PDA

View Full Version : Trojan.Win32.Diamin.jm


Ringo64
09-09-2007, 12:14
Il mio antivirus Kaspersky ha rilevato i seguenti trojan:
eliminato: un programma trojan Trojan.Win32.Diamin.jm Il file: C:\Documents and Settings\lore\Impostazioni locali\Temp\jar_cache50649.tmp\DialerMiniComando.exe/PE_Patch.UPX/UPX
pulito: un programma trojan Trojan.Win32.Diamin.jm Il file: C:\Documents and Settings\lore\Impostazioni locali\Temp\jar_cache9671.tmp

Ho provato a fare una scansione come da voi suggerito con DrWeb ma non è risultato nulla.
Io ho una linea adsl, si rallenta molto e quando spengo il computer una finestra mi avverte che ho un tot. di connessioni in corso (in genere centinaia!!).
Ho fatto scansione con Ewido, ma nulla.
Come posso intervenire?
Ringrazio anticipatamente.

juninho85
09-09-2007, 13:12
posta log di hijackthis e gmer

Ringo64
09-09-2007, 15:56
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15.40.56, on 09/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\IFXTCS.exe
C:\Programmi\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Programmi\HPQ\IAM\bin\asghost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\AccelerometerSt.exe
C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe
C:\Programmi\ATI Technologies\ATI.ACE\cli.exe
C:\Programmi\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Programmi\Hp\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Programmi\Synaptics\SynTP\SynTPEnh.exe
C:\Programmi\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Programmi\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\WINDOWS\SMINST\Scheduler.exe
C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
C:\Programmi\QuickTime\qttask.exe
C:\Programmi\iTunes\iTunesHelper.exe
C:\Programmi\Analog Devices\Core\smax4pnp.exe
C:\Programmi\Winamp\winampa.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
C:\Programmi\WIDCOMM\Software Bluetooth\BTTray.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
C:\Programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
C:\WINDOWS\system32\IFXSPMGT.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\Programmi\ProtectTools\Embedded Security Software\PSDsrvc.EXE
C:\Programmi\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Programmi\iPod\bin\iPodService.exe
C:\Programmi\ProtectTools\Embedded Security Software\PSDrt.exe
C:\Programmi\ProtectTools\Embedded Security Software\SpTna.exe
C:\Programmi\HPQ\HP ProtectTools Security Manager\PTServs.exe
C:\Programmi\ATI Technologies\ATI.ACE\cli.exe
C:\PROGRA~1\HPQ\Shared\HPQTOA~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tiscali.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.hp.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programmi\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: HP Credential Manager for ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Programmi\HPQ\IAM\Bin\ItIeAddIN.dll
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Programmi\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Programmi\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [PTHOSTTR] C:\Programmi\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [HP Software Update] C:\Programmi\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmi\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Programmi\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HPQ\IAM\Bin\AsTsVcc.dll,RegisterModule
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Programmi\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\Sminst\Recguard.exe
O4 - HKLM\..\Run: [Reminder] C:\WINDOWS\Creator\Remind_XP.exe
O4 - HKLM\..\Run: [Scheduler] C:\WINDOWS\SMINST\Scheduler.exe
O4 - HKLM\..\Run: [WatchDog] C:\Programmi\InterVideo\DVD Check\DVDCheck.exe
O4 - HKLM\..\Run: [kis] "C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmi\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programmi\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmi\Winamp\winampa.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Avvio veloce di Adobe Reader.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DVD Check.lnk = C:\Programmi\InterVideo\DVD Check\DVDCheck.exe
O8 - Extra context menu item: Aggiungi a Kaspersky Anti-Banner - C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\\ie_banner_deny.htm
O8 - Extra context menu item: Invia a &Bluetooth - C:\Programmi\WIDCOMM\Software Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\scieplugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmi\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com
O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn/install/hpobjinstaller_gmn.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O20 - Winlogon Notify: OneCard - C:\Programmi\HPQ\IAM\Bin\AsWlnPkg.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Programmi\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Kaspersky Internet Security 6.0 (AVP) - Kaspersky Lab - C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programmi\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - C:\WINDOWS\system32\IFXSPMGT.exe
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - C:\WINDOWS\system32\IFXTCS.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Programmi\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe
O23 - Service: PC Angel (PCA) - SoftThinks - C:\WINDOWS\SMINST\PCAngel.exe
O23 - Service: Personal Secure Drive Service (PersonalSecureDriveService) - Infineon Technologies AG - C:\Programmi\ProtectTools\Embedded Security Software\PSDsrvc.EXE

--
End of file - 9467 bytes


Di GMER cosa serve??:processi, moduli, servizi o rootkit ??
Grazie.

juninho85
09-09-2007, 16:04
rootkit e processi
il log comunque è pulito

Ringo64
09-09-2007, 16:23
GMER 1.0.12.12010 - http://www.gmer.net
Rootkit scan 2007-09-09 16:09:57
Windows 5.1.2600 Service Pack 2


---- System - GMER 1.0.12 ----

SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwEnumerateKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwEnumerateValueKey
SSDT \??\C:\WINDOWS\system32\drivers\klif.sys ZwQuerySystemInformation

Code \??\C:\WINDOWS\system32\drivers\klif.sys FsRtlCheckLockForReadAccess
Code \??\C:\WINDOWS\system32\drivers\klif.sys IoIsOperationSynchronous

---- Threads - GMER 1.0.12 ----

Thread 4:124 86700B40
Thread 4:128 86700B40
Thread 4:132 85D420A0
Thread 4:136 85D420A0
Thread 4:140 85D420A0
Thread 4:456 86700B40
Thread 4:584 86700B40
Thread 4:732 86700B40
Thread 4:2192 8468A620
Thread 808:2416 7C810665
Thread 3488:3512 7C810665
Thread 3488:3604 7C810659
Thread 3488:3608 7C810659
Thread 3488:3624 7C810659
Thread 3488:3652 7C810659
Thread 3488:3664 7C810659
Thread 3488:3680 7C810659
Thread 3488:2896 7C810659
Thread 3488:440 7C810659
Thread 3488:2916 7C810659
Thread 3488:1872 7C810659
Thread 3488:296 7C810659
Thread 3488:2072 7C810659

---- EOF - GMER 1.0.12 ----


Scusa ma non riesco a copiare i processi!!!

juninho85
09-09-2007, 16:26
prova anche a scaricarti il programmino standalone tcpview,in maniera tale da sapere chi e verso chi vengo lanciate le connessioni

Ringo64
09-09-2007, 16:47
[System Process]:0 TCP 192.168.1.100:2055 64.233.187.165:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2057 209.85.169.99:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2049 151.1.244.55:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2077 207.46.193.254:80 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:1110 127.0.0.1:2044 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2053 151.1.244.55:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2083 213.254.238.145:80 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:1110 127.0.0.1:2094 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:2078 127.0.0.1:1110 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:1110 127.0.0.1:2046 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2092 213.254.238.147:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2081 207.46.193.254:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2085 213.254.238.145:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2093 213.254.238.147:80 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:1110 127.0.0.1:2096 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:1110 127.0.0.1:2064 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2051 64.233.187.165:80 TIME_WAIT
[System Process]:0 TCP 192.168.1.100:2089 65.54.195.185:80 TIME_WAIT
[System Process]:0 TCP 127.0.0.1:1110 127.0.0.1:2066 TIME_WAIT
alg.exe:3440 TCP 127.0.0.1:1032 0.0.0.0:0 LISTENING
avp.exe:664 TCP 0.0.0.0:1110 0.0.0.0:0 LISTENING
CLI.exe:1508 TCP 127.0.0.1:1025 0.0.0.0:0 LISTENING
CLI.exe:3488 TCP 127.0.0.1:1040 0.0.0.0:0 LISTENING
lsass.exe:1020 UDP 0.0.0.0:500 *:*
lsass.exe:1020 UDP 0.0.0.0:4500 *:*
svchost.exe:1304 TCP 0.0.0.0:135 0.0.0.0:0 LISTENING
svchost.exe:1784 UDP 0.0.0.0:1027 *:*
svchost.exe:1784 UDP 0.0.0.0:1240 *:*
svchost.exe:1856 UDP 192.168.1.100:1900 *:*
svchost.exe:1856 UDP 127.0.0.1:1900 *:*
svchost.exe:592 TCP 127.0.0.1:49100 0.0.0.0:0 LISTENING
System:4 TCP 0.0.0.0:445 0.0.0.0:0 LISTENING
System:4 TCP 192.168.1.100:139 0.0.0.0:0 LISTENING
System:4 UDP 192.168.1.100:137 *:*
System:4 UDP 0.0.0.0:445 *:*
System:4 UDP 192.168.1.100:138 *:*

Schermata di TCPview

juninho85
09-09-2007, 17:05
devi postarmi anche i servizi di gmer,c'è qualcosa che cerca di comunicare con le mauritius :D

Riverside
09-09-2007, 17:16
......c'è qualcosa che cerca di comunicare con le mauritius :D
della serie: prenotazione vacanze last minute online :D certo che si è scelto un P.C. molto sicuro :sbonk:

P.S.: @ Juninho, grazie per la risposta su Antivir: non appena ho uno screen di quell'errore lo posto in Guida.

Ringo64
09-09-2007, 18:52
Scusa ma non riesco nemmeno a copiare questo: nè con copia incolla nè con ctrl+v... puoi suggerirmi qualcosa?? Grazie.:mc:

Ringo64
11-09-2007, 13:12
Vorrei sapere come copiare i report da GMER. Inoltre sto notando che non riesco ad aprire alcuni siti: ad esempio corriere.it e tiscali.it.
Grazie.:help:

Ringo64
15-09-2007, 15:06
Scusate ma non riesco a copiare dal programma GMER i servizi e i processi, mentre con il ROOTKIT non ho avuto problema a copiarlo. Qualcuno gentilmente può suggerirmi come fare, io ho tentato con il tasto destro ma nulla, e poi con il ctrl+c...NULLA :muro: Vi prego così posso postare quello che mi hanno chiesto. GRAZIE!!!:

juninho85
15-09-2007, 15:10
guarda posta uno stamp dell'immagine leggibile,facciamo prima :D

Ringo64
15-09-2007, 19:20
Mi dispiace ma non riesco a fare nessuna copia, nè di immagine nè del testo...
sono in alto mare :cry: Non c'è altro modo ??? :muro:

Ringo64
16-09-2007, 16:01
Ho scaricato SiW e da lì riesco tranquillamente a fare copia incolla!!!:D
Se mi dici cosa ti può servire te lo posto immediatamente. GRAZIE!!!:help:

Riverside
16-09-2007, 17:02
Ho scaricato SiW e da lì riesco tranquillamente a fare copia incolla!!!:D Se mi dici cosa ti può servire te lo posto immediatamente. GRAZIE!!!:help:
:eek: Se te lo ha chiesto ci sarà una ragione :( lo vuole controllare, quindi posta quel log, per piacere.

Ringo64
17-09-2007, 15:15
Running Processes con SiW:

