|
|||||||
|
|
|
![]() |
|
|
Strumenti |
|
|
#1 |
|
Member
Iscritto dal: Nov 2007
Città: Vicenza(malo)
Messaggi: 79
|
Non sò che virus e...
(http://fp.pc-on-internet.com/sws/035...&time=312e3931) nel pc ho avira e peer guardian 2 +a square in peerguardian 2 ho gli indirizzi aggiornati di hardware upgrade...
__________________
La mia difesa dai virus?? Hardware upgrade Ultima modifica di octavia080 : 07-06-2008 alle 14:58. |
|
|
|
|
|
#2 |
|
Senior Member
Iscritto dal: Dec 2007
Città: Brianza
Messaggi: 14704
|
Ciao benvenuto nel pronto soccorso di HU.
Leggi bene le regole di sezione e poi segui bene la guida alla disinfezione per infetti ed esegui tutte le scansioni nell'ordine indicato. Ti rielenco brevemente le modalità di pubblicazione dei log Se i log o le immagini (.JPG) non superano i 24Kb allegali tramite il comodo comando Gestisci allegati nelle Opzioni aggiuntive. Clicca su Gestisci allegati -> si aprirà una finestra -> Click su Sfoglia -> seleziona il file da caricare -> Click su Carica -> sotto allegati correnti vedrai il tuo log caricato -> Chiudi la finestra Altrimenti caricali su [wikisend.com] o su [mediafire.com]. Una volta sul sito -> clicca su sfoglia -> seleziona il file da caricare -> poi invia o upload -> aspetta che venga caricato -> copia tutto il contenuto a fianco della della riga "Forum link nel primo caso oppure sotto "Sharing URL" nel secondo e lo incolli nella risposta della discussione. Le immagini più grosse (es. nel caso di PrevX) salvale in JPG, essendo più leggere, e caricale su fileqube.com che permette di visualizzarle direttamente online. Ricapitolando, dopo aver disabilitato il ripristino di sistema, fatto la pulizia dei file inutili con ATFCleaner e cancellato gli asd con ADS Scanner, vogliamo necessariamente in ordine (altrimenti dovrai comunque rifarli):
In questa maniera, tu avrai un pc già parzialmente ripulito, e noi le informazioni necessarie per i restanti interventi. Intanto che aspetti la nostra assistenza, o durante le scansioni lunghe, comincia a leggerti il trattamento di prevenzione così comincerai a comprendere eventuali problemi della configurazione di sicurezza del tuo pc. Solo al termine della pulizia, leggi l'ultimo punto di questo trattamento, per eliminare programmi e tool che ti abbiamo fatto utilizzare e che non ti serviranno più....si spera Ciao
__________________
fattoebloggato.com • Trattamento post disinfezione • Recupero dati, RAID e Partizioni • Guida UBCD4Win • Test RAM • Controllo Disco • TestDisk • Operazioni di emergenza • Live cd Linux • UBCD • Backup • Gestione ISO & immagini virtuali • Partizionare un disco • Sardu • ScreenRecording • |
|
|
|
|
|
#3 |
|
Member
Iscritto dal: Nov 2007
Città: Vicenza(malo)
Messaggi: 79
|
GRAZIE 1000
__________________
La mia difesa dai virus?? Hardware upgrade |
|
|
|
|
|
#4 |
|
Member
Iscritto dal: Nov 2007
Città: Vicenza(malo)
Messaggi: 79
|
ecco qui alcuni log..
Codice:
Prevx CSI Log - Version v1.9.112.135
Log Generated: 8/6/2008 19:51, Type: 0
Some non-malicious files are not included in this log.
C:\WINDOWS\System32\smss.exe InMem: 1 Det [G] PX5: EAEF384300B86E2BC60900AD18ED0300B6B454BF
C:\WINDOWS\system32\ntdll.dll InMem: 1 Det [G] PX5: 98EF83350066C70122B20B444BEBEA00D217A1B2
C:\WINDOWS\system32\csrss.exe InMem: 1 Det [G] PX5: 457E08CD00DE83E3183600665DD0AE001F0FA82A
C:\WINDOWS\system32\CSRSRV.dll InMem: 1 Det [G] PX5: 672F934100D50DA280D100335AB03A0006C3D206
C:\WINDOWS\system32\basesrv.dll InMem: 1 Det [G] PX5: CDE7154D0060E2E4CE1D00F8B4D58500AEAC4112
C:\WINDOWS\system32\winsrv.dll InMem: 1 Det [u] PX5: EA125ACC0017E352960806FB6E773E0043D63B07
C:\WINDOWS\system32\GDI32.dll InMem: 1 Det [G] PX5: 9BE1D864000DF42650DF042E09425000C248761A
C:\WINDOWS\system32\KERNEL32.dll InMem: 1 Det [G] PX5: 0AD652AA00FC1D0CB2930F5593CD84005E517D9A
C:\WINDOWS\system32\USER32.dll InMem: 1 Det [G] PX5: D423C40D007DC87CD48F089CF302B800036F5CB9
C:\WINDOWS\system32\sxs.dll InMem: 1 Det [G] PX5: F6867B260073AE3BE8420A9D4CB88200ED96EA53
C:\WINDOWS\system32\ADVAPI32.dll InMem: 1 Det [G] PX5: DA31EA390036C3916C5C0A395DA4E3007CA4EABA
C:\WINDOWS\system32\RPCRT4.dll InMem: 1 Det [G] PX5: D30BFA4500E11CC3EA0408EA8337540073B46F29
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncacn_np [rpcrt4.dll]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncacn_ip_tcp [rpcrt4.dll]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncadg_ip_udp [rpcrt4.dll]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncacn_http [rpcrt4.dll]
C:\WINDOWS\system32\Secur32.dll InMem: 1 Det [G] PX5: 2226211D005B7868DA45009E23898E00149E78C6
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 9 [secur32.dll]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 10 [secur32.dll]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 16 [secur32.dll]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 18 [secur32.dll]
C:\WINDOWS\system32\Apphelp.dll InMem: 1 Det [G] PX5: 2E534C590076A85BF05D01EC9E4FFB0089A4554F
C:\WINDOWS\system32\VERSION.dll InMem: 1 Det [G] PX5: 17E09890009DDCC84AAD00E153CBBA0071FD3882
C:\WINDOWS\system32\winlogon.exe InMem: 1 Det [G] PX5: D0D54E6C00E89575B4CC07CFE43BE400C1F31A26
C:\WINDOWS\system32\AUTHZ.dll InMem: 1 Det [G] PX5: 869C1EE500523D0FDE60003D7F38BD0038C5A93D
C:\WINDOWS\system32\msvcrt.dll InMem: 1 Det [G] PX5: EAD3CF360087D2AD3C120509FE506F008FB88290
C:\WINDOWS\system32\CRYPT32.dll InMem: 1 Det [G] PX5: DD3ED9060033BBFB2E83098709F8D4001E524429
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain - DllName [crypt32.dll]
C:\WINDOWS\system32\MSASN1.dll InMem: 1 Det [G] PX5: 09F301D4001F77D2E0150027945354004927323C
C:\WINDOWS\system32\NDdeApi.dll InMem: 1 Det [G] PX5: 8E19EB1100E774A0488300C192BED30080B1D3E4
C:\WINDOWS\system32\PROFMAP.dll InMem: 1 Det [G] PX5: 90AEB4A600D0EF596C4F00D134ACAA00BDFD0752
C:\WINDOWS\system32\NETAPI32.dll InMem: 1 Det [G] PX5: 0919F94300F3C16412B605F0CC86050045AA2AE7
C:\WINDOWS\system32\USERENV.dll InMem: 1 Det [G] PX5: 02BF46CD00DC848D207F0BA7D391AB00DCDEB32E
C:\WINDOWS\system32\PSAPI.DLL InMem: 1 Det [G] PX5: 5DB1DF3A00AE978A5A1800B9B5A8C30041FF3076
C:\WINDOWS\system32\REGAPI.dll InMem: 1 Det [G] PX5: BDCF1CB600ACB6D2C2EE007361942C0007606048
C:\WINDOWS\system32\SETUPAPI.dll InMem: 1 Det [G] PX5: 085443D800EAF0FA42960F6622B8E300CB4CB91D
C:\WINDOWS\system32\WINSTA.dll InMem: 1 Det [G] PX5: 1789B2A5005E39C8D2660086022E8500C3B9450D
C:\WINDOWS\system32\WINTRUST.dll InMem: 1 Det [G] PX5: 0D34C3E0002C3B32B2670226273B8500327F7603
C:\WINDOWS\system32\IMAGEHLP.dll InMem: 1 Det [G] PX5: 92D4CA5F00EA8A5C340F02F2506EE800E1319CFF
C:\WINDOWS\system32\WS2_32.dll InMem: 1 Det [G] PX5: 42D0077300700B1344D7019D11CF0E00A225E294
C:\WINDOWS\system32\WS2HELP.dll InMem: 1 Det [G] PX5: 097C6291004A18B14EEC00B4A6264D00B84611B9
C:\WINDOWS\system32\IMM32.DLL InMem: 1 Det [G] PX5: CDBF4DDD001A7574AE3A01510D252400AF18CE5E
C:\WINDOWS\system32\MSGINA.dll InMem: 1 Det [G] PX5: 0590994000D0A8B5AA3920FB32187D00CE953230
C:\WINDOWS\system32\SHELL32.dll InMem: 1 Det [G] PX5: 215DA5830048FB364ADB05C1D671C1011ACF60C9
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - VmApplet [rundll32 shell32,Control_RunDLL "sysdm.cpl"]
REGSHLEXHOOK - \REGISTRY\Machine\Software\Classes\CLSID\{AEB6717E-7E19-11d0-97EE-00C04FD91972}\InprocServer32 - {AEB6717E-7E19-11d0-97EE-00C04FD91972} [shell32.dll]
REGDELAY - \REGISTRY\Machine\Software\Classes\CLSID\{7849596a-48ea-486e-8937-a2a3009f31a9}\InprocServer32 - PostBootReminder [%SystemRoot%\system32\SHELL32.dll]
REGDELAY - \REGISTRY\Machine\Software\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32 - CDBurn [%SystemRoot%\system32\SHELL32.dll]
REGTOOLBAR - \REGISTRY\Machine\Software\Classes\CLSID\{0E5CBF21-D15F-11D0-8301-00AA005B4383}\InprocServer32 - {0E5CBF21-D15F-11D0-8301-00AA005B4383} [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{0D2E74C4-3C34-11d2-A27E-00C04FC30871}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{24F14F01-7B1C-11d1-838f-0000F80461CF}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{24F14F02-7B1C-11d1-838f-0000F80461CF}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{66742402-F9B9-11D1-A202-0000F81FEDEE}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{09799AFB-AD67-11d1-ABCD-00C04FC30936}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{A470F8CF-A1E8-4f65-8335-227475AA5C46}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{ef43ecfe-2ab9-4632-bf21-58909dd177f0}\InprocServer32 - [%SystemRoot%\system32\SHELL32.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{217FC9C0-3AEA-1069-A2DB-08002B30309D}\InprocServer32 - [shell32.dll]
C:\WINDOWS\system32\SHLWAPI.dll InMem: 1 Det [GP] PX5: BAB10584005ABB1EB40D090429A9B5000D49288B
C:\WINDOWS\system32\COMCTL32.dll InMem: 1 Det [G] PX5: 58711F2E00E7D4E26C3A0946506D1B008DF24393
C:\WINDOWS\system32\ODBC32.dll InMem: 1 Det [G] PX5: A52E0F9B00E1697FD015036BACB9C10078B33C67
C:\WINDOWS\system32\comdlg32.dll InMem: 1 Det [G] PX5: D1079ADC002DFDB3487D042258AF1F00F0FB72E4
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll InMem: 1 Det [G] PX5: 6C2DA8F700C891F6167D107D5B6FFD004BDE3FD7
C:\WINDOWS\system32\odbcint.dll InMem: 1 Det [G] PX5: 17030F830012904980B601AEBBE29A00B94ABB0D
C:\WINDOWS\system32\SHSVCS.dll InMem: 1 Det [G] PX5: 593617FD0028BAC30E8502553039DB005AE5DAA4
C:\WINDOWS\system32\sfc.dll InMem: 1 Det [G] PX5: 16BA5AAF006AA18914FD002B882F7D0027109E10
C:\WINDOWS\system32\sfc_os.dll InMem: 1 Det [G] PX5: 53B4176200566C3D2844029CE35AC3003149753E
C:\WINDOWS\system32\ole32.dll InMem: 1 Det [G] PX5: 85434D2700A77E169AF713D8C3B0DC00CF7A5885
C:\WINDOWS\system32\msctfime.ime InMem: 1 Det [G] PX5: A0883E0F00146873B4BB0255156E8700B1387578
C:\WINDOWS\system32\WINSCARD.DLL InMem: 1 Det [G] PX5: 49E7BE4C00EA6409841F01CF112B5500E75D0DD5
C:\WINDOWS\system32\WTSAPI32.dll InMem: 1 Det [G] PX5: 1CDB8610004CDD7F48CB007245065C0097B2DD61
C:\WINDOWS\system32\WINMM.dll InMem: 1 Det [G] PX5: 8B514EB5005BE141BAA3022C5AD8F400CAAEB534
C:\WINDOWS\system32\uxtheme.dll InMem: 1 Det [G] PX5: D88EDDB7006796175ABD030829F64C0039E51CA1
C:\WINDOWS\system32\Ati2evxx.dll InMem: 1 Det [G] PX5: E91917DA00E5338B201E026F39A61F000B7AA658
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent - DLLName [Ati2evxx.dll]
C:\WINDOWS\system32\OLEAUT32.dll InMem: 1 Det [G] PX5: D947C0320023C1EC686E08689A597900A28F94EE
C:\WINDOWS\system32\cscdll.dll InMem: 1 Det [G] PX5: 36CC0D8B0009157E909D017F19231E0041E0A92E
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll - DLLName [cscdll.dll]
C:\WINDOWS\system32\rsaenh.dll InMem: 1 Det [G] PX5: 19B797A900BB112F5426027FDD39EC001D5760F1
C:\WINDOWS\system32\WlNotify.dll InMem: 1 Det [G] PX5: 3C08F14B008AD1456C990109A197100002605D8A
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp - DLLName [wlnotify.dll]
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule - DllName [wlnotify.dll]
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn - DLLName [WlNotify.dll]
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv - DllName [wlnotify.dll]
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon - DLLName [wlnotify.dll]
C:\WINDOWS\system32\WINSPOOL.DRV InMem: 1 Det [G] PX5: A35B6D1900D11F1D3E5102B97EFC0500E974203D
C:\WINDOWS\system32\MPR.dll InMem: 1 Det [G] PX5: 4E92FBCC002BB291EAE5000F10C15F00A1E7AD21
C:\WINDOWS\system32\msv1_0.dll InMem: 1 Det [G] PX5: 7DDBB66E00F27A20FA0D01B81C65BB005752F1B9
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Authentication Packages [msv1_0]
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
C:\WINDOWS\system32\iphlpapi.dll InMem: 1 Det [G] PX5: 352A2D920078A26F766401FF71F80300DA785AEF
C:\WINDOWS\system32\SAMLIB.dll InMem: 1 Det [G] PX5: 6D3509C200E203F6FAF00078D7EA35003D8429D0
C:\WINDOWS\system32\cscui.dll InMem: 1 Det [G] PX5: 8E7CD5F4006500C1188E05B6248B9200BAF8CA73
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C631DF4C-088F-4156-B058-4375F0853CD8} - DllName [%SystemRoot%\System32\cscui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{750fdf0e-2a26-11d1-a3ea-080036587f03}\InprocServer32 - {750fdf0e-2a26-11d1-a3ea-080036587f03} [%SystemRoot%\System32\cscui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{10CFC467-4392-11d2-8DB4-00C04FA31A66}\InprocServer32 - {10CFC467-4392-11d2-8DB4-00C04FA31A66} [%SystemRoot%\System32\cscui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}\InprocServer32 - {AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E} [%SystemRoot%\System32\cscui.dll]
C:\WINDOWS\system32\xpsp2res.dll InMem: 1 Det [G] PX5: F36B6D8200BA4240980450C13D3E3400EF2949CD
C:\WINDOWS\system32\NTMARTA.DLL InMem: 1 Det [G] PX5: 1D452FC300F103CCD4AF019C0B4A1000D0C05759
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa\AccessProviders\Windows NT Access Provider - ProviderPath [%SystemRoot%\system32\ntmarta.dll]
C:\WINDOWS\system32\WLDAP32.dll InMem: 1 Det [G] PX5: 9E81915C002CE532A4010226E6EC3100C992DBA0
C:\WINDOWS\system32\wdmaud.drv InMem: 1 Det [G] PX5: E19B13CB00CFB9ED5C250033B033BB00A27F216F
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - wave [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - midi [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - mixer [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - wave1 [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - mixer1 [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - wave2 [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - midi1 [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - mixer2 [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Userinstallable.drivers - wave [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Userinstallable.drivers - wave1 [wdmaud.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Userinstallable.drivers - wave2 [wdmaud.drv]
C:\WINDOWS\system32\msacm32.drv InMem: 1 Det [G] PX5: F8EB7CDA00A2596F522700876A3BC9005F29A42B
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - wavemapper [msacm32.drv]
C:\WINDOWS\system32\MSACM32.dll InMem: 1 Det [G] PX5: CD32AC5300D4DB3A183401A597817D009B477A6B
C:\WINDOWS\system32\midimap.dll InMem: 1 Det [G] PX5: 8C299C3E002D88084A0000F598A51000C8C9681D
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - midimapper [midimap.dll]
C:\WINDOWS\system32\COMRes.dll InMem: 1 Det [G] PX5: D3FD3AB2006F991AE8A30C7CE8FD780095D6A640
C:\WINDOWS\system32\CLBCATQ.DLL InMem: 1 Det [G] PX5: DDDD061C00DDD1C99CCC07876975D5003DF223DA
C:\WINDOWS\system32\services.exe InMem: 1 Det [G] PX5: 55CFB3920083E585A8B8011373392400747D1070
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Eventlog - ImagePath [C:\WINDOWS\system32\services.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PlugPlay - ImagePath [C:\WINDOWS\system32\services.exe]
C:\WINDOWS\system32\SCESRV.dll InMem: 1 Det [G] PX5: 42090831009A7DEDFC25041A41C0A6009F850DB8
C:\WINDOWS\system32\umpnpmgr.dll InMem: 1 Det [G] PX5: A0722C41001DFC8BE8A7011B43DD8300C52FA704
C:\WINDOWS\system32\NCObjAPI.DLL InMem: 1 Det [G] PX5: 7EA0BF3D001A18F58E38007796CD8000CD7F3FCC
C:\WINDOWS\system32\MSVCP60.dll InMem: 1 Det [G] PX5: 2D7DD02900BE71EC5085060A796CD8005BF97344
C:\WINDOWS\system32\ShimEng.dll InMem: 1 Det [G] PX5: 279F162200D45347000001BBAACC850063724C8D
C:\WINDOWS\AppPatch\AcAdProc.dll InMem: 1 Det [G] PX5: 4481FDAC006BDDB69ABC00D7D79D140035AF8893
C:\WINDOWS\system32\eventlog.dll InMem: 1 Det [G] PX5: D2B7D57A001E9CD9DA5600E2BE4F3C00079E4466
C:\WINDOWS\system32\Cabinet.dll InMem: 1 Det [G] PX5: 60605FEC005AB19AEA050033F1225300422702FD
C:\WINDOWS\system32\lsass.exe InMem: 1 Det [G] PX5: CC1BA69F00AF6D2D3445003B3C2E0700B638080D
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Netlogon - ImagePath [C:\WINDOWS\system32\lsass.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NtLmSsp - ImagePath [C:\WINDOWS\system32\lsass.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PolicyAgent - ImagePath [C:\WINDOWS\system32\lsass.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ProtectedStorage - ImagePath [C:\WINDOWS\system32\lsass.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SamSs - ImagePath [C:\WINDOWS\system32\lsass.exe]
C:\WINDOWS\system32\LSASRV.dll InMem: 1 Det [G] PX5: 4A2D1F9A00EE2E841A4F0B1A2FFB0900A3181BF3
C:\WINDOWS\system32\NTDSAPI.dll InMem: 1 Det [G] PX5: B049763B0042836806A701AA022FCD00F10A90B1
C:\WINDOWS\system32\DNSAPI.dll InMem: 1 Det [G] PX5: 11CECDE200D9BD6D464302AEA92F7D00710DA59A
C:\WINDOWS\system32\SAMSRV.dll InMem: 1 Det [G] PX5: E92EC68300CE21C68E4E06BCC0EDF6004268C49A
C:\WINDOWS\system32\cryptdll.dll InMem: 1 Det [G] PX5: 81B30DAB0078862F82C6000202049600DB968CD1
C:\WINDOWS\AppPatch\AcGenral.DLL InMem: 1 Det [G] PX5: 5F6310EE002D3DBC446C1C5A826CF10048881669
C:\WINDOWS\system32\msprivs.dll InMem: 1 Det [G] PX5: 0CA48DC3002C50B3BC750065E2B27800000C62EB
C:\WINDOWS\system32\kerberos.dll InMem: 1 Det [G] PX5: 6F259D99008DE085843504BA6E05F400BD1351EF
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
C:\WINDOWS\system32\netlogon.dll InMem: 1 Det [G] PX5: 7826BE4E00B0693C362206A7BBB246000E968C98
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 68 [netlogon.dll]
C:\WINDOWS\system32\w32time.dll InMem: 1 Det [G] PX5: B0DB78E90001F969B24A022F16FE9C007D6DCCBC
C:\WINDOWS\system32\schannel.dll InMem: 1 Det [G] PX5: 978AEDC000D16F92363B021213F745004B5CD31C
REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 14 [schannel.dll]
C:\WINDOWS\system32\wdigest.dll InMem: 1 Det [G] PX5: A77EB4BD0001DCA2C0B500785ACD4E00DCC55D5B
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
C:\WINDOWS\system32\scecli.dll InMem: 1 Det [G] PX5: C91F3DA800B1BEBADA0C02480448D00054984981
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} - DllName [scecli.dll]
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A} - DllName [scecli.dll]
REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Notification Packages [scecli]
C:\WINDOWS\system32\ipsecsvc.dll InMem: 1 Det [G] PX5: B05D914900808F8FCED102E7A46D080020A33905
C:\WINDOWS\system32\oakley.DLL InMem: 1 Det [G] PX5: A4E8D0C400046CE116C204B93C6D3F0003672778
C:\WINDOWS\system32\WINIPSEC.DLL InMem: 1 Det [G] PX5: 5E3F044E00E5E84280510004471F8A00BD7E5854
C:\WINDOWS\system32\pstorsvc.dll InMem: 1 Det [G] PX5: DCF79E3E001DA16F86F70051A83A8600579ADC98
C:\WINDOWS\system32\mswsock.dll InMem: 1 Det [G] PX5: 644C52BE00A05754C6240337B7759700C1FF12E3
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001 - LibraryPath [%SystemRoot%\System32\mswsock.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003 - LibraryPath [%SystemRoot%\System32\mswsock.dll]
C:\WINDOWS\system32\psbase.dll InMem: 1 Det [G] PX5: E242805400420CE08090017E79023900E657FC90
C:\WINDOWS\system32\hnetcfg.dll InMem: 1 Det [G] PX5: 2CFD58C600B6F9414A810565679BD6001F42D5DE
C:\WINDOWS\System32\wshtcpip.dll InMem: 1 Det [G] PX5: 522AC66D001B6D5A4E8E00D8A0AEF000528059BA
C:\WINDOWS\system32\dssenh.dll InMem: 1 Det [G] PX5: 31E843BE00E2A81C18FA0265E10B6500232880A4
C:\WINDOWS\system32\Ati2evxx.exe InMem: 1 Det [G] PX5: 62713475006D1AC140F008C86716A100A84DF0EB
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Ati HotKey Poller - ImagePath [C:\WINDOWS\system32\Ati2evxx.exe]
C:\WINDOWS\system32\powrprof.dll InMem: 1 Det [G] PX5: 31AB7E9C00B2127E4485007208C03300950D28C1
C:\WINDOWS\system32\cfgMgr32.dll InMem: 1 Det [G] PX5: 74C69D7C00EDC85142F6003C4DC9A1006D7B8195
C:\WINDOWS\system32\Ati2edxx.dll InMem: 1 Det [G] PX5: B10E37D9004D14E8AA2B00CA38FB4B0050A40632
C:\WINDOWS\system32\atipdlxx.dll InMem: 1 Det [G] PX5: 83808CB300380EEDC02A02AE6896D10037269379
C:\WINDOWS\system32\svchost.exe InMem: 1 Det [G] PX5: 41467A9700616549387D0095555BE300B7CBF228
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Alerter - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AppMgmt - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AudioSrv - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\BITS - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Browser - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\CryptSvc - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\DcomLaunch - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Dhcp - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\dmserver - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Dnscache - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ERSvc - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\EventSystem - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\FastUserSwitchingCompatibility - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\helpsvc - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\HidServ - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\HTTPFilter - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\lanmanserver - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\lanmanworkstation - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\LmHosts - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Messenger - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Netman - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Nla - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NtmsSvc - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RasAuto - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RasMan - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RemoteAccess - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RpcSs - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Schedule - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\seclogon - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SENS - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SharedAccess - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ShellHWDetection - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\srservice - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SSDPSRV - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\stisvc - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\TapiSrv - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\TermService - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Themes - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\TrkWks - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\upnphost - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\W32Time - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WebClient - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\winmgmt - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WmdmPmSN - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\wscsvc - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\wuauserv - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WudfSvc - ImagePath [C:\WINDOWS\system32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WZCSVC - ImagePath [C:\WINDOWS\System32\svchost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\xmlprov - ImagePath [C:\WINDOWS\System32\svchost.exe]
c:\windows\system32\rpcss.dll InMem: 1 Det [G] PX5: 27F0519E00F08DE512070643B0627F006598C78A
c:\windows\system32\termsrv.dll InMem: 1 Det [G] PX5: 15A4D5880058E23888C304BFF814830042F0D520
c:\windows\system32\ICAAPI.dll InMem: 1 Det [G] PX5: BB3E4FC6005CCAE92CC10044E2AB07008B832EBD
c:\windows\system32\mstlsapi.dll InMem: 1 Det [G] PX5: F3CF001500470019C4F901369ADAFD00DF876B1F
c:\windows\system32\ACTIVEDS.dll InMem: 1 Det [G] PX5: EFB02947002647C8F6250205FD9612006E9558F5
c:\windows\system32\adsldpc.dll InMem: 1 Det [G] PX5: 6D8B11FE00EF99F53026027F152EC40097EA0ACA
c:\windows\system32\ATL.DLL InMem: 1 Det [G] PX5: 90FBA32A008A4DC9E6A3004879775D009B9241D5
C:\WINDOWS\System32\winrnr.dll InMem: 1 Det [G] PX5: DD7C6D7B00A7C2A842AB003098E8920063CE769A
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002 - LibraryPath [%SystemRoot%\System32\winrnr.dll]
C:\WINDOWS\system32\rasadhlp.dll InMem: 1 Det [G] PX5: 44992DD300BD805F2027003B3C2E0700008DD7C4
c:\windows\system32\dhcpcsvc.dll InMem: 1 Det [G] PX5: 6B31A5B6003DEA2AB413012609A16300F9086E97
c:\windows\system32\wzcsvc.dll InMem: 1 Det [G] PX5: 2BC2020700C241BD3EF207AF5D3D84007E3F567C
c:\windows\system32\rtutils.dll InMem: 1 Det [G] PX5: BF0F14BA00130FA5ACFA00D907EAE70083958E2B
c:\windows\system32\WMI.dll InMem: 1 Det [G] PX5: 781B3D7300C600C41695006A26ACBD006AA9CB45
c:\windows\system32\ESENT.dll InMem: 1 Det [G] PX5: 44A1D0F1009656EFAA4210CE1D5F1E00AAA3CF3A
C:\WINDOWS\System32\rastls.dll InMem: 1 Det [G] PX5: F64AC68A00F37A69B87E01DB8E696800CC9225D9
C:\WINDOWS\system32\CRYPTUI.dll InMem: 1 Det [G] PX5: 5142AFD100A220AEFE57076D08D9310067F36935
C:\WINDOWS\system32\WININET.dll InMem: 1 Det [G] PX5: ABCD278A00291EAB9CB10C6C5066FA00EA95AA8C
C:\WINDOWS\system32\Normaliz.dll InMem: 1 Det [G] PX5: E3FC1A7000BA1C775C420052AC60C600F74EBAFC
C:\WINDOWS\system32\iertutil.dll InMem: 1 Det [G] PX5: 815282E10009ACA216050420859FE100589FF13B
C:\WINDOWS\System32\MPRAPI.dll InMem: 1 Det [G] PX5: F40536E000846CE4547B017CD7ABC100D153D57A
C:\WINDOWS\System32\RASAPI32.dll InMem: 1 Det [G] PX5: 7E18516500FFE5CC9C5B03564D831C0011FCFEEB
C:\WINDOWS\System32\rasman.dll InMem: 1 Det [G] PX5: 7F1D9BFF002D89D3F04E005C98AFF900ECE9EEA3
C:\WINDOWS\System32\TAPI32.dll InMem: 1 Det [G] PX5: ECB3A62200F5E5E3C61D0271F9934A0018AE4A00
C:\WINDOWS\System32\raschap.dll InMem: 1 Det [G] PX5: 6CBEE3D600A4FEB310F101DE8C083F003D6F721F
c:\windows\system32\schedsvc.dll InMem: 1 Det [G] PX5: 5DDC4A3800A53317F204023D51875A00711FF5B5
C:\WINDOWS\System32\MSIDLE.DLL InMem: 1 Det [G] PX5: 892E25230047BFE41A2700448F955F00DB3FDA3D
c:\windows\system32\audiosrv.dll InMem: 1 Det [G] PX5: 97A7792B000122A1A6A80092373D18006EB85382
c:\windows\system32\wkssvc.dll InMem: 1 Det [G] PX5: F785B0520050629F0457028102F0DA00CD162C70
c:\windows\system32\qmgr.dll InMem: 1 Det [G] PX5: A628078700D0FC00D60105464D1E6100132AFD53
c:\windows\system32\SHFOLDER.dll InMem: 1 Det [G] PX5: 209DE55C009ABDE8627700E93AF07200F7058D40
c:\windows\system32\WINHTTP.dll InMem: 1 Det [G] PX5: 8A8FE9C3008B23F25C3905D494C02C00D181B661
c:\windows\system32\cryptsvc.dll InMem: 1 Det [G] PX5: 4924777000FF363CECB300E8D69F7300112A6AF8
c:\windows\system32\certcli.dll InMem: 1 Det [G] PX5: 925C7DF9003B9C1200C5031520AB850028BB5515
c:\windows\system32\wuauserv.dll InMem: 1 Det [G] PX5: 0799809A00702BD41AB400068A66AC0043C84727
c:\windows\system32\wbem\wmisvc.dll InMem: 1 Det [G] PX5: CEF9F3BC00C6E32738BF0260919AD800E787713F
C:\WINDOWS\system32\VSSAPI.DLL InMem: 1 Det [G] PX5: FAEC6BFB002AF8059230067AACCA280087EB5B02
C:\WINDOWS\system32\wuaueng.dll InMem: 1 Det [G] PX5: 26C07DF358FF2BE623151A8BD3FD64005FC70733
C:\WINDOWS\System32\mspatcha.dll InMem: 1 Det [G] PX5: 192CF4F3003C31E4769D0029DA080500F7D037E4
c:\windows\system32\trkwks.dll InMem: 1 Det [G] PX5: 906F8E37007C9B5A621D011F493B83005C29CC43
c:\windows\system32\srsvc.dll InMem: 1 Det [G] PX5: F652BD0100BA7CC29C6202A16DDB5500C590261B
C:\WINDOWS\system32\es.dll InMem: 1 Det [G] PX5: 79EA0C1C007DD384B6CC033ACA71FA00F62D9D5F
c:\windows\system32\seclogon.dll InMem: 1 Det [G] PX5: 5B80E36F00AA396B4A8300B7E7951D00D7AA4B2D
c:\windows\system32\netman.dll InMem: 1 Det [G] PX5: 65612A5600E1886F042503516394BA0003C1C8BE
c:\windows\system32\netshell.dll InMem: 1 Det [G] PX5: 2E8BABCC00CDF1FF18B3351343EBE300F658BAB2
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7007ACC7-3202-11D1-AAD2-00805FC1270E}\InprocServer32 - {7007ACC7-3202-11D1-AAD2-00805FC1270E} [C:\WINDOWS\system32\NETSHELL.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{992CFFA0-F557-101A-88EC-00DD010CCC48}\InprocServer32 - {992CFFA0-F557-101A-88EC-00DD010CCC48} [C:\WINDOWS\system32\NETSHELL.dll]
c:\windows\system32\credui.dll InMem: 1 Det [G] PX5: E886FD9F0056D4F11E54059213832F002C4A26ED
c:\windows\system32\WZCSAPI.DLL InMem: 1 Det [G] PX5: B656E9EB00AFFB48CE3A0026DD14DD008D57FF2A
c:\windows\system32\srvsvc.dll InMem: 1 Det [G] PX5: 0BFF5A6200F821CA7A0401E40DD655008D70866B
c:\windows\pchealth\helpctr\binaries\pchsvc.dll InMem: 1 Det [G] PX5: 5BE772A20028818F98B300E973AA5500998EE021
c:\windows\system32\ersvc.dll InMem: 1 Det [G] PX5: 1075AE7B006257925A3B00E01F4D2400B15FB39E
c:\windows\system32\wscsvc.dll InMem: 1 Det [G] PX5: B11BC224000C550D3E4B01F1618F6300676DF706
c:\windows\system32\msi.dll InMem: 1 Det [G] PX5: B09678EF00F05CBD8EB12B2266AE240024089B64
c:\windows\system32\ipnathlp.dll InMem: 1 Det [G] PX5: 89882A6E0030CF0B12CE052A40AAE5009F9198F9
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\AUTODHCP - DllName [ipnathlp.dll]
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\DNSPROXY - DllName [ipnathlp.dll]
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\FTP - DllName [ipnathlp.dll]
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\H323 - DllName [ipnathlp.dll]
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\IPNAT - DllName [ipnathlp.dll]
C:\WINDOWS\system32\wbem\wbemcomn.dll InMem: 1 Det [G] PX5: 30B285D60040901346F3037FF72C08005C58C30E
c:\windows\system32\sens.dll InMem: 1 Det [G] PX5: 00AF89660086F69E989700E590F03600F597A8F5
c:\windows\system32\browser.dll InMem: 1 Det [G] PX5: 9CDD0A4F005D0D9D2E6201C807EC76000E0D1CE8
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF} - [Browser Customizations]
C:\WINDOWS\System32\Wbem\wbemcore.dll InMem: 1 Det [G] PX5: D34E2BC3004DE1451AED08DF0B2B620026599912
C:\WINDOWS\System32\Wbem\esscli.dll InMem: 1 Det [G] PX5: DE687FC600BAAC77C8B4030B6F14AB0094AE7226
C:\WINDOWS\System32\Wbem\FastProx.dll InMem: 1 Det [G] PX5: AEBA61B800E4BC9A34F5075F66FDAB005D1447F9
C:\WINDOWS\system32\wbem\wmiutils.dll InMem: 1 Det [G] PX5: 0BDBA5A5000A6748803F0102F9279500D2C1C9B2
C:\WINDOWS\system32\wbem\repdrvfs.dll InMem: 1 Det [G] PX5: DAAC922100087395B4C8026D60ACD300B870E129
C:\WINDOWS\system32\wbem\wmiprvsd.dll InMem: 1 Det [G] PX5: DCBBBE7700F574BEAC5B06A359C30800D52199FA
C:\WINDOWS\system32\wbem\wbemess.dll InMem: 1 Det [G] PX5: 57BC20470030CEBC2E7C0420B5413100E2A61178
C:\WINDOWS\system32\wbem\ncprov.dll InMem: 1 Det [G] PX5: 28C2B58B00AC779DB8320092176FE400CB94678D
C:\WINDOWS\system32\comsvcs.dll InMem: 1 Det [G] PX5: ED0A598E00540BAB56A9139D5AFF60002DA225EE
C:\WINDOWS\system32\colbact.DLL InMem: 1 Det [G] PX5: A0B0F9B500ACD436ECA70034F32E2C001398A8B7
C:\WINDOWS\system32\MTXCLU.DLL InMem: 1 Det [G] PX5: 66978F8E0092BC0304EB01E29B925900A2E75CFB
C:\WINDOWS\system32\WSOCK32.dll InMem: 1 Det [G] PX5: 2C097C2B007169C960BA0014DCE7CC0038229E38
C:\WINDOWS\System32\CLUSAPI.DLL InMem: 1 Det [G] PX5: F4F4A6AD001EC8C1E2C500B4FE61840054C0DDE3
C:\WINDOWS\System32\RESUTILS.DLL InMem: 1 Det [G] PX5: 6DFA47A500DAF26FE68800D61F5B31009BB0B65D
C:\WINDOWS\system32\upnp.dll InMem: 1 Det [G] PX5: 5CC09E6000F77B62063F026310FD670014E0CF2C
C:\WINDOWS\system32\SSDPAPI.dll InMem: 1 Det [G] PX5: B458C80C0094BE55886700FEA91CE300F0D01D10
C:\WINDOWS\System32\RASDLG.dll InMem: 1 Det [G] PX5: 289AD96400BB9C931E7F0BD56A0D5500B321DBB7
c:\windows\system32\tapisrv.dll InMem: 1 Det [G] PX5: 77B7DE3500985E80CE7503E2DF55BE00B03FFDDD
C:\WINDOWS\system32\advpack.dll InMem: 1 Det [G] PX5: 6AFB0846001811DCE8EF01542DA23300EF60F0AE
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmt]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.i]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{8b15971b-5355-4c82-8c07-7e181ea07608} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\fxsocm.]
