartelle infette:
(Non sono stati rilevati elementi nocivi)

File infetti:
(Non sono stati rilevati elementi nocivi)
francescoamato
Inviato: Monday, December 12, 2011 1:21:06 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78

Allega anche un log di questo programma: http://software.aiutamici.com/software?ID=11175
assurdo
Inviato: Monday, December 12, 2011 1:23:09 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Ok ora lo faccio e ti allego il log appena finisce. Grazie!
assurdo
Inviato: Monday, December 12, 2011 1:38:46 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Non riesco ad installare il programma ne con Google Chrome ne con Internet Explorer perché mi esce un errore di Windows Installer...
francescoamato
Inviato: Monday, December 12, 2011 1:45:14 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Molto strano, questa scansione riesci a farla?

Scarica Kaspersky TDSS Killer: http://support.kaspersky.com/downloads/utils/tdsskiller.exe
● posiziona il file scaricato sul Desktop
● clicca due volte sul file TDSSKiller.exe per avviare l'applicazione
● successivamente premi il pulsante Start scan

Nota - riguardo al programma:
● non cliccare sul pulsante Stop scan per nessun motivo, la scansione si interromperebbe

Giunti a questo punto, inizia la scansione del sistema alla ricerca di software malevolo:
● se viene trovato un file infetto, l'azione di default sarà Cure: clicca quindi su Continua
● se viene trovato un file sospetto, l'azione di default sarà Skip: clicca quindi su Continua
● se non viene rilevato nulla, chiudi semplicemente il programma

Una volta terminata la scansione, si presenterà una di queste due opzioni:
non è necessario il riavvio del sistema: allega il Report situato nel Disco Locale C:\, di nome TDSSKiller.[Version]_[Date]_[Time]_log.txt
● è necessario riavviare il sistema: clicca su Riavvia ora, infine allega il risultato della scansione (si trova nello stesso percorso menzionato poco fa')
assurdo
Inviato: Monday, December 12, 2011 2:08:05 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
C'era un file sospetto, ho cliccato continua con azione di default Skip. Dopo non ho dovuto riavviare e questo è il report:

14:03:02.0296 3644 TDSS rootkit removing tool 2.6.22.0 Dec 7 2011 13:21:06
14:03:03.0031 3644 ============================================================
14:03:03.0031 3644 Current date / time: 2011/12/12 14:03:03.0031
14:03:03.0031 3644 SystemInfo:
14:03:03.0031 3644
14:03:03.0031 3644 OS Version: 5.1.2600 ServicePack: 3.0
14:03:03.0031 3644 Product type: Workstation
14:03:03.0031 3644 ComputerName: -
14:03:03.0031 3644 UserName: -
14:03:03.0031 3644 Windows directory: C:\WINDOWS
14:03:03.0031 3644 System windows directory: C:\WINDOWS
14:03:03.0031 3644 Processor architecture: Intel x86
14:03:03.0031 3644 Number of processors: 2
14:03:03.0031 3644 Page size: 0x1000
14:03:03.0031 3644 Boot type: Normal boot
14:03:03.0031 3644 ============================================================
14:03:05.0281 3644 Initialize success
14:03:12.0843 3788 ============================================================
14:03:12.0843 3788 Scan started
14:03:12.0843 3788 Mode: Manual;
14:03:12.0843 3788 ============================================================
14:03:14.0359 3788 Abiosdsk - ok
14:03:14.0375 3788 abp480n5 - ok
14:03:14.0421 3788 ACPI (d766e636187b8f240bbfbabcd51eb2c6) C:\WINDOWS\system32\DRIVERS\ACPI.sys
14:03:14.0421 3788 ACPI - ok
14:03:14.0453 3788 ACPIEC (49ac5cd87fbdda62f3e25190019e7627) C:\WINDOWS\system32\drivers\ACPIEC.sys
14:03:14.0546 3788 ACPIEC - ok
14:03:14.0593 3788 adpu160m - ok
14:03:14.0640 3788 aeaudio (e696e749bedcda8b23757b8b5ea93780) C:\WINDOWS\system32\drivers\aeaudio.sys
14:03:14.0781 3788 aeaudio - ok
14:03:14.0890 3788 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
14:03:14.0890 3788 aec - ok
14:03:14.0937 3788 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
14:03:14.0937 3788 AFD - ok
14:03:15.0031 3788 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
14:03:15.0078 3788 agp440 - ok
14:03:15.0125 3788 Aha154x - ok
14:03:15.0140 3788 aic78u2 - ok
14:03:15.0171 3788 aic78xx - ok
14:03:15.0203 3788 AliIde - ok
14:03:15.0218 3788 amsint - ok
14:03:15.0234 3788 asc - ok
14:03:15.0265 3788 asc3350p - ok
14:03:15.0281 3788 asc3550 - ok
14:03:15.0343 3788 Aspi32 (54ab078660e536da72b21a27f56b035b) C:\WINDOWS\system32\drivers\aspi32.sys
14:03:15.0343 3788 Aspi32 - ok
14:03:15.0390 3788 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
14:03:15.0421 3788 AsyncMac - ok
14:03:15.0484 3788 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
14:03:15.0484 3788 atapi - ok
14:03:15.0531 3788 Atdisk - ok
14:03:15.0609 3788 ati2mtag (26fa97bba8105f5ce7ece5111216a22e) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
14:03:15.0671 3788 ati2mtag - ok
14:03:15.0781 3788 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
14:03:15.0843 3788 Atmarpc - ok
14:03:15.0890 3788 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
14:03:15.0906 3788 audstub - ok
14:03:16.0000 3788 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
14:03:16.0000 3788 Beep - ok
14:03:16.0046 3788 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
14:03:16.0093 3788 cbidf2k - ok
14:03:16.0125 3788 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
14:03:16.0187 3788 CCDECODE - ok
14:03:16.0296 3788 cd20xrnt - ok
14:03:16.0359 3788 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
14:03:16.0359 3788 Cdaudio - ok
14:03:16.0406 3788 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
14:03:16.0406 3788 Cdfs - ok
14:03:16.0437 3788 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
14:03:16.0562 3788 Cdrom - ok
14:03:16.0625 3788 Changer - ok
14:03:16.0687 3788 CmdIde - ok
14:03:16.0781 3788 cmuda (e5adeef2c0db43964223f408f1fcc97e) C:\WINDOWS\system32\drivers\cmuda.sys
14:03:16.0796 3788 cmuda - ok
14:03:16.0875 3788 Cpqarray - ok
14:03:16.0906 3788 dac2w2k - ok
14:03:16.0921 3788 dac960nt - ok
14:03:17.0000 3788 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
14:03:17.0031 3788 Disk - ok
14:03:17.0125 3788 dmboot (82bc125a8ed33f5f0e75f2aac1065323) C:\WINDOWS\system32\drivers\dmboot.sys
14:03:17.0171 3788 dmboot - ok
14:03:17.0218 3788 dmio (e959ddc0ea7ac11ee5e5602e2a364310) C:\WINDOWS\system32\drivers\dmio.sys
14:03:17.0265 3788 dmio - ok
14:03:17.0328 3788 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
14:03:17.0375 3788 dmload - ok
14:03:17.0453 3788 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
14:03:17.0453 3788 DMusic - ok
14:03:17.0531 3788 dpti2o - ok
14:03:17.0546 3788 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
14:03:17.0562 3788 drmkaud - ok
14:03:17.0640 3788 eeCtrl (75e8b69f28c813675b16db357f20720f) C:\Programmi\File comuni\Symantec Shared\EENGINE\eeCtrl.sys
14:03:17.0640 3788 eeCtrl - ok
14:03:17.0687 3788 EL2000 (d0c7f8ca97d16263d434d943b4b7004f) C:\WINDOWS\system32\DRIVERS\EL2K_XP.sys
14:03:17.0734 3788 EL2000 - ok
14:03:17.0781 3788 EraserUtilRebootDrv (720b18d76de9e603b626dfcd6f1fca7c) C:\Programmi\File comuni\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys
14:03:17.0796 3788 EraserUtilRebootDrv - ok
14:03:17.0906 3788 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
14:03:17.0906 3788 Fastfat - ok
14:03:17.0953 3788 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
14:03:18.0000 3788 Fdc - ok
14:03:18.0031 3788 Fips (2cfea3326981a18c6baf2bd9be76225b) C:\WINDOWS\system32\drivers\Fips.sys
14:03:18.0031 3788 Fips - ok
14:03:18.0109 3788 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
14:03:18.0328 3788 Flpydisk - ok
14:03:18.0453 3788 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
14:03:18.0500 3788 FltMgr - ok
14:03:18.0578 3788 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
14:03:18.0578 3788 Fs_Rec - ok
14:03:18.0625 3788 Ftdisk (f3269a6ee547ea87b949a1cea4816b38) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
14:03:18.0703 3788 Ftdisk - ok
14:03:18.0765 3788 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
14:03:18.0812 3788 Gpc - ok
14:03:18.0890 3788 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
14:03:18.0937 3788 HidUsb - ok
14:03:19.0000 3788 hpn - ok
14:03:19.0015 3788 hpt3xx - ok
14:03:19.0093 3788 HPZid412 (30ca91e657cede2f95359d6ef186f650) C:\WINDOWS\system32\DRIVERS\HPZid412.sys