Module Name Path Version Description Handle Size
ntdll.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL del livello NT / Sistema operativo Microsoft® Windows® 7C910000 745472
kernel32.dll C:\WINDOWS\system32\ 5.1.2600.3119 DLL client di Windows NT BASE API / Sistema operativo Microsoft® Windows® 7C800000 1048576
user32.dll C:\WINDOWS\system32\ 5.1.2600.3099 Windows XP USER API Client DLL / Sistema operativo Microsoft® Windows® 7E390000 589824
GDI32.dll C:\WINDOWS\system32\ 5.1.2600.3159 GDI Client DLL / Microsoft® Windows® Operating System 77E40000 290816
VERSION.dll C:\WINDOWS\system32\ 5.1.2600.2180 Version Checking and File Installation Libraries / Microsoft® Windows® Operating System 77BD0000 32768
WINMM.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL API MCI / Sistema operativo Microsoft® Windows® 76B00000 188416
ADVAPI32.dll C:\WINDOWS\system32\ 5.1.2600.2180 API Windows 32 Base avanzato / Sistema operativo Microsoft® Windows® 77F40000 700416
RPCRT4.dll C:\WINDOWS\system32\ 5.1.2600.2180 Remote Procedure Call Runtime / Microsoft® Windows® Operating System 77DA0000 593920
COMDLG32.dll C:\WINDOWS\system32\ 6.0.2900.2180 DLL delle finestre di dialogo comuni / Sistema operativo Microsoft® Windows® 76360000 303104
SHLWAPI.dll C:\WINDOWS\system32\ 6.0.2900.3157 Libreria leggera di utilità per la shell / Sistema operativo Microsoft® Windows® 77E90000 483328
msvcrt.dll C:\WINDOWS\system32\ 7.0.2600.2180 Windows NT CRT DLL / Microsoft® Windows® Operating System 77BE0000 360448
COMCTL32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\ 6.0.2900.2982 User Experience Controls Library / Microsoft® Windows® Operating System 773A0000 1060864
SHELL32.dll C:\WINDOWS\system32\ 6.0.2900.3051 DLL comune della shell di Windows / Sistema operativo Microsoft® Windows® 7C9D0000 8503296
WINSPOOL.DRV C:\WINDOWS\system32\ 5.1.2600.2180 Driver dello spooler di Windows / Sistema operativo Microsoft® Windows® 72F70000 155648
WS2_32.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows Socket 2.0 32-Bit DLL / Microsoft® Windows® Operating System 71A30000 94208
WS2HELP.dll C:\WINDOWS\system32\ 5.1.2600.2180 Helper di Windows Socket 2.0 per Windows NT / Sistema operativo Microsoft® Windows® 71A20000 32768
uxtheme.dll C:\WINDOWS\system32\ 6.0.2900.2180 Libreria UxTheme di Microsoft / Sistema operativo Microsoft® Windows® 5B180000 229376
psapi.dll C:\WINDOWS\system32\ 5.1.2600.2180 Process Status Helper / Microsoft® Windows® Operating System 76BB0000 45056
PS5UI.DLL C:\WINDOWS\system32\spool\drivers\w32x86\3\ 0.3.1296.1 PostScript Driver User Interface / Sistema operativo Microsoft® Windows® 5E120000 143360
Secur32.dll C:\WINDOWS\system32\ 5.1.2600.2180 Security Support Provider Interface / Microsoft® Windows® Operating System 77F10000 69632
MSCTF.dll C:\WINDOWS\system32\ 5.1.2600.2180 MSCTF Server DLL / Sistema operativo Microsoft® Windows® 746B0000 307200
ole32.dll C:\WINDOWS\system32\ 5.1.2600.2726 Microsoft OLE per Windows / Sistema operativo Microsoft® Windows® 774B0000 1298432
OLEAUT32.dll C:\WINDOWS\system32\ 5.1.2600.3139 770F0000 569344
appHelp.dll C:\WINDOWS\system32\ 5.1.2600.2180 Application Compatibility Client Library / Microsoft® Windows® Operating System 77B10000 139264
CLBCATQ.DLL C:\WINDOWS\system32\ 2001.12.4414.308 COM Services 76F90000 520192
COMRes.dll C:\WINDOWS\system32\ 2001.12.4414.258 Servizi COM 77010000 860160
SFSShell.dll C:\Programmi\HPQ\IAM\Bin\ 1.21.0.143 Document Manager Service / Cognizance Identity Manager 10000000 323584
MSVCR70.dll C:\WINDOWS\system32\ 7.0.9466.0 Microsoft® C Runtime Library / Microsoft® Visual Studio .NET 7C000000 344064
ItMsg.dll C:\Programmi\HPQ\IAM\Bin\ 1.18.0.305 Common Messages and Images / Cognizance Identity Manager 017D0000 487424
SFSShell.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.18.0.111 Document Manager Service / Cognizance Identity Manager 01850000 32768
SETUPAPI.dll C:\WINDOWS\system32\ 5.1.2600.2180 API dell'installazione di Windows / Sistema operativo Microsoft® Windows® 778F0000 1011712
netapi32.dll C:\WINDOWS\system32\ 5.1.2600.2976 Net Win32 API DLL / Microsoft® Windows® Operating System 5BC70000 344064
MPR.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL del router multiple provider / Sistema operativo Microsoft® Windows® 71AA0000 73728
drprov.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft Terminal Server Network Provider / Microsoft® Windows® Operating System 75F10000 28672
ntlanman.dll C:\WINDOWS\system32\ 5.1.2600.2180 Lan Manager Microsoft® / Sistema operativo Microsoft® Windows® 71BA0000 57344
NETUI0.dll C:\WINDOWS\system32\ 5.1.2600.2180 Codice comune NT LM UI - Classi GUI / Sistema operativo Microsoft® Windows® 71C60000 94208
NETUI1.dll C:\WINDOWS\system32\ 5.1.2600.2180 NT LM UI Common Code - Networking classes / Microsoft® Windows® Operating System 71C20000 262144
NETRAP.dll C:\WINDOWS\system32\ 5.1.2600.2180 Net Remote Admin Protocol DLL / Microsoft® Windows® Operating System 71C10000 28672
SAMLIB.dll C:\WINDOWS\system32\ 5.1.2600.2180 SAM Library DLL / Microsoft® Windows® Operating System 71B80000 77824
davclnt.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL di Web DAV Client / Sistema operativo Microsoft® Windows® 75F20000 36864
USERENV.dll C:\WINDOWS\system32\ 5.1.2600.2180 Userenv / Sistema operativo Microsoft® Windows® 76980000 737280
inetmib1.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft MIB-II subagent / Microsoft® Windows® Operating System 66BB0000 45056
iphlpapi.dll C:\WINDOWS\system32\ 5.1.2600.2912 API helper IP / Sistema operativo Microsoft® Windows® 76D20000 102400
snmpapi.dll C:\WINDOWS\system32\ 5.1.2600.2180 SNMP Utility Library / Microsoft® Windows® Operating System 71EF0000 32768
WSOCK32.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL Windows Socket 32-Bit / Sistema operativo Microsoft® Windows® 71A50000 40960
Dnsapi.dll C:\WINDOWS\system32\ 5.1.2600.2938 DNS Client API DLL / Microsoft® Windows® Operating System 76EE0000 159744
wship6.dll C:\WINDOWS\system32\ 5.1.2600.2180 IPv6 Helper DLL / Microsoft® Windows® Operating System 59110000 28672
Wininet.dll C:\WINDOWS\system32\ 6.0.2900.3164 Internet Extensions per Win32 / Sistema operativo Microsoft® Windows® 77180000 684032
CRYPT32.dll C:\WINDOWS\system32\ 5.131.2600.2180 Crypto API32 / Sistema operativo Microsoft® Windows® 77A50000 610304
MSASN1.dll C:\WINDOWS\system32\ 5.1.2600.2180 ASN.1 Runtime APIs / Microsoft® Windows® Operating System 77AF0000 73728
cfgmgr32.dll C:\WINDOWS\system32\ 5.1.2600.2180 Configuration Manager Forwarder DLL / Microsoft® Windows® Operating System 74A70000 28672
WINTRUST.dll C:\WINDOWS\system32\ 5.131.2600.2180 API di verifica attendibilità Microsoft / Sistema operativo Microsoft® Windows® 76BF0000 188416
IMAGEHLP.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows NT Image Helper / Microsoft® Windows® Operating System 76C50000 163840
SCECLI.dll C:\WINDOWS\system32\ 5.1.2600.2180 Modulo di gestione client dell'Editor di configurazione della protezione di Windows / Sistema operativo Microsoft® Windows® 74390000 196608
MSI.dll C:\WINDOWS\system32\ 3.1.4000.4039 Windows Installer / Windows Installer - Unicode 7D1F0000 2875392
CSRSRV.dll C:\WINDOWS\system32\ 5.1.2600.2180 Client Server Runtime Process / Microsoft® Windows® Operating System 75AF0000 45056
basesrv.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows NT BASE API Server DLL / Microsoft® Windows® Operating System 75B00000 65536
winsrv.dll C:\WINDOWS\system32\ 5.1.2600.3103 DLL Server Windows / Sistema operativo Microsoft® Windows® 75B10000 307200
sxs.dll C:\WINDOWS\system32\ 5.1.2600.3019 Fusion 2.5 / Sistema operativo Microsoft® Windows® 75E40000 720896
AUTHZ.dll C:\WINDOWS\system32\ 5.1.2600.2622 Authorization Framework / Microsoft® Windows® Operating System 77690000 69632
NDdeApi.dll C:\WINDOWS\system32\ 5.1.2600.2180 Network DDE Share Management APIs / Sistema operativo Microsoft® Windows® 758F0000 32768
PROFMAP.dll C:\WINDOWS\system32\ 5.1.2600.2180 Userenv / Microsoft® Windows® Operating System 758E0000 40960
REGAPI.dll C:\WINDOWS\system32\ 5.1.2600.2180 Registry Configuration APIs / Microsoft® Windows® Operating System 76B80000 61440
WINSTA.dll C:\WINDOWS\system32\ 5.1.2600.2180 Winstation Library / Microsoft® Windows® Operating System 76310000 65536
MSGINA.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL GINA di accesso di Windows NT / Sistema operativo Microsoft® Windows® 75920000 1015808
COMCTL32.dll C:\WINDOWS\system32\ 5.82.2900.2982 Common Controls Library / Microsoft® Windows® Operating System 5D4D0000 630784
ODBC32.dll C:\WINDOWS\system32\ 3.525.1117.0 Microsoft Data Access - ODBC Driver Manager / Microsoft Data Access Components 745E0000 249856
odbcint.dll C:\WINDOWS\system32\ 3.525.1117.0 Microsoft Data Access - Risorse ODBC / Microsoft Data Access Components 20000000 98304
SHSVCS.dll C:\WINDOWS\system32\ 6.0.2900.3051 Dll di servizi shell di Windows / Sistema operativo Microsoft® Windows® 776B0000 143360
sfc.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows File Protection / Microsoft® Windows® Operating System 76B70000 20480
sfc_os.dll C:\WINDOWS\system32\ 5.1.2600.2180 Protezione file Windows / Sistema operativo Microsoft® Windows® 76C20000 172032
WINSCARD.DLL C:\WINDOWS\system32\ 5.1.2600.2180 API di Microsoft Smart Card / Sistema operativo Microsoft® Windows® 72360000 114688
WTSAPI32.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows Terminal Server SDK APIs / Microsoft® Windows® Operating System 76F10000 32768
Ati2evxx.dll C:\WINDOWS\system32\ 6.14.10.4129 ATI External Event Utility DLL Module / ATI External Event Utility for NT, W2K and W9X 10000000 69632
cscdll.dll C:\WINDOWS\system32\ 5.1.2600.2180 Agente rete disconnessa / Sistema operativo Microsoft® Windows® 765B0000 118784
klogon.dll C:\WINDOWS\system32\ 6.0.0.299 Logon Visualizer / Kaspersky Anti-Virus 00FF0000 28672
rsaenh.dll C:\WINDOWS\system32\ 5.1.2600.2161 Microsoft Enhanced Cryptographic Provider / Microsoft® Windows® Operating System 0FFD0000 163840
AsWlnPkg.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.37 Winlogon notification handler / Cognizance Identity Manager 01E70000 57344
asycfilt.dll C:\WINDOWS\system32\ 5.1.2600.2180 70E20000 77824
WlNotify.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL comune per ricevere le notifiche di Winlogon / Sistema operativo Microsoft® Windows® 75900000 110592
xpsp2res.dll C:\WINDOWS\system32\ 5.1.2600.2180 Messaggi del Service Pack 2 / Sistema operativo Microsoft® Windows® 026C0000 2969600
msv1_0.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft Authentication Package v1.0 / Microsoft® Windows® Operating System 77C40000 143360
cscui.dll C:\WINDOWS\system32\ 5.1.2600.2180 Interfaccia della cache sul lato client / Sistema operativo Microsoft® Windows® 779F0000 348160
IfxWlxEN.dll C:\WINDOWS\system32\ 2.1.593.0 Winlogon Event Notification DLL / Infineon TPM Software 013F0000 405504
OLEACC.dll C:\WINDOWS\system32\ 4.2.5406.0 Active Accessibility Core Component / Microsoft® Windows® Operating System 74C10000 180224
MSVCP60.dll C:\WINDOWS\system32\ 6.2.3104.0 Microsoft (R) C++ Runtime Library / Microsoft (R) Visual C++ 76030000 413696
NTMARTA.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Provider MARTA per Windows NT / Sistema operativo Microsoft® Windows® 77660000 135168
WLDAP32.dll C:\WINDOWS\system32\ 5.1.2600.2180 Win32 LDAP API DLL / Sistema operativo Microsoft® Windows® 76F20000 184320
ASChnl.dll C:\Programmi\HPQ\IAM\Bin\ 1.23.0.125 Secure Communication Channel / Cognizance Identity Manager 012C0000 135168
wdmaud.drv C:\WINDOWS\system32\ 5.1.2600.2180 WDM Audio driver mapper / Microsoft® Windows® Operating System 72C90000 36864
msacm32.drv C:\WINDOWS\system32\ 5.1.2600.0 Microsoft Sound Mapper / Sistema operativo Microsoft® Windows® 72C80000 32768
MSACM32.dll C:\WINDOWS\system32\ 5.1.2600.2180 Filtro audio ACM Microsoft / Sistema operativo Microsoft® Windows® 77BB0000 86016
midimap.dll C:\WINDOWS\system32\ 5.1.2600.2180 MIDI Mapper Microsoft / Sistema operativo Microsoft® Windows® 77BA0000 28672
ES.DLL C:\WINDOWS\system32\ 2001.12.4414.308 COM Services 776E0000 266240
SCESRV.dll C:\WINDOWS\system32\ 5.1.2600.2180 Modulo di gestione dell'Editor di configurazione della protezione di Windows / Sistema operativo Microsoft® Windows® 77B40000 339968
umpnpmgr.dll C:\WINDOWS\system32\ 5.1.2600.2744 Servizio Plug-and-Play modalità utente / Sistema operativo Microsoft® Windows® 7DBB0000 135168
NCObjAPI.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft® Windows® Operating System 5FBB0000 49152
ShimEng.dll C:\WINDOWS\system32\ 5.1.2600.2180 Shim Engine DLL / Microsoft® Windows® Operating System 5CF90000 155648
AcGenral.DLL C:\WINDOWS\AppPatch\ 5.1.2600.2180 Windows Compatibility DLL / Microsoft® Windows® Operating System 596B0000 1875968
eventlog.dll C:\WINDOWS\system32\ 5.1.2600.2180 Servizio di registrazione degli eventi / Sistema operativo Microsoft® Windows® 772D0000 69632
LSASRV.dll C:\WINDOWS\system32\ 5.1.2600.2976 DLL server LSA / Sistema operativo Microsoft® Windows® 753E0000 741376
NTDSAPI.dll C:\WINDOWS\system32\ 5.1.2600.2180 NT5DS / Microsoft® Windows® Operating System 76760000 77824
SAMSRV.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL Server SAM / Sistema operativo Microsoft® Windows® 743D0000 450560
cryptdll.dll C:\WINDOWS\system32\ 5.1.2600.2180 Cryptography Manager / Microsoft® Windows® Operating System 76750000 49152
msprivs.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft Privilege Translations / Microsoft® Windows® Operating System 20000000 57344
kerberos.dll C:\WINDOWS\system32\ 5.1.2600.2698 Kerberos Security Package / Microsoft® Windows® Operating System 71C80000 307200
netlogon.dll C:\WINDOWS\system32\ 5.1.2600.2180 Net Logon Services DLL / Microsoft® Windows® Operating System 74440000 413696
w32time.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows Time Service / Sistema operativo Microsoft® Windows® 76780000 184320
schannel.dll C:\WINDOWS\system32\ 5.1.2600.3126 TLS / SSL Security Provider / Microsoft® Windows® Operating System 767B0000 159744
wdigest.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft Digest Access / Microsoft® Windows® Operating System 74300000 61440
