|
|||||||
|
|
|
![]() |
|
|
Strumenti |
|
|
#1 |
|
Senior Member
Iscritto dal: Oct 2007
Città: Messina (provincia) Trattative HWUpgrade: 29 Feedback eBay: 158 100% positivi
Messaggi: 1886
|
[win XP] Dialer Internet Connection - AIUTO!!!!
Ciao a tutti.
Credo di aver beccato un dialer perchè nelle connessioni me ne appare una nuova che si chiama Internet Connection. Ho letto sul WEB che si tratta di un dialer e ho capito anche all'incirca come eliminarlo, ma non del tutto, e spero di avere aiuto da voi. HO fatto all'inizio una scansione con FindAWF. Vi riporto il report: Codice:
Find AWF report by noahdfear ©2006
Version 1.40
bak folders found
~~~~~~~~~~~
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\DAEMON~1\BAK
08/11/2005 23.00 128.920 daemon.exe
1 File 128.920 byte
2 Directory 153.445.543.936 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\HPDIGI~1\BAK
13/04/2006 08.05 90.112 DMAScheduler.exe
1 File 90.112 byte
2 Directory 153.445.543.936 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\MEMOREX\BAK
29/07/2003 22.37 332.288 MemoRexStart.exe
1 File 332.288 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\MSNMES~1\BAK
19/01/2007 11.54 5.674.352 MsnMsgr.Exe
1 File 5.674.352 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\QUICKT~1\BAK
29/06/2007 05.24 286.720 qttask.exe
1 File 286.720 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\WINDOWS\EHOME\BAK
18/08/2005 04.40 64.512 ehtray.exe
1 File 64.512 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\WINDOWS\SMINST\BAK
22/07/2005 21.14 237.568 RECGUARD.EXE
1 File 237.568 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\WINDOWS\SYSTEM32\BAK
07/09/2004 05.00 15.360 ctfmon.exe
09/07/2001 10.50 155.648 NeroCheck.exe
2 File 171.008 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\FILECO~1\SYMANT~1\BAK
0 File 0 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\GOOGLE\GOOGLE~1\BAK
21/08/2007 14.12 68.856 GoogleToolbarNotifier.exe
1 File 68.856 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\HEWLET~1\HPBOOT~1\BAK
15/02/2006 21.34 249.856 HPBootOp.exe
1 File 249.856 byte
2 Directory 153.445.539.840 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\HP\HPSOFT~1\BAK
11/05/2005 22.12 49.152 HPWuSchd2.exe
1 File 49.152 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\INTEL\INTELM~1\BAK
22/02/2006 01.59 143.360 Iaanotif.exe
1 File 143.360 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\LOGITECH\QUICKC~1\BAK
26/06/2006 09.34 614.960 QuickCam10.exe
1 File 614.960 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\SLYSOFT\CLONECD\BAK
02/09/2004 22.57 57.344 CloneCDTray.exe
1 File 57.344 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\ADOBE\READER~1.0\READER\BAK
10/10/2007 19.51 39.792 Reader_sl.exe
1 File 39.792 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\FILECO~1\AHEAD\LIB\BAK
03/09/2005 14.18 94.208 NMBgMonitor.exe
1 File 94.208 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\FILECO~1\LOGITECH\LCOMMGR\BAK
26/06/2006 08.46 497.200 Communications_Helper.exe
26/06/2006 09.33 243.248 LVComSX.exe
2 File 740.448 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\FILECO~1\REAL\UPDATE~1\BAK
13/10/2006 06.15 180.269 realsched.exe
1 File 180.269 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\JAVA\JRE15~1.0_1\BIN\BAK
05/10/2007 03.32 75.256 jusched.exe
1 File 75.256 byte
2 Directory 153.445.535.744 byte disponibili
Il volume nell'unit… C Š HP_PAVILION
Numero di serie del volume: 98C9-D6A4
Directory di C:\PROGRA~1\LOGITECH\DESKTO~1\8876480\PROGRAM\BAK
26/08/2007 02.32 67.128 LogitechDesktopMessenger.exe
1 File 67.128 byte
2 Directory 153.445.535.744 byte disponibili
Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~
14348 6 Jan 2008 "C:\Programmi\DAEMON Tools\daemon.exe"
128920 8 Nov 2005 "C:\Programmi\DAEMON Tools\bak\daemon.exe"
14348 6 Jan 2008 "C:\Programmi\HP DigitalMedia Archive\DMAScheduler.exe"
90112 13 Apr 2006 "C:\Programmi\HP DigitalMedia Archive\bak\DMAScheduler.exe"
322560 8 Jan 2004 "C:\Programmi\MemoRex\MemoRexOpt.exe"
332288 29 Jul 2003 "C:\Programmi\MemoRex\bak\MemoRexStart.exe"
14348 6 Jan 2008 "C:\Programmi\MSN Messenger\MsnMsgr.Exe"
5674352 19 Jan 2007 "C:\Programmi\MSN Messenger\bak\MsnMsgr.Exe"
14348 6 Jan 2008 "C:\Programmi\QuickTime\qttask.exe"
286720 29 Jun 2007 "C:\Programmi\QuickTime\bak\qttask.exe"
64512 18 Aug 2005 "C:\WINDOWS\ehome\ehtray.exe"
64512 18 Aug 2005 "C:\WINDOWS\ehome\bak\ehtray.exe"
14348 6 Jan 2008 "C:\WINDOWS\SMINST\RECGUARD.EXE"
237568 22 Jul 2005 "C:\WINDOWS\SMINST\bak\RECGUARD.EXE"
15360 7 Sep 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 7 Sep 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