C:\WINDOWS\system32\urlmon.dll InMem: 1 Det [G] PX5: AD1565010018D8DFB2521160625AA500CD9E80A5
c:\windows\system32\rasmans.dll InMem: 1 Det [G] PX5: 6AC5343500463BCBC43C0233B0575500AE7EBADF
c:\windows\system32\netcfgx.dll InMem: 1 Det [G] PX5: 4F8DF8B4009990EE9C82091CBF6CD600CD59067D
C:\WINDOWS\System32\rastapi.dll InMem: 1 Det [G] PX5: 699D459D008C3BC6E634009735DEBF004B936485
C:\WINDOWS\System32\unimdm.tsp InMem: 1 Det [G] PX5: BFCEE8FF0036A1F42CB803103A63E10078271DF9
C:\WINDOWS\System32\uniplat.dll InMem: 1 Det [G] PX5: D4A3FA58003A460436E500FC8F082200CAF4CCCF
C:\WINDOWS\System32\kmddsp.tsp InMem: 1 Det [G] PX5: C200FF390086F832824F0082C924C70039E73BB5
C:\WINDOWS\System32\ndptsp.tsp InMem: 1 Det [G] PX5: 9787C23000D76D69E07F0030C6CACA005BA7ED34
C:\WINDOWS\System32\ipconf.tsp InMem: 1 Det [G] PX5: BB9887B4006414FA44B900C28BC43200412916D4
C:\WINDOWS\System32\h323.tsp InMem: 1 Det [G] PX5: 72FD790F00B8268510FF046EA54C6E0080B1B5D1
C:\WINDOWS\System32\hidphone.tsp InMem: 1 Det [G] PX5: 578102E800C1441976DD00BD8619300083827C0B
C:\WINDOWS\System32\HID.DLL InMem: 1 Det [G] PX5: 551CD37300F70F6C527C0010EC920400B756D4FA
C:\WINDOWS\System32\rasppp.dll InMem: 1 Det [G] PX5: 69B8011C006A35C426B80310309570000552A536
C:\WINDOWS\System32\ntlsapi.dll InMem: 1 Det [G] PX5: 182944C0006C52E520B8003B3C2E0700820D2E78
C:\WINDOWS\system32\msxml3.dll InMem: 1 Det [G] PX5: 60B20BB200F84299DCAB10FF374BBC00797C1A91
C:\WINDOWS\system32\wbem\wbemsvc.dll InMem: 1 Det [G] PX5: 25397BDF00757EBFAAF700E3ED2B7800B9284F1B
C:\WINDOWS\system32\wups2.dll InMem: 1 Det [G] PX5: 8F8648A158D15CF4A9FE004434B05300230EE2A8
C:\WINDOWS\system32\wbem\wbemcons.dll InMem: 1 Det [G] PX5: FEC4B3B500CE633918000143FDB47200CD210469
c:\windows\system32\dnsrslvr.dll InMem: 1 Det [G] PX5: 77439A66003F67F5B20B001603CC7D0008CCE66A
c:\windows\system32\lmhsvc.dll InMem: 1 Det [G] PX5: 050B19680015AAE33629000A173BF5000631D061
c:\windows\system32\webclnt.dll InMem: 1 Det [G] PX5: F49C6F7000D3BB7B0AFE01B9E6A55A009E654432
c:\windows\system32\ssdpsrv.dll InMem: 1 Det [G] PX5: EFEEB4A70072CCE218E201A90823060000AE77FB
c:\windows\system32\upnphost.dll InMem: 1 Det [G] PX5: AE0305F4005F2B75D47602DCB48A86002D8BF361
C:\WINDOWS\system32\httpapi.dll InMem: 1 Det [G] PX5: 94ABF9F30077024C6088002F3D561C00380DFCD1
C:\WINDOWS\system32\spoolsv.exe InMem: 1 Det [G] PX5: 1DCDB07A00179F65E28700A02CD4BA00B29C7A8B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Spooler - ImagePath [C:\WINDOWS\system32\spoolsv.exe]
C:\WINDOWS\system32\SPOOLSS.DLL InMem: 1 Det [G] PX5: EEC4C153008FC3AA248101F4B2E71800601A2E7A
C:\WINDOWS\system32\localspl.dll InMem: 1 Det [G] PX5: 4416D740002AA3683E4E05C1EF102900643A9BD8
C:\WINDOWS\system32\cnbjmon.dll InMem: 1 Det [G] PX5: ADFEA2D500C13C76C238009F710B75002AA8B844
C:\WINDOWS\system32\FXSMON.DLL InMem: 1 Det [G] PX5: 2A36441A00A304645CC8008CD2391B009EA75DB6
C:\WINDOWS\system32\FXSEVENT.dll InMem: 1 Det [G] PX5: 221853BF001F8E3EF0BE008AFE9E42001469090E
C:\WINDOWS\system32\pjlmon.dll InMem: 1 Det [G] PX5: 84CFC62400E584133C01005DDEFEF70074DE7C99
C:\WINDOWS\system32\tcpmon.dll InMem: 1 Det [G] PX5: 4DB1307F00B38383B4DE0091A261F900D73B20B9
C:\WINDOWS\system32\usbmon.dll InMem: 1 Det [G] PX5: 355B55CF00434C1C429F0037D7A64900612AB6C2
C:\WINDOWS\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll InMem: 1 Det [G] PX5: 44D7D7AD00E61C0C6C6F003DD9D6C0009975C7EC
C:\WINDOWS\system32\win32spl.dll InMem: 1 Det [G] PX5: 3EE5A7330005B84D903F019D6D465800D7DE2821
C:\WINDOWS\system32\NETRAP.dll InMem: 1 Det [G] PX5: B3940B1900334CEB30F300847BE9340024D302E6
C:\WINDOWS\system32\inetpp.dll InMem: 1 Det [G] PX5: 84746D7B00F17DE826600104529E590058DFB441
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe InMem: 1 Det [G] PX5: 145F1C7901A376F80D4501078CBD7200633D2784
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AntiVirScheduler - ImagePath [C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\MSVCR71.dll InMem: 1 Det [G] PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7
C:\Programmi\Avira\AntiVir PersonalEdition Classic\MSVCP71.dll InMem: 1 Det [G] PX5: F133D4F000B92F08A0E107FD67B66E0015498C05
C:\Programmi\Avira\AntiVir PersonalEdition Classic\schedr.dll InMem: 1 Det [G] PX5: E2462AE401FEA7C01FB700E761817C00449ED7B9
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avevtlog.dll InMem: 1 Det [G] PX5: B4229F4101FCC11DC1D801DD00285F008707A3F8
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sqlite3.dll InMem: 1 Det [G] PX5: C028A8800040DCC9302C050FDBBC76001DFC5407
C:\WINDOWS\Explorer.EXE InMem: 1 Det [G] PX5: 5F224AD100F73BC6CCBA30DC56B8E400038ED020
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - Shell [Explorer.exe]
C:\WINDOWS\system32\BROWSEUI.dll InMem: 1 Det [G] PX5: 510B416E00A9C0D0F46B0F91C28D130092D88A92
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{5E6AB780-7743-11CF-A12B-00AA004AE837}\InprocServer32 - {5E6AB780-7743-11CF-A12B-00AA004AE837} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{22BF0C20-6DA7-11D0-B373-00A0C9034938}\InprocServer32 - {22BF0C20-6DA7-11D0-B373-00A0C9034938} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{91EA3F8B-C99B-11d0-9815-00C04FD91972}\InprocServer32 - {91EA3F8B-C99B-11d0-9815-00C04FD91972} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6413BA2C-B461-11d1-A18A-080036B11A03}\InprocServer32 - {6413BA2C-B461-11d1-A18A-080036B11A03} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F61FFEC1-754F-11d0-80CA-00AA005B4383}\InprocServer32 - {F61FFEC1-754F-11d0-80CA-00AA005B4383} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7BA4C742-9E81-11CF-99D3-00AA004AE837}\InprocServer32 - {7BA4C742-9E81-11CF-99D3-00AA004AE837} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{169A0691-8DF9-11d1-A1C4-00C04FD75D13}\InprocServer32 - {169A0691-8DF9-11d1-A1C4-00C04FD75D13} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{07798131-AF23-11d1-9111-00A0C98BA67D}\InprocServer32 - {07798131-AF23-11d1-9111-00A0C98BA67D} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{AF4F6510-F982-11d0-8595-00AA004CD6D8}\InprocServer32 - {AF4F6510-F982-11d0-8595-00AA004CD6D8} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{01E04581-4EEE-11d0-BFE9-00AA005B4383}\InprocServer32 - {01E04581-4EEE-11d0-BFE9-00AA005B4383} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{A08C11D2-A228-11d0-825B-00AA005B4383}\InprocServer32 - {A08C11D2-A228-11d0-825B-00AA005B4383} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{00BB2763-6A77-11D0-A535-00C04FD7D062}\InprocServer32 - {00BB2763-6A77-11D0-A535-00C04FD7D062} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7376D660-C583-11d0-A3A5-00C04FD706EC}\InprocServer32 - {7376D660-C583-11d0-A3A5-00C04FD706EC} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6756A641-DE71-11d0-831B-00AA005B4383}\InprocServer32 - {6756A641-DE71-11d0-831B-00AA005B4383} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}\InprocServer32 - {6935DB93-21E8-4ccc-BEB9-9FE3C77A297A} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7e653215-fa25-46bd-a339-34a2790f3cb7}\InprocServer32 - {7e653215-fa25-46bd-a339-34a2790f3cb7} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{acf35015-526e-4230-9596-becbe19f0ac9}\InprocServer32 - {acf35015-526e-4230-9596-becbe19f0ac9} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{00BB2764-6A77-11D0-A535-00C04FD7D062}\InprocServer32 - {00BB2764-6A77-11D0-A535-00C04FD7D062} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{03C036F1-A186-11D0-824A-00AA005B4383}\InprocServer32 - {03C036F1-A186-11D0-824A-00AA005B4383} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{00BB2765-6A77-11D0-A535-00C04FD7D062}\InprocServer32 - {00BB2765-6A77-11D0-A535-00C04FD7D062} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ECD4FC4E-521C-11D0-B792-00A0C90312E1}\InprocServer32 - {ECD4FC4E-521C-11D0-B792-00A0C90312E1} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}\InprocServer32 - {3CCF8A41-5C85-11d0-9796-00AA00B90ADF} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ECD4FC4C-521C-11D0-B792-00A0C90312E1}\InprocServer32 - {ECD4FC4C-521C-11D0-B792-00A0C90312E1} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ECD4FC4D-521C-11D0-B792-00A0C90312E1}\InprocServer32 - {ECD4FC4D-521C-11D0-B792-00A0C90312E1} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{DD313E04-FEFF-11d1-8ECD-0000F87A470C}\InprocServer32 - {DD313E04-FEFF-11d1-8ECD-0000F87A470C} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}\InprocServer32 - {EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} [%SystemRoot%\system32\browseui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{21569614-B795-46b1-85F4-E737A8DC09AD}\InprocServer32 - {21569614-B795-46b1-85F4-E737A8DC09AD} [%SystemRoot%\system32\browseui.dll]
REGTASKSCHED - \REGISTRY\Machine\Software\Classes\CLSID\{438755C2-A8BA-11D1-B96B-00A0C90312E1}\InprocServer32 - {438755C2-A8BA-11D1-B96B-00A0C90312E1} [%SystemRoot%\system32\browseui.dll]
REGTASKSCHED - \REGISTRY\Machine\Software\Classes\CLSID\{8C7461EF-2B13-11d2-BE35-3078302C2030}\InprocServer32 - {8C7461EF-2B13-11d2-BE35-3078302C2030} [%SystemRoot%\system32\browseui.dll]
REGTOOLBAR - \REGISTRY\Machine\Software\Classes\CLSID\{01E04581-4EEE-11D0-BFE9-00AA005B4383}\InprocServer32 - {01E04581-4EEE-11D0-BFE9-00AA005B4383} [%SystemRoot%\system32\browseui.dll]
C:\WINDOWS\system32\SHDOCVW.dll InMem: 1 Det [G] PX5: D9FE8652008E8E781610341C5F9BA00098DA5354
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f7-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f7-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f0-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f1-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f2-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f4-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}\InprocServer32 - {2559a1f5-21d7-11d4-bdaf-00c04f60b9f0} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{D20EA4E1-3957-11d2-A40B-0C5020524152}\InprocServer32 - {D20EA4E1-3957-11d2-A40B-0C5020524152} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{D20EA4E1-3957-11d2-A40B-0C5020524153}\InprocServer32 - {D20EA4E1-3957-11d2-A40B-0C5020524153} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{EFA24E61-B078-11d0-89E4-00C04FC9E26E}\InprocServer32 - {EFA24E61-B078-11d0-89E4-00C04FC9E26E} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{0A89A860-D7B1-11CE-8350-444553540000}\InprocServer32 - {0A89A860-D7B1-11CE-8350-444553540000} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{A5E46E3A-8849-11D1-9D8C-00C04FC99D61}\InprocServer32 - {A5E46E3A-8849-11D1-9D8C-00C04FC99D61} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC}\InprocServer32 - {A2B0DD40-CC59-11d0-A3A5-00C04FD706EC} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{67EA19A0-CCEF-11d0-8024-00C04FD75D13}\InprocServer32 - {67EA19A0-CCEF-11d0-8024-00C04FD75D13} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{131A6951-7F78-11D0-A979-00C04FD705A2}\InprocServer32 - {131A6951-7F78-11D0-A979-00C04FD705A2} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9461b922-3c5a-11d2-bf8b-00c04fb93661}\InprocServer32 - {9461b922-3c5a-11d2-bf8b-00c04fb93661} [%SystemRoot%\system32\shdocvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{EFA24E64-B078-11d0-89E4-00C04FC9E26E}\InprocServer32 - {EFA24E64-B078-11d0-89E4-00C04FC9E26E} [%SystemRoot%\system32\shdocvw.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{4D5C8C25-D075-11d0-B416-00C04FB90376}\InprocServer32 - BarSize [%SystemRoot%\system32\shdocvw.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{1FBA04EE-3024-11d2-8F1F-0000F87ABD16}\InprocServer32 - CLSID [%SystemRoot%\system32\shdocvw.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{1FBA04EE-3024-11D2-8F1F-0000F87ABD16}\InprocServer32 - CLSID [%SystemRoot%\system32\shdocvw.dll]
C:\WINDOWS\system32\themeui.dll InMem: 1 Det [G] PX5: BAC50787005D6D22E09E05A57642CD00EAA11BEA
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{41E300E0-78B6-11ce-849B-444553540000}\InprocServer32 - {41E300E0-78B6-11ce-849B-444553540000} [%SystemRoot%\system32\themeui.dll]
C:\WINDOWS\system32\MSIMG32.dll InMem: 1 Det [G] PX5: CB413D4600B070AF127100D0C427CA00FD59EFF9
C:\WINDOWS\system32\LINKINFO.dll InMem: 1 Det [G] PX5: 87EB2C9D005DD1A14E450046E4D6CC0014CFCDB6
C:\WINDOWS\system32\ntshrui.dll InMem: 1 Det [G] PX5: 5EB8DF8A0005A80FEE700A5CC8B2C100A7EE5EF8
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{40dd6e20-7c17-11ce-a804-00aa003ca9f6}\InprocServer32 - {40dd6e20-7c17-11ce-a804-00aa003ca9f6} [ntshrui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}\InprocServer32 - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} [ntshrui.dll]
C:\WINDOWS\system32\ieframe.dll InMem: 1 Det [G] PX5: 665C649900DFBCB990145C23529F7E00EB134B1C
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{30D02401-6A81-11d0-8274-00C04FD5AE38}\InprocServer32 - {30D02401-6A81-11d0-8274-00C04FD5AE38} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}\InprocServer32 - {E7E4BC40-E76A-11CE-A9BB-00AA004AE837} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{FBF23B40-E3F0-101B-8488-00AA003E56F8}\InprocServer32 - {FBF23B40-E3F0-101B-8488-00AA003E56F8} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3C374A40-BAE4-11CF-BF7D-00AA006946EE}\InprocServer32 - {3C374A40-BAE4-11CF-BF7D-00AA006946EE} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{FF393560-C2A7-11CF-BFF4-444553540000}\InprocServer32 - {FF393560-C2A7-11CF-BFF4-444553540000} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7BD29E00-76C1-11CF-9DD0-00A0C9034933}\InprocServer32 - {7BD29E00-76C1-11CF-9DD0-00A0C9034933} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7BD29E01-76C1-11CF-9DD0-00A0C9034933}\InprocServer32 - {7BD29E01-76C1-11CF-9DD0-00A0C9034933} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{CFBFAE00-17A6-11D0-99CB-00C04FD64497}\InprocServer32 - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}\InprocServer32 - {3DC7A020-0ACD-11CF-A9BB-00AA004AE837} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\InprocServer32 - {871C5380-42A0-1069-A2EA-08002B30309D} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{07C45BB1-4A8C-4642-A1F5-237E7215FF66}\InprocServer32 - {07C45BB1-4A8C-4642-A1F5-237E7215FF66} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{1C1EDB47-CE22-4bbb-B608-77B48F83C823}\InprocServer32 - {1C1EDB47-CE22-4bbb-B608-77B48F83C823} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{205D7A97-F16D-4691-86EF-F3075DCCA57D}\InprocServer32 - {205D7A97-F16D-4691-86EF-F3075DCCA57D} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3028902F-6374-48b2-8DC6-9725E775B926}\InprocServer32 - {3028902F-6374-48b2-8DC6-9725E775B926} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{43886CD5-6529-41c4-A707-7B3C92C05E68}\InprocServer32 - {43886CD5-6529-41c4-A707-7B3C92C05E68} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{44C76ECD-F7FA-411c-9929-1B77BA77F524}\InprocServer32 - {44C76ECD-F7FA-411c-9929-1B77BA77F524} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{4B78D326-D922-44f9-AF2A-07805C2A3560}\InprocServer32 - {4B78D326-D922-44f9-AF2A-07805C2A3560} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6038EF75-ABFC-4e59-AB6F-12D397F6568D}\InprocServer32 - {6038EF75-ABFC-4e59-AB6F-12D397F6568D} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6B4ECC4F-16D1-4474-94AB-5A763F2A54AE}\InprocServer32 - {6B4ECC4F-16D1-4474-94AB-5A763F2A54AE} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6CF48EF8-44CD-45d2-8832-A16EA016311B}\InprocServer32 - {6CF48EF8-44CD-45d2-8832-A16EA016311B} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{73CFD649-CD48-4fd8-A272-2070EA56526B}\InprocServer32 - {73CFD649-CD48-4fd8-A272-2070EA56526B} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8}\InprocServer32 - {98FF6D4B-6387-4b0a-8FBD-C5C4BB17B4F8} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E}\InprocServer32 - {9A096BB5-9DC3-4D1C-8526-C3CBF991EA4E} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9D958C62-3954-4b44-8FAB-C4670C1DB4C2}\InprocServer32 - {9D958C62-3954-4b44-8FAB-C4670C1DB4C2} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{B31C5FAE-961F-415b-BAF0-E697A5178B94}\InprocServer32 - {B31C5FAE-961F-415b-BAF0-E697A5178B94} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{BC476F4C-D9D7-4100-8D4E-E043F6DEC409}\InprocServer32 - {BC476F4C-D9D7-4100-8D4E-E043F6DEC409} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A}\InprocServer32 - {BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E6EE9AAC-F76B-4947-8260-A9F136138E11}\InprocServer32 - {E6EE9AAC-F76B-4947-8260-A9F136138E11} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F2CF5485-4E02-4f68-819C-B92DE9277049}\InprocServer32 - {F2CF5485-4E02-4f68-819C-B92DE9277049} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F83DAC1C-9BB9-4f2b-B619-09819DA81B0E}\InprocServer32 - {F83DAC1C-9BB9-4f2b-B619-09819DA81B0E} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75}\InprocServer32 - {FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} [C:\WINDOWS\system32\ieframe.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{FDE7673D-2E19-4145-8376-BBD58C4BC7BA}\InprocServer32 - {FDE7673D-2E19-4145-8376-BBD58C4BC7BA} [C:\WINDOWS\system32\ieframe.dll]
C:\WINDOWS\system32\webcheck.dll InMem: 1 Det [G] PX5: C0B970A600AFC4C590FE03C622CD1C003CFAAE1F
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\InprocServer32 - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [C:\WINDOWS\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE}\InprocServer32 - {ABBE31D0-6DAE-11D0-BECA-00C04FD940BE} [C:\WINDOWS\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F5175861-2688-11d0-9C5E-00AA00A45957}\InprocServer32 - {F5175861-2688-11d0-9C5E-00AA00A45957} [C:\WINDOWS\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{08165EA0-E946-11CF-9C87-00AA005127ED}\InprocServer32 - {08165EA0-E946-11CF-9C87-00AA005127ED} [C:\WINDOWS\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB}\InprocServer32 - {E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB} [%SystemRoot%\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7}\InprocServer32 - {E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7} [%SystemRoot%\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7D559C10-9FE9-11d0-93F7-00AA0059CE02}\InprocServer32 - {7D559C10-9FE9-11d0-93F7-00AA0059CE02} [C:\WINDOWS\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E6CC6978-6B6E-11D0-BECA-00C04FD940BE}\InprocServer32 - {E6CC6978-6B6E-11D0-BECA-00C04FD940BE} [%SystemRoot%\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{D8BD2030-6FC9-11D0-864F-00AA006809D9}\InprocServer32 - {D8BD2030-6FC9-11D0-864F-00AA006809D9} [%SystemRoot%\system32\webcheck.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB}\InprocServer32 - {7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB} [C:\WINDOWS\system32\webcheck.dll]
REGDELAY - \REGISTRY\Machine\Software\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\InprocServer32 - WebCheck [C:\WINDOWS\system32\webcheck.dll]
C:\WINDOWS\system32\stobject.dll InMem: 1 Det [G] PX5: 54D80CDC00F43E2D4626066C15CB8500ED73FED5
REGDELAY - \REGISTRY\Machine\Software\Classes\CLSID\{35CEC8A3-2BE6-11D2-8773-92E220524153}\InprocServer32 - SysTray [C:\WINDOWS\system32\stobject.dll]
C:\WINDOWS\system32\BatMeter.dll InMem: 1 Det [G] PX5: 73074F1200F9F02576C400FC5F48D3004D09055B
C:\WINDOWS\system32\WPDShServiceObj.dll InMem: 1 Det [G] PX5: 7176B495005E12B50A520234E7E1AF00FB8DD268
REGDELAY - \REGISTRY\Machine\Software\Classes\CLSID\{AAA288BA-9A4C-45B0-95D7-94D524869DB5}\InprocServer32 - WPDShServiceObj [C:\WINDOWS\system32\WPDShServiceObj.dll]
C:\WINDOWS\system32\PortableDeviceTypes.dll InMem: 1 Det [G] PX5: 79585FF4007031758CF802904E46EE00DF2F75D4
C:\WINDOWS\system32\PortableDeviceApi.dll InMem: 1 Det [G] PX5: 413BE4C6002C530256CD0467F46CFA0079ACDAE6
C:\WINDOWS\system32\MLANG.dll InMem: 1 Det [G] PX5: A0FB8BA50045A9FEF20208062C04B3005F96B032
C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDMH.dll InMem: 1 Det [G] PX5: 8E9522C80080A59AC0C90293D46FFA004D1C9791
C:\WINDOWS\system32\MSCTF.dll InMem: 1 Det [G] PX5: 99BE7CFE008D202D80AA04B06FA73C00B2309252
C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.dll InMem: 1 Det [G] PX5: 021BCAF700D34585E00D003AD1C49600659285B1
C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\MouseHook2.dll InMem: 1 Det [G] PX5: 4D81D92600C995A40EC100ECC6C1D000B79BCD14
C:\WINDOWS\system32\CRTDLL.dll InMem: 1 Det [G] PX5: 4AF300331B8E30AB46670205C5CC50005A157B0E
C:\WINDOWS\system32\fxsst.dll InMem: 1 Det [G] PX5: 7AC7916600679DB596D7081F2F73E100C3154A16
C:\WINDOWS\system32\FXSAPI.dll InMem: 1 Det [G] PX5: 05DD648100DA639AE6AB061F6D6DC800EC7FD606
C:\WINDOWS\System32\drprov.dll InMem: 1 Det [G] PX5: BB8EDCE2008403A638800074FD083400905C26EC
C:\WINDOWS\System32\ntlanman.dll InMem: 1 Det [G] PX5: FCEBCD7A009905FEAA4200960455950080D2A1BD
C:\WINDOWS\System32\NETUI0.dll InMem: 1 Det [G] PX5: 074187360063FEE5400A014D6C2C430053ABE349
C:\WINDOWS\System32\NETUI1.dll InMem: 1 Det [G] PX5: A4DAD8A200850E09C097034C744E770099F86FBA
C:\WINDOWS\System32\davclnt.dll InMem: 1 Det [G] PX5: 5E0DDE0C0099E131624800B42D603500DF9BC5AA
C:\WINDOWS\system32\browselc.dll InMem: 1 Det [G] PX5: EA63F88500B471270C9A01309A4A800054BE305C
C:\Programmi\Java\jre1.6.0_05\bin\MSVCR71.dll InMem: 1 Det [G] PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll InMem: 1 Det [G] PX5: EEECA2A200AE193420E61AFE5130B8009DDBAA0F
C:\WINDOWS\system32\DUSER.dll InMem: 1 Det [G] PX5: 576588D800DB533AA46504C81FA1F900F6700574
C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.ITA InMem: 1 Det [G] PX5: D581665A000C981EC0E1044D188D40005CCA75A7
C:\WINDOWS\system32\mscms.dll InMem: 1 Det [G] PX5: DF52A2B9002BAEF722FE01B4E2E8B900D4427BF9
C:\WINDOWS\system32\wmvcore.dll InMem: 1 Det [G] PX5: 21E5EED200E4BAA9664525EF6856730017F9BD30
C:\WINDOWS\system32\WMASF.DLL InMem: 1 Det [G] PX5: 3D36799C0034542F6690031EC75D2100FDEBB35E
C:\WINDOWS\system32\shdoclc.dll InMem: 1 Det [G] PX5: 745606C800F0AF15E49D160FF6EE63004F492069
C:\Programmi\WinRAR\rarext.dll InMem: 1 Det [G] PX5: BFED230D00F22383FACB01C836A6D800303230B6
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA}\InprocServer32 - {B41DB860-8EE4-11D2-9906-E49FADC173CA} [C:\Programmi\WinRAR\rarext.dll]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\shlext.dll InMem: 1 Det [G] PX5: 77E88B440166EA0911BC010BFC9CC0007FA3459E
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{45AC2688-0253-4ED8-97DE-B5370FA7D48A}\InprocServer32 - {45AC2688-0253-4ED8-97DE-B5370FA7D48A} [C:\Programmi\Avira\AntiVir PersonalEdition Classic\shlext.dll]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\MFC71U.DLL InMem: 1 Det [G] PX5: 037598C700D68B82FC2F0F8DECC9D10082E94C28
C:\WINDOWS\system32\MFC71ITA.DLL InMem: 1 Det [G] PX5: 8C47BF9900C00236F0DE00B45623C60074094F00
C:\WINDOWS\system32\wzcdlg.dll InMem: 1 Det [G] PX5: ED770CC700CCC36CD44105CC44BB3000E6F2124E
C:\WINDOWS\system32\sensapi.dll InMem: 1 Det [G] PX5: 945479A500423FB71A9A004C020A3B0024ABF6B3
C:\WINDOWS\system32\DSOUND.dll InMem: 1 Det [G] PX5: E5087FD800F9DAEF9CF20543474A2400CFECBDBE
C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.dll InMem: 1 Det [G] PX5: 8C22B1270080452CB0520538F9A2700042807472
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{F9DB5320-233E-11D1-9F84-707F02C10627}\InprocServer32 - [C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.dll]
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\MSVCR80.dll InMem: 1 Det [G] PX5: 4B6AF860005E2DB6B4260971351F230010BD1760
C:\WINDOWS\system32\actxprxy.dll InMem: 1 Det [G] PX5: 007947C1003133828EF901D865E09C00F6A66BF3
C:\WINDOWS\system32\cryptnet.dll InMem: 1 Det [G] PX5: 7068F9AD00A507EDF8EF0072A0BBE3005197631B
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet - DllName [cryptnet.dll]
C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelper.dll InMem: 1 Det [G] PX5: 43FC1F718034B0CAF2E7007A2CAFD0009BF22C42
REGBHO - \REGISTRY\Machine\Software\Classes\CLSID\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\InprocServer32 - [C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelper.dll]
C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll InMem: 1 Det [G] PX5: 9605B73990937669C5C407C2E2482300B93A27D7
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\atiamITA.dll InMem: 1 Det [u] PX5: 37403D39009B491D0EAA002AA638EE00B79BCD14
C:\Programmi\a-squared Free\a2freecontmenu.dll InMem: 1 Det [G] PX5: 2DC32EDD909DF5714C2B03139648A400230E7F95
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{A155339D-CCCD-4714-85EB-3754B804C9DF}\InprocServer32 - {A155339D-CCCD-4714-85EB-3754B804C9DF} [C:\Programmi\a-squared Free\a2freecontmenu.dll]
C:\WINDOWS\system32\shimgvw.dll InMem: 1 Det [G] PX5: BF42E4FC005BE16E4C6815F7E01C3200A508B45A
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{e84fda7c-1d6a-45f6-b725-cb260c236066}\InprocServer32 - {e84fda7c-1d6a-45f6-b725-cb260c236066} [%SystemRoot%\system32\shimgvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}\InprocServer32 - {66e4e4fb-f385-4dd0-8d74-a2efd1bc6178} [%SystemRoot%\system32\shimgvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{00E7B358-F65B-4dcf-83DF-CD026B94BFD4}\LocalServer32 - {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} [rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_COMServ]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3F30C968-480A-4C6C-862D-EFC0897BB84B}\InprocServer32 - {3F30C968-480A-4C6C-862D-EFC0897BB84B} [C:\WINDOWS\system32\shimgvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9DBD2C50-62AD-11d0-B806-00C04FD706EC}\InprocServer32 - {9DBD2C50-62AD-11d0-B806-00C04FD706EC} [C:\WINDOWS\system32\shimgvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{EAB841A0-9550-11cf-8C16-00805F1408F3}\InprocServer32 - {EAB841A0-9550-11cf-8C16-00805F1408F3} [C:\WINDOWS\system32\shimgvw.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{eb9b1153-3b57-4e68-959a-a3266bc3d7fe}\InprocServer32 - {eb9b1153-3b57-4e68-959a-a3266bc3d7fe} [%SystemRoot%\system32\shimgvw.dll]
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll InMem: 1 Det [G] PX5: EE7EC43D0038FEE280290ABCCA0A360002A10BE2
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}\InprocServer32 - {5E2121EE-0300-11D4-8D3B-444553540000} [C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll]
C:\WINDOWS\system32\zipfldr.dll InMem: 1 Det [G] PX5: ED969ADB00D5666DA4F81969EB9E870074B9B5BE
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31}\InprocServer32 - {E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} [%SystemRoot%\system32\zipfldr.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{BD472F60-27FA-11cf-B8B4-444553540000}\InprocServer32 - {BD472F60-27FA-11cf-B8B4-444553540000} [%SystemRoot%\system32\zipfldr.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}\InprocServer32 - {888DCA60-FC0A-11CF-8F0F-00C04FD7D062} [%SystemRoot%\system32\zipfldr.dll]
C:\WINDOWS\system32\shmedia.dll InMem: 1 Det [G] PX5: 6F935BCA00698E3154450276A47BF4000FC59B48
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{875CB1A1-0F29-45de-A1AE-CFB4950D0B78}\InprocServer32 - {875CB1A1-0F29-45de-A1AE-CFB4950D0B78} [%SystemRoot%\system32\shmedia.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{40C3D757-D6E4-4b49-BB41-0E5BBEA28817}\InprocServer32 - {40C3D757-D6E4-4b49-BB41-0E5BBEA28817} [%SystemRoot%\system32\shmedia.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E4B29F9D-D390-480b-92FD-7DDB47101D71}\InprocServer32 - {E4B29F9D-D390-480b-92FD-7DDB47101D71} [%SystemRoot%\system32\shmedia.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{87D62D94-71B3-4b9a-9489-5FE6850DC73E}\InprocServer32 - {87D62D94-71B3-4b9a-9489-5FE6850DC73E} [%SystemRoot%\system32\shmedia.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{A6FD9E45-6E44-43f9-8644-08598F5A74D9}\InprocServer32 - {A6FD9E45-6E44-43f9-8644-08598F5A74D9} [%SystemRoot%\system32\shmedia.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{c5a40261-cd64-4ccf-84cb-c394da41d590}\InprocServer32 - {c5a40261-cd64-4ccf-84cb-c394da41d590} [%SystemRoot%\system32\shmedia.dll]
C:\WINDOWS\system32\MSVFW32.dll InMem: 1 Det [G] PX5: 4870710600DDCA90DC7001F6C351A000C502322F
C:\WINDOWS\system32\AVIFIL32.dll InMem: 1 Det [G] PX5: 3FE30B9700E394E34E7B016A00BC3A002FF2247D
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe InMem: 1 Det [G] PX5: 04ED77500133BDE23F860232C6C402007BC4FC2B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AntiVirService - ImagePath [C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\guardmsg.dll InMem: 1 Det [G] PX5: 605547B501EFD60AB7C700733F397D000F10DEB9
C:\Programmi\Avira\AntiVir PersonalEdition Classic\AVPREF.DLL InMem: 1 Det [G] PX5: 99913A320182F50965960023A32F110023EA1413
C:\Programmi\Avira\AntiVir PersonalEdition Classic\SMTPLIB.DLL InMem: 1 Det [G] PX5: 0CDACD0901711121712E00441035D400C01EBA31
C:\Programmi\Avira\AntiVir PersonalEdition Classic\AVGIO.DLL InMem: 1 Det [G] PX5: 192B2C4B01BADD4FE52501C1544ACD0039E655AA
C:\WINDOWS\system32\FLTLIB.DLL InMem: 1 Det [G] PX5: 472FF6170040A5CE42C5009EDBEE1100A08A3245
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aecore.dll InMem: 1 Det [G] PX5: 000016BB7648F9189132022CCB9BB3007DC2EBC7
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aevdf.dll InMem: 1 Det [G] PX5: B48AF53D743624F3919D01A665C50F002AEDA000
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aescript.dll InMem: 1 Det [G] PX5: 5E8C01BF7A7C9D4811C004F832484C003B1DE220
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aescn.dll InMem: 1 Det [G] PX5: 0135FC9F7417BF00D1B401C2AEEDBB00901E8B6D
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aerdl.dll InMem: 1 Det [G] PX5: 2B632B09755B73EC61EC06E4B678B8009B5EF0C0
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aepack.dll InMem: 1 Det [G] PX5: DEAB2E14765794AC917F0522BAEC1E0097DD4C02
C:\Programmi\Avira\AntiVir PersonalEdition Classic\unacev2.dll InMem: 1 Det [G] PX5: 39713B85000FE97F2E430131F74A9D001029A567
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aeoffice.dll InMem: 1 Det [G] PX5: 4DE3C56E7AACE388F16E0203134A630096509844
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aeheur.dll InMem: 1 Det [G] PX5: D16093A47632C760212B13656B6A2F0013F78B44
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aehelp.dll InMem: 1 Det [G] PX5: 59C4CACE772FAF4DC1B401CD3F1B09005CA5366C
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aegen.dll InMem: 1 Det [G] PX5: F2C5BACD74D13878B117040B199D7100809435A1
C:\Programmi\Avira\AntiVir PersonalEdition Classic\aeemu.dll InMem: 1 Det [G] PX5: 4961BEEA7352469691D8060C04707E00585CFDA6
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avipc.dll InMem: 1 Det [G] PX5: 1D9A633A0191AE09215E013A325AB300C26116FB
C:\WINDOWS\system32\CTsvcCDA.exe InMem: 1 Det [G] PX5: FDF278CE0084A779AC7900F415FF3D004FCA9DBC
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Creative Service for CDROM Access - ImagePath [C:\WINDOWS\system32\CTsvcCDA.exe]
C:\WINDOWS\System32\alg.exe InMem: 1 Det [G] PX5: A1E5D90F00A84BB2AEC200E087F3A200AB0BF90E
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ALG - ImagePath [C:\WINDOWS\System32\alg.exe]
C:\Programmi\HP\HP Software Update\HPwuSchd2.exe InMem: 1 Det [G] PX5: 85E9BFD90076143AC01700F89D9DBF0003F26ED4
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - HP Software Update [C:\Programmi\HP\HP Software Update\HPwuSchd2.exe]
C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe InMem: 1 Det [G] PX5: 6ECF162C90DB2F503505026809A83400350C2BE3
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - SunJavaUpdateSched ["C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe"]
C:\WINDOWS\system32\Rundll32.exe InMem: 1 Det [G] PX5: 797CA9E8007174E38209003396ABA600D9E79205
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - P17Helper [Rundll32 SPIRun.dll,RunDLLEntry]
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - VmApplet [rundll32 shell32,Control_RunDLL "sysdm.cpl"]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF} - StubPath [RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmt]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.i]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820} - StubPath [c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dl]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{8b15971b-5355-4c82-8c07-7e181ea07608} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\fxsocm.]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{00E7B358-F65B-4dcf-83DF-CD026B94BFD4}\LocalServer32 - {00E7B358-F65B-4dcf-83DF-CD026B94BFD4} [rundll32.exe %SystemRoot%\system32\shimgvw.dll,ImageView_COMServ]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\ShellScrap\shell\open\command - [rundll32 %SystemRoot%\system32\shscrap.dll,OpenScrap_RunDLL %1]
C:\WINDOWS\system32\SPIRun.dll InMem: 1 Det [G] PX5: BDE3751000F5F6A42A26002EDC6C93003F25DE68
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - P17Helper [Rundll32 SPIRun.dll,RunDLLEntry]
C:\WINDOWS\SYSTEM32\OemSpi.dll InMem: 1 Det [G] PX5: AAEFF8E1006CF16A1A4202995F3E61008B3A3F04
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\MOM.exe InMem: 1 Det [G] PX5: 478B32730059072BC05A002DDDE82A00B18B5C1D
C:\WINDOWS\system32\mscoree.dll InMem: 1 Det [G] PX5: 2FF012BA00BB752D4E8504215026F6009A6054D1
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{1D2680C9-0E2A-469d-B787-065558BC7D43}\InprocServer32 - {1D2680C9-0E2A-469d-B787-065558BC7D43} [c:\WINDOWS\system32\mscoree.dll]
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll InMem: 1 Det [G] PX5: CF433B660005682CBA375814C8DECC00564205E0
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll InMem: 1 Det [G] PX5: B8963EC70001074FE0E9B2C399A30D00914F27D1
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll InMem: 1 Det [G] PX5: 72348D27004E8CE9523505EFE53B89002BB32EA7
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\System.ni.dll InMem: 1 Det [G] PX5: E780EE6C008E312F20DD7E9A4B364F00D52132C4
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\0e83aac37b2623f1a24c70979f31dd56\System.Drawing.ni.dll InMem: 1 Det [G] PX5: 7B96086C00BB59D370B219E1B149770073615A10
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3d8c79c45aa674e43f075e2e66b8caf5\System.Windows.Forms.ni.dll InMem: 1 Det [G] PX5: ADE0A5700052415650B6C93DCCAC7900EF06E66A
C:\WINDOWS\assembly\GAC_MSIL\MOM.Implementation\2.0.3054.18910__90ba9c70f846762e\MOM.Implementation.dll InMem: 1 Det [G] PX5: B7EF2D8000B739EF909F01702329CD0043F0098D
C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation\2.0.3005.17465__90ba9c70f846762e\LOG.Foundation.dll InMem: 1 Det [G] PX5: 01181E5900A3B90E8085007BA0399C0094318D3A
C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3005.17484__90ba9c70f846762e\LOG.Foundation.Private.dll InMem: 1 Det [G] PX5: 856350F600DCABDF803E00CA8A11B5000760F379
C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3054.18907__90ba9c70f846762e\LOG.Foundation.Implementation.dll InMem: 1 Det [G] PX5: 6A8767700010E218F0D10041C41A7500F9240032
C:\WINDOWS\assembly\GAC_MSIL\MOM.Foundation\2.0.3005.17510__90ba9c70f846762e\MOM.Foundation.dll InMem: 1 Det [G] PX5: 24915862005ECCC6408E0022EA3DDB008A166674
C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3005.17511__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll InMem: 1 Det [G] PX5: 262B72C100A289E5506A002DDDE82A004505C4AC
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0898f6c1de8cb89413d206e3d6a3ce1d\System.Runtime.Remoting.ni.dll InMem: 1 Det [G] PX5: 6C5E9044005B9BB570D40C7E9E25420093BC1984
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\67cfb70213562afe2ca9b9066764af3a\System.Web.ni.dll InMem: 1 Det [G] PX5: D316654400005BCBE06DBE220E856700C506F60D
C:\WINDOWS\assembly\GAC_MSIL\CCC.Implementation\2.0.3054.18909__90ba9c70f846762e\CCC.Implementation.dll InMem: 1 Det [G] PX5: B0181690009CE83B80DA002622EE2000BCBD4F34
C:\WINDOWS\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3005.17466__90ba9c70f846762e\NEWAEM.Foundation.dll InMem: 1 Det [G] PX5: E6802DFB0033C7B2705400F068D29700FE0131DF
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe InMem: 1 Det [G] PX5: A23CDFCC01E8ACDE017B047E3F143D001FEB60CB
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - avgnt ["C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\cclib.dll InMem: 1 Det [G] PX5: 42A78FB80176FA5371FC025EE5012A00BFFB343B
c:\programmi\avira\antivir personaledition classic\ccgen.dll InMem: 1 Det [G] PX5: 1111953301CBE17F216804608C272A00528C6F5A
c:\programmi\avira\antivir personaledition classic\ccgenrc.dll InMem: 1 Det [G] PX5: A595445C013A778545640093783F2D0084EA5C8D
c:\programmi\avira\antivir personaledition classic\ccguard.dll InMem: 1 Det [G] PX5: F48EDDF501B8AEFD511B03F246E76F00FA54585F
c:\programmi\avira\antivir personaledition classic\ccgrdrc.dll InMem: 1 Det [G] PX5: 8122E15F01F3E4084F1200AE01B13D003C95736C
c:\programmi\avira\antivir personaledition classic\ccupdate.dll InMem: 1 Det [G] PX5: 1B1A5DDA01D3410FC1B8017DF9CDD30005535A79
c:\programmi\avira\antivir personaledition classic\ccupdrc.dll InMem: 1 Det [G] PX5: 7CF5896A01347FBF314F00687EF8A500693959F5
c:\programmi\avira\antivir personaledition classic\cclic.dll InMem: 1 Det [G] PX5: 745B1AFC0135B144F19A004E5CBFEB003BF8EBD4
c:\programmi\avira\antivir personaledition classic\cclicrc.dll InMem: 1 Det [G] PX5: 019FDA1E01F5D826173300939BA26A0045B7DADF
c:\programmi\avira\antivir personaledition classic\ccmsg.dll InMem: 1 Det [G] PX5: AB8569D201E9988A61C1022D83731000D9518AD0
C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe InMem: 1 Det [G] PX5: 50E721BA00DA69B020390428170E980033AB6E6F
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - HydraVisionDesktopManager [C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe]
C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraIta.dll InMem: 1 Det [G] PX5: FFEE285A00927D64608501AC781F5A00EFACFAD5
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe InMem: 1 Det [G] PX5: D3F87E8000E35205E0A2017487CD2D00DF211906
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - VolPanel ["C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.]