ipsecsvc.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL del server IPSec SPD di Windows / Sistema operativo Microsoft® Windows® 74360000 196608
oakley.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Gestione chiavi Oakley / Sistema operativo Microsoft® Windows® 756D0000 843776
WINIPSEC.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Windows IPSec SPD Client DLL / Microsoft® Windows® Operating System 742F0000 45056
pstorsvc.dll C:\WINDOWS\system32\ 5.1.2600.2180 Server di Archiviazione protetta / Sistema operativo Microsoft® Windows® 74320000 45056
psbase.dll C:\WINDOWS\system32\ 5.1.2600.2180 Provider predefinito Archiviazione protetta / Sistema operativo Microsoft® Windows® 74340000 110592
mswsock.dll C:\WINDOWS\system32\ 5.1.2600.2180 Service Provider Microsoft Windows Sockets 2.0 / Sistema operativo Microsoft® Windows® 719D0000 262144
hnetcfg.dll C:\WINDOWS\system32\ 5.1.2600.2180 Gestione configurazione della rete domestica / Sistema operativo Microsoft® Windows® 66750000 360448
wshtcpip.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows Sockets Helper DLL / Microsoft® Windows® Operating System 71A10000 32768
dssenh.dll C:\WINDOWS\system32\ 5.1.2600.2133 Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider / Microsoft® Windows® Operating System 68100000 147456
Ati2edxx.dll C:\WINDOWS\system32\ 6.14.10.2500 ati2edxx / ATI External Device Utility 00BC0000 65536
rpcss.dll c:\WINDOWS\system32\ 5.1.2600.2726 Distributed COM Services / Microsoft® Windows® Operating System 76A40000 405504
termsrv.dll c:\WINDOWS\system32\ 5.1.2600.2180 Servizio Terminal Server / Sistema operativo Microsoft® Windows® 766C0000 344064
ICAAPI.dll c:\WINDOWS\system32\ 5.1.2600.2180 DLL Interface to TermDD Device Driver / Microsoft® Windows® Operating System 74F00000 24576
mstlsapi.dll c:\WINDOWS\system32\ 5.1.2600.2180 Microsoft® Terminal Server Licensing / Microsoft® Windows® Operating System 750A0000 126976
ACTIVEDS.dll c:\WINDOWS\system32\ 5.1.2600.2180 DLL Livello router di AD / Sistema operativo Microsoft® Windows® 77C90000 204800
adsldpc.dll c:\WINDOWS\system32\ 5.1.2600.2180 ADs LDAP Provider C DLL / Sistema operativo Microsoft® Windows® 76DD0000 151552
ATL.DLL c:\WINDOWS\system32\ 3.5.2284.0 ATL Module for Windows XP (Unicode) / Microsoft (R) Visual C++ 76AE0000 69632
winrnr.dll C:\WINDOWS\system32\ 5.1.2600.2180 LDAP RnR Provider DLL / Microsoft® Windows® Operating System 76F70000 32768
rasadhlp.dll C:\WINDOWS\system32\ 5.1.2600.2938 Remote Access AutoDial Helper / Microsoft® Windows® Operating System 76F80000 24576
dhcpcsvc.dll c:\WINDOWS\system32\ 5.1.2600.2912 Servizio Client DHCP / Sistema operativo Microsoft® Windows® 76D40000 122880
wzcsvc.dll c:\WINDOWS\system32\ 5.1.2600.2180 Servizio Zero Configuration reti senza fili / Sistema operativo Microsoft® Windows® 775F0000 450560
rtutils.dll c:\WINDOWS\system32\ 5.1.2600.2180 Routing Utilities / Microsoft® Windows® Operating System 76E40000 57344
WMI.dll c:\WINDOWS\system32\ 5.1.2600.2180 WMI DC and DP functionality / Microsoft® Windows® Operating System 76CF0000 16384
ESENT.dll c:\WINDOWS\system32\ 5.1.2600.2780 Server Database Storage Engine / Microsoft® Windows® Operating System 5E270000 1110016
rastls.dll C:\WINDOWS\system32\ 5.1.2600.2180 Accesso remoto PPP EAP-TLS / Sistema operativo Microsoft® Windows® 76B90000 126976
CRYPTUI.dll C:\WINDOWS\system32\ 5.131.2600.2180 Provider di interfaccia utente di Microsoft Trust / Sistema operativo Microsoft® Windows® 76890000 536576
MPRAPI.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows NT MP Router Administration DLL / Microsoft® Windows® Operating System 76D00000 98304
RASAPI32.dll C:\WINDOWS\system32\ 5.1.2600.2180 API di Accesso remoto / Sistema operativo Microsoft® Windows® 76EA0000 245760
rasman.dll C:\WINDOWS\system32\ 5.1.2600.2180 Remote Access Connection Manager / Microsoft® Windows® Operating System 76E50000 73728
TAPI32.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL client dell'API di Telefonia di Microsoft® Windows(TM) / Sistema operativo Microsoft® Windows® 76E70000 192512
adialhk.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 kldialhk / Kaspersky Anti-Virus 61300000 40960
raschap.dll C:\WINDOWS\system32\ 5.1.2600.2180 Remote Access PPP CHAP / Microsoft® Windows® Operating System 76CA0000 81920
schedsvc.dll c:\WINDOWS\system32\ 5.1.2600.2180 Modulo di gestione dell'Utilità di pianificazione / Sistema operativo Microsoft® Windows® 76840000 208896
MSIDLE.DLL C:\WINDOWS\system32\ 6.0.2900.2180 User Idle Monitor / Microsoft® Windows® Operating System 74EE0000 20480
audiosrv.dll c:\WINDOWS\system32\ 5.1.2600.2180 Windows Audio Service / Microsoft® Windows® Operating System 70DE0000 53248
wkssvc.dll c:\WINDOWS\system32\ 5.1.2600.2976 Workstation Service DLL / Microsoft® Windows® Operating System 76E00000 143360
cryptsvc.dll c:\WINDOWS\system32\ 5.1.2600.2180 Cryptographic Services / Microsoft® Windows® Operating System 76CD0000 73728
certcli.dll c:\WINDOWS\system32\ 5.1.2600.2180 Client Servizi certificati Microsoft® / Sistema operativo Microsoft® Windows® 76B30000 204800
ersvc.dll c:\WINDOWS\system32\ 5.1.2600.2180 Windows Error Reporting Service / Microsoft® Windows® Operating System 74F10000 36864
pchsvc.dll c:\WINDOWS\pchealth\helpctr\binaries\ 5.1.2600.2180 Microsoft PCHealth Service Holder / Microsoft® Windows® Operating System 74ED0000 49152
srvsvc.dll c:\WINDOWS\system32\ 5.1.2600.2577 Server Service DLL / Microsoft® Windows® Operating System 75020000 106496
netman.dll c:\WINDOWS\system32\ 5.1.2600.2743 Gestione connessioni di rete / Sistema operativo Microsoft® Windows® 77CD0000 208896
netshell.dll c:\WINDOWS\system32\ 5.1.2600.2180 Shell connessioni di rete / Sistema operativo Microsoft® Windows® 763B0000 1740800
credui.dll c:\WINDOWS\system32\ 5.1.2600.2180 Interfaccia utente Gestione credenziali / Sistema operativo Microsoft® Windows® 76BC0000 188416
WZCSAPI.DLL c:\WINDOWS\system32\ 5.1.2600.2180 Wireless Zero Configuration service API / Microsoft® Windows® Operating System 72FA0000 65536
seclogon.dll c:\WINDOWS\system32\ 5.1.2600.2180 DLL del Servizio di accesso secondario / Sistema operativo Microsoft® Windows® 73C90000 32768
sens.dll c:\WINDOWS\system32\ 5.1.2600.2180 System Event Notification Service (SENS) / Microsoft® Windows® Operating System 72260000 53248
srsvc.dll c:\WINDOWS\system32\ 5.1.2600.2567 Servizio Ripristino configurazione di sistema / Sistema operativo Microsoft® Windows® 75130000 188416
POWRPROF.dll c:\WINDOWS\system32\ 6.0.2900.2180 Power Profile Helper DLL / Microsoft® Windows® Operating System 74A60000 32768
trkwks.dll c:\WINDOWS\system32\ 5.1.2600.2180 Distributed Link Tracking Client / Microsoft® Windows® Operating System 75000000 102400
wmisvc.dll c:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Sistema operativo Microsoft® Windows® 4F120000 163840
VSSAPI.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft® Volume Shadow Copy Requestor/Writer Services API DLL / Microsoft® Windows® Operating System 75370000 446464
wuauserv.dll c:\WINDOWS\system32\ 5.4.3790.2180 Windows Update AutoUpdate Service / Microsoft® Windows® Operating System 50000000 20480
wuaueng.dll C:\WINDOWS\system32\ 7.0.6000.381 Windows Update Agent / Microsoft® Windows® Operating System 50040000 1712128
WINHTTP.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows HTTP Services / Microsoft® Windows® Operating System 4D530000 360448
Cabinet.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft® Cabinet File API / Microsoft® Windows® Operating System 750E0000 81920
mspatcha.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft(R) Patch Engine / Microsoft® Windows® Operating System 604F0000 45056
browser.dll c:\WINDOWS\system32\ 5.1.2600.2180 Computer Browser Service DLL / Microsoft® Windows® Operating System 772F0000 86016
comsvcs.dll C:\WINDOWS\system32\ 2001.12.4414.308 COM Services 760A0000 1294336
colbact.DLL C:\WINDOWS\system32\ 2001.12.4414.308 COM Services 750C0000 81920
MTXCLU.DLL C:\WINDOWS\system32\ 2001.12.4414.311 MS DTC amd MTS clustering support DLL / COM Services 75080000 77824
CLUSAPI.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Cluster API Library / Microsoft® Windows® Operating System 76D60000 69632
RESUTILS.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft Cluster Resource Utility DLL / Microsoft® Windows® Operating System 75040000 73728
ipnathlp.dll c:\WINDOWS\system32\ 5.1.2600.2180 Componenti helper NAT Microsoft / Sistema operativo Microsoft® Windows® 66910000 352256
wscsvc.dll c:\WINDOWS\system32\ 5.1.2600.2180 Windows Security Center Service / Microsoft® Windows® Operating System 4C0E0000 94208
wbemcomn.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 75220000 225280
wbemcore.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Sistema operativo Microsoft® Windows® 76630000 544768
esscli.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 752A0000 258048
FastProx.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 75630000 483328
wbemsvc.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 74E60000 57344
wmiutils.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Sistema operativo Microsoft® Windows® 74FB0000 114688
repdrvfs.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 75190000 188416
wmiprvsd.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 59BD0000 446464
wbemess.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 75320000 286720
ncprov.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 Non-COM WMI Event Provision APIs / Microsoft® Windows® Operating System 5FB80000 57344
upnp.dll C:\WINDOWS\system32\ 5.1.2600.2180 Universal Plug and Play API / Microsoft® Windows® Operating System 76DA0000 143360
SSDPAPI.dll C:\WINDOWS\system32\ 5.1.2600.2180 SSDP Client API DLL / Microsoft® Windows® Operating System 74E90000 49152
netcfgx.dll C:\WINDOWS\system32\ 5.1.2600.2180 Oggetti configurazione di rete / Sistema operativo Microsoft® Windows® 75590000 638976
rasmans.dll C:\WINDOWS\system32\ 5.1.2600.2936 Remote Access Connection Manager / Microsoft® Windows® Operating System 7DEE0000 200704
tapisrv.dll c:\WINDOWS\system32\ 5.1.2600.2716 Server di Telefonia Microsoft® Windows(TM) / Sistema operativo Microsoft® Windows® 73350000 262144
rastapi.dll C:\WINDOWS\system32\ 5.1.2600.2180 Remote Access TAPI Compliance Layer / Microsoft® Windows® Operating System 75EF0000 69632
unimdm.tsp C:\WINDOWS\system32\ 5.1.2600.2180 Provider del servizio Unimodem 5 / Sistema operativo Microsoft® Windows® 58080000 221184
uniplat.dll C:\WINDOWS\system32\ 5.1.2600.2180 Unimodem AT Mini Driver Platform Driver for Windows NT / Microsoft® Windows® Operating System 71F90000 28672
unimdmat.dll C:\WINDOWS\system32\ 5.1.2600.2180 Driver Unimodem Service Provider AT Mini / Sistema operativo Microsoft® Windows® 5B480000 90112
modemui.dll C:\WINDOWS\system32\ 5.1.2600.2180 Proprietà modem Windows / Sistema operativo Microsoft® Windows® 61AB0000 167936
kmddsp.tsp C:\WINDOWS\system32\ 5.1.2600.2180 Provider di servizi modalità kernel TAPI / Sistema operativo Microsoft® Windows® 58100000 45056
ndptsp.tsp C:\WINDOWS\system32\ 5.1.2600.2180 Provider di servizi NDIS Proxy TAPI / Sistema operativo Microsoft® Windows® 580E0000 65536
ipconf.tsp C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft Multicast Conference TAPI Service Provider / Sistema operativo Microsoft® Windows® 58110000 32768
h323.tsp C:\WINDOWS\system32\ 5.1.2600.2180 Provider di telefonia Microsoft H.323 / Sistema operativo Microsoft® Windows® 58130000 286720
hidphone.tsp C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft HID Phone TSP / Sistema operativo Microsoft® Windows® 58120000 40960
HID.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Hid User Library / Microsoft® Windows® Operating System 68DD0000 36864
rasppp.dll C:\WINDOWS\system32\ 5.1.2600.2180 Remote Access PPP / Microsoft® Windows® Operating System 721D0000 217088
ntlsapi.dll C:\WINDOWS\system32\ 5.1.2600.2180 Microsoft® License Server Interface DLL / Microsoft® Windows® Operating System 72420000 24576
RASDLG.dll C:\WINDOWS\system32\ 5.1.2600.2180 API finestra di dialogo comune Accesso remoto / Sistema operativo Microsoft® Windows® 754E0000 688128
msxml3.dll C:\WINDOWS\system32\ 8.90.1101.0 MSXML 3.0 SP9 / Microsoft(R) MSXML 3.0 SP9 74910000 1126400
advpack.dll C:\WINDOWS\system32\ 6.0.2900.2180 ADVPACK / Sistema operativo Microsoft® Windows® 751F0000 167936
MFC71U.DLL C:\WINDOWS\system32\ 7.10.3077.0 MFCDLL Shared Library - Retail Version / Microsoft® Visual Studio .NET 7C250000 1056768
MSVCR71.dll C:\WINDOWS\system32\ 7.10.3052.4 Microsoft® C Runtime Library / Microsoft® Visual Studio .NET 00320000 352256
MSVCP71.dll C:\WINDOWS\system32\ 7.10.3077.0 Microsoft® C++ Runtime Library / Microsoft® Visual Studio .NET 7C3A0000 503808
IfxSpArc.dll C:\WINDOWS\system32\ 2.1.593.0 Security Platform Archive Access DLL / Infineon TPM Software 10000000 2281472
MFC71ITA.DLL C:\WINDOWS\system32\ 7.10.3077.0 MFC Language Specific Resources / Microsoft® Visual Studio .NET 5D360000 61440
IFXTPM.dll C:\WINDOWS\system32\ 2.1.593.0 TCPA TSS Device Driver Library / Infineon TPM Software 00890000 159744
msxml4.dll c:\WINDOWS\system32\ 4.20.9848.0 MSXML 4.0 SP 2 / Microsoft(R) MSXML 4.0 SP 2 69B10000 1294336
IFXTCSps.dll C:\WINDOWS\system32\ 2.1.593.0 TCPA TSS Core Service Proxy/Stub DLL / Infineon TPM Software 014A0000 49152
TrayIcon.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.102 Taskbar Notification Icon / Cognizance Identity Manager 10000000 245760
msimg32.dll C:\WINDOWS\system32\ 5.1.2600.2180 GDIEXT Client DLL / Microsoft® Windows® Operating System 76330000 20480
HPBrand.dll C:\Programmi\HPQ\IAM\Bin\ 1.1.0.20 HP Branding Module / Cognizance Identity Manager 00780000 147456
HPBrand.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.1.0.21 HP Branding Module / Cognizance Identity Manager 007B0000 12288
ItMsg.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.18.0.282 Common Messages and Images / Cognizance Identity Manager 007C0000 172032
ittal.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.141 Tokens Abstraction Layer / Cognizance Identity Manager 00AC0000 266240
