Entra

View Full Version : explorer.EXE & drwtsn32.EXE : INCASINATO FINO AL COLLO !!!


T3NAX86
24-11-2007, 16:38
Ciao Ragazzi,

piu volte questa community mi ha aiutato nel risolvere problemi di virus e altro...ed eccomi di nuovo qui :D

Allora,è da 2-3 giorni che ricevo numerosi ERRORI...quasi tutti per i file explorer.EXE e drwtsn32.EXE...per errori intendo quelli in cui Microsoft dice " Si è verificato un errore in xxx. L'applicazione verrà chiusa " e dove chiede di inviare a Ms una segnalazione a riguardo :banned:

Ora,gli errori mi si presenta sistematicamente cliccando su Risorse del Computer...altre volte navigando su internet,magari scaricando qualcosa

Altre volte salvando qualche file immagine su Paint o Photoshop..

Insomma,un BEL CASINO :cry:

Ora,posso dirvi che nei giorni scorsi ho istallato WMediaPlayer 11 poiche non riuscivo,con il vecchio,a riprodurre un Xvid...ed ho istallato anche 2 pack di Codecs...l'ACE e KLite

Son anche passato dall'antivirus BitDefender all' Avira Antivir


secondo voi,cosa potrebbe essere? un virus? un conflitto? cos'altro?



GRAZIE GRAZIE GRAZIE GRAZIE GRAZIE :)

Gle89
24-11-2007, 16:46
Ciao!

Per aiutarti abbiamo bisogno di un analisi preliminare quindi clicca qui (http://www.hwupgrade.it/forum/showthread.php?t=1599737) segui le istruzioni e fai tutte le scansioni richieste e allega qui (leggi le regole di sezione (http://www.hwupgrade.it/forum/showthread.php?t=1589984) per capire come) tutti i log relativi :D

N.B. prima di fare le scansioni disabilita il ripristino di configurazione di sistema che dovrà rimanere disabilitato fino alla fine della disinfestazione come descritto nella guida che ti ho linkato!

T3NAX86
24-11-2007, 21:29
fatto tutto:)

ecco il risultato di HiJack...

Comunque,sicuramente di virus ne avevo e ne ho...ma ho qualche dubbio che questo problema che sto riscontrando dipenda da un virus :mbe: :
Logfile of HijackThis v1.99.1
Scan saved at 22.28.05, on 24/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmi\File comuni\Real\Update_OB\realsched.exe
C:\Programmi\Java\jre1.5.0_11\bin\jusched.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programmi\Messenger\msmsgs.exe
C:\WINDOWS\explorer.exe
C:\Programmi\MSN Messenger\usnsvc.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Programmi\Avant Browser\avant.exe
C:\Programmi\a-squared Free\a2service.exe
C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe
C:\Programmi\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe
C:\Documents and Settings\Marco\Documenti\Programmi\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://google.icq.com/search/search_frame.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.icq.com/start
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AtiPTA] C:\Programmi\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] "C:\Programmi\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Startup: Adobe Gamma.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Programmi\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: Aggiungi l'indirizzo alla Lista pubblicità indesiderata - C:\Programmi\Avant Browser\AddToADBlackList.htm
O8 - Extra context menu item: Apri in una nuova sessione di Avant Browser - C:\Programmi\Avant Browser\OpenInNewBrowser.htm
O8 - Extra context menu item: Apri tutti i collegamenti in questa pagina - C:\Programmi\Avant Browser\OpenAllLinks.htm
O8 - Extra context menu item: Blocca tutte le immagini provenienti da questo server - C:\Programmi\Avant Browser\AddAllToADBlackList.htm
O8 - Extra context menu item: Cerca - C:\Programmi\Avant Browser\Search.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Evidenzia in questa pagina - C:\Programmi\Avant Browser\Highlight.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programmi\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Programmi\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=67633
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/IT-IT/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8436FE12-31DB-48BF-83BF-FE682F9160B4} (NanoInstaller Class) - http://www.nanoscan.com/cabs/nanoinst.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://betway.microgaming.com/betway/FlashAX.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{9BF863DC-D869-447B-92EF-0F03D5DD25AF}: NameServer = 217.141.250.206,151.99.12.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{E9670E83-BB04-415D-AC12-70C5ABD0CBFD}: NameServer = 85.37.17.5 85.38.28.77
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: avgwlntf - C:\WINDOWS\SYSTEM32\avgwlntf.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Programmi\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: E - Unknown owner - C:\DOCUME~1\Marco\IMPOST~1\Temp\E.exe (file missing)
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LogLxb - Unknown owner - C:\Programmi\File comuni\Services\Rbl.exe (file missing)

Riverside
24-11-2007, 21:32
Riedita il post dopo aver letto attentamente le Regole di Sezione.
Tra le altre cose, viene spiegato come devono essere allegati i log ed i Report da pubblicare in questa sottosezione :muro:

T3NAX86
24-11-2007, 21:39
Edit: ho "fixato" tutti i problemi trovati con HiJack...ravviato...il problema sussite:cry:

Errore explorer.EXE cliccando Risorse del Computer...

che non sia un virus?:oink:

Chill-Out
24-11-2007, 21:40
hai detto di aver fatto tutto ma i log dove sono?

