Scaricare gmer (www.gmer.net) e fare due scansioni: rootkit e autostart, copiare i risultati (gmer ha direttamente il pulsante copy) e incollarli in un messaggio qua sul forum. Assicurati che in entrambe le scansioni NON sia selezionata l'opzione show all. Infine, mentre fai la scansione rootkit non utilizzare il pc e chiudi tutte le applicazioni che puoi.
Grazie del consiglio,ecco qui le due scansioni:
GMER 1.0.12.11889 - http://www.gmer.net
Rootkit scan 2006-11-09 12:44:14
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.12 ----
SSDT \SystemRoot\System32\drivers\klif.sys ZwClose
SSDT \SystemRoot\System32\vsdatant.sys ZwCreateFile
SSDT \SystemRoot\System32\vsdatant.sys ZwCreateKey
SSDT a347bus.sys ZwCreatePagingFile
SSDT \SystemRoot\System32\drivers\klif.sys ZwCreateProcess
SSDT \SystemRoot\System32\drivers\klif.sys ZwCreateProcessEx
SSDT \SystemRoot\System32\drivers\klif.sys ZwCreateSection
SSDT \SystemRoot\System32\drivers\klif.sys ZwCreateThread
SSDT \SystemRoot\System32\vsdatant.sys ZwDeleteFile
SSDT \SystemRoot\System32\vsdatant.sys ZwDeleteKey
SSDT \SystemRoot\System32\vsdatant.sys ZwDeleteValueKey
SSDT a347bus.sys ZwEnumerateKey
SSDT a347bus.sys ZwEnumerateValueKey
SSDT \SystemRoot\System32\vsdatant.sys ZwLoadKey
SSDT \SystemRoot\System32\vsdatant.sys ZwOpenFile
SSDT a347bus.sys ZwOpenKey
SSDT \SystemRoot\System32\drivers\klif.sys ZwOpenProcess
SSDT \SystemRoot\System32\drivers\klif.sys ZwQueryInformationFile
SSDT a347bus.sys ZwQueryKey
SSDT \SystemRoot\System32\drivers\klif.sys ZwQuerySystemInformation
SSDT a347bus.sys ZwQueryValueKey
SSDT \SystemRoot\System32\vsdatant.sys ZwReplaceKey
SSDT \SystemRoot\System32\vsdatant.sys ZwRestoreKey
SSDT \SystemRoot\System32\drivers\klif.sys ZwResumeThread
SSDT \SystemRoot\System32\vsdatant.sys ZwSetInformationFile
SSDT \SystemRoot\System32\drivers\klif.sys ZwSetInformationProcess
SSDT a347bus.sys ZwSetSystemPowerState
SSDT \SystemRoot\System32\vsdatant.sys ZwSetValueKey
SSDT \SystemRoot\System32\drivers\klif.sys ZwSuspendThread
SSDT \SystemRoot\System32\drivers\klif.sys ZwTerminateProcess
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[284]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[285]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[286]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[287]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[288]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[289]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[290]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[291]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[292]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[293]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[294]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[295]
SSDT \SystemRoot\System32\drivers\klif.sys SSDT[296]
---- Kernel code sections - GMER 1.0.12 ----
.text ntoskrnl.exe!KiDispatchInterrupt + BA 804DB92E 7 Bytes JMP BA4A8310 \SystemRoot\System32\drivers\klif.sys
.text ntoskrnl.exe!_abnormal_termination + 1D5 804E2831 3 Bytes
.text hidir.sys F7BFEB8E 1 Byte
---- User code sections - GMER 1.0.12 ----
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 01015B5A
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 01015D3A
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 01015EB0
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 010161EE
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 010160ED
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 01015FC3
.text D:\Programmi\eMule\emule.exe[328] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 01015C2D
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 009C5B5A
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 009C5D3A
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 009C5EB0
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 009C61EE
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 009C60ED
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 009C5FC3
.text C:\WINDOWS\system32\ati2evxx.exe[496] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 009C5C2D
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 00A87600
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 009D5D3A
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 009D5EB0
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 009D61EE
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 009D60ED
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 009D5FC3
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtResumeThread 7C91E45F 5 Bytes JMP 00A87650
.text C:\WINDOWS\explorer.exe[572] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 009D5C2D
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 003B5B5A
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 003B5D3A
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 003B5EB0
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 003B61EE
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 003B60ED
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 003B5FC3
.text C:\WINDOWS\ehome\ehtray.exe[800] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 003B5C2D
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 009A5B5A
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 009A5D3A
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 009A5EB0
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 009A61EE
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 009A60ED
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 009A5FC3
.text C:\WINDOWS\system32\rundll32.exe[824] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 009A5C2D