ItReports.DLL C:\Programmi\HPQ\IAM\Bin\ 1.5.0.36 Report Manager / Cognizance Identity Manager 00B10000 180224
ItReports.DLL C:\Programmi\HPQ\IAM\Bin\1040\ 1.5.0.32 Report Manager / Cognizance Identity Manager 00B50000 24576
scarddlg.dll C:\WINDOWS\system32\ 5.1.2600.2180 SCardDlg - Finestra di dialogo comune per smart card / Sistema operativo Microsoft® Windows® 5D420000 90112
MFC42u.DLL C:\WINDOWS\system32\ 6.2.8071.0 MFCDLL Shared Library - Retail Version / Microsoft (R) Visual C++ 5F800000 991232
MFC42LOC.DLL C:\WINDOWS\system32\ 6.0.8665.0 MFC Language Specific Resources / Microsoft (R) Visual C++ 61E00000 57344
STEngine.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.25 Cognizant Persistent User Identity / Cognizance Identity and Access Management 00E70000 86016
dnsrslvr.dll c:\WINDOWS\system32\ 5.1.2600.2180 Servizio cache del resolver DNS / Sistema operativo Microsoft® Windows® 76730000 53248
lmhsvc.dll c:\WINDOWS\system32\ 5.1.2600.2180 TCPIP NetBios Transport Services DLL / Microsoft® Windows® Operating System 74BD0000 24576
webclnt.dll c:\WINDOWS\system32\ 5.1.2600.2821 Web DAV Service DLL / Microsoft® Windows® Operating System 5AAE0000 86016
ssdpsrv.dll c:\WINDOWS\system32\ 5.1.2600.2180 SSDP Service DLL / Microsoft® Windows® Operating System 76920000 81920
CEAPI.dll C:\Programmi\Lavasoft\Ad-Aware 2007\ 7.0.2.1 CEAPI Dynamic Link Library 10000000 729088
PKArchive84cb.dll C:\Programmi\Lavasoft\Ad-Aware 2007\ 8.4.219.0 PKWARE Archive API - CryptoAPI / PKWARE Archive API 00490000 1683456
Update.dll C:\Programmi\Lavasoft\Ad-Aware 2007\ 7.0.1.3 Update Dynamic Link Library 00340000 528384
BROWSEUI.dll C:\WINDOWS\system32\ 6.0.2900.3157 Shell Browser UI Library / Sistema operativo Microsoft® Windows® 75F30000 1036288
SHDOCVW.dll C:\WINDOWS\system32\ 6.0.2900.3157 Shell Doc Object e Control Library / Sistema operativo Microsoft® Windows® 7E210000 1503232
themeui.dll C:\WINDOWS\system32\ 6.0.2900.2180 API di Windows Theme / Sistema operativo Microsoft® Windows® 5BA40000 466944
actxprxy.dll C:\WINDOWS\system32\ 6.0.2900.2180 ActiveX Interface Marshaling Library / Microsoft® Windows® Operating System 71CD0000 114688
msutb.dll C:\WINDOWS\system32\ 5.1.2600.2180 MSUTB Server DLL / Sistema operativo Microsoft® Windows® 60060000 208896
LINKINFO.dll C:\WINDOWS\system32\ 5.1.2600.2751 Windows Volume Tracking / Microsoft® Windows® Operating System 76940000 32768
ntshrui.dll C:\WINDOWS\system32\ 5.1.2600.2180 Estensioni shell per la condivisione / Sistema operativo Microsoft® Windows® 76950000 155648
urlmon.dll C:\WINDOWS\system32\ 6.0.2900.3157 Estensioni OLE32 per Win32 / Sistema operativo Microsoft® Windows® 7DF20000 655360
webcheck.dll C:\WINDOWS\system32\ 6.0.2900.2180 Utilità di monitoraggio siti Web / Sistema operativo Microsoft® Windows® 74AC0000 290816
stobject.dll C:\WINDOWS\system32\ 5.1.2600.2180 Oggetto servizio shell Systray / Sistema operativo Microsoft® Windows® 761E0000 135168
BatMeter.dll C:\WINDOWS\system32\ 6.0.2900.2180 DLL Helper misuratore alimentazione / Sistema operativo Microsoft® Windows® 74A80000 40960
shellexecutehook.dll C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\ 7.5.1.36 AVG Anti-Spyware shellexecutehook / AVG Anti-Spyware 01980000 77824
wzcdlg.dll C:\WINDOWS\system32\ 5.1.2600.2180 Interfaccia utente Servizio Zero Configuration reti senza fili / Sistema operativo Microsoft® Windows® 4F4B0000 389120
shdoclc.dll C:\WINDOWS\system32\ 6.0.2900.2180 Shell Doc Object e Control Library / Sistema operativo Microsoft® Windows® 02AD0000 573440
PDFShell.dll C:\Programmi\Adobe\Acrobat 7.0\ActiveX\ 7.0.0.0 PDF Shell Extension / Adobe PDF Shell Extension 019B0000 114688
browselc.dll C:\WINDOWS\system32\ 6.0.2900.2180 Shell Browser UI Library / Sistema operativo Microsoft® Windows® 029B0000 77824
AcroIEHelper.dll C:\Programmi\Adobe\Acrobat 7.0\ActiveX\ 7.0.5.172 Adobe Acrobat IE Helper Version 7.0 for ActiveX / AcroIEHelper Library 013D0000 57344
SDHelper.dll C:\Programmi\Spybot - Search & Destroy\ 1.5.0.8 SBSD IE Protection / Spybot - Search & Destroy 02BE0000 1155072
faultrep.dll C:\WINDOWS\system32\ 5.1.2600.2180 Segnalazione errori di Windows / Sistema operativo Microsoft® Windows® 69940000 90112
olepro32.dll C:\WINDOWS\system32\ 5.1.2600.2180 5F210000 94208
AuthWiz.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.267 Cognizance Client Authentication Module / Cognizance Identity Manager 032E0000 356352
AuthWiz.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.5.0.254 Cognizance Client Authentication Module / Cognizance Identity Manager 033A0000 32768
DUSER.dll C:\WINDOWS\system32\ 5.1.2600.2180 Windows DirectUser Engine / Microsoft® Windows® Operating System 6C6B0000 315392
MLANG.dll C:\WINDOWS\system32\ 6.0.2900.2180 Multi Language Support DLL / Microsoft® Windows® Operating System 75D50000 593920
PSDShExtIT.dll C:\Programmi\ProtectTools\Embedded Security Software\ 2.1.593.0 Personal Secure Drive Shell Extension / Infineon Personal Secure Drive 03690000 49152
scr_ch_pg.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 1.0.6.299 Script Checker / Kaspersky Anti-Virus 67500000 65536
jscript.dll C:\WINDOWS\system32\ 5.6.0.8831 Microsoft (r) JScript 75C00000 450560
klscav.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 Script Checker AV Plugin / Kaspersky Anti-Virus 67000000 32768
pr_remote.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 PR_REMOTE / Kaspersky Anti-Virus 66600000 139264
prloader.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 Prague Loader / Kaspersky Anti-Virus 64D00000 290816
prkernel.ppl C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 Prague kernel / Kaspersky Anti-Virus 64A00000 196608
params.ppl c:\programmi\kaspersky lab\kaspersky internet security 6.0\ 6.0.0.299 Structure Serializer / Kaspersky Anti-Virus 66200000 274432
pxstub.ppl c:\programmi\kaspersky lab\kaspersky internet security 6.0\ 6.0.0.299 Proxy Stubs / Kaspersky Anti-Virus 66900000 184320
tempfile.ppl c:\programmi\kaspersky lab\kaspersky internet security 6.0\ 6.0.0.299 Temporary IO / Kaspersky Anti-Virus 67F00000 28672
btkeyind.dll C:\Programmi\WIDCOMM\Software Bluetooth\ 04E40000 61440
mscoree.dll C:\WINDOWS\system32\ 2.0.50727.253 Microsoft .NET Runtime Execution Engine / Microsoft® .NET Framework 79000000 282624
Shfusion.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.573 Microsoft COM Runtime Fusion Assembly Viewer / Microsoft .NET Framework 796E0000 253952
mstask.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL dell'interfaccia dell'Utilità di pianificazione / Sistema operativo Microsoft® Windows® 73540000 290816
SPOOLSS.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Spooler SubSystem DLL / Microsoft® Windows® Operating System 74260000 86016
localspl.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL dello spooler locale / Sistema operativo Microsoft® Windows® 75B60000 356352
cnbjmon.dll C:\WINDOWS\system32\ 0.3.0.0 Langage Monitor for Canon Bubble-Jet Printer / Sistema operativo Microsoft® Windows® 74210000 61440
HPBMMON.DLL C:\WINDOWS\system32\ 10.0.0.16 Win32 Master Monitor / Hewlett-Packard Master Monitor, WINNT version 10000000 45056
hpdomon.dll C:\WINDOWS\system32\ 3.42.0.0 Win32 Language Monitor for direct connect HP printers / Hewlett-Packard JetAdmin 00A80000 81920
pjlmon.dll C:\WINDOWS\system32\ 5.1.2600.2180 PJL Language monitor / Microsoft® Windows® Operating System 741F0000 28672
usbmon.dll C:\WINDOWS\system32\ 5.1.2600.2180 Standard Dynamic Printing Port Monitor DLL / Microsoft® Windows® Operating System 72380000 28672
HPBHealr.dll C:\WINDOWS\system32\ 67200000 94208
HPMPMW.DLL C:\WINDOWS\system32\ 1.0.0.0 HPMPMW / Hewlett-Packard HPMYSTPM Wrapper 3F100000 122880
HPMystPM.DLL C:\WINDOWS\system32\ 1.0.0.0 HPMYSTPM / Hewlett-Packard HPMYSTPM 3F000000 155648
bthcrp.dll C:\WINDOWS\system32\ 4.0.1.3301 bthcrp DLL / Bluetooth Software 4.0.1.3301 00F70000 114688
WidcommSdk.dll C:\WINDOWS\system32\ 4.0.1.3301 WidcommSdk DLL / Bluetooth Software 4.0.1.3301 01410000 1028096
wbtapi.dll C:\WINDOWS\system32\ 4.0.1.3301 WBTApi DLL / Bluetooth Software 4.0.1.3301 01510000 831488
MFC42.DLL C:\WINDOWS\system32\ 6.2.4131.0 MFCDLL Shared Library - Retail Version / Microsoft (R) Visual C++ 73D40000 1040384
tcpmon.dll C:\WINDOWS\system32\ 5.1.2600.2180 Standard TCP/IP Port Monitor DLL / Sistema operativo Microsoft® Windows® 72390000 61440
hpzpp35z.dll C:\WINDOWS\system32\spool\prtprocs\w32x86\ 60.41.41.0 HP Print Processor 01620000 73728
win32spl.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL dell'API dello spooler a 32 bit / Sistema operativo Microsoft® Windows® 76210000 143360
inetpp.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL del provider di stampa Internet / Sistema operativo Microsoft® Windows® 74280000 86016
Aswallet.dll C:\Programmi\HPQ\IAM\Bin\ 1.9.0.79 e-Wallet Service / Cognizance Identity Manager 00B50000 208896
Aswallet.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.9.0.47 e-Wallet Service / Cognizance Identity Manager 00BA0000 16384
ItSSO.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.3.319 Single Sign On Engine / Cognizance Identity Manager 00BC0000 372736
RasAdmin.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.24 Remote Access Manager / Cognizance Identity Manager 00C40000 139264
RasAdmin.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.5.0.21 Remote Access Manager / Cognizance Identity Manager 00CD0000 24576
PkiAdmin.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.23 Certificate Management / Cognizance Identity Manager 00DF0000 151552
PkiAdmin.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.5.0.20 Certificate Management / Cognizance Identity Manager 00E70000 20480
ITVCClient.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.1.122 Cognizance Client Engine / Cognizance Identity Manager 00EC0000 122880
ItVCard.dll C:\Programmi\HPQ\IAM\Bin\ 1.1.0.127 Virtual Card Provider / Cognizance Identity Manager 00EE0000 307200
NetAdmin.dll C:\Programmi\HPQ\IAM\Bin\ 1.5.0.108 Network Logon Management / Cognizance Identity Manager 01180000 172032
NetAdmin.dll C:\Programmi\HPQ\IAM\Bin\1040\ 1.5.0.97 Network Logon Management / Cognizance Identity Manager 011C0000 24576
SSOMngr.dll C:\Programmi\HPQ\IAM\Bin\ 2.25.0.235 SSO Application Manager / Cognizance Identity Manager 011D0000 221184
SSOMngr.dll C:\Programmi\HPQ\IAM\Bin\1040\ 2.25.0.232 SSO Application Manager / Cognizance Identity Manager 01220000 36864
ItDAC.dll C:\Programmi\HPQ\IAM\Bin\ 1.0.0.173 Directory Access Component / Cognizance Identity Manager 01D20000 442368
accelerometerDLL.dll C:\WINDOWS\system32\ 1.0.2.1 HP Accelerometer User Mode DLL / Hewlett-Packard Corporation Mobile Data Protection System 00400000 24576
mscorwks.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2407 Microsoft .NET Runtime Common Language Runtime - WorkStation / Microsoft .NET Framework 791B0000 2527232
MSVCR71.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 7.10.3052.4 Microsoft® C Runtime Library / Microsoft® Visual Studio .NET 7C340000 352256
fusion.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2032 Assembly manager / Microsoft .NET Framework 009F0000 282624
mscorlib.dll c:\WINDOWS\microsoft.net\framework\v1.1.4322\ 1.1.4322.2407 Microsoft Common Language Runtime Class Library / Microsoft .NET Framework 79780000 2154496
mscorlib.dll c:\WINDOWS\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_c57c9891\ 79990000 3399680
mscorsn.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2407 Microsoft .NET Strong Name Support / Microsoft .NET Framework 79510000 77824
MSCORJIT.DLL C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2407 Microsoft .NET Runtime Just-In-Time Compiler / Microsoft .NET Framework 79430000 315392
system.windows.forms.dll c:\WINDOWS\assembly\GAC\system.windows.forms\1.0.5000.0__b77a5c561934e089\ 1.1.4322.2032 System.Windows.Forms.dll / Microsoft (R) .NET Framework 7B610000 2064384
system.windows.forms.dll c:\WINDOWS\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_11f4d79a\ 7B810000 3022848
cli.implementation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3322 CLI Application Implementation (Command Line Interface) / Catalyst Control Centre 11000000 49152
log.foundation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29141 LOG Foundation / Catalyst Control Centre 02F00000 49152
cli.foundation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29141 CLI Foundation / Catalyst Control Centre 03120000 81920
log.foundation.service.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3537 LOG Foundation Service / Catalyst Control Centre 03140000 57344
log.foundation.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29163 LOG Foundation Shared / Catalyst Control Centre 03150000 32768
system.dll c:\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\ 1.1.4322.2407 System.dll / Microsoft (R) .NET Framework 7B0A0000 1245184
system.dll c:\WINDOWS\assembly\nativeimages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_d81f72a6\ 7B1D0000 1982464
shfolder.dll C:\WINDOWS\system32\ 6.0.2900.2180 Shell Folder Service / Microsoft® Windows® Operating System 76740000 36864
cli.foundation.xmanifestation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3537 CLI Foundation for XML / Catalyst Control Centre 031A0000 40960
system.xml.dll c:\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\ 1.1.4322.2032 System.Xml.dll / Microsoft (R) .NET Framework 7BC10000 1351680
system.xml.dll c:\WINDOWS\assembly\nativeimages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_0f365904\ 7BD60000 2105344
system.runtime.remoting.dll c:\WINDOWS\assembly\GAC\system.runtime.remoting\1.0.5000.0__b77a5c561934e089\ 1.1.4322.2032 Microsoft .NET Runtime Object Remoting / Microsoft .NET Framework 79640000 335872
cli.component.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3537 Runtime Component / Catalyst Control Centre 031D0000 98304
aticccom.dll c:\programmi\ati technologies\ATI.ACE\ 1.0.0.0 CCCCom / Catalyst Control Centre 03480000 32768
aem.foundation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29141 AEM Foundation / Catalyst Control Centre 03490000 40960