Riverside
24-11-2007, 21:57
hai detto di aver fatto tutto ma i log dove sono?
Forse li pubblicherà ;)
Edit: ho "fixato" tutti i problemi trovati con HiJack...ravviato...il problema sussite ..... Errore explorer.EXE cliccando Risorse del Computer...
Non ci dispiacerrebbe affatto vedere un nuovo log, se fosse possibile :cool:

T3NAX86
25-11-2007, 09:35
Logfile of HijackThis v1.99.1
Scan saved at 10.35.15, on 25/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\a-squared Free\a2service.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Avant Browser\avant.exe
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\Programmi\MSN Messenger\usnsvc.exe
C:\Programmi\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe
C:\Documents and Settings\Marco\Documenti\Programmi\HijackThis.exe

O8 - Extra context menu item: Aggiungi l'indirizzo alla Lista pubblicità indesiderata - C:\Programmi\Avant Browser\AddToADBlackList.htm
O8 - Extra context menu item: Apri in una nuova sessione di Avant Browser - C:\Programmi\Avant Browser\OpenInNewBrowser.htm
O8 - Extra context menu item: Apri tutti i collegamenti in questa pagina - C:\Programmi\Avant Browser\OpenAllLinks.htm
O8 - Extra context menu item: Blocca tutte le immagini provenienti da questo server - C:\Programmi\Avant Browser\AddAllToADBlackList.htm
O8 - Extra context menu item: Cerca - C:\Programmi\Avant Browser\Search.htm
O8 - Extra context menu item: Evidenzia in questa pagina - C:\Programmi\Avant Browser\Highlight.htm
O17 - HKLM\System\CCS\Services\Tcpip\..\{E9670E83-BB04-415D-AC12-70C5ABD0CBFD}: NameServer = 85.37.17.5 85.38.28.77
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe


a-squared Free - Version 3.0
Last update: 24/11/2007 19.24.02

Impostazioni scansione:

Oggetti: Memoria, Tracce, Cookies, C:\
Archivio scansioni: On
Scientifico: On
ADS Scan: On

Scansione avviata: 24/11/2007 19.24.25

c:\programmi\icqtoolbar rilevati: Trace.Directory.ICQToolbar
c:\programmi\icqtoolbar\games.xml rilevati: Trace.File.ICQToolbar
c:\documents and settings\all users\menu avvio\programmi\emule speed booster rilevati: Trace.Directory.Emule Speed Booster
c:\programmi\emule speed booster rilevati: Trace.Directory.Emule Speed Booster
c:\documents and settings\all users\menu avvio\programmi\emule speed booster\emule speed booster.lnk rilevati: Trace.File.Emule Speed Booster
c:\programmi\emule speed booster\emule speed booster.dat rilevati: Trace.File.Emule Speed Booster
c:\programmi\emule speed booster\emule speed booster.exe rilevati: Trace.File.Emule Speed Booster
c:\programmi\emule speed booster\packet.dll rilevati: Trace.File.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> DisplayName rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> HelpLink rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: App Path rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Deselected Tasks rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Icon Group rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Selected Tasks rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Setup Version rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: User rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> InstallLocation rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> NoModify rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> NoRepair rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Publisher rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> QuietUninstallString rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> UninstallString rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> URLInfoAbout rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> URLUpdateInfo rilevati: Trace.Registry.Emule Speed Booster
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar\tb_items --> tbs_button_014468 rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar\tb_items --> tbs_button_020683 rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar\tb_items --> tbs_combo_022917 rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> AutoComplete rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> AutoSearch rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> AutoWild rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> blockPopups rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> CountOS rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> CurrentLayout rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> DescriptiveText rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> firstTime rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> Height rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> KeepHistory rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> m_bWorking rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> OldAssitant1 rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> OldOS rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> OpenNew rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> RunSearchAutomatically rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> RunSearchDragAutomatically rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> ShowFindButtons rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> ShowHighlightButton rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBBreak rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBPos rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBShow rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBWidth rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> Toolbar Path rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> toolbar_id rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> toolbar_version rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> UpdateAutomatically rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> updateWaitForRestart rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> updateXML rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TBSB04431.TBSB04431Toolbar --> DisplayName rilevati: Trace.Registry.Wabbadabba ToolBar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TBSB04431.TBSB04431Toolbar --> UninstallString rilevati: Trace.Registry.Wabbadabba ToolBar
C:\Documents and Settings\Marco\Cookies\marco@190[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@2o7[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@about_cookie[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@adserver2.everyeye[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@adtech[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@advertising[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@as1.falkag[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@atdmt[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@bizrate[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@bs.serving-sys[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@cgi-bin[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@comcast[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@como.kijiji[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@como.kijiji[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@comprooro[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@com[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@count.it5[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@count.vivistats[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@counter.auctionworks[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@doubleclick[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@hc2.humanclick[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@hotlog[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@indextools[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@media.intelia[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@mediaplex[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@pop[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@pop[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@questionmarket[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@realmedia[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@server.iad.liveperson[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@serving-sys[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@smartadserver[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@specificclick[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@tradedoubler[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@trafficmp[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@tribalfusion[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@xxxcounter[1].txt rilevati: Trace.TrackingCookie