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 003E5B5A
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 003E5D3A
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 003E5EB0
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 003E61EE
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 003E60ED
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 003E5FC3
.text D:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe[844] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 003E5C2D
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 00395B5A
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 00395D3A
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 00395EB0
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 003961EE
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 003960ED
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 00395FC3
.text C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe[1028] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 00395C2D
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 003E5B5A
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 003E5D3A
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 003E5EB0
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 003E61EE
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 003E60ED
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 003E5FC3
.text C:\WINDOWS\system32\ctfmon.exe[1052] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 003E5C2D
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 00BF5B5A
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 00BF5D3A
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 00BF5EB0
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 00BF61EE
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 00BF60ED
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 00BF5FC3
.text C:\WINDOWS\system32\winlogon.exe[1076] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 00BF5C2D
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 009A5B5A
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 009A5D3A
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 009A5EB0
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 009A61EE
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 009A60ED
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 009A5FC3
.text C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe[1172] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 009A5C2D
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 009F5B5A
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 009F5D3A
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 009F5EB0
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 009F61EE
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 009F60ED
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 009F5FC3
.text F:\Backup\Doc\Installazioni\gmer.exe[2468] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 009F5C2D
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtCreateThread 7C91D7D2 5 Bytes JMP 01035B5A
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtEnumerateKey 7C91D94C 5 Bytes JMP 01035D3A
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtEnumerateValueKey 7C91D976 5 Bytes JMP 01035EB0
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtQueryDirectoryFile 7C91DF5E 5 Bytes JMP 010361EE
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtQuerySystemInformation 7C91E1AA 5 Bytes JMP 010360ED
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtQueryValueKey 7C91E1FE 5 Bytes JMP 01035FC3
.text D:\Programmi\AltDvb\AltDVB.exe[2976] ntdll.dll!NtSetValueKey 7C91E7BC 5 Bytes JMP 01035C2D
---- Devices - GMER 1.0.12 ----
Device \FileSystem\Ntfs \Ntfs IRP_MJ_READ 867E3338
Device \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CONTROL [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [BA6DBBF6] klmc.sys
Device \Driver\Tcpip \Device\Ip IRP_MJ_CLEANUP [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CONTROL [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [BA6DBBF6] klmc.sys
Device \Driver\Tcpip \Device\Tcp IRP_MJ_CLEANUP [BA6A6230] vsdatant.sys
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE_NAMED_PIPE 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CLOSE 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_READ 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_WRITE 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_QUERY_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SET_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_QUERY_EA 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SET_EA 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_FLUSH_BUFFERS 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_QUERY_VOLUME_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SET_VOLUME_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DIRECTORY_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_FILE_SYSTEM_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DEVICE_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SHUTDOWN 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_LOCK_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CLEANUP 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE_MAILSLOT 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_QUERY_SECURITY 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SET_SECURITY 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_POWER 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SYSTEM_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DEVICE_CHANGE 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_QUERY_QUOTA 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SET_QUOTA 86680118
