View Full Version : Troyan che ricompare sempre...
jacoscar
13-11-2006, 12:13
Ho Karsperky antivirus ed ogni giorno mi salta fuori l'avviso che dice:
Rilevato
Programma trojan: Trojan-Proxy.Win32.Horst.me
Il file:
C:\...\All Users\Documenti\setup.exe
Io faccio sempre "elimina" ma il giorno dopo ricompare di nuovo...
Che posso fare?
wizard1993
13-11-2006, 12:23
Ho Karsperky antivirus ed ogni giorno mi salta fuori l'avviso che dice:
Rilevato
Programma trojan: Trojan-Proxy.Win32.Horst.me
Il file:
C:\...\All Users\Documenti\setup.exe
Io faccio sempre "elimina" ma il giorno dopo ricompare di nuovo...
Che posso fare?
prova a fare una scan in modalità provvisoria
dammi il percorso completo
tnx
SkunkWorks 68
13-11-2006, 12:38
Ovviamente il ripristino configurazione l'hai disabilitato...,se hai XP...
Ciao
jacoscar
13-11-2006, 13:35
Ovviamente il ripristino configurazione l'hai disabilitato...,se hai XP...
Ciao
no, perché?
SkunkWorks 68
13-11-2006, 13:38
no, perché?
Disabilita il ripristino e prova a rifare lo scan da provvisoria.
http://sicurezza.html.it/articoli/leggi/950/come-rimuovere-un-virus-dal-proprio-computer/
Ciao
Soloarte
13-11-2006, 19:25
Ho Karsperky antivirus ed ogni giorno mi salta fuori l'avviso che dice:
Rilevato
Programma trojan: Trojan-Proxy.Win32.Horst.me
Il file:
C:\...\All Users\Documenti\setup.exe
Io faccio sempre "elimina" ma il giorno dopo ricompare di nuovo...
Che posso fare?
Dagli un colpetto di A2...asquared...la versione trial...e vedi che si risolve.
Ciao
wizard1993
13-11-2006, 19:30
Dagli un colpetto di A2...asquared...la versione trial...e vedi che si risolve.
Ciao
buon programma anche quello
jacoscar
13-11-2006, 20:09
Allora: ho fatto la scansione con kaspersky in modalità provvisoria
Ho iniziato alle 14; ho finito 5 minuti fa, anzi l'ho fermato io perché era da 1 ora al 99% e non avevo più voglia di aspettare.
Ma non sono tante 5 ore? mah....
Mi ha trovato 1 virus con lo stesso nome (setup.exe) però in una cartella differente e soprattutto sull'altro hard-disk (D); dovrebbe averlo eliminato
jacoscar
14-11-2006, 10:41
vi posto anche il log di hijackthis, sapete dirmi se c'è qualcosa di strano?
Logfile of HijackThis v1.99.1
Scan saved at 10.37.52, on 14/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Acer\eManager\anbmServ.exe
C:\WINDOWS\system32\hkcmd.exe
C:\acer\epm\epm-dm.exe
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\Programmi\Launch Manager\QtZgAcer.EXE
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Programmi\a-squared Anti-Malware\a2guard.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Spamihilator\spamihilator.exe
C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programmi\Creative\Shared Files\CamTray.exe
C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Programmi\GetRight\getright.exe
C:\PROGRA~1\FILECO~1\Nokia\MPAPI\MPAPI3s.exe
C:\Programmi\File comuni\PCSuite\Services\ServiceLayer.exe
C:\WINDOWS\System32\alg.exe
C:\Programmi\acer\eRecovery\Monitor.exe
C:\Programmi\Raxco\PerfectDisk\PDAgent.exe
C:\Programmi\Raxco\PerfectDisk\PDEngine.exe
C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Programmi\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Scarpellini\Desktop\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://global.acer.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://global.acer.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://wpad.polimi.it/wpad.dat
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 131.175.12.65:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programmi\GetRight\xx2gr.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [EPM-DM] c:\acer\epm\epm-dm.exe
O4 - HKLM\..\Run: [ePowerManagement] C:\Acer\ePM\ePM.exe boot
O4 - HKLM\..\Run: [LManager] C:\Programmi\Launch Manager\QtZgAcer.EXE
O4 - HKLM\..\Run: [eRecoveryService] C:\Windows\System32\Check.exe
O4 - HKLM\..\Run: [kav] "C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [EPSON Stylus DX4800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [a-squared] "C:\Programmi\a-squared Anti-Malware\a2guard.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Spamihilator] "C:\Programmi\Spamihilator\spamihilator.exe"
O4 - HKCU\..\Run: [PcSync] C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [Creative WebCam Tray] C:\Programmi\Creative\Shared Files\CamTray.exe
O4 - Global Startup: GetRight - Tray Icon.lnk = C:\Programmi\GetRight\getright.exe
O8 - Extra context menu item: Download with GetRight - C:\Programmi\GetRight\GRdownload.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - C:\Programmi\GetRight\GRbrowse.htm
O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Programmi\File comuni\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Notebook Manager Service (anbmService) - OSA Technologies Inc. - C:\Acer\eManager\anbmServ.exe
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: SQL Server (SQLEXPRESS) (MSSQL$SQLEXPRESS) - Unknown owner - C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS (file missing)
O23 - Service: PDAgent - Raxco Software, Inc. - C:\Programmi\Raxco\PerfectDisk\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Programmi\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: ServiceLayer - Nokia. - C:\Programmi\File comuni\PCSuite\Services\ServiceLayer.exe
jacoscar
14-11-2006, 10:44
...e quello di StartupList
StartupList report, 14/11/2006, 10.43.21
StartupList version 2.02.0
Started from: C:\Documents and Settings\Scarpellini\Desktop\startuplist202\StartupList.EXE
Detected: Windows XP SP2 (WinNT 5.01.2600)
Logged on as 'Scarpellini' to 'ACERTM'
* Using default options (see end of log for possible options)
==================================================
Running processes (44):
[C:\Acer\eManager\anbmServ.exe (38)]
C:\Acer\eManager\cpuid_dll.dll
C:\Acer\eManager\IpmiTrans.dll
C:\Acer\eManager\NBAPI.dll
C:\Acer\eManager\SMBIOSAPI.dll
C:\Acer\eManager\SYSAPI.dll
C:\WINDOWS\system32\advapi32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\imm32.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\NETAPI32.dLL
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\olepro32.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\shell32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\user32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\version.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\winspool.drv
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.DLL
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\acer\epm\epm-dm.exe (26)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\powrprof.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Documents and Settings\Scarpellini\Desktop\HijackThis\HijackThis.exe (30)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\asycfilt.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSVBVM60.DLL
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\netapi32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\shell32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VB6IT.DLL
C:\WINDOWS\system32\VERSION.DLL
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Documents and Settings\Scarpellini\Desktop\startuplist202\StartupList.exe (46)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\asycfilt.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCOMCTL.OCX
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSVBVM60.DLL
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VB6IT.DLL
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wbem\fastprox.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\system32\wbem\wbemdisp.dll
C:\WINDOWS\system32\wbem\wbemprox.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\wmiutils.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\PROGRA~1\FILECO~1\Nokia\MPAPI\MPAPI3s.exe (25)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\File comuni\Nokia\MPAPI\MPAPIps.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\xpsp2res.dll
[C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE (77)]
C:\PROGRA~1\Nokia\NOKIAP~1\Lang\LaunchApplication_ita.NLR
C:\PROGRA~1\Nokia\NOKIAP~1\PCSCM.dll
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\File comuni\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
C:\Programmi\File comuni\PCSuite\ConfServer\ConfServer.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\klscav.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\params.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\pr_remote.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prkernel.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\pxstub.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scr_ch_pg.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\tempfile.ppl
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\ATL71.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\ConnAPI.DLL
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\jscript.dll
C:\WINDOWS\system32\jsproxy.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\mlang.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSIMG32.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\MSVCP71.dll
C:\WINDOWS\system32\MSVCR71.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\System32\mswsock.dll
C:\WINDOWS\system32\msxml3.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\OLEPRO32.DLL
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RASAPI32.DLL
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\sensapi.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\wsock32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\acer\eRecovery\Monitor.exe (48)]
C:\Programmi\acer\eRecovery\BlockDll.dll
C:\Programmi\acer\eRecovery\CdrMmc32.dll
C:\Programmi\acer\eRecovery\Cdrw32.dll
C:\Programmi\acer\eRecovery\CdrwEx32.dll
C:\Programmi\acer\eRecovery\cximage.dll
C:\Programmi\acer\eRecovery\Data32.dll
C:\Programmi\acer\eRecovery\DataEx32.dll
C:\Programmi\acer\eRecovery\extResource.dll
C:\Programmi\acer\eRecovery\ImagFile.dll
C:\Programmi\acer\eRecovery\MFC71.DLL
C:\Programmi\acer\eRecovery\MFC71U.DLL
C:\Programmi\acer\eRecovery\MSVCP71.dll
C:\Programmi\acer\eRecovery\MSVCR71.dll
C:\Programmi\acer\eRecovery\NtiAspi.dll
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MFC71ITA.DLL
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEACC.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
[C:\Programmi\a-squared Anti-Malware\a2guard.exe (38)]
C:\Programmi\a-squared Anti-Malware\a2kernel.dll
C:\PROGRAMMI\A-SQUARED ANTI-MALWARE\a2update.dll
C:\Programmi\a-squared Anti-Malware\core.dll
C:\Programmi\a-squared Anti-Malware\engine.dll
C:\Programmi\a-squared Anti-Malware\unrar.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\olepro32.dll
C:\WINDOWS\system32\PSAPI.dll
C:\WINDOWS\system32\RICHED20.DLL
C:\WINDOWS\system32\RICHED32.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\shell32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\version.dll
C:\WINDOWS\system32\winspool.drv
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\ws2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wsock32.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Creative\Shared Files\CamTray.exe (37)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\Creative\Shared Files\CamRes.crl
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CFGMGR32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\CtCamMgr.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MFC42.DLL
C:\WINDOWS\system32\MFC42LOC.DLL
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\MSVFW32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\qcap.dll
C:\WINDOWS\system32\quartz.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE (24)]
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\1040\mdmui.dll
C:\Programmi\File comuni\Microsoft Shared\VS7Debug\csm.dll
C:\Programmi\File comuni\Microsoft Shared\VS7Debug\msdbg2.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\psapi.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\File comuni\PCSuite\Services\ServiceLayer.exe (61)]
C:\Programmi\File comuni\PCSuite\ConfServer\ConfServer.dll
C:\Programmi\File comuni\PCSuite\Services\NclDS.dll
C:\Programmi\File comuni\PCSuite\Services\NclSync.dll
C:\Programmi\File comuni\PCSuite\Transports\NCLIrDAMM.dll
C:\Programmi\File comuni\PCSuite\Transports\NclMSBTMM.dll
C:\Programmi\File comuni\PCSuite\Transports\NCLRSMM.dll
C:\Programmi\File comuni\PCSuite\Transports\NCLUSBMM.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\ATL71.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\ConnAPI.DLL
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DEVMGR.DLL
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\irprops.cpl
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\mlang.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSVCP71.dll
C:\WINDOWS\system32\MSVCR71.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\msxml3.dll
C:\WINDOWS\system32\NclTools.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WMI.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\System32\wshBth.dll
C:\WINDOWS\System32\wshirda.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\GetRight\getright.exe (67)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\GetRight\ALClient.dll
C:\WINDOWS\system32\ACTIVEDS.dll
C:\WINDOWS\system32\adsldpc.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\appHelp.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\browseui.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\CRYPTUI.dll
C:\WINDOWS\System32\CSCDLL.dll
C:\WINDOWS\System32\cscui.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\inetmib1.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LINKINFO.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MPRAPI.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSVBVM60.DLL
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\System32\mswsock.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ntshrui.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\oledlg.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\shdocvw.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\snmpapi.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\ws2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll
[C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe (145)]
C:\Programmi\File comuni\Microsoft Shared\office11\mso.dll
C:\Programmi\File comuni\System\directdb.dll
C:\Programmi\File comuni\SYSTEM\MSMAPI\1040\contab32.dll
C:\Programmi\File comuni\SYSTEM\MSMAPI\1040\MAPIR.DLL
C:\Programmi\File comuni\SYSTEM\MSMAPI\1040\MSMAPI32.DLL
C:\Programmi\File comuni\SYSTEM\MSMAPI\1040\mspst32.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\arj.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avlib.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avp1.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avp3info.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\AVPGS.PPL
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avpmgr.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avs.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avspm.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\base64.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\base64p.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\baseinstaller.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\bl.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\btdisk.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\buffer.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\cab.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\CKAHComm.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\ckahrule.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\CKAHUM.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\crpthlpr.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\diff.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\dtreg.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\execinstaller.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\fsdrvplgn.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\FSSync.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\ftpsession.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\hashcont.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\hashmd5.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\hccmp.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\httpanlz.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\httpscan.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\httpsession.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\icheckersa.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\ichk2.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\imapprotocoller.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\iwgen.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\klaveng.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\klavsrch.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\klavstrm.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\l_llio.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\lha.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\lic60.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\mc.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\mdb.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\memmodsc.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\memscan.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\minizip.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\msoe.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\ndetect.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\netsession.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\nfio.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\nntpprotocoller.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\ntfsstrm.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\ntlm.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\oas.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\ods.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\params.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\pop3protocoller.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\pr_remote.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prkernel.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\procmon.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\productinfo.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\prutil.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\pxstub.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\qb.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\rar.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\report.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\sc.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\schedule.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\sfdb.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\socket.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\tempfile.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\thpimpl.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\timer.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\tm.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\trafficmonitor2.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\uniarc.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\updatecategory.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\updateinfo.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\updateinstaller.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\updateobjectinfo.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\updater.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\updater2005.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\wdiskio.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\winreg.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\wmihlpr.ppl
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\credui.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\fltlib.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\inetcomm.dll
C:\WINDOWS\system32\inetres.dll
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MAPI32.dll
C:\WINDOWS\system32\mlang.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSOERT2.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\psapi.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\security.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\userenv.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wininet.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\wtsapi32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe (45)]
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\AVPGS.PPL