system.drawing.dll c:\WINDOWS\assembly\GAC\system.drawing\1.0.5000.0__b03f5f7f11d50a3a\ 1.1.4322.2032 System.Drawing.dll / Microsoft (R) .NET Framework 7B490000 483328
system.drawing.dll c:\WINDOWS\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_2ddb2a3c\ 7B510000 843776
system.windows.forms.resources.dll c:\WINDOWS\assembly\GAC\system.windows.forms.resources\1.0.5000.0_it_b77a5c561934e089\ 1.1.4322.573 System.Windows.Forms.dll / Microsoft (R) .NET Framework 034D0000 196608
gdiplus.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\ 5.1.3102.2180 Microsoft GDI+ / Microsoft® Windows® Operating System 4EBD0000 1716224
cli.caste.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29143 Shared Graphics Caste / Catalyst Control Centre 03570000 65536
cli.caste.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3530 Runtime Graphics Caste / Catalyst Control Centre 03580000 311296
mscorlib.resources.dll c:\WINDOWS\assembly\GAC\mscorlib.resources\1.0.5000.0_it_b77a5c561934e089\ 1.1.4322.573 Microsoft Common Language Runtime Class Library / Microsoft .NET Framework 035D0000 245760
cli.component.runtime.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29143 Runtime Shared / Catalyst Control Centre 03610000 49152
dem.foundation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29141 DEM Foundation / Catalyst Control Centre 03620000 32768
dem.graphics.demosinfo.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29147 DEM Graphics OSInfo / Catalyst Control Centre 03640000 32768
dem.graphics.demosadapterinfo.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2159.16348 DEM Graphics OSAdapterInfo / Catalyst Control Centre 03750000 32768
dem.graphics.dematiadapterinfo.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29155 DEM Graphics ATIAdapterInfo / Catalyst Control Centre 03760000 32768
dem.graphics.demdriversettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29143 DEM Graphics DriverSettings / Catalyst Control Centre 03770000 32768
dem.graphics.displaysmanager.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29142 DEM Graphics DisplaysManager Shared / Catalyst Control Centre 03780000 40960
system.web.dll c:\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\ 1.1.4322.2407 System.Web.dll / Microsoft (R) .NET Framework 7A090000 1277952
atidemgr.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3299 Graphics DEM / Catalyst Control Centre 03EA0000 294912
system.management.dll c:\WINDOWS\assembly\GAC\system.management\1.0.5000.0__b03f5f7f11d50a3a\ 1.1.4322.2032 Microsoft .NET library for Management / Microsoft (R) .NET Framework 03EF0000 385024
WMINet_Utils.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2032 WMINet_Utils.dll / WMI.NET Client API 03F60000 45056
wbemprox.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 74E80000 32768
perfcounter.dll C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2032 Microsoft performance counter extension for .NET Runtime / Microsoft .NET Framework 04590000 94208
aspnet_isapi.dll c:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ 1.1.4322.2407 aspnet_isapi.lib / Microsoft (R) .NET Framework 79E60000 270336
perfproc.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL oggetti delle prestazioni del processo di Windows / Sistema operativo Microsoft® Windows® 5EB90000 57344
dem.graphics.demosmodeinfo.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29149 DEM Graphics OSModeInfo / Catalyst Control Centre 04350000 32768
dem.graphics.dematidisplaysmanagersettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29150 DEM Graphics ATIDisplaysManagerSettings / Catalyst Control Centre 05220000 32768
dem.graphics.demverylargedesktopsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29146 DEM Graphics VeryLargeDesktop / Catalyst Control Centre 05230000 32768
cli.aspect.multivpu2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3373 Runtime Graphics Caste MultiVPU2 Aspect / Catalyst Control Centre 05270000 49152
cli.aspect.multivpu2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2182.27456 Shared Graphics Caste MultiVPU2 Aspect / Catalyst Control Centre 05280000 40960
cli.aspect.multivpu.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3406 Runtime Graphics Caste MultiVPU Aspect / Catalyst Control Centre 05290000 49152
cli.aspect.multivpu.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2182.27452 Shared Graphics Caste MultiVPU Aspect / Catalyst Control Centre 052B0000 40960
cli.aspect.verylargedesktop.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3373 Runtime Graphics Caste VeryLargeDesktop Aspect / Catalyst Control Centre 052C0000 49152
cli.aspect.verylargedesktop.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29147 Shared Graphics Caste VeryLargeDesktop Aspect / Catalyst Control Centre 052D0000 40960
cli.aspect.radeon3d.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3432 Runtime Graphics Caste R300/R400 Radeon3D Aspect / Catalyst Control Centre 052E0000 73728
cli.aspect.radeon3dlegacy.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3427 Runtime Graphics Caste R100/R200 Radeon3D Aspect / Catalyst Control Centre 05300000 57344
cli.aspect.displayscolour2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3380 Runtime Graphics Caste Display Colour 2 / Catalyst Control Centre 05310000 57344
cli.aspect.displayscolour2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29158 Shared Graphics Caste Display Colour 2 Aspect / Catalyst Control Centre 05330000 40960
dem.graphics.demdisplayscoloursettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29145 DEM Graphics DisplaysColourSettings / Catalyst Control Centre 05340000 32768
cli.aspect.displayscolour.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3472 Runtime Graphics Caste Display Colour / Catalyst Control Centre 05350000 57344
cli.aspect.displayscolour.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29146 Shared Graphics Caste Display Colour Aspect / Catalyst Control Centre 05360000 40960
cli.aspect.mmvideo.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3451 Runtime Graphics Caste MM Video Aspect / Catalyst Control Centre 05370000 57344
cli.aspect.mmvideo.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29166 Shared Graphics Caste MM Video Aspect / Catalyst Control Centre 05380000 49152
dem.graphics.mmdeintlacingsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29167 DEM Graphics MM DeIntLacing / Catalyst Control Centre 053A0000 32768
cli.aspect.videooverlay.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3537 Runtime Graphics Caste VideoOverlay Aspect / Catalyst Control Centre 053B0000 49152
cli.aspect.videooverlay.graphics.runtime.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29149 Shared Graphics Caste VideoOverlay Aspect / Catalyst Control Centre 053C0000 32768
dem.graphics.videooverlay.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29142 DEM Graphics VideoOverlay Shared / Catalyst Control Centre 053D0000 32768
cli.aspect.smartgart.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3423 Runtime Graphics Caste SMARTGART Aspect / Catalyst Control Centre 053E0000 40960
dem.graphics.demsmartgartsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29146 DEM Graphics SmartgartSettings / Catalyst Control Centre 053F0000 32768
cli.aspect.vpurecover.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3412 Runtime Graphics Caste VPU Recover Aspect / Catalyst Control Centre 05400000 40960
cli.aspect.vpurecover.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29145 Shared Graphics Caste VPU Recover Aspect / Catalyst Control Centre 05420000 40960
cli.aspect.workstationconfig.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3409 Runtime Graphics Caste WorkstationConfig Aspect / Catalyst Control Centre 05430000 49152
cli.aspect.devicecrt.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3499 Runtime Graphics Caste CRT Aspect / Catalyst Control Centre 05440000 49152
cli.aspect.devicecrt2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3389 Runtime Graphics Caste CRT 2 Aspect / Catalyst Control Centre 05450000 49152
cli.aspect.devicelcd.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3486 Runtime Graphics Caste LCD Aspect / Catalyst Control Centre 05460000 40960
cli.aspect.devicelcd.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29168 Shared Graphics Caste LCD Aspect / Catalyst Control Centre 05470000 40960
cli.aspect.devicelcd2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3380 Runtime Graphics Caste LCD 2 Aspect / Catalyst Control Centre 05490000 40960
cli.aspect.devicelcd2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29148 Shared Graphics Caste LCD 2 Aspect / Catalyst Control Centre 054A0000 40960
cli.aspect.devicecv.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3494 Runtime Graphics Caste CV Aspect / Catalyst Control Centre 054B0000 65536
cli.aspect.devicecv.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2169.27643 Shared Graphics Caste CV Aspect / Catalyst Control Centre 054C0000 49152
cli.aspect.customformats.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29144 Shared Custom Formats / Catalyst Control Centre 054D0000 40960
cli.aspect.devicecv2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3393 Runtime Graphics Caste CV Aspect / Catalyst Control Centre 054F0000 65536
cli.aspect.devicecv2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2169.27620 Shared Graphics Caste CV 2 Aspect / Catalyst Control Centre 05510000 49152
cli.aspect.devicetv2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3481 Runtime Graphics Caste CRT Aspect / Catalyst Control Centre 05520000 73728
cli.aspect.devicetv.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3476 Runtime Graphics Caste CRT Aspect / Catalyst Control Centre 05540000 73728
cli.aspect.devicedfp.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3490 Runtime Graphics Caste DFP Aspect / Catalyst Control Centre 05560000 57344
cli.aspect.devicedfp.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29168 Shared Graphics Caste DFP Aspect / Catalyst Control Centre 05570000 49152
cli.aspect.devicedfp2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3384 Runtime Graphics Caste DFP 2 Aspect / Catalyst Control Centre 05580000 57344
cli.aspect.devicedfp2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29148 Shared Graphics Caste DFP 2 Aspect / Catalyst Control Centre 055A0000 57344
cli.aspect.overdrive3.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3440 Runtime Graphics Caste OverDrive3 Aspect / Catalyst Control Centre 055B0000 90112
cli.aspect.overdrive3.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29165 Shared Graphics Caste OverDrive3 Aspect / Catalyst Control Centre 055D0000 40960
cli.aspect.overdrive2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3448 Runtime Graphics Caste OverDrive2 Aspect / Catalyst Control Centre 055E0000 40960
dem.graphics.demoverdrivesettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29164 DEM Graphics OverdriveSettings / Catalyst Control Centre 055F0000 32768
cli.aspect.powerplay3.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3436 Runtime Graphics Caste PowerPlay3 Aspect / Catalyst Control Centre 05600000 57344
cli.aspect.powerplay3.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29147 Shared Graphics Caste PowerPlay3 Aspect / Catalyst Control Centre 05620000 40960
dem.graphics.dempowerplaysettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2154.21069 DEM Graphics PowerPlaySettings / Catalyst Control Centre 05630000 32768
cli.aspect.displaysoptions.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3464 Runtime Graphics Caste Display Option Aspect / Catalyst Control Centre 05640000 49152
cli.aspect.integratedumaframebuffer.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3456 Runtime Graphics Caste Integrated UMA Frame Buffer Aspect / Catalyst Control Centre 05650000 32768
cli.aspect.infocentre.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3460 Runtime Graphics Caste InfoCentre Aspect / Catalyst Control Centre 05660000 49152
cli.aspect.infocentre.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29155 Shared Graphics Caste InforCentre Aspect / Catalyst Control Centre 05670000 40960
cli.aspect.hotkeyshandling.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3397 Runtime Graphics Caste HotkeysHandling Aspect / Catalyst Control Centre 05690000 32768
cli.aspect.hotkeyshandling.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29156 Shared Graphics Caste HotkeysHandling Aspect / Catalyst Control Centre 056A0000 32768
dem.graphics.demmultivpusettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2182.27432 DEM Graphics MultiVPU / Catalyst Control Centre 056B0000 32768
cli.aspect.radeon3d.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29157 Shared Graphics Caste R300/R400 Radeon3D Aspect / Catalyst Control Centre 056C0000 73728
cli.aspect.radeon3dlegacy.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29166 Shared Graphics Caste R100/R200 Radeon3D Aspect / Catalyst Control Centre 05700000 65536
dem.graphics.mmoverlaysettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29167 DEM Grahpic MM Overlay Adjustment / Catalyst Control Centre 05710000 32768
dem.graphics.demvideotheatermodesettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29167 DEM Graphics VideoTheaterModeSettings / Catalyst Control Centre 05720000 32768
cli.aspect.videooverlay.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29147 Shared Graphics Caste VideoOverlay Aspect / Catalyst Control Centre 05740000 40960
dem.graphics.demvideooverlaysettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29145 DEM Graphics VideoOverlaySettings / Catalyst Control Centre 05750000 32768
cli.aspect.smartgart.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29164 Shared Graphics Caste SMARTGART Aspect / Catalyst Control Centre 05760000 40960
dem.graphics.demvpurecoverinfo.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29167 DEM Graphics VPURecoverInfo / Catalyst Control Centre 05770000 32768
cli.aspect.workstationconfig.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2168.19591 Shared Graphics Caste WorkstationConfig Aspect / Catalyst Control Centre 057B0000 40960