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_PNP 86680118
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_READ 861716F0
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CREATE 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CREATE_NAMED_PIPE 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CLOSE 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_READ 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_WRITE 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_QUERY_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SET_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_QUERY_EA 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SET_EA 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_FLUSH_BUFFERS 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_QUERY_VOLUME_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SET_VOLUME_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_DIRECTORY_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_FILE_SYSTEM_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_DEVICE_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SHUTDOWN 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_LOCK_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CLEANUP 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CREATE_MAILSLOT 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_QUERY_SECURITY 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SET_SECURITY 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_POWER 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SYSTEM_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_DEVICE_CHANGE 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_QUERY_QUOTA 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SET_QUOTA 86680118
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_PNP 86680118
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CREATE 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CREATE_NAMED_PIPE 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CLOSE 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_READ 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_WRITE 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_QUERY_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SET_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_QUERY_EA 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SET_EA 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_FLUSH_BUFFERS 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_QUERY_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SET_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_DIRECTORY_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_FILE_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SHUTDOWN 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_LOCK_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CLEANUP 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_CREATE_MAILSLOT 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_QUERY_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SET_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_POWER 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_DEVICE_CHANGE 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_QUERY_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_SET_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdePort0 IRP_MJ_PNP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_CREATE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_CREATE_NAMED_PIPE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_CLOSE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_READ 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_WRITE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_QUERY_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SET_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_QUERY_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SET_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_FLUSH_BUFFERS 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_QUERY_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SET_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_DIRECTORY_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_FILE_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SHUTDOWN 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_LOCK_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_CLEANUP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_CREATE_MAILSLOT 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_QUERY_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SET_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_POWER 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_DEVICE_CHANGE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_QUERY_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_SET_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-4 IRP_MJ_PNP 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CREATE 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CREATE_NAMED_PIPE 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CLOSE 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_READ 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_WRITE 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_QUERY_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SET_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_QUERY_EA 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SET_EA 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_FLUSH_BUFFERS 