14348 6 Jan 2008 "C:\WINDOWS\system32\NeroCheck.exe"
155648 9 Jul 2001 "C:\WINDOWS\system32\bak\NeroCheck.exe"
52272 19 Aug 2007 "C:\Programmi\Google\googletoolbar2user.exe"
14348 6 Jan 2008 "C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
608936 13 Oct 2006 "C:\Programmi\File comuni\Real\GToolbar\GoogleToolbarInstaller.exe"
138168 19 Aug 2007 "C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe"
68856 21 Aug 2007 "C:\Programmi\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe"
14348 6 Jan 2008 "C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe"
249856 15 Feb 2006 "C:\Programmi\Hewlett-Packard\HP Boot Optimizer\bak\HPBootOp.exe"
14348 6 Jan 2008 "C:\Programmi\HP\HP Software Update\HPWuSchd2.exe"
49152 11 May 2005 "C:\Programmi\HP\HP Software Update\bak\HPWuSchd2.exe"
14348 6 Jan 2008 "C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
143360 22 Feb 2006 "C:\Programmi\Intel\Intel Matrix Storage Manager\bak\Iaanotif.exe"
143360 22 Feb 2006 "C:\hp\drivers\Intel_raid\Utility\Application\Monitor\IAAnotif.exe"
14348 6 Jan 2008 "C:\Programmi\Logitech\QuickCam10\QuickCam10.exe"
614960 26 Jun 2006 "C:\Programmi\Logitech\QuickCam10\bak\QuickCam10.exe"
14348 6 Jan 2008 "C:\Programmi\SlySoft\CloneCD\CloneCDTray.exe"
57344 2 Sep 2004 "C:\Programmi\SlySoft\CloneCD\bak\CloneCDTray.exe"
14348 6 Jan 2008 "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
39792 10 Oct 2007 "C:\Programmi\Adobe\Reader 8.0\Reader\bak\Reader_sl.exe"
14348 6 Jan 2008 "C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe"
94208 3 Sep 2005 "C:\Programmi\File comuni\Ahead\Lib\bak\NMBgMonitor.exe"
14348 6 Jan 2008 "C:\Programmi\File comuni\Logitech\LComMgr\Communications_Helper.exe"
497200 26 Jun 2006 "C:\Programmi\File comuni\Logitech\LComMgr\bak\Communications_Helper.exe"
14348 6 Jan 2008 "C:\Programmi\File comuni\Logitech\LComMgr\LVComSX.exe"
243248 26 Jun 2006 "C:\Programmi\File comuni\Logitech\LComMgr\bak\LVComSX.exe"
14348 6 Jan 2008 "C:\Programmi\File comuni\Real\Update_OB\realsched.exe"
180269 13 Oct 2006 "C:\Programmi\File comuni\Real\Update_OB\bak\realsched.exe"
36975 10 Nov 2005 "C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe"
14348 6 Jan 2008 "C:\Programmi\Java\jre1.5.0_14\bin\jusched.exe"
69743 5 Oct 2007 "C:\Programmi\Java\jdk1.5.0_14\jre\bin\jusched.exe"
75256 5 Oct 2007 "C:\Programmi\Java\jre1.5.0_14\bin\bak\jusched.exe"
36975 30 Nov 2007 "C:\Programmi\Sports Interactive\Football Manager 2008\jre\bin\jusched.exe"
81920 6 Dec 2005 "C:\Programmi\Logitech\QuickCam10\LogitechUpdate.exe"
14348 6 Jan 2008 "C:\Programmi\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"
67128 26 Aug 2007 "C:\Programmi\Logitech\Desktop Messenger\8876480\Program\bak\LogitechDesktopMessenger.exe"
end of report
Da quel che ho capito ora dovrei utilizzare un programma che si chiama Avenger con cui cancellare i file infetti e ripristinare gli originali. Solo che no so che codice scrivere. Ho cappito che devo cliccare su Input script manually ma fatto questo devo scrivere il codice e non ho capito che fare... E poi? Per ripristinare i file originali? Vi prego, aiutatemi!!!!!
__________________
Ultima modifica di Francizio : 07-01-2008 alle 22:09. |
|
|
|
|
#2 | |
|
Senior Member
Iscritto dal: Nov 2001
Città: Fidenza(pr) da Trento
Messaggi: 27479
|
segui la procedura descritta in Guida alla disinfezione per infetti e posta tutti i log delle scansioni
con il programma avenger devi cancellare i file duplicati che sono fuori dalle directory "bak" e fare la move di quelli dentro alla bak alla cartella superiore: esempio Quote:
__________________
"Visti da vicino siamo tutti strani..." ~|~ What Defines a Community? ~|~ Thread eMule Ufficiale ~|~ Online Armor in Italiano ~|~ Regole di Sezione ~|► Guida a PrivateFirewall
Ultima modifica di xcdegasp : 07-01-2008 alle 08:21. |
|
|
|
|
|
#3 |
|
Senior Member
Iscritto dal: Dec 2006
Città: Cagliari
Messaggi: 682
|
non gli hai detto che i log vanno postati nel tag code
|
|
|
|
|
#4 |
|
Senior Member
Iscritto dal: Oct 2007
Città: Messina (provincia) Trattative HWUpgrade: 29 Feedback eBay: 158 100% positivi
Messaggi: 1886
|
Ma visto che vi ho postato l'intero report fornitomi da FindAWF, non potete scrivermi l'intero codice che devo scrivere io?
Spero di non pretendere troppo. Credo che per voi si tratti di un semplice copia e incolla. Non ho capito se devo scrivere tutte le righe, solo alcune... Grazie in anticipo per l'aiuto
__________________
|
|
|
|
|
#5 |
|
Senior Member
Iscritto dal: Oct 2007
Città: Messina (provincia) Trattative HWUpgrade: 29 Feedback eBay: 158 100% positivi
Messaggi: 1886
|
Da ignorante volevo anche chiedervi se con un ripristino di configurazione risolverei o meno il problema.