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\avpgui.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\basegui.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\fsdrvplgn.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\FSSync.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\nfio.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\params.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\pr_remote.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prkernel.ppl
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\prloader.dll
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\pxstub.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\qb.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\thpimpl.ppl
c:\programmi\kaspersky lab\kaspersky anti-virus 6.0\winreg.ppl
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\OLEPRO32.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\userenv.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wtsapi32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Launch Manager\QtZgAcer.EXE (46)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\Launch Manager\CDRomUtl.dll
C:\Programmi\Launch Manager\ComFnUtl.dll
C:\Programmi\Launch Manager\DialCnt.Dll
C:\Programmi\Launch Manager\LgKCUtl.Dll
C:\Programmi\Launch Manager\MixerUtl.dll
C:\Programmi\Launch Manager\MMDUtl.dll
C:\Programmi\Launch Manager\OSDUtl.dll
C:\Programmi\Launch Manager\RgnMaker.dll
C:\Programmi\Launch Manager\SzUPFUtl.dll
C:\Programmi\Launch Manager\Wnd2File.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\midimap.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\msacm32.drv
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wdmaud.drv
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WTSAPI32.DLL
C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
[C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE (42)]
C:\PROGRA~1\FILECO~1\MICROS~1\SMARTT~1\1040\stintl.dll
C:\PROGRA~1\FILECO~1\MICROS~1\SMARTT~1\FNAME.DLL
C:\PROGRA~1\FILECO~1\MICROS~1\SMARTT~1\INTLNAME.DLL
C:\PROGRA~1\FILECO~1\MICROS~1\SMARTT~1\METCONV.DLL
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\File comuni\Microsoft Shared\office11\mso.dll
C:\Programmi\File comuni\Microsoft Shared\office11\riched20.dll
C:\Programmi\Microsoft Office\OFFICE11\1040\envelopr.dll
C:\Programmi\Microsoft Office\OFFICE11\ENVELOPE.DLL
C:\Programmi\Microsoft Office\OFFICE11\SENDTO.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\mscms.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEACC.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FMAIADE.DLL
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FUICADE.DLL
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\Comctl32.dll
[C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (47)]
C:\Programmi\Microsoft SQL Server\90\Shared\instapi.dll
C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\opends60.dll
C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\Resources\1033\sqlevn70.RLL
C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\SQLOS.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\AUTHZ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\cryptdll.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\dssenh.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kerberos.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCOREE.DLL
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\MSWSOCK.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ntdsapi.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\psapi.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\schannel.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\security.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\MSVCP80.dll
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\MSVCR80.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Mozilla Firefox\firefox.exe (78)]
C:\Documents and Settings\Scarpellini\Dati applicazioni\Mozilla\Firefox\Profiles\53u8njyc.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbar.dll
C:\Documents and Settings\Scarpellini\Dati applicazioni\Mozilla\Firefox\Profiles\53u8njyc.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metrics.dll
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\Mozilla Firefox\components\jar50.dll
C:\Programmi\Mozilla Firefox\js3250.dll
C:\Programmi\Mozilla Firefox\nspr4.dll
C:\Programmi\Mozilla Firefox\nss3.dll
C:\Programmi\Mozilla Firefox\nssckbi.dll
C:\Programmi\Mozilla Firefox\plc4.dll
C:\Programmi\Mozilla Firefox\plds4.dll
C:\Programmi\Mozilla Firefox\plugins\NPSWF32.dll
C:\Programmi\Mozilla Firefox\smime3.dll
C:\Programmi\Mozilla Firefox\softokn3.dll
C:\Programmi\Mozilla Firefox\ssl3.dll
C:\Programmi\Mozilla Firefox\xpcom.dll
C:\Programmi\Mozilla Firefox\xpcom_compat.dll
C:\Programmi\Mozilla Firefox\xpcom_core.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\midimap.dll
C:\WINDOWS\system32\mlang.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\msacm32.drv
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\msimg32.dll
C:\WINDOWS\system32\msimtf.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RASAPI32.DLL
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\schannel.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\sensapi.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wdmaud.drv
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll
[C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe (53)]
C:\PROGRA~1\Nokia\NOKIAP~1\Synch.dll
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\File comuni\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
C:\Programmi\File comuni\Nokia\Adapters\Nclaeo.dsc
C:\Programmi\File comuni\Nokia\Adapters\NclSet.dll
C:\Programmi\File comuni\Nokia\MPAPI\MPAPIps.dll
C:\Programmi\File comuni\PCSuite\ConfServer\ConfServer.dll
C:\Programmi\Nokia\Nokia PC Suite 6\CommonSelectDevice.dll
C:\PROGRAMMI\NOKIA\NOKIA PC SUITE 6\Lang\PcSync2_ita.nlr
C:\Programmi\Nokia\Nokia PC Suite 6\PCSCM.dll
C:\Programmi\Nokia\Nokia PC Suite 6\PCSL.dll
C:\PROGRAMMI\NOKIA\NOKIA PC SUITE 6\Resource\PcSync2_Nokia.ngr
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\ATL71.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\ConnAPI.DLL
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MFC71ITA.DLL
C:\WINDOWS\system32\MFC71U.DLL
C:\WINDOWS\system32\mlang.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSIMG32.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\MSVCP71.dll
C:\WINDOWS\system32\MSVCR71.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\msxml3.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\OLEPRO32.DLL
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Raxco\PerfectDisk\PDAgent.exe (45)]
C:\Programmi\File comuni\Raxco\AutoUpdps.dll
C:\Programmi\Raxco\PerfectDisk\MSVCP71.dll
C:\Programmi\Raxco\PerfectDisk\MSVCR71.dll
C:\Programmi\Raxco\PerfectDisk\PDCommon.dll
C:\Programmi\Raxco\PerfectDisk\PDDb.dll
C:\Programmi\Raxco\PerfectDisk\PDEngineps.dll
C:\Programmi\Raxco\PerfectDisk\PDLangEN.dll
C:\Programmi\Raxco\PerfectDisk\pdutils.dll
C:\Programmi\Raxco\PerfectDisk\sqlite3.dll
C:\WINDOWS\system32\ACTIVEDS.dll
C:\WINDOWS\system32\adsldpc.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Raxco\PerfectDisk\PDEngine.exe (43)]
C:\Programmi\Raxco\PerfectDisk\MSVCP71.dll
C:\Programmi\Raxco\PerfectDisk\MSVCR71.dll
C:\Programmi\Raxco\PerfectDisk\PDCommon.dll
C:\Programmi\Raxco\PerfectDisk\PDDb.dll
C:\Programmi\Raxco\PerfectDisk\PDEngineps.dll
C:\Programmi\Raxco\PerfectDisk\PDLangEN.dll
C:\Programmi\Raxco\PerfectDisk\sqlite3.dll
C:\WINDOWS\system32\ACTIVEDS.dll
C:\WINDOWS\system32\adsldpc.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHFOLDER.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\Programmi\Spamihilator\spamihilator.exe (58)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\Spamihilator\boost_thread-vc71-mt-1_32.dll
C:\Programmi\Spamihilator\LIBEAY32.dll
C:\Programmi\Spamihilator\plugins\attachmentfilter.dll
C:\Programmi\Spamihilator\plugins\dccfilter.dll
C:\Programmi\Spamihilator\plugins\imagefilter.dll
C:\Programmi\Spamihilator\plugins\newsletter.dll
C:\Programmi\Spamihilator\plugins\pop3notifier.dll
C:\Programmi\Spamihilator\spu.dll
C:\Programmi\Spamihilator\SSLEAY32.dll
C:\Programmi\Spamihilator\uclanguage.dll
C:\Programmi\Spamihilator\zlib1.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\MSVCP71.dll
C:\WINDOWS\system32\MSVCR71.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RASAPI32.dll
C:\WINDOWS\system32\rasman.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\TAPI32.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll
[C:\WINDOWS\Explorer.EXE (116)]
C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\Programmi\GetRight\xx2gr.dll
C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll
C:\Programmi\Microsoft Office\OFFICE11\msohev.dll
C:\Programmi\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_ita.nlr
C:\Programmi\Nokia\Nokia PC Suite 6\PCSCM.dll
C:\Programmi\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
C:\Programmi\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr
C:\Programmi\SmartFTP Client 2.0\smarthook.dll
C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
C:\Programmi\WinRAR\rarext.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\actxprxy.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\appHelp.dll
C:\WINDOWS\system32\ATL.DLL
C:\WINDOWS\system32\BatMeter.dll
C:\WINDOWS\system32\browselc.dll
C:\WINDOWS\system32\BROWSEUI.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\ConnAPI.DLL
C:\WINDOWS\system32\credui.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\CRYPTUI.dll
C:\WINDOWS\System32\CSCDLL.dll
C:\WINDOWS\System32\cscui.dll
C:\WINDOWS\System32\davclnt.dll
C:\WINDOWS\System32\drprov.dll
C:\WINDOWS\system32\DUSER.dll
C:\WINDOWS\system32\FXSAPI.dll
C:\WINDOWS\system32\fxsst.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hccutils.DLL
C:\WINDOWS\system32\igfxdev.dll
C:\WINDOWS\system32\igfxpph.dll
C:\WINDOWS\system32\igfxres.dll
C:\WINDOWS\system32\igfxsrvc.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LINKINFO.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\midimap.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\msacm32.drv
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\mscms.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\MSIMG32.dll
C:\WINDOWS\system32\msutb.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\MSVCP71.dll
C:\WINDOWS\system32\MSVCR71.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mydocs.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\System32\NETRAP.dll
C:\WINDOWS\system32\NETSHELL.dll
C:\WINDOWS\System32\NETUI0.dll
C:\WINDOWS\System32\NETUI1.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\System32\ntlanman.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ntshrui.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\OLEPRO32.DLL
C:\WINDOWS\system32\POWRPROF.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\rtutils.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\shdoclc.dll
C:\WINDOWS\system32\SHDOCVW.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\shimgvw.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\stobject.dll
C:\WINDOWS\system32\SXS.DLL
C:\WINDOWS\system32\themeui.dll
C:\WINDOWS\system32\urlmon.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wdmaud.drv
C:\WINDOWS\system32\webcheck.dll
C:\WINDOWS\system32\WINHTTP.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\wmpshell.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\WSOCK32.dll
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\wzcdlg.dll
C:\WINDOWS\system32\WZCSAPI.DLL
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
[C:\WINDOWS\System32\alg.exe (33)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\System32\ATL.DLL
C:\WINDOWS\System32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\System32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\System32\LPK.DLL
C:\WINDOWS\System32\MSACM32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\System32\MSWSOCK.DLL
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\System32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\System32\USP10.dll
C:\WINDOWS\System32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\System32\WINMM.dll
C:\WINDOWS\System32\WS2_32.dll
C:\WINDOWS\System32\WS2HELP.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\System32\WSOCK32.dll
C:\WINDOWS\System32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\csrss.exe (13)]
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\basesrv.dll
C:\WINDOWS\system32\CSRSRV.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\KERNEL32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\sxs.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\winsrv.dll
[C:\WINDOWS\system32\ctfmon.exe (26)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSUTB.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\hkcmd.exe (31)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hccutils.DLL
C:\WINDOWS\system32\igfxdev.dll
C:\WINDOWS\system32\igfxhk.dll
C:\WINDOWS\system32\igfxres.dll
C:\WINDOWS\system32\igfxsrvc.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\lsass.exe (60)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\AUTHZ.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\cryptdll.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\dssenh.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\ipsecsvc.dll
C:\WINDOWS\system32\kerberos.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\LSASRV.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msprivs.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\netlogon.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\oakley.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\psbase.dll
C:\WINDOWS\system32\pstorsvc.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\SAMSRV.dll
C:\WINDOWS\system32\scecli.dll
C:\WINDOWS\system32\schannel.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\w32time.dll
C:\WINDOWS\system32\wdigest.dll
C:\WINDOWS\system32\WINIPSEC.DLL
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\NOTEPAD.EXE (27)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll
[C:\WINDOWS\system32\rundll32.exe (36)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\bthprops.cpl
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DEVMGR.DLL
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WMI.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\services.exe (37)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\AUTHZ.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\eventlog.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NCObjAPI.DLL
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SCESRV.dll
C:\WINDOWS\system32\secur32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\umpnpmgr.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wtsapi32.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\System32\smss.exe (1)]
C:\WINDOWS\system32\ntdll.dll
[C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE (21)]
C:\Programmi\a-squared Anti-Malware\a2handler.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSCTF.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\oleaut32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\spoolsv.exe (59)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\cnbjmon.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\E_FLMADE.DLL
C:\WINDOWS\system32\FXSEVENT.dll
C:\WINDOWS\system32\FXSMON.DLL
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\inetpp.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\localspl.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\mdimon.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\netapi32.dll
C:\WINDOWS\system32\NETRAP.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\pjlmon.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\sfc_os.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll
C:\WINDOWS\system32\SPOOLSS.DLL
C:\WINDOWS\system32\tcpmon.dll
C:\WINDOWS\system32\usbmon.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\win32spl.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\winspool.drv
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\System32\svchost.exe (160)]
C:\WINDOWS\AppPatch\AcGenral.DLL
c:\windows\pchealth\helpctr\binaries\pchsvc.dll
C:\WINDOWS\System32\ACTIVEDS.dll
C:\WINDOWS\System32\adsldpc.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\System32\ADVPACK.dll
C:\WINDOWS\system32\Apphelp.dll
c:\windows\system32\ATL.DLL
c:\windows\system32\audiosrv.dll
c:\windows\system32\AUTHZ.dll
c:\windows\system32\browser.dll
C:\WINDOWS\System32\Cabinet.dll
c:\windows\system32\certcli.dll
C:\WINDOWS\System32\CLBCATQ.DLL
C:\WINDOWS\System32\CLUSAPI.DLL
C:\WINDOWS\system32\colbact.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\System32\COMRes.dll
C:\WINDOWS\system32\comsvcs.dll
c:\windows\system32\credui.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\System32\cryptdll.dll
c:\windows\system32\cryptsvc.dll
C:\WINDOWS\system32\CRYPTUI.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\DNSAPI.dll
C:\WINDOWS\System32\dssenh.dll
c:\windows\system32\ersvc.dll
c:\windows\system32\es.dll
c:\windows\system32\ESENT.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\System32\h323.tsp
c:\windows\system32\HID.DLL
C:\WINDOWS\System32\hidphone.tsp
c:\windows\system32\hidserv.dll
C:\WINDOWS\System32\hnetcfg.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\System32\ipconf.tsp
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ipnathlp.dll
c:\windows\system32\irmon.dll
C:\WINDOWS\system32\kerberos.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\System32\kmddsp.tsp
C:\WINDOWS\System32\LPK.DLL
C:\WINDOWS\system32\mlang.dll
C:\WINDOWS\system32\modemui.dll
C:\WINDOWS\System32\MPRAPI.dll
C:\WINDOWS\System32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
c:\windows\system32\msi.dll
C:\WINDOWS\System32\MSIDLE.DLL
C:\WINDOWS\System32\mspatcha.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\System32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\msxml3.dll
C:\WINDOWS\system32\MTXCLU.DLL
C:\WINDOWS\system32\NCObjAPI.DLL
C:\WINDOWS\System32\ndptsp.tsp
C:\WINDOWS\system32\NETAPI32.dll
c:\windows\system32\netcfgx.dll
c:\windows\system32\netman.dll
C:\WINDOWS\System32\NETRAP.dll
c:\windows\system32\netshell.dll
C:\WINDOWS\system32\ntdll.dll
c:\windows\system32\NTDSAPI.dll
C:\WINDOWS\System32\ntlsapi.dll
C:\WINDOWS\System32\NTMARTA.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
c:\windows\system32\POWRPROF.dll
c:\windows\system32\PSAPI.DLL
C:\WINDOWS\System32\rasadhlp.dll
C:\WINDOWS\System32\RASAPI32.dll
C:\WINDOWS\System32\raschap.dll
C:\WINDOWS\System32\RASDLG.dll
C:\WINDOWS\System32\rasman.dll
c:\windows\system32\rasmans.dll
C:\WINDOWS\System32\rasppp.dll
C:\WINDOWS\System32\rastapi.dll
C:\WINDOWS\System32\rastls.dll
C:\WINDOWS\System32\RESUTILS.DLL
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\System32\rsaenh.dll
c:\windows\system32\rtutils.dll
C:\WINDOWS\System32\SAMLIB.dll
C:\WINDOWS\System32\SCHANNEL.dll
c:\windows\system32\schedsvc.dll
c:\windows\system32\seclogon.dll
c:\windows\system32\Secur32.dll
c:\windows\system32\sens.dll
C:\WINDOWS\System32\SETUPAPI.dll
C:\WINDOWS\System32\sfc.dll
C:\WINDOWS\System32\sfc_os.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\System32\SHFOLDER.dll
C:\WINDOWS\System32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\srsvc.dll
c:\windows\system32\srvsvc.dll
C:\WINDOWS\system32\SSDPAPI.dll
C:\WINDOWS\System32\SXS.DLL
C:\WINDOWS\System32\TAPI32.dll
c:\windows\system32\tapisrv.dll
c:\windows\system32\trkwks.dll
C:\WINDOWS\System32\unimdm.tsp
C:\WINDOWS\System32\unimdmat.dll
C:\WINDOWS\System32\uniplat.dll
C:\WINDOWS\system32\upnp.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\System32\USP10.dll
C:\WINDOWS\System32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\VSSAPI.DLL
c:\windows\system32\w32time.dll
C:\WINDOWS\System32\Wbem\esscli.dll
C:\WINDOWS\System32\Wbem\FastProx.dll
C:\WINDOWS\system32\wbem\ncprov.dll
C:\WINDOWS\system32\wbem\repdrvfs.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\System32\Wbem\wbemcore.dll
C:\WINDOWS\system32\wbem\wbemess.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\wmiprvsd.dll
c:\windows\system32\wbem\wmisvc.dll
C:\WINDOWS\system32\wbem\wmiutils.dll
C:\WINDOWS\System32\WINHTTP.dll
C:\WINDOWS\system32\WININET.dll
c:\windows\system32\WINIPSEC.DLL
C:\WINDOWS\System32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\System32\WinSCard.dll
C:\WINDOWS\System32\winspool.drv
C:\WINDOWS\System32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
c:\windows\system32\wkssvc.dll
C:\WINDOWS\system32\WLDAP32.dll
c:\windows\system32\WMI.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
c:\windows\system32\wscsvc.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshirda.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\WSOCK32.dll
c:\windows\system32\WTSAPI32.dll
C:\WINDOWS\system32\wuapi.dll