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\CTAudSeu.dll InMem: 1 Det [G] PX5: F732533100F3823B005A01F1D7C28B0005BDBB29
C:\WINDOWS\system32\MFC42u.DLL InMem: 1 Det [G] PX5: 74A4697B00B6ECC7FB5E0E2428CECF00BE23B318
C:\WINDOWS\system32\MFC42LOC.DLL InMem: 1 Det [G] PX5: 50EC1EAC0042F609E0B8000596D265006CAB3F5E
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanel.crl InMem: 1 Det [G] PX5: A3619DEA006BDB7B00180180396BC6001C27816B
C:\Programmi\Creative\ShareDLL\CADI\ctcadi.dll InMem: 1 Det [G] PX5: 9A2A2F1B0057C763F08E01D47D7E5900DFFE05D9
C:\Programmi\Creative\ShareDLL\CADI\ctdmzspi.dll InMem: 1 Det [G] PX5: 64584FC800415BD3B0C801BD10F210005D228C66
C:\Programmi\Creative\ShareDLL\CADI\ctaudspi.dll InMem: 1 Det [G] PX5: C4C9BC610004BA2AA0770145E5203500DA353598
C:\Programmi\Creative\ShareDLL\CADI\ctpxspi.dll InMem: 1 Det [G] PX5: DC928F3200C310F590EF01F858EA6100662751F0
C:\Programmi\Creative\ShareDLL\CADI\ctmbspi.dll InMem: 1 Det [G] PX5: 6619B99100092B14A02C01FB6A5B9E0001B55094
C:\Programmi\Creative\ShareDLL\CADI\ctksspi.dll InMem: 1 Det [G] PX5: DF2CC8BE001BA0A7A08901740F1734005730C473
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\mxlibu.dll InMem: 1 Det [G] PX5: C74503C50087F0BA30FE01E943A96800D77AE0A1
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\CTThemeU.dll InMem: 1 Det [G] PX5: 1A2536DE0022E1A6901A025E7F226200A4E998B3
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\CtrlSrcU.dll InMem: 1 Det [G] PX5: A236BA530054F309A02400DAE50837004FE46594
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\CTIniFu.dll InMem: 1 Det [G] PX5: 212E9C0600704B92D0460026E7EA6C0041AA1F79
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\GDICtrl.sku InMem: 1 Det [G] PX5: FF7BD98A0090A78D209B05C2D738FA0030B10F88
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\GDICtrl2.sku InMem: 1 Det [G] PX5: 3E57D5DE00C29C93504402DAB2D0A300A7BDDF76
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\GDICtrl3.sku InMem: 1 Det [G] PX5: F790389B00238B25B00C016660346C006DA126DC
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\RtxCtrl.sku InMem: 1 Det [G] PX5: 18DDA18B4520E47CC0B5015164366500BE08D9FE
C:\Programmi\Creative\Shared Files\CTSched.exe InMem: 1 Det [G] PX5: 377F1ECE5C4A1783D0B200E4DF86AE00F82FE874
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - CreativeTaskScheduler ["C:\Programmi\Creative\Shared Files\CTSched.exe" /logon]
C:\WINDOWS\system32\ctfmon.exe InMem: 1 Det [G] PX5: 7BE460C100E5509F3C0D00F14B5A510097B91217
REGRUNKEY - \REGISTRY\User\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run - CTFMON.EXE [C:\WINDOWS\system32\CTFMON.EXE]
REGRUNKEY - \REGISTRY\User\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run - CTFMON.EXE [C:\WINDOWS\system32\CTFMON.EXE]
REGRUNKEY - \REGISTRY\User\S-1-5-21-1233594246-1864035502-810251401-1008\Software\Microsoft\Windows\CurrentVersion\Run - ctfmon.exe [C:\WINDOWS\system32\ctfmon.exe]
C:\WINDOWS\system32\MSUTB.dll InMem: 1 Det [G] PX5: 7A3AA486004261ECFC5902E8FBAFDA00B6B25BB1
C:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe InMem: 1 Det [BPN] PX5: 4E34CDC800F9F517C0BB04E0B94EDF00BAD83F52 Malware Group: Fraudulent Security Program
REGRUNKEY - \REGISTRY\User\S-1-5-21-1233594246-1864035502-810251401-1008\Software\Microsoft\Windows\CurrentVersion\Run - acepsdf [c:\documents and settings\compaq_proprietario\impostazioni local]
C:\WINDOWS\system32\MFC42.DLL InMem: 1 Det [G] PX5: FD5A337B00529124B0D80F421E82790041341A00
C:\WINDOWS\system32\MSVCIRT.dll InMem: 1 Det [G] PX5: 0569EF3300FB5FE6D67200D1EA2F510048C0E880
C:\WINDOWS\system32\wbem\wbemprox.dll InMem: 1 Det [G] PX5: 118AA1B200D76A754A3B0017C7664600A1463C19
C:\WINDOWS\system32\OLEACC.DLL InMem: 1 Det [G] PX5: 81D38A4800E8D21B7EF202F4F2585B00DE902D48
C:\WINDOWS\system32\mshtml.dll InMem: 1 Det [G] PX5: 421B6A82003EB6A5CEEC36FB7BEDA0008CDB81E6
C:\WINDOWS\system32\msls31.dll InMem: 1 Det [G] PX5: D440CACF00BE0A1C62E30254EFAD02005496CA69
C:\WINDOWS\system32\ImgUtil.dll InMem: 1 Det [G] PX5: 82E6BE6700E00DD38E9300C212B30800D54B0621
C:\WINDOWS\system32\pngfilt.dll InMem: 1 Det [G] PX5: 8957C71300FB99D2AE01003F56465700A75B3A0B
C:\Programmi\Microsoft ActiveSync\wcescomm.exe InMem: 1 Det [G] PX5: D71C249700A58DFE605A121F5A564A0053AE8498
REGRUNKEY - \REGISTRY\User\S-1-5-21-1233594246-1864035502-810251401-1008\Software\Microsoft\Windows\CurrentVersion\Run - H/PC Connection Agent ["C:\Programmi\Microsoft ActiveSync\wcescomm.exe"]
C:\WINDOWS\system32\CEUTIL.dll InMem: 1 Det [G] PX5: D565C0B700F37FF734730001EA89BE00E7FE340B
C:\WINDOWS\system32\MSVCR71.dll InMem: 1 Det [G] PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7
C:\WINDOWS\system32\RAPI.dll InMem: 1 Det [G] PX5: 922D61EA0073B813E0D701723E51AA00B4B9C3F7
C:\Programmi\Microsoft ActiveSync\TCP2UDP.dll InMem: 1 Det [G] PX5: 5CA6BA5B005A89A33A18008A68746C006FD6DDDA
C:\Programmi\Microsoft ActiveSync\rapiproxystub.dll InMem: 1 Det [G] PX5: 6F9512430077FCAB2A4E000D0E6C2900B6F93782
C:\Programmi\Microsoft ActiveSync\dtptdns.dll InMem: 1 Det [G] PX5: 7DC05DC400A5547F243E0064B7A97C00CAFD59D9
C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe InMem: 1 Det [G] PX5: 233F600800F62830405C05ED8475DC00C4CE4501
C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe InMem: 1 Det [G] PX5: C344F5600080EF3A60BA0169D23BF500B7377B90
C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\Languages\English.lang InMem: 1 Det [G] PX5: 7A3BC087005EB187D06F0063806C7600F41C46E1
C:\Programmi\Microsoft ActiveSync\rapimgr.exe InMem: 1 Det [G] PX5: 4DED8871008B0DBDC0D902F1DB382000275A3D4D
C:\Programmi\Microsoft ActiveSync\msvcp71.dll InMem: 1 Det [G] PX5: F133D4F000B92F08A0E107FD67B66E0015498C05
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\ccc.exe InMem: 1 Det [G] PX5: 4AC68B1500851741C078002DDDE82A00F8777390
C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation\2.0.3005.17468__90ba9c70f846762e\CLI.Foundation.dll InMem: 1 Det [G] PX5: 727C35CA00F88FBED03C00E8A4F8EF0037F38396
C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3005.17608__90ba9c70f846762e\CLI.Foundation.XManifest.dll InMem: 1 Det [G] PX5: A732B2A200BD850A70CE009AA22B9A005D8D90BB
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\c98cb65a79cfccb44ea727ebe4593ede\System.Xml.ni.dll InMem: 1 Det [G] PX5: C3095E0E006A0C8F10B758E9D600FB0029A75630
C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_it_b77a5c561934e089\mscorlib.resources.dll InMem: 1 Det [G] PX5: 5EF7536900C3585AB0EE042C6D515300012226E5
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3054.18597__90ba9c70f846762e\CLI.Component.Runtime.dll InMem: 1 Det [G] PX5: A68D465F00B4BD6BD0DE00411A56A900425D30BC
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3005.17514__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll InMem: 1 Det [G] PX5: DCB1561E00C955ADB010000D835EED0086012FC1
C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3005.17475__90ba9c70f846762e\CLI.Foundation.Private.dll InMem: 1 Det [G] PX5: B4A16CCA00251BF6A03E009A14DC9B001BF46C68
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3005.17488__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll InMem: 1 Det [G] PX5: E87EBEFA00E2F327403600F7EB39A400CC2130B8
C:\WINDOWS\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll InMem: 1 Det [G] PX5: D001EE0C00864021801700749BB2F100BD672EB6
C:\WINDOWS\assembly\GAC_MSIL\AEM.Server\2.0.3054.18596__90ba9c70f846762e\AEM.Server.dll InMem: 1 Det [G] PX5: FFA0E02C0037B1D7B08400C9F8593000321A4B18
C:\WINDOWS\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3005.17489__90ba9c70f846762e\AEM.Server.Shared.dll InMem: 1 Det [G] PX5: 6C24C21D0055A83040760052E994A4005858E8BE
C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3054.18949__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll InMem: 1 Det [G] PX5: 800D91D200A15C19B024008777A4CC0071CD2D76
C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3005.17563__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll InMem: 1 Det [G] PX5: C2E0459F00D64E7840AF006ED0A4B200C44047D3
C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3005.17490__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll InMem: 1 Det [G] PX5: EDB4EC4800D035745004002DDDE82A00E73A0BC7
C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3005.17516__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll InMem: 1 Det [G] PX5: C7EB275A00D37D6240F400B9190F4C002396ADA9
C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll InMem: 1 Det [G] PX5: 092233FF00816A56B087005E82C7BD00C5625F05
C:\WINDOWS\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll InMem: 1 Det [G] PX5: 8944D0EC007FA9D640EE007B6B88BE00803C218B
C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics\2.0.3005.17519__90ba9c70f846762e\DEM.Graphics.dll InMem: 1 Det [G] PX5: 34E35A7200680DB040D8004342E5A400D6B50720
C:\WINDOWS\system32\ATIDEMGX.dll InMem: 1 Det [u] PX5: 9FFC590100237718108106A4EC131800F269DF04
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\eee9b48577689e92db5a7b5c5de98d9b\System.Configuration.ni.dll InMem: 1 Det [G] PX5: 2C56145800BD13ED706F0F9667ED9500E82D6411
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3054.18608__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll InMem: 1 Det [G] PX5: 032419DE00818835E0210373167C73008F6B1DCD
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3005.17493__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll InMem: 1 Det [G] PX5: 5430A22C00A2313AD055009A110E660061E6B839
C:\WINDOWS\assembly\GAC_MSIL\ACE.Graphics.DisplaysManager.Shared\2.0.2573.17685__90ba9c70f846762e\ACE.Graphics.DisplaysManager.Shared.dll InMem: 1 Det [G] PX5: 4A8E3BE3006DC55D60B000B738FE1A001889265A
C:\WINDOWS\assembly\GAC_MSIL\DEM.OS.I0602\2.0.3005.17518__90ba9c70f846762e\DEM.OS.I0602.dll InMem: 1 Det [G] PX5: 277A98E700E8B173505F002DDDE82A00150A204F
C:\WINDOWS\assembly\GAC_MSIL\DEM.OS\2.0.3005.17517__90ba9c70f846762e\DEM.OS.dll InMem: 1 Det [G] PX5: CEFE8C7E005C115B408F0005E064D500F03FA802
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\DEM.Graphics.I0709.dll InMem: 1 Det [G] PX5: 598A4A49008E3572406400F3C973B400AC0D6395
C:\WINDOWS\assembly\GAC_MSIL\ATIDEMOS\2.0.3054.18598__90ba9c70f846762e\ATIDEMOS.dll InMem: 1 Det [G] PX5: C9459DA00068B90B005301BA9A719C0082CB9EB9
C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3005.17562__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll InMem: 1 Det [G] PX5: 8484208E0065E60D40FD00D8EC359900E7DABD7E
C:\WINDOWS\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3005.17473__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll InMem: 1 Det [G] PX5: ED2B5A3B006CB1FC5093002DDDE82A00CE353585
C:\WINDOWS\assembly\GAC_MSIL\LOCALIZATION.Foundation.Private\2.0.3005.17481__90ba9c70f846762e\LOCALIZATION.Foundation.Private.dll InMem: 1 Det [G] PX5: D18DF9B000F9A6DA404100BFBF554E00FA3EF178
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3054.18630__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll InMem: 1 Det [G] PX5: E80427BB000F469E501F002DDDE82A001578295A
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Shared\2.0.3005.17522__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Shared.dll InMem: 1 Det [G] PX5: 94A841DA00C9D0375094004FDA9E5700F15E2B54
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Runtime\2.0.3054.18837__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Runtime.dll InMem: 1 Det [G] PX5: F525A04B00D19A540064015D0D806300F81A401F
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime.Shared.Private\2.0.3005.17542__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.Shared.Private.dll InMem: 1 Det [G] PX5: A3BBBB4A003DCF9C508B002DDDE82A00697FE09F
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Shared\2.0.3005.17539__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Shared.dll InMem: 1 Det [G] PX5: 13D33830008D0B00A0BA007ED7D69700F46834B3
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Runtime\2.0.3054.18782__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Runtime.dll InMem: 1 Det [G] PX5: BAC1E7550039D2F090AE0091A28DC9006189F85D
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.CustomFormats.Graphics.Shared\2.0.3005.17514__90ba9c70f846762e\CLI.Aspect.CustomFormats.Graphics.Shared.dll InMem: 1 Det [G] PX5: FBF1D08600EFEC66600700837B646600934EC2BD
C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0706\2.0.2743.23304__90ba9c70f846762e\DEM.Graphics.I0706.dll InMem: 1 Det [G] PX5: 4CED0AF5002AC8E3409E000D99947300376BB04B
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Shared\2.0.3005.17506__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Shared.dll InMem: 1 Det [G] PX5: 158397D100B1B6558089003B0262C100A87FDDA5
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Runtime\2.0.3054.18882__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Runtime.dll InMem: 1 Det [G] PX5: 7086BB9600640F0130B001D80C456E00424C7EC0
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Shared\2.0.3005.17541__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Shared.dll InMem: 1 Det [G] PX5: 17E4D5F500E61734009B01155882F9008E64B6AF
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Runtime\2.0.3054.18690__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Runtime.dll InMem: 1 Det [G] PX5: 4ECD6D2F00976DA8A03600FB841DB900678B3E37
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Shared\2.0.3005.17531__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Shared.dll InMem: 1 Det [G] PX5: E8E4D4D700DA2C6670FE00846017940034A7AE68
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Runtime\2.0.3054.18812__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Runtime.dll InMem: 1 Det [G] PX5: E141947500C361F690AF002F70A00C00A8C89385
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Shared\2.0.3005.17537__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Shared.dll InMem: 1 Det [G] PX5: 62C37C2D007FAB68606100894FFD1D00F3720300
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Runtime\2.0.3054.18791__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Runtime.dll InMem: 1 Det [G] PX5: A804761000BB085BA00B0005F3CBF9003C164595
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Shared\2.0.3005.17535__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Shared.dll InMem: 1 Det [G] PX5: C84F4E380098C44BD03F00D1BF57E500234928DC
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Runtime\2.0.3054.18827__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Runtime.dll InMem: 1 Det [G] PX5: 5DA7124B00AE92B780DD005AFD9EFA00644BA2CB
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Shared\2.0.3005.17521__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Shared.dll InMem: 1 Det [G] PX5: 54B6C1340035B52E709C0090384FCC00228515EA
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Runtime\2.0.3054.18783__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Runtime.dll InMem: 1 Det [G] PX5: AE5CA164004A9571F0E100C3B047F40072398CEE
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Shared\2.0.3005.17535__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Shared.dll InMem: 1 Det [G] PX5: 59C1D0280058B8A2B03B003544487700116C0925
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\DEM.Graphics.I0712.dll InMem: 1 Det [G] PX5: 67113051003D98FD400C00EF607FA70037542317
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.VPURecover.Graphics.Runtime\2.0.3054.18659__90ba9c70f846762e\CLI.Aspect.VPURecover.Graphics.Runtime.dll InMem: 1 Det [G] PX5: 02D8AFFF008ED7FB709000713C99D500DE582704
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.VPURecover.Graphics.Shared\2.0.3005.17531__90ba9c70f846762e\CLI.Aspect.VPURecover.Graphics.Shared.dll InMem: 1 Det [G] PX5: F963C9720082374550E6002DDDE82A00635A661E
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.OverDrive5.Graphics.Runtime\2.0.3054.18959__90ba9c70f846762e\CLI.Aspect.OverDrive5.Graphics.Runtime.dll InMem: 1 Det [G] PX5: AFC10BBB004D924F00C50187DA1B180004085560
C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0703\2.0.2651.18802__90ba9c70f846762e\DEM.Graphics.I0703.dll InMem: 1 Det [G] PX5: 262AF5240012A33E506C002DDDE82A00C73CDBAD
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.OverDrive5.Graphics.Shared\2.0.3005.17553__90ba9c70f846762e\CLI.Aspect.OverDrive5.Graphics.Shared.dll InMem: 1 Det [G] PX5: 0D98106700C975D1E0100072962F3600F476843F
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Runtime\2.0.3054.18846__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Runtime.dll InMem: 1 Det [G] PX5: A573D60800303FBFF04900C2C5FDCC0067EB3AED
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Shared\2.0.3005.17540__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Shared.dll InMem: 1 Det [G] PX5: A532510B003B63F7D057005CB067BF002F823483
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Runtime\2.0.3054.18792__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Runtime.dll InMem: 1 Det [G] PX5: 204C848D003D7FEA20FC018B8DB8E800B18478C5
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Shared\2.0.3005.17536__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Shared.dll InMem: 1 Det [G] PX5: 5DFEF40800EB690EC08100FA04907A0092F2A19D
C:\WINDOWS\assembly\GAC_MSIL\APM.Server\2.0.3054.18594__90ba9c70f846762e\APM.Server.dll InMem: 1 Det [G] PX5: 022109EF00F0985CD05D00183741CE000CD969B7
C:\WINDOWS\assembly\GAC_MSIL\APM.Foundation\2.0.3005.17511__90ba9c70f846762e\APM.Foundation.dll InMem: 1 Det [G] PX5: CCE0EBBE0070543A5009000E489B78002BFACB57
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3054.18597__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll InMem: 1 Det [G] PX5: 0C539A7D002FC1191CD8003B3C2E07006AD7F364
C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.EEU.Shared\2.0.3005.17512__90ba9c70f846762e\AEM.Plugin.EEU.Shared.dll InMem: 1 Det [G] PX5: 0DD9B99700FD7F2F40DF00660E1F8F00783D474D
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3054.18900__90ba9c70f846762e\CLI.Component.Systemtray.dll InMem: 1 Det [G] PX5: C8AB54B000CCEC9760FD06561FDD8C00D06484AA
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3005.17499__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll InMem: 1 Det [G] PX5: F47B97B300B938E7A0C500CE44A69D00061ACF94
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3054.18639__90ba9c70f846762e\CLI.Component.Wizard.dll InMem: 1 Det [GP] PX5: 688765C000A88EAD806E07BE5FE6BC0076DBBFB4
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3005.17479__90ba9c70f846762e\CLI.Component.Client.Shared.dll InMem: 1 Det [G] PX5: D0F72D3E00917E1B505E002DDDE82A0004B05E17
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3005.17496__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll InMem: 1 Det [G] PX5: 21D63707001819CA50AE002DDDE82A00C9A18F7E
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3005.17513__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll InMem: 1 Det [G] PX5: CDEE98A300ADFD6160E90059336A8600B509FB8E
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3054.18645__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll InMem: 1 Det [G] PX5: C12BBF910080B49AA05A0066DDD39500C5D49EDC
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard.Shared\2.0.3005.17530__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.Shared.dll InMem: 1 Det [G] PX5: 84245F8F00F522D1408F0074BDBD6D00C783FEFC
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3054.18924__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll InMem: 1 Det [G] PX5: 4BA4BAD200B5D28860DE076DD9E6EC0069555F99
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3054.18855__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll InMem: 1 Det [G] PX5: CED35BF000981E9A606C01E6B23A6D00F4E9C34B
C:\WINDOWS\assembly\GAC_MSIL\LOCALIZATION.Foundation.Implementation\2.0.3054.18964__90ba9c70f846762e\LOCALIZATION.Foundation.Implementation.dll InMem: 1 Det [G] PX5: EF4E62F800915E652C5000D6FF950D0010C064FA
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3054.18653__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll InMem: 1 Det [G] PX5: F7D15AA900396221A0E419F0BB807C0086549ACF
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3054.18668__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll InMem: 1 Det [G] PX5: E209831900CD78C0001C0300C92C190065D55488
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Shared\2.0.3005.17556__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Shared.dll InMem: 1 Det [G] PX5: 421FE8F500369D58A01000D0C5F52E007830861E
C:\WINDOWS\assembly\GAC_MSIL\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll InMem: 1 Det [G] PX5: 69EBD7D600F723131AC200D12C01FD000EFAA013
C:\Programmi\File comuni\ATI Technologies\Multimedia\atixcode.dll InMem: 1 Det [G] PX5: 62B3531A0002DD5FB0D8027AE263CB00D3B4694A
C:\Programmi\File comuni\ATI Technologies\Multimedia\atidvcr.dll InMem: 1 Det [G] PX5: 3EC4DD380033003470611736FEEF65001D7966DA
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Wizard\2.0.3054.18871__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Wizard.dll InMem: 1 Det [G] PX5: 21A3669E0041A46A20EA068213B23800089D9CDB
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Wizard\2.0.3054.18892__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Wizard.dll InMem: 1 Det [G] PX5: EBE16D7E00AA23ED90180586FA5FE600EF445490
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Wizard\2.0.3054.18864__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Wizard.dll InMem: 1 Det [G] PX5: 9C90BCCB0049D5DD80E80AD785AB0D009CDC02BE
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3054.18617__90ba9c70f846762e\CLI.Component.Dashboard.dll InMem: 1 Det [G] PX5: E7F64CB000097FB0109517917B5DCA00C90E4BE7
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3005.17491__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll InMem: 1 Det [G] PX5: 139E125200C42BAA502A00F848EE5E00A7488017
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3005.17508__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll InMem: 1 Det [G] PX5: 11D596C000542370506D006AD0B8DB003FEF5CAB
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3054.18623__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 91482A970060163D204C01529D94E700B71E8E75
C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard.Shared\2.0.3005.17521__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.Shared.dll InMem: 1 Det [G] PX5: F36992FC0040BB2A400C00839AD067009A9255EA
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3054.18932__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 1223E32E001F309010CB02F7E21EF5002B0E8827
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3054.18676__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: D83A74EC00C8BD5C501D0357C1245B00CB166851
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3054.18632__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 7CD681AB000B7CB8B0AA066E099C3B0096AB1602
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Dashboard\2.0.3054.18814__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 08924D2800C11D21D06401D51CE0B100E6ADBFFC
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Dashboard\2.0.3054.18785__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 2D867F2C00C77D115038077CB0CF4400F2241A7F
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Dashboard\2.0.3054.18840__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 1EAE9CE100274CAE20DC0AD93702010064DF9629
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Dashboard\2.0.3054.18885__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: D69466F900FEFCC5C0D70D1FE8BB8700C8600567
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Dashboard\2.0.3054.18777__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 5FEF7A360061A035D0BF06B9672ABB002E3B177A
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Dashboard\2.0.3054.18848__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 6CFFAA0A0068620850C5050800E78E0016783D55
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Dashboard\2.0.3054.18683__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 0449A48A00237A87F0EB08B6CB481300235F9AA5
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Dashboard\2.0.3054.18793__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: 6B6129D700C8F23040B30C0276B77000042428BA
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.VPURecover.Graphics.Dashboard\2.0.3054.18660__90ba9c70f846762e\CLI.Aspect.VPURecover.Graphics.Dashboard.dll InMem: 1 Det [G] PX5: DD1DED18008BF58E90BB01A03A7F5A0007AF3985
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.OverDrive5.Graphics.Dashboard\2.0.3054.18960__90ba9c70f846762e\CLI.Aspect.OverDrive5.Graphics.Dashboard.dll InMem: 1 Det [GP] PX5: 5736F56E000887C7C02C061BDE7DB600B155D0D4
C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3054.18600__90ba9c70f846762e\CLI.Component.SkinFactory.dll InMem: 1 Det [G] PX5: 4532F3DB00222E02C0C400B378C50900FFE7AEF4
C:\WINDOWS\assembly\GAC\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll InMem: 1 Det [G] PX5: 2E60867F006B32D33C9D00D2B60A8600F9BC42B3
C:\Programmi\ATI Technologies\ATI.ACE\Core-Implementation\32\wbocx.ocx InMem: 1 Det [G] PX5: DE8C840E000662569722084AEC8C9800CB304F0A
C:\WINDOWS\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll InMem: 1 Det [G] PX5: 5E1722C300A38A50340600F3172E600057D5F730
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\c6772fd12a581ad3be49e3f2a80b5622\Accessibility.ni.dll InMem: 1 Det [G] PX5: A3C6CA0500D319B76AF9009599CF1C0045F17EC0
C:\Programmi\ATI Technologies\ATI.ACE\Core-Implementation\32\wbhelp2.dll InMem: 1 Det [G] PX5: 64012926003D6ED3C6F00002E2ECD2001CCCF337
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared\2.0.3054.18769__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.dll InMem: 1 Det [G] PX5: B4ECEA6000481B1D50B104F29ABD91001B4784C4
C:\WINDOWS\system32\dciman32.dll InMem: 1 Det [G] PX5: 256E9CF3007B0060223C00722D6B1100E50006BD
C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.CustomFormatSelection.Graphics.Dashboard.Shared.Private\2.0.3005.17517__90ba9c70f846762e\CLI.Aspect.CustomFormatSelection.Graphics.Dashboard.Shared.Private.dll InMem: 1 Det [G] PX5: 12F789F9007AB79350ED002DDDE82A00D0764154
C:\HP\KBD\KBD.EXE InMem: 1 Det [G] PX5: 81C0F7DF00DC8F76F03B0005A8D01F00E9A4262C
C:\HP\KBD\led.dll InMem: 1 Det [G] PX5: 905B275800C80B53C08300C4902BD2005E99AF1F
C:\HP\KBD\USB.dll InMem: 1 Det [G] PX5: E98C864F007ED93230D8014199FA9F00DAA2C659
C:\HP\KBD\ps2.dll InMem: 1 Det [G] PX5: 29FE419A006D4A1AF05B00EDC33B9000BB05E746
C:\HP\KBD\msg.dll InMem: 1 Det [G] PX5: E7BC41D500B9CE3BD02300B76F3B290081C44245
C:\HP\KBD\osd.dll InMem: 1 Det [G] PX5: 8DC0B73E00F3F834D053010F1B0385007A738A85
C:\HP\KBD\sct.dll InMem: 1 Det [G] PX5: 3C12CF470021CA9440DF018F031D1800A9544DD6
C:\HP\KBD\onl.dll InMem: 1 Det [G] PX5: 72341EC0008F966EF07F006C96694C00B4D124B0
C:\HP\KBD\aol.dll InMem: 1 Det [G] PX5: EB72977300A608BBE008004B74961500507B6D37
C:\HP\KBD\url.dll InMem: 1 Det [G] PX5: 9E07E53800AF7AEEE0E000412A608C003AEA37DF
C:\HP\KBD\cfg.dll InMem: 1 Det [G] PX5: 9FC4D122006F547D703001E89F992800DAA131D3
C:\HP\KBD\MSIKBDIF.DLL InMem: 1 Det [G] PX5: 43DB11D1006D258F10C001DC23660100E62ED52B
c:\windows\system32\w3ssl.dll InMem: 1 Det [G] PX5: A6B700D7003E7B103E9200F3DAA15600D1CE535A
C:\WINDOWS\System32\strmfilt.dll InMem: 1 Det [G] PX5: 066E28230096601228B701DD5C8350004BCC7182
C:\WINDOWS\ALCXMNTR.EXE InMem: 1 Det [G] PX5: E3B6006200459BDBE0E800847B9DD300B4AEAB02
C:\WINDOWS\system32\KsUser.dll InMem: 1 Det [G] PX5: AAD6D56F00EC2271104D0037883D3E00B79BCD14
c:\windows\system\hpsysdrv.exe InMem: 1 Det [G] PX5: 79D1EA7100BE1E40CEDA00CB8959FA007C898E7A
C:\Programmi\Windows Live\Messenger\usnsvc.exe InMem: 1 Det [GP] PX5: 7170895518C60F1580F401FC8E681B0060998565
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\usnjsvc - ImagePath [C:\Programmi\Windows Live\Messenger\usnsvc.exe]
C:\Programmi\Windows Live\Messenger\usnsvcps.dll InMem: 1 Det [G] PX5: 4CBDE8291836B5FED853003B3C2E0700C2F01FC8
C:\Programmi\a-squared Free\a2service.exe InMem: 1 Det [UP] PX5: DF6BEC2B707F3BC5F29A097050F99D007922DE1B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\a2free - ImagePath [C:\Programmi\a-squared Free\a2service.exe]
C:\Programmi\Mozilla Firefox\firefox.exe InMem: 1 Det [G] PX5: 755E4AFB70811269E41B74104D413500C0247854
C:\Programmi\Mozilla Firefox\js3250.dll InMem: 1 Det [G] PX5: AE799CBA68D8601500E4074713A86E009409BA70
C:\Programmi\Mozilla Firefox\nspr4.dll InMem: 1 Det [G] PX5: 5263A09E70E6B3FA76F402F4E50AA80063E8937F
C:\Programmi\Mozilla Firefox\xpcom_core.dll InMem: 1 Det [G] PX5: 2652BCFC706A6E5070900690BF6EAB006AEEC17C
C:\Programmi\Mozilla Firefox\plc4.dll InMem: 1 Det [G] PX5: 805ED1397829B78F86F6002DDDE82A00C1CDAE2B
C:\Programmi\Mozilla Firefox\plds4.dll InMem: 1 Det [G] PX5: D89FD48170A74E7D768A00A323AA33007701EAF1
C:\Programmi\Mozilla Firefox\smime3.dll InMem: 1 Det [G] PX5: 89F2D56768AD0AA4B61B014C7B60990019C64182
C:\Programmi\Mozilla Firefox\nss3.dll InMem: 1 Det [G] PX5: AA1EDE4568A6A7CAC6F105427FB011003B2302D0
C:\Programmi\Mozilla Firefox\softokn3.dll InMem: 1 Det [G] PX5: 8542B9B86C54271FE0A2030F4DD1D90063979D82
C:\Programmi\Mozilla Firefox\ssl3.dll InMem: 1 Det [G] PX5: CD745CC168357AF9062E021B815ED00000776E17
C:\Programmi\Mozilla Firefox\xpcom_compat.dll InMem: 1 Det [G] PX5: 5CA5D7C57880F7BB20DF01B3C46778006766C5DD
C:\Programmi\Mozilla Firefox\components\myspell.dll InMem: 1 Det [G] PX5: 17BCE6718838929888B7000AF9F43C0070147982
C:\Programmi\Mozilla Firefox\components\jar50.dll InMem: 1 Det [G] PX5: DE12F24070F77D0B0878018368F55C008B09E338
C:\Programmi\Mozilla Firefox\extensions\[email protected]\components\qfaservices.dll InMem: 1 Det [G] PX5: C5773AB178A9E80E382B0069B9484F008611FDB1
C:\Programmi\Mozilla Firefox\extensions\[email protected]\components\FULLSOFT.DLL InMem: 1 Det [G] PX5: FFC387D180252DA263B0026E692A2900191D90B4
C:\WINDOWS\system32\msimtf.dll InMem: 1 Det [G] PX5: 84310A0800BF02296E1202C6BE073C009D305F2B
C:\Programmi\Mozilla Firefox\freebl3.dll InMem: 1 Det [G] PX5: 656849DF7D6F8DBF10880339B81361005C862A3D
C:\Programmi\Mozilla Firefox\nssckbi.dll InMem: 1 Det [G] PX5: 3FC8DF7B70B97A8536BB042D181D9F0054CC9D84
C:\Programmi\Mozilla Firefox\components\spellchk.dll InMem: 1 Det [G] PX5: E1CB440280C540A3B6F600BB5161FA00855A1613
C:\Programmi\PrevxCSI\prevxcsi.exe InMem: 1 Det [GP] PX5: 9EFC5BC53810EC7A827809ED24C2D600ABDD5DDD
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\CSIScanner - ImagePath [C:\Programmi\PrevxCSI\prevxcsi.exe]
C:\WINDOWS\system32\DRIVERS\3xHybrid.sys InMem: 0 Det [G] PX5: 15F3950E80A3EFF8B7762A0FDBE69200403AC77B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\3xHybrid - ImagePath [C:\WINDOWS\system32\DRIVERS\3xHybrid.sys]
C:\WINDOWS\system32\DRIVERS\ACPI.sys InMem: 0 Det [G] PX5: 6EB7D724001F4D96E0A8029EF0BB700070C5BA93
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ACPI - ImagePath [C:\WINDOWS\system32\DRIVERS\ACPI.sys]
C:\WINDOWS\system32\drivers\aec.sys InMem: 0 Det [G] PX5: E884BE24808C5EEB2C92028B464629005484ED65
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\aec - ImagePath [C:\WINDOWS\system32\drivers\aec.sys]
C:\WINDOWS\System32\drivers\afd.sys InMem: 0 Det [G] PX5: EE224F5C0089E9241DEF0273688B740025971F4C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AFD - ImagePath [C:\WINDOWS\System32\drivers\afd.sys]
C:\WINDOWS\system32\drivers\ALCXWDM.SYS InMem: 0 Det [G] PX5: B040544600376D209EB937F32549FE008D4A6727
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ALCXWDM - ImagePath [C:\WINDOWS\system32\drivers\ALCXWDM.SYS]
C:\WINDOWS\system32\DRIVERS\AmdK8.sys InMem: 0 Det [G] PX5: 4E3BBE7000341D30A87A00AB6095560098007680
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AmdK8 - ImagePath [C:\WINDOWS\system32\DRIVERS\AmdK8.sys]
C:\WINDOWS\system32\DRIVERS\arp1394.sys InMem: 0 Det [G] PX5: E79B803D809043E9ED9C00655C5EAE00E1E46E49
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Arp1394 - ImagePath [C:\WINDOWS\system32\DRIVERS\arp1394.sys]
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe InMem: 0 Det [G] PX5: 700BB9B808038308846600EF74731100EEABDE2B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\aspnet_state - ImagePath [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe]
C:\WINDOWS\system32\DRIVERS\asyncmac.sys InMem: 0 Det [G] PX5: 8BD45D2B002F3B40389D007E91CC59004B62F8E9
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\AsyncMac - ImagePath [C:\WINDOWS\system32\DRIVERS\asyncmac.sys]
C:\WINDOWS\system32\DRIVERS\atapi.sys InMem: 0 Det [G] PX5: 9D6081B280209DE174C2011395153C00E47C5A8D
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\atapi - ImagePath [C:\WINDOWS\system32\DRIVERS\atapi.sys]
C:\WINDOWS\system32\ati2sgag.exe InMem: 0 Det [u] PX5: 0D8657940078650A10B40972C98DB4004D01069A
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ATI Smart - ImagePath [C:\WINDOWS\system32\ati2sgag.exe]
C:\WINDOWS\system32\DRIVERS\ati2mtag.sys InMem: 0 Det [G] PX5: D9592D1E007DC38EE4402D6101EC4600F7A07288
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ati2mtag - ImagePath [C:\WINDOWS\system32\DRIVERS\ati2mtag.sys]
C:\WINDOWS\system32\DRIVERS\atmarpc.sys InMem: 0 Det [G] PX5: C41A09F600246E0AEA81009B2DE4BF0073057136
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Atmarpc - ImagePath [C:\WINDOWS\system32\DRIVERS\atmarpc.sys]
C:\WINDOWS\system32\DRIVERS\audstub.sys InMem: 0 Det [G] PX5: C910D030000E35B30CDC00441BDEF300B79BCD14
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\audstub - ImagePath [C:\WINDOWS\system32\DRIVERS\audstub.sys]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgio.sys InMem: 0 Det [G] PX5: 9E7183A14012359F2ECF00C7B7B630002CC224EB
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\avgio - ImagePath [C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgio.sys]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgntflt.sys InMem: 0 Det [u] PX5: A02427CF4057DAD3CB63006855908300C0855B24
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\avgntflt - ImagePath [C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgntflt.sys]
C:\WINDOWS\system32\DRIVERS\avipbb.sys InMem: 0 Det [G] PX5: 2BA15DFF4022F74936710158220D06001113CA4B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\avipbb - ImagePath [C:\WINDOWS\system32\DRIVERS\avipbb.sys]
C:\WINDOWS\system32\DRIVERS\CCDECODE.sys InMem: 0 Det [G] PX5: 4E4CADF380552430426F00BC05FF9D0038FB5853
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\CCDECODE - ImagePath [C:\WINDOWS\system32\DRIVERS\CCDECODE.sys]
C:\WINDOWS\system32\DRIVERS\cdrom.sys InMem: 0 Det [G] PX5: B3CE44DD80DABE80C1400031E25C450069663A5F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Cdrom - ImagePath [C:\WINDOWS\system32\DRIVERS\cdrom.sys]
C:\WINDOWS\system32\cisvc.exe InMem: 0 Det [G] PX5: B03833B20005A59D1629005665669D00201F0525
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\CiSvc - ImagePath [C:\WINDOWS\system32\cisvc.exe]
C:\WINDOWS\system32\clipsrv.exe InMem: 0 Det [G] PX5: 50E35C41004F616D823700EBB15ECF008A4FA87F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ClipSrv - ImagePath [C:\WINDOWS\system32\clipsrv.exe]
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe InMem: 0 Det [G] PX5: 6EFAD9B8005FFA1B128A0113E3634300FEFA54C7
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\clr_optimization_v2.0.50727_32 - ImagePath [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe]
C:\WINDOWS\system32\dllhost.exe InMem: 0 Det [G] PX5: 6EA1D06F0041EB21141900B4A32FF2002F6B8881
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\COMSysApp - ImagePath [C:\WINDOWS\system32\dllhost.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SwPrv - ImagePath [C:\WINDOWS\system32\dllhost.exe]
C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys InMem: 0 Det [G] PX5: 701611BB00EE32762CDB02A204E30C0026A751DB
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ctsfm2k - ImagePath [C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys]
C:\WINDOWS\system32\drivers\ctusfsyn.sys InMem: 0 Det [G] PX5: 093DCE258044EC0A793902518C447600EF645386
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\CTUSFSYN - ImagePath [C:\WINDOWS\system32\drivers\ctusfsyn.sys]
C:\WINDOWS\system32\DRIVERS\disk.sys InMem: 0 Det [G] PX5: 61E4E34300C80A908E6D00C10934AF006F571071
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Disk - ImagePath [C:\WINDOWS\system32\DRIVERS\disk.sys]
C:\WINDOWS\System32\dmadmin.exe InMem: 0 Det [G] PX5: CB8A3D6900018319702703238C5916001DF268F6
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\dmadmin - ImagePath [C:\WINDOWS\System32\dmadmin.exe]
C:\WINDOWS\System32\drivers\dmboot.sys InMem: 0 Det [G] PX5: 917F152000320DE9366A0C362239380089D45879
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\dmboot - ImagePath [C:\WINDOWS\System32\drivers\dmboot.sys]
C:\WINDOWS\System32\drivers\dmio.sys InMem: 0 Det [G] PX5: 33A7916180B2EE7E5AC702A49AA6DC00E6795F14
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\dmio - ImagePath [C:\WINDOWS\System32\drivers\dmio.sys]
C:\WINDOWS\System32\drivers\dmload.sys InMem: 0 Det [G] PX5: FC216AA0003B46A9171D00359F9C1600E909FEB4
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\dmload - ImagePath [C:\WINDOWS\System32\drivers\dmload.sys]
C:\WINDOWS\system32\drivers\DMusic.sys InMem: 0 Det [G] PX5: 64B493018066E6FACEE6008D21636D008F236B03
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\DMusic - ImagePath [C:\WINDOWS\system32\drivers\DMusic.sys]
C:\WINDOWS\system32\drivers\drmkaud.sys InMem: 0 Det [G] PX5: FA93CCC9802BA0DD0B8800D3A4C66500B79BCD14
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\drmkaud - ImagePath [C:\WINDOWS\system32\drivers\drmkaud.sys]
C:\WINDOWS\system32\fxssvc.exe InMem: 0 Det [G] PX5: 6602748D00AECFA4184704CBFF06DC000839594C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Fax - ImagePath [C:\WINDOWS\system32\fxssvc.exe]
C:\WINDOWS\system32\DRIVERS\fdc.sys InMem: 0 Det [G] PX5: 030113CC009ED3836B77000B64308F0030511E66
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Fdc - ImagePath [C:\WINDOWS\system32\DRIVERS\fdc.sys]
C:\WINDOWS\system32\DRIVERS\flpydisk.sys InMem: 0 Det [G] PX5: 60E1171000EEA79E50BF00391F7EE000F2860CEC
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Flpydisk - ImagePath [C:\WINDOWS\system32\DRIVERS\flpydisk.sys]
C:\WINDOWS\system32\DRIVERS\fltMgr.sys InMem: 0 Det [G] PX5: DD494D2180C4BB98F7F901405AA62900817D3A94
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\FltMgr - ImagePath [C:\WINDOWS\system32\DRIVERS\fltMgr.sys]
c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe InMem: 0 Det [G] PX5: 548AEC7D00B95DFF9092004D1A93E6007304BC10
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\FontCache3.0.0.0 - ImagePath [c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCach]
C:\WINDOWS\system32\DRIVERS\ftdisk.sys InMem: 0 Det [G] PX5: D543638280F1FAF5EBA30154BD3E7700D3ED2EEC
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Ftdisk - ImagePath [C:\WINDOWS\system32\DRIVERS\ftdisk.sys]
C:\WINDOWS\System32\DRIVERS\gmer.sys InMem: 0 Det [u] PX5: C41D650CD1F257E14FF001421BD988008A0DC74C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\gmer - ImagePath [C:\WINDOWS\System32\DRIVERS\gmer.sys]
C:\WINDOWS\system32\DRIVERS\msgpc.sys InMem: 0 Det [G] PX5: A6DC8C520088C979894600B57B2B1A00363C4157
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Gpc - ImagePath [C:\WINDOWS\system32\DRIVERS\msgpc.sys]
C:\WINDOWS\system32\DRIVERS\HDAudBus.sys InMem: 0 Det [G] PX5: 0BF29F2900ECCC301EAB02F054A1A700522B006C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\HDAudBus - ImagePath [C:\WINDOWS\system32\DRIVERS\HDAudBus.sys]
C:\WINDOWS\System32\Drivers\HTTP.sys InMem: 0 Det [G] PX5: 1A572A9180D9F92E022704747529EC0016C1652C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\HTTP - ImagePath [C:\WINDOWS\System32\Drivers\HTTP.sys]
C:\WINDOWS\system32\DRIVERS\i8042prt.sys InMem: 0 Det [G] PX5: 5176B379805D75ECD1900002BF9BC2003FF0C0D5
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\i8042prt - ImagePath [C:\WINDOWS\system32\DRIVERS\i8042prt.sys]
C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe InMem: 0 Det [G] PX5: 1E443CCB008E17AA203B0161FA63D50008F6D6DF
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IDriverT - ImagePath [C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDri]
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe InMem: 0 Det [GP] PX5: 4838B9E600808C3D501F0B1DED776600C9C62098
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\idsvc - ImagePath [C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Fo]
C:\WINDOWS\system32\DRIVERS\imapi.sys InMem: 0 Det [G] PX5: A6DE19768012C7FDA37F00B5535D7900050612BF
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Imapi - ImagePath [C:\WINDOWS\system32\DRIVERS\imapi.sys]
C:\WINDOWS\system32\imapi.exe InMem: 0 Det [G] PX5: 74CFCD09009BDDD14A8402202B1E530034B0D214
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ImapiService - ImagePath [C:\WINDOWS\system32\imapi.exe]
C:\WINDOWS\system32\DRIVERS\intelide.sys InMem: 0 Det [G] PX5: 13577194803FCB8815F90068ABEFAF00861C758E
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IntelIde - ImagePath [C:\WINDOWS\system32\DRIVERS\intelide.sys]
C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys InMem: 0 Det [G] PX5: 554B18088049820E711F003BBA86E4005B660DCC
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Ip6Fw - ImagePath [C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys]
C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys InMem: 0 Det [G] PX5: E130718C809C039180F700DA0AC8EE00F2B31814
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IpFilterDriver - ImagePath [C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys]
C:\WINDOWS\system32\DRIVERS\ipinip.sys InMem: 0 Det [G] PX5: 9655BFAF0030F62E523A00C352D248003081C413
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IpInIp - ImagePath [C:\WINDOWS\system32\DRIVERS\ipinip.sys]
C:\WINDOWS\system32\DRIVERS\ipnat.sys InMem: 0 Det [G] PX5: 16BC903800541BF40F8E02F0609797000CA3B3FE
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IpNat - ImagePath [C:\WINDOWS\system32\DRIVERS\ipnat.sys]
C:\WINDOWS\system32\DRIVERS\ipsec.sys InMem: 0 Det [G] PX5: 84ED89D600412A2C245201A3F8A740006B772EC6
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IPSec - ImagePath [C:\WINDOWS\system32\DRIVERS\ipsec.sys]
C:\WINDOWS\system32\DRIVERS\irenum.sys InMem: 0 Det [G] PX5: 42D7DCAC001BE9A12C7B00EF915041002AED16BC
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\IRENUM - ImagePath [C:\WINDOWS\system32\DRIVERS\irenum.sys]
C:\WINDOWS\system32\DRIVERS\isapnp.sys InMem: 0 Det [G] PX5: 8A87001A0002BFB48D1F0066402D8A00BD468997
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\isapnp - ImagePath [C:\WINDOWS\system32\DRIVERS\isapnp.sys]
C:\WINDOWS\system32\DRIVERS\kbdclass.sys InMem: 0 Det [G] PX5: 11013D51001BA498620F00A282D06D00135D5A16
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Kbdclass - ImagePath [C:\WINDOWS\system32\DRIVERS\kbdclass.sys]
C:\WINDOWS\system32\drivers\kmixer.sys InMem: 0 Det [G] PX5: 1C3250A68067C4B7A11302D8512D99006E8A628F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\kmixer - ImagePath [C:\WINDOWS\system32\drivers\kmixer.sys]
C:\WINDOWS\system32\DRIVERS\ltmdmnt.sys InMem: 0 Det [G] PX5: 2FFE5AA53C552AF44430090AC89BE2005AB34F22
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ltmodem5 - ImagePath [C:\WINDOWS\system32\DRIVERS\ltmdmnt.sys]
C:\WINDOWS\system32\mnmsrvc.exe InMem: 0 Det [G] PX5: F2F6E69800D71BFC80AE00AF40E07800F93A911A
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\mnmsrvc - ImagePath [C:\WINDOWS\system32\mnmsrvc.exe]
C:\WINDOWS\system32\DRIVERS\mouclass.sys InMem: 0 Det [G] PX5: 7E80CA6A0038C59C5C6F0047F0E35500920EB276
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Mouclass - ImagePath [C:\WINDOWS\system32\DRIVERS\mouclass.sys]
C:\WINDOWS\system32\DRIVERS\MPE.sys InMem: 0 Det [G] PX5: 7EACBCC10047DD0A3CE300370E7DD900AE871374
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MPE - ImagePath [C:\WINDOWS\system32\DRIVERS\MPE.sys]
C:\WINDOWS\system32\DRIVERS\mrxdav.sys InMem: 0 Det [G] PX5: 614867E18023D003BDFE0234E558A700F3D6C8CF
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MRxDAV - ImagePath [C:\WINDOWS\system32\DRIVERS\mrxdav.sys]
C:\WINDOWS\system32\DRIVERS\mrxsmb.sys InMem: 0 Det [G] PX5: 3A6FDF2E00838449EA5E06BDEF52FE0062D6AA8B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MRxSmb - ImagePath [C:\WINDOWS\system32\DRIVERS\mrxsmb.sys]