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_QUERY_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SET_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_DIRECTORY_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_FILE_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SHUTDOWN 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_LOCK_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CLEANUP 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_CREATE_MAILSLOT 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_QUERY_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SET_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_POWER 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_DEVICE_CHANGE 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_QUERY_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_SET_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdePort1 IRP_MJ_PNP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_CREATE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_CREATE_NAMED_PIPE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_CLOSE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_READ 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_WRITE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_QUERY_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SET_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_QUERY_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SET_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_FLUSH_BUFFERS 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_QUERY_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SET_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_DIRECTORY_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_FILE_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_INTERNAL_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SHUTDOWN 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_LOCK_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_CLEANUP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_CREATE_MAILSLOT 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_QUERY_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SET_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_POWER 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_DEVICE_CHANGE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_QUERY_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_SET_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP0T1L0-c IRP_MJ_PNP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_CREATE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_CREATE_NAMED_PIPE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_CLOSE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_READ 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_WRITE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_QUERY_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SET_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_QUERY_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SET_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_FLUSH_BUFFERS 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_QUERY_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SET_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_DIRECTORY_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_FILE_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SHUTDOWN 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_LOCK_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_CLEANUP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_CREATE_MAILSLOT 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_QUERY_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SET_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_POWER 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_DEVICE_CHANGE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_QUERY_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_SET_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-18 IRP_MJ_PNP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_CREATE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_CREATE_NAMED_PIPE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_CLOSE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_READ 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_WRITE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_QUERY_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SET_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_QUERY_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SET_EA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_FLUSH_BUFFERS 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_QUERY_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SET_VOLUME_INFORMATION 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_DIRECTORY_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_FILE_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SHUTDOWN 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_LOCK_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_CLEANUP 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_CREATE_MAILSLOT 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_QUERY_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SET_SECURITY 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_POWER 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SYSTEM_CONTROL 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_DEVICE_CHANGE 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_QUERY_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_SET_QUOTA 86680008
Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-20 IRP_MJ_PNP 86680008
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CREATE 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CREATE_NAMED_PIPE 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CLOSE 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_READ 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_WRITE 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_QUERY_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SET_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_QUERY_EA 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SET_EA 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_FLUSH_BUFFERS 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_QUERY_VOLUME_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SET_VOLUME_INFORMATION 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_DIRECTORY_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_FILE_SYSTEM_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_DEVICE_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_INTERNAL_DEVICE_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SHUTDOWN 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_LOCK_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CLEANUP 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_CREATE_MAILSLOT 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_QUERY_SECURITY 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SET_SECURITY 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_POWER 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SYSTEM_CONTROL 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_DEVICE_CHANGE 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_QUERY_QUOTA 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_SET_QUOTA 86680118
Device \Driver\Cdrom \Device\CdRom2 IRP_MJ_PNP 86680118
Device \FileSystem\Srv \Device\LanmanServer IRP_MJ_READ 85836D60
Device \Driver\Tcpip \Device\Udp IRP_MJ_CREATE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_CLOSE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CONTROL [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [BA6DBBF6] klmc.sys
Device \Driver\Tcpip \Device\Udp IRP_MJ_CLEANUP [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_CLOSE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CONTROL [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_INTERNAL_DEVICE_CONTROL [BA6DBBF6] klmc.sys
Device \Driver\Tcpip \Device\RawIp IRP_MJ_CLEANUP [BA6A6230] vsdatant.sys
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_READ 8616D840
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CREATE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CLOSE [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_DEVICE_CONTROL [BA6A6230] vsdatant.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_INTERNAL_DEVICE_CONTROL [BA6DBBF6] klmc.sys
Device \Driver\Tcpip \Device\IPMULTICAST IRP_MJ_CLEANUP [BA6A6230] vsdatant.sys
Device \FileSystem\MRxSmb \Device\LanmanRedirector IRP_MJ_READ 8616D840
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_READ 864F1B78
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_READ 864F59C0
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_CREATE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_CREATE_NAMED_PIPE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_CLOSE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_READ 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_WRITE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_QUERY_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SET_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_QUERY_EA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SET_EA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_FLUSH_BUFFERS 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_QUERY_VOLUME_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SET_VOLUME_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_DIRECTORY_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_FILE_SYSTEM_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_DEVICE_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SHUTDOWN 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_LOCK_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_CLEANUP 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_CREATE_MAILSLOT 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_QUERY_SECURITY 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SET_SECURITY 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_POWER 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SYSTEM_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_DEVICE_CHANGE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_QUERY_QUOTA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_SET_QUOTA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1Port2Path0Target0Lun0 IRP_MJ_PNP 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_CREATE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_CREATE_NAMED_PIPE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_CLOSE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_READ 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_WRITE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_QUERY_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SET_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_QUERY_EA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SET_EA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_FLUSH_BUFFERS 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_QUERY_VOLUME_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SET_VOLUME_INFORMATION 