C:\WINDOWS\system32\wuaueng.dll
c:\windows\system32\wuauserv.dll
C:\WINDOWS\System32\WZCSAPI.DLL
c:\windows\system32\wzcsvc.dll
C:\WINDOWS\System32\xactsrv.dll
C:\WINDOWS\System32\xmlprovi.dll
C:\WINDOWS\System32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\svchost.exe (31)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\comctl32.dll
c:\windows\system32\DNSAPI.dll
c:\windows\system32\dnsrslvr.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
c:\windows\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\svchost.exe (34)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
c:\windows\system32\bthserv.dll
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\secur32.dll
c:\windows\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\svchost.exe (39)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\actxprxy.dll
C:\WINDOWS\system32\ADVAPI32.dll
c:\windows\system32\CFGMGR32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
c:\windows\system32\mscms.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
c:\windows\system32\setupapi.DLL
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\sti.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
c:\windows\system32\wiaservc.dll
C:\WINDOWS\system32\WINMM.dll
c:\windows\system32\WINSPOOL.DRV
c:\windows\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\svchost.exe (42)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\msi.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\rasadhlp.dll
C:\WINDOWS\system32\RPCRT4.dll
c:\windows\system32\rpcss.dll
C:\WINDOWS\system32\rsaenh.dll
c:\windows\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\System32\winrnr.dll
C:\WINDOWS\system32\WLDAP32.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
C:\WINDOWS\system32\wshbth.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\svchost.exe (46)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hnetcfg.dll
C:\WINDOWS\system32\IMM32.DLL
c:\windows\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
c:\windows\system32\lmhsvc.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\mswsock.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\rasadhlp.dll
c:\windows\system32\regsvc.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
c:\windows\system32\ssdpsrv.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
c:\windows\system32\webclnt.dll
C:\WINDOWS\system32\WININET.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WLDAP32.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
C:\WINDOWS\System32\wshtcpip.dll
C:\WINDOWS\system32\wsock32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\svchost.exe (54)]
C:\WINDOWS\AppPatch\AcGenral.DLL
c:\windows\system32\ACTIVEDS.dll
c:\windows\system32\adsldpc.dll
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\Apphelp.dll
c:\windows\system32\ATL.DLL
c:\windows\system32\AUTHZ.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
c:\windows\system32\ICAAPI.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msi.dll
c:\windows\system32\mstlsapi.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\REGAPI.dll
C:\WINDOWS\system32\RPCRT4.dll
c:\windows\system32\rpcss.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\SAMLIB.dll
c:\windows\system32\Secur32.dll
c:\windows\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
c:\windows\system32\termsrv.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WLDAP32.dll
c:\windows\system32\WS2_32.dll
c:\windows\system32\WS2HELP.dll
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\wbem\wmiprvse.exe (43)]
C:\WINDOWS\AppPatch\AcGenral.DLL
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\comctl32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\NCObjAPI.DLL
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\ShimEng.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\UxTheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wbem\cimwin32.dll
C:\WINDOWS\system32\wbem\FastProx.dll
C:\WINDOWS\system32\wbem\framedyn.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\system32\wbem\wbemprox.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wbem\wmiutils.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
[C:\WINDOWS\system32\wdfmgr.exe (16)]
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\WINTRUST.dll
[C:\WINDOWS\system32\winlogon.exe (78)]
C:\WINDOWS\system32\ADVAPI32.dll
C:\WINDOWS\system32\Apphelp.dll
C:\WINDOWS\system32\asycfilt.dll
C:\WINDOWS\system32\AUTHZ.dll
C:\WINDOWS\system32\CLBCATQ.DLL
C:\WINDOWS\system32\COMCTL32.dll
C:\WINDOWS\system32\comdlg32.dll
C:\WINDOWS\system32\COMRes.dll
C:\WINDOWS\system32\CRYPT32.dll
C:\WINDOWS\system32\cscdll.dll
C:\WINDOWS\system32\cscui.dll
C:\WINDOWS\system32\DNSAPI.dll
C:\WINDOWS\system32\GDI32.dll
C:\WINDOWS\system32\hccutils.DLL
C:\WINDOWS\system32\igfxsrvc.dll
C:\WINDOWS\system32\IMAGEHLP.dll
C:\WINDOWS\system32\IMM32.DLL
C:\WINDOWS\system32\iphlpapi.dll
C:\WINDOWS\system32\kernel32.dll
C:\WINDOWS\system32\klogon.dll
C:\WINDOWS\system32\LPK.DLL
C:\WINDOWS\system32\midimap.dll
C:\WINDOWS\system32\MPR.dll
C:\WINDOWS\system32\MSACM32.dll
C:\WINDOWS\system32\msacm32.drv
C:\WINDOWS\system32\MSASN1.dll
C:\WINDOWS\system32\msctfime.ime
C:\WINDOWS\system32\MSGINA.dll
C:\WINDOWS\system32\msv1_0.dll
C:\WINDOWS\system32\MSVCP60.dll
C:\WINDOWS\system32\msvcrt.dll
C:\WINDOWS\system32\msxml3.dll
C:\WINDOWS\system32\NDdeApi.dll
C:\WINDOWS\system32\NETAPI32.dll
C:\WINDOWS\system32\ntdll.dll
C:\WINDOWS\system32\NTDSAPI.dll
C:\WINDOWS\system32\NTMARTA.DLL
C:\WINDOWS\system32\ODBC32.dll
C:\WINDOWS\system32\odbcint.dll
C:\WINDOWS\system32\ole32.dll
C:\WINDOWS\system32\OLEAUT32.dll
C:\WINDOWS\system32\PROFMAP.dll
C:\WINDOWS\system32\PSAPI.DLL
C:\WINDOWS\system32\REGAPI.dll
C:\WINDOWS\system32\RPCRT4.dll
C:\WINDOWS\system32\rsaenh.dll
C:\WINDOWS\system32\SAMLIB.dll
C:\WINDOWS\system32\Secur32.dll
C:\WINDOWS\system32\SETUPAPI.dll
C:\WINDOWS\system32\sfc.dll
C:\WINDOWS\system32\sfc_os.dll
C:\WINDOWS\system32\SHELL32.dll
C:\WINDOWS\system32\SHLWAPI.dll
C:\WINDOWS\system32\SHSVCS.dll
C:\WINDOWS\system32\sxs.dll
C:\WINDOWS\system32\USER32.dll
C:\WINDOWS\system32\USERENV.dll
C:\WINDOWS\system32\USP10.dll
C:\WINDOWS\system32\uxtheme.dll
C:\WINDOWS\system32\VERSION.dll
C:\WINDOWS\system32\wbem\fastprox.dll
C:\WINDOWS\system32\wbem\wbemcomn.dll
C:\WINDOWS\system32\wbem\wbemprox.dll
C:\WINDOWS\system32\wbem\wbemsvc.dll
C:\WINDOWS\system32\wdmaud.drv
C:\WINDOWS\system32\WgaLogon.dll
C:\WINDOWS\system32\WINMM.dll
C:\WINDOWS\system32\WINSCARD.DLL
C:\WINDOWS\system32\WINSPOOL.DRV
C:\WINDOWS\system32\WINSTA.dll
C:\WINDOWS\system32\WINTRUST.dll
C:\WINDOWS\system32\WLDAP32.dll
C:\WINDOWS\system32\WlNotify.dll
C:\WINDOWS\system32\WS2_32.dll
C:\WINDOWS\system32\WS2HELP.dll
C:\WINDOWS\system32\WTSAPI32.dll
C:\WINDOWS\system32\xpsp2res.dll
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
--------------------
Autostart folders:
[Startup (1)]
desktop.ini
[User Startup (1)]
desktop.ini
[Common Startup (2)]
desktop.ini
GetRight - Tray Icon.lnk
[User Common Startup (2)]
desktop.ini
GetRight - Tray Icon.lnk
[IOSUBSYS folder (2)]
iomega.vxd
NTI4CDR.VXD
--------------------
IniMapping values:
System NT shell = Explorer.exe
User screensaver = C:\WINDOWS\ACER.SCR
--------------------
Autostarting batch files:
[autoexec.nt]
@echo off
lh %SystemRoot%\system32\mscdexnt.exe
lh %SystemRoot%\system32\redir
lh %SystemRoot%\system32\dosx
SET BLASTER=A220 I5 D1 P330 T3
[config.nt]
dos=high, umb
device=%SystemRoot%\system32\himem.sys
files=40
--------------------
On-reboot actions:
BootExecute = PDBoot.exe
--------------------
Shell commands:
.bat - File batch MS-DOS - "%1" %*
.cmd - Script di comandi Windows NT - "%1" %*
.com - Applicazione per MS-DOS - "%1" %*
.exe - Applicazione - "%1" %*
.hta - HTML Application - C:\WINDOWS\system32\mshta.exe "%1" %*
.js - File di script JScript - C:\WINDOWS\System32\WScript.exe "%1" %*
.jse - File di script codificato in JScript - C:\WINDOWS\System32\WScript.exe "%1" %*
.pif - Collegamento ad un programma per MS-DOS - "%1" %*
.scr - Screen saver - "%1" /S
.txt - Documento di testo - C:\WINDOWS\system32\NOTEPAD.EXE %1
.vbe - File di script codificato in VBScript - C:\WINDOWS\System32\WScript.exe "%1" %*
.vbs - File di script VBScript - C:\WINDOWS\System32\WScript.exe "%1" %*
.wsf - File di script Windows - C:\WINDOWS\System32\WScript.exe "%1" %*
.wsh - File di impostazioni di Windows Script Host - C:\WINDOWS\System32\WScript.exe "%1" %*
--------------------
Services:
[NT Services (44)]
Accesso secondario = C:\WINDOWS\System32\svchost.exe -k netsvcs
Acquisizione di immagini di Windows (WIA) = C:\WINDOWS\system32\svchost.exe -k imgsvc
Aggiornamenti automatici = C:\WINDOWS\system32\svchost.exe -k netsvcs
Archiviazione protetta = C:\WINDOWS\system32\lsass.exe
Audio Windows = C:\WINDOWS\System32\svchost.exe -k netsvcs
Bluetooth Support Service = C:\WINDOWS\system32\svchost.exe -k bthsvcs
Browser di computer = C:\WINDOWS\system32\svchost.exe -k netsvcs
Centro sicurezza PC = C:\WINDOWS\System32\svchost.exe -k netsvcs
Client DHCP = C:\WINDOWS\system32\svchost.exe -k netsvcs
Client DNS = C:\WINDOWS\system32\svchost.exe -k NetworkService
Fax = C:\WINDOWS\system32\fxssvc.exe
Gestione account di protezione (SAM) = C:\WINDOWS\system32\lsass.exe
Guida in linea e supporto tecnico = C:\WINDOWS\System32\svchost.exe -k netsvcs
Helper NetBIOS di TCP/IP = C:\WINDOWS\system32\svchost.exe -k LocalService
HID Input Service = C:\WINDOWS\System32\svchost.exe -k netsvcs
Kaspersky Anti-Virus 6.0 = "C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r
Machine Debug Manager = "C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE"
Manutenzione collegamenti distribuiti client = C:\WINDOWS\system32\svchost.exe -k netsvcs
Monitor infrarossi = C:\WINDOWS\system32\svchost.exe -k netsvcs
Notebook Manager Service = C:\Acer\eManager\anbmServ.exe
Notifica eventi di sistema = C:\WINDOWS\system32\svchost.exe -k netsvcs
Ora di Windows = C:\WINDOWS\System32\svchost.exe -k netsvcs
PDAgent = C:\Programmi\Raxco\PerfectDisk\PDAgent.exe
Plug and Play = C:\WINDOWS\system32\services.exe
Registro di sistema remoto = C:\WINDOWS\system32\svchost.exe -k LocalService
Registro eventi = C:\WINDOWS\system32\services.exe
Rilevamento hardware shell = C:\WINDOWS\System32\svchost.exe -k netsvcs
RPC (Remote Procedure Call) = C:\WINDOWS\system32\svchost -k rpcss
Server = C:\WINDOWS\system32\svchost.exe -k netsvcs
Servizi di crittografia = C:\WINDOWS\system32\svchost.exe -k netsvcs
Servizi IPSEC = C:\WINDOWS\system32\lsass.exe
Servizio di segnalazione errori = C:\WINDOWS\System32\svchost.exe -k netsvcs
Servizio Ripristino configurazione di sistema = C:\WINDOWS\system32\svchost.exe -k netsvcs
Spooler di stampa = C:\WINDOWS\system32\spoolsv.exe
SQL Server (SQLEXPRESS) = "C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
Strumentazione gestione Windows = C:\WINDOWS\system32\svchost.exe -k netsvcs
Temi = C:\WINDOWS\System32\svchost.exe -k netsvcs
Utilità di avvio processo server DCOM = C:\WINDOWS\system32\svchost -k DcomLaunch
Utilità di pianificazione = C:\WINDOWS\System32\svchost.exe -k netsvcs
WebClient = C:\WINDOWS\system32\svchost.exe -k LocalService
Windows Firewall / Condivisione connessione Internet (ICS) = C:\WINDOWS\system32\svchost.exe -k netsvcs
Windows User Mode Driver Framework = C:\WINDOWS\system32\wdfmgr.exe
Workstation = C:\WINDOWS\system32\svchost.exe -k netsvcs
Zero Configuration reti senza fili = C:\WINDOWS\System32\svchost.exe -k netsvcs
[SafeBoot services (Minimal boot)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}
* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}
* Driver *
dmboot.sys
dmio.sys
dmload.sys
sermouse.sys
vga.sys
vgasave.sys
* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
PCI Configuration
PNP Filter
Primary disk
SCSI Class
System Bus Extender
* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}
* FSFilter System Recovery *
sr.sys
* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}
* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}
* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}
* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}
* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}
* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}
* Service *
AppMgmt
CryptSvc
DcomLaunch
dmadmin
dmserver
EventLog
HelpSvc
Netlogon
PlugPlay
RpcSs
SRService
WinMgmt
* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}
* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}
* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}
* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}
[SafeBoot services (Minimal boot + network support)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}
* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}
* Driver *
dmboot.sys
dmio.sys
dmload.sys
ip6fw.sys
ipnat.sys
rdpcdd.sys
rdpdd.sys
rdpwd.sys
sermouse.sys
tdpipe.sys
tdtcp.sys
vga.sys
vgasave.sys
* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
NDIS
NDIS Wrapper
NetBIOSGroup
NetDDEGroup
Network
NetworkProvider
PCI Configuration
PNP Filter
PNP_TDI
Primary disk
SCSI Class
Streams Drivers
System Bus Extender
TDI
* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}
* FSFilter System Recovery *
sr.sys
* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}
* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}
* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}
* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}
* Net *
{4D36E972-E325-11CE-BFC1-08002BE10318}
* NetClient *
{4D36E973-E325-11CE-BFC1-08002BE10318}
* NetService *
{4D36E974-E325-11CE-BFC1-08002BE10318}
* NetTrans *
{4D36E975-E325-11CE-BFC1-08002BE10318}
* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}
* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}
* Service *
AFD
AppMgmt
Browser
CryptSvc
DcomLaunch
Dhcp
dmadmin
dmserver
DnsCache
EventLog
HelpSvc
LanmanServer
LanmanWorkstation
LmHosts
Messenger
Ndisuio
NetBIOS
NetBT
Netlogon
NetMan
NtLmSsp
PlugPlay
rdsessmgr
RpcSs
SharedAccess
SRService
Tcpip
termservice
WinMgmt
WZCSVC
* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}
* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}
* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}
* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}
[SafeBoot: Alternate shell]
cmd.exe (not enabled)
--------------------
Driver filters:
[Class filters]
* DVD/CD-ROM drives *
- Upper filters
NTIDrvr.sys
- Lower filters
PxHelp20.sys
UBHelper.sys
* Mouse e altre periferiche di puntamento *
- Upper filters
mouclass.sys
* Periferiche infrarossi *
- Upper filters
IRENUM.sys
* Tastiere *
- Upper filters
kbdclass.sys
* Unità disco *
- Upper filters
PartMgr.sys
* Volumi di archiviazione *
- Upper filters
VolSnap.sys
[Device filters]
* Agere Systems HDA Modem *
- Lower filters
AgereSoftModem.sys
* Agere Systems HDA Modem *
- Lower filters
AgereSoftModem.sys
* Direct Parallel *
- Lower filters
PtiLink.sys
* Driver mouse di Terminal Server *
- Upper filters
mouclass.sys
* Driver tastiera di Terminal Server *
- Upper filters
kbdclass.sys
* Miniport WAN (PPPOE) *
- Lower filters
NdisTapi.sys
* Modem standard su collegamento Bluetooth *
- Lower filters
bthmodem.sys
* Nokia 6630 USB Modem *
- Lower filters
Nokia USB Modem.sys
* Nokia 6630 USB Modem *
- Lower filters
Nokia USB Modem.sys
* Nokia N70 USB Modem *
- Lower filters
Nokia USB Modem.sys
* Periferica Bluetooth (RFCOMM protocollo TDI) *
- Upper filters
BthEnum.sys
* Porta di comunicazione *
- Upper filters
serenum.sys
* Synaptics PS/2 Port TouchPad *
- Upper filters
SynTP.sys
* Tastiera standard 101/102 tasti o Tastiera Microsoft Natural PS/2 *
- Upper filters
DKbFltr.sys
* Unità CD-ROM *
- Upper filters
redbook.sys
* Unità CD-ROM *
- Upper filters
redbook.sys
- Lower filters
imapi.sys
* Unità CD-ROM *
- Upper filters
redbook.sys
- Lower filters
imapi.sys
* WAN Miniport (IP) *
- Lower filters
NdisTapi.sys
* WAN Miniport (PPTP) *
- Lower filters
NdisTapi.sys
--------------------
Print monitors (8):
BJ Language Monitor - cnbjmon.dll
EPSON Stylus DX4800 Series 2KMonitor5E - E_FLMADE.DLL
Local Port - localspl.dll
Microsoft Document Imaging Writer Monitor - mdimon.dll
Microsoft Shared Fax Monitor - FXSMON.DLL
PJL Language Monitor - pjlmon.dll
Standard TCP/IP Port - tcpmon.dll
USB Monitor - usbmon.dll
--------------------
WinLogon autoruns:
UserInit = C:\WINDOWS\system32\userinit.exe,
VmApplet = rundll32 shell32,Control_RunDLL "sysdm.cpl"
[Notify (12)]
crypt32chain = crypt32.dll
cryptnet = cryptnet.dll
cscdll = cscdll.dll
igfxcui = igfxsrvc.dll
klogon = C:\WINDOWS\system32\klogon.dll
ScCertProp = wlnotify.dll
Schedule = wlnotify.dll
sclgntfy = sclgntfy.dll
SensLogn = WlNotify.dll
termsrv = wlnotify.dll
WgaLogon = WgaLogon.dll
wlballoon = wlnotify.dll
[Group policy extensions (12)]
Senza fili = gptext.dll
Folder Redirection = fdeploy.dll
Quota disco Microsoft = dskquota.dll
Utilità di pianificazione pacchetti QoS = gptext.dll
Script = gptext.dll
Mapping aree Internet Explorer = iedkcs32.dll
Security = scecli.dll
Personalizzazione Internet Explorer = iedkcs32.dll
EFS recovery = scecli.dll
Microsoft Offline Files = %SystemRoot%\System32\cscui.dll
Installazione software = appmgmts.dll
Protezione IP = gptext.dll
--------------------
Policies:
[This user]
* Alternate policies *
- Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1)
NoDriveTypeAutoRun = dword: 145
[All users]
* Primary policies *
- Software\Policies\Microsoft\RTC\{A5B45060-354F-4097-A928-5125436C46F1} (2)
DisableServerCheck = dword: 1
LegacyPresence = dword: 1
- Software\Policies\Microsoft\Windows\Installer (1)
EnableAdminTSRemote = dword: 1
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecFilter{72385235-70fa-11d1-864c-14a300000000} (7)
ClassName = ipsecFilter
description = Confronta tutti i pacchetti ICMP scambiati tra il computer in uso e ogni altro computer.
name = ipsecFilter{72385235-70fa-11d1-864c-14a300000000}
ipsecName = Traffico su tutti gli ICMP
ipsecID = {72385235-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecFilter{7238523a-70fa-11d1-864c-14a300000000} (7)
ClassName = ipsecFilter
description = Confronta tutti i pacchetti IP inviati dal computer in uso a ogni altro computer, eccetto broadcast, multicast, Kerberos, RSVP e ISAKMP (IKE).
name = ipsecFilter{7238523a-70fa-11d1-864c-14a300000000}
ipsecName = Traffico su tutti gli IP
ipsecID = {7238523a-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385231-70fa-11d1-864c-14a300000000} (5)
ClassName = ipsecISAKMPPolicy
name = ipsecISAKMPPolicy{72385231-70fa-11d1-864c-14a300000000}
ipsecID = {72385231-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385234-70fa-11d1-864c-14a300000000} (5)
ClassName = ipsecISAKMPPolicy
name = ipsecISAKMPPolicy{72385234-70fa-11d1-864c-14a300000000}
ipsecID = {72385234-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385237-70fa-11d1-864c-14a300000000} (5)
ClassName = ipsecISAKMPPolicy
name = ipsecISAKMPPolicy{72385237-70fa-11d1-864c-14a300000000}
ipsecID = {72385237-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{7238523d-70fa-11d1-864c-14a300000000} (5)
ClassName = ipsecISAKMPPolicy
name = ipsecISAKMPPolicy{7238523d-70fa-11d1-864c-14a300000000}
ipsecID = {7238523d-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{17cceb22-65c6-46c5-bae0-7070f9d64fff} (7)
ClassName = ipsecNegotiationPolicy
name = ipsecNegotiationPolicy{17cceb22-65c6-46c5-bae0-7070f9d64fff}
ipsecID = {17cceb22-65c6-46c5-bae0-7070f9d64fff}
ipsecNegotiationPolicyAction = {8a171dd3-77e3-11d1-8659-a04f00000000}
ipsecNegotiationPolicyType = {62f49e13-6c37-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{72385233-70fa-11d1-864c-14a300000000} (9)
ClassName = ipsecNegotiationPolicy
description = Accetta la comunicazione non protetta, ma richiede ai client di stabilire metodi di trust e di protezione. Comunica in modalità non protetta ai client non attendibili che non rispondono alla richiesta.
name = ipsecNegotiationPolicy{72385233-70fa-11d1-864c-14a300000000}
ipsecName = Richiedi protezione (facoltativo)
ipsecID = {72385233-70fa-11d1-864c-14a300000000}
ipsecNegotiationPolicyAction = {3f91a81a-7647-11d1-864d-d46a00000000}
ipsecNegotiationPolicyType = {62f49e10-6c37-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000} (9)
ClassName = ipsecNegotiationPolicy
description = Autorizza il passaggio dei pacchetti IP non protetti.
name = ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000}
ipsecName = Autorizza
ipsecID = {7238523b-70fa-11d1-864c-14a300000000}
ipsecNegotiationPolicyAction = {8a171dd2-77e3-11d1-8659-a04f00000000}
ipsecNegotiationPolicyType = {62f49e10-6c37-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523f-70fa-11d1-864c-14a300000000} (9)
ClassName = ipsecNegotiationPolicy
description = Accetta la comunicazione non protetta, ma richiede sempre ai client di stabilire metodi di trust e di protezione. Non comunica con i client non attendibili.