C:\WINDOWS\system32\msdtc.exe InMem: 0 Det [G] PX5: 3A5257C800292C38184B000639E3D800639539E0
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MSDTC - ImagePath [C:\WINDOWS\system32\msdtc.exe]
C:\WINDOWS\system32\msiexec.exe InMem: 0 Det [G] PX5: 2199A4A600D88009341401C8D9AE0A004C78202A
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MSIServer - ImagePath [C:\WINDOWS\system32\msiexec.exe]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\Msi.Package\shell\open\command - ["%SystemRoot%\System32\msiexec.exe" /i "%1" %*]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\Msi.Patch\shell\open\command - ["%SystemRoot%\System32\msiexec.exe" /p "%1" %*]
C:\WINDOWS\system32\drivers\MSKSSRV.sys InMem: 0 Det [G] PX5: 441E162B80A429811D1500CB9CEDF700CED69BEA
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MSKSSRV - ImagePath [C:\WINDOWS\system32\drivers\MSKSSRV.sys]
C:\WINDOWS\system32\drivers\MSPCLOCK.sys InMem: 0 Det [G] PX5: 3656535900693AA115D1001337247B009D5BCE4B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MSPCLOCK - ImagePath [C:\WINDOWS\system32\drivers\MSPCLOCK.sys]
C:\WINDOWS\system32\drivers\MSPQM.sys InMem: 0 Det [G] PX5: 5D7EA63E804A637C13CA0078C414AC000E912E93
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MSPQM - ImagePath [C:\WINDOWS\system32\drivers\MSPQM.sys]
C:\WINDOWS\system32\DRIVERS\mssmbios.sys InMem: 0 Det [G] PX5: 5C75220680F731D03C3D001BD399CC00D7DBED29
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\mssmbios - ImagePath [C:\WINDOWS\system32\DRIVERS\mssmbios.sys]
C:\WINDOWS\system32\drivers\MSTEE.sys InMem: 0 Det [G] PX5: EF9F4FE18003FE44154E00AC0DDE6800FF407119
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\MSTEE - ImagePath [C:\WINDOWS\system32\drivers\MSTEE.sys]
C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys InMem: 0 Det [G] PX5: 37E661E8803A144B4DFD01732787D600D94FD14F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NABTSFEC - ImagePath [C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys]
C:\WINDOWS\system32\DRIVERS\NdisIP.sys InMem: 0 Det [G] PX5: 92D82929807F4CDE2A6000D7EF7E8C008BDE37E2
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NdisIP - ImagePath [C:\WINDOWS\system32\DRIVERS\NdisIP.sys]
C:\WINDOWS\system32\DRIVERS\ndistapi.sys InMem: 0 Det [G] PX5: 25AEC9EA809D4D4825A500A2A9E22F00CCB1FFC8
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NdisTapi - ImagePath [C:\WINDOWS\system32\DRIVERS\ndistapi.sys]
C:\WINDOWS\system32\DRIVERS\ndisuio.sys InMem: 0 Det [G] PX5: 2EA05445002F5FBA39F20007FCC82A0039C28CF3
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Ndisuio - ImagePath [C:\WINDOWS\system32\DRIVERS\ndisuio.sys]
C:\WINDOWS\system32\DRIVERS\ndiswan.sys InMem: 0 Det [G] PX5: 304E26E9803B344266FF0104DAA0B500E6B358BD
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NdisWan - ImagePath [C:\WINDOWS\system32\DRIVERS\ndiswan.sys]
C:\WINDOWS\system32\DRIVERS\netbios.sys InMem: 0 Det [G] PX5: 6F5EDA40008AE18787EB007972CAB100F174D35C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NetBIOS - ImagePath [C:\WINDOWS\system32\DRIVERS\netbios.sys]
C:\WINDOWS\system32\DRIVERS\netbt.sys InMem: 0 Det [G] PX5: 7D3B6A2A0069D5737CDE020A47DE6F00F472D659
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NetBT - ImagePath [C:\WINDOWS\system32\DRIVERS\netbt.sys]
C:\WINDOWS\system32\netdde.exe InMem: 0 Det [G] PX5: AAA3C89900BB76ABBADC01BFB3AC1B00E2E8A55F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NetDDE - ImagePath [C:\WINDOWS\system32\netdde.exe]
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NetDDEdsdm - ImagePath [C:\WINDOWS\system32\netdde.exe]
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe InMem: 0 Det [G] PX5: B944119800B9F07DE0F2019CA92A0B00CF3CFD26
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NetTcpPortSharing - ImagePath [C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Fo]
C:\WINDOWS\system32\DRIVERS\nic1394.sys InMem: 0 Det [G] PX5: 720917AF800A6EE8F12400F5E9C6E000F750E215
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NIC1394 - ImagePath [C:\WINDOWS\system32\DRIVERS\nic1394.sys]
C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys InMem: 0 Det [G] PX5: A826BA3A803B83AE30C000488911C200DC3CA878
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NwlnkFlt - ImagePath [C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys]
C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys InMem: 0 Det [G] PX5: B9B73139006979BB7FBC0031EA7E320032D237D0
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\NwlnkFwd - ImagePath [C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys]
C:\WINDOWS\system32\DRIVERS\ohci1394.sys InMem: 0 Det [G] PX5: 4A6E8F7F8033FF34EE4200E871B4F300047CEC38
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ohci1394 - ImagePath [C:\WINDOWS\system32\DRIVERS\ohci1394.sys]
C:\WINDOWS\system32\DRIVERS\ctoss2k.sys InMem: 0 Det [G] PX5: 7D2D4B4800476A38C05101A3536A60002108CCCA
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ossrv - ImagePath [C:\WINDOWS\system32\DRIVERS\ctoss2k.sys]
C:\WINDOWS\system32\drivers\P17xfi.sys InMem: 0 Det [u] PX5: 47DC719B0090181BEC0511060601F6005DC78AEC
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\P17xfi - ImagePath [C:\WINDOWS\system32\drivers\P17xfi.sys]
C:\WINDOWS\system32\drivers\p17xfilt.sys InMem: 0 Det [u] PX5: BDEE7568808E9DBC65F019E6B4E7B000786FEFBD
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\p17xfilt - ImagePath [C:\WINDOWS\system32\drivers\p17xfilt.sys]
C:\WINDOWS\system32\DRIVERS\parport.sys InMem: 0 Det [G] PX5: 4A82394D8019443A393C017F618C1500973C174B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Parport - ImagePath [C:\WINDOWS\system32\DRIVERS\parport.sys]
C:\WINDOWS\system32\DRIVERS\pci.sys InMem: 0 Det [G] PX5: 9DA3602E807459480C5D01595A918400CA482387
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PCI - ImagePath [C:\WINDOWS\system32\DRIVERS\pci.sys]
C:\WINDOWS\system32\DRIVERS\pciide.sys InMem: 0 Det [G] PX5: 826808EE00CFD8500D55002AE8E7E200B79BCD14
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PCIIde - ImagePath [C:\WINDOWS\system32\DRIVERS\pciide.sys]
C:\WINDOWS\system32\DRIVERS\raspptp.sys InMem: 0 Det [G] PX5: F406FA260016D348BD2800EFDBDF52003203F53C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PptpMiniport - ImagePath [C:\WINDOWS\system32\DRIVERS\raspptp.sys]
C:\WINDOWS\system32\DRIVERS\processr.sys InMem: 0 Det [G] PX5: AF0FBDFA005416189A000040A9FF7600B2B78287
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Processor - ImagePath [C:\WINDOWS\system32\DRIVERS\processr.sys]
C:\WINDOWS\system32\DRIVERS\PS2.sys InMem: 0 Det [G] PX5: 411F91A2804C99544A88001CB74BC800226441F9
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Ps2 - ImagePath [C:\WINDOWS\system32\DRIVERS\PS2.sys]
C:\WINDOWS\system32\DRIVERS\psched.sys InMem: 0 Det [G] PX5: C7C1320E008655110E77011715C66E0009C5AE75
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PSched - ImagePath [C:\WINDOWS\system32\DRIVERS\psched.sys]
C:\WINDOWS\system32\DRIVERS\ptilink.sys InMem: 0 Det [G] PX5: F96F182D805891FA452B007EBD870E004C25BA07
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Ptilink - ImagePath [C:\WINDOWS\system32\DRIVERS\ptilink.sys]
C:\WINDOWS\System32\drivers\pxark.sys InMem: 0 Det [G] PX5: 5CDD1DE100048C0C445100F1E451270063DE9893
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\pxark - ImagePath [C:\WINDOWS\System32\drivers\pxark.sys]
C:\WINDOWS\System32\Drivers\PxHelp20.sys InMem: 0 Det [G] PX5: 24503137A0E1129C50CB00A14445A000006A34DA
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\PxHelp20 - ImagePath [C:\WINDOWS\System32\Drivers\PxHelp20.sys]
C:\WINDOWS\system32\DRIVERS\rasacd.sys InMem: 0 Det [G] PX5: EF519CA180B540A42200002C4F06E3005372DD33
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RasAcd - ImagePath [C:\WINDOWS\system32\DRIVERS\rasacd.sys]
C:\WINDOWS\system32\DRIVERS\rasl2tp.sys InMem: 0 Det [G] PX5: C15C1546804EC8E6C8410037F34FAD00B1FBF6DF
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Rasl2tp - ImagePath [C:\WINDOWS\system32\DRIVERS\rasl2tp.sys]
C:\WINDOWS\system32\DRIVERS\raspppoe.sys InMem: 0 Det [G] PX5: A8F2C94800B2E031A21A00F0EC682E009B5794D5
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RasPppoe - ImagePath [C:\WINDOWS\system32\DRIVERS\raspppoe.sys]
C:\WINDOWS\system32\DRIVERS\raspti.sys InMem: 0 Det [G] PX5: 506F10F380FEE57C406900BE351741009F00F0DE
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Raspti - ImagePath [C:\WINDOWS\system32\DRIVERS\raspti.sys]
C:\WINDOWS\system32\DRIVERS\rdbss.sys InMem: 0 Det [G] PX5: EE21D17900972EBEAA93023D87A14E0013D2E867
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Rdbss - ImagePath [C:\WINDOWS\system32\DRIVERS\rdbss.sys]
C:\WINDOWS\System32\DRIVERS\RDPCDD.sys InMem: 0 Det [G] PX5: 14FCFAAE80A686EB103300CFAE183900CB624D74
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RDPCDD - ImagePath [C:\WINDOWS\System32\DRIVERS\RDPCDD.sys]
C:\WINDOWS\system32\sessmgr.exe InMem: 0 Det [G] PX5: 2C67C68B0020C05D2C3E02893D0F09005D1CF7F5
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RDSessMgr - ImagePath [C:\WINDOWS\system32\sessmgr.exe]
C:\WINDOWS\system32\DRIVERS\redbook.sys InMem: 0 Det [G] PX5: AEF2FC7D804F986FE3C7004FF2D91D0029FD0FC2
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\redbook - ImagePath [C:\WINDOWS\system32\DRIVERS\redbook.sys]
C:\WINDOWS\system32\locator.exe InMem: 0 Det [G] PX5: C3C0A8550045DDC726E601EBB10B83000E4A4556
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RpcLocator - ImagePath [C:\WINDOWS\system32\locator.exe]
C:\WINDOWS\system32\rsvp.exe InMem: 0 Det [G] PX5: 2057508700E163D906880231F30F2D00E5519440
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RSVP - ImagePath [C:\WINDOWS\system32\rsvp.exe]
C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys InMem: 0 Det [G] PX5: D185A501804888E53360013031A46B00407A746F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\RTL8023xp - ImagePath [C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys]
C:\WINDOWS\system32\DRIVERS\RTL8139.SYS InMem: 0 Det [G] PX5: 0D1CF5B000B2C8EA5211002E76778C00F4B2E39E
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\rtl8139 - ImagePath [C:\WINDOWS\system32\DRIVERS\RTL8139.SYS]
C:\WINDOWS\System32\SCardSvr.exe InMem: 0 Det [G] PX5: FFC6D19800BAA7847E46014ECC3CD200949D4E12
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SCardSvr - ImagePath [C:\WINDOWS\System32\SCardSvr.exe]
C:\WINDOWS\system32\DRIVERS\secdrv.sys InMem: 0 Det [G] PX5: 84A9A7CB006F9ECC508100883E7135006D51A95C
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Secdrv - ImagePath [C:\WINDOWS\system32\DRIVERS\secdrv.sys]
C:\WINDOWS\system32\DRIVERS\SLIP.sys InMem: 0 Det [G] PX5: C05453A580D50DE62B1A00E6C96F380022C2D117
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SLIP - ImagePath [C:\WINDOWS\system32\DRIVERS\SLIP.sys]
C:\WINDOWS\system32\drivers\splitter.sys InMem: 0 Det [G] PX5: 249A00630095166C194E008C6AC35800063B57CE
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\splitter - ImagePath [C:\WINDOWS\system32\drivers\splitter.sys]
C:\WINDOWS\system32\DRIVERS\sr.sys InMem: 0 Det [G] PX5: 4D90659E00D8A4771F1A013E6E421F00F36027A5
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\sr - ImagePath [C:\WINDOWS\system32\DRIVERS\sr.sys]
C:\WINDOWS\system32\DRIVERS\srv.sys InMem: 0 Det [G] PX5: 75BFBC608040FEEB14BC05A8A20D28000AA8481B
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Srv - ImagePath [C:\WINDOWS\system32\DRIVERS\srv.sys]
C:\WINDOWS\system32\DRIVERS\ssmdrv.sys InMem: 0 Det [G] PX5: 9DFE8017C052ACA56EB900980E18520079AEADB0
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ssmdrv - ImagePath [C:\WINDOWS\system32\DRIVERS\ssmdrv.sys]
C:\WINDOWS\system32\DRIVERS\StreamIP.sys InMem: 0 Det [G] PX5: 37C869AE00A1D1423CD000F9D66948002AC47A8D
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\streamip - ImagePath [C:\WINDOWS\system32\DRIVERS\StreamIP.sys]
C:\WINDOWS\system32\DRIVERS\swenum.sys InMem: 0 Det [G] PX5: FDB253C8004ADC8E110200CB82EF3C003BACCEF1
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\swenum - ImagePath [C:\WINDOWS\system32\DRIVERS\swenum.sys]
C:\WINDOWS\system32\drivers\swmidi.sys InMem: 0 Det [G] PX5: D73823E800EBA9D4D48400057CBBEE004EA1E5C8
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\swmidi - ImagePath [C:\WINDOWS\system32\drivers\swmidi.sys]
C:\WINDOWS\system32\drivers\sysaudio.sys InMem: 0 Det [G] PX5: 23CF2276806778A5EDCF00D9512FDE00BB195FEF
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\sysaudio - ImagePath [C:\WINDOWS\system32\drivers\sysaudio.sys]
C:\WINDOWS\system32\smlogsvc.exe InMem: 0 Det [G] PX5: C0E6801A0095AB606A660128541E440050C06325
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\SysmonLog - ImagePath [C:\WINDOWS\system32\smlogsvc.exe]
C:\WINDOWS\system32\DRIVERS\tcpip.sys InMem: 0 Det [G] PX5: 9F6EEC1C80D7CCB57E0F0545DD505C004B15302D
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Tcpip - ImagePath [C:\WINDOWS\system32\DRIVERS\tcpip.sys]
C:\WINDOWS\system32\DRIVERS\termdd.sys InMem: 0 Det [G] PX5: 3111E3EA882052CE9F39002D38F46900A7415306
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\TermDD - ImagePath [C:\WINDOWS\system32\DRIVERS\termdd.sys]
C:\WINDOWS\system32\DRIVERS\update.sys InMem: 0 Det [s] PX5: B35240AB00E3291D321603412D8E98007B007A17
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Update - ImagePath [C:\WINDOWS\system32\DRIVERS\update.sys]
C:\WINDOWS\System32\ups.exe InMem: 0 Det [G] PX5: B1B748F7000750CB484000B4D1F04D00484BD2C2
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\UPS - ImagePath [C:\WINDOWS\System32\ups.exe]
C:\WINDOWS\system32\DRIVERS\usbccgp.sys InMem: 0 Det [G] PX5: 3051DD5F80B0E02D7BC400CFE2D7F10086CC5663
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\usbccgp - ImagePath [C:\WINDOWS\system32\DRIVERS\usbccgp.sys]
C:\WINDOWS\system32\DRIVERS\usbehci.sys InMem: 0 Det [G] PX5: BFCE7DFB80314F08694900251ACB2400EB6D5705
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\usbehci - ImagePath [C:\WINDOWS\system32\DRIVERS\usbehci.sys]
C:\WINDOWS\system32\DRIVERS\usbhub.sys InMem: 0 Det [G] PX5: 1972CD35009EF197E1E10053A918EE0090181966
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\usbhub - ImagePath [C:\WINDOWS\system32\DRIVERS\usbhub.sys]
C:\WINDOWS\system32\DRIVERS\usbohci.sys InMem: 0 Det [G] PX5: 97A6F69780D7B5F44212000A79EBE000E5CEE5D9
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\usbohci - ImagePath [C:\WINDOWS\system32\DRIVERS\usbohci.sys]
C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS InMem: 0 Det [G] PX5: 6135CAAA80509344675C002A218295006093CEAA
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\USBSTOR - ImagePath [C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS]
C:\WINDOWS\system32\DRIVERS\usbuhci.sys InMem: 0 Det [G] PX5: 4756F37D00016D8B5030004DF844F10054C11836
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\usbuhci - ImagePath [C:\WINDOWS\system32\DRIVERS\usbuhci.sys]
C:\WINDOWS\System32\drivers\vga.sys InMem: 0 Det [G] PX5: 14B18202007EA0B752C8003693833D00BCED634F
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\VgaSave - ImagePath [C:\WINDOWS\System32\drivers\vga.sys]
C:\WINDOWS\system32\DRIVERS\viaide.sys InMem: 0 Det [G] PX5: 763F36E3001A65E115B100F2DCFD2A00D63490D3
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\ViaIde - ImagePath [C:\WINDOWS\system32\DRIVERS\viaide.sys]
C:\WINDOWS\System32\vssvc.exe InMem: 0 Det [G] PX5: F8FD01E1006746AE7C9C04ADE2180F00B254A617
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\VSS - ImagePath [C:\WINDOWS\System32\vssvc.exe]
C:\WINDOWS\system32\DRIVERS\wanarp.sys InMem: 0 Det [G] PX5: D61BDDFF00BF41D487E5002B87E94900EE92AF43
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\Wanarp - ImagePath [C:\WINDOWS\system32\DRIVERS\wanarp.sys]
C:\WINDOWS\system32\DRIVERS\wceusbsh.sys InMem: 0 Det [G] PX5: 5E621E0F80F4337A984C01AC450E4400759BD954
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\wceusbsh - ImagePath [C:\WINDOWS\system32\DRIVERS\wceusbsh.sys]
C:\WINDOWS\system32\drivers\wdmaud.sys InMem: 0 Det [G] PX5: 1A706C8200C406CF446E0184AD924B00FE330A09
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\wdmaud - ImagePath [C:\WINDOWS\system32\drivers\wdmaud.sys]
C:\Programmi\Windows Live\installer\WLSetupSvc.exe InMem: 0 Det [G] PX5: 2D572DB3008F010D10110431BDE6C6002A62A0E0
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WLSetupSvc - ImagePath [C:\Programmi\Windows Live\installer\WLSetupSvc.exe]
C:\WINDOWS\system32\wbem\wmiapsrv.exe InMem: 0 Det [G] PX5: A8EB9B0C007C19C1EE9501FD1D31580061EB57F5
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WmiApSrv - ImagePath [C:\WINDOWS\system32\wbem\wmiapsrv.exe]
C:\Programmi\Windows Media Player\WMPNetwk.exe InMem: 0 Det [G] PX5: AF2881470070FC5204AF0EFACB168500F7ECD6E8
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WMPNetworkSvc - ImagePath [C:\Programmi\Windows Media Player\WMPNetwk.exe]
C:\WINDOWS\system32\DRIVERS\wn5301.sys InMem: 0 Det [G] PX5: 636CB87420C42D1A2756070A999D2E007A9147DD
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WN5301 - ImagePath [C:\WINDOWS\system32\DRIVERS\wn5301.sys]
C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS InMem: 0 Det [G] PX5: B2CFBF068074D4084BB4001A2B9A35007D8AF7A1
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WSTCODEC - ImagePath [C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS]
C:\WINDOWS\system32\DRIVERS\WudfPf.sys InMem: 0 Det [G] PX5: 0CF32E7D00C942692FB1016FE6CD6B005D0F67E4
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WudfPf - ImagePath [C:\WINDOWS\system32\DRIVERS\WudfPf.sys]
C:\WINDOWS\system32\DRIVERS\wudfrd.sys InMem: 0 Det [G] PX5: 938378B8001690D3445C01DE64563A001F0572DD
REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet001\Services\WudfRd - ImagePath [C:\WINDOWS\system32\DRIVERS\wudfrd.sys]
C:\WINDOWS\SMINST\RECGUARD.EXE InMem: 0 Det [G] PX5: 2A7D8F2700FFDAB7A0DF03DCD1B61E001BE7EB2F
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - Recguard [C:\WINDOWS\SMINST\RECGUARD.EXE]
C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe InMem: 0 Det [G] PX5: BFBBA74F00257639D04A03C9183414003657AB25
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - HPBootOp ["C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /r]
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe InMem: 0 Det [G] PX5: 9D0CCAE20092672DF0620073830FCB007114ACD2
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - StartCCC ["C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"]
C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe InMem: 0 Det [G] PX5: 0BD664F3706337589B0400C763D75F001A3AA70D
REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - Adobe Reader Speed Launcher ["C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"]
C:\WINDOWS\MIDIDef.exe InMem: 0 Det [G] PX5: C5D8B733008B7BAF20BD013C5A53B20001EEEADC
REGRUNKEY - \REGISTRY\User\S-1-5-21-1233594246-1864035502-810251401-1008\Software\Microsoft\Windows\CurrentVersion\Run - SetDefaultMIDI [MIDIDef.exe]
C:\WINDOWS\system32\userinit.exe InMem: 0 Det [G] PX5: 33A4BB2F001DA1EB620B00510674AE00F15A5361
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - UserInit [C:\WINDOWS\system32\userinit.exe]
C:\WINDOWS\system32\logonui.exe InMem: 0 Det [G] PX5: 6B3184960083D65D740B4161A1341000B5536ECD
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - UIHost [logonui.exe]
C:\WINDOWS\system32\autochk.exe InMem: 0 Det [G] PX5: 38890F3300760B775A86096430A56A00DB68AE82
REGSESSMGR - \REGISTRY\Machine\System\CurrentControlSet\Control\Session Manager - BootExecute [autocheck]
C:\WINDOWS\system32\Java.exe InMem: 0 Det [G] PX5: CF91D0AB004CEFDC105802D2BC227B00090E7C09
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500} - [Java (Sun)]
C:\Programmi\Java\jre1.6.0_05\bin\regutils.dll InMem: 0 Det [G] PX5: 213BA2D6009F7AFCA001037EC3CA600034BAE506
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500} - KeyFileName [C:\Programmi\Java\jre1.6.0_05\bin\regutils.dll]
C:\Programmi\Messenger\msmsgs.exe InMem: 0 Det [G] PX5: 937DB9BC008B29B4DA13198C306CAF00327E8384
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be} - KeyFileName [C:\Programmi\Messenger\msmsgs.exe]
REGEXPSHELL - \REGISTRY\Machine\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683} - Exec [C:\Programmi\Messenger\msmsgs.exe]
C:\WINDOWS\system32\msieftp.dll InMem: 0 Det [G] PX5: 44133DFB00C5C1B9D64903B9EB9B6E00A95E5477
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9} - KeyFileName [C:\WINDOWS\system32\msieftp.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{63da6ec0-2e98-11cf-8d82-444553540000}\InprocServer32 - {63da6ec0-2e98-11cf-8d82-444553540000} [C:\WINDOWS\system32\msieftp.dll]
C:\WINDOWS\system32\ieudinit.exe InMem: 0 Det [G] PX5: 65B8277E00728720360A0021165ED3001AD7DB4D
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - StubPath [C:\WINDOWS\system32\ieudinit.exe]
C:\WINDOWS\inf\unregmp2.exe InMem: 0 Det [G] PX5: 62D1ABBC006680A4DC3104F3FD5F6600BA9B55C1
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Stubpath [C:\WINDOWS\inf\unregmp2.exe /ShowWMP]
C:\WINDOWS\system32\ie4uinit.exe InMem: 0 Det [G] PX5: 9A1C3E60007CDE2C142401425FEA5D00032D0296
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c} - StubPath [C:\WINDOWS\system32\ie4uinit.exe -UserIconConfig]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383} - StubPath [C:\WINDOWS\system32\ie4uinit.exe -BaseSettings]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c} - LocalizedName [@C:\WINDOWS\system32\ie4uinit.exe,-21]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383} - LocalizedName [@C:\WINDOWS\system32\ie4uinit.exe,-20]
C:\WINDOWS\system32\IEDKCS32.DLL InMem: 0 Det [G] PX5: 3263DCFC00A76C9BDE4E05E4625BFB00FDC91604
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF} - StubPath [RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF} - LocalizedName [@C:\WINDOWS\system32\iedkcs32.dll,-3052]
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} - DllName [iedkcs32.dll]
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{A2E30F80-D7DE-11d2-BBDE-00C04F86AE3B} - DllName [iedkcs32.dll]
C:\WINDOWS\system32\shmgrate.exe InMem: 0 Det [G] PX5: 20602ECB00AD0F89A6D6007CC62E8E00FE74C13B
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - StubPath [%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE]
C:\WINDOWS\system32\regsvr32.exe InMem: 0 Det [G] PX5: 9F2DE48F0086912530FD001A3E083800D58E0872
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED} - StubPath [%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %System]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340} - StubPath [regsvr32.exe /s /n /i:U shell32.dll]
C:\Programmi\Outlook Express\setup50.exe InMem: 0 Det [G] PX5: 990052A900467F972069015D0AA93E00C6116D6B
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C} - StubPath ["%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WIN]
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02} - StubPath ["%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WI]
c:\WINDOWS\system32\mscories.dll InMem: 0 Det [G] PX5: A1E5D46000077E234AFE018627387200E6C886DB
REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820} - StubPath [c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dl]
C:\WINDOWS\system32\logon.scr InMem: 0 Det [G] PX5: 509D0B6F00114C17D81847F3B4819D008776712B
REGSCRNSAVE - \REGISTRY\User\.DEFAULT\Control Panel\Desktop - SCRNSAVE.EXE [logon.scr]
REGSCRNSAVE - \REGISTRY\User\S-1-5-19\Control Panel\Desktop - SCRNSAVE.EXE [%SystemRoot%\System32\logon.scr]
REGSCRNSAVE - \REGISTRY\User\S-1-5-20\Control Panel\Desktop - SCRNSAVE.EXE [%SystemRoot%\System32\logon.scr]
REGSCRNSAVE - \REGISTRY\User\S-1-5-18\Control Panel\Desktop - SCRNSAVE.EXE [logon.scr]
C:\WINDOWS\system32\dskquota.dll InMem: 0 Det [G] PX5: 67A29FF30003BFCF6E3801450DA1040095E8819B
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66} - DllName [dskquota.dll]
C:\WINDOWS\system32\Security.dll InMem: 0 Det [G] PX5: 6E962CC0006BCF2D162C007F8D738E00DB8BC691
REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} - [Security]
C:\WINDOWS\system32\sclgntfy.dll InMem: 0 Det [G] PX5: 164435B300B5B4E0548400AA1F6E0800C2CDD06A
REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy - DllName [sclgntfy.dll]
C:\WINDOWS\system32\comm.drv InMem: 0 Det [G] PX5: 0D8B262B3068553F296F004B25B4F300F3172575
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - comm.drv [comm.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\vga.drv InMem: 0 Det [G] PX5: 8D38D13480CC42FA089200F6F3895F00B79BCD14
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - display.drv [vga.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\mmsystem.dll InMem: 0 Det [G] PX5: B7018ADE208113FC103101C8EB6DD700B1D99765
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - drivers [mmsystem.dll]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\keyboard.drv InMem: 0 Det [G] PX5: 159F7A82D0C5E0D3077700FE801B1000B79BCD14
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - keyboard.drv [keyboard.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\mouse.drv InMem: 0 Det [G] PX5: D9EA0CB2F0FB384407BE00D28D0C0C00B79BCD14
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - mouse.drv [mouse.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\wfwnet.drv InMem: 0 Det [G] PX5: E9641F0220200734353000D28FC59A003BEC664C
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - network.drv [wfwnet.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\progman.exe InMem: 0 Det [G] PX5: C0D0815600445D69AC3B01B2DAB067005DE0E11A
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - shell [progman.exe]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\sound.drv InMem: 0 Det [G] PX5: E70CAE91D00DCE52067C00647C846400B79BCD14
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - sound.drv [sound.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\system.drv InMem: 0 Det [G] PX5: D4BD27742043BEDB0DB0000478EA5C00B79BCD14
REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - system.drv [system.drv]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\ntvdm.exe InMem: 0 Det [G] PX5: DFD881F400018F016A4F06473E7EAA001AE7779E
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - cmdline [%SystemRoot%\system32\ntvdm.exe]
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - wowcmdline [%SystemRoot%\system32\ntvdm.exe -a %SystemRoot%\system32\krnl386]
C:\WINDOWS\system32\krnl386.exe InMem: 0 Det [G] PX5: 01F6A66B6040DCB569EA013E85A2EE004745F621
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - wowcmdline [%SystemRoot%\system32\ntvdm.exe -a %SystemRoot%\system32\krnl386]
C:\WINDOWS\system32\commdlg.dll InMem: 0 Det [G] PX5: D41FE74160643BD6833B006BB7E5A9004410FDC1
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\ctl3dv2.dll InMem: 0 Det [G] PX5: C84734B440655DC66A4D00304EF8AC0014627D07
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\ddeml.dll InMem: 0 Det [G] PX5: 87F926CB00F2CB349A1200182C7413003E6FB37C
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\lanman.drv InMem: 0 Det [G] PX5: A797EACD0BCFF4C3663403FC8369B500D2DCA4A2
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\netapi.dll InMem: 0 Det [G] PX5: 3B2621E2C04DF3B2A77E0156CAF52A0029A06ED9
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\olecli.dll InMem: 0 Det [G] PX5: B5F4F24400858B0246DF0121D0BC320031CB25FD
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\olesvr.dll InMem: 0 Det [G] PX5: CE221EF60049CF2B5E3B009B247C6A00F018477F
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\pmspl.dll InMem: 0 Det [G] PX5: 98CDEBDE0094268EB67200C1C6BF85009014DA93
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\shell.dll InMem: 0 Det [G] PX5: CE2E2C35000BF1E3147B0046192BB900FA35E49E
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\toolhelp.dll InMem: 0 Det [G] PX5: 87219368400265353643009B30E21C003936EBD7
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\win87em.dll InMem: 0 Det [G] PX5: 22C03F9D0005E87A34B40075B0F00E00517D625F
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\winoldap.mod InMem: 0 Det [G] PX5: E19A53B2202676D208C7002132DA8800B79BCD14
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\winsock.dll InMem: 0 Det [G] PX5: FCF9BBDC30E28D0D0BF200D9F4D9CD00B79BCD14
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\winspool.exe InMem: 0 Det [G] PX5: F5BB157440E5748C08D600021F9AD300B79BCD14
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\wowdeb.exe InMem: 0 Det [G] PX5: C1613D5DB0A80A260ABB006471357400B79BCD14
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\timer.drv InMem: 0 Det [G] PX5: 01DC5380F09B29550F040024FDB8830045F6872C
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\compobj.dll InMem: 0 Det [G] PX5: DA21156DD0BCD8E77562007DCF26A600F4FFDA3F
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\storage.dll InMem: 0 Det [G] PX5: 60BAD4D270E3252C10B800A49D4C780095AFB292
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\ole2.dll InMem: 0 Det [G] PX5: F2FC4A2A40B7B6B59BDF00629364AB00A54AED31
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\ole2disp.dll InMem: 0 Det [G] PX5: 3E66404830EBCC7296B902E3361C6400BE12EFF7
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\ole2nls.dll InMem: 0 Det [G] PX5: 09B13294B021FA9E558F026E08072F00900228B5
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\typelib.dll InMem: 0 Det [G] PX5: C0620321C004C14EB60D020DCCE16200701F9AEA
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\msvideo.dll InMem: 0 Det [G] PX5: 790EE65FC0939660F0F4012F00509C00EF668BF3
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\avifile.dll InMem: 0 Det [G] PX5: 23078576D07C879BAB0E016052733100CC123BD6
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\msacm.dll InMem: 0 Det [G] PX5: 9509859960B48961EF3C0048E192C7002EB67DBB
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\mciavi.drv InMem: 0 Det [G] PX5: 8B09E9FBC0AC80C41F5801300F1C5F00B1E6B4D8
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\mciseq.drv InMem: 0 Det [G] PX5: 6F3561B8D089079262B000F61C353D001FC85F9C
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\mciwave.drv InMem: 0 Det [G] PX5: 2D1A8D9600222A826E980084C50D45003B805765
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\WINDOWS\system32\avicap.dll InMem: 0 Det [G] PX5: 8D50F512B0D5AAB0126C01BC85534E00FA0EC9E8
REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll InMem: 0 Det [G] PX5: 336AA56240D45F5AB86806348502AC00F41B345A
REGBHO - \REGISTRY\Machine\Software\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}\InprocServer32 - NoExplorer [C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll]
REGTOOLBAR - \REGISTRY\Machine\Software\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\InprocServer32 - {EF99BD32-C1FB-11D2-892F-0090271D4F88} [C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll]
C:\WINDOWS\system32\ntsd.exe InMem: 0 Det [G] PX5: 834FBBDD002D211C7C10004432E9BD00FC3D4F55
REGIFEO - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a - Debugger [ntsd -d]
C:\WINDOWS\system32\mmsys.cpl InMem: 0 Det [G] PX5: 22BCF726009533B3AECD2E3581FB0B00005B46BE
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{00022613-0000-0000-C000-000000000046}\InprocServer32 - {00022613-0000-0000-C000-000000000046} [mmsys.cpl]
C:\WINDOWS\system32\icmui.dll InMem: 0 Det [G] PX5: 79852F4F004FA70AD8870036A8B3F300BFB6CC72
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{176d6597-26d3-11d1-b350-080036a75b03}\InprocServer32 - {176d6597-26d3-11d1-b350-080036a75b03} [icmui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{5DB2625A-54DF-11D0-B6C4-0800091AA605}\InprocServer32 - {5DB2625A-54DF-11D0-B6C4-0800091AA605} [%SystemRoot%\System32\icmui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{675F097E-4C4D-11D0-B6C1-0800091AA605}\InprocServer32 - {675F097E-4C4D-11D0-B6C1-0800091AA605} [%SystemRoot%\system32\icmui.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{DBCE2480-C732-101B-BE72-BA78E9AD5B27}\InprocServer32 - {DBCE2480-C732-101B-BE72-BA78E9AD5B27} [%SystemRoot%\system32\icmui.dll]
C:\WINDOWS\system32\rshx32.dll InMem: 0 Det [G] PX5: 8E3D69C300B1B3BBA05400C01998E00021B13B08
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{1F2E5C40-9550-11CE-99D2-00AA006E086C}\InprocServer32 - {1F2E5C40-9550-11CE-99D2-00AA006E086C} [rshx32.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}\InprocServer32 - {F37C5810-4D3F-11d0-B4BF-00AA00BBB723} [rshx32.dll]
C:\WINDOWS\system32\docprop.dll InMem: 0 Det [G] PX5: 4D155A630014F006B8E7003E1F6CD600C0918C31
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3EA48300-8CF6-101B-84FB-666CCB9BCD32}\InprocServer32 - {3EA48300-8CF6-101B-84FB-666CCB9BCD32} [docprop.dll]
C:\WINDOWS\system32\deskadp.dll InMem: 0 Det [G] PX5: 1FEBC52C0075696A427B005EACC72200AF70D61C
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{42071712-76d4-11d1-8b24-00a0c9068ff3}\InprocServer32 - {42071712-76d4-11d1-8b24-00a0c9068ff3} [deskadp.dll]
C:\WINDOWS\system32\deskmon.dll InMem: 0 Det [G] PX5: E6AC7E1B00B434737AD70033642CB100E74E7029
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{42071713-76d4-11d1-8b24-00a0c9068ff3}\InprocServer32 - {42071713-76d4-11d1-8b24-00a0c9068ff3} [deskmon.dll]
C:\WINDOWS\system32\dssec.dll InMem: 0 Det [G] PX5: BF365090005B6ECFCC56008F370997000EDC51ED
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{4E40F770-369C-11d0-8922-00A024AB2DBB}\InprocServer32 - {4E40F770-369C-11d0-8922-00A024AB2DBB} [dssec.dll]
C:\WINDOWS\system32\SlayerXP.dll InMem: 0 Det [G] PX5: 071E70380069307964410011CDEF880004B79666
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}\InprocServer32 - {513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8} [SlayerXP.dll]
C:\WINDOWS\system32\shscrap.dll InMem: 0 Det [G] PX5: CEE438A6004ACC126CE400DA76EA3300F6FBD343
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{56117100-C0CD-101B-81E2-00AA004AE837}\InprocServer32 - {56117100-C0CD-101B-81E2-00AA004AE837} [shscrap.dll]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\ShellScrap\shell\open\command - [rundll32 %SystemRoot%\system32\shscrap.dll,OpenScrap_RunDLL %1]
C:\WINDOWS\system32\diskcopy.dll InMem: 0 Det [G] PX5: 74FF218D0092AEB8EC3016F62F9A37009BC24342
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{59099400-57FF-11CE-BD94-0020AF85B590}\InprocServer32 - {59099400-57FF-11CE-BD94-0020AF85B590} [diskcopy.dll]
C:\WINDOWS\system32\ntlanui2.dll InMem: 0 Det [G] PX5: 0FBD6225003D84B73AA5000A7557EF00532B5590
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{59be4990-f85c-11ce-aff7-00aa003ca9f6}\InprocServer32 - {59be4990-f85c-11ce-aff7-00aa003ca9f6} [ntlanui2.dll]
C:\WINDOWS\system32\printui.dll InMem: 0 Det [G] PX5: CFC465B500331E10388C18062B62D700F304412A
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{77597368-7b15-11d0-a0c2-080036af3f03}\InprocServer32 - {77597368-7b15-11d0-a0c2-080036af3f03} [printui.dll]
C:\WINDOWS\system32\dskquoui.dll InMem: 0 Det [G] PX5: 22C011F30068927142C902641380E9009CE9DCD6
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7988B573-EC89-11cf-9C00-00AA00A14F56}\InprocServer32 - {7988B573-EC89-11cf-9C00-00AA00A14F56} [dskquoui.dll]
C:\WINDOWS\system32\syncui.dll InMem: 0 Det [G] PX5: 32CB8DAC001BF20AF6D60250E1D558008C7994BA
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}\InprocServer32 - {85BBD920-42A0-1069-A2E4-08002B30309D} [syncui.dll]
C:\WINDOWS\system32\hticons.dll InMem: 0 Det [G] PX5: FDDAAC340069DC70AEDE004813C9AE00464F204F
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{88895560-9AA2-1069-930E-00AA0030EBC8}\InprocServer32 - {88895560-9AA2-1069-930E-00AA0030EBC8} [C:\WINDOWS\system32\hticons.dll]
C:\WINDOWS\system32\fontext.dll InMem: 0 Det [G] PX5: A9B1E4F600762191E233053033E9D8001908E1DB
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{BD84B380-8CA2-1069-AB1D-08000948F534}\InprocServer32 - {BD84B380-8CA2-1069-AB1D-08000948F534} [fontext.dll]
C:\WINDOWS\system32\deskperf.dll InMem: 0 Det [G] PX5: DEBA621400871F794A8D0005514927006E3B795A
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{f92e8c40-3d33-11d2-b1aa-080036a75b03}\InprocServer32 - {f92e8c40-3d33-11d2-b1aa-080036a75b03} [deskperf.dll]
C:\WINDOWS\system32\cryptext.dll InMem: 0 Det [G] PX5: 144B846200DE013DD4E800E6AFBAF700F56839D9
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\InprocServer32 - {7444C717-39BF-11D1-8CD9-00C04FC29D45} [C:\WINDOWS\system32\cryptext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7444C719-39BF-11D1-8CD9-00C04FC29D45}\InprocServer32 - {7444C719-39BF-11D1-8CD9-00C04FC29D45} [C:\WINDOWS\system32\cryptext.dll]
C:\WINDOWS\system32\wiashext.dll InMem: 0 Det [G] PX5: C96A74CF00663EB136B213D765C2F900E04A8270
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E211B736-43FD-11D1-9EFB-0000F8757FCD}\InprocServer32 - {E211B736-43FD-11D1-9EFB-0000F8757FCD} [wiashext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD}\InprocServer32 - {FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD} [wiashext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{905667aa-acd6-11d2-8080-00805f6596d2}\InprocServer32 - {905667aa-acd6-11d2-8080-00805f6596d2} [wiashext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{3F953603-1008-4f6e-A73A-04AAC7A992F1}\InprocServer32 - {3F953603-1008-4f6e-A73A-04AAC7A992F1} [wiashext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{83bbcbf3-b28a-4919-a5aa-73027445d672}\InprocServer32 - {83bbcbf3-b28a-4919-a5aa-73027445d672} [wiashext.dll]
C:\WINDOWS\system32\remotepg.dll InMem: 0 Det [G] PX5: B276FC4B0072F7D1EE38004C043BDE00E8D7EAE4
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F0152790-D56E-4445-850E-4F3117DB740C}\InprocServer32 - {F0152790-D56E-4445-850E-4F3117DB740C} [C:\WINDOWS\system32\remotepg.dll]
C:\WINDOWS\system32\wshext.dll InMem: 0 Det [G] PX5: 66026A8D0045E4F800BE0104F649E900B9F8B8B3
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{60254CA5-953B-11CF-8C96-00AA00B8708C}\InprocServer32 - {60254CA5-953B-11CF-8C96-00AA00B8708C} [C:\WINDOWS\system32\wshext.dll]
C:\Programmi\File comuni\System\Ole DB\oledb32.dll InMem: 0 Det [G] PX5: 722A7F0200065713701D079CB9F9D70095D47802
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{2206CDB2-19C1-11D1-89E0-00C04FD7A829}\InprocServer32 - {2206CDB2-19C1-11D1-89E0-00C04FD7A829} [C:\Programmi\File comuni\System\Ole DB\oledb32.dll]
C:\WINDOWS\system32\mstask.dll InMem: 0 Det [G] PX5: 28BAE091003DDB7212B2048CE9759F00F25067B9
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF}\InprocServer32 - {DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF} [C:\WINDOWS\system32\mstask.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF}\InprocServer32 - {797F1E90-9EDD-11cf-8D8E-00AA0060F5BF} [C:\WINDOWS\system32\mstask.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{D6277990-4C6A-11CF-8D87-00AA0060F5BF}\InprocServer32 - {D6277990-4C6A-11CF-8D87-00AA0060F5BF} [C:\WINDOWS\system32\mstask.dll]
C:\WINDOWS\system32\wuaucpl.cpl InMem: 0 Det [G] PX5: DEC1D60858D0AD975D160A850E3A98002BADBBB1
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{5F327514-6C5E-4d60-8F16-D07FA08A78ED}\InprocServer32 - {5F327514-6C5E-4d60-8F16-D07FA08A78ED} [C:\WINDOWS\system32\wuaucpl.cpl]
C:\WINDOWS\system32\twext.dll InMem: 0 Det [G] PX5: 83D6D2D5007A7A78AC5A00555BE37F0060757F73
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{596AB062-B4D2-4215-9F74-E9109B0A8153}\InprocServer32 - {596AB062-B4D2-4215-9F74-E9109B0A8153} [%SystemRoot%\system32\twext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9DB7A13C-F208-4981-8353-73CC61AE2783}\InprocServer32 - {9DB7A13C-F208-4981-8353-73CC61AE2783} [%SystemRoot%\system32\twext.dll]
C:\WINDOWS\system32\sendmail.dll InMem: 0 Det [G] PX5: 89815E52001B0148D88B0081AF133A006B487C42
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}\InprocServer32 - {9E56BE60-C50F-11CF-9A2C-00A0C90A90CE} [C:\WINDOWS\system32\sendmail.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}\InprocServer32 - {9E56BE61-C50F-11CF-9A2C-00A0C90A90CE} [C:\WINDOWS\system32\sendmail.dll]
C:\WINDOWS\system32\occache.dll InMem: 0 Det [G] PX5: F10821C1000CBE9F925701EC3188C200036A2AD5
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{88C6C381-2E85-11D0-94DE-444553540000}\InprocServer32 - {88C6C381-2E85-11D0-94DE-444553540000} [C:\WINDOWS\system32\occache.dll]
C:\WINDOWS\system32\appwiz.cpl InMem: 0 Det [G] PX5: 7BF23A6100E0F96740F21188CE0D3F0086CF8BB7
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{352EC2B7-8B9A-11D1-B8AE-006008059382}\InprocServer32 - {352EC2B7-8B9A-11D1-B8AE-006008059382} [%SystemRoot%\system32\appwiz.cpl]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{0B124F8F-91F0-11D1-B8B5-006008059382}\InprocServer32 - {0B124F8F-91F0-11D1-B8B5-006008059382} [%SystemRoot%\system32\appwiz.cpl]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{CFCCC7A0-A282-11D1-9082-006008059382}\InprocServer32 - {CFCCC7A0-A282-11D1-9082-006008059382} [%SystemRoot%\system32\appwiz.cpl]
C:\WINDOWS\system32\netplwiz.dll InMem: 0 Det [G] PX5: C0B90A180022DF616EE40D61CC92200055AE5438
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{CC6EEFFB-43F6-46c5-9619-51D571967F7D}\InprocServer32 - {CC6EEFFB-43F6-46c5-9619-51D571967F7D} [%SystemRoot%\system32\netplwiz.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{add36aa8-751a-4579-a266-d66f5202ccbb}\InprocServer32 - {add36aa8-751a-4579-a266-d66f5202ccbb} [%SystemRoot%\system32\netplwiz.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6b33163c-76a5-4b6c-bf21-45de9cd503a1}\InprocServer32 - {6b33163c-76a5-4b6c-bf21-45de9cd503a1} [%SystemRoot%\system32\netplwiz.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{58f1f272-9240-4f51-b6d4-fd63d1618591}\InprocServer32 - {58f1f272-9240-4f51-b6d4-fd63d1618591} [%SystemRoot%\system32\netplwiz.dll]
C:\WINDOWS\system32\extmgr.dll InMem: 0 Det [G] PX5: D95335C800F763A908F2023BD2C33B00B858632A
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{692F0339-CBAA-47e6-B5B5-3B84DB604E87}\InprocServer32 - {692F0339-CBAA-47e6-B5B5-3B84DB604E87} [C:\WINDOWS\system32\extmgr.dll]
C:\WINDOWS\system32\docprop2.dll InMem: 0 Det [G] PX5: BAD4E96E0064F346BC36008E2891DB0060D308D0
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{883373C3-BF89-11D1-BE35-080036B11A03}\InprocServer32 - {883373C3-BF89-11D1-BE35-080036B11A03} [C:\WINDOWS\system32\docprop2.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{A9CF0EAE-901A-4739-A481-E35B73E47F6D}\InprocServer32 - {A9CF0EAE-901A-4739-A481-E35B73E47F6D} [C:\WINDOWS\system32\docprop2.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{8EE97210-FD1F-4B19-91DA-67914005F020}\InprocServer32 - {8EE97210-FD1F-4B19-91DA-67914005F020} [C:\WINDOWS\system32\docprop2.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{0EEA25CC-4362-4A12-850B-86EE61B0D3EB}\InprocServer32 - {0EEA25CC-4362-4A12-850B-86EE61B0D3EB} [C:\WINDOWS\system32\docprop2.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{6A205B57-2567-4A2C-B881-F787FAB579A3}\InprocServer32 - {6A205B57-2567-4A2C-B881-F787FAB579A3} [C:\WINDOWS\system32\docprop2.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33}\InprocServer32 - {28F8A4AC-BBB3-4D9B-B177-82BFC914FA33} [C:\WINDOWS\system32\docprop2.dll]
C:\WINDOWS\system32\dsquery.dll InMem: 0 Det [G] PX5: 97CEB5F9000C9E25AA2703A3E1CE88000E6ADB1E
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{8A23E65E-31C2-11d0-891C-00A024AB2DBB}\InprocServer32 - {8A23E65E-31C2-11d0-891C-00A024AB2DBB} [%SystemRoot%\system32\dsquery.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{9E51E0D0-6E0F-11d2-9601-00C04FA31A86}\InprocServer32 - {9E51E0D0-6E0F-11d2-9601-00C04FA31A86} [%SystemRoot%\system32\dsquery.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}\InprocServer32 - {163FDC20-2ABC-11d0-88F0-00A024AB2DBB} [%SystemRoot%\system32\dsquery.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F020E586-5264-11d1-A532-0000F8757D7E}\InprocServer32 - {F020E586-5264-11d1-A532-0000F8757D7E} [%SystemRoot%\system32\dsquery.dll]
C:\WINDOWS\system32\dsuiext.dll InMem: 0 Det [G] PX5: 6A192EC500170EFDBCEB0145A96D9300BCCCF2CE
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{0D45D530-764B-11d0-A1CA-00AA00C16E65}\InprocServer32 - {0D45D530-764B-11d0-A1CA-00AA00C16E65} [%SystemRoot%\system32\dsuiext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{62AE1F9A-126A-11D0-A14B-0800361B1103}\InprocServer32 - {62AE1F9A-126A-11D0-A14B-0800361B1103} [%SystemRoot%\system32\dsuiext.dll]