dem.graphics.workstationsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29157 DEM Graphics WorkstationSettings / Catalyst Control Centre 057C0000 32768
cli.aspect.devicecrt.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29157 Shared Graphics Caste CRT Aspect / Catalyst Control Centre 057D0000 65536
cli.aspect.deviceproperty.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29142 Shared Graphics Caste Common Display Device Aspect / Catalyst Control Centre 057E0000 32768
dem.graphics.demdevicecrtsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29164 DEM Graphics DeviceCRTSettings / Catalyst Control Centre 057F0000 32768
dem.graphics.demdevicecommonsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29167 DEM Graphics DeviceCommonSettings / Catalyst Control Centre 05810000 32768
cli.aspect.devicecrt2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29149 Shared Graphics Caste CRT 2 Aspect / Catalyst Control Centre 05820000 65536
cli.aspect.deviceproperty2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29143 Shared Graphics Caste Common Display Device Aspect / Catalyst Control Centre 05830000 32768
dem.graphics.demdevicecommon2settings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29143 DEM Graphics DeviceCommon2Settings / Catalyst Control Centre 05840000 32768
cli.aspect.deviceproperty2.graphics.runtime.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3318 Runtime Graphics Caste DeviceProperty2 Aspect Shared / Catalyst Control Centre 05850000 32768
dem.graphics.demdevicelcdsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2166.26895 DEM Graphics DeviceLCDSettings / Catalyst Control Centre 05870000 32768
dem.graphics.demdevicecomponentvideosettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29143 DEM Graphics DeviceComponentvideoSettings / Catalyst Control Centre 05880000 32768
cli.aspect.devicetv2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29165 Shared Graphics Caste TV Aspect / Catalyst Control Centre 05890000 73728
dem.graphics.demdevicetv2settings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29165 DEM Graphics DeviceTV2Settings / Catalyst Control Centre 058B0000 32768
cli.aspect.devicetv.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29167 Shared Graphics Caste TV Aspect / Catalyst Control Centre 058E0000 73728
dem.graphics.demdevicetvsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29157 DEM Graphics DeviceTVSettings / Catalyst Control Centre 05900000 32768
dem.graphics.demdevicedfpsettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29164 DEM Graphics DeviceDFPSettings / Catalyst Control Centre 05910000 32768
dem.graphics.demdevicedfp2settings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29147 DEM Graphics DeviceDFP2Settings / Catalyst Control Centre 05920000 32768
dem.graphics.demoverdrive3settings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29168 DEM Graphics Overdrive3Settings / Catalyst Control Centre 05A40000 32768
cli.aspect.overdrive2.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29149 Shared Graphics Caste OverDrive2 Aspect / Catalyst Control Centre 05A50000 32768
cli.aspect.displaysoptions.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29157 Shared Graphics Caste Display Option Aspect / Catalyst Control Centre 05A70000 40960
dem.graphics.demdisplaysmanageroptionssettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29148 DEM Graphics DisplaysManagerOptionsSettings / Catalyst Control Centre 05A80000 32768
cli.aspect.integratedumaframebuffer.graphics.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2210.26509 Shared Graphics Caste Integrated UMA Frame Buffer Aspect / Catalyst Control Centre 05AA0000 32768
dem.graphics.demumaframebuffersettings.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29147 DEM Graphics UMAFrameBufferSettings / Catalyst Control Centre 05AB0000 32768
apm.foundation.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29156 APM Foundation / Catalyst Control Centre 05AD0000 40960
HPWMIBIOSSettings.dll C:\Programmi\Hewlett-Packard\HP BIOS Configuration for ProtectTools\ 2.0.3.3 HPWMIBIOSSettings Module 10000000 724992
oledlg.dll C:\WINDOWS\system32\ 5.1.2600.3016 Supporto interfaccia utente di OLE 2.0 per Microsoft Windows® 7E1E0000 139264
DLAAPI_W.DLL C:\WINDOWS\system32\ 5.20.7.0 Drive Letter Access Component 10000000 61440
DLACResW.dll C:\WINDOWS\system32\DLA\ 5.20.7.0 Drive Letter Access Component 00320000 638976
SynCOM.dll C:\WINDOWS\system32\ 8.2.4.0 SynCOM / COM SDK 10000000 81920
SynTPAPI.dll C:\WINDOWS\system32\ 8.2.4.0 SynTPAPI / Synaptics Pointing Device Driver 63010000 98304
QLBSERVICE.dll C:\Programmi\Hewlett-Packard\HP Quick Launch Buttons\ 6.0.4.1 QLB Database Handler / QLB 10000000 245760
hpqExec.dll C:\Programmi\Hewlett-Packard\HP Quick Launch Buttons\ 6.0.3.2 Action Dll / HP Quick Launch Buttons 00320000 180224
ntdll.dll C:\WINDOWS\system32\ 5.1.2600.2180 DLL del livello NT / Sistema operativo Microsoft® Windows® 7C910000 N/A
pr_remote.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 PR_REMOTE / Kaspersky Anti-Virus 66600000 N/A
comctl32.dll C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\ 6.0.2900.2982 User Experience Controls Library / Microsoft® Windows® Operating System 773A0000 N/A
iTunesHelperLocalized.DLL C:\Programmi\iTunes\iTunesHelper.Resources\it.lproj\ 7.0.2.1 Libreria risorse iTunesHelper / iTunes 10000000 57344
iTunesHelper.DLL C:\Programmi\iTunes\iTunesHelper.Resources\ 7.0.2.16 iTunesHelper Resource Library / iTunes 00A40000 57344
SMWDMIF.dll C:\Programmi\Analog Devices\Core\ 6.0.4200.14 SMWDM Interface DLL / Audio Driver Interface Module 10000000 356352
DSound.dll C:\WINDOWS\system32\ 5.3.2600.2180 DirectSound / Sistema operativo Microsoft(R) Windows(R) 73E80000 376832
KsUser.dll C:\WINDOWS\system32\ 5.3.2600.2180 User CSA Library / Microsoft(R) Windows(R) Operating System 73E50000 16384
NSCRT.dll C:\Programmi\Winamp\ 7.10.0.0 User-Generated Microsoft (R) C/C++ Runtime Library / Win9x Unicode C Runtime Library 7C340000 360448
engine.dll C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\ 4.2.0.19 AVG Anti-Spyware Scan Engine / AVG Anti-Spyware 10000000 909312
hhctrl.ocx C:\WINDOWS\system32\ 5.2.3790.2847 Microsoft® HTML Help Control / HTML Help 00FD0000 561152
hhctrlui.dll C:\WINDOWS\system32\mui\0010\ 4.74.9273.0 Controllo Microsoft® HTML Help / HTML Help 68DE0000 98304
advcheck.dll C:\Programmi\Spybot - Search & Destroy\ 1.5.3.0 Dateiüberprüfungs-Bibliothek / Spybot - Search & Destroy 02150000 720896
btosif.dll C:\WINDOWS\system32\ 4.0.1.3301 BTOSIF DLL / Bluetooth Software 4.0.1.3301 00330000 126976
btwhidcs.DLL C:\WINDOWS\system32\ 4.0.1.3301 Bluetooth HID Power Control Suite dll / Bluetooth Software 4.0.1.3301 00350000 229376
BtBalloon.dll C:\Programmi\WIDCOMM\Software Bluetooth\ 4.0.1.3301 Balloon Tooltip Routine DLL / Bluetooth Software 4.0.1.3301 003A0000 53248
adialhk.dll C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\ 6.0.0.299 kldialhk / Kaspersky Anti-Virus 61300000 40960
btrez.dll C:\WINDOWS\system32\ 4.0.1.3301 btrez DLL / Bluetooth Software 4.0.1.3301 00AB0000 3125248
CSH.dll C:\WINDOWS\system32\ 2.0.39.0 User RunTime Communication DLL / What's This? Help Composer 00DB0000 65536
IFXTSP.dll C:\WINDOWS\system32\ 2.1.593.0 TCPA TSS Service Provider / Infineon TPM Software 01570000 655360
ATL71.DLL C:\WINDOWS\system32\ 7.10.3077.0 ATL Module for Windows (Unicode) / Microsoft® Visual Studio .NET 7C120000 102400
MSVCR71.dll C:\Programmi\File comuni\LightScribe\ 7.10.3052.4 Microsoft® C Runtime Library / Microsoft® Visual Studio .NET 7C340000 352256
MSVCP71.dll C:\Programmi\File comuni\LightScribe\ 7.10.3077.0 Microsoft® C++ Runtime Library / Microsoft® Visual Studio .NET 7C3A0000 503808
iPodServiceLocalized.DLL C:\Programmi\iPod\bin\iPodService.Resources\it.lproj\ 7.0.2.1 Libreria risorse iPodService / iTunes 10000000 57344
iPodService.DLL C:\Programmi\iPod\bin\iPodService.Resources\ 7.0.2.16 iPodService Resource Library / iTunes 00880000 57344
wmiprov.dll C:\WINDOWS\system32\wbem\ 5.1.2600.2180 WMI / Microsoft® Windows® Operating System 72E90000 163840
PSDrtIT.dll C:\Programmi\ProtectTools\Embedded Security Software\ 2.1.593.0 PSD Runtime Application / Infineon Personal Secure Drive 10000000 77824
psd.dll C:\Programmi\ProtectTools\Embedded Security Software\ 2.1.593.0 PSD middleware layer / Infineon Personal Secure Drive 00A20000 581632
cli.component.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3362 Wizard Component / Catalyst Control Centre 034D0000 532480
cli.foundation.clients.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29142 CLI Foundation for Clients / Catalyst Control Centre 03220000 57344
cli.component.wizard.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29144 Wizard Component Shared Types / Catalyst Control Centre 03230000 40960
branding.dll c:\programmi\ati technologies\ATI.ACE\ 1.0.2117.26935 03AC0000 32768
cli.caste.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3365 Wizard Graphics Caste / Catalyst Control Centre 03AF0000 98304
cli.caste.graphics.wizard.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2147.29144 Wizard Graphics Shared Caste / Catalyst Control Centre 03B20000 32768
cli.aspect.devicecv.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3347 Wizard DeviceCV Aspect / Catalyst Control Centre 03B50000 1212416
cli.aspect.devicecv2.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3352 Wizard DeviceCV2 Aspect / Catalyst Control Centre 03C80000 1212416
cli.aspect.devicelcd.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3339 Wizard DeviceLCD Aspect / Catalyst Control Centre 03DB0000 385024
cli.aspect.devicelcd2.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3343 Wizard DeviceLCD2 Aspect / Catalyst Control Centre 03E10000 385024
cli.aspect.devicetv.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3333 Wizard DeviceTV Aspect / Catalyst Control Centre 03E70000 172032
cli.aspect.devicetv2.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3336 Wizard DeviceTV2 Aspect / Catalyst Control Centre 03EA0000 172032
cli.aspect.displaysmanager.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3357 Wizard DisplaysManager Aspect / Catalyst Control Centre 03EE0000 2441216
cli.aspect.radeon3d.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3323 04150000 139264
cli.aspect.mmvideo.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3326 Wizard Video Aspect - Quick Tasks / Catalyst Control Centre 04180000 458752
cli.aspect.transcode.local.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3374 Dashboard Local Caste TransCode Wizard / Catalyst Control Centre 041F0000 466944
cli.aspect.infocentre.graphics.wizard.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.2253.3330 Wizard Graphics Caste InfoCentre Aspect / Catalyst Control Centre 04270000 344064
cli.aspect.transcode.local.shared.dll c:\programmi\ati technologies\ATI.ACE\ 1.2.0.0 Dashboard Local Caste TransCode Shared / Catalyst Control Centre 043D0000 303104
atixclib.dll c:\programmi\ati technologies\ATI.ACE\ 1.0.0.0 Assembly imported from type library ATIXCodeLib 04430000 32768
SkypeIEPlugin.dll C:\Programmi\Skype\Toolbars\Internet Explorer\ 2.2.0.78 Skype add-on for IE 018F0000 724992
SPhoneParser.dll C:\Programmi\Skype\Toolbars\Shared\ 1.0.1.150 Skype Phone number parser 01BB0000 1871872
DLASHX_W.DLL C:\WINDOWS\system32\DLA\ 5.20.7.0 Drive Letter Access Component 01FC0000 114688
ssv.dll C:\Programmi\Java\jre1.6.0_02\bin\ 6.0.20.6 Java(TM) Platform SE binary / Java(TM) Platform SE 6 U2 6D7C0000 495616
ItIeAddIN.dll C:\Programmi\HPQ\IAM\Bin\ 1.1.0.69 SSO IE Listener / Cognizance Identity Manager 02030000 65536
sensapi.dll C:\WINDOWS\system32\ 5.1.2600.2180 SENS Connectivity API DLL / Microsoft® Windows® Operating System 72240000 20480
mshtml.dll C:\WINDOWS\system32\ 6.0.2900.3157 Visualizzatore HTML Microsoft (R) / Sistema operativo Microsoft® Windows® 7DBE0000 3104768
msls31.dll C:\WINDOWS\system32\ 3.10.349.0 Microsoft Line Services library file / Microsoft® Line Services 74650000 159744
msimtf.dll C:\WINDOWS\system32\ 5.1.2600.2180 Active IMM Server DLL / Microsoft® Windows® Operating System 74680000 172032
IMM32.DLL C:\WINDOWS\system32\ 5.1.2600.2180 Windows XP IMM32 API Client DLL / Microsoft® Windows® Operating System 76340000 118784
ImgUtil.dll C:\WINDOWS\system32\ 6.0.2900.2180 IE plugin image decoder support DLL / Microsoft® Windows® Operating System 66D50000 49152
pngfilt.dll C:\WINDOWS\system32\ 6.0.2900.3157 IE PNG plugin image decoder / Microsoft® Windows® Operating System 5E750000 49152
nfio.ppl c:\programmi\kaspersky lab\kaspersky internet security 6.0\ 6.0.0.299 NFIO / Kaspersky Anti-Virus 65B00000 73728
fsdrvplgn.ppl c:\programmi\kaspersky lab\kaspersky internet security 6.0\ 6.0.0.299 Plugin for FSDrv / Kaspersky Anti-Virus 63A00000 28672
Flash9b.ocx C:\WINDOWS\system32\Macromed\Flash\ 9.0.28.0 Adobe Flash Player 9.0 r28 / Shockwave Flash 30000000 3072000
dxtrans.dll C:\WINDOWS\system32\ 6.3.2900.3157 DirectX Media -- DirectX Transform Core / Microsoft® Windows® Operating System 6C2D0000 221184
ddrawex.dll C:\WINDOWS\system32\ 5.3.2600.2180 Direct Draw Ex / Microsoft® Windows® Operating System 6D950000 40960
DDRAW.dll C:\WINDOWS\system32\ 5.3.2600.2180 Microsoft DirectDraw / Sistema operativo Microsoft® Windows® 736D0000 299008
DCIMAN32.dll C:\WINDOWS\system32\ 5.1.2600.2180 DCI Manager / Microsoft® Windows® Operating System 73B30000 24576
dxtmsft.dll C:\WINDOWS\system32\ 6.3.2900.3157 DirectX Media -- Image DirectX Transforms / Microsoft® Windows® Operating System 6C310000 368640
mshtmled.dll C:\WINDOWS\system32\ 6.0.2900.3157 Componente Microsoft(R) per la modifica del codice HTML / Sistema operativo Microsoft® Windows® 76270000 462848
dispex.dll C:\WINDOWS\system32\ 5.6.0.6626 Microsoft (r) DispEx 6D180000 45056
vbscript.dll C:\WINDOWS\system32\ 5.6.0.8820 Microsoft (r) VBScript 73270000 421888
iepeers.dll C:\WINDOWS\system32\ 6.0.2900.3157 Internet Explorer Peer Objects / Sistema operativo Microsoft® Windows® 67330000 262144
xpsp3res.dll C:\WINDOWS\system32\ 5.1.2600.3157 Messaggi di Service Pack 3 / Sistema operativo Microsoft® Windows® 04E90000 126976
gmer.dll C:\WINDOWS\ 1.0.12.12010 72000000 626688