name = ipsecNegotiationPolicy{7238523f-70fa-11d1-864c-14a300000000}
ipsecName = Richiedi protezione
ipsecID = {7238523f-70fa-11d1-864c-14a300000000}
ipsecNegotiationPolicyAction = {3f91a81a-7647-11d1-864d-d46a00000000}
ipsecNegotiationPolicyType = {62f49e10-6c37-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{91546ad8-b821-4d07-b0b2-454493687192} (7)
ClassName = ipsecNegotiationPolicy
name = ipsecNegotiationPolicy{91546ad8-b821-4d07-b0b2-454493687192}
ipsecID = {91546ad8-b821-4d07-b0b2-454493687192}
ipsecNegotiationPolicyAction = {8a171dd3-77e3-11d1-8659-a04f00000000}
ipsecNegotiationPolicyType = {62f49e13-6c37-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{a97bfb33-9fb0-4b91-95dc-96f0a8f42ea0} (7)
ClassName = ipsecNegotiationPolicy
name = ipsecNegotiationPolicy{a97bfb33-9fb0-4b91-95dc-96f0a8f42ea0}
ipsecID = {a97bfb33-9fb0-4b91-95dc-96f0a8f42ea0}
ipsecNegotiationPolicyAction = {8a171dd3-77e3-11d1-8659-a04f00000000}
ipsecNegotiationPolicyType = {62f49e13-6c37-11d1-864c-14a300000000}
ipsecDataType = dword: 256
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{12f66533-f22d-4059-b330-4419c2d82706} (6)
ClassName = ipsecNFA
name = ipsecNFA{12f66533-f22d-4059-b330-4419c2d82706}
ipsecID = {12f66533-f22d-4059-b330-4419c2d82706}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{a97bfb33-9fb0-4b91-95dc-96f0a8f42ea0}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{5d2cf3bb-8002-48c0-b448-019ee8be1ea0} (8)
ClassName = ipsecNFA
name = ipsecNFA{5d2cf3bb-8002-48c0-b448-019ee8be1ea0}
ipsecName = Autorizza il passaggio dei pacchetti ICMP non protetti.
description = Autorizza il passaggio dei pacchetti ICMP non protetti.
ipsecID = {5d2cf3bb-8002-48c0-b448-019ee8be1ea0}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{631e5f53-e9a5-4359-a43c-6a0bdcfa6ce6} (6)
ClassName = ipsecNFA
name = ipsecNFA{631e5f53-e9a5-4359-a43c-6a0bdcfa6ce6}
ipsecID = {631e5f53-e9a5-4359-a43c-6a0bdcfa6ce6}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{17cceb22-65c6-46c5-bae0-7070f9d64fff}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{8078e335-272c-4d0d-8da0-573560b4b0a9} (8)
ClassName = ipsecNFA
name = ipsecNFA{8078e335-272c-4d0d-8da0-573560b4b0a9}
ipsecName = Autorizza il passaggio dei pacchetti ICMP non protetti.
description = Autorizza il passaggio dei pacchetti ICMP non protetti.
ipsecID = {8078e335-272c-4d0d-8da0-573560b4b0a9}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523b-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{bc1598fe-5415-4c79-a78b-21f42ac306dd} (8)
ClassName = ipsecNFA
name = ipsecNFA{bc1598fe-5415-4c79-a78b-21f42ac306dd}
ipsecName = Richiedi protezione
description = Accetta la comunicazione non protetta, ma richiede sempre ai client di stabilire metodi di trust e di protezione. Non comunica con i client non attendibili.
ipsecID = {bc1598fe-5415-4c79-a78b-21f42ac306dd}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{7238523f-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{e539ccca-f3d3-494b-9053-8a8faa7930c4} (6)
ClassName = ipsecNFA
name = ipsecNFA{e539ccca-f3d3-494b-9053-8a8faa7930c4}
ipsecID = {e539ccca-f3d3-494b-9053-8a8faa7930c4}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{91546ad8-b821-4d07-b0b2-454493687192}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNFA{f6a2ccea-b61f-4472-bb7d-afe307e4b59c} (8)
ClassName = ipsecNFA
name = ipsecNFA{f6a2ccea-b61f-4472-bb7d-afe307e4b59c}
ipsecName = Regola Richiedi protezione (facoltativa)
description = Per tutto il traffico IP richiede sempre protezione con trust Kerberos. Consente la comunicazione non protetta con i client che non rispondono alla richiesta.
ipsecID = {f6a2ccea-b61f-4472-bb7d-afe307e4b59c}
ipsecDataType = dword: 256
ipsecNegotiationPolicyReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecNegotiationPolicy{72385233-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecPolicy{72385230-70fa-11d1-864c-14a300000000} (8)
ClassName = ipsecPolicy
description = Per tutto il traffico IP richiede sempre protezione con trust Kerberos. Consente la comunicazione non protetta con i client che non rispondono alla richiesta.
name = ipsecPolicy{72385230-70fa-11d1-864c-14a300000000}
ipsecName = Server (Richiedi protezione)
ipsecID = {72385230-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
ipsecISAKMPReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385231-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecPolicy{72385236-70fa-11d1-864c-14a300000000} (8)
ClassName = ipsecPolicy
description = Comunica normalmente (in modalità non protetta). Utilizza la risposta predefinita per negoziare con i server che richiedono protezione. Solo il traffico su porta e protocollo richiesti viene protetto.
name = ipsecPolicy{72385236-70fa-11d1-864c-14a300000000}
ipsecName = Client (solo risposta)
ipsecID = {72385236-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
ipsecISAKMPReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{72385237-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecPolicy{7238523c-70fa-11d1-864c-14a300000000} (8)
ClassName = ipsecPolicy
description = Per tutto il traffico IP richiede sempre protezione con trust Kerberos. Non consente la comunicazione non protetta con i client non attendibili.
name = ipsecPolicy{7238523c-70fa-11d1-864c-14a300000000}
ipsecName = Server protetto (Richiedi protezione)
ipsecID = {7238523c-70fa-11d1-864c-14a300000000}
ipsecDataType = dword: 256
ipsecISAKMPReference = SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local\ipsecISAKMPPolicy{7238523d-70fa-11d1-864c-14a300000000}
whenChanged = dword: 1109234380
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers (4)
TransparentEnabled = dword: 1
DefaultLevel = dword: 262144
AuthenticodeEnabled = dword: 0
PolicyScope = dword: 0
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328} (4)
Description = Stop the download of this file
FriendlyName = Mdac11.cab
SaferFlags = dword: 0
HashAlg = dword: 32771
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91} (4)
Description = Stop the download of this file
FriendlyName = mdac20.cab
SaferFlags = dword: 0
HashAlg = dword: 32771
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f} (4)
Description = Stop the download of this file
FriendlyName = mdac20_a.cab
SaferFlags = dword: 0
HashAlg = dword: 32771
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d} (4)
Description = Stop the download of this file
FriendlyName = _msadc10.cab
SaferFlags = dword: 0
HashAlg = dword: 32771
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc} (4)
Description = Stop the download of this file
FriendlyName = msadc11.cab
SaferFlags = dword: 0
HashAlg = dword: 32771
- Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33} (2)
Description =
SaferFlags = dword: 0
* Alternate policies *
- Software\Microsoft\Windows\CurrentVersion\policies\NonEnum (3)
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} = dword: 1
{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} = dword: 1073741857
{0DF44EAA-FF21-4412-828E-260A8728E7F1} = dword: 32
- Software\Microsoft\Windows\CurrentVersion\policies\system (5)
dontdisplaylastusername = dword: 0
legalnoticecaption =
legalnoticetext =
shutdownwithoutlogon = dword: 1
undockwithoutlogon = dword: 1
--------------------
Browser Helper Objects (3):
(no name) = {53707962-6F74-2D53-2644-206D7942484F} = C:\Programmi\Spybot - Search & Destroy\SDHelper.dll
AcroIEHlprObj Class = {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} = C:\Programmi\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
bho2gr Class = {31FF080D-12A3-439A-A2EF-4BA95A3148E8} = C:\Programmi\GetRight\xx2gr.dll
--------------------
ActiveX objects (14):
BASEIE40_W2K - {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\WINDOWS\system32\ie4uinit.exe
BRANDING.CAB - {60B49E34-C7CC-11D0-8953-00A0C90347FF} - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
DOTNETFRAMEWORKS - {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install
Fax - {8b15971b-5355-4c82-8c07-7e181ea07608} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\fxsocm.inf,Fax.Install.PerUser
IE4Shell_NT - {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
IEACCESS - {26923b43-4d38-484f-9b9e-de460746276c} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigIE
MailNews - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
Messenger - {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub
NetMeeting - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
OEACCESS - {881dd1c5-3dcf-431b-b061-f3f88e8be88a} - C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE
Theme Component - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - C:\WINDOWS\system32\regsvr32.exe /s /n /i:/UserInstall C:\WINDOWS\system32\themeui.dll
WAB - {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
WMPACCESS - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
--------------------
Internet Explorer toolbars:
[This user]
* ShellBrowser (1) *
&Indirizzo - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
* WebBrowser (2) *
&Indirizzo - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
Co&llegamenti - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll
--------------------
Internet Explorer buttons/tools (3):
Web Anti-Virus - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
Ricerche - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
--------------------
Internet Explorer menu extensions:
[This user (3)]
Download with GetRight - C:\Programmi\GetRight\GRdownload.htm
E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
Open with GetRight Browser - C:\Programmi\GetRight\GRbrowse.htm
--------------------
Internet Explorer Bands (9):
SearchBand - {30D02401-6A81-11d0-8274-00C04FD5AE38} - C:\WINDOWS\system32\browseui.dll
&Suggerimenti - {4D5C8C25-D075-11d0-B416-00C04FB90376} - C:\WINDOWS\system32\shdocvw.dll
Web Anti-Virus - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
&Discussione - {BDEADE7F-C265-11D0-BCED-00A0C90AB50F} - shdocvw.dll
Barra di Explorer per la ricerca file - {C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} - C:\WINDOWS\system32\SHELL32.dll
Favorites Band - {EFA24E61-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\system32\shdocvw.dll
History Band - {EFA24E62-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\system32\shdocvw.dll
Explorer Band - {EFA24E64-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\system32\shdocvw.dll
&Ricerche - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
--------------------
Downloaded Program Files (1):
Shockwave Flash Object - {D27CDB6E-AE6D-11CF-96B8-444553540000} - C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
--------------------
URL search hooks:
[This user (1)]
Hook per la ricerca di URL Microsoft - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll
--------------------
Explorer clones:
C:\WINDOWS\explorer.exe
--------------------
Image File Execution Options (1):
Your Image File Name Here without a path = ntsd -d
--------------------
ContextMenuHandlers:
[* (6)]
Blocco menu Start = {a2a9545d-a0c2-42b4-9708-a0b2badd77c8} = C:\WINDOWS\system32\SHELL32.dll
Kaspersky Anti-Virus = {dd230880-495a-11d1-b064-008048ec2fc5} = C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll
Offline Files = {750fdf0e-2a26-11d1-a3ea-080036587f03} = C:\WINDOWS\System32\cscui.dll
Open With = {09799AFB-AD67-11d1-ABCD-00C04FC30936} = C:\WINDOWS\system32\SHELL32.dll
Open With EncryptionMenu = {A470F8CF-A1E8-4f65-8335-227475AA5C46} = C:\WINDOWS\system32\SHELL32.dll
WinRAR = {B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Programmi\WinRAR\rarext.dll
[Drive (5)]
Estensione copia dischi = {59099400-57FF-11CE-BD94-0020AF85B590} = diskcopy.dll
Kaspersky Anti-Virus = {dd230880-495a-11d1-b064-008048ec2fc5} = C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll
Offline Files = {750fdf0e-2a26-11d1-a3ea-080036587f03} = C:\WINDOWS\System32\cscui.dll
Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll
ShellFolder per la masterizzazione CD = {fbeb8a05-beee-4442-804e-409d6c4515e9} = C:\WINDOWS\system32\SHELL32.dll
[Folder (2)]
Kaspersky Anti-Virus = {dd230880-495a-11d1-b064-008048ec2fc5} = C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\shellex.dll
WinRAR = {B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Programmi\WinRAR\rarext.dll
[CompressedFolder (1)]
Compressed (zipped) Folder Context Menu = {b8cdcb65-b1bf-4b42-9428-1dfdb7ee92af} = C:\WINDOWS\system32\zipfldr.dll
[Directory (4)]
EncryptionMenu = {A470F8CF-A1E8-4f65-8335-227475AA5C46} = C:\WINDOWS\system32\SHELL32.dll
Offline Files = {750fdf0e-2a26-11d1-a3ea-080036587f03} = C:\WINDOWS\System32\cscui.dll
Sharing = {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll
WinRAR = {B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Programmi\WinRAR\rarext.dll
[Directory\Background (2)]
igfxcui = {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} = C:\WINDOWS\system32\igfxpph.dll
New = {D969A300-E7FF-11d0-A93B-00A0C90F2719} = C:\WINDOWS\system32\SHELL32.dll
[ChannelShortcut (1)]
Channel Menu Handler Object = {f3da0dc0-9cc8-11d0-a599-00c04fd64437} = C:\WINDOWS\system32\cdfview.dll
[InternetShortcut (1)]
Collegamento Internet = {FBF23B40-E3F0-101B-8488-00AA003E56F8} = shdocvw.dll
[AllFileSystemObjects (1)]
Send To = {7BA4C740-9E81-11CF-99D3-00AA004AE837} = C:\WINDOWS\system32\SHELL32.dll
--------------------
ColumnHandlers (4):
(no name) - {0D2E74C4-3C34-11d2-A27E-00C04FC30871} - C:\WINDOWS\system32\SHELL32.dll
(no name) - {24F14F01-7B1C-11d1-838f-0000F80461CF} - C:\WINDOWS\system32\SHELL32.dll
(no name) - {24F14F02-7B1C-11d1-838f-0000F80461CF} - C:\WINDOWS\system32\SHELL32.dll
(no name) - {66742402-F9B9-11D1-A202-0000F81FEDEE} - C:\WINDOWS\system32\SHELL32.dll
--------------------
ShellExecuteHooks (1):
Hook per l'esecuzione degli URL = {AEB6717E-7E19-11d0-97EE-00C04FD91972} = shell32.dll
--------------------
Approved Shell Extensions:
[All users (186)]
%DESC_PublishDropTarget% - {60fd46de-f830-4894-a628-6fa81bc0190d} - C:\WINDOWS\system32\photowiz.dll
&Contatti... - {32714800-2E5F-11d0-8B85-00AA0044F941} - C:\Programmi\Outlook Express\wabfind.dll
&Indirizzo - {01E04581-4EEE-11d0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
.CAB file viewer - {0CD7A5C0-9F37-11CE-AE65-08002B2E1262} - cabview.dll
Accessibile - {7e653215-fa25-46bd-a339-34a2790f3cb7} - C:\WINDOWS\system32\browseui.dll
Account utente - {7A9D77BD-5403-11d2-8785-2E0420524153} -
Address EditBox - {A08C11D2-A228-11d0-825B-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
Assistenza utente - {DD313E04-FEFF-11d1-8ECD-0000F87A470C} - C:\WINDOWS\system32\browseui.dll
Audio Media Properties Handler - {875CB1A1-0F29-45de-A1AE-CFB4950D0B78} - C:\WINDOWS\system32\shmedia.dll
Auto Update Property Sheet Extension - {5F327514-6C5E-4d60-8F16-D07FA08A78ED} - C:\WINDOWS\system32\wuaucpl.cpl
Autoplay for SlideShow - {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} -
Avi Properties Handler - {87D62D94-71B3-4b9a-9489-5FE6850DC73E} - C:\WINDOWS\system32\shmedia.dll
BandProxy - {F61FFEC1-754F-11d0-80CA-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
Barra degli strumenti Microsoft Internet - {5E6AB780-7743-11CF-A12B-00AA004AE837} - C:\WINDOWS\system32\browseui.dll
Barra delle applicazioni e menu di avvio - {0DF44EAA-FF21-4412-828E-260A8728E7F1} -
Cartella cache ActiveX - {88C6C381-2E85-11D0-94DE-444553540000} - C:\WINDOWS\system32\occache.dll
Cartella compressa - {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} - C:\WINDOWS\system32\zipfldr.dll
Cartella file non in linea - {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} - C:\WINDOWS\System32\cscui.dll