C:\WINDOWS\system32\mydocs.dll InMem: 0 Det [G] PX5: 57E2829600BA664D6A3505A4D8468A00D383A49F
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ECF03A33-103D-11d2-854D-006008059367}\InprocServer32 - {ECF03A33-103D-11d2-854D-006008059367} [%SystemRoot%\system32\mydocs.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ECF03A32-103D-11d2-854D-006008059367}\InprocServer32 - {ECF03A32-103D-11d2-854D-006008059367} [%SystemRoot%\system32\mydocs.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{4a7ded0a-ad25-11d0-98a8-0800361b1103}\InprocServer32 - {4a7ded0a-ad25-11d0-98a8-0800361b1103} [%SystemRoot%\system32\mydocs.dll]
C:\WINDOWS\msagent\agentpsh.dll InMem: 0 Det [G] PX5: 7469413C00931FFF5E8700E559045400C1A9DC6C
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{143A62C8-C33B-11D1-84FE-00C04FA34A14}\InprocServer32 - {143A62C8-C33B-11D1-84FE-00C04FA34A14} [C:\WINDOWS\msagent\agentpsh.dll]
C:\WINDOWS\system32\dfsshlex.dll InMem: 0 Det [G] PX5: C56F8BCC000B5CE570B200C57894E100F757413D
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6}\InprocServer32 - {ECCDF543-45CC-11CE-B9BF-0080C87CDBA6} [C:\WINDOWS\system32\dfsshlex.dll]
C:\WINDOWS\system32\photowiz.dll InMem: 0 Det [G] PX5: B7418C4500E88487A00C02F731B52500E7F273D2
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{60fd46de-f830-4894-a628-6fa81bc0190d}\InprocServer32 - {60fd46de-f830-4894-a628-6fa81bc0190d} [%SystemRoot%\system32\photowiz.dll]
C:\WINDOWS\System32\mmcshext.dll InMem: 0 Det [G] PX5: 8A0ADE010092153AC6C80087DEA97400BEB13B83
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7A80E4A8-8005-11D2-BCF8-00C04F72C717}\InprocServer32 - {7A80E4A8-8005-11D2-BCF8-00C04F72C717} [%SystemRoot%\System32\mmcshext.dll]
C:\WINDOWS\system32\cabview.dll InMem: 0 Det [G] PX5: 3D37E41700A8F7F74C2701763FA52300CB1B48CD
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}\InprocServer32 - {0CD7A5C0-9F37-11CE-AE65-08002B2E1262} [cabview.dll]
C:\Programmi\Outlook Express\wabfind.dll InMem: 0 Det [G] PX5: 4FBC213F00A9A845805300462EEB2700C79BF84F
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{32714800-2E5F-11d0-8B85-00AA0044F941}\InprocServer32 - {32714800-2E5F-11d0-8B85-00AA0044F941} [C:\Programmi\Outlook Express\wabfind.dll]
C:\WINDOWS\system32\wmpshell.dll InMem: 0 Det [G] PX5: A257F2F40064E0C786EE01FC6369D9002CF4EA3F
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{8DD448E6-C188-4aed-AF92-44956194EB1F}\InprocServer32 - {8DD448E6-C188-4aed-AF92-44956194EB1F} [C:\WINDOWS\system32\wmpshell.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C}\InprocServer32 - {CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C} [C:\WINDOWS\system32\wmpshell.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD}\InprocServer32 - {F1B9284F-E9DC-4e68-9D7E-42362A59F0FD} [C:\WINDOWS\system32\wmpshell.dll]
C:\WINDOWS\system32\ShellvRTF.dll InMem: 0 Det [G] PX5: 5590B566001D5490A0C60395240D0600A37A0A88
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{7F67036B-66F1-411A-AD85-759FB9C5B0DB}\InprocServer32 - {7F67036B-66F1-411A-AD85-759FB9C5B0DB} [C:\WINDOWS\system32\ShellvRTF.dll]
c:\WINDOWS\system32\dfshim.dll InMem: 0 Det [G] PX5: 5D816A89F88B3539795201C0903C31004ADCA8C6
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{e82a2d71-5b2f-43a0-97b8-81be15854de8}\InprocServer32 - {e82a2d71-5b2f-43a0-97b8-81be15854de8} [c:\WINDOWS\system32\dfshim.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75}\InprocServer32 - {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} [c:\WINDOWS\system32\dfshim.dll]
C:\WINDOWS\system32\Audiodev.dll InMem: 0 Det [G] PX5: 4BE217500087C5F13A360430E7958900806DA483
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{640167b4-59b0-47a6-b335-a6b3c0695aea}\InprocServer32 - {640167b4-59b0-47a6-b335-a6b3c0695aea} [%SystemRoot%\system32\Audiodev.dll]
C:\WINDOWS\system32\wpdshext.dll InMem: 0 Det [G] PX5: 260936F700D6CD55B83A276215529800C0FDB145
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{35786D3C-B075-49b9-88DD-029876E11C01}\InprocServer32 - {35786D3C-B075-49b9-88DD-029876E11C01} [%SystemRoot%\system32\wpdshext.dll]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{D6791A63-E7E2-4fee-BF52-5DED8E86E9B8}\InprocServer32 - {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} [%SystemRoot%\system32\wpdshext.dll]
C:\WINDOWS\System32\XPSSHHDR.DLL InMem: 0 Det [G] PX5: 8D9A88CA001CEB35DB38088EB6A63200AB511E0D
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{45670FA8-ED97-4F44-BC93-305082590BFB}\InprocServer32 - {45670FA8-ED97-4F44-BC93-305082590BFB} [%SystemRoot%\System32\XPSSHHDR.DLL]
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{44121072-A222-48f2-A58A-6D9AD51EBBE9}\InprocServer32 - {44121072-A222-48f2-A58A-6D9AD51EBBE9} [%SystemRoot%\System32\XPSSHHDR.DLL]
C:\WINDOWS\BricoPacks\Crystal Clear\iColorFolder\CMExt.dll InMem: 0 Det [GP] PX5: D4B66485006F068EB67C00CC8821C5001F6DF5C4
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{ABC70703-32AF-11d4-90C4-D483A70F4825}\InprocServer32 - {ABC70703-32AF-11d4-90C4-D483A70F4825} [C:\WINDOWS\BricoPacks\Crystal Clear\iColorFolder\CMExt.dll]
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{ABC70703-32AF-11d4-90C4-D483A70F4825}\InprocServer32 - CMenuExtender [C:\WINDOWS\BricoPacks\Crystal Clear\iColorFolder\CMExt.dll]
C:\Programmi\Windows Live\Mail\mailcomm.dll InMem: 0 Det [G] PX5: 8E7FD43818A0C9F218470DCC85515C00A8833415
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{0563DB41-F538-4B37-A92D-4659049B7766}\InprocServer32 - {0563DB41-F538-4B37-A92D-4659049B7766} [C:\Programmi\Windows Live\Mail\mailcomm.dll]
C:\Programmi\Windows Live\Messenger\fsshext.8.5.1302.1018.dll InMem: 0 Det [G] PX5: C50DF20B18DE433E0699056FA6DBAF006DF279E3
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D}\InprocServer32 - {FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D} [C:\Programmi\Windows Live\Messenger\fsshext.8.5.1302.1018.dll]
C:\Programmi\Microsoft ActiveSync\Wcesview.dll InMem: 0 Det [G] PX5: 715C15BB0085B2B5B06E03869A646500A9731169
REGSHELLEXT - \REGISTRY\Machine\Software\Classes\CLSID\{49BF5420-FA7F-11cf-8011-00A0C90A8F78}\InprocServer32 - {49BF5420-FA7F-11cf-8011-00A0C90A8F78} [C:\PROGRA~1\MICROS~4\Wcesview.dll]
c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll InMem: 0 Det [G] PX5: E2013C5B089BFF1A8CEF0C4A6B2DEC00D18DCB05
REGRUNGEN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\MiniDumpAuxiliaryDlls - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll [c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll]
C:\WINDOWS\system32\msapsspc.dll InMem: 0 Det [G] PX5: 8C479BBA0065475850000105207F00002CA02E51
REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
C:\WINDOWS\system32\digest.dll InMem: 0 Det [G] PX5: 2283761F0087EB020C9B01CC3CCBC600B4AB6B96
REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
C:\WINDOWS\system32\msnsspc.dll InMem: 0 Det [G] PX5: 5FC3C3D6008FE4D0702D042D3521CB003038EB19
REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
C:\Programmi\Adobe\Reader 8.0\Reader\pdfprevhndlrshim.exe InMem: 0 Det [G] PX5: 623D7460882DBAFD90910060B8205E0036350873
REGRUNGEN - \REGISTRY\Machine\Software\Classes\CLSID\{49400A7C-81A8-4F52-8CCE-D54739EE87EC}\LocalServer32 - {49400A7C-81A8-4F52-8CCE-D54739EE87EC} ["C:\Programmi\Adobe\Reader 8.0\Reader\pdfprevhndlrshim.exe"]
C:\Programmi\Adobe\Reader 8.0\Reader\pdfprevhndlr.dll InMem: 0 Det [G] PX5: 3BD592F470063CF846ED01556DDA8700DCEF7EC5
REGRUNGEN - \REGISTRY\Machine\Software\Classes\CLSID\{DC6EFB56-9CFA-464D-8880-44885D7DC193}\InprocServer32 - {DC6EFB56-9CFA-464D-8880-44885D7DC193} [C:\Programmi\Adobe\Reader 8.0\Reader\pdfprevhndlr.dll]
C:\Programmi\K-Lite Codec Pack\filters\CLVSD.ax InMem: 0 Det [G] PX5: 845FC59B00BF6AB0602708F3C20155002505CEBD
REGRUNGEN - \REGISTRY\Machine\Software\Classes\CLSID\{8ACD52ED-9C2D-4008-9129-DCE955D86065}\InprocServer32 - PreferredMPEG2VideoDecoder [C:\Programmi\K-Lite Codec Pack\filters\CLVSD.ax]
C:\Programmi\K-Lite Codec Pack\filters\ac3filter.ax InMem: 0 Det [G] PX5: 40BAD167000108C910C316B243FF04002998BCA9
REGRUNGEN - \REGISTRY\Machine\Software\Classes\CLSID\{A753A1EC-973E-4718-AF8E-A3F554D45C44}\InprocServer32 - PreferredMPEG2AudioDecoder [C:\Programmi\K-Lite Codec Pack\filters\ac3filter.ax]
C:\WINDOWS\Resources\themes\Luna\Luna.msstyles InMem: 0 Det [G] PX5: D4AC08E190E1815FF0763FFB772E82003759142D
REGRUNGEN - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Themes - InstallVisualStyle [%SystemRoot%\Resources\themes\Luna\Luna.msstyles]
C:\WINDOWS\system32\aaclient.dll InMem: 0 Det [G] PX5: F336024100ABE94CC85B015F412E3300D70AF687
REGTERM - \REGISTRY\Machine\Software\Microsoft\Terminal Server Client\TransportExtensions - gateway [aaclient.dll]
C:\WINDOWS\system32\rdpclip.exe InMem: 0 Det [G] PX5: 3129DB34009CADCFF4300018D68AB90013FA4372
REGTERM - \REGISTRY\Machine\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd - StartupPrograms [rdpclip]
C:\WINDOWS\system32\rdpwsx.dll InMem: 0 Det [G] PX5: 2D4F90888862EA65546401DF11DAFF009FB4CACF
REGTERM - \REGISTRY\Machine\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd - WsxDll [rdpwsx]
C:\WINDOWS\system32\RDPCFGEX.DLL InMem: 0 Det [G] PX5: 648184F200AE0568123C00C1F661D900A8042FB8
REGTERM - \REGISTRY\Machine\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd - CfgDll [RDPCFGEX.DLL]
C:\WINDOWS\system32\rdpsnd.dll InMem: 0 Det [G] PX5: 34FBA65500CFB6AF4EE7003742BB470065937B12
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - wave [rdpsnd.dll]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - mixer [rdpsnd.dll]
C:\WINDOWS\system32\imaadp32.acm InMem: 0 Det [G] PX5: 528D926A00EB3B4A408A0067B777E0007219DE4B
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.imaadpcm [imaadp32.acm]
C:\WINDOWS\system32\msadp32.acm InMem: 0 Det [G] PX5: 9896734D003A7B4A3AD6001B2D129300C6CAD27F
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msadpcm [msadp32.acm]
C:\WINDOWS\system32\msg711.acm InMem: 0 Det [G] PX5: 98836843004ECD5624170012D62AF300ADA7FDE1
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msg711 [msg711.acm]
C:\WINDOWS\system32\msgsm32.acm InMem: 0 Det [G] PX5: 7715C6930008610D4E5300A5AC1D5400348AB758
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msgsm610 [msgsm32.acm]
C:\WINDOWS\system32\tssoft32.acm InMem: 0 Det [G] PX5: 9DB260C30072F5C620530046E6B0DC000EF1898D
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.trspch [tssoft32.acm]
C:\WINDOWS\system32\iccvid.dll InMem: 0 Det [G] PX5: 0CEE20B80002FE623A80014E667E0900EDC97E34
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.cvid [iccvid.dll]
C:\WINDOWS\system32\msh263.drv InMem: 0 Det [G] PX5: D1EBECF00092F1C390AB04548720B200A8771D55
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.I420 [msh263.drv]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.M263 [msh263.drv]
C:\WINDOWS\system32\ir32_32.dll InMem: 0 Det [G] PX5: 48C6FD2800CF7D770AB40340E9EE0B00336C0935
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv31 [ir32_32.dll]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv32 [ir32_32.dll]
C:\WINDOWS\system32\ir41_32.ax InMem: 0 Det [G] PX5: 88C1844600D60C2BF2960C06110E8900D716354E
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv41 [ir41_32.ax]
C:\WINDOWS\system32\iyuv_32.dll InMem: 0 Det [G] PX5: 8D2F485A000F6953BA8B00EF89F3AE0028DCEE98
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.IYUV [iyuv_32.dll]
C:\WINDOWS\system32\msrle32.dll InMem: 0 Det [G] PX5: 6AD29AC5008293D12C2D00B216F74700B26503F0
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.mrle [msrle32.dll]
C:\WINDOWS\system32\msvidc32.dll InMem: 0 Det [G] PX5: CE4E524C0073A8EC64FF00E1300C68000D8D97A8
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.msvc [msvidc32.dll]
C:\WINDOWS\system32\msyuv.dll InMem: 0 Det [G] PX5: 92EC75E800DB9BE5440C000A47ABC3009642377A
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.UYVY [msyuv.dll]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.YUY2 [msyuv.dll]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.YVYU [msyuv.dll]
C:\WINDOWS\system32\tsbyuv.dll InMem: 0 Det [G] PX5: 86646A040019522320A100B4BB4D900094B11477
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.YVU9 [tsbyuv.dll]
C:\WINDOWS\system32\msg723.acm InMem: 0 Det [G] PX5: 11020CC8008FB79ED00601EAD6C03900AA679A83
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msg723 [msg723.acm]
C:\WINDOWS\system32\msh261.drv InMem: 0 Det [G] PX5: A41AA5420008DA3EF0B402388EE55600B25D24F8
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.M261 [msh261.drv]
C:\WINDOWS\system32\msaud32.acm InMem: 0 Det [G] PX5: C38F33CC0026C9E080B10460DFC46F004CE633B9
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msaudio1 [msaud32.acm]
C:\WINDOWS\system32\sl_anet.acm InMem: 0 Det [G] PX5: 3DA8D952002B67BF508D01A57E615F00B2B2EA92
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.sl_anet [sl_anet.acm]
C:\WINDOWS\system32\iac25_32.ax InMem: 0 Det [G] PX5: D062C8E7003B5A390C1703C014BB9700CE1BED53
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.iac2 [C:\WINDOWS\system32\iac25_32.ax]
C:\WINDOWS\system32\ir50_32.dll InMem: 0 Det [G] PX5: 8FA030FE0030B5D3865F0B4087D0420068F6854C
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv50 [ir50_32.dll]
C:\WINDOWS\system32\l3codeca.acm InMem: 0 Det [G] PX5: BD6FA9CA00B4F05D702C042DD7B42E003DC5A552
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.l3acm [C:\WINDOWS\system32\l3codeca.acm]
C:\WINDOWS\system32\VfWWDM32.dll InMem: 0 Det [G] PX5: 50A7CDEB00FEFE76D6A800E76B929700EFCC0032
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - MSVideo8 [VfWWDM32.dll]
C:\WINDOWS\system32\divx.dll InMem: 0 Det [GP] PX5: 724935205A81D9D34CF60B56A8915100614C1406
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.DIVX [divx.dll]
C:\WINDOWS\system32\xvidvfw.dll InMem: 0 Det [G] PX5: DEB4648B0030C460C01602180AE02B0096CE9FD8
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.XVID [xvidvfw.dll]
C:\WINDOWS\system32\yv12vfw.dll InMem: 0 Det [G] PX5: 4BDE05EB00E04C7D50930332D627F80049105AE8
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.yv12 [yv12vfw.dll]
C:\WINDOWS\system32\ac3filter.acm InMem: 0 Det [G] PX5: C1243646000641F1D093054ABEEA6D006F456C0B
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.ac3filter [ac3filter.acm]
C:\WINDOWS\system32\ff_vfw.dll InMem: 0 Det [G] PX5: 2A9E326B003348512AD500C4E6BC4A00AF675498
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.FFDS [ff_vfw.dll]
C:\WINDOWS\system32\sirenacm.dll InMem: 0 Det [G] PX5: D01DBF2E18E92E5EC8BB00E30F80AB0018A4C148
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.siren [sirenacm.dll]
C:\WINDOWS\system32\vp6vfw.dll InMem: 0 Det [u] PX5: D07A5DDA40A69E1DCC4E0648B4D2AD006E5DA76F
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.VP60 [C:\WINDOWS\system32\vp6vfw.dll]
REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.VP61 [C:\WINDOWS\system32\vp6vfw.dll]
C:\WINDOWS\system32\cmd.exe InMem: 0 Det [G] PX5: 174F65020044C14C301408F23AA7F3008F1349E5
REGSAFESEC - \REGISTRY\Machine\System\CurrentControlSet\Control\SafeBoot - AlternateShell [cmd.exe]
C:\WINDOWS\system32\rsvpsp.dll InMem: 0 Det [G] PX5: 316FAA8C007F4493605401B98234D5008F685EE8
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 - PackedCatalogItem [%SystemRoot%\system32\rsvpsp.dll]
REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 - PackedCatalogItem [%SystemRoot%\system32\rsvpsp.dll]
C:\WINDOWS\system32\ipxrip.dll InMem: 0 Det [G] PX5: 859821B9009D40A9548200AD83A363008B36EF0D
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ipx\IPXRIP - DllName [ipxrip.dll]
C:\WINDOWS\system32\ipxsap.dll InMem: 0 Det [G] PX5: 85797B9500D099280499015DBB948C00AAAAF548
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ipx\IPXSAP - DllName [ipxsap.dll]
C:\WINDOWS\System32\iprtrmgr.dll InMem: 0 Det [G] PX5: D40494A6008ED12A98FE023AAD1857000DD8C7B5
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip - DllPath [%SystemRoot%\System32\iprtrmgr.dll]
C:\WINDOWS\System32\ipxrtmgr.dll InMem: 0 Det [G] PX5: 4718448E00AA1CC09C1B00C6E262700012078A35
REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ipx - DllPath [%SystemRoot%\System32\ipxrtmgr.dll]
C:\WINDOWS\system32\Firewall.cpl InMem: 0 Det [G] PX5: C6AD4E5900619E5B3AA801566FFF65004318E0B5
REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - Internet Connection Firewall [Firewall.cpl]
C:\WINDOWS\system32\NetSetup.cpl InMem: 0 Det [G] PX5: 1727E2B500CA6EDF648A0091303FF7003D7EE312
REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - NetSetupWizard [NetSetup.cpl]
C:\Programmi\File comuni\Microsoft Shared\Speech\sapi.cpl InMem: 0 Det [G] PX5: 4B95DF2F0028608F7026024663B5470081E40772
REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - Speech [C:\Programmi\File comuni\Microsoft Shared\Speech\sapi.cpl]
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avconfig.cpl InMem: 0 Det [G] PX5: AAC5407401E9E37C11A001E93710970046DA2E33
REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - Avira AntiVir Personal – Free Antivirus [C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl]
C:\Programmi\Creative\Sound Blaster X-Fi\AudioCS\CTAudCS.cpl InMem: 0 Det [G] PX5: 360C832B0046D98D502C021F4457A3003BBC81EA
REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - CreativeAudioConsole [C:\Programmi\Creative\Sound Blaster X-Fi\AudioCS\CTAudCS.cpl]
C:\WINDOWS\system32\Magnify.exe InMem: 0 Det [G] PX5: 56D83A5300B416C91E5A01BAF9D98E0052E1217A
REGUTIL - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\Magnifier - Application path [Magnify.exe]
C:\WINDOWS\system32\osk.exe InMem: 0 Det [G] PX5: 72AF707D008F100B4EF603717C26BE005EA9FEF8
REGUTIL - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\On-Screen Keyboard - Application path [osk.exe]
c:\Programmi\File comuni\Microsoft Shared\Grphflt\gifimp32.flt InMem: 0 Det [G] PX5: 1AFC15B7586A5DF9BCF2022DB710D4008D512047
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Export\GIF - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\gifimp32.flt]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\GIF - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\gifimp32.flt]
c:\Programmi\File comuni\Microsoft Shared\Grphflt\jpegim32.flt InMem: 0 Det [G] PX5: 561D8D31584B04827C1102EBE625B600DEC6EAF4
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Export\JPEG - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\jpegim32.flt]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\JPEG - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\jpegim32.flt]
c:\Programmi\File comuni\Microsoft Shared\Grphflt\png32.flt InMem: 0 Det [G] PX5: 41F3277C587D0DCC802F02C1B6DDD100D7B2F136
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Export\PNG - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\png32.flt]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\PNG - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\png32.flt]
c:\Programmi\File comuni\Microsoft Shared\Grphflt\emfimp32.flt InMem: 0 Det [G] PX5: F0FCD40F0010BE9F5E66058999A28D00C0732751
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\EMF - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\emfimp32.flt]
c:\Programmi\File comuni\Microsoft Shared\Grphflt\fpx32.flt InMem: 0 Det [G] PX5: 0103CBDD4925B81510DB2FA081A84400AD71E1C8
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\FPX - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\fpx32.flt]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\MIX - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\fpx32.flt]
c:\Programmi\File comuni\Microsoft Shared\Grphflt\Wpgimp32.flt InMem: 0 Det [G] PX5: 5772631F58B5A2FFB88401F208DE130083E2EA0D
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\WPG - Path [c:\Programmi\File comuni\Microsoft Shared\Grphflt\Wpgimp32.flt]
C:\Programmi\File comuni\Microsoft Shared\MSInfo\ieinfo5.ocx InMem: 0 Det [G] PX5: D9CCCE7600AE330472C5014263EDAE006E08A176
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\MSInfo\Templates\ieinfo5 - [C:\Programmi\File comuni\Microsoft Shared\MSInfo\ieinfo5.ocx]
C:\Programmi\File comuni\Microsoft Shared\MSInfo\MSInfo32.exe InMem: 0 Det [G] PX5: DCC20BBB0036A3BB9EFA00953DF8F200E6CDE36A
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\MSInfo - Path [C:\Programmi\File comuni\Microsoft Shared\MSInfo\MSInfo32.exe]
c:\Programmi\File comuni\Microsoft Shared\Textconv\html32.cnv InMem: 0 Det [G] PX5: 66466778586DAB96C483047DF729C400CC662630
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\HTML - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\html32.cnv]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\HTML - Path [C:\Programmi\File comuni\Microsoft Shared\TextConv\html32.cnv]
C:\Programmi\Microsoft ActiveSync\pwiofcnv.dll InMem: 0 Det [G] PX5: 7C1DA7DB0064797D4CB0002809AFFB00DF6A5BF9
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSInkWriter - Path [C:\Programmi\Microsoft ActiveSync\pwiofcnv.dll]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSPocketInkWord - Path [C:\Programmi\Microsoft ActiveSync\pwiofcnv.dll]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSInkWriter - Path [C:\Programmi\Microsoft ActiveSync\pwiofcnv.dll]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSInkWriterTemplate - Path [C:\Programmi\Microsoft ActiveSync\pwiofcnv.dll]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSPocketInkWord - Path [C:\Programmi\Microsoft ActiveSync\pwiofcnv.dll]
C:\Programmi\Microsoft ActiveSync\pwoffcnv.dll InMem: 0 Det [G] PX5: 23E2954300B8EA3976570073EFF201001C075E73
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSPocketWord - Path [C:\PROGRA~1\MICROS~4\pwoffcnv.dll]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSPocketWord - Path [C:\PROGRA~1\MICROS~4\pwoffcnv.dll]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSPocketWordTemplate - Path [C:\PROGRA~1\MICROS~4\pwoffcnv.dll]
c:\Programmi\File comuni\Microsoft Shared\Textconv\wrd6er32.cnv InMem: 0 Det [G] PX5: 4421400B0052DE422C04003B3C2E07000C63A494
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSWord6RTFExp - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\wrd6er32.cnv]
c:\Programmi\File comuni\Microsoft Shared\Textconv\Works432.cnv InMem: 0 Det [G] PX5: 6FFFA7710086EF08F81003EF6D5B1200BC629138
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin4 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\Works432.cnv]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin4 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\Works432.cnv]
c:\Programmi\File comuni\Microsoft Shared\Textconv\works532.cnv InMem: 0 Det [G] PX5: 8D2D8314406D125FD0B1005E1FF59900B07EA284
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin5 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\works532.cnv]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin5 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\works532.cnv]
c:\Programmi\File comuni\Microsoft Shared\Textconv\works632.cnv InMem: 0 Det [G] PX5: 89B6053B009629DFE04800B0F6D0070069D648C9
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin6 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\works632.cnv]
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin6 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\works632.cnv]
C:\Programmi\File comuni\Microsoft Shared\TextConv\write32.wpc InMem: 0 Det [G] PX5: 71A6A3C449C4AC08B01A01656F55D100B9B2E691
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWinWrite.wpc - Path [C:\Programmi\File comuni\Microsoft Shared\TextConv\write32.wpc]
C:\Programmi\File comuni\Microsoft Shared\TextConv\mswrd632.wpc InMem: 0 Det [G] PX5: 255241CE4A8E0D0D40E903D813E15E00D95525A3
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWord6.wpc - Path [C:\Programmi\File comuni\Microsoft Shared\TextConv\mswrd632.wpc]
c:\Programmi\File comuni\Microsoft Shared\Textconv\mswrd832.cnv InMem: 0 Det [G] PX5: 6C2F7F9458015FF64E040324CD763100F5986932
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWord8 - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\mswrd832.cnv]
c:\Programmi\File comuni\Microsoft Shared\Textconv\wpft632.cnv InMem: 0 Det [G] PX5: 56A8074B580DC0E7267A03466E1D9E00482DF9A6
REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\WordPerfect6x - Path [c:\Programmi\File comuni\Microsoft Shared\Textconv\wpft632.cnv]
C:\Programmi\Java\jre1.6.0_05\bin\npjpi160_05.dll InMem: 0 Det [G] PX5: B593EB2E90871CEA05FD02BFFC7D1B007D89A0BD
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}\InprocServer32 - ClsidExtension [C:\Programmi\Java\jre1.6.0_05\bin\npjpi160_05.dll]
C:\Programmi\Microsoft ActiveSync\INetRepl.dll InMem: 0 Det [G] PX5: 2F0E618500418DD510BE028D7364AD003FCF91E2
REGEXPSHELL - \REGISTRY\Machine\Software\Classes\CLSID\{2EAF5BB0-070F-11D3-9307-00C04FAE2D4F}\InprocServer32 - clsidExtension [C:\PROGRA~1\MICROS~4\INetRepl.dll]
C:\WINDOWS\Network Diagnostic\xpnetdiag.exe InMem: 0 Det [G] PX5: 6E52CD7800F62BCA82480884AE41CB00F32ECB92
REGEXPSHELL - \REGISTRY\Machine\Software\Microsoft\Internet Explorer\Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - Exec [%windir%\Network Diagnostic\xpnetdiag.exe]
C:\WINDOWS\system32\mshta.exe InMem: 0 Det [G] PX5: E471D23E00EB3DB3B2DC00A2C177ED0052C33CB2
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\htafile\shell\open\command - [C:\WINDOWS\system32\mshta.exe "%1" %*]
C:\WINDOWS\System32\WScript.exe InMem: 0 Det [G] PX5: 4850A70600D60426C0410166FCF6E000B918B6A5
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\VBSFile\shell\open\command - [%SystemRoot%\System32\WScript.exe "%1" %*]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\VBEFile\shell\open\command - [%SystemRoot%\System32\WScript.exe "%1" %*]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\WSHFile\shell\open\command - [%SystemRoot%\System32\WScript.exe "%1" %*]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\WSFFile\shell\open\command - [%SystemRoot%\System32\WScript.exe "%1" %*]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\JSEFile\shell\open\command - [%SystemRoot%\System32\WScript.exe "%1" %*]
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\JSFile\shell\open\command - [%SystemRoot%\System32\WScript.exe "%1" %*]
C:\WINDOWS\system32\mmc.exe InMem: 0 Det [G] PX5: C6EB514E00915CDD74820CD0EB0CF8007694B8C8
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\MSCFile\shell\open\command - [%SystemRoot%\system32\mmc.exe "%1" %*]
C:\Programmi\Windows Live\Mail\wlmail.exe InMem: 0 Det [GP] PX5: 856F7BC5188E65C564B602A22DA679006A16650E
REGEXTNMAP - \REGISTRY\Machine\Software\Classes\mailto\shell\open\command - ["C:\Programmi\Windows Live\Mail\wlmail.exe" /mailurl:%1]
C:\Programmi\a-squared Free\a2free.exe InMem: 0 Det [UP] PX5: 8503E39B7030A22610BD0E6DAC536B0022E85FDC
C:\WINDOWS\system32\drivers\1394bus.sys InMem: 0 Det [G] PX5: A01D29000095FDD3D05B00D74275E7003170E933
C:\WINDOWS\system32\drivers\acpiec.sys InMem: 0 Det [G] PX5: F21BE3DC800E8A0A2F3C009238A73C008905B399
C:\WINDOWS\system32\drivers\amdk6.sys InMem: 0 Det [G] PX5: 4242D904806C60F8A08300740C09B400A99A704A
C:\WINDOWS\system32\drivers\amdk7.sys InMem: 0 Det [G] PX5: EABF85AE00CF7D2BA2F600B95331A000E92CF98B
C:\WINDOWS\system32\drivers\ati2erec.dll InMem: 0 Det [u] PX5: 2840343C0094E8F3C0DC00AE8DEF5400F4103381
C:\WINDOWS\system32\drivers\atmepvc.sys InMem: 0 Det [G] PX5: 7363E81E80EDA4EC7A0200CE34E22400450A279B
C:\WINDOWS\system32\drivers\atmlane.sys InMem: 0 Det [G] PX5: 823332B380717184DAFD00B035ED9500F95C0458
C:\WINDOWS\system32\drivers\atmuni.sys InMem: 0 Det [G] PX5: 92E7BF650082565E607E05AD216E0900953642D5
C:\WINDOWS\system32\drivers\avgntdd.sys InMem: 0 Det [G] PX5: 034828234045544DA3A90003571C5200D41D0EE4
C:\WINDOWS\system32\drivers\avgntmgr.sys InMem: 0 Det [G] PX5: 860E793240F8A8E457CF00E1E5D45100C2961F00
C:\WINDOWS\system32\drivers\BdaSup.sys InMem: 0 Det [G] PX5: 63B9884C00EA74E02EFF00FA516F7D00FACC5E14
C:\WINDOWS\system32\drivers\beep.sys InMem: 0 Det [G] PX5: F62FA4F780D77A5110B2005CD7507900637E04C1
C:\WINDOWS\system32\drivers\bridge.sys InMem: 0 Det [G] PX5: 69CABDC3803104ED17D001BEA902E2004A7836B0
C:\WINDOWS\system32\drivers\cbidf2k.sys InMem: 0 Det [G] PX5: 7B8DA5F780B7DA7536FE00ABA71B6C00B12776D7
C:\WINDOWS\system32\drivers\cdaudio.sys InMem: 0 Det [G] PX5: 7D0D30B9001A5352491B006D9C79D000079079B1
C:\WINDOWS\system32\drivers\cdfs.sys InMem: 0 Det [G] PX5: 0225C13D004CC9CDF93000922132D000BA57D976
C:\WINDOWS\system32\drivers\cinemst2.sys InMem: 0 Det [G] PX5: 7C4B5F6480542F0A010D0467679A3400F24D4424
C:\WINDOWS\system32\drivers\classpnp.sys InMem: 0 Det [G] PX5: 61280642007AE0BEC20400D8EC4D8200079FF3CE
C:\WINDOWS\system32\drivers\cpqdap01.sys InMem: 0 Det [G] PX5: C60D75F500CE16D02E4100D9B4337E008A228DE3
C:\WINDOWS\system32\drivers\crusoe.sys InMem: 0 Det [G] PX5: E4FE1A7080AF31429EBC00A2612936006E0D7B97
C:\WINDOWS\system32\drivers\diskdump.sys InMem: 0 Det [G] PX5: 6D7A5F848072A37B37EB00C342763700264F9014
C:\WINDOWS\system32\drivers\drmk.sys InMem: 0 Det [G] PX5: 73B664558055CFD9EB9800CC44976A00031F37A9
C:\WINDOWS\system32\drivers\dxapi.sys InMem: 0 Det [G] PX5: D0E069F50027643C29470029619BD400B7B7054A
C:\WINDOWS\system32\drivers\dxg.sys InMem: 0 Det [G] PX5: 3F54B7A780F0ED98157C011AE18D4A00EE6485EB
C:\WINDOWS\system32\drivers\dxgthk.sys InMem: 0 Det [G] PX5: 0164AB8900598A330DE900E4FEF37900B79BCD14
C:\WINDOWS\system32\drivers\enum1394.sys InMem: 0 Det [G] PX5: 4E7FF71200A58CFF197100D1CCE6B600C8D9E0FF
C:\WINDOWS\system32\drivers\fastfat.sys InMem: 0 Det [G] PX5: 1E68B78D00BA4E2F30E102605EF38B00BED2E67D
C:\WINDOWS\system32\drivers\fips.sys InMem: 0 Det [G] PX5: 1007D8C50089CEC889D600EFFDE6B800D02A5DA9
C:\WINDOWS\system32\drivers\fsvga.sys InMem: 0 Det [G] PX5: 78ACD409008333CF30C90046F776F800BAB458CE
C:\WINDOWS\system32\drivers\fs_rec.sys InMem: 0 Det [G] PX5: 2E3179C900CB71741FBA004F645EEB00865149D3
C:\WINDOWS\system32\drivers\Hdaudio.sys InMem: 0 Det [G] PX5: B7BDAA0200E26E383AB10225F4727C00EB8C3B5A
C:\WINDOWS\system32\drivers\hidclass.sys InMem: 0 Det [G] PX5: 800EAA28801FAC928DC800F3F0296600134890AF
C:\WINDOWS\system32\drivers\hidparse.sys InMem: 0 Det [G] PX5: 202AE5AF805FDB4161470039E900C0009EB401B0
C:\WINDOWS\system32\drivers\ks.sys InMem: 0 Det [G] PX5: 78D9F49380D52F3B2603022FFE8CE100B4CA1585
C:\WINDOWS\system32\drivers\ksecdd.sys InMem: 0 Det [G] PX5: 774C935980F76922670D01959D71E6009D9267E6
C:\WINDOWS\system32\drivers\mcd.sys InMem: 0 Det [G] PX5: 874B185900D5916B1EF900C2FE181D00136FAB22
C:\WINDOWS\system32\drivers\mf.sys InMem: 0 Det [G] PX5: F49C56310087ADB9F998009652109C00BB35FCB1
C:\WINDOWS\system32\drivers\mnmdd.sys InMem: 0 Det [G] PX5: 33A41DEC8064684210700001C4EA1400320E2D4F
C:\WINDOWS\system32\drivers\modem.sys InMem: 0 Det [G] PX5: F22F2ACE0067686F7617004AA04CD400DCD5102E
C:\WINDOWS\system32\drivers\mountmgr.sys InMem: 0 Det [G] PX5: 7309084F00AE944FA5B9001585E15200FF872CDC
C:\WINDOWS\system32\drivers\msfs.sys InMem: 0 Det [G] PX5: 075BA4B3803111464A9700E6E20263008B5F85A4
C:\WINDOWS\system32\drivers\mup.sys InMem: 0 Det [G] PX5: 488AE40380446D0EA57D014A890CCF00C681450A
C:\WINDOWS\system32\drivers\ndis.sys InMem: 0 Det [G] PX5: D3D6286080F2E0F0CA7A02249DEC7F001D734284
C:\WINDOWS\system32\drivers\ndproxy.sys InMem: 0 Det [G] PX5: FB8873A080F72F00942D005DFF5068001A60ED1C
C:\WINDOWS\system32\drivers\nikedrv.sys InMem: 0 Det [G] PX5: 31AFD82600B7B0E92F3400332F79D6008B90E2A9
C:\WINDOWS\system32\drivers\nmnt.sys InMem: 0 Det [G] PX5: 4F6E51DE803D5E299DD30090E39024009FB3BD94
C:\WINDOWS\system32\drivers\npfs.sys InMem: 0 Det [G] PX5: 20DA5FD280719B5A789A008E44C90300CCA72CD2
C:\WINDOWS\system32\drivers\ntfs.sys InMem: 0 Det [G] PX5: F6D2D4BD008F0B21C44F08EC65529C002F16FA15
C:\WINDOWS\system32\drivers\null.sys InMem: 0 Det [G] PX5: 7047032880E19D2B0B4300F23A496700B79BCD14
C:\WINDOWS\system32\drivers\nv4_mini.sys InMem: 0 Det [G] PX5: 29B67F0840410DB4A2EF36E66EFA7600969B180B
C:\WINDOWS\system32\drivers\nwlnkipx.sys InMem: 0 Det [G] PX5: B455E8AE80D2C31959AC01662F7EE7009B9C1B54
C:\WINDOWS\system32\drivers\nwlnknb.sys InMem: 0 Det [G] PX5: 04BB889700AAB944F73D0096D8122400A0912260
C:\WINDOWS\system32\drivers\nwlnkspx.sys InMem: 0 Det [G] PX5: 38D410228045AB3DDA820098A4E752008EA9780C
C:\WINDOWS\system32\drivers\oprghdlr.sys InMem: 0 Det [G] PX5: 691E96B980EF4DD30D2300DD63265E00B79BCD14
C:\WINDOWS\system32\drivers\p3.sys InMem: 0 Det [G] PX5: BC6A682380C862C2B56A0022A0FE9B00ED93F9A1
C:\WINDOWS\system32\drivers\partmgr.sys InMem: 0 Det [G] PX5: CD5C0D6C00BC0D35496D00DCA66DE800E5B26EF9
C:\WINDOWS\system32\drivers\parvdm.sys InMem: 0 Det [G] PX5: D78233F200E873FD1B40001BF0D2FD00501E1542
C:\WINDOWS\system32\drivers\pcdrndisuio.sys InMem: 0 Det [G] PX5: 9C9DB3A4809D5F9034E300B4F9469A00F3A5B82E
C:\WINDOWS\system32\drivers\pciidex.sys InMem: 0 Det [G] PX5: DD4713DB00668128625F00A6F0879B00FA781103
C:\WINDOWS\system32\drivers\pcmcia.sys InMem: 0 Det [G] PX5: 1E5E2DAE80A234A7D5E1011E8065A7000BABC19F
C:\WINDOWS\system32\drivers\Pfmodnt.sys InMem: 0 Det [G] PX5: CFE3487C00D151342270005823B74300B8761CC1
C:\WINDOWS\system32\drivers\portcls.sys InMem: 0 Det [G] PX5: 4C3FDB6000983D64179702C05212D30014AEE1A4
C:\WINDOWS\system32\drivers\rawwan.sys InMem: 0 Det [G] PX5: 3623B25780ED679386B1006F511AA700A8DBED63
C:\WINDOWS\system32\drivers\rdpdr.sys InMem: 0 Det [G] PX5: 02477783007980B5019E03607F7E03003B692115
C:\WINDOWS\system32\drivers\rdpwd.sys InMem: 0 Det [G] PX5: F059F0E3086A11EC2111023C258C8900CFC29C24
C:\WINDOWS\system32\drivers\rio8drv.sys InMem: 0 Det [G] PX5: 689BF8B80051228F2F8000540597A5009049C8B5
C:\WINDOWS\system32\drivers\riodrv.sys InMem: 0 Det [G] PX5: 31AFD82600B7B0E92F3400332F79D600DA0E26E7
C:\WINDOWS\system32\drivers\rmcast.sys InMem: 0 Det [G] PX5: 51F889B700FC9166166A03256E7AAC00D3C16FD6
C:\WINDOWS\system32\drivers\rndismp.sys InMem: 0 Det [G] PX5: 120F9F0E8086D832779500950845710097678050
C:\WINDOWS\system32\drivers\rndismpx.sys InMem: 0 Det [G] PX5: 120F9F0E8086D83277950095084571009107002E
C:\WINDOWS\system32\drivers\rootmdm.sys InMem: 0 Det [G] PX5: F3E7979300A8EEA3177100743639FF0080591A18
C:\WINDOWS\system32\drivers\scsiport.sys InMem: 0 Det [G] PX5: BAEDAB6C00163F8D78C6012DFF6A240038CAB5E8
C:\WINDOWS\system32\drivers\sdbus.sys InMem: 0 Det [G] PX5: BA494C87000D7A4F08B4013D43118E00EBAF0531
C:\WINDOWS\system32\drivers\serenum.sys InMem: 0 Det [G] PX5: 4F3C7EAD801665B83CEF00E324D68C009966C2DD
C:\WINDOWS\system32\drivers\serial.sys InMem: 0 Det [G] PX5: 84269A0C80DA4AE9020E01315B99420097A96A32
C:\WINDOWS\system32\drivers\sffdisk.sys InMem: 0 Det [G] PX5: AF380F15808E7A972B3D001ABF251400652E930D
C:\WINDOWS\system32\drivers\sffp_sd.sys InMem: 0 Det [G] PX5: 35A841FC0030CAF028AD002AAB39F600184DF1C4
C:\WINDOWS\system32\drivers\sfloppy.sys InMem: 0 Det [G] PX5: 6884E1AE807AAB872CD300DC197E0C00B015D834
C:\WINDOWS\system32\drivers\smclib.sys InMem: 0 Det [G] PX5: 8A9722BD003AC63939580092009AC20088FC78D8
C:\WINDOWS\system32\drivers\sonydcam.sys InMem: 0 Det [G] PX5: 0B9EAE4180F27A6F636900C11EF4E3002F2E7423
C:\WINDOWS\system32\drivers\stream.sys InMem: 0 Det [G] PX5: E9758E5F00F11219BE3300252F112F00F38A6C5B
C:\WINDOWS\system32\drivers\tape.sys InMem: 0 Det [G] PX5: 1278B1EF80B32A683A3F0096934CD200746C2998
C:\WINDOWS\system32\drivers\tcpip6.sys InMem: 0 Det [G] PX5: 5D79645C800A9DEE710003BFD457ED00F0D2E94E
C:\WINDOWS\system32\drivers\tdi.sys InMem: 0 Det [G] PX5: D2E197368059988748C500010EF1F2006AC8B3D9
C:\WINDOWS\system32\drivers\tdpipe.sys InMem: 0 Det [G] PX5: 3FCBC6C1086354332FFD003DE3512D00CB438F2A
C:\WINDOWS\system32\drivers\tdtcp.sys InMem: 0 Det [G] PX5: 8942980688A6EF76558200032BC6D800A375DA91
C:\WINDOWS\system32\drivers\tosdvd.sys InMem: 0 Det [G] PX5: 628D18D7002B7E40CAFC00177DE27100B717B0CE
C:\WINDOWS\system32\drivers\tsbvcap.sys InMem: 0 Det [G] PX5: 87882BA880A89CF8537500BE0BB03800CD0425CD
C:\WINDOWS\system32\drivers\tunmp.sys InMem: 0 Det [G] PX5: CBD0AEE38035D6A5300B00CF5C419100CB427E52
C:\WINDOWS\system32\drivers\udfs.sys InMem: 0 Det [G] PX5: 5FD2643980FF4C93024701049FF5A900913F1B6B
C:\WINDOWS\system32\drivers\usb8023.sys InMem: 0 Det [G] PX5: 5DE6AA06000719C4324E00BD7F4FBD00DFF516C6
C:\WINDOWS\system32\drivers\usb8023x.sys InMem: 0 Det [G] PX5: 5DE6AA06000719C4324E00BD7F4FBD00ED76E301
C:\WINDOWS\system32\drivers\usbcamd.sys InMem: 0 Det [G] PX5: D11C923000C0476E5DDA002FC1E34E00BC32EEBC
C:\WINDOWS\system32\drivers\usbcamd2.sys InMem: 0 Det [G] PX5: D11C923080C0476E5DDA002FC1E34E002B3DC035
C:\WINDOWS\system32\drivers\usbd.sys InMem: 0 Det [G] PX5: F328D8568037A02F12FA00A0B0E095005A1BACA9
C:\WINDOWS\system32\drivers\usbintel.sys InMem: 0 Det [G] PX5: 46A2709480A8B9863E99007B5ED70B000E5AFC3D
C:\WINDOWS\system32\drivers\USBkey.sys InMem: 0 Det [G] PX5: 98A31C94B0ADEA40704C004D99AD4700E0C4C069
C:\WINDOWS\system32\drivers\usbport.sys InMem: 0 Det [G] PX5: A1EF174180FC34972E3902AA15903200854523B2
C:\WINDOWS\system32\drivers\vdmindvd.sys InMem: 0 Det [G] PX5: 5DFBB3300012B79DE3E300778EC928004FCDB2AF
C:\WINDOWS\system32\drivers\videoprt.sys InMem: 0 Det [G] PX5: BBE87C52808D55E2379801ACFA738900C0632DEC
C:\WINDOWS\system32\drivers\volsnap.sys InMem: 0 Det [G] PX5: AC3AFD0E80294768D03200EE1153E40098EF3DD1
C:\WINDOWS\system32\drivers\wmilib.sys InMem: 0 Det [G] PX5: 7A1B707D0098974111DB00C8E2E10C00FCC422B3
C:\WINDOWS\system32\drivers\wpdusb.sys InMem: 0 Det [G] PX5: E04E67C68020394F960F004FBC02B000DC6FED3C
C:\WINDOWS\system32\drivers\ws2ifsl.sys InMem: 0 Det [G] PX5: E3FE23AC0026FAFE2FF10052E88519002DA1A545
C:\WINDOWS\Ctregrun.exe InMem: 0 Det [G] PX5: 8906D00100F1B36BA4C8001C71CC6D0003E399BF
C:\WINDOWS\gmer.dll InMem: 0 Det [u] PX5: 4019FA6F0091D3A080D50DF8E0BA0300942BC8A8
C:\WINDOWS\gmer.exe InMem: 0 Det [u] PX5: CF1219BB00389C5360400C10FE5011002F94B7B1
C:\WINDOWS\InResITA.DLL InMem: 0 Det [G] PX5: 519CFCA5007BF2B6504800DE67C15A0040DD6193
C:\WINDOWS\OALInst.exe InMem: 0 Det [u] PX5: FBB2382E000F86F5B0C90BE67F510300D18A3D09
C:\WINDOWS\resdef.exe InMem: 0 Det [G] PX5: 71ED15CB000EEF66D02F00BFE8C80E00256C7C1B
C:\WINDOWS\SF32.exe InMem: 0 Det [G] PX5: ACE5F1C5002C585F0406033980787800009D7344
C:\WINDOWS\system32\A3d.dll InMem: 0 Det [G] PX5: D7DA27D400A8384D009401D10ADF9800480E33EA
C:\WINDOWS\system32\advpack.dll.mui InMem: 0 Det [G] PX5: A3C1EECA009173A9307900B3BCE3AD00B8C5D1AA
C:\WINDOWS\system32\amdpcom32.dll InMem: 0 Det [u] PX5: 4A0DA1DF002877CCB81A009A08970A00C8E953ED
C:\WINDOWS\system32\AppSetup.exe InMem: 0 Det [u] PX5: 9AF6A10D98E8B374689E5C304BDE940150D6996D
C:\WINDOWS\system32\ati2cqag.dll InMem: 0 Det [G] PX5: DBACB16F00CE4F0F60810842FF0637000F0C777F
C:\WINDOWS\system32\ati2dvag.dll InMem: 0 Det [G] PX5: 3095F8F500923288A8F80415C55528001AB0B37C
C:\WINDOWS\system32\Ati2mdxx.exe InMem: 0 Det [u] PX5: 6F7ADB0900416B7466C100AE2A6FCC00FF20585F
C:\WINDOWS\system32\ati3duag.dll InMem: 0 Det [G] PX5: 54C23D6960DD007BE08430A51A551F002ED73814
C:\WINDOWS\system32\atiadlxx.dll InMem: 0 Det [u] PX5: C26884AB00E4921B4EBB00C67E0BAE001C04DC58
C:\WINDOWS\system32\ATIDDC.DLL InMem: 0 Det [u] PX5: 99560EB500981D8ED0D40054746779004DF33F5F
C:\WINDOWS\system32\atiiiexx.dll InMem: 0 Det [G] PX5: 823C7C4C001A7BA3B0BE0460473ACD004921A621
C:\WINDOWS\system32\atikvmag.dll InMem: 0 Det [G] PX5: FA2A478C00EB42A700890569F3B5E800F45F03A9
C:\WINDOWS\system32\atioglx2.dll InMem: 0 Det [u] PX5: 0470D37500CF8130F06C9ADE28157800D95D4E55
C:\WINDOWS\system32\atiok3x2.dll InMem: 0 Det [G] PX5: CC0C6169007B9D18B052032DD4A977001E7BD245
C:\WINDOWS\system32\atitvo32.dll InMem: 0 Det [G] PX5: 477DAEC2001BF4BE4421007662646B004F21BD53
C:\WINDOWS\system32\ativvaxx.dll InMem: 0 Det [G] PX5: 8BD5DBE00002641583241EB7BB30C500F31EE211
C:\WINDOWS\system32\CmdLineExt.dll InMem: 0 Det [G] PX5: 98901A6F70CE593BA553012C84A36B003CF912F8
C:\WINDOWS\system32\CtDvInst.dll InMem: 0 Det [G] PX5: A848CCC400F946DC0AAF024BC2229D0091AFADEE
C:\WINDOWS\system32\CTSVCCTL.EXE InMem: 0 Det [G] PX5: 872C9BEF00237EE4624F00452C3EAB006C276090
C:\WINDOWS\system32\dpl100.dll InMem: 0 Det [G] PX5: 4638D96500F151D520F50160AFCFE4004D02199B
C:\WINDOWS\system32\EAX.DLL InMem: 0 Det [G] PX5: 23F8BA3A00962377203102096EAC5400F6A5E232
C:\WINDOWS\system32\icardres.dll.mui InMem: 0 Det [G] PX5: 09F861BA10DC82ECBB9D08EE88E2700061935D58
C:\WINDOWS\system32\ieframe.dll.mui InMem: 0 Det [G] PX5: 7CFF633600E0BA21C0580FB2DDEACF0049B43F2E
C:\WINDOWS\system32\javaw.exe InMem: 0 Det [G] PX5: C4E5ED02008194B4109E02C4245AB900B11DDC5F
C:\WINDOWS\system32\javaws.exe InMem: 0 Det [G] PX5: 1946B48700C30A7D2061021564C3DD0037FAFAD8
C:\WINDOWS\system32\MRT.exe InMem: 0 Det [G] PX5: 48A77EE87823B976525D01FCD203D2015171B0C6
C:\WINDOWS\system32\Mscomct2.ocx InMem: 0 Det [G] PX5: 482C38FAC073C39FE2390994E4D8F0002D1899C5
C:\WINDOWS\system32\mucltui.dll InMem: 0 Det [G] PX5: 0FB1943B78EED05B23D6044931871C00FA81B94F
C:\WINDOWS\system32\mucltui.dll.mui InMem: 0 Det [G] PX5: A5CEE5C07828FA91754700AE8244D0004ACFFC69
C:\WINDOWS\system32\Oemdspif.dll InMem: 0 Det [u] PX5: 2304223F00E10237208D025AA35727008A16859F
C:\WINDOWS\system32\OpenAL32.dll InMem: 0 Det [u] PX5: 7336E5C300AAF6ED902101621205AB0032631A3A
C:\WINDOWS\system32\P17CPI.dll InMem: 0 Det [G] PX5: 32FBCDEA00D93A52D0AF004B6E4F870027299298
C:\WINDOWS\system32\P17res.dll InMem: 0 Det [G] PX5: 22AEA489002D04451A6B0247B0408F00EA06AFC9
C:\WINDOWS\system32\qt-dx331.dll InMem: 0 Det [G] PX5: C9F371530031E58DE000360B1F59620004BE1690
C:\WINDOWS\system32\sfman32.dll InMem: 0 Det [G] PX5: E33B23DD00EC913E549C002A39050E00B409732B
C:\WINDOWS\system32\sfms32.dll InMem: 0 Det [G] PX5: 35B998020033A951D89B0149E842CE00A2381084
C:\WINDOWS\system32\spmsg.dll InMem: 0 Det [G] PX5: A8BE5964788B70E4493E00CC5D5A50003867E72D
C:\WINDOWS\system32\spmsg2.dll InMem: 0 Det [G] PX5: 7E24D967E08AB45B361300EE8BE02A005AECB5C6
C:\WINDOWS\system32\tzchange.exe InMem: 0 Det [G] PX5: B187CD07002A5078ECCB00B5A1698600F51EF469
C:\WINDOWS\system32\watchdog.sys InMem: 0 Det [G] PX5: A5490EC7005C2AF84570001E79455E0011553B7B
C:\WINDOWS\system32\win32k.sys InMem: 0 Det [G] PX5: BDD18AD4007B2FC7283D1C22055DF2008FCE352A
C:\WINDOWS\system32\wmpns.dll InMem: 0 Det [G] PX5: BD70DED10015ACD460960335E7A46500A2DA2C7F
C:\WINDOWS\system32\wrap_oal.dll InMem: 0 Det [u] PX5: 50CDC7DB004C2EB850330609EE48C8003194D3F0
C:\WINDOWS\system32\wuapi.dll.mui InMem: 0 Det [G] PX5: 92E0CC095853C0C1753300650DDDAD00C0399BC2
C:\WINDOWS\system32\wuaueng.dll.mui InMem: 0 Det [G] PX5: 8F87ECF5583D62C253DE00AB7F3D51002C1F4DC0
C:\WINDOWS\system32\wucltui.dll.mui InMem: 0 Det [G] PX5: 70241DA158CC4AF1959400D2361A37006066AE07
C:\WINDOWS\system32\xmllite.dll InMem: 0 Det [G] PX5: DBDBF6F300FC6405DCA0019FAEEF2800153F1E93
C:\WINDOWS\system32\xvidcore.dll InMem: 0 Det [G] PX5: 2362D877009D89B010AC095DF086730098D239D9
C:\WINDOWS\Temp\CTPBSeq.exe InMem: 0 Det [G] PX5: EB386FB00044827B00AE014605676500ECEAB379
C:\Documents and Settings\Compaq_Proprietario\Desktop\a2FreeSetup.exe InMem: 0 Det [u] PX5: 14A6205AC84CA6050D65B37FD347C7014425F5A3
C:\Programmi\Pointstone\ADS Scanner 2\ADS.exe InMem: 0 Det [UP] PX5: 32EDD2CFD0E6F0352CD20589B2126000E1ABAB97
C:\Documents and Settings\Compaq_Proprietario\Desktop\ADSScannerSetup.exe InMem: 0 Det [u] PX5: 2083FF4A906D9861DFB7050B49F504001FA7018D
C:\Documents and Settings\Compaq_Proprietario\Desktop\ATF-Cleaner.exe InMem: 0 Det [GP] PX5: 3A5DF082003D80E6C67600375B5B0300CB41E90D
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe InMem: 0 Det [GP] PX5: 3DF7D3A40061C4A70C8E069553313F002B40F674
C:\Documents and Settings\Compaq_Proprietario\Desktop\HJTInstall.exe InMem: 0 Det [G] PX5: 4BE7F08838A9D813655F0CD02AF298007E0371EB
C:\Documents and Settings\Compaq_Proprietario\Desktop\launch.exe InMem: 0 Det [u] PX5: CA3AD1FCD02CDC139C9A9F00C34E4F0004177086
C:\Documents and Settings\Compaq_Proprietario\Desktop\PREVXCSIFREE.EXE InMem: 0 Det [GP] PX5: 9EFC5BC53810EC7A827809ED24C2D600ABDD5DDD
C:\Documents and Settings\Compaq_Proprietario\Desktop\SysInspector.exe InMem: 0 Det [UP] PX5: 54E40A55007BC784F5C83AE168ADA800EEBD3DF0
C:\Documents and Settings\Compaq_Proprietario\Impostazioni locali\Temp\VP6Install.exe InMem: 0 Det [u] PX5: 2F2874444060BF1566380091B6E9A700C046C915
C:\Documents and Settings\Compaq_Proprietario\Impostazioni locali\Temp\VP6VFW.dll InMem: 0 Det [u] PX5: D07A5DDA40A69E1DCC4E0648B4D2AD006E5DA76F
Summary:
C:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe - [b] >> Fraudulent Security Program
End of PrevxCSI Log - http://www.prevx.com
__________________
La mia difesa dai virus?? Hardware upgrade |
|
|
|
|
|
#5 |
|
Member
Iscritto dal: Nov 2007
Città: Vicenza(malo)
Messaggi: 79
|
ecco qui i alcuni log..