Nel caso la risposta fosse negativa, aspetto fiducioso che qualcuno mi posti il codice intero da scrivere. Grazie per l'aiuto
__________________
|
|
|
|
|
#6 | |
|
Senior Member
Iscritto dal: Nov 2001
Città: Fidenza(pr) da Trento
Messaggi: 27479
|
Quote:
ora sta a te prendere una decisione il pc è il tuo, tu lo hai sotto mano e tu incaso perdi eventuali dati.. con questo voglio dire che se noi adottiamo una certa procedura e approccio per curare il tuo pc è solo e soltanto per il tuo bene, per non farti perdere cose preziose, per non darti una falsa speranza di aver ripulito il pc e sopratutto per evitare tue arrabbiature se fallissimo. ovviamente se siamo qui a dare una mano agli infetti è perchè un minimo ne capiamo in queste problematiche e se tu sei qui è perchè hai bisogno d'aiuto...
__________________
"Visti da vicino siamo tutti strani..." ~|~ What Defines a Community? ~|~ Thread eMule Ufficiale ~|~ Online Armor in Italiano ~|~ Regole di Sezione ~|► Guida a PrivateFirewall
|
|
|
|
|
|
#7 |
|
Senior Member
Iscritto dal: Nov 2001
Città: Fidenza(pr) da Trento
Messaggi: 27479
|
bhè nella guida viene chiesto di prendere visione delle regole di sezione, ammetto di non averlo detto appositamente
__________________
"Visti da vicino siamo tutti strani..." ~|~ What Defines a Community? ~|~ Thread eMule Ufficiale ~|~ Online Armor in Italiano ~|~ Regole di Sezione ~|► Guida a PrivateFirewall
|
|
|
|
|
#8 | |
|
Senior Member
Iscritto dal: Oct 2007
Città: Messina (provincia) Trattative HWUpgrade: 29 Feedback eBay: 158 100% positivi
Messaggi: 1886
|
Quote:
No, non è per testardaggine credimi. Solo che a causa di questo dialer la connessione è molto lente, ci sto parecchio tempo ada prire e caricare pagine. In più c'è da aggiungere che la mia zona non è coperta da ADSL e io ho una misera connessione 56k, e per questo motivo volevo, se era possibile, evitare di scaricare tutti i programmi presenti nella guida per infestati. Poi vedendo appunto che conosci Aveneger e che mi hai spiegato all'incirca cosa fare avevo chiesto se tu o qualcun'altro pteva indicarmi l'intero codice da scrivere, visto che non tutti sono molto ferrati e riescono a intuire cosa che per persone più competenti sembrano banali. Detto questo non fa nulla. Vedrò di seguire passo passo tutti i pìunti della guida. Sperando che i programmi da scaricare non siano troppo pesanti. Grazie
__________________
|
|
|
|
|
|
#9 |
|
Bannato
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
|
ciao
prova con questo programma: asquared antidialer |
|
|
|
|
#10 |
|
Senior Member
Iscritto dal: Oct 2007
Città: Messina (provincia) Trattative HWUpgrade: 29 Feedback eBay: 158 100% positivi
Messaggi: 1886
|
Allora, ho seguito passo passo la “Guida alla disinfezione per infetti”.
Vi riporto tutto: 1) Eseguita pulizia e riparazione dei registri con CCleaner. 2) Eseguita scansione con ESET ADS Revealer ed eliminati tutti gli ADS, a parte uno che non mi elimina. Ve lo riporto: Codice:
C:\Documents and Settings\HP_Administrator\Documenti\Immagini\Nuova cartella (2)\Thumbs.db (encriptable:$DATA). 3) Eseguita scansione con A-Squared Free v3.x. Messi in quarantena i file trovati. Vi riporto la diagnosi fornita dal test: Codice:
Oggetti rilevati: 3 Trace.Tracking.Cookie 1 cookies – rischio basso Cookie: C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@tradedoubler[1].txt Riskware.RiskTool.Win32.PsKill.p 1 files – rischio basso File: C:\hp\bin\KillWind.exe Dialer 1 files – rischio alto File C:\Programmi\Servizi in linea\IT\Interfree\HP-easy.exe 4) Eseguita scansione con Prevx CSI. Ecco il risultato: Codice:
Scan complete No infections found (Time: 7 min 54 sec)Good Files 6997 Bad Files 0 Suspicious Files 0 5) Eseguita scansione online con PC Pitstop Web Based Virus Scan (solo perché era il più leggero vista la mia 56k, non sapevo che altro scegliere). Full Scan eseguita. Ecco il risultato: Codice:
Scan Results: No Viruses Detected 6) Eseguita scansione con HiJackThis. Vi riporto il log e l’analisi che mi è stata fatta: Codice:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21.07.26, on 07/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\Programmi\File comuni\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
c:\programmi\file comuni\logitech\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Programmi\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Programmi\File comuni\LightScribe\LSSrvc.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programmi\Norton AntiVirus\navapsvc.exe
C:\Programmi\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Programmi\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\HP\Digital Imaging\bin\hpqtra08.exe
C:\Programmi\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Programmi\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programmi\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\Programmi\File comuni\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Programmi\Internet Explorer\iexplore.exe
C:\Programmi\Adobe\Reader 8.0\Reader\AcroRd32.exe
C:\Programmi\Tensons\Download Accelerator Manager\daman.exe
C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Programmi\a-squared Free\a2service.exe
C:\Programmi\PrevxCSI\prevxcsi.exe
C:\DOCUME~1\HP_ADM~1\IMPOST~1\Temp\Directory temporanea 1 per HiJackThis.zip\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=IT_IT&c=64&bd=PAVILION&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=IT_IT&c=64&bd=PAVILION&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=IT_IT&c=64&bd=PAVILION&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O2 - BHO: Tensons.Application.DownloadAcceleratorManager.BHO - {00000003-1118-11da-8cd6-0800200c9888} - C:\WINDOWS\system32\mscoree.dll