Cartella Subscription - {F5175861-2688-11d0-9C5E-00AA00A45957} - C:\WINDOWS\system32\webcheck.dll
Cartelle Web - {BDEADF00-C265-11D0-BCED-00A0C90AB50F} - C:\PROGRA~1\FILECO~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
CDF Extension Copy Hook - {67EA19A0-CCEF-11d0-8024-00C04FD75D13} - C:\WINDOWS\system32\shdocvw.dll
Cerca - {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
Channel Handler Object - {f3ba0dc0-9cc8-11d0-a599-00c04fd64435} - C:\WINDOWS\system32\cdfview.dll
Channel Menu - {f3da0dc0-9cc8-11d0-a599-00c04fd64437} - C:\WINDOWS\system32\cdfview.dll
Channel Properties - {f3ea0dc0-9cc8-11d0-a599-00c04fd64438} - C:\WINDOWS\system32\cdfview.dll
Code Download Agent - {7D559C10-9FE9-11d0-93F7-00AA0059CE02} - C:\WINDOWS\system32\webcheck.dll
Collegamento al canale - {f3aa0dc0-9cc8-11d0-a599-00c04fd64434} - C:\WINDOWS\system32\cdfview.dll
Completamento automatico Microsoft - {00BB2763-6A77-11D0-A535-00C04FD7D062} - C:\WINDOWS\system32\browseui.dll
Compressed (zipped) Folder Right Drag Handler - {BD472F60-27FA-11cf-B8B4-444553540000} - C:\WINDOWS\system32\zipfldr.dll
Compressed (zipped) Folder SendTo Target - {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} - C:\WINDOWS\system32\zipfldr.dll
ConnectionAgent - {E6CC6978-6B6E-11D0-BECA-00C04FD940BE} - C:\WINDOWS\system32\webcheck.dll
Connessioni di rete - {7007ACC7-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll
Connessioni di rete - {992CFFA0-F557-101A-88EC-00DD010CCC48} - C:\WINDOWS\system32\NETSHELL.dll
Contenitore dell'elenco di Completamento automatico multiplo Microsoft - {00BB2765-6A77-11D0-A535-00C04FD7D062} - C:\WINDOWS\system32\browseui.dll
CorelDRAW Shell Extension Component - @ -
Creazione guidata profilo Passport - {58f1f272-9240-4f51-b6d4-fd63d1618591} - C:\WINDOWS\system32\netplwiz.dll
Cronologia - {FF393560-C2A7-11CF-BFF4-444553540000} - C:\WINDOWS\system32\shdocvw.dll
Darwin App Publisher - {CFCCC7A0-A282-11D1-9082-006008059382} - C:\WINDOWS\system32\appwiz.cpl
DfsShell - {ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} - C:\WINDOWS\system32\dfsshlex.dll
Directory Context Menu Verbs - {62AE1F9A-126A-11D0-A14B-0800361B1103} - C:\WINDOWS\system32\dsuiext.dll
Directory Object Find - {163FDC20-2ABC-11d0-88F0-00A024AB2DBB} - C:\WINDOWS\system32\dsquery.dll
Directory Property UI - {0D45D530-764B-11d0-A1CA-00AA00C16E65} - C:\WINDOWS\system32\dsuiext.dll
Directory Query UI - {8A23E65E-31C2-11d0-891C-00A024AB2DBB} - C:\WINDOWS\system32\dsquery.dll
Directory Start/Search Find - {F020E586-5264-11d1-A532-0000F8757D7E} - C:\WINDOWS\system32\dsquery.dll
Disk Quota UI - {7988B573-EC89-11cf-9C00-00AA00A14F56} - dskquoui.dll
Display TroubleShoot CPL Extension - {f92e8c40-3d33-11d2-b1aa-080036a75b03} - deskperf.dll
Elenco di Completamento automatico della Cronologia di Microsoft - {00BB2764-6A77-11D0-A535-00C04FD7D062} - C:\WINDOWS\system32\browseui.dll
Elenco di Completamento automatico di Shell Folder di Microsoft - {03C036F1-A186-11D0-824A-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
Elenco di Completamento automatico MRU - {6756A641-DE71-11d0-831B-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
Elenco di Completamento automatico MRU personalizzato - {6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} - C:\WINDOWS\system32\browseui.dll
Enumeratore applicazioni installate - {0B124F8F-91F0-11D1-B8B5-006008059382} - C:\WINDOWS\system32\appwiz.cpl
EPM-PO Shell Extension - {2b45bd21-71f8-4c8c-a87a-7eeb25a1a3e0} - epm-po.dll
Esegui... - {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
Estensione copia dischi - {59099400-57FF-11CE-BD94-0020AF85B590} - diskcopy.dll
Estensione Crypto PKO - {7444C717-39BF-11D1-8CD9-00C04FC29D45} - C:\WINDOWS\system32\cryptext.dll
Estensione di icona di HyperTerminal - {88895560-9AA2-1069-930E-00AA0030EBC8} - C:\WINDOWS\system32\hticons.dll
Estensione firma crittografata - {7444C719-39BF-11D1-8CD9-00C04FC29D45} - C:\WINDOWS\system32\cryptext.dll
Estensione monitor del Pannello di controllo - {42071713-76d4-11d1-8b24-00a0c9068ff3} - deskmon.dll
Estensione panoramica video del Pannello di controllo - {42071714-76d4-11d1-8b24-00a0c9068ff3} - deskpan.dll
Estensione scheda video del Pannello di controllo - {42071712-76d4-11d1-8b24-00a0c9068ff3} - deskadp.dll
Estensione shell per la stampante Web - {77597368-7b15-11d0-a0c2-080036af3f03} - printui.dll
Estensione shell per Windows Script Host - {60254CA5-953B-11CF-8C96-00AA00B8708C} - C:\WINDOWS\system32\wshext.dll
Estensioni shell per la compressione dei file - {764BF0E1-F219-11ce-972D-00AA00A14F56} -
Estensioni shell per la condivisione - {40dd6e20-7c17-11ce-a804-00aa003ca9f6} - ntshrui.dll
Estensioni shell per la condivisione - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} - ntshrui.dll
Estensioni shell per oggetti Rete Microsoft Windows - {59be4990-f85c-11ce-aff7-00aa003ca9f6} - ntlanui2.dll
Explorer Band - {EFA24E64-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\system32\shdocvw.dll
Extensions Manager Folder - {692F0339-CBAA-47e6-B5B5-3B84DB604E87} - C:\WINDOWS\system32\extmgr.dll
Favorites Band - {EFA24E61-B078-11d0-89E4-00C04FC9E26E} - C:\WINDOWS\system32\shdocvw.dll
File del canale - {f39a0dc0-9cc8-11d0-a599-00c04fd64433} - C:\WINDOWS\system32\cdfview.dll
File temporanei Internet - {7BD29E00-76C1-11CF-9DD0-00A0C9034933} - C:\WINDOWS\system32\shdocvw.dll
File temporanei Internet - {7BD29E01-76C1-11CF-9DD0-00A0C9034933} - C:\WINDOWS\system32\shdocvw.dll
FTP Folders Webview - {63da6ec0-2e98-11cf-8d82-444553540000} - C:\WINDOWS\system32\msieftp.dll
GDI + programma di estrazione file in anteprima - {3F30C968-480A-4C6C-862D-EFC0897BB84B} - C:\WINDOWS\system32\shimgvw.dll
Gestione applicazioni shell - {352EC2B7-8B9A-11D1-B8AE-006008059382} - C:\WINDOWS\system32\appwiz.cpl
Gestore dati dei ritagli di shell - {56117100-C0CD-101B-81E2-00AA004AE837} - shscrap.dll
Gestore monitor ICM - {5DB2625A-54DF-11D0-B6C4-0800091AA605} - C:\WINDOWS\System32\icmui.dll
Gestore scanner ICM - {176d6597-26d3-11d1-b350-080036a75b03} - icmui.dll
Gestore stampante ICM - {675F097E-4C4D-11D0-B6C1-0800091AA605} - C:\WINDOWS\system32\icmui.dll
Guida in linea e supporto tecnico - {2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
Guida in linea e supporto tecnico - {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
Hook per la ricerca di URL Microsoft - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll
Impostazioni cartella globale - {EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} - C:\WINDOWS\system32\browseui.dll
Indicatore di avanzamento popup - {acf35015-526e-4230-9596-becbe19f0ac9} - C:\WINDOWS\system32\browseui.dll
Internet - {2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
Internet - {3DC7A020-0ACD-11CF-A9BB-00AA004AE837} - C:\WINDOWS\system32\shdocvw.dll
Internet Name Space - {871C5380-42A0-1069-A2EA-08002B30309D} - C:\WINDOWS\system32\shdocvw.dll
InternetShortcut - {FBF23B40-E3F0-101B-8488-00AA003E56F8} - shdocvw.dll
ISFBand OC - {131A6951-7F78-11D0-A979-00C04FD705A2} - C:\WINDOWS\system32\shdocvw.dll
Menu di scelta rapida di crittografia - {853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} -
Messenger Sharing Folders - {FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D} - C:\Programmi\MSN Messenger\fsshext.8.0.0812.00.dll
Microsoft Agent Character Property Sheet Handler - {143A62C8-C33B-11D1-84FE-00C04FA34A14} - C:\WINDOWS\msagent\agentpsh.dll
Microsoft Browser Architecture - {A5E46E3A-8849-11D1-9D8C-00C04FC99D61} - C:\WINDOWS\system32\shdocvw.dll
Microsoft BrowserBand - {7BA4C742-9E81-11CF-99D3-00AA004AE837} - C:\WINDOWS\system32\browseui.dll
Microsoft Data Link - {2206CDB2-19C1-11D1-89E0-00C04FD7A829} - C:\Programmi\File comuni\System\Ole DB\oledb32.dll
Microsoft DocProp Inplace Calendar Control - {6A205B57-2567-4A2C-B881-F787FAB579A3} - C:\WINDOWS\system32\docprop2.dll
Microsoft DocProp Inplace Droplist Combo Control - {0EEA25CC-4362-4A12-850B-86EE61B0D3EB} - C:\WINDOWS\system32\docprop2.dll
Microsoft DocProp Inplace Edit Box Control - {A9CF0EAE-901A-4739-A481-E35B73E47F6D} - C:\WINDOWS\system32\docprop2.dll
Microsoft DocProp Inplace ML Edit Box Control - {8EE97210-FD1F-4B19-91DA-67914005F020} - C:\WINDOWS\system32\docprop2.dll
Microsoft DocProp Inplace Time Control - {28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} - C:\WINDOWS\system32\docprop2.dll
Microsoft DocProp Shell Ext - {883373C3-BF89-11D1-BE35-080036B11A03} - C:\WINDOWS\system32\docprop2.dll
Microsoft Office HTML Icon Handler - {42042206-2D85-11D3-8CFF-005004838597} - C:\Programmi\Microsoft Office\OFFICE11\msohev.dll
Microsoft Office Outlook Custom Icon Handler - {0006F045-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\OFFICE11\OLKFSTUB.DLL
Microsoft Office Outlook Desktop Icon Handler - {00020D75-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\OFFICE11\MLSHEXT.DLL
Midi Properties Handler - {A6FD9E45-6E44-43f9-8644-08598F5A74D9} - C:\WINDOWS\system32\shmedia.dll
MMC Icon Handler - {7A80E4A8-8005-11D2-BCF8-00C04F72C717} - C:\WINDOWS\System32\mmcshext.dll
MyDocs Copy Hook - {ECF03A33-103D-11d2-854D-006008059367} - C:\WINDOWS\system32\mydocs.dll
MyDocs Drop Target - {ECF03A32-103D-11d2-854D-006008059367} - C:\WINDOWS\system32\mydocs.dll
MyDocs Properties - {4a7ded0a-ad25-11d0-98a8-0800361b1103} - C:\WINDOWS\system32\mydocs.dll
Offline Files Folder Options - {10CFC467-4392-11d2-8DB4-00C04FA31A66} - C:\WINDOWS\System32\cscui.dll
Offline Files Menu - {750fdf0e-2a26-11d1-a3ea-080036587f03} - C:\WINDOWS\System32\cscui.dll
Oggetto Pubblicazione guidata sul Web - {6b33163c-76a5-4b6c-bf21-45de9cd503a1} - C:\WINDOWS\system32\netplwiz.dll
Operazioni pianificate - {D6277990-4C6A-11CF-8D87-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll
Ordinazione di stampe tramite Web - {add36aa8-751a-4579-a266-d66f5202ccbb} - C:\WINDOWS\system32\netplwiz.dll
Pagina compatibilità - {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} - SlayerXP.dll
Pagina di proprietà di Docfile OLE - {3EA48300-8CF6-101B-84FB-666CCB9BCD32} - docprop.dll
Pagina di protezione della stampante - {F37C5810-4D3F-11d0-B4BF-00AA00BBB723} - rshx32.dll
Pagina di protezione DS - {4E40F770-369C-11d0-8922-00A024AB2DBB} - dssec.dll
Pagina di protezione NTFS - {1F2E5C40-9550-11CE-99D2-00AA006E086C} - rshx32.dll
Pagina proprietà versioni precedenti - {596AB062-B4D2-4215-9F74-E9109B0A8153} - C:\WINDOWS\system32\twext.dll
PhoneBrowser - {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} - C:\Programmi\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
PlusPack CPL Extension - {41E300E0-78B6-11ce-849B-444553540000} - C:\WINDOWS\system32\themeui.dll
Posta elettronica - {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
PostAgent - {D8BD2030-6FC9-11D0-864F-00AA006809D9} - C:\WINDOWS\system32\webcheck.dll
Profilo ICC - {DBCE2480-C732-101B-BE72-BA78E9AD5B27} - C:\WINDOWS\system32\icmui.dll
Programma di estrazione pagine HTML in anteprima - {EAB841A0-9550-11cf-8C16-00805F1408F3} - C:\WINDOWS\system32\shimgvw.dll
Proprietà dei file Multimedia - {00022613-0000-0000-C000-000000000046} - mmsys.cpl
Pubblicazione guidata sul Web - {CC6EEFFB-43F6-46c5-9619-51D571967F7D} - C:\WINDOWS\system32\netplwiz.dll
Remote Sessions CPL Extension - {F0152790-D56E-4445-850E-4F3117DB740C} - C:\WINDOWS\system32\remotepg.dll
Ricerca all'interno - {169A0691-8DF9-11d1-A1C4-00C04FD75D13} - C:\WINDOWS\system32\browseui.dll
Ricerca Web - {07798131-AF23-11d1-9111-00A0C98BA67D} - C:\WINDOWS\system32\browseui.dll
Scanner e fotocamere digitali - {3F953603-1008-4f6e-A73A-04AAC7A992F1} - wiashext.dll
Scanner e fotocamere digitali - {83bbcbf3-b28a-4919-a5aa-73027445d672} - wiashext.dll
Scanner e fotocamere digitali - {905667aa-acd6-11d2-8080-00805f6596d2} - wiashext.dll
Scanner e fotocamere digitali - {E211B736-43FD-11D1-9EFB-0000F8757FCD} - wiashext.dll
Scanner e fotocamere digitali - {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} - wiashext.dll
Schermata iniziale applicazioni Internet Explorer 4 - {A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\system32\shdocvw.dll
Search Assistant OC - {9461b922-3c5a-11d2-bf8b-00c04fb93661} - C:\WINDOWS\system32\shdocvw.dll
SearchBand - {30D02401-6A81-11d0-8274-00C04FD5AE38} - C:\WINDOWS\system32\browseui.dll
Sendmail service - {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} - C:\WINDOWS\system32\sendmail.dll
Sendmail service - {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} - C:\WINDOWS\system32\sendmail.dll
Servizio Cronologia Url Microsoft - {3C374A40-BAE4-11CF-BF7D-00AA006946EE} - C:\WINDOWS\system32\shdocvw.dll
Set Program Access and Defaults - {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} - C:\WINDOWS\system32\shdocvw.dll
Shell Automation Inproc Service - {0A89A860-D7B1-11CE-8350-444553540000} - C:\WINDOWS\system32\shdocvw.dll
Shell Band Site Menu - {ECD4FC4E-521C-11D0-B792-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
Shell DeskBar - {ECD4FC4C-521C-11D0-B792-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
Shell DeskBarApp - {3CCF8A41-5C85-11d0-9796-00AA00B90ADF} - C:\WINDOWS\system32\browseui.dll
Shell DocObject Viewer - {E7E4BC40-E76A-11CE-A9BB-00AA004AE837} - C:\WINDOWS\system32\shdocvw.dll
Shell Extensions for RealOne Player - {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - C:\Programmi\Real\RealPlayer\rpshell.dll
Shell Folder 2 accresciuto - {6413BA2C-B461-11d1-A18A-080036B11A03} - C:\WINDOWS\system32\browseui.dll
Shell Folder accresciuto - {91EA3F8B-C99B-11d0-9815-00C04FD91972} - C:\WINDOWS\system32\browseui.dll
Shell Icon Handler for Application References - {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} - C:\WINDOWS\system32\dfshim.dll
Shell Image Data Factory - {66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} - C:\WINDOWS\system32\shimgvw.dll
Shell Image Property Handler - {eb9b1153-3b57-4e68-959a-a3266bc3d7fe} - C:\WINDOWS\system32\shimgvw.dll
Shell Image Verbs - {e84fda7c-1d6a-45f6-b725-cb260c236066} - C:\WINDOWS\system32\shimgvw.dll
Shell properties for a DS object - {9E51E0D0-6E0F-11d2-9601-00C04FA31A86} - C:\WINDOWS\system32\dsquery.dll
Shell Rebar BandSite - {ECD4FC4D-521C-11D0-B792-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
Shell Search Band - {21569614-B795-46b1-85F4-E737A8DC09AD} - C:\WINDOWS\system32\browseui.dll
ShellLink for Application References - {e82a2d71-5b2f-43a0-97b8-81be15854de8} - C:\WINDOWS\system32\dfshim.dll
Sincronia file - {85BBD920-42A0-1069-A2E4-08002B30309D} - syncui.dll
SmartFTP Shell Extension DLL - {B8323370-FF27-11D2-97B6-204C4F4F5020} - C:\Programmi\SmartFTP Client 2.0\smarthook.dll
Stato del download - {22BF0C20-6DA7-11D0-B373-00A0C9034938} - C:\WINDOWS\system32\browseui.dll
Strumenti di amministrazione - {D20EA4E1-3957-11d2-A40B-0C5020524153} - C:\WINDOWS\system32\shdocvw.dll
Subscription Mgr - {ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} - C:\WINDOWS\system32\webcheck.dll
Summary Info Thumbnail handler (DOCFILES) - {9DBD2C50-62AD-11d0-B806-00C04FD706EC} - C:\WINDOWS\system32\shimgvw.dll
Synaptics Control Panel - {2F603045-309F-11CF-9774-0020AFD0CFF6} - C:\Programmi\Synaptics\SynTP\SynTPCpl.dll
Tasks Folder Icon Handler - {DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll
Tasks Folder Shell Extension - {797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} - C:\WINDOWS\system32\mstask.dll
Tipi di carattere - {BD84B380-8CA2-1069-AB1D-08000948F534} - fontext.dll
Tipi di carattere - {D20EA4E1-3957-11d2-A40B-0C5020524152} - C:\WINDOWS\system32\shdocvw.dll
TrayAgent - {E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} - C:\WINDOWS\system32\webcheck.dll
