ok
comunque ora ho provato a rifarlo, l'esame, non il clean, ma non va mai oltre il 70% fermandosi a :
BAGLE: HKCU\Software\XYZ
a questo punto sta fermo un po' e poi windows mi dice:
Find String (QGREP) Utility has stopped working
e mi chiede se voglio cercare soluzioni o chiudere il programma
ecco il log che posto qui di seguito:
############################## | FindyKill V5.037 |
# User : anuska (Administrators) # anuska-PC
# Update on 18/02/2010 by El Desaparecido
# Start at: 20.45.50 | 11/03/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact :
[email protected]
# Intel(R) Core(TM)2 Duo CPU T5750 @ 2.00GHz
# Microsoft® Windows Vista™ Home Premium (6.0.6001 64-bit) # Service Pack 1
# Internet Explorer 8.0.6001.18882
# Windows Firewall Status : Enabled
# AV : Norton 360 2007 [ Enabled | Updated ]
# AV : AVG Anti-Virus Free 8.0 [ Enabled | Updated ]
# FW : Norton 360[ Enabled ]2007
# C:\ # Local Fixed Disk # 231,41 Go (125,03 Go free) [SQ004709V01] # NTFS
# D:\ # Local Fixed Disk # 232,88 Go (108,23 Go free) # NTFS
# E:\ # CD-ROM Disc
# F:\ # CD-ROM Disc
# G:\ # CD-ROM Disc
# H:\ # CD-ROM Disc
# I:\ # CD-ROM Disc
############################## | Active Processes |
C:\Program Files (x86)\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Toshiba\IVP\ISM\pinger.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
c:\Toshiba\IVP\swupdate\swupdtmr.exe
C:\Program Files (x86)\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files (x86)\AVG\AVG9\avgemc.exe
C:\Program Files (x86)\AVG\AVG9\avgcsrvx.exe
C:\Windows\SysWOW64\conime.exe
C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\Toshiba\ConfigFree\NDSTray.exe
C:\Program Files (x86)\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe
C:\Program Files (x86)\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Program Files (x86)\AVG\AVG9\avgtray.exe
C:\Program Files (x86)\iPod\bin\iPodService.exe
C:\Program Files (x86)\Toshiba\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
################## | C: |
################## | C:\Windows |
################## | C:\Windows\Prefetch |
################## | C:\Windows\system32 |
################## | C:\Windows\system32\drivers |
################## | C:\Users\anuska\AppData\Roaming |
################## | Temporary Internet Files |
C:\Users\anuska\Local Settings\Temporary Internet Files\Content.IE5\MXD8YDAB\2t_avg-remover-thumb[1].jpg
C:\Users\anuska\Local Settings\Temporary Internet Files\Content.IE5\MXD8YDAB\2t_combofix-th[1].jpg
################## | Registry |
################## | State |
# Showing of hidden files : OK
# Safe boot mode : OK
# Uac : OK
# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
# Wlansvc -> Start = 2 ( Good = 2 | Bad = 4 )
# (!) SharedAccess -> Start = 4 ( Good = 2 | Bad = 4 )
# windefend -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
# wscsvc -> Start = 2 ( Good = 2 | Bad = 4 )
################## | End of Report # FindyKill V5.037 ! |