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_DIRECTORY_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_FILE_SYSTEM_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_DEVICE_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_INTERNAL_DEVICE_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SHUTDOWN 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_LOCK_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_CLEANUP 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_CREATE_MAILSLOT 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_QUERY_SECURITY 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SET_SECURITY 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_POWER 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SYSTEM_CONTROL 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_DEVICE_CHANGE 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_QUERY_QUOTA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_SET_QUOTA 864AB158
Device \Driver\a347scsi \Device\Scsi\a347scsi1 IRP_MJ_PNP 864AB158
Device \FileSystem\Fs_Rec \FileSystem\UdfsCdRomRecognizer IRP_MJ_READ 864EFEA0
Device \FileSystem\Fs_Rec \FileSystem\FatCdRomRecognizer IRP_MJ_READ 864EFEA0
Device \FileSystem\Fs_Rec \FileSystem\CdfsRecognizer IRP_MJ_READ 864EFEA0
Device \FileSystem\Fs_Rec \FileSystem\FatDiskRecognizer IRP_MJ_READ 864EFEA0
Device \FileSystem\Fs_Rec \FileSystem\UdfsDiskRecognizer IRP_MJ_READ 864EFEA0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_READ 85F672B0
---- Modules - GMER 1.0.12 ----
Module _________ F7749000
---- Threads - GMER 1.0.12 ----
Thread 4:172 86635950
Thread 4:176 86615C60
Thread 4:180 86615C60
Thread 4:492 86635950
Thread 4:652 86635950
Thread 4:812 86635950
Thread 4:532 85612560
---- Registry - GMER 1.0.12 ----
Reg \Registry\MACHINE\SOFTWARE\Classes\CLSID\{49B04671-A35E-4B20-A081-5098BAD95445}
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ruins
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ruins@}93BD440D5EAB-2F6B-BF24-8328-274F3DFB{ 0xB4 0x24 0x00 0x00 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ruins@gvvmd 0x77 0x0A 0x00 0x00 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
[email protected] C:\WINDOWS\system32\dmvvg.exe
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
[email protected] C:\WINDOWS\system32\dmvvg.exe
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
Reg \Registry\MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion@nhhsc 0x71 0x46 0xB0 0x49 ...
GMER 1.0.12.11889 - http://www.gmer.net
Autostart scan 2006-11-09 13:01:46
Windows 5.1.2600 Service Pack 2
HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems@Windows = %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon >>>
@UserinitC:\WINDOWS\system32\userinit.exe, = C:\WINDOWS\system32\userinit.exe,
@Systemcshhn.exe = cshhn.exe
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent@DLLName = Ati2evxx.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows@AppInit_DLLs = C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
HKLM\SYSTEM\CurrentControlSet\Services\ >>>
Ati HotKey Poller@ = %SystemRoot%\system32\Ati2evxx.exe
ATI Smart /*ATI Smart*/@ = C:\WINDOWS\system32\ati2sgag.exe
ehRecvr /*Media Center Receiver Service*/@ = C:\WINDOWS\eHome\ehRecvr.exe
ehSched /*Media Center Scheduler Service*/@ = C:\WINDOWS\eHome\ehSched.exe
GEARSecurity@ = %SystemRoot%\System32\GEARSec.exe
kavsvc /*kavsvc*/@ = "d:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe"
MDM /*Machine Debug Manager*/@ = "C:\Programmi\File comuni\Microsoft Shared\VS7Debug\mdm.exe"
Spooler /*Spooler di stampa*/@ = %SystemRoot%\system32\spoolsv.exe
V2i Protector /*V2i Protector*/@ = C:\Programmi\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run >>>
@ehTrayC:\WINDOWS\ehome\ehtray.exe = C:\WINDOWS\ehome\ehtray.exe
@BluetoothAuthenticationAgentrundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent = rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
@KAVPersonal50"d:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize = "d:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
@KernelFaultCheck%systemroot%\system32\dumprep 0 -k = %systemroot%\system32\dumprep 0 -k
@SunJavaUpdateSched"C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe" = "C:\Programmi\Java\jre1.5.0_09\bin\jusched.exe"
@dmvvg.exeC:\WINDOWS\system32\dmvvg.exe = C:\WINDOWS\system32\dmvvg.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run >>>
@CTFMON.EXEC:\WINDOWS\system32\ctfmon.exe = C:\WINDOWS\system32\ctfmon.exe
@updateMgr"D:\Programmi\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1 = "D:\Programmi\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
@swgC:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe = C:\Programmi\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved >>>
@{42071714-76d4-11d1-8b24-00a0c9068ff3} /*Estensione panoramica video del Pannello di controllo*/deskpan.dll /*file not found*/ = deskpan.dll /*file not found*/
@{596AB062-B4D2-4215-9F74-E9109B0A8153} /*Pagina proprietà versioni precedenti*/%SystemRoot%\system32\twext.dll = %SystemRoot%\system32\twext.dll
@{9DB7A13C-F208-4981-8353-73CC61AE2783} /*Versioni precedenti*/%SystemRoot%\system32\twext.dll = %SystemRoot%\system32\twext.dll
@{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} /*Autoplay for SlideShow*/(null) =
@{692F0339-CBAA-47e6-B5B5-3B84DB604E87} /*Extensions Manager Folder*/%SystemRoot%\system32\extmgr.dll = %SystemRoot%\system32\extmgr.dll
@{B41DB860-8EE4-11D2-9906-E49FADC173CA} /*WinRAR shell extension*/d:\Programmi\WinRAR\rarext.dll = d:\Programmi\WinRAR\rarext.dll