TridentImageExtractor - {7376D660-C583-11d0-A3A5-00C04FD706EC} - C:\WINDOWS\system32\browseui.dll
Utilità opzioni della struttura del Registro di sistema - {AF4F6510-F982-11d0-8595-00AA004CD6D8} - C:\WINDOWS\system32\browseui.dll
Versioni precedenti - {9DB7A13C-F208-4981-8353-73CC61AE2783} - C:\WINDOWS\system32\twext.dll
Video Media Properties Handler - {40C3D757-D6E4-4b49-BB41-0E5BBEA28817} - C:\WINDOWS\system32\shmedia.dll
Video Thumbnail Extractor - {c5a40261-cd64-4ccf-84cb-c394da41d590} - C:\WINDOWS\system32\shmedia.dll
Wav Properties Handler - {E4B29F9D-D390-480b-92FD-7DDB47101D71} - C:\WINDOWS\system32\shmedia.dll
Web Anti-Virus - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll
WebCheck SyncMgr Handler - {7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} - C:\WINDOWS\system32\webcheck.dll
WebCheckChannelAgent - {E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} - C:\WINDOWS\system32\webcheck.dll
WebCheckWebCrawler - {08165EA0-E946-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll
Windows Media Player Add to Playlist Context Menu Handler - {F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} - C:\WINDOWS\system32\wmpshell.dll
Windows Media Player Burn Audio CD Context Menu Handler - {CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} - C:\WINDOWS\system32\wmpshell.dll
Windows Media Player Play as Playlist Context Menu Handler - {8DD448E6-C188-4aed-AF92-44956194EB1F} - C:\WINDOWS\system32\wmpshell.dll
WinRAR shell extension - {B41DB860-8EE4-11D2-9906-E49FADC173CA} - C:\Programmi\WinRAR\rarext.dll
[This user (3)]
- {126389BF-C65C-8A32-AD5A-06A8D25ADF30} -
- {A8BA7856-C4AD-90B3-C49A-3B5579E18920} -
Cartelle Web - {BDEADF00-C265-11d0-BCED-00A0C90AB50F} - C:\PROGRA~1\FILECO~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
--------------------
Registry 'Run' keys:
[User Run]
Creative WebCam Tray = C:\Programmi\Creative\Shared Files\CamTray.exe
CTFMON.EXE = C:\WINDOWS\system32\ctfmon.exe
PcSync = C:\Programmi\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
Spamihilator = "C:\Programmi\Spamihilator\spamihilator.exe"
[System Run]
a-squared = "C:\Programmi\a-squared Anti-Malware\a2guard.exe"
BluetoothAuthenticationAgent = rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
EPM-DM = c:\acer\epm\epm-dm.exe
ePowerManagement = C:\Acer\ePM\ePM.exe boot
EPSON Stylus DX4800 Series = C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIADE.EXE /P26 "EPSON Stylus DX4800 Series" /O6 "USB001" /M "Stylus DX4800"
eRecoveryService = C:\Windows\System32\Check.exe
HotKeysCmds = C:\WINDOWS\system32\hkcmd.exe
IgfxTray = C:\WINDOWS\system32\igfxtray.exe
IMJPMIG8.1 = "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
kav = "C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
LManager = C:\Programmi\Launch Manager\QtZgAcer.EXE
PCSuiteTrayApplication = C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
--------------------
Protocols:
[Pluggable MIME filters (9)]
application/octet-stream = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = mscoree.dll
application/x-complus = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = mscoree.dll
application/x-msdownload = {1E66F26B-79EE-11D2-8710-00C04F79ED0D} = mscoree.dll
Class Install Handler = {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} = C:\WINDOWS\system32\urlmon.dll
deflate = {8f6b0360-b80d-11d0-a9b3-006097942311} = C:\WINDOWS\system32\urlmon.dll
gzip = {8f6b0360-b80d-11d0-a9b3-006097942311} = C:\WINDOWS\system32\urlmon.dll
lzdhtml = {8f6b0360-b80d-11d0-a9b3-006097942311} = C:\WINDOWS\system32\urlmon.dll
text/webviewhtml = {733AC4CB-F1A4-11d0-B951-00A0C90312E1} = C:\WINDOWS\system32\SHELL32.dll
text/xml = {807553E5-5146-11D5-A672-00B0D022E945} = C:\Programmi\File comuni\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
[Protocol handlers (26)]
about = {3050F406-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\system32\mshtml.dll
cdl = {3dd53d40-7b8b-11D0-b013-00aa0059ce02} = C:\WINDOWS\system32\urlmon.dll
dvd = {12D51199-0DB5-46FE-A120-47A3D7D937CC} = C:\WINDOWS\system32\msvidctl.dll
file = {79eac9e7-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
ftp = {79eac9e3-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
gopher = {79eac9e4-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
http = {79eac9e2-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
https = {79eac9e5-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
its = {9D148291-B9C8-11D0-A4CC-0000F80149F6} = C:\WINDOWS\system32\itss.dll
javascript = {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\system32\mshtml.dll
livecall = {828030A1-22C1-4009-854F-8E305202313F} = C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
local = {79eac9e7-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
mailto = {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\system32\mshtml.dll
mhtml = {05300401-BCBC-11d0-85E3-00C04FD85AB4} = C:\WINDOWS\system32\inetcomm.dll
mk = {79eac9e6-baf9-11ce-8c82-00aa004ba90b} = C:\WINDOWS\system32\urlmon.dll
ms-help = {314111c7-a502-11d2-bbca-00c04f8ec294} = C:\Programmi\File comuni\Microsoft Shared\Help\hxds.dll
ms-its = {9D148291-B9C8-11D0-A4CC-0000F80149F6} = C:\WINDOWS\system32\itss.dll
ms-itss = {0A9007C0-4076-11D3-8789-0000F8105754} = C:\Programmi\File comuni\Microsoft Shared\Information Retrieval\msitss.dll
msnim = {828030A1-22C1-4009-854F-8E305202313F} = C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
mso-offdap = {3D9F03FA-7A94-11D3-BE81-0050048385D1} = C:\PROGRA~1\FILECO~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
mso-offdap11 = {32505114-5902-49B2-880A-1F7738E5A384} = C:\PROGRA~1\FILECO~1\MICROS~1\WEBCOM~1\11\OWC11.DLL
res = {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\system32\mshtml.dll
sysimage = {76E67A63-06E9-11D2-A840-006008059382} = C:\WINDOWS\system32\mshtml.dll
tv = {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} = C:\WINDOWS\system32\msvidctl.dll
vbscript = {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} = C:\WINDOWS\system32\mshtml.dll
wia = {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} = C:\WINDOWS\system32\wiascr.dll
--------------------
WOW compatibility:
cmdline = C:\WINDOWS\system32\ntvdm.exe
wowcmdline = C:\WINDOWS\system32\ntvdm.exe -a C:\WINDOWS\system32\krnl386
[KnownDlls (16-bit) (40)]
avicap.dll
avifile.dll
comm.drv
commdlg.dll
compobj.dll
ctl3dv2.dll
ddeml.dll
keyboard.drv
lanman.drv
mapi.dll
mciavi.drv
mciseq.drv
mciwave.drv
mmsystem.dll
mouse.drv
msacm.dll
msvideo.dll
netapi.dll
ole2.dll
ole2disp.dll
ole2nls.dll
olecli.dll
olesvr.dll
pmspl.dll
progman.exe
rasapi16.dll
shell.dll
sound.drv
storage.dll
system.drv
timer.drv
toolhelp.dll
typelib.dll
vga.drv
wfwnet.drv
win87em.dll
winoldap.mod
winsock.dll
winspool.exe
wowdeb.exe
[KnownDlls (32-bit) (20)]
advapi32.dll
comdlg32.dll
gdi32.dll
imagehlp.dll
kernel32.dll
lz32.dll
ole32.dll
oleaut32.dll
olecli32.dll
olecnv32.dll
olesvr32.dll
olethk32.dll
rpcrt4.dll
shell32.dll
url.dll
urlmon.dll
user32.dll
version.dll
wininet.dll
wldap32.dll
--------------------
ShellServiceObjectDelayLoad:
[All users (4)]
CDBurn = {fbeb8a05-beee-4442-804e-409d6c4515e9} = C:\WINDOWS\system32\SHELL32.dll
PostBootReminder = {7849596a-48ea-486e-8937-a2a3009f31a9} = C:\WINDOWS\system32\SHELL32.dll
SysTray = {35CEC8A3-2BE6-11D2-8773-92E220524153} = C:\WINDOWS\system32\stobject.dll
WebCheck = {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = C:\WINDOWS\system32\webcheck.dll
--------------------
SharedTaskScheduler (2):
Daemon di cache delle categorie di componenti = {8C7461EF-2B13-11d2-BE35-3078302C2030} = C:\WINDOWS\system32\browseui.dll
Precaricatore Browseui = {438755C2-A8BA-11D1-B96B-00A0C90312E1} = C:\WINDOWS\system32\browseui.dll
--------------------
Winsock LSP:
[Protocols (24)]
MSAFD Irda [IrDA] - {3972523D-2AF1-11D1-B655-00805F3642CC} - C:\WINDOWS\system32\mswsock.dll
MSAFD Tcpip [TCP/IP] - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD Tcpip [UDP/IP] - {E70F1AA0-AB8B-11CF-8CA3-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
RSVP UDP Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\WINDOWS\system32\rsvpsp.dll
RSVP TCP Service Provider - {9D60A9E0-337A-11D0-BD88-0000C082E69A} - C:\WINDOWS\system32\rsvpsp.dll
MSAFD RfComm [Bluetooth] - {9FC48064-7298-43E4-B7BD-181F2089792A} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{15B5024C-2706-4D03-AFEA-7C0A7086A42E}] SEQPACKET 9 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{15B5024C-2706-4D03-AFEA-7C0A7086A42E}] DATAGRAM 9 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{DFC40B20-DC2E-4C7B-8C6B-6C04F8788F42}] SEQPACKET 5 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{DFC40B20-DC2E-4C7B-8C6B-6C04F8788F42}] DATAGRAM 5 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F92DF23E-DC45-44AC-94A8-AECC5B089E72}] SEQPACKET 4 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F92DF23E-DC45-44AC-94A8-AECC5B089E72}] DATAGRAM 4 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{6AE950F9-11B2-482F-A42D-0200226F697A}] SEQPACKET 1 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{6AE950F9-11B2-482F-A42D-0200226F697A}] DATAGRAM 1 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{E4B6A838-E9FD-4817-A507-6FA824A20F0F}] SEQPACKET 0 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{E4B6A838-E9FD-4817-A507-6FA824A20F0F}] DATAGRAM 0 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A8F3DB6-9C55-438C-85A6-2352D2540B96}] SEQPACKET 2 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A8F3DB6-9C55-438C-85A6-2352D2540B96}] DATAGRAM 2 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F2A15173-36B4-4D84-BE92-35E3D8455AC1}] SEQPACKET 3 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F2A15173-36B4-4D84-BE92-35E3D8455AC1}] DATAGRAM 3 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{103A21A9-77A6-4B33-86F8-6EB09D148A88}] SEQPACKET 7 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{103A21A9-77A6-4B33-86F8-6EB09D148A88}] DATAGRAM 7 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{843FA483-52C1-4D27-9741-EBC663E4F844}] SEQPACKET 8 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
MSAFD NetBIOS [\Device\NetBT_Tcpip_{843FA483-52C1-4D27-9741-EBC663E4F844}] DATAGRAM 8 - {8D5F1830-C273-11CF-95C8-00805F48A192} - C:\WINDOWS\system32\mswsock.dll
[Namespace Providers (4)]
Tcpip - {22059D40-7E9E-11CF-AE5A-00AA00A7112B} - C:\WINDOWS\System32\mswsock.dll
NTDS - {3B2637EE-E580-11CF-A555-00C04FD8D4AC} - C:\WINDOWS\System32\winrnr.dll
Spazio dei nomi NLA (Network Location Awareness) - {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83} - C:\WINDOWS\System32\mswsock.dll
Spazio dei nomi Bluetooth - {06AA63E0-7D60-41FF-AFB2-3EE6D2D9392D} - C:\WINDOWS\system32\wshbth.dll
--------------------
Hijack points:
[Reset web settings URLs]
SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
START_PAGE_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
MS_START_PAGE_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
SEARCH_PAGE_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
[Internet Explorer URLs]
* This user *
- Internet Explorer\Main (4)
Local Page = C:\WINDOWS\system32\blank.htm
Search Bar = http://www.google.com/ie
Search Page = http://www.google.com
Start Page = http://global.acer.com/
- Internet Explorer\Desktop\General (2)
BackupWallpaper = %USERPROFILE%\Impostazioni locali\Dati applicazioni\Microsoft\Wallpaper1.bmp
Wallpaper = %USERPROFILE%\Impostazioni locali\Dati applicazioni\Microsoft\Wallpaper1.bmp
* All users *
- Internet Explorer\Main (5)
Default_Page_Url = http://global.acer.com
Default_Search_Url = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Local Page = %SystemRoot%\system32\blank.htm
Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
- Internet Explorer\Search (2)
CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
SearchAssistant = http://www.google.com/ie
- Internet Explorer\AboutURLs (6)
blank = res://mshtml.dll/blank.htm
DesktopItemNavigationFailure = res://shdoclc.dll/navcancl.htm
NavigationCanceled = res://shdoclc.dll/navcancl.htm
NavigationFailure = res://shdoclc.dll/navcancl.htm
OfflineInformation = res://shdoclc.dll/offcancl.htm
PostNotCached = res://mshtml.dll/repost.htm
[Default URL prefixes]
default = http://
ftp = ftp://
gopher = gopher://
home = http://
mosaic = http://
www = http://
[Hosts file location]
DatabasePath = C:\WINDOWS\System32\drivers\etc\hosts
--------------------
Protection & disabled items:
[Hosts file (1)]
* 127.0.0.1 *
localhost
[ActiveX killbits (169)]
&Indirizzo - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll
(no name) - {283807B8-2C60-11D0-A31D-00AA00B92C03} - C:\WINDOWS\system32\danim.dll
(no name) - {323C0F99-820A-4e0b-B714-57942C6D9678} - C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL
(no name) - {542FB453-5003-11CF-92A2-00AA00B8A733} - C:\WINDOWS\system32\danim.dll
(no name) - {5DFB2651-9668-11D0-B17B-00C04FC2A0CA} - C:\WINDOWS\system32\danim.dll
(no name) - {6FBF8DD5-9E03-4af5-B779-FEBEF6754712} - C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL
(no name) - {98CB4060-D3E7-42A1-8D65-949D34EBFE14} - C:\Programmi\Microsoft Office\OFFICE11\SOA.DLL
(no name) - {B4B3AECB-DFD6-11D1-9DAA-00805F85CFE3} - C:\WINDOWS\system32\CLBCatQ.DLL
(no name) - {E846F0A0-D367-11D1-8286-00A0C9231C29} - C:\WINDOWS\system32\clbcatex.dll
(no name) - {F4C30BB5-D7FC-4d60-9D49-7C6B67C3592D} - C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL
(no name) - {f5078f26-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
(no name) - {F5F545A6-39C4-40b5-814D-B45040A89FB5} - C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL
(no name) - {F81CD990-910B-4bbf-9CB3-6A77F3D697B3} - C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL
9x8Resize - {BC0D69A8-0923-4EEE-9375-9239F5A38B92} - C:\Programmi\Movie Maker\wmm2filt.dll
ACM Class Manager - {33D9A761-90C8-11D0-BD43-00A0C911CE86} - C:\WINDOWS\system32\devenum.dll
ActiveMovie Filter Class Manager - {083863F1-70DE-11D0-BD40-00A0C911CE86} - C:\WINDOWS\system32\devenum.dll
ActiveXPlugin Object - {06DD38D3-D187-11CF-A80D-00C04FD74AD8} - C:\WINDOWS\system32\plugin.ocx
ADODB.Stream - {00000566-0000-0010-8000-00AA006D2EA4} - C:\Programmi\File comuni\System\ado\msado15.dll
AEPlugIn Class - {E8C31D11-6FD2-4659-AD75-155FA143F42B} - C:\PROGRA~1\MOVIEM~1\wmm2ae.dll
Allocator Fix - {C0D076C5-E4C6-4561-8BF4-80DA8DB819D7} - C:\Programmi\Movie Maker\wmm2filt.dll
Architettura Common Browser di Microsoft - {AF604EFE-8897-11D1-B944-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
AsyncMHandler Class - {3DA2AA3E-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\system32\msdxm.ocx
Bitmap - {4F3E50BD-A9D7-4721-B0E1-00CB42A0A747} - C:\Programmi\Movie Maker\wmm2filt.dll
CEnroll Class - {43F8F289-7A20-11D0-8F06-00C04FC295E1} - C:\WINDOWS\system32\xenroll.dll
cfw Class - {ECABAFC0-7F19-11D2-978E-0000F8757E2A} - C:\WINDOWS\system32\comsvcs.dll
CLSID_ApprenticeICW - {8EE42293-C315-11D0-8D6F-00A0C9A06E1F} - C:\WINDOWS\system32\inetcfg.dll
CLSID_CCommAcctImport - {1AA06BA1-0E88-11D1-8391-00C04FBD7C09} - C:\WINDOWS\system32\msoeacct.dll
CLSID_CDIDeviceActionConfigPage - {18AB439E-FCF4-40D4-90DA-F79BAA3B0655} - C:\WINDOWS\system32\diactfrm.dll
Collegamento - {00021401-0000-0000-C000-000000000046} - shell32.dll
CommunicationManager - {67DCC487-AA48-11D1-8F4F-00C04FB611C7} - C:\WINDOWS\system32\msdtctm.dll
Connessioni di rete - {7007ACC7-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll
Connessioni di rete - {992CFFA0-F557-101A-88EC-00DD010CCC48} - C:\WINDOWS\system32\NETSHELL.dll