14:03:19.0187 3788 HPZid412 - ok
14:03:19.0234 3788 HPZipr12 (efd31afa752aa7c7bbb57bcbe2b01c78) C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
14:03:19.0234 3788 HPZipr12 - ok
14:03:19.0312 3788 HPZius12 (7ac43c38ca8fd7ed0b0a4466f753e06e) C:\WINDOWS\system32\DRIVERS\HPZius12.sys
14:03:19.0343 3788 HPZius12 - ok
14:03:19.0437 3788 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
14:03:19.0437 3788 HTTP - ok
14:03:19.0484 3788 i2omgmt - ok
14:03:19.0515 3788 i2omp - ok
14:03:19.0562 3788 i8042prt (610726e28af55b95043c5c35a727e320) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
14:03:19.0593 3788 i8042prt - ok
14:03:19.0640 3788 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
14:03:19.0734 3788 Imapi - ok
14:03:19.0812 3788 ini910u - ok
14:03:19.0859 3788 IntelIde (027fe9b28fb0f861c181d25923b31e78) C:\WINDOWS\system32\DRIVERS\intelide.sys
14:03:19.0906 3788 IntelIde - ok
14:03:19.0953 3788 intelppm (ebd830a0970c438047006a49c23e287f) C:\WINDOWS\system32\DRIVERS\intelppm.sys
14:03:20.0015 3788 intelppm - ok
14:03:20.0093 3788 ip6fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
14:03:20.0171 3788 ip6fw - ok
14:03:20.0218 3788 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
14:03:20.0250 3788 IpFilterDriver - ok
14:03:20.0343 3788 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
14:03:20.0390 3788 IpInIp - ok
14:03:20.0437 3788 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
14:03:20.0437 3788 IpNat - ok
14:03:20.0484 3788 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
14:03:20.0500 3788 IPSec - ok
14:03:20.0734 3788 irda (aca5e7b54409f9cb5eed97ed0c81120e) C:\WINDOWS\system32\DRIVERS\irda.sys
14:03:20.0734 3788 irda - ok
14:03:21.0031 3788 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
14:03:21.0125 3788 IRENUM - ok
14:03:21.0312 3788 irsir (0501f0b9ab08425f8c0eacbdcc04aa32) C:\WINDOWS\system32\DRIVERS\irsir.sys
14:03:21.0343 3788 irsir - ok
14:03:21.0390 3788 isapnp (0953594beb81cc72fcc62d37921b25a6) C:\WINDOWS\system32\DRIVERS\isapnp.sys
14:03:21.0437 3788 isapnp - ok
14:03:21.0546 3788 Kbdclass (28b6eace513ca7eaba3b809ad4bc274d) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
14:03:21.0578 3788 Kbdclass - ok
14:03:21.0609 3788 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
14:03:21.0625 3788 kmixer - ok
14:03:21.0656 3788 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
14:03:21.0687 3788 KSecDD - ok
14:03:21.0843 3788 lbrtfdc - ok
14:03:21.0906 3788 MagicTune (881dafbfcca3b27fc5a570554db05ba0) C:\WINDOWS\system32\drivers\MTiCtwl.sys
14:03:21.0937 3788 MagicTune - ok
14:03:21.0968 3788 MBAMProtector (69a6268d7f81e53d568ab4e7e991caf3) C:\WINDOWS\system32\drivers\mbam.sys
14:03:21.0968 3788 MBAMProtector - ok
14:03:22.0062 3788 MBAMSwissArmy - ok
14:03:22.0125 3788 MidiSyn (63c34814492aa65fc517b002de77b191) C:\WINDOWS\system32\drivers\MidiSyn.sys
14:03:22.0140 3788 MidiSyn - ok
14:03:22.0187 3788 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
14:03:22.0187 3788 mnmdd - ok
14:03:22.0234 3788 Modem (8cb6636806d76b85fafaee94d75f5129) C:\WINDOWS\system32\drivers\Modem.sys
14:03:22.0281 3788 Modem - ok
14:03:22.0343 3788 Mouclass (e904ebed608055a2bfb824c07f59766c) C:\WINDOWS\system32\DRIVERS\mouclass.sys
14:03:22.0390 3788 Mouclass - ok
14:03:22.0468 3788 mouhid (d7662f0cf5b77bbbe3202716f5bd5318) C:\WINDOWS\system32\DRIVERS\mouhid.sys
14:03:22.0484 3788 mouhid - ok
14:03:22.0546 3788 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
14:03:22.0578 3788 MountMgr - ok
14:03:22.0593 3788 mraid35x - ok
14:03:22.0687 3788 MRENDIS5 (594b9d8194e3f4ecbf0325bd10bbeb05) C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS
14:03:22.0765 3788 MRENDIS5 - ok
14:03:22.0843 3788 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
14:03:22.0843 3788 MRxDAV - ok
14:03:22.0906 3788 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
14:03:22.0921 3788 MRxSmb - ok
14:03:22.0953 3788 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
14:03:22.0968 3788 Msfs - ok
14:03:23.0000 3788 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
14:03:23.0031 3788 MSKSSRV - ok
14:03:23.0109 3788 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
14:03:23.0125 3788 MSPCLOCK - ok
14:03:23.0156 3788 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
14:03:23.0203 3788 MSPQM - ok
14:03:23.0250 3788 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
14:03:23.0250 3788 mssmbios - ok
14:03:23.0281 3788 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
14:03:23.0296 3788 MSTEE - ok
14:03:23.0375 3788 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
14:03:23.0390 3788 Mup - ok
14:03:23.0500 3788 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
14:03:23.0593 3788 NABTSFEC - ok
14:03:23.0828 3788 NAVENG (862f55824ac81295837b0ab63f91071f) C:\PROGRA~1\FILECO~1\SYMANT~1\VIRUSD~1\20111209.003\naveng.sys
14:03:23.0859 3788 NAVENG - ok
14:03:24.0062 3788 NAVEX15 (529d571b551cb9da44237389b936f1ae) C:\PROGRA~1\FILECO~1\SYMANT~1\VIRUSD~1\20111209.003\navex15.sys
14:03:24.0140 3788 NAVEX15 - ok
14:03:24.0500 3788 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
14:03:24.0734 3788 NDIS - ok
14:03:24.0968 3788 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
14:03:25.0046 3788 NdisIP - ok
14:03:25.0140 3788 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
14:03:25.0187 3788 NdisTapi - ok
14:03:25.0218 3788 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
14:03:25.0218 3788 Ndisuio - ok
14:03:25.0234 3788 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
14:03:25.0328 3788 NdisWan - ok
14:03:25.0390 3788 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
14:03:25.0421 3788 NDProxy - ok
14:03:25.0468 3788 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
14:03:25.0468 3788 NetBIOS - ok
14:03:25.0484 3788 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
14:03:25.0500 3788 NetBT - ok
14:03:25.0609 3788 Nokia USB Generic (5abb6b2461c4eb0afdf1bf7f03963d59) C:\WINDOWS\system32\drivers\nmwcdc.sys
14:03:25.0640 3788 Nokia USB Generic - ok
14:03:25.0687 3788 Nokia USB Modem (353c16d21eec1f11306270040b3713c1) C:\WINDOWS\system32\drivers\nmwcdcm.sys