Codice:
Scanning Report
Sunday, June 08, 2008 13:30:51 - 14:26:14
Computer name: NOME-80B5784770
Scanning type: Scan system for malware, rootkits
Target: C:\ D:\
Result: 1 malware found
Tracking Cookie (spyware)
* System
Statistics
Scanned:
* Files: 35238
* System: 4408
* Not scanned: 7
Actions:
* Disinfected: 0
* Renamed: 0
* Deleted: 0
* None: 1
* Submitted: 0
Files not scanned:
* C:\PAGEFILE.SYS
* C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* C:\WINDOWS\SYSTEM32\CONFIG\SAM
* C:\WINDOWS\SYSTEM32\CONFIG\SECURITY
* C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE
* C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM
* C:\WINDOWS\SOFTWAREDISTRIBUTION\EVENTCACHE\{6EAAA5B5-31D6-4493-96AB-0E2A21598D0E}.BIN
Options
Scanning engines:
* F-Secure USS: 2.30.0
* F-Secure Hydra: 2.8.8110, 2008-06-08
* F-Secure AVP: 7.0.171, 2008-06-08
* F-Secure Pegasus: 1.20.0, 2008-04-15
* F-Secure Blacklight: 1.0.68
Scanning options:
* Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ZIP XXX ANI AVB BAT CMD JPG LSP MAP MHT MIF PHP POT SWF WMF NWS TAR
* Use Advanced heuristics
Copyright © 1998-2007 Product support |Send virus sample to F-Secure
F-Secure assumes no responsibility for material created or published by third parties that F-Secure World Wide Web pages have a link to. Unless you have clearly stated otherwise, by submitting material to any of our servers, for example by E-mail or via our F-Secure's CGI E-mail, you agree that the material you make available may be published in the F-Secure World Wide Pages or hard-copy publications. You will reach F-Secure public web site by clicking on underlined links. While doing this, your access will be logged to our private access statistics with your domain name.This information will not be given to any third party. You agree not to take action against us in relation to material that you submit. Unless you have clearly stated otherwise, by submitting material you warrant that F-Secure may incorporate any concepts described in it in the F-Secure products/publications without liability.
Codice:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19.01.09, on 08/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Programmi\HP\HP Software Update\HPwuSchd2.exe
C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Programmi\Creative\Shared Files\CTSched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe
C:\Programmi\Microsoft ActiveSync\wcescomm.exe
C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe
C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\ALCXMNTR.EXE
c:\windows\system\hpsysdrv.exe
C:\Programmi\Windows Live\Messenger\usnsvc.exe
C:\Programmi\a-squared Free\a2service.exe
C:\Programmi\Mozilla Firefox\firefox.exe
C:\Programmi\uTorrent\uTorrent.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - URLSearchHook: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Supporto di collegamento per Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Programmi\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntry
O4 - HKLM\..\Run: [StartCCC] "C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [VolPanel] "C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [CreativeTaskScheduler] "C:\Programmi\Creative\Shared Files\CTSched.exe" /logon
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [acepsdf] c:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe acepsdf
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programmi\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe
O4 - Startup: Y'z Toolbar.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Crea preferito portatile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: Guida alla connessione - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Guida alla connessione - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programmi\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1212566945203
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2E68A6DA-E021-44FB-A1C9-72FDCDFECFB3}: NameServer = 193.12.150.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{CF7FAEEA-74FE-45EA-A53E-886731447AD2}: NameServer = 193.12.150.2,0.0.0.0
O17 - HKLM\System\CS1\Services\Tcpip\..\{2E68A6DA-E021-44FB-A1C9-72FDCDFECFB3}: NameServer = 193.12.150.2
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
--
End of file - 8637 bytes
__________________
La mia difesa dai virus?? Hardware upgrade |
|
|
|
|
|
#6 |
|
Member
Iscritto dal: Nov 2007
Città: Vicenza(malo)
Messaggi: 79
|
Codice:
============================================================================= Dr.Web® Scanner per Windows v4.44.5 (4.44.5.05200) © Igor Daniloff, 1992-2008. All rights reserved. Log generati su: 2008-06-08, 16:00:52 [Compaq_Proprietario] Linea di Comando: "C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\setup.exe" /lng:it-cureit.dwl /ini:setup_XP.ini Sistema operativo:Windows XP Home Edition x86 (Build 2600), Service Pack 2 ============================================================================= DwShield avviato Versione Engine: 4.44 (4.44.0.09170) Versione API dell'Engine: 2.02 [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\1ea4a300 - 2524 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\286fd9a4 - 2410 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\1209f872 - 4202 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\4be9fe47 - 5939 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\1d79462a - 1088 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\2cc8325c - 1646 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\19ab38c8 - 3574 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\5941e095 - 5179 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\aa438f5f - 2885 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\ee74a674 - 5080 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\cebae460 - 16365 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\b7f642f3 - 13612 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\536cc277 - 1725 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\469b7164 - 4099 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\47375144 - 1319 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\8e52813c - 3709 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\185e37e4 - 6097 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\c3e02ea0 - 1097 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\f7f2f266 - 3605 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\e3c42296 - 7770 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\a4084ce7 - 4210 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\96a1a594 - 1010 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\6ab80e7a - 421 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\9d03cac1 - 1306 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\ed616e4c - 1234 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\e2cbe749 - 1238 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\1303a7e2 - 4406 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\e2c8514c - 7847 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\ee528d4c - 6014 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\4e0388cd - 804 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\661d941c - 5020 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\43f206fb - 1565 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\3862994c - 1582 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\fe1fa47b - 1131 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\caeacd74 - 2303 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\8cd1ff21 - 3904 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\750a833c - 2456 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\03f1f11b - 4411 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\a06e5492 - 1311 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\fb593d46 - 2486 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\3b085294 - 4462 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\55057e06 - 94 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\d85cc91d - 557 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\4e9ae0ca - 945 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\a2ef6e9d - 209466 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\0c26eea3 - 146 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\df1436bb - 679 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\6bc0fcd9 - 621 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\6b3754d8 - 999 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\f0ba9edd - 1211 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\1dd518f2 - 814 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\6199324c - 698 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\c16b49ab - 2747 virus records [Virus base] C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\689872e7 - 13534 virus records Totale virus records: 385557 C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\setup.exe compresso da BINARYRES File Chiave: C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\setup.key Numero della chiave della licenza: 0010216047 Registrato a nome di: A User Chiave della Licenza attiva: 2008-06-03 Scadenza della chiave della Licenza: 2008-12-04 Processi in memoria: System:4 - Ok Processi in memoria: C:\WINDOWS\System32\svchost.exe:152 - Ok Processi in memoria: C:\Programmi\Microsoft ActiveSync\wcescomm.exe:220 - Ok Processi in memoria: C:\WINDOWS\System32\alg.exe:332 - Ok Processi in memoria: C:\Programmi\Internet Explorer\iexplore.exe:456 - Ok Processi in memoria: \SystemRoot\System32\smss.exe:588 - Ok Processi in memoria: \??\C:\WINDOWS\system32\csrss.exe:684 - Ok Processi in memoria: \??\C:\WINDOWS\system32\winlogon.exe:724 - Ok Processi in memoria: C:\WINDOWS\system32\services.exe:768 - Ok Processi in memoria: C:\WINDOWS\system32\lsass.exe:780 - Ok Processi in memoria: C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe:884 - Ok Processi in memoria: C:\WINDOWS\system32\Ati2evxx.exe:916 - Ok Processi in memoria: C:\WINDOWS\system32\svchost.exe:948 - Ok Processi in memoria: C:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe:960 - Ok Processi in memoria: C:\WINDOWS\system32\svchost.exe:1056 - Ok Processi in memoria: C:\WINDOWS\System32\svchost.exe:1092 - Ok Processi in memoria: C:\WINDOWS\system32\svchost.exe:1164 - Ok Processi in memoria: C:\Programmi\HP\HP Software Update\HPwuSchd2.exe:1188 - Ok Processi in memoria: C:\WINDOWS\system32\Ati2evxx.exe:1192 - Ok Processi in memoria: C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe:1256 - Ok Processi in memoria: C:\WINDOWS\system32\svchost.exe:1304 - Ok Processi in memoria: C:\WINDOWS\system32\Rundll32.exe:1328 - Ok Processi in memoria: C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\MOM.exe:1356 - Ok Processi in memoria: C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe:1372 - Ok Processi in memoria: C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe:1380 - Ok Processi in memoria: C:\WINDOWS\system32\spoolsv.exe:1464 - Ok Processi in memoria: C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe:1508 - Ok Processi in memoria: C:\PROGRA~1\MICROS~4\rapimgr.exe:1652 - Ok Processi in memoria: C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe:1692 - Ok Processi in memoria: C:\WINDOWS\Explorer.EXE:1728 - Ok Processi in memoria: C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe:1768 - Ok Processi in memoria: C:\WINDOWS\system32\CTsvcCDA.exe:1800 - Ok Processi in memoria: C:\WINDOWS\system32\ctfmon.exe:1832 - Ok Processi in memoria: C:\Programmi\Creative\Shared Files\CTSched.exe:1856 - Ok Processi in memoria: C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe:2032 - Ok Processi in memoria: C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\_start.exe:2152 - Ok Processi in memoria: C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\ccc.exe:2216 - Ok Processi in memoria: C:\HP\KBD\KBD.EXE:2496 - Ok Processi in memoria: C:\Documents and Settings\Compaq_Proprietario\Desktop\launch.exe:2704 - Ok Processi in memoria: C:\Programmi\a-squared Free\a2service.exe:2864 - Ok Processi in memoria: C:\Programmi\Windows Live\Messenger\usnsvc.exe:3156 - Ok Processi in memoria: C:\Programmi\File comuni\Microsoft Shared\Windows Live\WLLoginProxy.exe:3240 - Ok Processi in memoria: C:\Programmi\Mozilla Firefox\firefox.exe:3296 - Ok Processi in memoria: C:\WINDOWS\system32\wuauclt.exe:3444 - Ok Processi in memoria: C:\WINDOWS\ALCXMNTR.EXE:3836 - Ok Processi in memoria: c:\windows\system\hpsysdrv.exe:3888 - Ok Processi in memoria: C:\DOCUME~1\COMPAQ~1\IMPOST~1\Temp\RarSFX0\setup.exe:3904 - Ok [Memory test] Nessun virus trovato Master Boot Record HDD1 - Ok Active OS/2 or WinNT Boot Sector HDD1 - Ok [Scan path] c:\documents and settings\all users\menu avvio\programmi\esecuzione automatica\desktop.ini c:\documents and settings\all users\menu avvio\programmi\esecuzione automatica\desktop.ini - Ok [Scan path] c:\documents and settings\compaq_proprietario\desktop\launch.exe c:\documents and settings\compaq_proprietario\desktop\launch.exe - archivio ZIP >c:\documents and settings\compaq_proprietario\desktop\launch.exe\be-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\bg-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\cn-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\cs-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\de-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\dwebio16.dll - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\dwebio32.dll compresso da ASPACK >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\dwebio32.dll - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\dwebllio.dll compresso da ASPACK >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\dwebllio.dll - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\el-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm - archivio CHM >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#IDXHDR - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#ITBITS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#IVB - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#STRINGS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#SYSTEM - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#TOPICS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#URLSTR - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#URLTBL - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\#WINDOWS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$FIftiMain - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$OBJINST - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$WWAssociativeLinks/BTree - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$WWAssociativeLinks/Data - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$WWAssociativeLinks/Map - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$WWAssociativeLinks/Property - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\$WWKeywordLinks/Property - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\bull.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\butpause2.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\butstart1.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\butstop3.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\CSHelp.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\default.css - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\en-drwebgui.hhc - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\en-drwebgui_popup_text.js - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\helpman_topicinit.js - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_aboutbox.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_curesettings.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_dialog_main.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_dialog_scan.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_dialog_scan_path.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_dialog_stat.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_proppage_actions.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_proppage_common.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_proppage_log.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_proppage_scan.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\idd_proppage_types.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\intro.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\legal.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\open.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\ph_adv.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc01.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc02.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc03.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_action.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_action_adv.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_drweb_logo.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_general.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_inf.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_log.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_path_mask.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_scan.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_stat.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\sc_types.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\scan_settings.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm\scanning.htm - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\en-drwebgui.chm - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\eo-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\es-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\et-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\fr-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\hu-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\it-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ja-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ko-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\lt-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\lv-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\nl-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\no-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\pl-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\pt-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm - archivio CHM >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#IDXHDR - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#ITBITS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#IVB - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#STRINGS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#SYSTEM - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#TOPICS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#URLSTR - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#URLTBL - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\#WINDOWS - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$FIftiMain - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$OBJINST - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$WWAssociativeLinks/BTree - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$WWAssociativeLinks/Data - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$WWAssociativeLinks/Map - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$WWAssociativeLinks/Property - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\$WWKeywordLinks/Property - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\bull.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\butpause.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\butstart.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\butstop.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\CSHelp.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\default.css - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\helpman_topicinit.js - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_aboutbox.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_curesettings.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_dialog_main.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_dialog_scan.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_dialog_scan_path.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_dialog_stat.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_proppage_actions.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_proppage_common.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_proppage_log.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_proppage_scan.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\idd_proppage_types.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\intro.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\open.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\ph_adv.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\ru-drwebgui.hhc - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\ru-drwebgui_popup_text.js - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc01.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc02.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc03.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_action.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_action_adv.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_drweb_logo.zoom76.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_general.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_inf.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_log.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_path_mask.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_scan.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_stat.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\sc_types.png - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\scan_settings.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\scanning.htm - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm\topic.htm - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ru-drwebgui.chm - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\setup.dll - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\setup.exe compresso da BINARYRES >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\setup.exe - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\setup.key - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\setup_me.ini - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\setup_xp.ini - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\sk-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\tr-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\uk-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\zh-cureit.dwl - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat - archivio ZIP >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_cureit.ico - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\no-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\no-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\no-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\no.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-history.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-history.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-slogan.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-title.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh-2.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh-action.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh-start.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh-update.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_exit.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_globe.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_green.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_help-mirror.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_help.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_help0-mirror.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_help0.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_history.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_logo.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_main-mirror.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_main.bmp - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ar-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\be-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\bg-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cn-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\cs-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\de-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\el-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\en-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\eo-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\es-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\et-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fa-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fi-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\fr-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hu-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\hy-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\it-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ja-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ka-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ko-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lt-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\lv-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\nl-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\no-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\no-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pl-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\pt-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\ru-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sk-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\sl-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\th-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\tr-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\uk-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\vi-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh-help.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\zh-start.txt - Ok >>c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat\_start.ini - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.dat - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\_start.exe - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\4e9ae0ca - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\d85cc91d - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\55057e06 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\3b085294 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\fb593d46 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\a06e5492 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\03f1f11b - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\750a833c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\8cd1ff21 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\caeacd74 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\fe1fa47b - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\3862994c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\43f206fb - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\661d941c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\4e0388cd - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ee528d4c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\e2c8514c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\1303a7e2 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\e2cbe749 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ed616e4c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\9d03cac1 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\6ab80e7a - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\96a1a594 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\a4084ce7 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\e3c42296 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\f7f2f266 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\c3e02ea0 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\185e37e4 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\8e52813c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\47375144 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\469b7164 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\536cc277 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\b7f642f3 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\cebae460 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\ee74a674 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\aa438f5f - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\5941e095 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\19ab38c8 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\2cc8325c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\1d79462a - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\4be9fe47 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\1209f872 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\286fd9a4 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\a2ef6e9d - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\689872e7 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\c16b49ab - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\1ea4a300 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\6199324c - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\1dd518f2 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\f0ba9edd - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\6b3754d8 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\6bc0fcd9 - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\df1436bb - Ok >c:\documents and settings\compaq_proprietario\desktop\launch.exe\0c26eea3 - Ok c:\documents and settings\compaq_proprietario\desktop\launch.exe - Ok c:\documents and settings\compaq_proprietario\desktop\launch.exe:Zone.Identifier - Ok [Scan path] c:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe c:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe - Ok [Scan path] c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\_start.exe c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\_start.exe - Ok [Scan path] c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\dwebllio.dll c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\dwebllio.dll compresso da ASPACK >c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\dwebllio.dll - Ok [Scan path] c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\setup.exe c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\setup.exe compresso da BINARYRES >c:\documents and settings\compaq_proprietario\impostazioni locali\temp\rarsfx0\setup.exe - Ok [Scan path] c:\documents and settings\compaq_proprietario\menu avvio\programmi\esecuzione automatica\desktop.ini c:\documents and settings\compaq_proprietario\menu avvio\programmi\esecuzione automatica\desktop.ini - Ok [Scan path] c:\hp\kbd\aol.dll c:\hp\kbd\aol.dll - Ok [Scan path] c:\hp\kbd\cfg.dll c:\hp\kbd\cfg.dll - Ok [Scan path] c:\hp\kbd\kbd.exe c:\hp\kbd\kbd.exe - Ok [Scan path] c:\hp\kbd\led.dll c:\hp\kbd\led.dll - Ok [Scan path] c:\hp\kbd\msg.dll c:\hp\kbd\msg.dll - Ok [Scan path] c:\hp\kbd\msikbdif.dll c:\hp\kbd\msikbdif.dll - Ok [Scan path] c:\hp\kbd\onl.dll c:\hp\kbd\onl.dll - Ok [Scan path] c:\hp\kbd\osd.dll c:\hp\kbd\osd.dll - Ok [Scan path] c:\hp\kbd\ps2.dll c:\hp\kbd\ps2.dll - Ok [Scan path] c:\hp\kbd\sct.dll c:\hp\kbd\sct.dll - Ok [Scan path] c:\hp\kbd\url.dll c:\hp\kbd\url.dll - Ok [Scan path] c:\hp\kbd\usb.dll c:\hp\kbd\usb.dll - Ok [Scan path] c:\programmi\a-squared free\a2freecontmenu.dll c:\programmi\a-squared free\a2freecontmenu.dll - Ok [Scan path] c:\programmi\a-squared free\a2service.exe c:\programmi\a-squared free\a2service.exe compresso da UPX >c:\programmi\a-squared free\a2service.exe - Ok [Scan path] c:\programmi\adobe\reader 8.0\reader\reader_sl.exe c:\programmi\adobe\reader 8.0\reader\reader_sl.exe - Ok [Scan path] c:\programmi\ati technologies\ati hydravision\hydradm.exe c:\programmi\ati technologies\ati hydravision\hydradm.exe - Ok [Scan path] c:\programmi\ati technologies\ati hydravision\hydradmh.dll c:\programmi\ati technologies\ati hydravision\hydradmh.dll - Ok [Scan path] c:\programmi\ati technologies\ati hydravision\hydraita.dll c:\programmi\ati technologies\ati hydravision\hydraita.dll - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-implementation\32\wbhelp2.dll c:\programmi\ati technologies\ati.ace\core-implementation\32\wbhelp2.dll - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-implementation\32\wbocx.ocx c:\programmi\ati technologies\ati.ace\core-implementation\32\wbocx.ocx - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-static\atiacmxx.dll c:\programmi\ati technologies\ati.ace\core-static\atiacmxx.dll - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-static\ccc.exe c:\programmi\ati technologies\ati.ace\core-static\ccc.exe - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-static\clistart.exe c:\programmi\ati technologies\ati.ace\core-static\clistart.exe - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-static\dem.graphics.i0709.dll c:\programmi\ati technologies\ati.ace\core-static\dem.graphics.i0709.dll - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-static\dem.graphics.i0712.dll c:\programmi\ati technologies\ati.ace\core-static\dem.graphics.i0712.dll - Ok [Scan path] c:\programmi\ati technologies\ati.ace\core-static\mom.exe c:\programmi\ati technologies\ati.ace\core-static\mom.exe - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aecore.dll c:\programmi\avira\antivir personaledition classic\aecore.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aeemu.dll c:\programmi\avira\antivir personaledition classic\aeemu.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aegen.dll c:\programmi\avira\antivir personaledition classic\aegen.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aehelp.dll c:\programmi\avira\antivir personaledition classic\aehelp.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aeheur.dll c:\programmi\avira\antivir personaledition classic\aeheur.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aeoffice.dll c:\programmi\avira\antivir personaledition classic\aeoffice.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aepack.dll c:\programmi\avira\antivir personaledition classic\aepack.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aerdl.dll c:\programmi\avira\antivir personaledition classic\aerdl.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aescn.dll c:\programmi\avira\antivir personaledition classic\aescn.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aescript.dll c:\programmi\avira\antivir personaledition classic\aescript.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\aevdf.dll c:\programmi\avira\antivir personaledition classic\aevdf.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avconfig.cpl c:\programmi\avira\antivir personaledition classic\avconfig.cpl - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avevtlog.dll c:\programmi\avira\antivir personaledition classic\avevtlog.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avgio.dll c:\programmi\avira\antivir personaledition classic\avgio.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avgio.sys c:\programmi\avira\antivir personaledition classic\avgio.sys - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avgnt.exe c:\programmi\avira\antivir personaledition classic\avgnt.exe - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avgntflt.sys c:\programmi\avira\antivir personaledition classic\avgntflt.sys - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avguard.exe c:\programmi\avira\antivir personaledition classic\avguard.exe - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avipc.dll c:\programmi\avira\antivir personaledition classic\avipc.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\avpref.dll c:\programmi\avira\antivir personaledition classic\avpref.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccgen.dll c:\programmi\avira\antivir personaledition classic\ccgen.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccgenrc.dll c:\programmi\avira\antivir personaledition classic\ccgenrc.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccgrdrc.dll c:\programmi\avira\antivir personaledition classic\ccgrdrc.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccguard.dll c:\programmi\avira\antivir personaledition classic\ccguard.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\cclib.dll c:\programmi\avira\antivir personaledition classic\cclib.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\cclic.dll c:\programmi\avira\antivir personaledition classic\cclic.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\cclicrc.dll c:\programmi\avira\antivir personaledition classic\cclicrc.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccmsg.dll c:\programmi\avira\antivir personaledition classic\ccmsg.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccupdate.dll c:\programmi\avira\antivir personaledition classic\ccupdate.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\ccupdrc.dll c:\programmi\avira\antivir personaledition classic\ccupdrc.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\guardmsg.dll c:\programmi\avira\antivir personaledition classic\guardmsg.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\mfc71u.dll c:\programmi\avira\antivir personaledition classic\mfc71u.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\msvcp71.dll c:\programmi\avira\antivir personaledition classic\msvcp71.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\msvcr71.dll c:\programmi\avira\antivir personaledition classic\msvcr71.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\sched.exe c:\programmi\avira\antivir personaledition classic\sched.exe - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\schedr.dll c:\programmi\avira\antivir personaledition classic\schedr.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\shlext.dll c:\programmi\avira\antivir personaledition classic\shlext.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\smtplib.dll c:\programmi\avira\antivir personaledition classic\smtplib.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\sqlite3.dll c:\programmi\avira\antivir personaledition classic\sqlite3.dll - Ok [Scan path] c:\programmi\avira\antivir personaledition classic\unacev2.dll c:\programmi\avira\antivir personaledition classic\unacev2.dll compresso da PESTUB >c:\programmi\avira\antivir personaledition classic\unacev2.dll - Ok [Scan path] c:\programmi\creative\shared files\ctsched.exe c:\programmi\creative\shared files\ctsched.exe - Ok [Scan path] c:\programmi\creative\shared files\software update\ctpid.ocx c:\programmi\creative\shared files\software update\ctpid.ocx - Ok [Scan path] c:\programmi\creative\sharedll\cadi\ctaudspi.dll c:\programmi\creative\sharedll\cadi\ctaudspi.dll - Ok [Scan path] c:\programmi\creative\sharedll\cadi\ctcadi.dll c:\programmi\creative\sharedll\cadi\ctcadi.dll - Ok [Scan path] c:\programmi\creative\sharedll\cadi\ctdmzspi.dll c:\programmi\creative\sharedll\cadi\ctdmzspi.dll - Ok [Scan path] c:\programmi\creative\sharedll\cadi\ctksspi.dll c:\programmi\creative\sharedll\cadi\ctksspi.dll - Ok [Scan path] c:\programmi\creative\sharedll\cadi\ctmbspi.dll c:\programmi\creative\sharedll\cadi\ctmbspi.dll - Ok [Scan path] c:\programmi\creative\sharedll\cadi\ctpxspi.dll c:\programmi\creative\sharedll\cadi\ctpxspi.dll - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\audiocs\ctaudcs.cpl c:\programmi\creative\sound blaster x-fi\audiocs\ctaudcs.cpl - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\ctaudseu.dll c:\programmi\creative\sound blaster x-fi\volume panel\ctaudseu.dll - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\ctinifu.dll c:\programmi\creative\sound blaster x-fi\volume panel\ctinifu.dll - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\ctrlsrcu.dll c:\programmi\creative\sound blaster x-fi\volume panel\ctrlsrcu.dll - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\ctthemeu.dll c:\programmi\creative\sound blaster x-fi\volume panel\ctthemeu.dll - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\gdictrl.sku c:\programmi\creative\sound blaster x-fi\volume panel\gdictrl.sku - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\gdictrl2.sku c:\programmi\creative\sound blaster x-fi\volume panel\gdictrl2.sku - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\gdictrl3.sku c:\programmi\creative\sound blaster x-fi\volume panel\gdictrl3.sku - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\mxlibu.dll c:\programmi\creative\sound blaster x-fi\volume panel\mxlibu.dll - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\rtxctrl.sku c:\programmi\creative\sound blaster x-fi\volume panel\rtxctrl.sku - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\volpanel.crl c:\programmi\creative\sound blaster x-fi\volume panel\volpanel.crl - Ok [Scan path] c:\programmi\creative\sound blaster x-fi\volume panel\volpanlu.exe c:\programmi\creative\sound blaster x-fi\volume panel\volpanlu.exe - Ok [Scan path] c:\programmi\file comuni\adobe\acrobat\activex\acroiehelper.dll c:\programmi\file comuni\adobe\acrobat\activex\acroiehelper.dll - Ok [Scan path] c:\programmi\file comuni\adobe\acrobat\activex\pdfshell.dll c:\programmi\file comuni\adobe\acrobat\activex\pdfshell.dll - Ok [Scan path] c:\programmi\file comuni\adobe\acrobat\activex\pdfshell.ita c:\programmi\file comuni\adobe\acrobat\activex\pdfshell.ita - Ok [Scan path] c:\programmi\file comuni\ati technologies\multimedia\atidvcr.dll c:\programmi\file comuni\ati technologies\multimedia\atidvcr.dll - Ok [Scan path] c:\programmi\file comuni\ati technologies\multimedia\atixcode.dll c:\programmi\file comuni\ati technologies\multimedia\atixcode.dll - Ok [Scan path] c:\programmi\file comuni\installshield\driver\1050\intel 32\idrivert.exe c:\programmi\file comuni\installshield\driver\1050\intel 32\idrivert.exe - Ok [Scan path] c:\programmi\file comuni\microsoft shared\information retrieval\msitss.dll c:\programmi\file comuni\microsoft shared\information retrieval\msitss.dll - Ok [Scan path] c:\programmi\file comuni\microsoft shared\speech\sapi.cpl c:\programmi\file comuni\microsoft shared\speech\sapi.cpl - Ok [Scan path] c:\programmi\file comuni\microsoft shared\windows live\msidcrl40.dll c:\programmi\file comuni\microsoft shared\windows live\msidcrl40.dll - Ok [Scan path] c:\programmi\file comuni\microsoft shared\windows live\windowslivelogin.dll c:\programmi\file comuni\microsoft shared\windows live\windowslivelogin.dll - Ok [Scan path] c:\programmi\file comuni\microsoft shared\windows live\wlloginproxy.exe c:\programmi\file comuni\microsoft shared\windows live\wlloginproxy.exe - Ok [Scan path] c:\programmi\file comuni\system\ole db\oledb32.dll c:\programmi\file comuni\system\ole db\oledb32.dll - Ok [Scan path] c:\programmi\hewlett-packard\hp boot optimizer\hpbootop.exe c:\programmi\hewlett-packard\hp boot optimizer\hpbootop.exe - Ok [Scan path] c:\programmi\hp\hp software update\hpwuschd2.exe c:\programmi\hp\hp software update\hpwuschd2.exe - Ok [Scan path] c:\programmi\internet explorer\ieproxy.dll c:\programmi\internet explorer\ieproxy.dll - Ok [Scan path] c:\programmi\internet explorer\iexplore.exe c:\programmi\internet explorer\iexplore.exe - Ok [Scan path] c:\programmi\java\jre1.5.0_05\bin\npjpi150_05.dll c:\programmi\java\jre1.5.0_05\bin\npjpi150_05.dll - Ok [Scan path] c:\programmi\java\jre1.6.0_05\bin\jusched.exe c:\programmi\java\jre1.6.0_05\bin\jusched.exe - Ok [Scan path] c:\programmi\java\jre1.6.0_05\bin\msvcr71.dll c:\programmi\java\jre1.6.0_05\bin\msvcr71.dll - Ok [Scan path] c:\programmi\java\jre1.6.0_05\bin\npjpi160_05.dll c:\programmi\java\jre1.6.0_05\bin\npjpi160_05.dll - Ok [Scan path] c:\programmi\java\jre1.6.0_05\bin\ssv.dll c:\programmi\java\jre1.6.0_05\bin\ssv.dll - Ok [Scan path] c:\programmi\messenger\msmsgs.exe c:\programmi\messenger\msmsgs.exe - Ok [Scan path] c:\programmi\microsoft activesync\dtptdns.dll c:\programmi\microsoft activesync\dtptdns.dll - Ok [Scan path] c:\programmi\microsoft activesync\inetrepl.dll c:\programmi\microsoft activesync\inetrepl.dll - Ok [Scan path] c:\programmi\microsoft activesync\msvcp71.dll c:\programmi\microsoft activesync\msvcp71.dll - Ok [Scan path] c:\programmi\microsoft activesync\rapimgr.exe c:\programmi\microsoft activesync\rapimgr.exe - Ok [Scan path] c:\programmi\microsoft activesync\rapiproxystub.dll c:\programmi\microsoft activesync\rapiproxystub.dll - Ok [Scan path] c:\programmi\microsoft activesync\tcp2udp.dll c:\programmi\microsoft activesync\tcp2udp.dll - Ok [Scan path] c:\programmi\microsoft activesync\wcescomm.exe c:\programmi\microsoft activesync\wcescomm.exe - Ok [Scan path] c:\programmi\microsoft activesync\wcesview.dll c:\programmi\microsoft activesync\wcesview.dll - Ok [Scan path] c:\programmi\mozilla firefox\components\jar50.dll c:\programmi\mozilla firefox\components\jar50.dll - Ok [Scan path] c:\programmi\mozilla firefox\components\myspell.dll c:\programmi\mozilla firefox\components\myspell.dll - Ok [Scan path] c:\programmi\mozilla firefox\components\spellchk.dll c:\programmi\mozilla firefox\components\spellchk.dll - Ok [Scan path] c:\programmi\mozilla firefox\extensions\[email protected]\components\fullsoft.dll c:\programmi\mozilla firefox\extensions\[email protected]\components\fullsoft.dll - Ok [Scan path] c:\programmi\mozilla firefox\extensions\[email protected]\components\qfaservices.dll c:\programmi\mozilla firefox\extensions\[email protected]\components\qfaservices.dll - Ok [Scan path] c:\programmi\mozilla firefox\firefox.exe c:\programmi\mozilla firefox\firefox.exe - Ok [Scan path] c:\programmi\mozilla firefox\freebl3.dll c:\programmi\mozilla firefox\freebl3.dll - Ok [Scan path] c:\programmi\mozilla firefox\js3250.dll c:\programmi\mozilla firefox\js3250.dll - Ok [Scan path] c:\programmi\mozilla firefox\nspr4.dll c:\programmi\mozilla firefox\nspr4.dll - Ok [Scan path] c:\programmi\mozilla firefox\nss3.dll c:\programmi\mozilla firefox\nss3.dll - Ok [Scan path] c:\programmi\mozilla firefox\nssckbi.dll c:\programmi\mozilla firefox\nssckbi.dll - Ok [Scan path] c:\programmi\mozilla firefox\plc4.dll c:\programmi\mozilla firefox\plc4.dll - Ok [Scan path] c:\programmi\mozilla firefox\plds4.dll c:\programmi\mozilla firefox\plds4.dll - Ok [Scan path] c:\programmi\mozilla firefox\smime3.dll c:\programmi\mozilla firefox\smime3.dll - Ok [Scan path] c:\programmi\mozilla firefox\softokn3.dll c:\programmi\mozilla firefox\softokn3.dll - Ok [Scan path] c:\programmi\mozilla firefox\ssl3.dll c:\programmi\mozilla firefox\ssl3.dll - Ok [Scan path] c:\programmi\mozilla firefox\xpcom_compat.dll c:\programmi\mozilla firefox\xpcom_compat.dll - Ok [Scan path] c:\programmi\mozilla firefox\xpcom_core.dll c:\programmi\mozilla firefox\xpcom_core.dll - Ok [Scan path] c:\programmi\outlook express\setup50.exe c:\programmi\outlook express\setup50.exe - Ok [Scan path] c:\programmi\outlook express\wabfind.dll c:\programmi\outlook express\wabfind.dll - Ok [Scan path] c:\programmi\windows live\installer\wlsetupsvc.exe c:\programmi\windows live\installer\wlsetupsvc.exe - Ok [Scan path] c:\programmi\windows live\mail\mailcomm.dll c:\programmi\windows live\mail\mailcomm.dll - Ok [Scan path] c:\programmi\windows live\messenger\fsshext.8.5.1302.1018.dll c:\programmi\windows live\messenger\fsshext.8.5.1302.1018.dll - Ok [Scan path] c:\programmi\windows live\messenger\msgrapp.8.5.1302.1018.dll c:\programmi\windows live\messenger\msgrapp.8.5.1302.1018.dll - Ok [Scan path] c:\programmi\windows live\messenger\usnsvc.exe c:\programmi\windows live\messenger\usnsvc.exe - Ok [Scan path] c:\programmi\windows live\messenger\usnsvcps.dll c:\programmi\windows live\messenger\usnsvcps.dll - Ok [Scan path] c:\programmi\windows media player\wmpnetwk.exe c:\programmi\windows media player\wmpnetwk.exe - Ok [Scan path] c:\programmi\winrar\rarext.dll c:\programmi\winrar\rarext.dll - Ok [Scan path] c:\programmi\yahoo!