O2 - BHO: Supporto di collegamento per Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.5.0_14\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programmi\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programmi\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Programmi\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmi\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programmi\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Programmi\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programmi\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [IAAnotif] C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [DMAScheduler] "c:\Programmi\HP DigitalMedia Archive\DMAScheduler.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Programmi\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CloneCDTray] "C:\Programmi\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Programmi\File comuni\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Programmi\Logitech\QuickCam10\QuickCam10.exe" /hide
O4 - HKLM\..\Run: [LVCOMSX] "C:\Programmi\File comuni\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MemoREX] "C:\Programmi\MemoRex\MemoRexStart.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Programmi\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Programmi\Java\jre1.5.0_14\bin\jusched.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Programmi\File comuni\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Programmi\File comuni\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [PrevxCSI] "C:\Programmi\PrevxCSI\prevxcsi.exe" -boot
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Programmi\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [LDM] C:\Programmi\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programmi\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Programmi\InterVideo\Common\Bin\WinCinemaMgr.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Programmi\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O8 - Extra context menu item: &Download with DAM - C:\Programmi\Tensons\Download Accelerator Manager\addUrl.htm
O8 - Extra context menu item: &Windows Live Search - res://C:\Programmi\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Download &All with DAM - C:\Programmi\Tensons\Download Accelerator Manager\addAllUrls.htm
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_14\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.5.0_14\bin\ssv.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Guida alla connessione - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Guida alla connessione - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-8685500135b2c9ad.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {EFAEF0E4-F044-4D57-9900-1C3FF18524C9} (AV Class) - http://www.pcpitstop.com/antivirus/PitPav.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Programmi\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Programmi\a-squared Free\a2service.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: Intel(R) Quick Resume technology (ELService) - Intel Corporation - C:\Programmi\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\Elservice.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Programmi\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Programmi\File comuni\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - c:\programmi\file comuni\logitech\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Programmi\File comuni\Logitech\SrvLnch\SrvLnch.exe
O23 - Service: Servizio Auto-Protect di Norton AntiVirus (navapsvc) - Symantec Corporation - C:\Programmi\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Programmi\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programmi\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Utilità di pianificazione di LiveUpdate automatico - Symantec Corporation - C:\Programmi\Symantec\LiveUpdate\ALUSchedulerSvc.exe
--
End of file - 13327 bytes
Codice:
il log sembra pulito devi aggiornare java, vai qui e fai il test x vedere quale versione di java ti serve (aggiornare java è necessario x la tua sicurezza nella navigazione internet) 7) Eseguita scansione con Gmer. Vi posto sotto il risultato: Codice:
GMER 1.0.13.12551 - http://www.gmer.net
Rootkit scan 2008-01-07 21:21:07
Windows 5.1.2600 Service Pack 2
---- System - GMER 1.0.13 ----
SSDT 89EAB3A0 ZwAlertResumeThread
SSDT 8A1372F8 ZwAlertThread
SSDT 8A1388E0 ZwAllocateVirtualMemory
SSDT 89ED33C0 ZwConnectPort
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS ZwCreateKey
SSDT 89EA9310 ZwCreateMutant
SSDT 8A108268 ZwCreateThread
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS ZwDeleteKey
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS ZwDeleteValueKey
SSDT sptd.sys ZwEnumerateKey
SSDT sptd.sys ZwEnumerateValueKey
SSDT 8A10C828 ZwFreeVirtualMemory
SSDT 89EA93E0 ZwImpersonateAnonymousToken
SSDT 89EAB2E0 ZwImpersonateThread
SSDT 89F118F0 ZwMapViewOfSection
SSDT 89EA9250 ZwOpenEvent
SSDT sptd.sys ZwOpenKey
SSDT 89EA82C0 ZwOpenProcessToken
SSDT 89F13F38 ZwOpenThreadToken
SSDT sptd.sys ZwQueryKey
SSDT 89EB1348 ZwQueryValueKey
SSDT 89EAB200 ZwResumeThread
SSDT 8A1388A8 ZwSetContextThread
SSDT 89ED2310 ZwSetInformationProcess
SSDT 89EAC628 ZwSetInformationThread
SSDT \??\C:\WINDOWS\system32\Drivers\SYMEVENT.SYS ZwSetValueKey
SSDT 89EB1288 ZwSuspendProcess
SSDT 8A144F48 ZwSuspendThread
SSDT 8A13DEA8 ZwTerminateProcess
SSDT 89ED2250 ZwTerminateThread
SSDT 89EA8240 ZwUnmapViewOfSection
SSDT 8A120240 ZwWriteVirtualMemory
---- Kernel code sections - GMER 1.0.13 ----
? C:\WINDOWS\system32\drivers\sptd.sys Impossibile accedere al file. Il file è utilizzato da un altro processo.
? C:\WINDOWS\System32\Drivers\SPTD1965.SYS Impossibile accedere al file. Il file è utilizzato da un altro processo.
? C:\WINDOWS\System32\Drivers\dtscsi.sys Impossibile accedere al file. Il file è utilizzato da un altro processo.