Ringo64
17-09-2007, 18:13
Quando accendo il pc ora mi segnala un errore:
<_SpURsDll>not found
Quando spengo mi avverte che ci sono altri utenti in linea !!??
GMER non riesco proprio a postarla!!!:muro:

juninho85
17-09-2007, 23:23
senti un poco,su pannello di controllo/account utente quanti utenze sono presenti?

Ringo64
18-09-2007, 08:00
3 Account: amministratore, lore e vale

juninho85
18-09-2007, 14:34
il pc fa parte di una rete?

Ringo64
19-09-2007, 08:42
No. E' un portatile singolo e navigo tramite adsl.

Ringo64
22-09-2007, 12:28
Ho fatto una scansione con Antivir e ha trovato un virus,
W95/Blumblebee.1738: eliminato, spero. Questo è il report dell'antivirus, vorrei un commento, il trojan sicuramente c'è ancora, in quanto non riesco a navigare su tutti i siti, e non mi apre la pagina iniziale!! Ringrazio e saluto. (GMER processes e services non riesco ancora a copiarli e postarli!!!mi dispiace:cry: )


AntiVir PersonalEdition Classic
Report file date: sabato 22 settembre 2007 10:54

Scanning for 1077858 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: SYSTEM
Computer name: CATERINO

Version information:
BUILD.DAT : 268 15604 Bytes 31/08/2007 13:04:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 12:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 11:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 14:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 11:35:20
ANTIVIR0.VDF : 6.35.0.1 7371264 Bytes 31/05/2006 11:32:40
ANTIVIR1.VDF : 6.39.0.129 7251968 Bytes 10/07/2007 11:32:46
ANTIVIR2.VDF : 6.39.1.120 1918464 Bytes 12/09/2007 08:53:24
ANTIVIR3.VDF : 6.39.1.164 209920 Bytes 21/09/2007 08:53:24
AVEWIN32.DLL : 7.6.0.15 2806272 Bytes 22/09/2007 08:53:25
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 09:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 06:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 12:16:24
AVPACK32.DLL : 7.3.0.15 360488 Bytes 03/08/2007 07:46:00
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 06:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 11:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 06:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 10:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 11:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 11:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 08:37:21

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\programmi\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: E:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: sabato 22 settembre 2007 10:54

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'HPQTOA~1.EXE' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'PSDrt.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'hpqwmiex.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'PSDsrvc.EXE' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'IFXSPMGT.exe' - '1' Module(s) have been scanned
Scan process 'btwdins.exe' - '1' Module(s) have been scanned
Scan process 'avp.exe' - '0' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'a2service.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'winampa.exe' - '1' Module(s) have been scanned
Scan process 'smax4pnp.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'qttask.exe' - '1' Module(s) have been scanned
Scan process 'avp.exe' - '0' Module(s) have been scanned
Scan process 'Scheduler.exe' - '1' Module(s) have been scanned
Scan process 'QLBCTRL.exe' - '1' Module(s) have been scanned
Scan process 'HP Wireless Assistant.exe' - '1' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
Scan process 'DLACTRLW.EXE' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'pthosttr.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'accelerometerST.exe' - '1' Module(s) have been scanned
Scan process 'AGRSMMSG.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'asghost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'scardsvr.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'aawservice.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'dllhost.exe' - '1' Module(s) have been scanned
Scan process 'IFXTCS.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
58 processes with 58 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'E:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( '44' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\WINDOWS\system32\ActiveScan\pskavs.dll
[DETECTION] Contains detection pattern of the Windows virus W95/Blumblebee.1738
[INFO] The file was deleted!
Begin scan in 'E:\' <HP_RECOVERY>


End of the scan: sabato 22 settembre 2007 12:17
Used time: 1:23:11 min

The scan has been done completely.