@{BDEADF00-C265-11D0-BCED-00A0C90AB50F} /*Cartelle Web*/C:\PROGRA~1\FILECO~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL = C:\PROGRA~1\FILECO~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
@{0006F045-0000-0000-C000-000000000046} /*Microsoft Outlook Custom Icon Handler*/D:\Programmi\Microsoft Office\Office10\OLKFSTUB.DLL = D:\Programmi\Microsoft Office\Office10\OLKFSTUB.DLL
@{42042206-2D85-11D3-8CFF-005004838597} /*Microsoft Office HTML Icon Handler*/D:\Programmi\Microsoft Office\Office10\msohev.dll = D:\Programmi\Microsoft Office\Office10\msohev.dll
@CorelDRAW Shell Extension Component /*CorelDRAW Shell Extension Component*/(null) =
@{32020A01-506E-484D-A2A8-BE3CF17601C3} /*AlcoholShellEx*/D:\PROGRA~1\ALCOHO~1\ALCOHO~1\AXShlEx.dll = D:\PROGRA~1\ALCOHO~1\ALCOHO~1\AXShlEx.dll
@{e82a2d71-5b2f-43a0-97b8-81be15854de8} /*ShellLink for Application References*/C:\WINDOWS\system32\dfshim.dll = C:\WINDOWS\system32\dfshim.dll
@{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} /*Shell Icon Handler for Application References*/C:\WINDOWS\system32\dfshim.dll = C:\WINDOWS\system32\dfshim.dll
@{D9872D13-7651-4471-9EEE-F0A00218BEBB} /*Multiscan*/d:\Programmi\Zone Labs\ZoneAlarm\zlavscan.dll = d:\Programmi\Zone Labs\ZoneAlarm\zlavscan.dll
@{FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D} /*Messenger Sharing Folders*/C:\Programmi\MSN Messenger\fsshext.8.0.0812.00.dll = C:\Programmi\MSN Messenger\fsshext.8.0.0812.00.dll
@{5E2121EE-0300-11D4-8D3B-444553540000} /*Catalyst Context Menu extension*/C:\Programmi\ATI Technologies\ATI.ACE\atiacmxx.dll = C:\Programmi\ATI Technologies\ATI.ACE\atiacmxx.dll
HKLM\Software\Classes\*\shellex\ContextMenuHandlers\ >>>
HexWorkshopContextMenu@{DB34D5DC-D41A-482E-A5EF-8FA0F88761DA} = blank /*file not found*/
Kaspersky Anti-Virus@{dd230880-495a-11d1-b064-008048ec2fc5} = d:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\shellex.dll
MyPhoneExplorer@{C63D6E57-FE9E-43D7-B7ED-900DEB695D3E} = d:\Programmi\MyPhoneExplorer\DLL\ShellMgr.dll
WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = d:\Programmi\WinRAR\rarext.dll
ZLAVShExt@{D9872D13-7651-4471-9EEE-F0A00218BEBB} = d:\Programmi\Zone Labs\ZoneAlarm\zlavscan.dll
HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = d:\Programmi\WinRAR\rarext.dll
HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ >>>
Kaspersky Anti-Virus@{dd230880-495a-11d1-b064-008048ec2fc5} = d:\Programmi\Kaspersky Lab\Kaspersky Anti-Virus Personal\shellex.dll
WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = d:\Programmi\WinRAR\rarext.dll
ZLAVShExt@{D9872D13-7651-4471-9EEE-F0A00218BEBB} = d:\Programmi\Zone Labs\ZoneAlarm\zlavscan.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects >>>
@{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}D:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll = D:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
@{53707962-6F74-2D53-2644-206D7942484F}D:\PROGRA~1\SPYBOT~1\SDHelper.dll = D:\PROGRA~1\SPYBOT~1\SDHelper.dll
@{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}C:\Programmi\Java\jre1.5.0_09\bin\ssv.dll = C:\Programmi\Java\jre1.5.0_09\bin\ssv.dll
@{AA58ED58-01DD-4d91-8333-CF10577473F7}c:\programmi\google\googletoolbar1.dll = c:\programmi\google\googletoolbar1.dll
HKLM\Software\Microsoft\Internet Explorer\Main >>>
@Default_Page_URLhttp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
@Start Pagehttp://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
@Local Page%SystemRoot%\system32\blank.htm = %SystemRoot%\system32\blank.htm
HKCU\Software\Microsoft\Internet Explorer\Main@Start Page = http://www.google.it/
HKLM\Software\Classes\PROTOCOLS\Handler\ >>>
cdo@CLSID = C:\Programmi\File comuni\Microsoft Shared\Web Folders\PKMCDO.DLL
dvd@CLSID = C:\WINDOWS\system32\msvidctl.dll
its@CLSID = C:\WINDOWS\system32\itss.dll
livecall@CLSID = C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
mhtml@CLSID = %SystemRoot%\system32\inetcomm.dll
ms-its@CLSID = C:\WINDOWS\system32\itss.dll
ms-itss@CLSID = C:\Programmi\File comuni\Microsoft Shared\Information Retrieval\MSITSS.DLL
msnim@CLSID = C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
mso-offdap@CLSID = C:\PROGRA~1\FILECO~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
tv@CLSID = C:\WINDOWS\system32\msvidctl.dll
wia@CLSID = C:\WINDOWS\system32\wiascr.dll
HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{53F2097E-3966-4B05-8752-5CFC6098721D} /*Connessione alla rete locale (LAN)*/ >>>
@IPAddress192.168.1.2 = 192.168.1.2
@NameServer85.37.17.55,85.38.28.93 = 85.37.17.55,85.38.28.93
@DefaultGateway192.168.1.1 = 192.168.1.1
@Domain =
HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{75EF19B3-ABD3-44AD-8E9B-5060403E54F7} /*Connessione alla rete locale (LAN) 2*/ >>>
@IPAddress192.168.238.238 = 192.168.238.238
@NameServer =
@DefaultGateway =
@Domain =
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000004@LibraryPath = %SystemRoot%\system32\wshbth.dll
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\ >>>
000000000001@PackedCatalogItem = d:\Programmi\NetLimiter\nl_lsp.dll
000000000002@PackedCatalogItem = d:\Programmi\NetLimiter\nl_lsp.dll
000000000003@PackedCatalogItem = d:\Programmi\NetLimiter\nl_lsp.dll
000000000004@PackedCatalogItem = d:\Programmi\NetLimiter\nl_lsp.dll
000000000005@PackedCatalogItem = d:\Programmi\NetLimiter\nl_lsp.dll
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012@PackedCatalogItem = d:\Programmi\NetLimiter\nl_lsp.dll
C:\Documents and Settings\All Users\Menu Avvio\Programmi\Esecuzione automatica = Microsoft Office.lnk
---- EOF - GMER 1.0.12 ----
Spero di aver seguito in modo giusto i tuoi consigli.Buona giornata