14:03:25.0750 3788 Nokia USB Modem - ok
14:03:25.0828 3788 Nokia USB Phone Parent (f5b1200c75b160c81e7e48cc0489aa5e) C:\WINDOWS\system32\drivers\nmwcd.sys
14:03:25.0875 3788 Nokia USB Phone Parent - ok
14:03:25.0921 3788 Nokia USB Port (353c16d21eec1f11306270040b3713c1) C:\WINDOWS\system32\drivers\nmwcdcj.sys
14:03:25.0937 3788 Nokia USB Port - ok
14:03:25.0984 3788 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
14:03:25.0984 3788 Npfs - ok
14:03:26.0015 3788 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
14:03:26.0062 3788 Ntfs - ok
14:03:26.0156 3788 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
14:03:26.0156 3788 Null - ok
14:03:26.0203 3788 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
14:03:26.0203 3788 NwlnkFlt - ok
14:03:26.0234 3788 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
14:03:26.0265 3788 NwlnkFwd - ok
14:03:26.0312 3788 Parport (4e9408a178b2d955871c2cdd278de3c3) C:\WINDOWS\system32\DRIVERS\parport.sys
14:03:26.0343 3788 Parport - ok
14:03:26.0406 3788 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
14:03:26.0437 3788 PartMgr - ok
14:03:26.0453 3788 ParVdm (0dabef655a444cb1e193626fb1d24b9f) C:\WINDOWS\system32\drivers\ParVdm.sys
14:03:26.0468 3788 ParVdm - ok
14:03:26.0515 3788 PCI (f40a46892afebb0314536b849d57c11e) C:\WINDOWS\system32\DRIVERS\pci.sys
14:03:26.0531 3788 PCI - ok
14:03:26.0546 3788 PCIDump - ok
14:03:26.0562 3788 PCIIde (b2df00d650fd6c4ee781740ed3c8e67f) C:\WINDOWS\system32\DRIVERS\pciide.sys
14:03:26.0578 3788 PCIIde - ok
14:03:26.0625 3788 Pcmcia (815c50f2b1d1562800bdce8be895000e) C:\WINDOWS\system32\drivers\Pcmcia.sys
14:03:26.0671 3788 Pcmcia - ok
14:03:26.0718 3788 PDCOMP - ok
14:03:26.0734 3788 PDFRAME - ok
14:03:26.0765 3788 PDRELI - ok
14:03:26.0781 3788 PDRFRAME - ok
14:03:26.0796 3788 perc2 - ok
14:03:26.0812 3788 perc2hib - ok
14:03:26.0890 3788 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
14:03:26.0968 3788 PptpMiniport - ok
14:03:27.0000 3788 Processor (b479f50e883b2297a5f7f212aaee6f6c) C:\WINDOWS\system32\DRIVERS\processr.sys
14:03:27.0000 3788 Processor - ok
14:03:27.0062 3788 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
14:03:27.0078 3788 PSched - ok
14:03:27.0109 3788 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
14:03:27.0156 3788 Ptilink - ok
14:03:27.0250 3788 PxHelp20 (d86b4a68565e444d76457f14172c875a) C:\WINDOWS\system32\Drivers\PxHelp20.sys
14:03:27.0390 3788 PxHelp20 - ok
14:03:27.0468 3788 ql1080 - ok
14:03:27.0484 3788 Ql10wnt - ok
14:03:27.0500 3788 ql12160 - ok
14:03:27.0546 3788 ql1240 - ok
14:03:27.0562 3788 ql1280 - ok
14:03:27.0609 3788 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
14:03:27.0609 3788 RasAcd - ok
14:03:27.0640 3788 Rasirda (0207d26ddf796a193ccd9f83047bb5fc) C:\WINDOWS\system32\DRIVERS\rasirda.sys
14:03:27.0687 3788 Rasirda - ok
14:03:27.0718 3788 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
14:03:27.0750 3788 Rasl2tp - ok
14:03:27.0843 3788 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
14:03:27.0937 3788 RasPppoe - ok
14:03:27.0984 3788 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
14:03:28.0000 3788 Raspti - ok
14:03:28.0062 3788 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
14:03:28.0078 3788 Rdbss - ok
14:03:28.0093 3788 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
14:03:28.0093 3788 RDPCDD - ok
14:03:28.0140 3788 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
14:03:28.0187 3788 rdpdr - ok
14:03:28.0250 3788 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
14:03:28.0250 3788 RDPWD - ok
14:03:28.0312 3788 redbook (393fc252593323b624b230eca6b85e63) C:\WINDOWS\system32\DRIVERS\redbook.sys
14:03:28.0359 3788 redbook - ok
14:03:28.0437 3788 RimUsb (616eac1b0e48b236a5a9b8ae07fdb81c) C:\WINDOWS\system32\Drivers\RimUsb.sys
14:03:28.0484 3788 RimUsb - ok
14:03:28.0546 3788 RimVSerPort (2c4fb2e9f039287767c384e46ee91030) C:\WINDOWS\system32\DRIVERS\RimSerial.sys
14:03:28.0578 3788 RimVSerPort - ok
14:03:28.0640 3788 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
14:03:28.0671 3788 ROOTMODEM - ok
14:03:28.0750 3788 RTL8023xp (7f0413bdd7d53eb4c7a371e7f6f84df1) C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
14:03:28.0781 3788 RTL8023xp - ok
14:03:28.0828 3788 rtl8139 (d507c1400284176573224903819ffda3) C:\WINDOWS\system32\DRIVERS\RTL8139.SYS
14:03:28.0859 3788 rtl8139 - ok
14:03:28.0937 3788 SAVRT (21ba125b956a513f85f6ab1dd603f917) C:\Programmi\Symantec Client Security\Symantec AntiVirus\savrt.sys
14:03:29.0015 3788 SAVRT - ok
14:03:29.0046 3788 SAVRTPEL (0f8e1c05fc1298f8e7cea935429f66ff) C:\Programmi\Symantec Client Security\Symantec AntiVirus\Savrtpel.sys
14:03:29.0109 3788 SAVRTPEL - ok
14:03:29.0203 3788 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
14:03:29.0234 3788 Secdrv - ok
14:03:29.0296 3788 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
14:03:29.0390 3788 serenum - ok
14:03:29.0453 3788 Serial (fdbd9d64e2e03270021d424f0dccf79d) C:\WINDOWS\system32\DRIVERS\serial.sys
14:03:29.0468 3788 Serial - ok
14:03:29.0546 3788 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
14:03:29.0578 3788 Sfloppy - ok
14:03:29.0640 3788 Simbad - ok
14:03:29.0671 3788 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
14:03:29.0687 3788 SLIP - ok
14:03:29.0750 3788 smwdm (7d9b50329af9fd94b0529282530d2cb7) C:\WINDOWS\system32\drivers\smwdm.sys
14:03:29.0812 3788 smwdm - ok
14:03:29.0875 3788 Sparrow - ok
14:03:29.0968 3788 SPBBCDrv (c30fa11923892a4dbd1c747db8492e8f) C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCDrv.sys
14:03:30.0046 3788 SPBBCDrv - ok
14:03:30.0140 3788 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
14:03:30.0140 3788 splitter - ok
14:03:30.0218 3788 sptd (71e276f6d189413266ea22171806597b) C:\WINDOWS\system32\Drivers\sptd.sys
14:03:30.0218 3788 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: 71e276f6d189413266ea22171806597b
14:03:30.0218 3788 sptd ( LockedFile.Multi.Generic ) - warning
14:03:30.0218 3788 sptd - detected LockedFile.Multi.Generic (1)
14:03:30.0234 3788 sr (618718cae288bf7cbd8fcbab2577d932) C:\WINDOWS\system32\DRIVERS\sr.sys
14:03:30.0281 3788 sr - ok