---- User code sections - GMER 1.0.13 ----
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!DialogBoxParamW 7E3A555F 5 Bytes JMP 435FF2C1 C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!DialogBoxIndirectParamW 7E3B2032 5 Bytes JMP 4379166F C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!MessageBoxIndirectA 7E3BA04A 5 Bytes JMP 437915F0 C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!DialogBoxParamA 7E3BB10C 5 Bytes JMP 43791634 C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!MessageBoxExW 7E3D05D8 5 Bytes JMP 4379157C C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!MessageBoxExA 7E3D05FC 5 Bytes JMP 437915B6 C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!DialogBoxIndirectParamA 7E3D6B50 5 Bytes JMP 437916AA C:\WINDOWS\system32\IEFRAME.dll
.text C:\Programmi\Internet Explorer\iexplore.exe[3212] USER32.dll!MessageBoxIndirectW 7E3E62AB 5 Bytes JMP 43621676 C:\WINDOWS\system32\IEFRAME.dll
---- Kernel IAT/EAT - GMER 1.0.13 ----
IAT atapi.sys[HAL.dll!READ_PORT_UCHAR] [BA6D5AD2] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_BUFFER_USHORT] [BA6D5C0E] sptd.sys
IAT atapi.sys[HAL.dll!READ_PORT_USHORT] [BA6D5B96] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_BUFFER_USHORT] [BA6D676C] sptd.sys
IAT atapi.sys[HAL.dll!WRITE_PORT_UCHAR] [BA6D6642] sptd.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [BA6F8056] sptd.sys
---- User IAT/EAT - GMER 1.0.13 ----
IAT C:\WINDOWS\Explorer.EXE[1680] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00FD2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\Explorer.EXE[1680] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00FD2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\Explorer.EXE[1680] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00FD2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\Explorer.EXE[1680] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00FD2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqSTE08.exe[2180] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00A32E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqSTE08.exe[2180] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00A32C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqSTE08.exe[2180] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00A32C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqSTE08.exe[2180] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00A32C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\ehome\ehtray.exe[2804] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00AC2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\ehome\ehtray.exe[2804] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00AC2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\ehome\ehtray.exe[2804] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00AC2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\ehome\ehtray.exe[2804] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00AC2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\RTHDCPL.EXE[2916] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [01A82E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\RTHDCPL.EXE[2916] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [01A82C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\RTHDCPL.EXE[2916] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [01A82C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\RTHDCPL.EXE[2916] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [01A82C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe[2932] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00982E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe[2932] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00982C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe[2932] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00982C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe[2932] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00982C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\Product Assistant\bin\hprblog.exe[2996] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00392E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\Product Assistant\bin\hprblog.exe[2996] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00392C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\Product Assistant\bin\hprblog.exe[2996] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00392C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\Product Assistant\bin\hprblog.exe[2996] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00392C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\rundll32.exe[3120] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00C22E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\rundll32.exe[3120] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00C22C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\rundll32.exe[3120] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00C22C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\rundll32.exe[3120] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00C22C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Internet Explorer\iexplore.exe[3212] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00912E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Internet Explorer\iexplore.exe[3212] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00912C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Internet Explorer\iexplore.exe[3212] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00912C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Internet Explorer\iexplore.exe[3212] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00912C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\eHome\ehmsas.exe[3308] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [003B2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\eHome\ehmsas.exe[3308] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [003B2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\eHome\ehmsas.exe[3308] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [003B2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\eHome\ehmsas.exe[3308] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [003B2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Adobe\Reader 8.0\Reader\AcroRd32.exe[3368] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [003B2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Adobe\Reader 8.0\Reader\AcroRd32.exe[3368] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [003B2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Adobe\Reader 8.0\Reader\AcroRd32.exe[3368] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [003B2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Adobe\Reader 8.0\Reader\AcroRd32.exe[3368] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [003B2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\ctfmon.exe[3540] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [009C2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\ctfmon.exe[3540] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [009C2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\ctfmon.exe[3540] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [009C2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\WINDOWS\system32\ctfmon.exe[3540] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [009C2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqtra08.exe[3660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [009B2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqtra08.exe[3660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [009B2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqtra08.exe[3660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [009B2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\HP\Digital Imaging\bin\hpqtra08.exe[3660] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [009B2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\InterVideo\Common\Bin\WinCinemaMgr.exe[3684] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00A12E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\InterVideo\Common\Bin\WinCinemaMgr.exe[3684] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00A12C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\InterVideo\Common\Bin\WinCinemaMgr.exe[3684] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00A12C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\InterVideo\Common\Bin\WinCinemaMgr.exe[3684] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00A12C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Tensons\Download