5302 Scanning directories
257449 Files were scanned
1 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
1 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
257448 Files not concerned
7336 Archives were scanned
2 Warnings
0 Notes

lancetta
22-09-2007, 13:28
Hem..quello che ha eliminato avira era una dll di panda,falso positivo....Senti visto che non riesci a postare i log quello di hijackthis lo puoi ripostare?dopo che hai fatto fare un giro a Superantispyware (http://www.superantispyware.com/downloadfile.html?productid=SUPERANTISPYWARE) aggiornalo e fagli fare una "Perform complete scan" da "scan your computer".

juninho85
22-09-2007, 14:20
Ho fatto una scansione con Antivir e ha trovato un virus,
W95/Blumblebee.1738: eliminato, spero. Questo è il report dell'antivirus, vorrei un commento, il trojan sicuramente c'è ancora, in quanto non riesco a navigare su tutti i siti, e non mi apre la pagina iniziale!! Ringrazio e saluto. (GMER processes e services non riesco ancora a copiarli e postarli!!!mi dispiace:cry: )
devi selezionare la funzione "copy" all'interno del programma
3.Search for rootkits..............: off->on
Scan all files...................: Intelligent file selection->all
File heuristic...................: medium->high
riperi la scansione variando queste impostazioni

Ringo64
22-09-2007, 16:54
Log di HijackThis dopo aver girato e pulito con SuperAntiSpyware:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16.50.24, on 22/09/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\IFXTCS.exe
C:\Programmi\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Programmi\HPQ\IAM\bin\asghost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\AccelerometerSt.exe
C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe
C:\Programmi\ATI Technologies\ATI.ACE\cli.exe
C:\Programmi\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE
C:\Programmi\Hp\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Programmi\Synaptics\SynTP\SynTPEnh.exe
C:\Programmi\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Programmi\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\WINDOWS\SMINST\Scheduler.exe
C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
C:\Programmi\QuickTime\qttask.exe
C:\Programmi\iTunes\iTunesHelper.exe
C:\Programmi\Analog Devices\Core\smax4pnp.exe
C:\Programmi\Winamp\winampa.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
C:\Programmi\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Programmi\WIDCOMM\Software Bluetooth\BTTray.exe
C:\Programmi\a-squared Free\a2service.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
C:\Programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
C:\WINDOWS\system32\IFXSPMGT.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\Programmi\ProtectTools\Embedded Security Software\PSDsrvc.EXE
C:\Programmi\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programmi\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Programmi\ProtectTools\Embedded Security Software\PSDrt.exe
C:\PROGRA~1\HPQ\Shared\HPQTOA~1.EXE
C:\Programmi\ATI Technologies\ATI.ACE\cli.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tiscali.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.hp.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Programmi\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: HP Credential Manager for ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Programmi\HPQ\IAM\Bin\ItIeAddIN.dll
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [SoundMAX] C:\Programmi\Analog Devices\SoundMAX\Smax4.exe /tray
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Programmi\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [PTHOSTTR] C:\Programmi\HPQ\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [HP Software Update] C:\Programmi\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Programmi\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Programmi\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HPQ\IAM\Bin\AsTsVcc.dll,RegisterModule
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Programmi\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\Sminst\Recguard.exe
O4 - HKLM\..\Run: [Scheduler] C:\WINDOWS\SMINST\Scheduler.exe
O4 - HKLM\..\Run: [kis] "C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programmi\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Programmi\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Programmi\Winamp\winampa.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [Reminder] C:\WINDOWS\Creator\Remind_XP.exe
O4 - HKLM\..\Run: [WatchDog] C:\Programmi\InterVideo\DVD Check\DVDCheck.exe
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Programmi\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Avvio veloce di Adobe Reader.lnk = C:\Programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DVD Check.lnk = C:\Programmi\InterVideo\DVD Check\DVDCheck.exe
O8 - Extra context menu item: Invia a &Bluetooth - C:\Programmi\WIDCOMM\Software Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\scieplugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Programmi\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com
O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/ediags/gmn/install/hpobjinstaller_gmn.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
O20 - Winlogon Notify: OneCard - C:\Programmi\HPQ\IAM\Bin\AsWlnPkg.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Programmi\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Kaspersky Internet Security 6.0 (AVP) - Kaspersky Lab - C:\Programmi\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Programmi\WIDCOMM\Software Bluetooth\bin\btwdins.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Programmi\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - C:\WINDOWS\system32\IFXSPMGT.exe
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - C:\WINDOWS\system32\IFXTCS.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Programmi\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe
O23 - Service: PC Angel (PCA) - SoftThinks - C:\WINDOWS\SMINST\PCAngel.exe
O23 - Service: Personal Secure Drive Service (PersonalSecureDriveService) - Infineon Technologies AG - C:\Programmi\ProtectTools\Embedded Security Software\PSDsrvc.EXE

--
End of file - 10444 bytes

lancetta
22-09-2007, 17:22
Log pulito..dovresti aggiornare adobe...Cosa ha trovato Superantispyware?
E il pc come và?

Ringo64
22-09-2007, 17:51
Sto rifacendo la scansione con Antivir con le funzioni suggerite da "juninho85" e adesso che è al 30% della scansione segnala: Warnings 2 e Objects searched 65516!!!
Ora devo uscire, qdo torno la scansione sarà finita e vi posto il tutto.
Una volta finita la scansione pulisco il tutto??
Il pc non mi apre alcuni siti come sempre + la pagina iniziale.
Grazie e a dopo.

Ringo64
22-09-2007, 17:57
LOG di SUPERANTISPYWARE:

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 09/22/2007 at 04:42 PM

Application Version : 3.9.1008

Core Rules Database Version : 3311
Trace Rules Database Version: 1315

Scan type : Complete Scan
Total Scan Time : 00:45:37

Memory items scanned : 346
Memory threats detected : 0
Registry items scanned : 4753
Registry threats detected : 0
File items scanned : 34184
File threats detected : 48

Adware.Tracking Cookie
C:\Documents and Settings\lore\Cookies\lore@1068092950[1].txt
C:\Documents and Settings\vale\Cookies\vale@2o7[2].txt
C:\Documents and Settings\vale\Cookies\vale@ad-directory[2].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@adbrite[2].txt
C:\Documents and Settings\vale\Cookies\vale@adrevenue[2].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@adultadworld[1].txt
C:\Documents and Settings\vale\Cookies\vale@archivioporno[2].txt
C:\Documents and Settings\vale\Cookies\vale@atwola[1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@clickair[1].txt
C:\Documents and Settings\vale\Cookies\vale@doubleclick[1].txt
C:\Documents and Settings\vale\Cookies\vale@drivecleaner[1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@eroticlick[1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@interfreesex[1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@mediaplex[1].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\vale@overture[1].txt
C:\Documents and Settings\vale\Cookies\vale@porn-movies[1].txt
C:\Documents and Settings\vale\Cookies\vale@porno[1].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\vale@stats[1].txt
C:\Documents and Settings\vale\Cookies\vale@teengirls[2].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\vale@tracker[1].txt
C:\Documents and Settings\vale\Cookies\vale@twelvefifteen[2].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][2].txt
C:\Documents and Settings\vale\Cookies\[email protected][1].txt
C:\Documents and Settings\vale\Cookies\vale@xiti[1].txt

Trace.Known Threat Sources
C:\Documents and Settings\vale\Impostazioni locali\Temporary Internet Files\Content.IE5\VP85JXWZ\Paris_Hilton_Striptease_medium[1].jpg
C:\Documents and Settings\vale\Impostazioni locali\Temporary Internet Files\Content.IE5\7KT5B40K\btn_uci_yes[1].gif

Ringo64
22-09-2007, 21:36
Log di Antivir con funzioni suggerite da "juninho85":

AntiVir PersonalEdition Classic
Report file date: sabato 22 settembre 2007 17:07

Scanning for 1077858 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: SYSTEM
Computer name: CATERINO

Version information:
BUILD.DAT : 268 15604 Bytes 31/08/2007 13:04:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 12:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 11:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 14:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 11:35:20
ANTIVIR0.VDF : 6.35.0.1 7371264 Bytes 31/05/2006 11:32:40
ANTIVIR1.VDF : 6.39.0.129 7251968 Bytes 10/07/2007 11:32:46
ANTIVIR2.VDF : 6.39.1.120 1918464 Bytes 12/09/2007 08:53:24
ANTIVIR3.VDF : 6.39.1.164 209920 Bytes 21/09/2007 08:53:24
AVEWIN32.DLL : 7.6.0.15 2806272 Bytes 22/09/2007 08:53:25
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 09:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 06:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 12:16:24
AVPACK32.DLL : 7.3.0.15 360488 Bytes 03/08/2007 07:46:00
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 06:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 11:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 06:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 10:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 11:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 11:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 08:37:21

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\programmi\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: E:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high

Start of the scan: sabato 22 settembre 2007 17:07

Starting search for hidden objects.
'65516' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'HPQTOA~1.EXE' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'PSDrt.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process 'hpqwmiex.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'PSDsrvc.EXE' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'IFXSPMGT.exe' - '1' Module(s) have been scanned
Scan process 'btwdins.exe' - '1' Module(s) have been scanned
Scan process 'avp.exe' - '0' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'a2service.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'SUPERAntiSpyware.exe' - '1' Module(s) have been scanned
Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'winampa.exe' - '1' Module(s) have been scanned
Scan process 'smax4pnp.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'qttask.exe' - '1' Module(s) have been scanned
Scan process 'avp.exe' - '0' Module(s) have been scanned
Scan process 'Scheduler.exe' - '1' Module(s) have been scanned
Scan process 'QLBCTRL.exe' - '1' Module(s) have been scanned
Scan process 'HP Wireless Assistant.exe' - '1' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
Scan process 'DLACTRLW.EXE' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'pthosttr.exe' - '1' Module(s) have been scanned
Scan process 'CLI.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'accelerometerST.exe' - '1' Module(s) have been scanned
Scan process 'AGRSMMSG.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'asghost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'scardsvr.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'aawservice.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'dllhost.exe' - '1' Module(s) have been scanned
Scan process 'IFXTCS.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
59 processes with 59 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!

lancetta
22-09-2007, 23:02
Superantispyware ha trovato qualcosa nei temp.(pure troppo.........)
Pulita con CCleaner( QUI (http://www.filehippo.com/download/9838386a743262a2d7aaedfb3b432ae2/download/))disattivando dalle opzioni avanzate "cancella solo file più vecchi di 48 ore"

oppure con ATF Cleaner http://www.atribune.org/ccount/click.php?id=1 (è stand alone senza installazione) Avvia ATF Cleaner
(se usi Firefox o Opera, selezionali dal menu in alto)
metti la spunta su "Select All" per ogni browser
e clicca su "Empty Selected"
Scegli quello che ti è più congeniale.
Naturalmente il ripristino di sistema deve essere disattivato ed a fine pulizia se vuoi riattivarlo.

Un altra cosa...per il futuro adottiamo navigazioni web...meno "spregiudicate"

juninho85
22-09-2007, 23:34
nulla di anomalo...ora ci manca gmer...per ora ho esaurito la mia utilità :D

Ringo64
24-09-2007, 08:54
Pulito con CCleaner. Ora ho notato che riesco ad aprire la pagina iniziale, ma qdo spengo il computer, ogni tanto mi avverte che ci sono altri utenti collegati !! C'è ancora il Trojan in giro???
Ora mi impegno a riuscire a copiare i processi e servizi da GMER.
Per ora grazie millllle.

lupin87
24-09-2007, 08:55
Pulito con CCleaner. Ora ho notato che riesco ad aprire la pagina iniziale, ma qdo spengo il computer, ogni tanto mi avverte che ci sono altri utenti collegati !! C'è ancora il Trojan in giro???
Ora mi impegno a riuscire a copiare i processi e servizi da GMER.
Per ora grazie millllle.

cos'è gmer?

Ringo64
24-09-2007, 17:14
http://www.gmer.net/ questo è l'indirizzo, per sapere cos'è qui trovi un'articolo su questo programma:
http://www.pcalsicuro.com/main/guida-a-gmer/