14:03:30.0359 3788 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
14:03:30.0375 3788 Srv - ok
14:03:30.0421 3788 Stmatm (42543e03f27dfa914d45923fd90b283c) C:\WINDOWS\system32\DRIVERS\stmatm.sys
14:03:30.0484 3788 Stmatm - ok
14:03:30.0609 3788 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
14:03:30.0640 3788 streamip - ok
14:03:30.0671 3788 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
14:03:30.0687 3788 swenum - ok
14:03:30.0703 3788 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
14:03:30.0703 3788 swmidi - ok
14:03:30.0734 3788 symc810 - ok
14:03:30.0765 3788 symc8xx - ok
14:03:30.0796 3788 SYMDNS (cead2401b48546469bd58f61970b083b) C:\WINDOWS\System32\Drivers\SYMDNS.SYS
14:03:30.0812 3788 SYMDNS - ok
14:03:30.0875 3788 SymEvent (9c4737086dee2d302d5d2d69478f6611) C:\Programmi\Symantec\SYMEVENT.SYS
14:03:30.0937 3788 SymEvent - ok
14:03:30.0984 3788 SYMFW (a9a228d3c5c77b81290f00af54167fa0) C:\WINDOWS\System32\Drivers\SYMFW.SYS
14:03:31.0000 3788 SYMFW - ok
14:03:31.0015 3788 SYMIDS (343becd6e01eeed8f5730c00f1f0b748) C:\WINDOWS\System32\Drivers\SYMIDS.SYS
14:03:31.0015 3788 SYMIDS - ok
14:03:31.0093 3788 SYMIDSCO (2133d1f879b280121b0e6a7d34b24a02) C:\PROGRA~1\FILECO~1\SYMANT~1\SymcData\SCFIDS~1\20111208.002\symidsco.sys
14:03:31.0093 3788 SYMIDSCO - ok
14:03:31.0140 3788 SYMNDIS (2e76c7f8eaa9b0854f729b5428210582) C:\WINDOWS\System32\Drivers\SYMNDIS.SYS
14:03:31.0140 3788 SYMNDIS - ok
14:03:31.0187 3788 SYMREDRV (c1bbd1d20acc5ecadca086228ad52bdd) C:\WINDOWS\System32\Drivers\SYMREDRV.SYS
14:03:31.0187 3788 SYMREDRV - ok
14:03:31.0218 3788 SYMTDI (9bf7fddab95f8aabc361774dc844f755) C:\WINDOWS\System32\Drivers\SYMTDI.SYS
14:03:31.0218 3788 SYMTDI - ok
14:03:31.0250 3788 sym_hi - ok
14:03:31.0265 3788 sym_u3 - ok
14:03:31.0312 3788 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
14:03:31.0312 3788 sysaudio - ok
14:03:31.0375 3788 TaurusUsb (7ad534292c5164e00803bc1d55c14957) C:\WINDOWS\system32\DRIVERS\torususb.sys
14:03:31.0468 3788 TaurusUsb - ok
14:03:31.0578 3788 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
14:03:31.0593 3788 Tcpip - ok
14:03:31.0625 3788 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
14:03:31.0671 3788 TDPIPE - ok
14:03:31.0750 3788 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
14:03:31.0750 3788 TDTCP - ok
14:03:31.0812 3788 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
14:03:31.0843 3788 TermDD - ok
14:03:31.0875 3788 TosIde - ok
14:03:31.0921 3788 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
14:03:31.0953 3788 Udfs - ok
14:03:32.0015 3788 ultra - ok
14:03:32.0171 3788 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
14:03:32.0203 3788 Update - ok
14:03:32.0250 3788 USBAAPL (1df89c499bf45d878b87ebd4421d462d) C:\WINDOWS\system32\Drivers\usbaapl.sys
14:03:32.0296 3788 USBAAPL - ok
14:03:32.0375 3788 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
14:03:32.0406 3788 usbaudio - ok
14:03:32.0437 3788 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
14:03:32.0468 3788 usbccgp - ok
14:03:32.0531 3788 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
14:03:32.0546 3788 usbehci - ok
14:03:32.0656 3788 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
14:03:32.0703 3788 usbhub - ok
14:03:32.0765 3788 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
14:03:32.0781 3788 usbprint - ok
14:03:32.0843 3788 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
14:03:32.0875 3788 usbscan - ok
14:03:32.0890 3788 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
14:03:32.0921 3788 USBSTOR - ok
14:03:32.0953 3788 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
14:03:32.0968 3788 usbuhci - ok
14:03:33.0078 3788 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
14:03:33.0078 3788 VgaSave - ok
14:03:33.0093 3788 ViaIde - ok
14:03:33.0125 3788 VolSnap (e46c1b5a56da7da603d09dfcc79ec59e) C:\WINDOWS\system32\drivers\VolSnap.sys
14:03:33.0156 3788 VolSnap - ok
14:03:33.0250 3788 VX1000 (56d237a542fc494f6cd77c480dbf1a15) C:\WINDOWS\system32\DRIVERS\VX1000.sys
14:03:33.0375 3788 VX1000 - ok
14:03:33.0484 3788 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
14:03:33.0484 3788 Wanarp - ok
14:03:33.0578 3788 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys
14:03:33.0640 3788 Wdf01000 - ok
14:03:33.0687 3788 WDICA - ok
14:03:33.0734 3788 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
14:03:33.0734 3788 wdmaud - ok
14:03:33.0843 3788 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\Drivers\wpdusb.sys
14:03:33.0875 3788 WpdUsb - ok
14:03:33.0921 3788 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
14:03:33.0921 3788 WS2IFSL - ok
14:03:34.0000 3788 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
14:03:34.0015 3788 WSTCODEC - ok
14:03:34.0078 3788 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
14:03:34.0125 3788 WudfPf - ok
14:03:34.0187 3788 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
14:03:34.0218 3788 WudfRd - ok
14:03:34.0296 3788 MBR (0x1B8) (828e02d5c4a4fbe53441ee9dbee51f43) \Device\Harddisk0\DR0
14:03:34.0390 3788 \Device\Harddisk0\DR0 - ok
14:03:34.0390 3788 Boot (0x1200) (ae4fc20f9f5a4f4e103dd43a4526348d) \Device\Harddisk0\DR0\Partition0
14:03:34.0390 3788 \Device\Harddisk0\DR0\Partition0 - ok
14:03:34.0421 3788 Boot (0x1200) (df9ce543e9af82c5d4c82e20cb0d367f) \Device\Harddisk0\DR0\Partition1
14:03:34.0421 3788 \Device\Harddisk0\DR0\Partition1 - ok
14:03:34.0421 3788 ============================================================
14:03:34.0421 3788 Scan finished
14:03:34.0421 3788 ============================================================
14:03:34.0437 2068 Detected object count: 1
14:03:34.0437 2068 Actual detected object count: 1
14:04:06.0343 2068 sptd ( LockedFile.Multi.Generic ) - skipped by user
14:04:06.0343 2068 sptd ( LockedFile.Multi.Generic ) - User select action: Skip
francescoamato
Inviato: Monday, December 12, 2011 2:13:04 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Ok il log è pulito.
Scarica OTC by OldTimer sul desktop:
http://oldtimer.geekstogo.com/OTC.exe
doppio clic per eseguirlo
Clicca su CleanUp.
Ti chiederà di riavviare il pc.
Clicca sì.

