tanto che quello va... io posto il risultato di auto start...
premetto avs ha forse eliminato qualcosa di importante perchè magicamente il tutto ha ricominciato ad andare a utilizzo consono (220 mb e non 350/400mb),
ora non so se è stato
1) l'antivirus
2) il pugno che gli ho tirato :mad:
3)il fatto che ad un certo punto ha deciso di spegnersi e io ho rifiutato in avvio lo scandisk.. ...
cmq
auto start :
GMER 1.0.10.10122 - http://www.gmer.net
Autostart 2006-08-23 17:45:43
Windows 5.1.2600 Service Pack 2
HKLM\Software\Microsoft\Windows\CurrentVersion\Run@ = /*file not found*/
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved@{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} /*Autoplay for SlideShow*/ =
HKLM\SYSTEM\CurrentControlSet\Services\WebKbt /*WebKbt*/@ = "\\?\C:\Programmi\File comuni\System\com4.exe"
HKLM\Software\Microsoft\Windows\CurrentVersion\Run >>>
@PowerKey"C:\Program Files\Launch Manager\PowerKey.exe" = "C:\Program Files\Launch Manager\PowerKey.exe"
@Wbutton"C:\Program Files\Launch Manager\Wbutton.exe" = "C:\Program Files\Launch Manager\Wbutton.exe"
@aol"C:\Programmi\AOL\Active Virus Shield\avp.exe" = "C:\Programmi\AOL\Active Virus Shield\avp.exe"
HKLM\SYSTEM\CurrentControlSet\Services\AVP /*Active Virus Shield*/@ = "C:\Programmi\AOL\Active Virus Shield\avp.exe" -r
HKLM\Software\Microsoft\Windows\CurrentVersion\Run@!ewido = "C:\Programmi\ewido anti-spyware 4.0\ewido.exe" /minimized
HKCU\Software\Microsoft\Windows\CurrentVersion\Run@MSMSGS = "C:\Programmi\Messenger\msmsgs.exe" /background
HKLM\Software\Microsoft\Internet Explorer\Main@Local Page = %SystemRoot%\system32\blank.htm
HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems@Windows = %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
HKLM\Software\Microsoft\Windows\CurrentVersion\Run@KernelFaultCheck = %systemroot%\system32\dumprep 0 -k
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved@{692F0339-CBAA-47e6-B5B5-3B84DB604E87} /*Extensions Manager Folder*/ = %SystemRoot%\system32\extmgr.dll
HKLM\SYSTEM\CurrentControlSet\Services\Fax /*Fax*/@ = %systemroot%\system32\fxssvc.exe
HKLM\Software\Classes\PROTOCOLS\Handler\mhtml@CLSID = %SystemRoot%\system32\inetcomm.dll
HKLM\SYSTEM\CurrentControlSet\Services\ >>>
NVSvc /*NVIDIA Display Driver Service*/@ = %SystemRoot%\system32\nvsvc32.exe
Spooler /*Spooler di stampa*/@ = %SystemRoot%\system32\spoolsv.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved >>>
@{596AB062-B4D2-4215-9F74-E9109B0A8153} /*Pagina proprietà versioni precedenti*/%SystemRoot%\system32\twext.dll = %SystemRoot%\system32\twext.dll
@{9DB7A13C-F208-4981-8353-73CC61AE2783} /*Versioni precedenti*/%SystemRoot%\system32\twext.dll = %SystemRoot%\system32\twext.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows@AppInit_DLLs = \\?\C:\WINDOWS\system32\lpt5.vnv
HKLM\SYSTEM\CurrentControlSet\Services\anbmService /*Notebook Manager Service*/@ = C:\Acer\eManager\anbmServ.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run >>>
@CtrlVolC:\Program Files\Launch Manager\CtrlVol.exe = C:\Program Files\Launch Manager\CtrlVol.exe
@LManagerC:\Program Files\Launch Manager\HotkeyApp.exe = C:\Program Files\Launch Manager\HotkeyApp.exe
@LaunchApC:\Program Files\Launch Manager\LaunchAp.exe = C:\Program Files\Launch Manager\LaunchAp.exe
@LMgrOSDC:\Program Files\Launch Manager\OSDCtrl.exe = C:\Program Files\Launch Manager\OSDCtrl.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects >>>
@{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll = C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
@{311F9DE8-6126-4eee-B15F-65CBB3B4F9F6}C:\Programmi\AOL Security Toolbar\AOL_security_toolbar.dll = C:\Programmi\AOL Security Toolbar\AOL_security_toolbar.dll
HKLM\Software\Classes\*\shellex\ContextMenuHandlers\Kaspersky Anti-Virus@{dd230880-495a-11d1-b064-008048ec2fc5} = C:\Programmi\AOL\Active Virus Shield\shellex.dll
HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\Kaspersky Anti-Virus@{dd230880-495a-11d1-b064-008048ec2fc5} = C:\Programmi\AOL\Active Virus Shield\shellex.dll
HKLM\Software\Classes\*\shellex\ContextMenuHandlers\ewido anti-spyware@{8934FCEF-F5B8-468f-951F-78A921CD3920} = C:\Programmi\ewido anti-spyware 4.0\context.dll
HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\ewido anti-spyware@{8934FCEF-F5B8-468f-951F-78A921CD3920} = C:\Programmi\ewido anti-spyware 4.0\context.dll