Accelerator Manager\daman.exe[4236] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtCreateFile] [003E2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Tensons\Download Accelerator Manager\daman.exe[4236] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDeviceIoControlFile] [003E2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Tensons\Download Accelerator Manager\daman.exe[4236] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtClose] [003E2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Tensons\Download Accelerator Manager\daman.exe[4236] @ C:\WINDOWS\system32\KERNEL32.dll [ntdll.dll!NtDuplicateObject] [003E2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\PrevxCSI\prevxcsi.exe[4272] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00C62E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\PrevxCSI\prevxcsi.exe[4272] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00C62C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\PrevxCSI\prevxcsi.exe[4272] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00C62C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\PrevxCSI\prevxcsi.exe[4272] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00C62C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE[4960] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [00962E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE[4960] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [00962C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE[4960] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [00962C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\Programmi\Microsoft Office\OFFICE11\WINWORD.EXE[4960] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [00962C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\DOCUME~1\HP_ADM~1\IMPOST~1\Temp\Directory temporanea 1 per gmer.zip\gmer.exe[5072] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtCreateFile] [009F2E70] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\DOCUME~1\HP_ADM~1\IMPOST~1\Temp\Directory temporanea 1 per gmer.zip\gmer.exe[5072] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDeviceIoControlFile] [009F2C30] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\DOCUME~1\HP_ADM~1\IMPOST~1\Temp\Directory temporanea 1 per gmer.zip\gmer.exe[5072] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtClose] [009F2C50] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
IAT C:\DOCUME~1\HP_ADM~1\IMPOST~1\Temp\Directory temporanea 1 per gmer.zip\gmer.exe[5072] @ C:\WINDOWS\system32\kernel32.dll [ntdll.dll!NtDuplicateObject] [009F2C40] C:\Programmi\File comuni\Logitech\LVMVFM\LVPrcInj.dll
---- Devices - GMER 1.0.13 ----
Device \Ntfs IRP_MJ_CREATE 8B1CB3D0
Device \Ntfs IRP_MJ_CLOSE 8B1CB3D0
Device \Ntfs IRP_MJ_READ 8B1CB3D0
Device \Ntfs IRP_MJ_WRITE 8B1CB3D0
Device \Ntfs IRP_MJ_QUERY_INFORMATION 8B1CB3D0
Device \Ntfs IRP_MJ_SET_INFORMATION 8B1CB3D0
Device \Ntfs IRP_MJ_QUERY_EA 8B1CB3D0
Device \Ntfs IRP_MJ_SET_EA 8B1CB3D0
Device \Ntfs IRP_MJ_FLUSH_BUFFERS 8B1CB3D0
Device \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION 8B1CB3D0
Device \Ntfs IRP_MJ_SET_VOLUME_INFORMATION 8B1CB3D0
Device \Ntfs IRP_MJ_DIRECTORY_CONTROL 8B1CB3D0
Device \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL 8B1CB3D0
Device \Ntfs IRP_MJ_DEVICE_CONTROL 8B1CB3D0
Device \Ntfs IRP_MJ_SHUTDOWN 8B1CB3D0
Device \Ntfs IRP_MJ_LOCK_CONTROL 8B1CB3D0
Device \Ntfs IRP_MJ_CLEANUP 8B1CB3D0
Device \Ntfs IRP_MJ_QUERY_SECURITY 8B1CB3D0
Device \Ntfs IRP_MJ_SET_SECURITY 8B1CB3D0
Device \Ntfs IRP_MJ_QUERY_QUOTA 8B1CB3D0
Device \Ntfs IRP_MJ_SET_QUOTA 8B1CB3D0
Device \Ntfs IRP_MJ_PNP 8B1CB3D0
Device \Ntfs FastIoCheckIfPossible [BA448EDA] Ntfs.sys
Device \Ntfs FastIoRead [BA42FB57] Ntfs.sys
Device \Ntfs FastIoWrite [BA44E448] Ntfs.sys
Device \Ntfs FastIoQueryBasicInfo [BA43548E] Ntfs.sys
Device \Ntfs FastIoQueryStandardInfo [BA433F7E] Ntfs.sys
Device \Ntfs FastIoLock [BA44F0F2] Ntfs.sys
Device \Ntfs FastIoUnlockSingle [BA44F1F8] Ntfs.sys
Device \Ntfs FastIoUnlockAll [BA4886AE] Ntfs.sys
Device \Ntfs FastIoUnlockAllByKey [BA4887F3] Ntfs.sys
Device \Ntfs AcquireFileForNtCreateSection [BA42F83A] Ntfs.sys
Device \Ntfs ReleaseFileForNtCreateSection [BA42F881] Ntfs.sys
Device \Ntfs FastIoQueryNetworkOpenInfo [BA476E1D] Ntfs.sys
Device \Ntfs AcquireForModWrite [BA43BA10] Ntfs.sys
Device \Ntfs MdlRead [BA476F31] Ntfs.sys
Device \Ntfs PrepareMdlWrite [BA4772AB] Ntfs.sys
Device \Ntfs FastIoQueryOpen [BA433DB8] Ntfs.sys
Device \Ntfs AcquireForCcFlush [BA42F6E2] Ntfs.sys
Device \Ntfs ReleaseForCcFlush [BA42F708] Ntfs.sys
AttachedDevice \Ntfs IRP_MJ_CREATE [BA4D51DE] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_CREATE_NAMED_PIPE [BA4D51DE] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_CLOSE [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_READ [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_WRITE [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SET_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_EA [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SET_EA [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_FLUSH_BUFFERS [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SET_VOLUME_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_DIRECTORY_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL [BA4D5454] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_DEVICE_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_INTERNAL_DEVICE_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SHUTDOWN [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_LOCK_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_CLEANUP [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_CREATE_MAILSLOT [BA4D51DE] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_SECURITY [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SET_SECURITY [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_POWER [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SYSTEM_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_DEVICE_CHANGE [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_QUOTA [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_SET_QUOTA [BA4C8F4C] fltMgr.sys
AttachedDevice \Ntfs IRP_MJ_CREATE [BA91C742] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_CREATE_NAMED_PIPE [BA91C742] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_CLOSE [BA91C000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_READ [BA9195C2] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_WRITE [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SET_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_EA [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SET_EA [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_FLUSH_BUFFERS [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SET_VOLUME_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_DIRECTORY_CONTROL [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL [BA91D5D2] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_DEVICE_CONTROL [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_INTERNAL_DEVICE_CONTROL [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SHUTDOWN [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_LOCK_CONTROL [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_CLEANUP [BA91C000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_CREATE_MAILSLOT [BA91C742] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_SECURITY [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SET_SECURITY [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_POWER [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SYSTEM_CONTROL [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_DEVICE_CHANGE [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_QUERY_QUOTA [BA919000] bb-run.sys
AttachedDevice \Ntfs IRP_MJ_SET_QUOTA [BA919000] bb-run.sys
Device \FatCdrom IRP_MJ_CREATE 8A4390E8
Device \FatCdrom IRP_MJ_CLOSE 8A4390E8
Device \FatCdrom IRP_MJ_READ 8A4390E8
Device \FatCdrom IRP_MJ_WRITE 8A4390E8
Device \FatCdrom IRP_MJ_QUERY_INFORMATION 8A4390E8
Device \FatCdrom IRP_MJ_SET_INFORMATION 8A4390E8
Device \FatCdrom IRP_MJ_QUERY_EA 8A4390E8
Device \FatCdrom IRP_MJ_SET_EA 8A4390E8
Device \FatCdrom IRP_MJ_FLUSH_BUFFERS 8A4390E8
Device \FatCdrom IRP_MJ_QUERY_VOLUME_INFORMATION 8A4390E8
Device \FatCdrom IRP_MJ_SET_VOLUME_INFORMATION 8A4390E8
Device \FatCdrom IRP_MJ_DIRECTORY_CONTROL 8A4390E8
Device \FatCdrom IRP_MJ_FILE_SYSTEM_CONTROL 8A4390E8
Device \FatCdrom IRP_MJ_DEVICE_CONTROL 8A4390E8