Start\Esegui\copia e incolla la stringa %temp% clicca su Ok, svuota la cartella temp. (non eliminare la cartella)
Poi:
Provvedi a svuotare del suo contenuto la cartella Prefetch :
clicca su Risorse del Computer
clicca su Disco locale C:
cerca, all’interno delle cartelle che saranno visualizzate la cartella Windows , aprila ed, al suo interno, cerca la cartella Prefetch , la apri ed elimina tutte le voci conservate al suo interno ( non eliminare la cartella)
SVUOTA IL CESTINO


Fai uno ScanDisk , e una deframmentazione del HD.
assurdo
Inviato: Monday, December 12, 2011 2:46:15 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Fatto tutto (sto facendo in questo momento la deframmentazione con JkDefrag)..
assurdo
Inviato: Monday, December 12, 2011 3:09:14 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Ma è giusto che i due programmi (TDSSKiller e OTC) che avevo messo prima nel Desktop siano spariti dopo averli usati?
Comunque ho finito la deframmentazione!
francescoamato
Inviato: Monday, December 12, 2011 5:14:01 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Certamente, OTC si è occupato di eliminare quei 2 programmi automaticamente.
Allega un log di questo programma: http://software.aiutamici.com/software?ID=11175
assurdo
Inviato: Monday, December 12, 2011 5:52:28 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Ho sempre il problema di prima...non riesco ad installare il programma perché mi esce l'errore di windows installer...penso sia dovuto a questo http://support.microsoft.com/default.aspx?scid=kb;it;315346