HKLM\SYSTEM\CurrentControlSet\Services\ewido anti-spyware 4.0 guard /*ewido anti-spyware 4.0 guard*/@ = C:\Programmi\ewido anti-spyware 4.0\guard.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks@{57B86673-276A-48B2-BAE7-C6DBB3020EB8} = C:\Programmi\ewido anti-spyware 4.0\shellexecutehook.dll
HKLM\Software\Classes\PROTOCOLS\Filter\text/xml@CLSID = C:\Programmi\File comuni\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved >>>
@{42042206-2D85-11D3-8CFF-005004838597} /*Microsoft Office HTML Icon Handler*/C:\Programmi\Microsoft Office\OFFICE11\msohev.dll = C:\Programmi\Microsoft Office\OFFICE11\msohev.dll
@{2F603045-309F-11CF-9774-0020AFD0CFF6} /*Synaptics Control Panel*/C:\Programmi\Synaptics\SynTP\SynTPCpl.dll = C:\Programmi\Synaptics\SynTP\SynTPCpl.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Run >>>
@SynTPEnhC:\Programmi\Synaptics\SynTP\SynTPEnh.exe = C:\Programmi\Synaptics\SynTP\SynTPEnh.exe
@SynTPLprC:\Programmi\Synaptics\SynTP\SynTPLpr.exe = C:\Programmi\Synaptics\SynTP\SynTPLpr.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved@{B41DB860-8EE4-11D2-9906-E49FADC173CA} /*WinRAR shell extension*/ = C:\Programmi\WinRAR\rarext.dll
HKLM\Software\Classes\*\shellex\ContextMenuHandlers\WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Programmi\WinRAR\rarext.dll
HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Programmi\WinRAR\rarext.dll
HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Programmi\WinRAR\rarext.dll
HKLM\Software\Classes\PROTOCOLS\Handler\ >>>
mso-offdap@CLSID = C:\PROGRA~1\FILECO~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
mso-offdap11@CLSID = C:\PROGRA~1\FILECO~1\MICROS~1\WEBCOM~1\11\OWC11.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved@{BDEADF00-C265-11D0-BCED-00A0C90AB50F} /*Cartelle Web*/ = C:\PROGRA~1\FILECO~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Run@preload = C:\Windows\RUNXMLPL.exe
HKCU\Software\Microsoft\Internet Explorer\Main@Local Page = C:\WINDOWS\system32\blank.htm
HKCU\Software\Microsoft\Windows\CurrentVersion\
[email protected] = C:\WINDOWS\system32\ctfmon.exe
HKLM\Software\Classes\PROTOCOLS\Handler\ >>>
its@CLSID = C:\WINDOWS\system32\itss.dll
ms-its@CLSID = C:\WINDOWS\system32\itss.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon@DLLName = C:\WINDOWS\system32\klogon.dll
HKLM\Software\Classes\PROTOCOLS\Handler\ >>>
dvd@CLSID = C:\WINDOWS\system32\msvidctl.dll
tv@CLSID = C:\WINDOWS\system32\msvidctl.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved >>>
@{A70C977A-BF00-412C-90B7-034C51DA2439} /*NvCpl DesktopContext Class*/C:\WINDOWS\system32\nvcpl.dll = C:\WINDOWS\system32\nvcpl.dll
@{FFB699E0-306A-11d3-8BD1-00104B6F7516} /*Play on my TV helper*/C:\WINDOWS\system32\nvcpl.dll = C:\WINDOWS\system32\nvcpl.dll
@{1CDB2949-8F65-4355-8456-263E7C208A5D} /*Desktop Explorer*/C:\WINDOWS\system32\nvshell.dll = C:\WINDOWS\system32\nvshell.dll
@{1E9B04FB-F9E5-4718-997B-B8DA88302A47} /*Desktop Explorer Menu*/C:\WINDOWS\system32\nvshell.dll = C:\WINDOWS\system32\nvshell.dll
@{1E9B04FB-F9E5-4718-997B-B8DA88302A48} /*nView Desktop Context Menu*/C:\WINDOWS\system32\nvshell.dll = C:\WINDOWS\system32\nvshell.dll
HKCU\Control Panel\
[email protected] = C:\WINDOWS\system32\ssmypics.scr
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon@Userinit = C:\WINDOWS\system32\userinit.exe,
HKLM\SYSTEM\CurrentControlSet\Services\UMWdf /*Windows User Mode Driver Framework*/@ = C:\WINDOWS\system32\wdfmgr.exe
HKLM\Software\Classes\PROTOCOLS\Handler\wia@CLSID = C:\WINDOWS\system32\wiascr.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved@{42071714-76d4-11d1-8b24-00a0c9068ff3} /*Estensione panoramica video del Pannello di controllo*/ = deskpan.dll /*file not found*/
HKLM\Software\Microsoft\Internet Explorer\Main@Default_Page_URL = http://global.acer.com/
HKCU\Software\Microsoft\Internet Explorer\Main@Start Page = http://www.libero.it/
HKLM\Software\Microsoft\Internet Explorer\Main@Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKLM\Software\Microsoft\Windows\CurrentVersion\Run >>>
@nwiznwiz.exe /install = nwiz.exe /install
@NvCplDaemonRUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup = RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
@VTTimerVTTimer.exe = VTTimer.exe
@VTTraypVTtrayp.exe = VTtrayp.exe
---- EOF - GMER 1.0.10 ----