Controllo Snapshot Viewer 11.0 - {F0E42D60-368C-11D0-AD81-00A0C90DC8D9} - C:\Programmi\File comuni\Microsoft Shared\Snapshot Viewer\SNAPVIEW.OCX
Controllo Testo scorrevole - {250770F3-6AF2-11CF-A915-008029E31FCD} - C:\Programmi\Microsoft Office\OFFICE11\HTML\HTMLMARQ.OCX
DirectControl Class - {39A2C2A6-4778-11D2-9BDB-204C4F4F5020} - C:\WINDOWS\system32\msdxm.ocx
DirectX Transform Wrapper Property Page - {1B544C24-FD0B-11CE-8C63-00AA0044B520} - C:\Programmi\Movie Maker\wmm2filt.dll
DiskManagement.Connection - {FD78D554-4C6E-11D0-970D-00A0C9191601} - C:\WINDOWS\System32\dmdskmgr.dll
Dutch_Dutch Stemmer Resources - {860D28D0-8BF4-11CE-BE59-00AA0051FE20} - infosoft.dll
English_UK Stemmer Resources - {D99F7670-7F1A-11CE-BE57-00AA0051FE20} - infosoft.dll
English_US Stemmer Resources - {EEED4C20-7F1B-11CE-BE57-00AA0051FE20} - infosoft.dll
Frame Eater - {6C68955E-F965-4249-8E18-F0977B1D2899} - C:\Programmi\Movie Maker\wmm2filt.dll
Free Threaded XML DOM Document 2.6 - {f5078f1c-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
French_French Stemmer Resources - {2A6EB050-7F1C-11CE-BE57-00AA0051FE20} - infosoft.dll
FTP Folder Web View Automation - {210DA8A2-7445-11D1-91F7-006097DF5BD4} - C:\WINDOWS\system32\msieftp.dll
German_German Stemmer Resources - {510A4910-7F1C-11CE-BE57-00AA0051FE20} - infosoft.dll
H323MSP Class - {0F1BE7F8-45CA-11D2-831F-00A0244D2298} - C:\WINDOWS\system32\h323msp.dll
HHCtrl Object - {41B23C28-488E-4E5C-ACE2-BB0BBABE99E8} - C:\WINDOWS\system32\hhctrl.ocx
HHCtrl Object - {ADB880A6-D8FF-11CF-9377-00AA003B7A11} - C:\WINDOWS\system32\hhctrl.ocx
IAVIStream & IAVIFile Proxy - {0002000D-0000-0000-C000-000000000046} - avifil32.dll
ICM Class Manager - {33D9A760-90C8-11D0-BD43-00A0C911CE86} - C:\WINDOWS\system32\devenum.dll
IndexServer Simple Command Creator - {C7B6C04A-CBB5-11D0-BB4C-00C04FC2F410} - C:\WINDOWS\system32\query.dll
InstallEngineCtl Object - {6E449683-C509-11CF-AAFA-00AA00B6015C} - C:\WINDOWS\system32\asctrls.ocx
IPConfMSP Class - {0F1BE7F7-45CA-11D2-831F-00A0244D2298} - C:\WINDOWS\system32\confmsp.dll
Italian_Italian Stemmer Resources - {6D36CE10-7F1C-11CE-BE57-00AA0051FE20} - infosoft.dll
LexRefStFrObject Class - {B3E0E785-BD78-4366-9560-B7DABE2723BE} - C:\Programmi\File comuni\Microsoft Shared\TRANSLAT\FREN\MSB1FREN.DLL
LexRefStGeObject Class - {208DD6A3-E12B-4755-9607-2E39EF84CFC5} - C:\Programmi\File comuni\Microsoft Shared\TRANSLAT\GEEN\MSB1GEEN.DLL
LM Runtime Control - {183C259A-0480-11d1-87EA-00C04FC29D46} - C:\WINDOWS\system32\lmrt.dll
MarshalableTI Class - {466D66FA-9616-11D2-9342-0000F875AE17} - C:\WINDOWS\system32\msconf.dll
mbcontent Class - {52CA3BCF-3B9B-419E-A3D6-5D28C0B0B50C} - C:\WINDOWS\system32\browsewm.dll
Media Streaming Dynamic Terminal - {AED6483F-3304-11D2-86F1-006008B0E5D2} - C:\WINDOWS\system32\termmgr.dll
Menu Avvio - {4622AD11-FF23-11D0-8D34-00A0C90F2719} - C:\WINDOWS\system32\SHELL32.dll
MessageMover Class - {ECABB0BF-7F19-11D2-978E-0000F8757E2A} - C:\WINDOWS\system32\comsvcs.dll
Microsoft Agent Control 1.5 - {F5BE8BD2-7DE6-11D0-91FE-00C04FD701A5} - C:\WINDOWS\msagent\agentctl.dll
Microsoft DDS Generic Class - {4FAAB301-CEF6-477C-9F58-F601039E9B78} - C:\Programmi\File comuni\Microsoft Shared\MSDesigners7\MSDDS.DLL
Microsoft DDS Library Shape Control - {EC444CB6-3E7E-4865-B1C3-0DE72EF39B3F} - C:\Programmi\File comuni\Microsoft Shared\MSDesigners7\MSDDS.DLL
Microsoft DDS Picture Shape Control - {6CBE0382-A879-4D2A-8EC3-1F2A43611BA8} - C:\Programmi\File comuni\Microsoft Shared\MSDesigners7\MSDDS.DLL
Microsoft DocHost User Interface Handler - {7057E952-BD1B-11D1-8919-00C04FC2C836} - C:\WINDOWS\system32\shdocvw.dll
Microsoft HTA Document 6.0 - {3050F5C8-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
Microsoft Html Document for Popup Window - {3050F67D-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
Microsoft Html Popup Window - {3050F667-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
Microsoft HTML Window Security Proxy - {3050F391-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll
Microsoft Index Server Scope Administration Object - {3BC4F3A7-652A-11D1-B4D4-00C04FC2DB8D} - C:\WINDOWS\system32\ciodm.dll
Microsoft Movie Maker Age Filter - {ADEADEB8-E54B-11D1-9A72-0000F875EADE} - C:\PROGRA~1\MOVIEM~1\wmm2fxa.dll
Microsoft MovieMaker Fade In Fade Out - {EC85D8F1-1C4E-46E4-A748-7AA04E7C0496} - C:\PROGRA~1\MOVIEM~1\wmm2fxa.dll
Microsoft MPEG-4 Video Decompressor Property page - {598EBA02-B49A-11D2-A1C1-00609778EA66} - C:\WINDOWS\system32\mpg4ds32.ax
Microsoft MS Audio Decompressor Control Property page - {8FE7E181-BB96-11D2-A1CB-00609778EA66} - C:\WINDOWS\system32\msadds32.ax
Microsoft NetShow Player - {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - C:\WINDOWS\system32\wmpdxm.dll
Microsoft Office Free/Busy Registration - {F28D867A-DDB1-11D3-B8E8-00A0C981AEEB} - C:\PROGRA~1\MICROS~2\OFFICE11\MSOSVFBR.DLL
Microsoft Visual Database Tools Database Designer V7.0 - {03CB9467-FD9D-42A8-82F9-8615B4223E6E} - C:\Programmi\File comuni\Microsoft Shared\Visual Database Tools\VDT70.DLL
Microsoft Visual Database Tools Query Designer V7.0 - {2C10A98F-D64F-43B4-BED6-DD0E1BF2074C} - C:\Programmi\File comuni\Microsoft Shared\Visual Database Tools\VDT70.DLL
Microsoft WBEM Event Subsystem - {5D08B586-343A-11D0-AD46-00C04FD8FDFF} - C:\WINDOWS\system32\wbem\wbemess.dll
MidiOut Class Manager - {4EFE2452-168A-11D1-BC76-00C04FB9453B} - C:\WINDOWS\system32\devenum.dll
MMStream Class - {49C47CE5-9BA4-11D0-8212-00C04FC32C45} - C:\WINDOWS\system32\amstream.dll
Movie Maker Special Effect 1 Input - {B4DC8DD9-2CC1-4081-9B2B-20D7030234EF} - C:\PROGRA~1\MOVIEM~1\wmm2fxa.dll
Movie Maker Special Effect 2 Inputs - {C63344D8-70D3-4032-9B32-7A3CAD5091A5} - C:\PROGRA~1\MOVIEM~1\wmm2fxa.dll
Movie Maker Special Effect Inplace 1 Input - {353359C1-39E1-491B-9951-464FD8AB071C} - C:\PROGRA~1\MOVIEM~1\wmm2fxa.dll
Movie Maker Video Adjustments - {5A20FD6F-F8FE-4A22-9EE7-307D72D09E6E} - C:\PROGRA~1\MOVIEM~1\wmm2fxa.dll
MSP Class - {4DDB6D36-3BC1-11D2-86F2-006008B0E5D2} - C:\WINDOWS\system32\wavemsp.dll
MSVDTDDGridCtrl7 Object - {6F9F3481-84DD-4B14-B09C-6B4288ECCDE8} - C:\Programmi\File comuni\Microsoft Shared\Visual Database Tools\VDT70.DLL
MTSEvents Class - {ECABB0AB-7F19-11D2-978E-0000F8757E2A} - C:\WINDOWS\system32\comsvcs.dll
NDFXArtEffects - {E673DCF2-C316-4C6F-AA96-4E4DC6DC291E} - C:\PROGRA~1\MOVIEM~1\wmm2fxb.dll
Network Connections Tray - {7007ACCF-3202-11D1-AAD2-00805FC1270E} - C:\WINDOWS\system32\NETSHELL.dll
Oggetto PostBootReminder - {7849596A-48EA-486E-8937-A2A3009F31A9} - C:\WINDOWS\system32\SHELL32.dll
Outlook Express Address Book - {233A9694-667E-11D1-9DFB-006097D50408} - %ProgramFiles%\Outlook Express\msoe.dll
Outlook Progress Ctl - {0006F071-0000-0000-C000-000000000046} - C:\PROGRA~1\MICROS~2\OFFICE11\OUTLLIB.DLL
Proprietà dei file Multimedia - {00022613-0000-0000-C000-000000000046} - mmsys.cpl
PSDispatch - {00020420-0000-0000-C000-000000000046} - oleaut32.dll
PSEnumVariant - {00020421-0000-0000-C000-000000000046} - oleaut32.dll
PSOAInterface - {00020424-0000-0000-C000-000000000046} - oleaut32.dll
PSSupportErrorInfo - {DF0B3D60-548F-101B-8E65-08002B2BD119} - oleaut32.dll
PSTypeComp - {00020425-0000-0000-C000-000000000046} - oleaut32.dll
PSTypeInfo - {00020422-0000-0000-C000-000000000046} - oleaut32.dll
PSTypeLib - {00020423-0000-0000-C000-000000000046} - oleaut32.dll
Record Queue - {5B4B05EB-1F63-446B-AAD1-E10A34D650E0} - C:\Programmi\Movie Maker\wmm2filt.dll
Redirect - {42B07B28-2280-4937-B035-0293FB812781} - C:\WINDOWS\system32\dxtmsft.dll
Registratore componenti in coda - {ECABAFC2-7F19-11D2-978E-0000F8757E2A} - C:\WINDOWS\system32\comsvcs.dll
RegWizCtrl - {50E5E3D1-C07E-11D0-B9FD-00A0249F6B00} - C:\WINDOWS\system32\regwizc.dll
SafeWia Class - {0DAD5531-BF31-43AC-A513-1F8926BBF5EC} - C:\WINDOWS\system32\wiascr.dll
Script Encoder Object - {32DA2B15-CFED-11D1-B747-00C04FC2B085} - C:\WINDOWS\system32\scrrun.dll
SdpConferenceBlob Class - {9B2719DD-B696-11D0-A489-00C04FD91AC0} - C:\WINDOWS\system32\sdpblb.dll
Search Assistant Control - {47C6C527-6204-4F91-849D-66E234DEE015} - c:\windows\srchasst\srchui.dll
ShellFolder per la masterizzazione CD - {FBEB8A05-BEEE-4442-804E-409D6C4515E9} - C:\WINDOWS\system32\SHELL32.dll
ShotDetect - {CFFB1FC7-270D-4986-B299-FECF3F0E42DB} - C:\Programmi\Movie Maker\wmm2filt.dll
Sincronia file - {85BBD920-42A0-1069-A2E4-08002B30309D} - syncui.dll
Spanish_Modern Stemmer Resources - {B0516FF0-7F1C-11CE-BE57-00AA0051FE20} - infosoft.dll
Stetch - {F44BB2D0-F070-463E-9433-B0CCF3CFD627} - C:\Programmi\Movie Maker\wmm2filt.dll
Swedish_Default Stemmer Resources - {9478F640-7F1C-11CE-BE57-00AA0051FE20} - infosoft.dll
System Monitor Source Properties - {0CF32AA1-7571-11D0-93C4-00AA00A3DDEA} - C:\WINDOWS\system32\sysmon.ocx
SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll
SysTrayInvoker - {730F6CDC-2C86-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll
TipGW Init - {F117831B-C052-11D1-B1C0-00C04FC2F3EF} - C:\WINDOWS\system32\msdtctm.dll
Trident HTMLEditor - {3050F4F5-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtmled.dll
VFW Capture Class Manager - {860BB310-5D01-11D0-BD3B-00A0C911CE86} - C:\WINDOWS\system32\devenum.dll
Video Effect (1 input) Class Manager - {CC7BFB42-F175-11D1-A392-00E0291F3959} - C:\WINDOWS\system32\qedit.dll
Video Effect (2 input) Class Manager - {CC7BFB43-F175-11D1-A392-00E0291F3959} - C:\WINDOWS\system32\qedit.dll
Video Mixing Renderer 9 - {51B4ABF3-748F-4E3B-A276-C828330E926A} - C:\WINDOWS\system32\quartz.dll
Video Render Dynamic Terminal - {AED6483E-3304-11D2-86F1-006008B0E5D2} - C:\WINDOWS\system32\termmgr.dll
VideoPort Object - {CE292861-FC88-11D0-9E69-00C04FD7C15B} - C:\WINDOWS\system32\qdvd.dll
VMR Allocator Presenter 9 - {2D2E24CB-0CD5-458F-86EA-3E6FA22C8E64} - C:\WINDOWS\system32\quartz.dll
VMR ImageSync 9 - {E4979309-7A32-495E-8A92-7B014AAD4961} - C:\WINDOWS\system32\quartz.dll
WaveIn Class Manager - {33D9A762-90C8-11D0-BD43-00A0C911CE86} - C:\WINDOWS\system32\devenum.dll
WaveOut and DSound Class Manager - {E0F158E1-CB04-11D0-BD4E-00A0C911CE86} - C:\WINDOWS\system32\devenum.dll
Wbem Scripting Object Path - {172BDDF8-CEEA-11D1-8B05-00600806D9B6} - C:\WINDOWS\system32\wbem\wbemdisp.dll
WDM Instance Provider - {D2D588B5-D081-11D0-99E0-00C04FC2F8EC} - C:\WINDOWS\system32\wbem\wmiprov.dll
WIA FileSystem USD - {D2923B86-15F1-46FF-A19A-DE825F919576} - C:\WINDOWS\system32\fsusd.dll
WIA Video Preview Class - {457A23DF-6F2A-4684-91D0-317FB768D87C} - C:\WINDOWS\system32\camocx.dll
Windows Media Video Decompressor Property page - {9AADA567-04E0-11D4-9148-00C04F610D24} - C:\WINDOWS\system32\wmv8ds32.ax
WM Color Converter Filter - {CC45B0B0-72D8-4652-AE5F-5E3E266BE7ED} - C:\Programmi\Movie Maker\wmm2filt.dll
WM TV Out Smooth Picture Filter - {41D2B841-7692-4C83-AFD3-F60E845341AF} - C:\Programmi\Movie Maker\wmm2filt.dll
WM VIH2 Fix - {586FB486-5560-4FF3-96DF-1118C96AF456} - C:\Programmi\Movie Maker\wmm2filt.dll
WMI ADSI Extension - {F0975AFE-5C7F-11D2-8B74-00104B2AFB41} - C:\WINDOWS\system32\wbem\wbemads.dll
WMT Audio Analyzer - {1CB1623E-BBEC-4E8D-B2DF-DC08C6F4627C} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Black Frame Generator - {2EA10031-0033-450E-8072-E27D9E768142} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT DeInterlace Filter - {C8F209F8-480E-454C-94A4-5392D88EBA0F} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT DeInterlace Prop Page - {A2EDA89A-0966-4B91-9C18-AB69F098187F} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT DirectX Transform Wrapper - {AECF5D2E-7A18-4DD2-BDCD-29B6F615B448} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT DV Extract Filter - {E476CBFF-E229-4524-B6B7-228A3129D1C7} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT FormatConversion - {2D20D4BB-B47E-4FB7-83BD-E3C2EE250D26} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT FormatConversion Prop Page - {E188F7A3-A04E-413E-99D1-D79A45F70305} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Import Filter - {4D4C9FEF-ED80-47EA-A3FA-3215FDBB33AB} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Interlacer - {C6CB1FE3-B05E-4F0E-818F-C83ED5A0332F} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Log Filter - {92883667-E95C-443D-AC96-4CACA27BEB6E} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT MuxDeMux Filter - {01002B17-5D93-4551-81E4-831FEF780A53} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Sample Info Filter - {7F1232EE-44D7-4494-AB8B-CC61B10E21A5} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Screen capture Filter - {31087270-D348-432C-899E-2D2F38FF29A0} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Screen Capture Filter Task Page - {679E132F-561B-42F8-846C-A70DBDC62999} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Switch Filter - {EF105BC3-C064-45F1-AD53-6D8A8578D01B} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Virtual Renderer - {930FD02C-BBE7-4EB9-91CF-FC45CC91E3E6} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Virtual Source - {C44C65C7-FDF1-453D-89A5-BCC28F5D69F9} - C:\Programmi\Movie Maker\wmm2filt.dll
WMT Volume - {EFEE43D6-BFE5-44B0-8063-AC3B2966AB2C} - C:\Programmi\Movie Maker\wmm2filt.dll
XML Data Source Object 2.6 - {f5078f1f-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML Document 2.6 - {f5078f22-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML Document 2.6 - {f5078f28-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML DOM Document 2.6 - {f5078f1b-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML HTTP 2.6 - {f5078f1e-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML Moniker 2.6 - {f5078f29-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML Parser 2.6 - {f5078f20-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XML Schema Cache 2.6 - {f5078f1d-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
XSL Template 2.6 - {f5078f21-c551-11d3-89b9-0000f81fe221} - C:\WINDOWS\system32\msxml2.dll
[MSConfig XP (7)]
DAEMON Tools = "C:\Programmi\DAEMON Tools\daemon.exe" -lang 1033
H/PC Connection Agent = "C:\PROGRA~1\MI3AA1~1\wcescomm.exe"
QuickTime Task = "C:\Programmi\QuickTime\qttask.exe" -atboottime
RemoteControl = C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
SynTPEnh = C:\Programmi\Synaptics\SynTP\SynTPEnh.exe
SynTPLpr = C:\Programmi\Synaptics\SynTP\SynTPLpr.exe
TkBellExe = "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
[Stopped/disabled NT Services]
* Stopped (45) *
.NET Runtime Optimization Service v2.0.50727_X86 = C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
Accesso rete = C:\WINDOWS\system32\lsass.exe
Adobe LM Service = "C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe"
Applicazione di sistema COM+ = C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
Archivi rimovibili = C:\WINDOWS\system32\svchost.exe -k netsvcs
ASP.NET State Service = C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
Auto Connection Manager di Accesso remoto = C:\WINDOWS\system32\svchost.exe -k netsvcs
Avvisi e registri di prestazioni = C:\WINDOWS\system32\smlogsvc.exe
Compatibilità di Cambio rapido utente = C:\WINDOWS\System32\svchost.exe -k netsvcs
Condivisione desktop remoto di NetMeeting = C:\WINDOWS\system32\mnmsrvc.exe
Connection Manager di Accesso remoto = C:\WINDOWS\system32\svchost.exe -k netsvcs
Connessioni di rete = C:\WINDOWS\System32\svchost.exe -k netsvcs
Copia replicata del volume = C:\WINDOWS\System32\vssvc.exe
Distributed Transaction Coordinator = C:\WINDOWS\system32\msdtc.exe
Estensioni driver di Strumentazione gestione Windows = C:\WINDOWS\System32\svchost.exe -k netsvcs
Gestione applicazione = C:\WINDOWS\system32\svchost.exe -k netsvcs
Gestione dischi logici = C:\WINDOWS\System32\svchost.exe -k netsvcs