Service pack 3 da me è già installato (ho guardato su sistema -> proprietà).

che faccio seguo quella guida? mi fido di mettere le mani nei registri? grazie Silenced
assurdo
Inviato: Tuesday, December 13, 2011 3:21:35 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
Ecco (rds.it è un sito di lavoro... l'ho abbreviato):


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15.16.27, on 13/12/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\Programmi\Symantec Client Security\Symantec Client Firewall\ISSVC.exe
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Symantec Client Security\Symantec AntiVirus\DefWatch.exe
C:\Programmi\Java\jre6\bin\jqs.exe
C:\Programmi\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Programmi\Telecom Italia\WanMiniport1st\srvany.exe
C:\Programmi\Telecom Italia\WanMiniport1st\WanMiniport1st_srv.exe
C:\Programmi\NTR global\NTRadmin\ntradmin.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe
C:\Programmi\Symantec Client Security\Symantec Client Firewall\SymSPort.exe
C:\WINDOWS\system32\UAService.exe
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\SYMANT~2\VPTray.exe
C:\Programmi\File comuni\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
C:\WINDOWS\vVX1000.exe
C:\PROGRA~1\ALICET~1\vendors\AliceRE\content\template\DRIVEN~1\syncer\MCCITR~1.EXE
C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\InstallShield\UpdateService\ISUSPM.exe
C:\Programmi\File comuni\Ahead\Lib\NMIndexingService.exe
C:\Programmi\File comuni\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\rundll32.exe
C:\Documents and Settings\G\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\G\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\G\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\G\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\G\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\G\Impostazioni locali\Dati applicazioni\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\msiexec.exe
C:\Documents and Settings\G\Desktop\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=10e4f8cd0000000000000019668b3924&tlver=1.4.19.19&ss=1&affID=17982
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\Programmi\IDM\QUICKfind\PlugIns\IEHelp.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmi\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Programmi\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\SYMANT~2\VPTray.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Programmi\File comuni\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
O4 - HKLM\..\Run: [AliceRE_McciTrayApp] C:\PROGRA~1\ALICET~1\vendors\AliceRE\content\template\DRIVEN~1\syncer\MCCITR~1.EXE
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Programmi\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Programmi\File comuni\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O15 - Trusted Zone: http://mail.rds.it
O15 - Trusted IP range: http://213.82.172.228
O16 - DPF: {0F2AAAE3-7E9E-4B64-AB5D-1CA24C6ACB9C} (IBM Lotus iNotes 8.5 Control) - http://mail.rds.it/dwa85W.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {75AA409D-05F9-4F27-BD53-C7339D4B1D0A} (IBM Lotus iNotes 8.5 Control) - http://mail.rds.it/dwa85W.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553512000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553552000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DAF7E6E6-D53A-439A-B28D-12271406B8A9} (RIM AxLoader) - http://mobileapps.blackberry.com/devicesoftware/AxLoader.cab
O16 - DPF: {E008A543-CEFB-4559-912F-C27C2B89F13B} (Domino Web Access 7 Control) - http://mail.rds.it/dwa7W.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E6BB2089-163F-466B-812A-748096614DFD} (CAScanner Control) - http://cainternetsecurity.net/scanner/cascanner.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{59424F3B-8A29-4028-8D84-563B5C13FB79}: NameServer = 192.168.1.1
O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Programmi\Symantec Client Security\Symantec AntiVirus\DefWatch.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - Unknown owner - C:\Programmi\MAGIX\Common\Database\bin\fbserver.exe (file missing)
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: IS Service (ISSVC) - Symantec Corporation - C:\Programmi\Symantec Client Security\Symantec Client Firewall\ISSVC.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Programmi\Java\jre6\bin\jqs.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Programmi\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NBService - Nero AG - C:\Programmi\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Network WanMiniport First Position - Unknown owner - C:\Programmi\Telecom Italia\WanMiniport1st\srvany.exe
O23 - Service: NMIndexingService - Nero AG - C:\Programmi\File comuni\Ahead\Lib\NMIndexingService.exe
O23 - Service: NTRadmin - Unknown owner - C:\Programmi\NTR global\NTRadmin\ntradmin.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Programmi\Symantec Client Security\Symantec AntiVirus\SavRoam.exe
O23 - Service: ServiceLayer - Nokia. - C:\Programmi\File comuni\PCSuite\Services\ServiceLayer.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Programmi\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Programmi\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec SecurePort (SymSecurePort) - Symantec Corporation - C:\Programmi\Symantec Client Security\Symantec Client Firewall\SymSPort.exe
O23 - Service: SecuROM User Access Service (UserAccess) - Unknown owner - C:\WINDOWS\system32\UAService.exe