Scansionati

Files: 119154
Tracce: 340633
Cookies: 1030
Processi: 37

Rilevato

Files: 0
Tracce: 57
Cookies: 37
Processi: 0
Chiavi registro: 0

Fine scansione: 24/11/2007 20.25.42
Tempo scansione: 1.01.17

C:\Documents and Settings\Marco\Cookies\marco@190[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@2o7[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@about_cookie[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@adserver2.everyeye[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@adtech[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@advertising[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@as1.falkag[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@atdmt[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@bizrate[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@bs.serving-sys[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@cgi-bin[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@comcast[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@como.kijiji[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@como.kijiji[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@comprooro[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@com[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@count.it5[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@count.vivistats[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@counter.auctionworks[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@doubleclick[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@hc2.humanclick[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@hotlog[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@indextools[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@media.intelia[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@mediaplex[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@pop[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@pop[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@questionmarket[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@realmedia[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@server.iad.liveperson[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@serving-sys[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@smartadserver[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@specificclick[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@tradedoubler[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@trafficmp[2].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@tribalfusion[1].txt In quarantena Trace.TrackingCookie
C:\Documents and Settings\Marco\Cookies\marco@xxxcounter[1].txt In quarantena Trace.TrackingCookie
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar\tb_items --> tbs_button_014468 In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar\tb_items --> tbs_button_020683 In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar\tb_items --> tbs_combo_022917 In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> AutoComplete In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> AutoSearch In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> AutoWild In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> blockPopups In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> CountOS In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> CurrentLayout In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> DescriptiveText In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> firstTime In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> Height In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> KeepHistory In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> m_bWorking In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> OldAssitant1 In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> OldOS In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> OpenNew In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> RunSearchAutomatically In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> RunSearchDragAutomatically In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> ShowFindButtons In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> ShowHighlightButton In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBBreak In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBPos In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBShow In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> TBWidth In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> Toolbar Path In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> toolbar_id In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> toolbar_version In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> UpdateAutomatically In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> updateWaitForRestart In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_USERS\S-1-5-21-2052111302-1604221776-725345543-1003\Software\TBSB04431\Toolbar --> updateXML In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TBSB04431.TBSB04431Toolbar --> DisplayName In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TBSB04431.TBSB04431Toolbar --> UninstallString In quarantena Trace.Registry.Wabbadabba ToolBar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> DisplayName In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> HelpLink In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: App Path In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Deselected Tasks In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Icon Group In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Selected Tasks In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: Setup Version In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Inno Setup: User In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> InstallLocation In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> NoModify In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> NoRepair In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> Publisher In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> QuietUninstallString In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> UninstallString In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> URLInfoAbout In quarantena Trace.Registry.Emule Speed Booster
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Emule Speed Booster_is1 --> URLUpdateInfo In quarantena Trace.Registry.Emule Speed Booster
c:\documents and settings\all users\menu avvio\programmi\emule speed booster\emule speed booster.lnk In quarantena Trace.File.Emule Speed Booster
c:\programmi\emule speed booster\emule speed booster.dat In quarantena Trace.File.Emule Speed Booster
c:\programmi\emule speed booster\emule speed booster.exe In quarantena Trace.File.Emule Speed Booster
c:\programmi\emule speed booster\packet.dll In quarantena Trace.File.Emule Speed Booster
c:\documents and settings\all users\menu avvio\programmi\emule speed booster In quarantena Trace.Directory.Emule Speed Booster
c:\programmi\emule speed booster In quarantena Trace.Directory.Emule Speed Booster
c:\programmi\icqtoolbar\games.xml In quarantena Trace.File.ICQToolbar
c:\programmi\icqtoolbar In quarantena Trace.Directory.ICQToolbar

In quarantena

Files: 0
Tracce: 57
Cookies: 37



Comunque son quasi sicuro non si tratti di un virus...ma di qualcos'altro :-)

C'è una sezione che tratti problemi Hardware/Software e non Virus?

potete spostarmi lì ?

GRAZIE 1000

murack83pa
25-11-2007, 11:18
io avevo un problema quasi identico al tuo
ero convintisssimo fosse un virus
dopo mille scansioni con qualsiasi programma(antivirus,scansione online,antipsyware,antirootkit), andando su eventi di sistema, ho notato che c'erano molto problemi, dovuti a casini di driver che ho fatto ed erano questi che causavano l'instabiliti del sistema....

nn so se le cause del tuo problema possono essere le stesse....se i log dei vari programmi nn indicano nulla di sospetto, controlla eventi di sistema....cmq aspetta i responsi degli esperti

ciao ciao

T3NAX86
25-11-2007, 12:23
credo la stessa cosa