Device \FatCdrom IRP_MJ_SHUTDOWN 8A4390E8
Device \FatCdrom IRP_MJ_LOCK_CONTROL 8A4390E8
Device \FatCdrom IRP_MJ_CLEANUP 8A4390E8
Device \FatCdrom IRP_MJ_PNP 8A4390E8
Device \FatCdrom FastIoCheckIfPossible [A69581F9] Fastfat.SYS
Device \FatCdrom FastIoQueryBasicInfo [A6947646] Fastfat.SYS
Device \FatCdrom FastIoQueryStandardInfo [A6947405] Fastfat.SYS
Device \FatCdrom FastIoLock [A694D9F3] Fastfat.SYS
Device \FatCdrom FastIoUnlockSingle [A6950518] Fastfat.SYS
Device \FatCdrom FastIoUnlockAll [A695C929] Fastfat.SYS
Device \FatCdrom FastIoUnlockAllByKey [A695CA21] Fastfat.SYS
Device \FatCdrom FastIoQueryNetworkOpenInfo [A695828E] Fastfat.SYS
Device \FatCdrom AcquireForCcFlush [A695D4A6] Fastfat.SYS
Device \FatCdrom ReleaseForCcFlush [A695D51F] Fastfat.SYS
Device \UdfsCdRom IRP_MJ_CREATE 8A2AAB68
Device \UdfsCdRom IRP_MJ_CLOSE 8A2AAB68
Device \UdfsCdRom IRP_MJ_READ 8A2AAB68
Device \UdfsCdRom IRP_MJ_WRITE 8A2AAB68
Device \UdfsCdRom IRP_MJ_QUERY_INFORMATION 8A2AAB68
Device \UdfsCdRom IRP_MJ_SET_INFORMATION 8A2AAB68
Device \UdfsCdRom IRP_MJ_QUERY_VOLUME_INFORMATION 8A2AAB68
Device \UdfsCdRom IRP_MJ_DIRECTORY_CONTROL 8A2AAB68
Device \UdfsCdRom IRP_MJ_FILE_SYSTEM_CONTROL 8A2AAB68
Device \UdfsCdRom IRP_MJ_DEVICE_CONTROL 8A2AAB68
Device \UdfsCdRom IRP_MJ_LOCK_CONTROL 8A2AAB68
Device \UdfsCdRom IRP_MJ_CLEANUP 8A2AAB68
Device \UdfsCdRom IRP_MJ_PNP 8A2AAB68
Device \UdfsCdRom FastIoCheckIfPossible [A693B56E] Udfs.SYS
Device \UdfsCdRom AcquireFileForNtCreateSection [A69396CC] Udfs.SYS
Device \UdfsCdRom ReleaseFileForNtCreateSection [A6939702] Udfs.SYS
Device \UdfsDisk IRP_MJ_CREATE 8A2AAB68
Device \UdfsDisk IRP_MJ_CLOSE 8A2AAB68
Device \UdfsDisk IRP_MJ_READ 8A2AAB68
Device \UdfsDisk IRP_MJ_WRITE 8A2AAB68
Device \UdfsDisk IRP_MJ_QUERY_INFORMATION 8A2AAB68
Device \UdfsDisk IRP_MJ_SET_INFORMATION 8A2AAB68
Device \UdfsDisk IRP_MJ_QUERY_VOLUME_INFORMATION 8A2AAB68
Device \UdfsDisk IRP_MJ_DIRECTORY_CONTROL 8A2AAB68
Device \UdfsDisk IRP_MJ_FILE_SYSTEM_CONTROL 8A2AAB68
Device \UdfsDisk IRP_MJ_DEVICE_CONTROL 8A2AAB68
Device \UdfsDisk IRP_MJ_LOCK_CONTROL 8A2AAB68
Device \UdfsDisk IRP_MJ_CLEANUP 8A2AAB68
Device \UdfsDisk IRP_MJ_PNP 8A2AAB68
Device \UdfsDisk FastIoCheckIfPossible [A693B56E] Udfs.SYS
Device \UdfsDisk AcquireFileForNtCreateSection [A69396CC] Udfs.SYS
Device \UdfsDisk ReleaseFileForNtCreateSection [A6939702] Udfs.SYS
Device \Driver\usbstor \Device\0000008e IRP_MJ_CREATE 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_CLOSE 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_READ 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_WRITE 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_INTERNAL_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_POWER 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_SYSTEM_CONTROL 89EAD838
Device \Driver\usbstor \Device\0000008e IRP_MJ_PNP 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_CREATE 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_CLOSE 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_READ 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_WRITE 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_INTERNAL_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_POWER 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_SYSTEM_CONTROL 89EAD838
Device \Driver\usbstor \Device\0000008f IRP_MJ_PNP 89EAD838
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_NAMED_PIPE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_READ [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_WRITE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FLUSH_BUFFERS [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DIRECTORY_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FILE_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SHUTDOWN [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_LOCK_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLEANUP [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_MAILSLOT [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_POWER [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CHANGE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_QUOTA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_QUOTA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CREATE [BADFCD06] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CREATE_NAMED_PIPE [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CLOSE [BADFCD06] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_READ [BADFCB1A] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_WRITE [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_EA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_EA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_FLUSH_BUFFERS [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_VOLUME_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_VOLUME_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_DIRECTORY_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_FILE_SYSTEM_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_DEVICE_CONTROL [BADFCEBC] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_INTERNAL_DEVICE_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SHUTDOWN [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_LOCK_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CLEANUP [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_CREATE_MAILSLOT [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_SECURITY [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_SECURITY [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_POWER [BADFC964] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SYSTEM_CONTROL [BADFCA42] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_DEVICE_CHANGE [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_QUERY_QUOTA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 IRP_MJ_SET_QUOTA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CREATE [BADFCD06] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CREATE_NAMED_PIPE [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CLOSE [BADFCD06] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_READ [BADFCB1A] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_WRITE [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_EA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_EA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_FLUSH_BUFFERS [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_VOLUME_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_VOLUME_INFORMATION [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_DIRECTORY_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_FILE_SYSTEM_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_DEVICE_CONTROL [BADFCEBC] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_INTERNAL_DEVICE_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SHUTDOWN [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_LOCK_CONTROL [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CLEANUP [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_CREATE_MAILSLOT [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_SECURITY [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_SECURITY [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_POWER [BADFC964] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SYSTEM_CONTROL [BADFCA42] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_DEVICE_CHANGE [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_QUERY_QUOTA [BADFC88C] Elkbd.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 IRP_MJ_SET_QUOTA [BADFC88C] Elkbd.sys