--
End of file - 11510 bytes
francescoamato
Inviato: Tuesday, December 13, 2011 3:29:53 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Non capisco, dove ti è stato detto di mettere le mani nel registro?


Avvia hijackthis, metti la spunta alle voci che andrò ad elencarti e con tutte le applicazioni chiuse e disconnesso da Internet,premi su "fix checked ":

Commenta:
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=10e4f8cd0000000000000019668b3924&tlver=1.4.19.19&ss=1&affID=17982
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Programmi\File comuni\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
O4 - HKLM\..\Run: [AliceRE_McciTrayApp] C:\PROGRA~1\ALICET~1\vendors\AliceRE\content\template\DRIVEN~1\syncer\MCCITR~1.EXE
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Programmi\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Programmi\File comuni\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')


Se non riscontri problemi abbiamo finito.

:)
assurdo
Inviato: Tuesday, December 13, 2011 3:35:31 PM

Rank: AiutAmico

Iscritto dal : 12/10/2011
Posts: 94
No no quello del registro è un'altra cosa. Poi sono stato capace di avviare Hijackthis.
Ma prima di fixare entro in modalità provvisoria giusto?
francescoamato
Inviato: Tuesday, December 13, 2011 3:46:06 PM
Rank: AiutAmico

Iscritto dal : 11/19/2011
Posts: 78
Non è necessario..

Francesco
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.