Gestione sessione di assistenza mediante desktop remoto = C:\WINDOWS\system32\sessmgr.exe
Gruppo di continuità = C:\WINDOWS\System32\ups.exe
Host di periferiche Plug and Play universali = C:\WINDOWS\system32\svchost.exe -k LocalService
MS Software Shadow Copy Provider = C:\WINDOWS\system32\dllhost.exe /Processid:{6589D4E0-F21F-4D23-87F5-304F04447EA9}
NLA (Network Location Awareness) = C:\WINDOWS\system32\svchost.exe -k netsvcs
Office Source Engine = "C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE"
PDEngine = C:\Programmi\Raxco\PerfectDisk\PDEngine.exe
Provider supporto protezione LM NT = C:\WINDOWS\system32\lsass.exe
QoS RSVP = C:\WINDOWS\system32\rsvp.exe
RPC Locator = C:\WINDOWS\system32\locator.exe
Scheda WMI Performance = C:\WINDOWS\system32\wbem\wmiapsrv.exe
ServiceLayer = "C:\Programmi\File comuni\PCSuite\Services\ServiceLayer.exe"
Servizi terminal = C:\WINDOWS\System32\svchost -k DComLaunch
Servizio amministrativo di Gestione disco logico = C:\WINDOWS\System32\dmadmin.exe /com
Servizio COM di masterizzazione CD IMAPI = C:\WINDOWS\system32\imapi.exe
Servizio di indicizzazione = C:\WINDOWS\system32\cisvc.exe
Servizio di rilevamento SSDP = C:\WINDOWS\system32\svchost.exe -k LocalService
Servizio Gateway di livello applicazione = C:\WINDOWS\System32\alg.exe
Servizio Messenger Sharing USN Journal Reader = C:\WINDOWS\system32\svchost.exe -k usnsvc
Servizio Numero di serie per dispositivi multimediali portatili = C:\WINDOWS\System32\svchost.exe -k netsvcs
Servizio Provisioning di rete = C:\WINDOWS\System32\svchost.exe -k netsvcs
Servizio trasferimento intelligente in background = C:\WINDOWS\system32\svchost.exe -k netsvcs
Sistema di eventi COM+ = C:\WINDOWS\system32\svchost.exe -k netsvcs
smart card = C:\WINDOWS\System32\SCardSvr.exe
SQL Server VSS Writer = "C:\Programmi\Microsoft SQL Server\90\Shared\sqlwriter.exe"
SSL HTTP = C:\WINDOWS\System32\svchost.exe -k HTTPFilter
Telefonia = C:\WINDOWS\System32\svchost.exe -k netsvcs
Windows Installer = C:\WINDOWS\system32\msiexec.exe /V
* Stopped & disabled (10) *
Avvisi = C:\WINDOWS\system32\svchost.exe -k LocalService
ClipBook = C:\WINDOWS\system32\clipsrv.exe
DDE di rete = C:\WINDOWS\system32\netdde.exe
DDE DSDM di rete = C:\WINDOWS\system32\netdde.exe
Messenger = C:\WINDOWS\system32\svchost.exe -k netsvcs
Routing e Accesso remoto = C:\WINDOWS\system32\svchost.exe -k netsvcs
SQL Server Active Directory Helper = "C:\Programmi\Microsoft SQL Server\90\Shared\sqladhlp90.exe"
SQL Server Browser = "C:\Programmi\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
Telnet = C:\WINDOWS\system32\tlntsvr.exe
Visual Studio 2005 Remote Debugger = "C:\Programmi\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe" /service msvsmon80
[Windows XP Security]
* Security Center *
- This user
FirstRun = dword: 1
- All users
FirstRunDisabled = dword: 1
AntiVirusDisableNotify = dword: 0
FirewallDisableNotify = dword: 1
UpdatesDisableNotify = dword: 0
AntiVirusOverride = dword: 0
FirewallOverride = dword: 0
* System Restore *
- All users
DisableSR = dword: 1
CreateFirstRunRp = dword: 1
DSMin = dword: 200
DSMax = dword: 400
RPSessionInterval = dword: 0
RPGlobalInterval = dword: 86400
RPLifeInterval = dword: 7776000
CompressionBurst = dword: 60
TimerInterval = dword: 120
DiskPercent = dword: 12
ThawInterval = dword: 900
RestoreDiskSpaceError = dword: 0
==================================================
= Other users on this computer: Default user =
==================================================
--------------------
Autostart folders:
[User Startup]
desktop.ini
--------------------
IniMapping values:
User screensaver = logon.scr
--------------------
Policies:
[Alternate policies]
* Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) *
NoDriveTypeAutoRun = dword: 145
--------------------
Registry 'Run' keys:
[User Run]
CTFMON.EXE = C:\WINDOWS\system32\CTFMON.EXE
--------------------
Hijack points:
[Internet Explorer URLs]
* Internet Explorer\Desktop\General (2) *
BackupWallpaper = C:\WINDOWS\Web\Wallpaper\Acer.bmp
Wallpaper = C:\WINDOWS\Web\Wallpaper\Acer.bmp
==================================================
= Other users on this computer: SERVIZIO LOCALE =
==================================================
--------------------
Autostart folders:
[User Startup]
desktop.ini
--------------------
IniMapping values:
User screensaver = C:\WINDOWS\System32\logon.scr
--------------------
Policies:
[Alternate policies]
* Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) *
NoDriveTypeAutoRun = dword: 145
--------------------
Registry 'Run' keys:
[User Run]
CTFMON.EXE = C:\WINDOWS\system32\CTFMON.EXE
==================================================
= Other users on this computer: SERVIZIO DI RETE =
==================================================
--------------------
Autostart folders:
[User Startup]
desktop.ini
--------------------
IniMapping values:
User screensaver = C:\WINDOWS\System32\logon.scr
--------------------
Policies:
[Alternate policies]
* Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) *
NoDriveTypeAutoRun = dword: 145
--------------------
Registry 'Run' keys:
[User Run]
CTFMON.EXE = C:\WINDOWS\system32\CTFMON.EXE
==================================================
= Other users on this computer: SYSTEM =
==================================================
--------------------
Autostart folders:
[User Startup]
desktop.ini
--------------------
IniMapping values:
User screensaver = logon.scr
--------------------
Policies:
[Alternate policies]
* Software\Microsoft\Windows\CurrentVersion\policies\Explorer (1) *
NoDriveTypeAutoRun = dword: 145
--------------------
Registry 'Run' keys:
[User Run]
CTFMON.EXE = C:\WINDOWS\system32\CTFMON.EXE
--------------------
Hijack points:
[Internet Explorer URLs]
* Internet Explorer\Desktop\General (2) *
BackupWallpaper = C:\WINDOWS\Web\Wallpaper\Acer.bmp
Wallpaper = C:\WINDOWS\Web\Wallpaper\Acer.bmp
==================================================
= Other hardware configurations: Last known good =
==================================================
--------------------
On-reboot actions:
BootExecute = autocheck autochk *
--------------------
Services:
[NT Services (43)]
Accesso secondario = C:\WINDOWS\System32\svchost.exe -k netsvcs
Acquisizione di immagini di Windows (WIA) = C:\WINDOWS\system32\svchost.exe -k imgsvc
Aggiornamenti automatici = C:\WINDOWS\system32\svchost.exe -k netsvcs
Archiviazione protetta = C:\WINDOWS\system32\lsass.exe
Audio Windows = C:\WINDOWS\System32\svchost.exe -k netsvcs
Bluetooth Support Service = C:\WINDOWS\system32\svchost.exe -k bthsvcs
Browser di computer = C:\WINDOWS\system32\svchost.exe -k netsvcs
Centro sicurezza PC = C:\WINDOWS\System32\svchost.exe -k netsvcs
Client DHCP = C:\WINDOWS\system32\svchost.exe -k netsvcs
Client DNS = C:\WINDOWS\system32\svchost.exe -k NetworkService
Fax = C:\WINDOWS\system32\fxssvc.exe
Gestione account di protezione (SAM) = C:\WINDOWS\system32\lsass.exe
Guida in linea e supporto tecnico = C:\WINDOWS\System32\svchost.exe -k netsvcs
Helper NetBIOS di TCP/IP = C:\WINDOWS\system32\svchost.exe -k LocalService
HID Input Service = C:\WINDOWS\System32\svchost.exe -k netsvcs
Kaspersky Anti-Virus 6.0 = "C:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r
Machine Debug Manager = "C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE"
Manutenzione collegamenti distribuiti client = C:\WINDOWS\system32\svchost.exe -k netsvcs
Monitor infrarossi = C:\WINDOWS\system32\svchost.exe -k netsvcs
Notebook Manager Service = C:\Acer\eManager\anbmServ.exe
Notifica eventi di sistema = C:\WINDOWS\system32\svchost.exe -k netsvcs
Ora di Windows = C:\WINDOWS\System32\svchost.exe -k netsvcs
Plug and Play = C:\WINDOWS\system32\services.exe
Registro di sistema remoto = C:\WINDOWS\system32\svchost.exe -k LocalService
Registro eventi = C:\WINDOWS\system32\services.exe
Rilevamento hardware shell = C:\WINDOWS\System32\svchost.exe -k netsvcs
RPC (Remote Procedure Call) = C:\WINDOWS\system32\svchost -k rpcss
Server = C:\WINDOWS\system32\svchost.exe -k netsvcs
Servizi di crittografia = C:\WINDOWS\system32\svchost.exe -k netsvcs
Servizi IPSEC = C:\WINDOWS\system32\lsass.exe
Servizio di segnalazione errori = C:\WINDOWS\System32\svchost.exe -k netsvcs
Servizio Ripristino configurazione di sistema = C:\WINDOWS\system32\svchost.exe -k netsvcs
Spooler di stampa = C:\WINDOWS\system32\spoolsv.exe
SQL Server (SQLEXPRESS) = "C:\Programmi\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
Strumentazione gestione Windows = C:\WINDOWS\system32\svchost.exe -k netsvcs
Temi = C:\WINDOWS\System32\svchost.exe -k netsvcs
Utilità di avvio processo server DCOM = C:\WINDOWS\system32\svchost -k DcomLaunch
Utilità di pianificazione = C:\WINDOWS\System32\svchost.exe -k netsvcs
WebClient = C:\WINDOWS\system32\svchost.exe -k LocalService
Windows Firewall / Condivisione connessione Internet (ICS) = C:\WINDOWS\system32\svchost.exe -k netsvcs
Windows User Mode Driver Framework = C:\WINDOWS\system32\wdfmgr.exe
Workstation = C:\WINDOWS\system32\svchost.exe -k netsvcs
Zero Configuration reti senza fili = C:\WINDOWS\System32\svchost.exe -k netsvcs
[SafeBoot services (Minimal boot)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}
* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}
* Driver *
dmboot.sys
dmio.sys
dmload.sys
sermouse.sys
vga.sys
vgasave.sys
* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
PCI Configuration
PNP Filter
Primary disk
SCSI Class
System Bus Extender
* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}
* FSFilter System Recovery *
sr.sys
* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}
* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}
* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}
* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}
* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}
* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}
* Service *
AppMgmt
CryptSvc
DcomLaunch
dmadmin
dmserver
EventLog
HelpSvc
Netlogon
PlugPlay
RpcSs
SRService
WinMgmt
* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}
* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}
* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}
* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}
[SafeBoot services (Minimal boot + network support)]
* CD-ROM Drive *
{4D36E965-E325-11CE-BFC1-08002BE10318}
* DiskDrive *
{4D36E967-E325-11CE-BFC1-08002BE10318}
* Driver *
dmboot.sys
dmio.sys
dmload.sys
ip6fw.sys
ipnat.sys
rdpcdd.sys
rdpdd.sys
rdpwd.sys
sermouse.sys
tdpipe.sys
tdtcp.sys
vga.sys
vgasave.sys
* Driver Group *
Base
Boot Bus Extender
Boot file system
File system
Filter
NDIS
NDIS Wrapper
NetBIOSGroup
NetDDEGroup
Network
NetworkProvider
PCI Configuration
PNP Filter
PNP_TDI
Primary disk
SCSI Class
Streams Drivers
System Bus Extender
TDI
* Floppy disk drive *
{4D36E980-E325-11CE-BFC1-08002BE10318}
* FSFilter System Recovery *
sr.sys
* Hdc *
{4D36E96A-E325-11CE-BFC1-08002BE10318}
* Human Interface Devices *
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}
* Keyboard *
{4D36E96B-E325-11CE-BFC1-08002BE10318}
* Mouse *
{4D36E96F-E325-11CE-BFC1-08002BE10318}
* Net *
{4D36E972-E325-11CE-BFC1-08002BE10318}
* NetClient *
{4D36E973-E325-11CE-BFC1-08002BE10318}
* NetService *
{4D36E974-E325-11CE-BFC1-08002BE10318}
* NetTrans *
{4D36E975-E325-11CE-BFC1-08002BE10318}
* PCMCIA Adapters *
{4D36E977-E325-11CE-BFC1-08002BE10318}
* SCSIAdapter *
{4D36E97B-E325-11CE-BFC1-08002BE10318}
* Service *
AFD
AppMgmt
Browser
CryptSvc
DcomLaunch
Dhcp
dmadmin
dmserver
DnsCache
EventLog
HelpSvc
LanmanServer
LanmanWorkstation
LmHosts
Messenger
Ndisuio
NetBIOS
NetBT
Netlogon
NetMan
NtLmSsp
PlugPlay
rdsessmgr
RpcSs
SharedAccess
SRService
Tcpip
termservice
WinMgmt
WZCSVC
* Standard floppy disk controller *
{4D36E969-E325-11CE-BFC1-08002BE10318}
* System *
{4D36E97D-E325-11CE-BFC1-08002BE10318}
* Universal Serial Bus controllers *
{36FC9E60-C465-11CF-8056-444553540000}
* Volume *
{71A27CDD-812A-11D0-BEC7-08002BE2092F}
[SafeBoot: Alternate shell]
cmd.exe (not enabled)
--------------------
Driver filters:
[Class filters]
* Periferiche infrarossi *
- Upper filters
IRENUM.sys
* Volumi di archiviazione *
- Upper filters
VolSnap.sys
[Device filters]
* Agere Systems HDA Modem *
- Lower filters
AgereSoftModem.sys
* Agere Systems HDA Modem *
- Lower filters
AgereSoftModem.sys
* Direct Parallel *
- Lower filters
PtiLink.sys
* Driver mouse di Terminal Server *
- Upper filters
mouclass.sys
* Driver tastiera di Terminal Server *
- Upper filters
kbdclass.sys
* Miniport WAN (PPPOE) *
- Lower filters
NdisTapi.sys
* Modem standard su collegamento Bluetooth *
- Lower filters
bthmodem.sys
* Nokia 6630 USB Modem *
- Lower filters
Nokia USB Modem.sys
* Nokia 6630 USB Modem *
- Lower filters
Nokia USB Modem.sys
* Nokia N70 USB Modem *
- Lower filters
Nokia USB Modem.sys
* Periferica Bluetooth (RFCOMM protocollo TDI) *
- Upper filters
BthEnum.sys
* Porta di comunicazione *
- Upper filters
serenum.sys
* Synaptics PS/2 Port TouchPad *
- Upper filters
SynTP.sys
* Tastiera standard 101/102 tasti o Tastiera Microsoft Natural PS/2 *
- Upper filters
DKbFltr.sys
* Unità CD-ROM *
- Upper filters
redbook.sys
* Unità CD-ROM *
- Upper filters
redbook.sys
- Lower filters
imapi.sys
* Unità CD-ROM *
- Upper filters
redbook.sys
- Lower filters
imapi.sys
* WAN Miniport (IP) *
- Lower filters
NdisTapi.sys
* WAN Miniport (PPTP) *
- Lower filters
NdisTapi.sys
--------------------
Print monitors (8):
BJ Language Monitor - cnbjmon.dll
EPSON Stylus DX4800 Series 2KMonitor5E - E_FLMADE.DLL
Local Port - localspl.dll
Microsoft Document Imaging Writer Monitor - mdimon.dll
Microsoft Shared Fax Monitor - FXSMON.DLL
PJL Language Monitor - pjlmon.dll
Standard TCP/IP Port - tcpmon.dll
USB Monitor - usbmon.dll
--------------------
WOW compatibility:
cmdline = C:\WINDOWS\system32\ntvdm.exe
wowcmdline = C:\WINDOWS\system32\ntvdm.exe -a C:\WINDOWS\system32\krnl386
[KnownDlls (16-bit) (40)]
avicap.dll
avifile.dll
comm.drv
commdlg.dll
compobj.dll
ctl3dv2.dll
ddeml.dll
keyboard.drv
lanman.drv
mapi.dll
mciavi.drv
mciseq.drv
mciwave.drv
mmsystem.dll
mouse.drv
msacm.dll
msvideo.dll
netapi.dll
ole2.dll
ole2disp.dll
ole2nls.dll
olecli.dll
olesvr.dll
pmspl.dll
progman.exe
rasapi16.dll
shell.dll
sound.drv
storage.dll
system.drv
timer.drv
toolhelp.dll
typelib.dll
vga.drv
wfwnet.drv
win87em.dll
winoldap.mod
winsock.dll
winspool.exe
wowdeb.exe
[KnownDlls (32-bit) (20)]
advapi32.dll
comdlg32.dll
gdi32.dll
imagehlp.dll
kernel32.dll
lz32.dll
ole32.dll
oleaut32.dll
olecli32.dll
olecnv32.dll
olesvr32.dll
olethk32.dll
rpcrt4.dll
shell32.dll
url.dll
urlmon.dll
user32.dll
version.dll
wininet.dll
wldap32.dll
--------------------------------------------------
End of report, 180.729 bytes
Commandline options:
/showempty - Show empty sections
/showcmts - Show comments in .bat files
/noshowclsids - Hide class IDs
/noshowprivate - Hide usernames and computer name
/noshowusers - Hide entries from other users
/noshowhardware - Hide entries from other hardware configurations
/showlargehosts - Show hosts file even when more than 1000 lines are in it
/showlargezones - Show Zones even when more than 1000 domains are in them
/autosave - Run hidden, automatically save a report and quit
/autosavepath: - Specify where to save log, when using /autosave.
Use surrounding quotes for paths with spaces.
jacoscar
14-11-2006, 11:17
Mazza quant'è lungo il secondo
oggi l'avviso del virus mi è comparso 2 volte e 2 volte l'ho eliminato: che palle! :mad: :muro: :help: :help: :help:
vBulletin® v3.6.4, Copyright ©2000-2025, Jelsoft Enterprises Ltd.