\common\yinsthelper.dll c:\programmi\yahoo!\common\yinsthelper.dll - Ok [Scan path] c:\programmi\yahoo!\companion\installs\cpn\pubmod.dll c:\programmi\yahoo!\companion\installs\cpn\pubmod.dll - Ok [Scan path] c:\programmi\yahoo!\companion\installs\cpn\ypubc.dll c:\programmi\yahoo!\companion\installs\cpn\ypubc.dll - Ok [Scan path] c:\programmi\yahoo!\companion\installs\cpn\yt.dll c:\programmi\yahoo!\companion\installs\cpn\yt.dll - Ok [Scan path] c:\windows\alcxmntr.exe c:\windows\alcxmntr.exe - Ok [Scan path] c:\windows\apppatch\acadproc.dll c:\windows\apppatch\acadproc.dll - Ok [Scan path] c:\windows\apppatch\acgenral.dll c:\windows\apppatch\acgenral.dll - Ok [Scan path] c:\windows\assembly\gac\axinterop.wbocxlib\1.0.0.0__90ba9c70f846762e\axinterop.wbocxlib.dll c:\windows\assembly\gac\axinterop.wbocxlib\1.0.0.0__90ba9c70f846762e\axinterop.wbocxlib.dll - Ok [Scan path] c:\windows\assembly\gac\interop.wbocxlib\1.0.0.0__90ba9c70f846762e\interop.wbocxlib.dll c:\windows\assembly\gac\interop.wbocxlib\1.0.0.0__90ba9c70f846762e\interop.wbocxlib.dll - Ok [Scan path] c:\windows\assembly\gac_msil\ace.graphics.displaysmanager.shared\2.0.2573.17685__90ba9c70f846762e\ace.graphics.displaysmanager.shared.dll c:\windows\assembly\gac_msil\ace.graphics.displaysmanager.shared\2.0.2573.17685__90ba9c70f846762e\ace.graphics.displaysmanager.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.actions.ccaa.shared\2.0.3005.17473__90ba9c70f846762e\aem.actions.ccaa.shared.dll c:\windows\assembly\gac_msil\aem.actions.ccaa.shared\2.0.3005.17473__90ba9c70f846762e\aem.actions.ccaa.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.plugin.dppe.shared\2.0.3005.17563__90ba9c70f846762e\aem.plugin.dppe.shared.dll c:\windows\assembly\gac_msil\aem.plugin.dppe.shared\2.0.3005.17563__90ba9c70f846762e\aem.plugin.dppe.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.plugin.eeu.shared\2.0.3005.17512__90ba9c70f846762e\aem.plugin.eeu.shared.dll c:\windows\assembly\gac_msil\aem.plugin.eeu.shared\2.0.3005.17512__90ba9c70f846762e\aem.plugin.eeu.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.plugin.gd.shared\2.0.3005.17562__90ba9c70f846762e\aem.plugin.gd.shared.dll c:\windows\assembly\gac_msil\aem.plugin.gd.shared\2.0.3005.17562__90ba9c70f846762e\aem.plugin.gd.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.plugin.hotkeys.shared\2.0.3005.17490__90ba9c70f846762e\aem.plugin.hotkeys.shared.dll c:\windows\assembly\gac_msil\aem.plugin.hotkeys.shared\2.0.3005.17490__90ba9c70f846762e\aem.plugin.hotkeys.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.plugin.source.kit.server\2.0.3054.18949__90ba9c70f846762e\aem.plugin.source.kit.server.dll c:\windows\assembly\gac_msil\aem.plugin.source.kit.server\2.0.3054.18949__90ba9c70f846762e\aem.plugin.source.kit.server.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.plugin.winmessages.shared\2.0.3005.17516__90ba9c70f846762e\aem.plugin.winmessages.shared.dll c:\windows\assembly\gac_msil\aem.plugin.winmessages.shared\2.0.3005.17516__90ba9c70f846762e\aem.plugin.winmessages.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.server.shared\2.0.3005.17489__90ba9c70f846762e\aem.server.shared.dll c:\windows\assembly\gac_msil\aem.server.shared\2.0.3005.17489__90ba9c70f846762e\aem.server.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aem.server\2.0.3054.18596__90ba9c70f846762e\aem.server.dll c:\windows\assembly\gac_msil\aem.server\2.0.3054.18596__90ba9c70f846762e\aem.server.dll - Ok [Scan path] c:\windows\assembly\gac_msil\apm.foundation\2.0.3005.17511__90ba9c70f846762e\apm.foundation.dll c:\windows\assembly\gac_msil\apm.foundation\2.0.3005.17511__90ba9c70f846762e\apm.foundation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\apm.server\2.0.3054.18594__90ba9c70f846762e\apm.server.dll c:\windows\assembly\gac_msil\apm.server\2.0.3054.18594__90ba9c70f846762e\apm.server.dll - Ok [Scan path] c:\windows\assembly\gac_msil\aticccom\2.0.0.0__90ba9c70f846762e\aticccom.dll c:\windows\assembly\gac_msil\aticccom\2.0.0.0__90ba9c70f846762e\aticccom.dll - Ok [Scan path] c:\windows\assembly\gac_msil\atidemos\2.0.3054.18598__90ba9c70f846762e\atidemos.dll c:\windows\assembly\gac_msil\atidemos\2.0.3054.18598__90ba9c70f846762e\atidemos.dll - Ok [Scan path] c:\windows\assembly\gac_msil\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll c:\windows\assembly\gac_msil\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll - Ok [Scan path] c:\windows\assembly\gac_msil\ccc.implementation\2.0.3054.18909__90ba9c70f846762e\ccc.implementation.dll c:\windows\assembly\gac_msil\ccc.implementation\2.0.3054.18909__90ba9c70f846762e\ccc.implementation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.customformats.graphics.shared\2.0.3005.17514__90ba9c70f846762e\cli.aspect.customformats.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.customformats.graphics.shared\2.0.3005.17514__90ba9c70f846762e\cli.aspect.customformats.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.customformatselection.graphics.dashboard.shared.private\2.0.3005.17517__90ba9c70f846762e\cli.aspect.customformatselection.graphics.dashboard.shared.private.dll c:\windows\assembly\gac_msil\cli.aspect.customformatselection.graphics.dashboard.shared.private\2.0.3005.17517__90ba9c70f846762e\cli.aspect.customformatselection.graphics.dashboard.shared.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecrt.graphics.dashboard\2.0.3054.18785__90ba9c70f846762e\cli.aspect.devicecrt.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.devicecrt.graphics.dashboard\2.0.3054.18785__90ba9c70f846762e\cli.aspect.devicecrt.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecrt.graphics.runtime\2.0.3054.18791__90ba9c70f846762e\cli.aspect.devicecrt.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.devicecrt.graphics.runtime\2.0.3054.18791__90ba9c70f846762e\cli.aspect.devicecrt.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecrt.graphics.shared\2.0.3005.17535__90ba9c70f846762e\cli.aspect.devicecrt.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.devicecrt.graphics.shared\2.0.3005.17535__90ba9c70f846762e\cli.aspect.devicecrt.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.dashboard\2.0.3054.18840__90ba9c70f846762e\cli.aspect.devicecv.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.dashboard\2.0.3054.18840__90ba9c70f846762e\cli.aspect.devicecv.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.runtime\2.0.3054.18837__90ba9c70f846762e\cli.aspect.devicecv.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.runtime\2.0.3054.18837__90ba9c70f846762e\cli.aspect.devicecv.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.shared\2.0.3005.17539__90ba9c70f846762e\cli.aspect.devicecv.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.shared\2.0.3005.17539__90ba9c70f846762e\cli.aspect.devicecv.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.wizard\2.0.3054.18864__90ba9c70f846762e\cli.aspect.devicecv.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.devicecv.graphics.wizard\2.0.3054.18864__90ba9c70f846762e\cli.aspect.devicecv.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicedfp.graphics.dashboard\2.0.3054.18777__90ba9c70f846762e\cli.aspect.devicedfp.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.devicedfp.graphics.dashboard\2.0.3054.18777__90ba9c70f846762e\cli.aspect.devicedfp.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicedfp.graphics.runtime\2.0.3054.18783__90ba9c70f846762e\cli.aspect.devicedfp.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.devicedfp.graphics.runtime\2.0.3054.18783__90ba9c70f846762e\cli.aspect.devicedfp.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicedfp.graphics.shared\2.0.3005.17535__90ba9c70f846762e\cli.aspect.devicedfp.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.devicedfp.graphics.shared\2.0.3005.17535__90ba9c70f846762e\cli.aspect.devicedfp.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicelcd.graphics.runtime\2.0.3054.18827__90ba9c70f846762e\cli.aspect.devicelcd.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.devicelcd.graphics.runtime\2.0.3054.18827__90ba9c70f846762e\cli.aspect.devicelcd.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicelcd.graphics.shared\2.0.3005.17521__90ba9c70f846762e\cli.aspect.devicelcd.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.devicelcd.graphics.shared\2.0.3005.17521__90ba9c70f846762e\cli.aspect.devicelcd.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.deviceproperty.graphics.dashboard.shared\2.0.3054.18769__90ba9c70f846762e\cli.aspect.deviceproperty.graphics.dashboard.shared.dll c:\windows\assembly\gac_msil\cli.aspect.deviceproperty.graphics.dashboard.shared\2.0.3054.18769__90ba9c70f846762e\cli.aspect.deviceproperty.graphics.dashboard.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.deviceproperty.graphics.runtime\2.0.3054.18782__90ba9c70f846762e\cli.aspect.deviceproperty.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.deviceproperty.graphics.runtime\2.0.3054.18782__90ba9c70f846762e\cli.aspect.deviceproperty.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.deviceproperty.graphics.shared\2.0.3005.17506__90ba9c70f846762e\cli.aspect.deviceproperty.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.deviceproperty.graphics.shared\2.0.3005.17506__90ba9c70f846762e\cli.aspect.deviceproperty.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.dashboard\2.0.3054.18885__90ba9c70f846762e\cli.aspect.devicetv.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.dashboard\2.0.3054.18885__90ba9c70f846762e\cli.aspect.devicetv.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.runtime\2.0.3054.18882__90ba9c70f846762e\cli.aspect.devicetv.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.runtime\2.0.3054.18882__90ba9c70f846762e\cli.aspect.devicetv.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.shared\2.0.3005.17541__90ba9c70f846762e\cli.aspect.devicetv.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.shared\2.0.3005.17541__90ba9c70f846762e\cli.aspect.devicetv.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.wizard\2.0.3054.18892__90ba9c70f846762e\cli.aspect.devicetv.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.devicetv.graphics.wizard\2.0.3054.18892__90ba9c70f846762e\cli.aspect.devicetv.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displayscolour2.graphics.dashboard\2.0.3054.18683__90ba9c70f846762e\cli.aspect.displayscolour2.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.displayscolour2.graphics.dashboard\2.0.3054.18683__90ba9c70f846762e\cli.aspect.displayscolour2.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displayscolour2.graphics.runtime\2.0.3054.18690__90ba9c70f846762e\cli.aspect.displayscolour2.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.displayscolour2.graphics.runtime\2.0.3054.18690__90ba9c70f846762e\cli.aspect.displayscolour2.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displayscolour2.graphics.shared\2.0.3005.17531__90ba9c70f846762e\cli.aspect.displayscolour2.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.displayscolour2.graphics.shared\2.0.3005.17531__90ba9c70f846762e\cli.aspect.displayscolour2.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displaysmanager.graphics.dashboard\2.0.3054.18632__90ba9c70f846762e\cli.aspect.displaysmanager.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.displaysmanager.graphics.dashboard\2.0.3054.18632__90ba9c70f846762e\cli.aspect.displaysmanager.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displaysmanager.graphics.wizard\2.0.3054.18653__90ba9c70f846762e\cli.aspect.displaysmanager.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.displaysmanager.graphics.wizard\2.0.3054.18653__90ba9c70f846762e\cli.aspect.displaysmanager.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displaysoptions.graphics.dashboard\2.0.3054.18814__90ba9c70f846762e\cli.aspect.displaysoptions.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.displaysoptions.graphics.dashboard\2.0.3054.18814__90ba9c70f846762e\cli.aspect.displaysoptions.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displaysoptions.graphics.runtime\2.0.3054.18812__90ba9c70f846762e\cli.aspect.displaysoptions.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.displaysoptions.graphics.runtime\2.0.3054.18812__90ba9c70f846762e\cli.aspect.displaysoptions.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.displaysoptions.graphics.shared\2.0.3005.17537__90ba9c70f846762e\cli.aspect.displaysoptions.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.displaysoptions.graphics.shared\2.0.3005.17537__90ba9c70f846762e\cli.aspect.displaysoptions.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.hotkeyshandling.graphics.runtime\2.0.3054.18630__90ba9c70f846762e\cli.aspect.hotkeyshandling.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.hotkeyshandling.graphics.runtime\2.0.3054.18630__90ba9c70f846762e\cli.aspect.hotkeyshandling.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.hotkeyshandling.graphics.shared\2.0.3005.17522__90ba9c70f846762e\cli.aspect.hotkeyshandling.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.hotkeyshandling.graphics.shared\2.0.3005.17522__90ba9c70f846762e\cli.aspect.hotkeyshandling.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.infocentre.graphics.dashboard\2.0.3054.18676__90ba9c70f846762e\cli.aspect.infocentre.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.infocentre.graphics.dashboard\2.0.3054.18676__90ba9c70f846762e\cli.aspect.infocentre.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.infocentre.graphics.wizard\2.0.3054.18668__90ba9c70f846762e\cli.aspect.infocentre.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.infocentre.graphics.wizard\2.0.3054.18668__90ba9c70f846762e\cli.aspect.infocentre.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.dashboard\2.0.3054.18793__90ba9c70f846762e\cli.aspect.mmvideo.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.dashboard\2.0.3054.18793__90ba9c70f846762e\cli.aspect.mmvideo.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.runtime\2.0.3054.18792__90ba9c70f846762e\cli.aspect.mmvideo.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.runtime\2.0.3054.18792__90ba9c70f846762e\cli.aspect.mmvideo.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.shared\2.0.3005.17536__90ba9c70f846762e\cli.aspect.mmvideo.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.shared\2.0.3005.17536__90ba9c70f846762e\cli.aspect.mmvideo.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.wizard\2.0.3054.18871__90ba9c70f846762e\cli.aspect.mmvideo.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.mmvideo.graphics.wizard\2.0.3054.18871__90ba9c70f846762e\cli.aspect.mmvideo.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.overdrive5.graphics.dashboard\2.0.3054.18960__90ba9c70f846762e\cli.aspect.overdrive5.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.overdrive5.graphics.dashboard\2.0.3054.18960__90ba9c70f846762e\cli.aspect.overdrive5.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.overdrive5.graphics.runtime\2.0.3054.18959__90ba9c70f846762e\cli.aspect.overdrive5.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.overdrive5.graphics.runtime\2.0.3054.18959__90ba9c70f846762e\cli.aspect.overdrive5.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.overdrive5.graphics.shared\2.0.3005.17553__90ba9c70f846762e\cli.aspect.overdrive5.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.overdrive5.graphics.shared\2.0.3005.17553__90ba9c70f846762e\cli.aspect.overdrive5.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.dashboard\2.0.3054.18848__90ba9c70f846762e\cli.aspect.radeon3d.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.dashboard\2.0.3054.18848__90ba9c70f846762e\cli.aspect.radeon3d.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.runtime\2.0.3054.18846__90ba9c70f846762e\cli.aspect.radeon3d.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.runtime\2.0.3054.18846__90ba9c70f846762e\cli.aspect.radeon3d.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.shared\2.0.3005.17540__90ba9c70f846762e\cli.aspect.radeon3d.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.shared\2.0.3005.17540__90ba9c70f846762e\cli.aspect.radeon3d.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.wizard\2.0.3054.18855__90ba9c70f846762e\cli.aspect.radeon3d.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.radeon3d.graphics.wizard\2.0.3054.18855__90ba9c70f846762e\cli.aspect.radeon3d.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.transcode.graphics.shared\2.0.3005.17556__90ba9c70f846762e\cli.aspect.transcode.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.transcode.graphics.shared\2.0.3005.17556__90ba9c70f846762e\cli.aspect.transcode.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.transcode.graphics.wizard\2.0.3054.18924__90ba9c70f846762e\cli.aspect.transcode.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.aspect.transcode.graphics.wizard\2.0.3054.18924__90ba9c70f846762e\cli.aspect.transcode.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.vpurecover.graphics.dashboard\2.0.3054.18660__90ba9c70f846762e\cli.aspect.vpurecover.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.vpurecover.graphics.dashboard\2.0.3054.18660__90ba9c70f846762e\cli.aspect.vpurecover.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.vpurecover.graphics.runtime\2.0.3054.18659__90ba9c70f846762e\cli.aspect.vpurecover.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.aspect.vpurecover.graphics.runtime\2.0.3054.18659__90ba9c70f846762e\cli.aspect.vpurecover.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.vpurecover.graphics.shared\2.0.3005.17531__90ba9c70f846762e\cli.aspect.vpurecover.graphics.shared.dll c:\windows\assembly\gac_msil\cli.aspect.vpurecover.graphics.shared\2.0.3005.17531__90ba9c70f846762e\cli.aspect.vpurecover.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.aspect.welcome.graphics.dashboard\2.0.3054.18932__90ba9c70f846762e\cli.aspect.welcome.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.aspect.welcome.graphics.dashboard\2.0.3054.18932__90ba9c70f846762e\cli.aspect.welcome.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.dashboard.shared\2.0.3005.17521__90ba9c70f846762e\cli.caste.graphics.dashboard.shared.dll c:\windows\assembly\gac_msil\cli.caste.graphics.dashboard.shared\2.0.3005.17521__90ba9c70f846762e\cli.caste.graphics.dashboard.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.dashboard\2.0.3054.18623__90ba9c70f846762e\cli.caste.graphics.dashboard.dll c:\windows\assembly\gac_msil\cli.caste.graphics.dashboard\2.0.3054.18623__90ba9c70f846762e\cli.caste.graphics.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.runtime.shared.private\2.0.3005.17542__90ba9c70f846762e\cli.caste.graphics.runtime.shared.private.dll c:\windows\assembly\gac_msil\cli.caste.graphics.runtime.shared.private\2.0.3005.17542__90ba9c70f846762e\cli.caste.graphics.runtime.shared.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.runtime\2.0.3054.18608__90ba9c70f846762e\cli.caste.graphics.runtime.dll c:\windows\assembly\gac_msil\cli.caste.graphics.runtime\2.0.3054.18608__90ba9c70f846762e\cli.caste.graphics.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.shared\2.0.3005.17493__90ba9c70f846762e\cli.caste.graphics.shared.dll c:\windows\assembly\gac_msil\cli.caste.graphics.shared\2.0.3005.17493__90ba9c70f846762e\cli.caste.graphics.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.wizard.shared\2.0.3005.17530__90ba9c70f846762e\cli.caste.graphics.wizard.shared.dll c:\windows\assembly\gac_msil\cli.caste.graphics.wizard.shared\2.0.3005.17530__90ba9c70f846762e\cli.caste.graphics.wizard.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.caste.graphics.wizard\2.0.3054.18645__90ba9c70f846762e\cli.caste.graphics.wizard.dll c:\windows\assembly\gac_msil\cli.caste.graphics.wizard\2.0.3054.18645__90ba9c70f846762e\cli.caste.graphics.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.client.shared.private\2.0.3005.17499__90ba9c70f846762e\cli.component.client.shared.private.dll c:\windows\assembly\gac_msil\cli.component.client.shared.private\2.0.3005.17499__90ba9c70f846762e\cli.component.client.shared.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.client.shared\2.0.3005.17479__90ba9c70f846762e\cli.component.client.shared.dll c:\windows\assembly\gac_msil\cli.component.client.shared\2.0.3005.17479__90ba9c70f846762e\cli.component.client.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.dashboard.shared.private\2.0.3005.17508__90ba9c70f846762e\cli.component.dashboard.shared.private.dll c:\windows\assembly\gac_msil\cli.component.dashboard.shared.private\2.0.3005.17508__90ba9c70f846762e\cli.component.dashboard.shared.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.dashboard.shared\2.0.3005.17491__90ba9c70f846762e\cli.component.dashboard.shared.dll c:\windows\assembly\gac_msil\cli.component.dashboard.shared\2.0.3005.17491__90ba9c70f846762e\cli.component.dashboard.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.dashboard\2.0.3054.18617__90ba9c70f846762e\cli.component.dashboard.dll c:\windows\assembly\gac_msil\cli.component.dashboard\2.0.3054.18617__90ba9c70f846762e\cli.component.dashboard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.runtime.extension.eeu\2.0.3054.18597__90ba9c70f846762e\cli.component.runtime.extension.eeu.dll c:\windows\assembly\gac_msil\cli.component.runtime.extension.eeu\2.0.3054.18597__90ba9c70f846762e\cli.component.runtime.extension.eeu.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.runtime.shared.private\2.0.3005.17514__90ba9c70f846762e\cli.component.runtime.shared.private.dll c:\windows\assembly\gac_msil\cli.component.runtime.shared.private\2.0.3005.17514__90ba9c70f846762e\cli.component.runtime.shared.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.runtime.shared\2.0.3005.17488__90ba9c70f846762e\cli.component.runtime.shared.dll c:\windows\assembly\gac_msil\cli.component.runtime.shared\2.0.3005.17488__90ba9c70f846762e\cli.component.runtime.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.runtime\2.0.3054.18597__90ba9c70f846762e\cli.component.runtime.dll c:\windows\assembly\gac_msil\cli.component.runtime\2.0.3054.18597__90ba9c70f846762e\cli.component.runtime.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.skinfactory\2.0.3054.18600__90ba9c70f846762e\cli.component.skinfactory.dll c:\windows\assembly\gac_msil\cli.component.skinfactory\2.0.3054.18600__90ba9c70f846762e\cli.component.skinfactory.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.systemtray\2.0.3054.18900__90ba9c70f846762e\cli.component.systemtray.dll c:\windows\assembly\gac_msil\cli.component.systemtray\2.0.3054.18900__90ba9c70f846762e\cli.component.systemtray.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.wizard.shared.private\2.0.3005.17513__90ba9c70f846762e\cli.component.wizard.shared.private.dll c:\windows\assembly\gac_msil\cli.component.wizard.shared.private\2.0.3005.17513__90ba9c70f846762e\cli.component.wizard.shared.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.wizard.shared\2.0.3005.17496__90ba9c70f846762e\cli.component.wizard.shared.dll c:\windows\assembly\gac_msil\cli.component.wizard.shared\2.0.3005.17496__90ba9c70f846762e\cli.component.wizard.shared.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.component.wizard\2.0.3054.18639__90ba9c70f846762e\cli.component.wizard.dll c:\windows\assembly\gac_msil\cli.component.wizard\2.0.3054.18639__90ba9c70f846762e\cli.component.wizard.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.foundation.private\2.0.3005.17475__90ba9c70f846762e\cli.foundation.private.dll c:\windows\assembly\gac_msil\cli.foundation.private\2.0.3005.17475__90ba9c70f846762e\cli.foundation.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.foundation.xmanifest\2.0.3005.17608__90ba9c70f846762e\cli.foundation.xmanifest.dll c:\windows\assembly\gac_msil\cli.foundation.xmanifest\2.0.3005.17608__90ba9c70f846762e\cli.foundation.xmanifest.dll - Ok [Scan path] c:\windows\assembly\gac_msil\cli.foundation\2.0.3005.17468__90ba9c70f846762e\cli.foundation.dll c:\windows\assembly\gac_msil\cli.foundation\2.0.3005.17468__90ba9c70f846762e\cli.foundation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.foundation\2.0.2573.17684__90ba9c70f846762e\dem.foundation.dll c:\windows\assembly\gac_msil\dem.foundation\2.0.2573.17684__90ba9c70f846762e\dem.foundation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.graphics.i0601\2.0.2573.17685__90ba9c70f846762e\dem.graphics.i0601.dll c:\windows\assembly\gac_msil\dem.graphics.i0601\2.0.2573.17685__90ba9c70f846762e\dem.graphics.i0601.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.graphics.i0703\2.0.2651.18802__90ba9c70f846762e\dem.graphics.i0703.dll c:\windows\assembly\gac_msil\dem.graphics.i0703\2.0.2651.18802__90ba9c70f846762e\dem.graphics.i0703.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.graphics.i0706\2.0.2743.23304__90ba9c70f846762e\dem.graphics.i0706.dll c:\windows\assembly\gac_msil\dem.graphics.i0706\2.0.2743.23304__90ba9c70f846762e\dem.graphics.i0706.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.graphics\2.0.3005.17519__90ba9c70f846762e\dem.graphics.dll c:\windows\assembly\gac_msil\dem.graphics\2.0.3005.17519__90ba9c70f846762e\dem.graphics.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.os.i0602\2.0.3005.17518__90ba9c70f846762e\dem.os.i0602.dll c:\windows\assembly\gac_msil\dem.os.i0602\2.0.3005.17518__90ba9c70f846762e\dem.os.i0602.dll - Ok [Scan path] c:\windows\assembly\gac_msil\dem.os\2.0.3005.17517__90ba9c70f846762e\dem.os.dll c:\windows\assembly\gac_msil\dem.os\2.0.3005.17517__90ba9c70f846762e\dem.os.dll - Ok [Scan path] c:\windows\assembly\gac_msil\localization.foundation.implementation\2.0.3054.18964__90ba9c70f846762e\localization.foundation.implementation.dll c:\windows\assembly\gac_msil\localization.foundation.implementation\2.0.3054.18964__90ba9c70f846762e\localization.foundation.implementation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\localization.foundation.private\2.0.3005.17481__90ba9c70f846762e\localization.foundation.private.dll c:\windows\assembly\gac_msil\localization.foundation.private\2.0.3005.17481__90ba9c70f846762e\localization.foundation.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\log.foundation.implementation.private\2.0.3005.17511__90ba9c70f846762e\log.foundation.implementation.private.dll c:\windows\assembly\gac_msil\log.foundation.implementation.private\2.0.3005.17511__90ba9c70f846762e\log.foundation.implementation.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\log.foundation.implementation\2.0.3054.18907__90ba9c70f846762e\log.foundation.implementation.dll c:\windows\assembly\gac_msil\log.foundation.implementation\2.0.3054.18907__90ba9c70f846762e\log.foundation.implementation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\log.foundation.private\2.0.3005.17484__90ba9c70f846762e\log.foundation.private.dll c:\windows\assembly\gac_msil\log.foundation.private\2.0.3005.17484__90ba9c70f846762e\log.foundation.private.dll - Ok [Scan path] c:\windows\assembly\gac_msil\log.foundation\2.0.3005.17465__90ba9c70f846762e\log.foundation.dll c:\windows\assembly\gac_msil\log.foundation\2.0.3005.17465__90ba9c70f846762e\log.foundation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\mom.foundation\2.0.3005.17510__90ba9c70f846762e\mom.foundation.dll c:\windows\assembly\gac_msil\mom.foundation\2.0.3005.17510__90ba9c70f846762e\mom.foundation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\mom.implementation\2.0.3054.18910__90ba9c70f846762e\mom.implementation.dll c:\windows\assembly\gac_msil\mom.implementation\2.0.3054.18910__90ba9c70f846762e\mom.implementation.dll - Ok [Scan path] c:\windows\assembly\gac_msil\mscorlib.resources\2.0.0.0_it_b77a5c561934e089\mscorlib.resources.dll c:\windows\assembly\gac_msil\mscorlib.resources\2.0.0.0_it_b77a5c561934e089\mscorlib.resources.dll - Ok [Scan path] c:\windows\assembly\gac_msil\newaem.foundation\2.0.3005.17466__90ba9c70f846762e\newaem.foundation.dll c:\windows\assembly\gac_msil\newaem.foundation\2.0.3005.17466__90ba9c70f846762e\newaem.foundation.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\accessibility\c6772fd12a581ad3be49e3f2a80b5622\accessibility.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\accessibility\c6772fd12a581ad3be49e3f2a80b5622\accessibility.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system.configuration\eee9b48577689e92db5a7b5c5de98d9b\system.configuration.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system.configuration\eee9b48577689e92db5a7b5c5de98d9b\system.configuration.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system.drawing\0e83aac37b2623f1a24c70979f31dd56\system.drawing.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system.drawing\0e83aac37b2623f1a24c70979f31dd56\system.drawing.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system.runtime.remo#\0898f6c1de8cb89413d206e3d6a3ce1d\system.runtime.remoting.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system.runtime.remo#\0898f6c1de8cb89413d206e3d6a3ce1d\system.runtime.remoting.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system.web\67cfb70213562afe2ca9b9066764af3a\system.web.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system.web\67cfb70213562afe2ca9b9066764af3a\system.web.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system.windows.forms\3d8c79c45aa674e43f075e2e66b8caf5\system.windows.forms.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system.windows.forms\3d8c79c45aa674e43f075e2e66b8caf5\system.windows.forms.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system.xml\c98cb65a79cfccb44ea727ebe4593ede\system.xml.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system.xml\c98cb65a79cfccb44ea727ebe4593ede\system.xml.ni.dll - Ok [Scan path] c:\windows\assembly\nativeimages_v2.0.50727_32\system\ba0e3a22211ba7343e0116b051f2965a\system.ni.dll c:\windows\assembly\nativeimages_v2.0.50727_32\system\ba0e3a22211ba7343e0116b051f2965a\system.ni.dll - Ok [Scan path] c:\windows\bricopacks\crystal clear\icolorfolder\cmext.dll c:\windows\bricopacks\crystal clear\icolorfolder\cmext.dll compresso da UPX >c:\windows\bricopacks\crystal clear\icolorfolder\cmext.dll - Ok [Scan path] c:\windows\bricopacks\crystal clear\rocketdock\mousehook2.dll c:\windows\bricopacks\crystal clear\rocketdock\mousehook2.dll - Ok [Scan path] c:\windows\bricopacks\crystal clear\rocketdock\rocketdock.exe c:\windows\bricopacks\crystal clear\rocketdock\rocketdock.exe - Ok [Scan path] c:\windows\bricopacks\crystal clear\yztoolbar\languages\english.lang c:\windows\bricopacks\crystal clear\yztoolbar\languages\english.lang - Ok [Scan path] c:\windows\bricopacks\crystal clear\yztoolbar\yztoolbar.dll c:\windows\bricopacks\crystal clear\yztoolbar\yztoolbar.dll - Ok [Scan path] c:\windows\bricopacks\crystal clear\yztoolbar\yztoolbar.exe c:\windows\bricopacks\crystal clear\yztoolbar\yztoolbar.exe - Ok [Scan path] c:\windows\downloaded program files\fscax.dll c:\windows\downloaded program files\fscax.dll - Ok [Scan path] c:\windows\explorer.exe c:\windows\explorer.exe - Ok [Scan path] c:\windows\inf\fxsocm.inf c:\windows\inf\fxsocm.inf - Ok [Scan path] c:\windows\inf\msmsgs.inf c:\windows\inf\msmsgs.inf - Ok [Scan path] c:\windows\inf\msnetmtg.inf c:\windows\inf\msnetmtg.inf - Ok [Scan path] c:\windows\inf\unregmp2.exe c:\windows\inf\unregmp2.exe - Ok [Scan path] c:\windows\inf\wmp11.inf c:\windows\inf\wmp11.inf - Ok [Scan path] c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe - Ok [Scan path] c:\windows\microsoft.net\framework\v2.0.50727\mscorjit.dll c:\windows\microsoft.net\framework\v2.0.50727\mscorjit.dll - Ok [Scan path] c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe - Ok [Scan path] c:\windows\microsoft.net\framework\v2.0.50727\mscorwks.dll c:\windows\microsoft.net\framework\v2.0.50727\mscorwks.dll - Ok [Scan path] c:\windows\microsoft.net\framework\v3.0\windows communication foundation\infocard.exe c:\windows\microsoft.net\framework\v3.0\windows communication foundation\infocard.exe - Ok [Scan path] c:\windows\microsoft.net\framework\v3.0\windows communication foundation\smsvchost.exe c:\windows\microsoft.net\framework\v3.0\windows communication foundation\smsvchost.exe - Ok [Scan path] c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe - Ok [Scan path] c:\windows\mididef.exe c:\windows\mididef.exe - Ok [Scan path] c:\windows\msagent\agentpsh.dll c:\windows\msagent\agentpsh.dll - Ok [Scan path] c:\windows\network diagnostic\xpnetdiag.exe c:\windows\network diagnostic\xpnetdiag.exe - Ok [Scan path] c:\windows\pchealth\helpctr\binaries\pchsvc.dll c:\windows\pchealth\helpctr\binaries\pchsvc.dll - Ok [Scan path] c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\iebutton\support.htm c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\iebutton\support.htm - archivio HTML >c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\iebutton\support.htm\javascript.0 - Ok c:\windows\pchealth\helpctr\vendors\cn=hewlett-packard,l=cupertino,s=ca,c=us\iebutton\support.htm - Ok [Scan path] c:\windows\sminst\recguard.exe c:\windows\sminst\recguard.exe - Ok [Scan path] c:\windows\system32\activeds.dll c:\windows\system32\activeds.dll - Ok [Scan path] c:\windows\system32\actxprxy.dll c:\windows\system32\actxprxy.dll - Ok [Scan path] c:\windows\system32\adsldpc.dll c:\windows\system32\adsldpc.dll - Ok [Scan path] c:\windows\system32\advapi32.dll c:\windows\system32\advapi32.dll - Ok [Scan path] c:\windows\system32\advpack.dll c:\windows\system32\advpack.dll - Ok [Scan path] c:\windows\system32\alg.exe c:\windows\system32\alg.exe - Ok [Scan path] c:\windows\system32\alrsvc.dll c:\windows\system32\alrsvc.dll - Ok [Scan path] c:\windows\system32\apphelp.dll c:\windows\system32\apphelp.dll - Ok [Scan path] c:\windows\system32\appwiz.cpl c:\windows\system32\appwiz.cpl - Ok [Scan path] c:\windows\system32\ati2edxx.dll c:\windows\system32\ati2edxx.dll - Ok [Scan path] c:\windows\system32\ati2evxx.dll c:\windows\system32\ati2evxx.dll - Ok [Scan path] c:\windows\system32\ati2evxx.exe c:\windows\system32\ati2evxx.exe - Ok [Scan path] c:\windows\system32\ati2sgag.exe c:\windows\system32\ati2sgag.exe - Ok [Scan path] c:\windows\system32\atidemgx.dll c:\windows\system32\atidemgx.dll - Ok [Scan path] c:\windows\system32\atipdlxx.dll c:\windows\system32\atipdlxx.dll - Ok [Scan path] c:\windows\system32\atl.dll c:\windows\system32\atl.dll - Ok [Scan path] c:\windows\system32\audiodev.dll c:\windows\system32\audiodev.dll compresso da PESTUB >c:\windows\system32\audiodev.dll - Ok [Scan path] c:\windows\system32\audiosrv.dll c:\windows\system32\audiosrv.dll - Ok [Scan path] c:\windows\system32\authz.dll c:\windows\system32\authz.dll - Ok [Scan path] c:\windows\system32\autochk.exe c:\windows\system32\autochk.exe - Ok [Scan path] c:\windows\system32\basesrv.dll c:\windows\system32\basesrv.dll - Ok [Scan path] c:\windows\system32\batmeter.dll c:\windows\system32\batmeter.dll - Ok [Scan path] c:\windows\system32\browselc.dll c:\windows\system32\browselc.dll - Ok [Scan path] c:\windows\system32\browser.dll c:\windows\system32\browser.dll - Ok [Scan path] c:\windows\system32\browseui.dll c:\windows\system32\browseui.dll - Ok [Scan path] c:\windows\system32\cabinet.dll c:\windows\system32\cabinet.dll - Ok [Scan path] c:\windows\system32\cabview.dll c:\windows\system32\cabview.dll - Ok [Scan path] c:\windows\system32\certcli.dll c:\windows\system32\certcli.dll - Ok [Scan path] c:\windows\system32\ceutil.dll c:\windows\system32\ceutil.dll - Ok [Scan path] c:\windows\system32\cfgmgr32.dll c:\windows\system32\cfgmgr32.dll - Ok [Scan path] c:\windows\system32\cisvc.exe c:\windows\system32\cisvc.exe - Ok [Scan path] c:\windows\system32\clbcatq.dll c:\windows\system32\clbcatq.dll - Ok [Scan path] c:\windows\system32\clipsrv.exe c:\windows\system32\clipsrv.exe - Ok [Scan path] c:\windows\system32\clusapi.dll c:\windows\system32\clusapi.dll - Ok [Scan path] c:\windows\system32\cnbjmon.dll c:\windows\system32\cnbjmon.dll - Ok [Scan path] c:\windows\system32\colbact.dll c:\windows\system32\colbact.dll - Ok [Scan path] c:\windows\system32\comctl32.dll c:\windows\system32\comctl32.dll - Ok [Scan path] c:\windows\system32\comdlg32.dll c:\windows\system32\comdlg32.dll - Ok [Scan path] c:\windows\system32\comres.dll c:\windows\system32\comres.dll - Ok [Scan path] c:\windows\system32\comsvcs.dll c:\windows\system32\comsvcs.dll - Ok [Scan path] c:\windows\system32\credui.dll c:\windows\system32\credui.dll - Ok [Scan path] c:\windows\system32\crtdll.dll c:\windows\system32\crtdll.dll - Ok [Scan path] c:\windows\system32\crypt32.dll c:\windows\system32\crypt32.dll - Ok [Scan path] c:\windows\system32\cryptdll.dll c:\windows\system32\cryptdll.dll - Ok [Scan path] c:\windows\system32\cryptext.dll c:\windows\system32\cryptext.dll - Ok [Scan path] c:\windows\system32\cryptnet.dll c:\windows\system32\cryptnet.dll - Ok [Scan path] c:\windows\system32\cryptsvc.dll c:\windows\system32\cryptsvc.dll - Ok [Scan path] c:\windows\system32\cryptui.dll c:\windows\system32\cryptui.dll - Ok [Scan path] c:\windows\system32\cscdll.dll c:\windows\system32\cscdll.dll - Ok [Scan path] c:\windows\system32\cscui.dll c:\windows\system32\cscui.dll - Ok [Scan path] c:\windows\system32\csrsrv.dll c:\windows\system32\csrsrv.dll - Ok [Scan path] c:\windows\system32\csrss.exe c:\windows\system32\csrss.exe - Ok [Scan path] c:\windows\system32\ctfmon.exe c:\windows\system32\ctfmon.exe - Ok [Scan path] c:\windows\system32\ctsvccda.exe c:\windows\system32\ctsvccda.exe - Ok [Scan path] c:\windows\system32\davclnt.dll c:\windows\system32\davclnt.dll - Ok [Scan path] c:\windows\system32\dciman32.dll c:\windows\system32\dciman32.dll - Ok [Scan path] c:\windows\system32\deskadp.dll c:\windows\system32\deskadp.dll - Ok [Scan path] c:\windows\system32\deskmon.dll c:\windows\system32\deskmon.dll - Ok [Scan path] c:\windows\system32\deskperf.dll c:\windows\system32\deskperf.dll - Ok [Scan path] c:\windows\system32\dfshim.dll c:\windows\system32\dfshim.dll - Ok [Scan path] c:\windows\system32\dfsshlex.dll c:\windows\system32\dfsshlex.dll - Ok [Scan path] c:\windows\system32\dhcpcsvc.dll c:\windows\system32\dhcpcsvc.dll - Ok [Scan path] c:\windows\system32\digest.dll c:\windows\system32\digest.dll - Ok [Scan path] c:\windows\system32\diskcopy.dll c:\windows\system32\diskcopy.dll - Ok [Scan path] c:\windows\system32\dllhost.exe c:\windows\system32\dllhost.exe - Ok [Scan path] c:\windows\system32\dmadmin.exe c:\windows\system32\dmadmin.exe - Ok [Scan path] c:\windows\system32\dmserver.dll c:\windows\system32\dmserver.dll - Ok [Scan path] c:\windows\system32\dnsapi.dll c:\windows\system32\dnsapi.dll - Ok [Scan path] c:\windows\system32\dnsrslvr.dll c:\windows\system32\dnsrslvr.dll - Ok [Scan path] c:\windows\system32\docprop.dll c:\windows\system32\docprop.dll - Ok [Scan path] c:\windows\system32\docprop2.dll c:\windows\system32\docprop2.dll - Ok [Scan path] c:\windows\system32\drivers\3xhybrid.sys c:\windows\system32\drivers\3xhybrid.sys - Ok [Scan path] c:\windows\system32\drivers\acpi.sys c:\windows\system32\drivers\acpi.sys - Ok [Scan path] c:\windows\system32\drivers\aec.sys c:\windows\system32\drivers\aec.sys - Ok [Scan path] c:\windows\system32\drivers\afd.sys c:\windows\system32\drivers\afd.sys - Ok [Scan path] c:\windows\system32\drivers\alcxwdm.sys c:\windows\system32\drivers\alcxwdm.sys - Ok [Scan path] c:\windows\system32\drivers\amdk8.sys c:\windows\system32\drivers\amdk8.sys - Ok [Scan path] c:\windows\system32\drivers\arp1394.sys c:\windows\system32\drivers\arp1394.sys - Ok [Scan path] c:\windows\system32\drivers\asyncmac.sys c:\windows\system32\drivers\asyncmac.sys - Ok [Scan path] c:\windows\system32\drivers\atapi.sys c:\windows\system32\drivers\atapi.sys - Ok [Scan path] c:\windows\system32\drivers\ati2mtag.sys c:\windows\system32\drivers\ati2mtag.sys - Ok [Scan path] c:\windows\system32\drivers\atmarpc.sys c:\windows\system32\drivers\atmarpc.sys - Ok [Scan path] c:\windows\system32\drivers\audstub.sys c:\windows\system32\drivers\audstub.sys - Ok [Scan path] c:\windows\system32\drivers\avipbb.sys c:\windows\system32\drivers\avipbb.sys - Ok [Scan path] c:\windows\system32\drivers\beep.sys c:\windows\system32\drivers\beep.sys - Ok [Scan path] c:\windows\system32\drivers\ccdecode.sys c:\windows\system32\drivers\ccdecode.sys compresso da PESTUB >c:\windows\system32\drivers\ccdecode.sys - Ok [Scan path] c:\windows\system32\drivers\cdaudio.sys c:\windows\system32\drivers\cdaudio.sys - Ok [Scan path] c:\windows\system32\drivers\cdrom.sys c:\windows\system32\drivers\cdrom.sys - Ok [Scan path] c:\windows\system32\drivers\ctoss2k.sys c:\windows\system32\drivers\ctoss2k.sys - Ok [Scan path] c:\windows\system32\drivers\ctsfm2k.sys c:\windows\system32\drivers\ctsfm2k.sys - Ok [Scan path] c:\windows\system32\drivers\ctusfsyn.sys c:\windows\system32\drivers\ctusfsyn.sys - Ok [Scan path] c:\windows\system32\drivers\disk.sys c:\windows\system32\drivers\disk.sys - Ok [Scan path] c:\windows\system32\drivers\dmboot.sys c:\windows\system32\drivers\dmboot.sys - Ok [Scan path] c:\windows\system32\drivers\dmio.sys c:\windows\system32\drivers\dmio.sys - Ok [Scan path] c:\windows\system32\drivers\dmload.sys c:\windows\system32\drivers\dmload.sys - Ok [Scan path] c:\windows\system32\drivers\dmusic.sys c:\windows\system32\drivers\dmusic.sys - Ok [Scan path] c:\windows\system32\drivers\drmkaud.sys c:\windows\system32\drivers\drmkaud.sys - Ok [Scan path] c:\windows\system32\drivers\fdc.sys c:\windows\system32\drivers\fdc.sys - Ok [Scan path] c:\windows\system32\drivers\fips.sys c:\windows\system32\drivers\fips.sys - Ok [Scan path] c:\windows\system32\drivers\flpydisk.sys c:\windows\system32\drivers\flpydisk.sys - Ok [Scan path] c:\windows\system32\drivers\fltmgr.sys c:\windows\system32\drivers\fltmgr.sys - Ok [Scan path] c:\windows\system32\drivers\fs_rec.sys c:\windows\system32\drivers\fs_rec.sys - Ok [Scan path] c:\windows\system32\drivers\ftdisk.sys c:\windows\system32\drivers\ftdisk.sys - Ok [Scan path] c:\windows\system32\drivers\hdaudbus.sys c:\windows\system32\drivers\hdaudbus.sys - Ok [Scan path] c:\windows\system32\drivers\http.sys c:\windows\system32\drivers\http.sys - Ok [Scan path] c:\windows\system32\drivers\i8042prt.sys c:\windows\system32\drivers\i8042prt.sys - Ok [Scan path] c:\windows\system32\drivers\imapi.sys c:\windows\system32\drivers\imapi.sys - Ok [Scan path] c:\windows\system32\drivers\intelide.sys c:\windows\system32\drivers\intelide.sys - Ok [Scan path] c:\windows\system32\drivers\ip6fw.sys c:\windows\system32\drivers\ip6fw.sys - Ok [Scan path] c:\windows\system32\drivers\ipfltdrv.sys c:\windows\system32\drivers\ipfltdrv.sys - Ok [Scan path] c:\windows\system32\drivers\ipinip.sys c:\windows\system32\drivers\ipinip.sys - Ok [Scan path] c:\windows\system32\drivers\ipnat.sys c:\windows\system32\drivers\ipnat.sys - Ok [Scan path] c:\windows\system32\drivers\ipsec.sys c:\windows\system32\drivers\ipsec.sys - Ok [Scan path] c:\windows\system32\drivers\irenum.sys c:\windows\system32\drivers\irenum.sys - Ok [Scan path] c:\windows\system32\drivers\isapnp.sys c:\windows\system32\drivers\isapnp.sys - Ok [Scan path] c:\windows\system32\drivers\kbdclass.sys c:\windows\system32\drivers\kbdclass.sys - Ok [Scan path] c:\windows\system32\drivers\kmixer.sys c:\windows\system32\drivers\kmixer.sys - Ok [Scan path] c:\windows\system32\drivers\ksecdd.sys c:\windows\system32\drivers\ksecdd.sys - Ok [Scan path] c:\windows\system32\drivers\ltmdmnt.sys c:\windows\system32\drivers\ltmdmnt.sys - Ok [Scan path] c:\windows\system32\drivers\mnmdd.sys c:\windows\system32\drivers\mnmdd.sys - Ok [Scan path] c:\windows\system32\drivers\mouclass.sys c:\windows\system32\drivers\mouclass.sys - Ok [Scan path] c:\windows\system32\drivers\mountmgr.sys c:\windows\system32\drivers\mountmgr.sys - Ok [Scan path] c:\windows\system32\drivers\mpe.sys c:\windows\system32\drivers\mpe.sys - Ok [Scan path] c:\windows\system32\drivers\mrxdav.sys c:\windows\system32\drivers\mrxdav.sys - Ok [Scan path] c:\windows\system32\drivers\mrxsmb.sys c:\windows\system32\drivers\mrxsmb.sys - Ok [Scan path] c:\windows\system32\drivers\msfs.sys c:\windows\system32\drivers\msfs.sys - Ok [Scan path] c:\windows\system32\drivers\msgpc.sys c:\windows\system32\drivers\msgpc.sys - Ok [Scan path] c:\windows\system32\drivers\mskssrv.sys c:\windows\system32\drivers\mskssrv.sys - Ok [Scan path] c:\windows\system32\drivers\mspclock.sys c:\windows\system32\drivers\mspclock.sys - Ok [Scan path] c:\windows\system32\drivers\mspqm.sys c:\windows\system32\drivers\mspqm.sys - Ok [Scan path] c:\windows\system32\drivers\mssmbios.sys c:\windows\system32\drivers\mssmbios.sys - Ok [Scan path] c:\windows\system32\drivers\mstee.sys c:\windows\system32\drivers\mstee.sys - Ok [Scan path] c:\windows\system32\drivers\mup.sys c:\windows\system32\drivers\mup.sys - Ok [Scan path] c:\windows\system32\drivers\nabtsfec.sys c:\windows\system32\drivers\nabtsfec.sys - Ok [Scan path] c:\windows\system32\drivers\ndis.sys c:\windows\system32\drivers\ndis.sys - Ok [Scan path] c:\windows\system32\drivers\ndisip.sys c:\windows\system32\drivers\ndisip.sys - Ok [Scan path] c:\windows\system32\drivers\ndistapi.sys c:\windows\system32\drivers\ndistapi.sys - Ok [Scan path] c:\windows\system32\drivers\ndisuio.sys c:\windows\system32\drivers\ndisuio.sys - Ok [Scan path] c:\windows\system32\drivers\ndiswan.sys c:\windows\system32\drivers\ndiswan.sys - Ok [Scan path] c:\windows\system32\drivers\netbios.sys c:\windows\system32\drivers\netbios.sys - Ok [Scan path] c:\windows\system32\drivers\netbt.sys c:\windows\system32\drivers\netbt.sys - Ok [Scan path] c:\windows\system32\drivers\nic1394.sys c:\windows\system32\drivers\nic1394.sys - Ok [Scan path] c:\windows\system32\drivers\npfs.sys c:\windows\system32\drivers\npfs.sys - Ok [Scan path] c:\windows\system32\drivers\null.sys c:\windows\system32\drivers\null.sys - Ok [Scan path] c:\windows\system32\drivers\nwlnkflt.sys c:\windows\system32\drivers\nwlnkflt.sys - Ok [Scan path] c:\windows\system32\drivers\nwlnkfwd.sys c:\windows\system32\drivers\nwlnkfwd.sys - Ok [Scan path] c:\windows\system32\drivers\ohci1394.sys c:\windows\system32\drivers\ohci1394.sys - Ok [Scan path] c:\windows\system32\drivers\p17xfi.sys c:\windows\system32\drivers\p17xfi.sys - Ok [Scan path] c:\windows\system32\drivers\p17xfilt.sys c:\windows\system32\drivers\p17xfilt.sys - Ok [Scan path] c:\windows\system32\drivers\parport.sys c:\windows\system32\drivers\parport.sys - Ok [Scan path] c:\windows\system32\drivers\partmgr.sys c:\windows\system32\drivers\partmgr.sys - Ok [Scan path] c:\windows\system32\drivers\pci.sys c:\windows\system32\drivers\pci.sys - Ok [Scan path] c:\windows\system32\drivers\pciide.sys c:\windows\system32\drivers\pciide.sys - Ok [Scan path] c:\windows\system32\drivers\processr.sys c:\windows\system32\drivers\processr.sys - Ok [Scan path] c:\windows\system32\drivers\ps2.sys c:\windows\system32\drivers\ps2.sys - Ok [Scan path] c:\windows\system32\drivers\psched.sys c:\windows\system32\drivers\psched.sys - Ok [Scan path] c:\windows\system32\drivers\ptilink.sys c:\windows\system32\drivers\ptilink.sys - Ok [Scan path] c:\windows\system32\drivers\pxhelp20.sys c:\windows\system32\drivers\pxhelp20.sys - Ok [Scan path] c:\windows\system32\drivers\rasacd.sys c:\windows\system32\drivers\rasacd.sys - Ok [Scan path] c:\windows\system32\drivers\rasl2tp.sys c:\windows\system32\drivers\rasl2tp.sys - Ok [Scan path] c:\windows\system32\drivers\raspppoe.sys c:\windows\system32\drivers\raspppoe.sys - Ok [Scan path] c:\windows\system32\drivers\raspptp.sys c:\windows\system32\drivers\raspptp.sys - Ok [Scan path] c:\windows\system32\drivers\raspti.sys c:\windows\system32\drivers\raspti.sys - Ok [Scan path] c:\windows\system32\drivers\rdbss.sys c:\windows\system32\drivers\rdbss.sys - Ok [Scan path] c:\windows\system32\drivers\rdpcdd.sys c:\windows\system32\drivers\rdpcdd.sys - Ok [Scan path] c:\windows\system32\drivers\rdpwd.sys c:\windows\system32\drivers\rdpwd.sys - Ok [Scan path] c:\windows\system32\drivers\redbook.sys c:\windows\system32\drivers\redbook.sys - Ok [Scan path] c:\windows\system32\drivers\rtl8139.sys c:\windows\system32\drivers\rtl8139.sys - Ok [Scan path] c:\windows\system32\drivers\rtnicxp.sys c:\windows\system32\drivers\rtnicxp.sys - Ok [Scan path] c:\windows\system32\drivers\secdrv.sys c:\windows\system32\drivers\secdrv.sys - Ok [Scan path] c:\windows\system32\drivers\sfloppy.sys c:\windows\system32\drivers\sfloppy.sys - Ok [Scan path] c:\windows\system32\drivers\slip.sys c:\windows\system32\drivers\slip.sys - Ok [Scan path] c:\windows\system32\drivers\splitter.sys c:\windows\system32\drivers\splitter.sys - Ok [Scan path] c:\windows\system32\drivers\sr.sys c:\windows\system32\drivers\sr.sys - Ok [Scan path] c:\windows\system32\drivers\srv.sys c:\windows\system32\drivers\srv.sys - Ok [Scan path] c:\windows\system32\drivers\ssmdrv.sys c:\windows\system32\drivers\ssmdrv.sys - Ok [Scan path] c:\windows\system32\drivers\streamip.sys c:\windows\system32\drivers\streamip.sys - Ok [Scan path] c:\windows\system32\drivers\swenum.sys c:\windows\system32\drivers\swenum.sys - Ok [Scan path] c:\windows\system32\drivers\swmidi.sys c:\windows\system32\drivers\swmidi.sys - Ok [Scan path] c:\windows\system32\drivers\sysaudio.sys c:\windows\system32\drivers\sysaudio.sys - Ok [Scan path] c:\windows\system32\drivers\tcpip.sys c:\windows\system32\drivers\tcpip.sys - Ok [Scan path] c:\windows\system32\drivers\tdpipe.sys c:\windows\system32\drivers\tdpipe.sys - Ok [Scan path] c:\windows\system32\drivers\tdtcp.sys c:\windows\system32\drivers\tdtcp.sys - Ok [Scan path] c:\windows\system32\drivers\termdd.sys c:\windows\system32\drivers\termdd.sys - Ok [Scan path] c:\windows\system32\drivers\update.sys c:\windows\system32\drivers\update.sys - Ok [Scan path] c:\windows\system32\drivers\usbccgp.sys c:\windows\system32\drivers\usbccgp.sys - Ok [Scan path] c:\windows\system32\drivers\usbehci.sys c:\windows\system32\drivers\usbehci.sys - Ok [Scan path] c:\windows\system32\drivers\usbhub.sys c:\windows\system32\drivers\usbhub.sys - Ok [Scan path] c:\windows\system32\drivers\usbohci.sys c:\windows\system32\drivers\usbohci.sys - Ok [Scan path] c:\windows\system32\drivers\usbstor.sys c:\windows\system32\drivers\usbstor.sys - Ok [Scan path] c:\windows\system32\drivers\usbuhci.sys c:\windows\system32\drivers\usbuhci.sys - Ok [Scan path] c:\windows\system32\drivers\vga.sys c:\windows\system32\drivers\vga.sys - Ok [Scan path] c:\windows\system32\drivers\viaide.sys c:\windows\system32\drivers\viaide.sys - Ok [Scan path] c:\windows\system32\drivers\volsnap.sys c:\windows\system32\drivers\volsnap.sys - Ok [Scan path] c:\windows\system32\drivers\wanarp.sys c:\windows\system32\drivers\wanarp.sys - Ok [Scan path] c:\windows\system32\drivers\wceusbsh.sys c:\windows\system32\drivers\wceusbsh.sys - Ok [Scan path] c:\windows\system32\drivers\wdmaud.sys c:\windows\system32\drivers\wdmaud.sys - Ok [Scan path] c:\windows\system32\drivers\wn5301.sys c:\windows\system32\drivers\wn5301.sys - Ok [Scan path] c:\windows\system32\drivers\ws2ifsl.sys c:\windows\system32\drivers\ws2ifsl.sys - Ok [Scan path] c:\windows\system32\drivers\wstcodec.sys c:\windows\system32\drivers\wstcodec.sys - Ok [Scan path] c:\windows\system32\drivers\wudfpf.sys c:\windows\system32\drivers\wudfpf.sys - Ok [Scan path] c:\windows\system32\drivers\wudfrd.sys c:\windows\system32\drivers\wudfrd.sys - Ok [Scan path] c:\windows\system32\drprov.dll c:\windows\system32\drprov.dll - Ok [Scan path] c:\windows\system32\dskquota.dll c:\windows\system32\dskquota.dll - Ok [Scan path] c:\windows\system32\dskquoui.dll c:\windows\system32\dskquoui.dll - Ok [Scan path] c:\windows\system32\dsound.dll c:\windows\system32\dsound.dll - Ok [Scan path] c:\windows\system32\dsquery.dll c:\windows\system32\dsquery.dll - Ok [Scan path] c:\windows\system32\dssec.dll c:\windows\system32\dssec.dll - Ok [Scan path] c:\windows\system32\dssenh.dll c:\windows\system32\dssenh.dll - Ok [Scan path] c:\windows\system32\dsuiext.dll c:\windows\system32\dsuiext.dll - Ok [Scan path] c:\windows\system32\duser.dll c:\windows\system32\duser.dll - Ok [Scan path] c:\windows\system32\ersvc.dll c:\windows\system32\ersvc.dll - Ok [Scan path] c:\windows\system32\es.dll c:\windows\system32\es.dll - Ok [Scan path] c:\windows\system32\esent.dll c:\windows\system32\esent.dll - Ok [Scan path] c:\windows\system32\eventlog.dll c:\windows\system32\eventlog.dll - Ok [Scan path] c:\windows\system32\extmgr.dll c:\windows\system32\extmgr.dll - Ok [Scan path] c:\windows\system32\firewall.cpl c:\windows\system32\firewall.cpl - Ok [Scan path] c:\windows\system32\fltlib.dll c:\windows\system32\fltlib.dll - Ok [Scan path] c:\windows\system32\fontext.dll c:\windows\system32\fontext.dll - Ok [Scan path] c:\windows\system32\fxsapi.dll c:\windows\system32\fxsapi.dll - Ok [Scan path] c:\windows\system32\fxsevent.dll c:\windows\system32\fxsevent.dll - Ok [Scan path] c:\windows\system32\fxsmon.dll c:\windows\system32\fxsmon.dll - Ok [Scan path] c:\windows\system32\fxsst.dll c:\windows\system32\fxsst.dll - Ok [Scan path] c:\windows\system32\fxssvc.exe c:\windows\system32\fxssvc.exe - Ok [Scan path] c:\windows\system32\gdi32.dll c:\windows\system32\gdi32.dll - Ok [Scan path] c:\windows\system32\h323.tsp c:\windows\system32\h323.tsp - Ok [Scan path] c:\windows\system32\hhctrl.ocx c:\windows\system32\hhctrl.ocx - Ok [Scan path] c:\windows\system32\hid.dll c:\windows\system32\hid.dll - Ok [Scan path] c:\windows\system32\hidphone.tsp c:\windows\system32\hidphone.tsp - Ok [Scan path] c:\windows\system32\hnetcfg.dll c:\windows\system32\hnetcfg.dll - Ok [Scan path] c:\windows\system32\hticons.dll c:\windows\system32\hticons.dll - Ok [Scan path] c:\windows\system32\httpapi.dll c:\windows\system32\httpapi.dll - Ok [Scan path] c:\windows\system32\icaapi.dll c:\windows\system32\icaapi.dll - Ok [Scan path] c:\windows\system32\icmui.dll c:\windows\system32\icmui.dll - Ok [Scan path] c:\windows\system32\ie4uinit.exe c:\windows\system32\ie4uinit.exe - Ok [Scan path] c:\windows\system32\ieapfltr.dll c:\windows\system32\ieapfltr.dll - Ok [Scan path] c:\windows\system32\iedkcs32.dll c:\windows\system32\iedkcs32.dll - Ok [Scan path] c:\windows\system32\ieframe.dll c:\windows\system32\ieframe.dll - Ok [Scan path] c:\windows\system32\iertutil.dll c:\windows\system32\iertutil.dll - Ok [Scan path] c:\windows\system32\ieudinit.exe c:\windows\system32\ieudinit.exe - Ok [Scan path] c:\windows\system32\ieui.dll c:\windows\system32\ieui.dll - Ok [Scan path] c:\windows\system32\imagehlp.dll c:\windows\system32\imagehlp.dll - Ok [Scan path] c:\windows\system32\imapi.exe c:\windows\system32\imapi.exe - Ok [Scan path] c:\windows\system32\imgutil.dll c:\windows\system32\imgutil.dll - Ok [Scan path] c:\windows\system32\imm32.dll c:\windows\system32\imm32.dll - Ok [Scan path] c:\windows\system32\inetcomm.dll c:\windows\system32\inetcomm.dll - Ok [Scan path] c:\windows\system32\inetpp.dll c:\windows\system32\inetpp.dll - Ok [Scan path] c:\windows\system32\ipconf.tsp c:\windows\system32\ipconf.tsp - Ok [Scan path] c:\windows\system32\iphlpapi.dll c:\windows\system32\iphlpapi.dll - Ok [Scan path] c:\windows\system32\ipnathlp.dll c:\windows\system32\ipnathlp.dll - Ok [Scan path] c:\windows\system32\ipsecsvc.dll c:\windows\system32\ipsecsvc.dll - Ok [Scan path] c:\windows\system32\itss.dll c:\windows\system32\itss.dll - Ok [Scan path] c:\windows\system32\jscript.dll c:\windows\system32\jscript.dll - Ok [Scan path] c:\windows\system32\kerberos.dll c:\windows\system32\kerberos.dll - Ok [Scan path] c:\windows\system32\kernel32.dll c:\windows\system32\kernel32.dll - Ok [Scan path] c:\windows\system32\kmddsp.tsp c:\windows\system32\kmddsp.tsp - Ok [Scan path] c:\windows\system32\ksuser.dll c:\windows\system32\ksuser.dll - Ok [Scan path] c:\windows\system32\linkinfo.dll c:\windows\system32\linkinfo.dll - Ok [Scan path] c:\windows\system32\lmhsvc.dll c:\windows\system32\lmhsvc.dll - Ok [Scan path] c:\windows\system32\localspl.dll c:\windows\system32\localspl.dll - Ok [Scan path] c:\windows\system32\locator.exe c:\windows\system32\locator.exe - Ok [Scan path] c:\windows\system32\logonui.exe c:\windows\system32\logonui.exe - Ok [Scan path] c:\windows\system32\lsasrv.dll c:\windows\system32\lsasrv.dll - Ok [Scan path] c:\windows\system32\lsass.exe c:\windows\system32\lsass.exe - Ok [Scan path] c:\windows\system32\lz32.dll c:\windows\system32\lz32.dll - Ok [Scan path] c:\windows\system32\macromed\flash\flash9f.ocx c:\windows\system32\macromed\flash\flash9f.ocx - Ok [Scan path] c:\windows\system32\mfc42.dll c:\windows\system32\mfc42.dll - Ok [Scan path] c:\windows\system32\mfc42loc.dll c:\windows\system32\mfc42loc.dll - Ok [Scan path] c:\windows\system32\mfc42u.dll c:\windows\system32\mfc42u.dll - Ok [Scan path] c:\windows\system32\mfc71ita.dll c:\windows\system32\mfc71ita.dll - Ok [Scan path] c:\windows\system32\midimap.dll c:\windows\system32\midimap.dll - Ok [Scan path] c:\windows\system32\mlang.dll c:\windows\system32\mlang.dll - Ok [Scan path] c:\windows\system32\mmcshext.dll c:\windows\system32\mmcshext.dll - Ok [Scan path] c:\windows\system32\mmsys.cpl c:\windows\system32\mmsys.cpl - Ok [Scan path] c:\windows\system32\mnmsrvc.exe c:\windows\system32\mnmsrvc.exe - Ok [Scan path] c:\windows\system32\mpr.dll c:\windows\system32\mpr.dll - Ok [Scan path] c:\windows\system32\mprapi.dll c:\windows\system32\mprapi.dll - Ok [Scan path] c:\windows\system32\mprdim.dll c:\windows\system32\mprdim.dll - Ok [Scan path] c:\windows\system32\msacm32.dll c:\windows\system32\msacm32.dll - Ok [Scan path] c:\windows\system32\msacm32.drv c:\windows\system32\msacm32.drv - Ok [Scan path] c:\windows\system32\msapsspc.dll c:\windows\system32\msapsspc.dll - Ok [Scan path] c:\windows\system32\msasn1.dll c:\windows\system32\msasn1.dll - Ok [Scan path] c:\windows\system32\mscms.dll c:\windows\system32\mscms.dll - Ok [Scan path] c:\windows\system32\mscoree.dll c:\windows\system32\mscoree.dll - Ok [Scan path] c:\windows\system32\mscories.dll c:\windows\system32\mscories.dll - Ok [Scan path] c:\windows\system32\msctf.dll c:\windows\system32\msctf.dll - Ok [Scan path] c:\windows\system32\msctfime.ime c:\windows\system32\msctfime.ime - Ok [Scan path] c:\windows\system32\msdtc.exe c:\windows\system32\msdtc.exe - Ok [Scan path] c:\windows\system32\msgina.dll c:\windows\system32\msgina.dll - Ok [Scan path] c:\windows\system32\msgsvc.dll c:\windows\system32\msgsvc.dll - Ok [Scan path] c:\windows\system32\mshtml.dll c:\windows\system32\mshtml.dll - Ok [Scan path] c:\windows\system32\mshtmled.dll c:\windows\system32\mshtmled.dll - Ok [Scan path] c:\windows\system32\msi.dll c:\windows\system32\msi.dll - Ok [Scan path] c:\windows\system32\msidle.dll c:\windows\system32\msidle.dll - Ok [Scan path] c:\windows\system32\msieftp.dll c:\windows\system32\msieftp.dll - Ok [Scan path] c:\windows\system32\msiexec.exe c:\windows\system32\msiexec.exe - Ok [Scan path] c:\windows\system32\msimg32.dll c:\windows\system32\msimg32.dll - Ok [Scan path] c:\windows\system32\msimtf.dll c:\windows\system32\msimtf.dll - Ok [Scan path] c:\windows\system32\msls31.dll c:\windows\system32\msls31.dll - Ok [Scan path] c:\windows\system32\msnsspc.dll c:\windows\system32\msnsspc.dll - Ok [Scan path] c:\windows\system32\mspatcha.dll c:\windows\system32\mspatcha.dll - Ok [Scan path] c:\windows\system32\mspmsnsv.dll c:\windows\system32\mspmsnsv.dll - Ok [Scan path] c:\windows\system32\msprivs.dll c:\windows\system32\msprivs.dll - Ok [Scan path] c:\windows\system32\mstask.dll c:\windows\system32\mstask.dll - Ok [Scan path] c:\windows\system32\mstlsapi.dll c:\windows\system32\mstlsapi.dll - Ok [Scan path] c:\windows\system32\msutb.dll c:\windows\system32\msutb.dll - Ok [Scan path] c:\windows\system32\msv1_0.dll c:\windows\system32\msv1_0.dll - Ok [Scan path] c:\windows\system32\msvcirt.dll c:\windows\system32\msvcirt.dll - Ok [Scan path] c:\windows\system32\msvcp60.dll c:\windows\system32\msvcp60.dll - Ok [Scan path] c:\windows\system32\msvcr71.dll c:\windows\system32\msvcr71.dll - Ok [Scan path] c:\windows\system32\msvcrt.dll c:\windows\system32\msvcrt.dll - Ok [Scan path] c:\windows\system32\msvidctl.dll c:\windows\system32\msvidctl.dll - Ok [Scan path] c:\windows\system32\mswsock.dll c:\windows\system32\mswsock.dll - Ok [Scan path] c:\windows\system32\msxml3.dll c:\windows\system32\msxml3.dll - Ok [Scan path] c:\windows\system32\mtxclu.dll c:\windows\system32\mtxclu.dll - Ok [Scan path] c:\windows\system32\mui\0010\hhctrlui.dll c:\windows\system32\mui\0010\hhctrlui.dll - Ok [Scan path] c:\windows\system32\muweb.dll c:\windows\system32\muweb.dll - archivio CAB >c:\windows\system32\muweb.dll\Authorization.xml - Ok c:\windows\system32\muweb.dll - Ok [Scan path] c:\windows\system32\mydocs.dll c:\windows\system32\mydocs.dll - Ok [Scan path] c:\windows\system32\ncobjapi.dll c:\windows\system32\ncobjapi.dll - Ok [Scan path] c:\windows\system32\nddeapi.dll c:\windows\system32\nddeapi.dll - Ok [Scan path] c:\windows\system32\ndptsp.tsp c:\windows\system32\ndptsp.tsp - Ok [Scan path] c:\windows\system32\netapi32.dll c:\windows\system32\netapi32.dll - Ok [Scan path] c:\windows\system32\netcfgx.dll c:\windows\system32\netcfgx.dll - Ok [Scan path] c:\windows\system32\netdde.exe c:\windows\system32\netdde.exe - Ok [Scan path] c:\windows\system32\netlogon.dll c:\windows\system32\netlogon.dll - Ok [Scan path] c:\windows\system32\netman.dll c:\windows\system32\netman.dll - Ok [Scan path] c:\windows\system32\netplwiz.dll c:\windows\system32\netplwiz.dll - Ok [Scan path] c:\windows\system32\netrap.dll c:\windows\system32\netrap.dll - Ok [Scan path] c:\windows\system32\netsetup.cpl c:\windows\system32\netsetup.cpl - Ok [Scan path] c:\windows\system32\netshell.dll c:\windows\system32\netshell.dll - Ok [Scan path] c:\windows\system32\netui0.dll c:\windows\system32\netui0.dll - Ok [Scan path] c:\windows\system32\netui1.dll c:\windows\system32\netui1.dll - Ok [Scan path] c:\windows\system32\normaliz.dll c:\windows\system32\normaliz.dll - Ok [Scan path] c:\windows\system32\ntdll.dll c:\windows\system32\ntdll.dll - Ok [Scan path] c:\windows\system32\ntdsapi.dll c:\windows\system32\ntdsapi.dll - Ok [Scan path] c:\windows\system32\ntlanman.dll c:\windows\system32\ntlanman.dll - Ok [Scan path] c:\windows\system32\ntlanui2.dll c:\windows\system32\ntlanui2.dll - Ok [Scan path] c:\windows\system32\ntlsapi.dll c:\windows\system32\ntlsapi.dll - Ok [Scan path] c:\windows\system32\ntmarta.dll c:\windows\system32\ntmarta.dll - Ok [Scan path] c:\windows\system32\ntmssvc.dll c:\windows\system32\ntmssvc.dll - Ok [Scan path] c:\windows\system32\ntsd.exe c:\windows\system32\ntsd.exe - Ok [Scan path] c:\windows\system32\ntshrui.dll c:\windows\system32\ntshrui.dll - Ok [Scan path] c:\windows\system32\oakley.dll c:\windows\system32\oakley.dll - Ok [Scan path] c:\windows\system32\occache.dll c:\windows\system32\occache.dll - Ok [Scan path] c:\windows\system32\odbc32.dll c:\windows\system32\odbc32.dll - Ok [Scan path] c:\windows\system32\odbcint.dll c:\windows\system32\odbcint.dll - Ok [Scan path] c:\windows\system32\oemspi.dll c:\windows\system32\oemspi.dll - Ok [Scan path] c:\windows\system32\ole32.dll c:\windows\system32\ole32.dll - Ok [Scan path] c:\windows\system32\oleacc.dll c:\windows\system32\oleacc.dll - Ok [Scan path] c:\windows\system32\oleaut32.dll c:\windows\system32\oleaut32.dll - Ok [Scan path] c:\windows\system32\olecli32.dll c:\windows\system32\olecli32.dll - Ok [Scan path] c:\windows\system32\olecnv32.dll c:\windows\system32\olecnv32.dll - Ok [Scan path] c:\windows\system32\olesvr32.dll c:\windows\system32\olesvr32.dll - Ok [Scan path] c:\windows\system32\olethk32.dll c:\windows\system32\olethk32.dll - Ok [Scan path] c:\windows\system32\photowiz.dll c:\windows\system32\photowiz.dll - Ok [Scan path] c:\windows\system32\pjlmon.dll c:\windows\system32\pjlmon.dll - Ok [Scan path] c:\windows\system32\pngfilt.dll c:\windows\system32\pngfilt.dll - Ok [Scan path] c:\windows\system32\portabledeviceapi.dll c:\windows\system32\portabledeviceapi.dll - Ok [Scan path] c:\windows\system32\portabledevicetypes.dll c:\windows\system32\portabledevicetypes.dll - Ok [Scan path] c:\windows\system32\powrprof.dll c:\windows\system32\powrprof.dll - Ok [Scan path] c:\windows\system32\printui.dll c:\windows\system32\printui.dll - Ok [Scan path] c:\windows\system32\profmap.dll c:\windows\system32\profmap.dll - Ok [Scan path] c:\windows\system32\psapi.dll c:\windows\system32\psapi.dll - Ok [Scan path] c:\windows\system32\psbase.dll c:\windows\system32\psbase.dll - Ok [Scan path] c:\windows\system32\pstorsvc.dll c:\windows\system32\pstorsvc.dll - Ok [Scan path] c:\windows\system32\qmgr.dll c:\windows\system32\qmgr.dll - Ok [Scan path] c:\windows\system32\rapi.dll c:\windows\system32\rapi.dll - Ok [Scan path] c:\windows\system32\rasadhlp.dll c:\windows\system32\rasadhlp.dll - Ok [Scan path] c:\windows\system32\rasapi32.dll c:\windows\system32\rasapi32.dll - Ok [Scan path] c:\windows\system32\rasauto.dll c:\windows\system32\rasauto.dll - Ok [Scan path] c:\windows\system32\raschap.dll c:\windows\system32\raschap.dll - Ok [Scan path] c:\windows\system32\rasdlg.dll c:\windows\system32\rasdlg.dll - Ok [Scan path] c:\windows\system32\rasman.dll c:\windows\system32\rasman.dll - Ok [Scan path] c:\windows\system32\rasmans.dll c:\windows\system32\rasmans.dll - Ok [Scan path] c:\windows\system32\rasppp.dll c:\windows\system32\rasppp.dll - Ok [Scan path] c:\windows\system32\rastapi.dll c:\windows\system32\rastapi.dll - Ok [Scan path] c:\windows\system32\rastls.dll c:\windows\system32\rastls.dll - Ok [Scan path] c:\windows\system32\regapi.dll c:\windows\system32\regapi.dll - Ok [Scan path] c:\windows\system32\regsvr32.exe c:\windows\system32\regsvr32.exe - Ok [Scan path] c:\windows\system32\remotepg.dll c:\windows\system32\remotepg.dll - Ok [Scan path] c:\windows\system32\resutils.dll c:\windows\system32\resutils.dll - Ok [Scan path] c:\windows\system32\riched20.dll c:\windows\system32\riched20.dll - Ok [Scan path] c:\windows\system32\riched32.dll c:\windows\system32\riched32.dll - Ok [Scan path] c:\windows\system32\rpcrt4.dll c:\windows\system32\rpcrt4.dll - Ok [Scan path] c:\windows\system32\rpcss.dll c:\windows\system32\rpcss.dll - Ok [Scan path] c:\windows\system32\rsaenh.dll c:\windows\system32\rsaenh.dll - Ok [Scan path] c:\windows\system32\rshx32.dll c:\windows\system32\rshx32.dll - Ok [Scan path] c:\windows\system32\rsvp.exe c:\windows\system32\rsvp.exe - Ok [Scan path] c:\windows\system32\rsvpsp.dll c:\windows\system32\rsvpsp.dll - Ok [Scan path] c:\windows\system32\rtutils.dll c:\windows\system32\rtutils.dll - Ok [Scan path] c:\windows\system32\rundll32.exe c:\windows\system32\rundll32.exe - Ok [Scan path] c:\windows\system32\samlib.dll c:\windows\system32\samlib.dll - Ok [Scan path] c:\windows\system32\samsrv.dll c:\windows\system32\samsrv.dll - Ok [Scan path] c:\windows\system32\scardsvr.exe c:\windows\system32\scardsvr.exe - Ok [Scan path] c:\windows\system32\scecli.dll c:\windows\system32\scecli.dll - Ok [Scan path] c:\windows\system32\scesrv.dll c:\windows\system32\scesrv.dll - Ok [Scan path] c:\windows\system32\schannel.dll c:\windows\system32\schannel.dll - Ok [Scan path] c:\windows\system32\schedsvc.dll c:\windows\system32\schedsvc.dll - Ok [Scan path] c:\windows\system32\sclgntfy.dll c:\windows\system32\sclgntfy.dll - Ok [Scan path] c:\windows\system32\seclogon.dll c:\windows\system32\seclogon.dll - Ok [Scan path] c:\windows\system32\secur32.dll c:\windows\system32\secur32.dll - Ok [Scan path] c:\windows\system32\sendmail.dll c:\windows\system32\sendmail.dll - Ok [Scan path] c:\windows\system32\sens.dll c:\windows\system32\sens.dll - Ok [Scan path] c:\windows\system32\sensapi.dll c:\windows\system32\sensapi.dll - Ok [Scan path] c:\windows\system32\services.exe c:\windows\system32\services.exe - Ok [Scan path] c:\windows\system32\sessmgr.exe c:\windows\system32\sessmgr.exe - Ok [Scan path] c:\windows\system32\setupapi.dll c:\windows\system32\setupapi.dll - Ok [Scan path] c:\windows\system32\sfc.dll c:\windows\system32\sfc.dll - Ok [Scan path] c:\windows\system32\sfc_os.dll c:\windows\system32\sfc_os.dll - Ok [Scan path] c:\windows\system32\shdoclc.dll c:\windows\system32\shdoclc.dll - Ok [Scan path] c:\windows\system32\shdocvw.dll c:\windows\system32\shdocvw.dll - Ok [Scan path] c:\windows\system32\shell32.dll c:\windows\system32\shell32.dll - Ok [Scan path] c:\windows\system32\shellvrtf.dll c:\windows\system32\shellvrtf.dll - Ok [Scan path] c:\windows\system32\shfolder.dll c:\windows\system32\shfolder.dll - Ok [Scan path] c:\windows\system32\shimeng.dll c:\windows\system32\shimeng.dll - Ok [Scan path] c:\windows\system32\shimgvw.dll c:\windows\system32\shimgvw.dll - Ok [Scan path] c:\windows\system32\shlwapi.dll c:\windows\system32\shlwapi.dll - Ok [Scan path] c:\windows\system32\shmedia.dll c:\windows\system32\shmedia.dll - Ok [Scan path] c:\windows\system32\shmgrate.exe c:\windows\system32\shmgrate.exe - Ok [Scan path] c:\windows\system32\shscrap.dll c:\windows\system32\shscrap.dll - Ok [Scan path] c:\windows\system32\shsvcs.dll c:\windows\system32\shsvcs.dll - Ok [Scan path] c:\windows\system32\slayerxp.dll c:\windows\system32\slayerxp.dll - Ok [Scan path] c:\windows\system32\smlogsvc.exe c:\windows\system32\smlogsvc.exe - Ok [Scan path] c:\windows\system32\smss.exe c:\windows\system32\smss.exe - Ok [Scan path] c:\windows\system32\spirun.dll c:\windows\system32\spirun.dll - Ok [Scan path] c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll - Ok [Scan path] c:\windows\system32\spoolss.dll c:\windows\system32\spoolss.dll - Ok [Scan path] c:\windows\system32\spoolsv.exe c:\windows\system32\spoolsv.exe - Ok [Scan path] c:\windows\system32\srsvc.dll c:\windows\system32\srsvc.dll - Ok [Scan path] c:\windows\system32\srvsvc.dll c:\windows\system32\srvsvc.dll - Ok [Scan path] c:\windows\system32\ssdpapi.dll c:\windows\system32\ssdpapi.dll - Ok [Scan path] c:\windows\system32\ssdpsrv.dll c:\windows\system32\ssdpsrv.dll - Ok [Scan path] c:\windows\system32\stobject.dll c:\windows\system32\stobject.dll - Ok [Scan path] c:\windows\system32\strmfilt.dll c:\windows\system32\strmfilt.dll - Ok [Scan path] c:\windows\system32\svchost.exe c:\windows\system32\svchost.exe - Ok [Scan path] c:\windows\system32\sxs.dll c:\windows\system32\sxs.dll - Ok [Scan path] c:\windows\system32\syncui.dll c:\windows\system32\syncui.dll - Ok [Scan path] c:\windows\system32\tapi32.dll c:\windows\system32\tapi32.dll - Ok [Scan path] c:\windows\system32\tapisrv.dll c:\windows\system32\tapisrv.dll - Ok [Scan path] c:\windows\system32\tcpmon.dll c:\windows\system32\tcpmon.dll - Ok [Scan path] c:\windows\system32\termsrv.dll c:\windows\system32\termsrv.dll - Ok [Scan path] c:\windows\system32\themeui.dll c:\windows\system32\themeui.dll - Ok [Scan path] c:\windows\system32\trkwks.dll c:\windows\system32\trkwks.dll - Ok [Scan path] c:\windows\system32\twext.dll c:\windows\system32\twext.dll - Ok [Scan path] c:\windows\system32\umpnpmgr.dll c:\windows\system32\umpnpmgr.dll - Ok [Scan path] c:\windows\system32\unimdm.tsp c:\windows\system32\unimdm.tsp - Ok [Scan path] c:\windows\system32\uniplat.dll c:\windows\system32\uniplat.dll - Ok [Scan path] c:\windows\system32\upnp.dll c:\windows\system32\upnp.dll - Ok [Scan path] c:\windows\system32\upnphost.dll c:\windows\system32\upnphost.dll - Ok [Scan path] c:\windows\system32\ups.exe c:\windows\system32\ups.exe - Ok [Scan path] c:\windows\system32\url.dll c:\windows\system32\url.dll - Ok [Scan path] c:\windows\system32\urlmon.dll c:\windows\system32\urlmon.dll - Ok [Scan path] c:\windows\system32\usbmon.dll c:\windows\system32\usbmon.dll - Ok [Scan path] c:\windows\system32\user32.dll c:\windows\system32\user32.dll - Ok [Scan path] c:\windows\system32\userenv.dll c:\windows\system32\userenv.dll - Ok [Scan path] c:\windows\system32\userinit.exe c:\windows\system32\userinit.exe - Ok [Scan path] c:\windows\system32\usp10.dll c:\windows\system32\usp10.dll - Ok [Scan path] c:\windows\system32\uxtheme.dll c:\windows\system32\uxtheme.dll - Ok [Scan path] c:\windows\system32\version.dll c:\windows\system32\version.dll - Ok [Scan path] c:\windows\system32\vssapi.dll c:\windows\system32\vssapi.dll - Ok [Scan path] c:\windows\system32\vssvc.exe c:\windows\system32\vssvc.exe - Ok [Scan path] c:\windows\system32\w32time.dll c:\windows\system32\w32time.dll - Ok [Scan path] c:\windows\system32\w3ssl.dll c:\windows\system32\w3ssl.dll - Ok [Scan path] c:\windows\system32\wbem\esscli.dll c:\windows\system32\wbem\esscli.dll - Ok [Scan path] c:\windows\system32\wbem\fastprox.dll c:\windows\system32\wbem\fastprox.dll - Ok [Scan path] c:\windows\system32\wbem\ncprov.dll c:\windows\system32\wbem\ncprov.dll - Ok [Scan path] c:\windows\system32\wbem\repdrvfs.dll c:\windows\system32\wbem\repdrvfs.dll - Ok [Scan path] c:\windows\system32\wbem\wbemcomn.dll c:\windows\system32\wbem\wbemcomn.dll - Ok [Scan path] c:\windows\system32\wbem\wbemcore.dll c:\windows\system32\wbem\wbemcore.dll - Ok [Scan path] c:\windows\system32\wbem\wbemess.dll c:\windows\system32\wbem\wbemess.dll - Ok [Scan path] c:\windows\system32\wbem\wbemprox.dll c:\windows\system32\wbem\wbemprox.dll - Ok [Scan path] c:\windows\system32\wbem\wbemsvc.dll c:\windows\system32\wbem\wbemsvc.dll - Ok [Scan path] c:\windows\system32\wbem\winmgmt.exe c:\windows\system32\wbem\winmgmt.exe - Ok [Scan path] c:\windows\system32\wbem\wmiapsrv.exe c:\windows\system32\wbem\wmiapsrv.exe - Ok [Scan path] c:\windows\system32\wbem\wmiprvsd.dll c:\windows\system32\wbem\wmiprvsd.dll - Ok [Scan path] c:\windows\system32\wbem\wmisvc.dll c:\windows\system32\wbem\wmisvc.dll - Ok [Scan path] c:\windows\system32\wbem\wmiutils.dll c:\windows\system32\wbem\wmiutils.dll - Ok [Scan path] c:\windows\system32\wdigest.dll c:\windows\system32\wdigest.dll - Ok [Scan path] c:\windows\system32\wdmaud.drv c:\windows\system32\wdmaud.drv - Ok [Scan path] c:\windows\system32\webcheck.dll c:\windows\system32\webcheck.dll - Ok [Scan path] c:\windows\system32\webclnt.dll c:\windows\system32\webclnt.dll - Ok [Scan path] c:\windows\system32\wiascr.dll c:\windows\system32\wiascr.dll - Ok [Scan path] c:\windows\system32\wiaservc.dll c:\windows\system32\wiaservc.dll - Ok [Scan path] c:\windows\system32\wiashext.dll c:\windows\system32\wiashext.dll - Ok [Scan path] c:\windows\system32\win32spl.dll c:\windows\system32\win32spl.dll - Ok [Scan path] c:\windows\system32\winhttp.dll c:\windows\system32\winhttp.dll - Ok [Scan path] c:\windows\system32\wininet.dll c:\windows\system32\wininet.dll - Ok [Scan path] c:\windows\system32\winipsec.dll c:\windows\system32\winipsec.dll - Ok [Scan path] c:\windows\system32\winlogon.exe c:\windows\system32\winlogon.exe - Ok [Scan path] c:\windows\system32\winmm.dll c:\windows\system32\winmm.dll - Ok [Scan path] c:\windows\system32\winrnr.dll c:\windows\system32\winrnr.dll - Ok [Scan path] c:\windows\system32\winscard.dll c:\windows\system32\winscard.dll - Ok [Scan path] c:\windows\system32\winspool.drv c:\windows\system32\winspool.drv - Ok [Scan path] c:\windows\system32\winsrv.dll c:\windows\system32\winsrv.dll - Ok [Scan path] c:\windows\system32\winsta.dll c:\windows\system32\winsta.dll - Ok [Scan path] c:\windows\system32\wintrust.dll c:\windows\system32\wintrust.dll - Ok [Scan path] c:\windows\system32\wkssvc.dll c:\windows\system32\wkssvc.dll - Ok [Scan path] c:\windows\system32\wldap32.dll c:\windows\system32\wldap32.dll - Ok [Scan path] c:\windows\system32\wlnotify.dll c:\windows\system32\wlnotify.dll - Ok [Scan path] c:\windows\system32\wmasf.dll c:\windows\system32\wmasf.dll - Ok [Scan path] c:\windows\system32\wmi.dll c:\windows\system32\wmi.dll - Ok [Scan path] c:\windows\system32\wmpshell.dll c:\windows\system32\wmpshell.dll - Ok [Scan path] c:\windows\system32\wmvcore.dll c:\windows\system32\wmvcore.dll - Ok [Scan path] c:\windows\system32\wpdshext.dll c:\windows\system32\wpdshext.dll - Ok [Scan path] c:\windows\system32\wpdshserviceobj.dll c:\windows\system32\wpdshserviceobj.dll - Ok [Scan path] c:\windows\system32\ws2_32.dll c:\windows\system32\ws2_32.dll - Ok [Scan path] c:\windows\system32\ws2help.dll c:\windows\system32\ws2help.dll - Ok [Scan path] c:\windows\system32\wscsvc.dll c:\windows\system32\wscsvc.dll - Ok [Scan path] c:\windows\system32\wshext.dll c:\windows\system32\wshext.dll - Ok [Scan path] c:\windows\system32\wshtcpip.dll c:\windows\system32\wshtcpip.dll - Ok [Scan path] c:\windows\system32\wsock32.dll c:\windows\system32\wsock32.dll - Ok [Scan path] c:\windows\system32\wtsapi32.dll c:\windows\system32\wtsapi32.dll - Ok [Scan path] c:\windows\system32\wuauclt.exe c:\windows\system32\wuauclt.exe - Ok [Scan path] c:\windows\system32\wuaucpl.cpl c:\windows\system32\wuaucpl.cpl - Ok [Scan path] c:\windows\system32\wuaueng.dll c:\windows\system32\wuaueng.dll - Ok [Scan path] c:\windows\system32\wuauserv.dll c:\windows\system32\wuauserv.dll - Ok [Scan path] c:\windows\system32\wudfsvc.dll c:\windows\system32\wudfsvc.dll compresso da PESTUB >c:\windows\system32\wudfsvc.dll - Ok [Scan path] c:\windows\system32\wups2.dll c:\windows\system32\wups2.dll - Ok [Scan path] c:\windows\system32\wzcdlg.dll c:\windows\system32\wzcdlg.dll - Ok [Scan path] c:\windows\system32\wzcsapi.dll c:\windows\system32\wzcsapi.dll - Ok [Scan path] c:\windows\system32\wzcsvc.dll c:\windows\system32\wzcsvc.dll - Ok [Scan path] c:\windows\system32\xmllite.dll c:\windows\system32\xmllite.dll - Ok [Scan path] c:\windows\system32\xmlprov.dll c:\windows\system32\xmlprov.dll - Ok [Scan path] c:\windows\system32\xpsp2res.dll c:\windows\system32\xpsp2res.dll - Ok [Scan path] c:\windows\system32\xpsshhdr.dll c:\windows\system32\xpsshhdr.dll - Ok [Scan path] c:\windows\system32\zipfldr.dll c:\windows\system32\zipfldr.dll - Ok [Scan path] c:\windows\system\hpsysdrv.exe c:\windows\system\hpsysdrv.exe - Ok [Scan path] c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcr80.dll c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcr80.dll - Ok [Scan path] c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll - Ok [Scan path] c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll - Ok [Scan path] d:\info.exe d:\info.exe - Ok [Scan path] d:\protect.ed d:\protect.ed - archivio RTF >d:\protect.ed\rtf.001 - Ok d:\protect.ed - Ok ----------------------------------------------------------------------------- Statistiche delle Scansioni ----------------------------------------------------------------------------- Oggetti controllati: 1339 Trovati oggetti Infetti: 0 Trovato Oggetti modificati: 0 Trovato oggetti Sospetti: 0 Trovato Adware: 0 Trovato Dialer: 0 Trovato Joke: 0 Trovato Riskware: 0 Trovato Hacktool: 0 Oggetti curati: 0 Oggetti cancellati: 0 Oggetti rinominati: 0 Oggetti spostati: 0 Oggetti ignorati: 0 Velocità di scansione: 3810 Kb/s Durata scansione: 00:01:20 ----------------------------------------------------------------------------- Master Boot Record HDD1 - Ok Active OS/2 or WinNT Boot Sector HDD1 - Ok [Scan path] C:\ ----------------------------------------------------------------------------- Statistiche delle Scansioni ----------------------------------------------------------------------------- Oggetti controllati: 2 Trovati oggetti Infetti: 0 Trovato Oggetti modificati: 0 Trovato oggetti Sospetti: 0 Trovato Adware: 0 Trovato Dialer: 0 Trovato Joke: 0 Trovato Riskware: 0 Trovato Hacktool: 0 Oggetti curati: 0 Oggetti cancellati: 0 Oggetti rinominati: 0 Oggetti spostati: 0 Oggetti ignorati: 0 Velocità di scansione: 0 Kb/s Durata scansione: 00:00:18 ----------------------------------------------------------------------------- Scansione interrotta dall'utente! - non trovati virus ============================================================================= Statistiche totali della sessione ============================================================================= Oggetti controllati: 1341 Trovati oggetti Infetti: 0 Trovato Oggetti modificati: 0 Trovato oggetti Sospetti: 0 Trovato Adware: 0 Trovato Dialer: 0 Trovato Joke: 0 Trovato Riskware: 0 Trovato Hacktool: 0 Oggetti curati: 0 Oggetti cancellati: 0 Oggetti rinominati: 0 Oggetti spostati: 0 Oggetti ignorati: 0 Velocità di scansione: 3110 Kb/s Durata scansione: 00:01:38 =============================================================================
__________________
La mia difesa dai virus?? Hardware upgrade |
|
|
|
|
|
#7 | |
|
Senior Member
Iscritto dal: Apr 2006
Messaggi: 22462
|
Quote:
__________________
amd a64x2 4400+ sk939;asus a8n-sli; 2x1gb ddr400; x850 crossfire; 2 x western digital abys 320gb|| asus g1
Se striscia fulmina, se svolazza l'ammazza |
|
|
|
|
|
|
#8 |
|
Senior Member
Iscritto dal: Apr 2006
Messaggi: 22462
|
inoltre in hijackthis fixa questi
Codice:
C:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe O4 - HKLM\..\Run: [P17Helper] Rundll32 SPIRun.dll,RunDLLEntry O4 - HKCU\..\Run: [acepsdf] c:\documents and settings\compaq_proprietario\impostazioni locali\dati applicazioni\acepsdf.exe acepsdf
__________________
amd a64x2 4400+ sk939;asus a8n-sli; 2x1gb ddr400; x850 crossfire; 2 x western digital abys 320gb|| asus g1
Se striscia fulmina, se svolazza l'ammazza |
|
|
|
|
|
#9 |
|
Senior Member
Iscritto dal: Nov 2001
Città: Fidenza(pr) da Trento
Messaggi: 27479
|
poi avremo da far agiornare anche i programmi installati perchè si notano dei programmi vecchiotti
__________________
"Visti da vicino siamo tutti strani..." ~|~ What Defines a Community? ~|~ Thread eMule Ufficiale ~|~ Online Armor in Italiano ~|~ Regole di Sezione ~|► Guida a PrivateFirewall
|
|
|
|
|
|
#10 |
|
Member
Iscritto dal: Nov 2007
Città: Vicenza(malo)
Messaggi: 79
|
ora va bene cosi???
Codice:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12.46.33, on 11/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\HP\HP Software Update\HPwuSchd2.exe
C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe
C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Programmi\Creative\Shared Files\CTSched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\Microsoft ActiveSync\wcescomm.exe
C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe
C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\system32\svchost.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\ALCXMNTR.EXE
c:\windows\system\hpsysdrv.exe
C:\Programmi\uTorrent\uTorrent.exe
C:\Programmi\Mozilla Firefox\firefox.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - URLSearchHook: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Supporto di collegamento per Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar con blocco Pop-Up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Programmi\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Programmi\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Programmi\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Programmi\ATI Technologies\ATI HYDRAVISION\HydraDM.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [VolPanel] "C:\Programmi\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe" /r
O4 - HKLM\..\Run: [CreativeTaskScheduler] "C:\Programmi\Creative\Shared Files\CTSched.exe" /logon
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Programmi\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe
O4 - Startup: Y'z Toolbar.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Crea preferito portatile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: Guida alla connessione - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Guida alla connessione - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programmi\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1212566945203
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2E68A6DA-E021-44FB-A1C9-72FDCDFECFB3}: NameServer = 193.12.150.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{CF7FAEEA-74FE-45EA-A53E-886731447AD2}: NameServer = 193.12.150.2,0.0.0.0
O17 - HKLM\System\CS1\Services\Tcpip\..\{2E68A6DA-E021-44FB-A1C9-72FDCDFECFB3}: NameServer = 193.12.150.2
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Programmi\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
--
End of file - 8173 bytes
__________________
La mia difesa dai virus?? Hardware upgrade |
|
|
|
|
|
#11 |
|
Senior Member
Iscritto dal: Dec 2007
Città: Brianza
Messaggi: 14704
|
Dai un'occhiata al trattamento di prevenzione / post disinfezione, ti aiuta a verificare la configurazione di sicurezza del tuo pc, aggiornare programmi vulnerabili obsoleti ed eliminare eventuali residui inutili dei programmi utilizzati nelle guide.
__________________
fattoebloggato.com • Trattamento post disinfezione • Recupero dati, RAID e Partizioni • Guida UBCD4Win • Test RAM • Controllo Disco • TestDisk • Operazioni di emergenza • Live cd Linux • UBCD • Backup • Gestione ISO & immagini virtuali • Partizionare un disco • Sardu • ScreenRecording • |
|
|
|
|
| Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 15:25.




