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_CREATE 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_CLOSE 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_READ 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_WRITE 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_FLUSH_BUFFERS 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_SHUTDOWN 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_POWER 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_SYSTEM_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmIoDaemon IRP_MJ_PNP 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_CREATE 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_CLOSE 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_READ 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_WRITE 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_FLUSH_BUFFERS 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_SHUTDOWN 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_POWER 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_SYSTEM_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmConfig IRP_MJ_PNP 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_CREATE 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_CLOSE 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_READ 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_WRITE 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_FLUSH_BUFFERS 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_SHUTDOWN 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_POWER 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_SYSTEM_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmPnP IRP_MJ_PNP 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_CREATE 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_CLOSE 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_READ 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_WRITE 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_FLUSH_BUFFERS 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_SHUTDOWN 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_POWER 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_SYSTEM_CONTROL 8B180450
Device \Driver\dmio \Device\DmControl\DmInfo IRP_MJ_PNP 8B180450
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_NAMED_PIPE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_READ [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_WRITE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FLUSH_BUFFERS [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DIRECTORY_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FILE_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SHUTDOWN [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_LOCK_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLEANUP [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_MAILSLOT [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_POWER [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CHANGE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_QUOTA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_QUOTA [AD71B440] SYMTDI.SYS
Device \Driver\NetBT \Device\NetBT_Tcpip_{291F60A4-530E-4136-AF74-D5A402669E1D} IRP_MJ_CREATE 8A0BFEB0
Device \Driver\NetBT \Device\NetBT_Tcpip_{291F60A4-530E-4136-AF74-D5A402669E1D} IRP_MJ_CLOSE 8A0BFEB0
Device \Driver\NetBT \Device\NetBT_Tcpip_{291F60A4-530E-4136-AF74-D5A402669E1D} IRP_MJ_DEVICE_CONTROL 8A0BFEB0
Device \Driver\NetBT \Device\NetBT_Tcpip_{291F60A4-530E-4136-AF74-D5A402669E1D} IRP_MJ_INTERNAL_DEVICE_CONTROL 8A0BFEB0
Device \Driver\NetBT \Device\NetBT_Tcpip_{291F60A4-530E-4136-AF74-D5A402669E1D} IRP_MJ_CLEANUP 8A0BFEB0
Device \Driver\NetBT \Device\NetBT_Tcpip_{291F60A4-530E-4136-AF74-D5A402669E1D} IRP_MJ_PNP 8A0BFEB0
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CREATE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_READ 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_WRITE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_FLUSH_BUFFERS 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SHUTDOWN 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_CLEANUP 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_POWER 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_SYSTEM_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume1 IRP_MJ_PNP 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CREATE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_READ 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_WRITE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_FLUSH_BUFFERS 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SHUTDOWN 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_CLEANUP 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_POWER 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_SYSTEM_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume2 IRP_MJ_PNP 8B180708
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CREATE 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_CLOSE 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_READ 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_WRITE 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_FLUSH_BUFFERS 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_DEVICE_CONTROL 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SHUTDOWN 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_POWER 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_SYSTEM_CONTROL 8A3690E8
Device \Driver\Cdrom \Device\CdRom0 IRP_MJ_PNP 8A3690E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_CREATE 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_CREATE_NAMED_PIPE 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_CLOSE 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_READ 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_WRITE 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_QUERY_INFORMATION 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SET_INFORMATION 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_QUERY_EA 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SET_EA 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_FLUSH_BUFFERS 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_QUERY_VOLUME_INFORMATION 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SET_VOLUME_INFORMATION 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_DIRECTORY_CONTROL 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_FILE_SYSTEM_CONTROL 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_DEVICE_CONTROL 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_INTERNAL_DEVICE_CONTROL 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SHUTDOWN 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_LOCK_CONTROL 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_CLEANUP 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_CREATE_MAILSLOT 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_QUERY_SECURITY 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SET_SECURITY 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_POWER 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SYSTEM_CONTROL 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_DEVICE_CHANGE 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_QUERY_QUOTA 8A0C60E8
Device \FileSystem\Rdbss \Device\FsWrap IRP_MJ_SET_QUOTA 8A0C60E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_CREATE 8B1CB0E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_CLOSE 8B1CB0E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_DEVICE_CONTROL 8B1CB0E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB0E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_POWER 8B1CB0E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_SYSTEM_CONTROL 8B1CB0E8
Device \Driver\iaStor \Device\Ide\iaStor0 IRP_MJ_PNP 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_CREATE 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_CLOSE 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_DEVICE_CONTROL 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_POWER 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_SYSTEM_CONTROL 8B1CB0E8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 IRP_MJ_PNP 8B1CB0E8
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_CREATE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_READ 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_WRITE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_FLUSH_BUFFERS 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_SHUTDOWN 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_CLEANUP 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_POWER 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_SYSTEM_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume3 IRP_MJ_PNP 8B180708
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CREATE 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_CLOSE 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_READ 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_WRITE 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_FLUSH_BUFFERS 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_DEVICE_CONTROL 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SHUTDOWN 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_POWER 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_SYSTEM_CONTROL 8A3690E8
Device \Driver\Cdrom \Device\CdRom1 IRP_MJ_PNP 8A3690E8
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_CREATE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_READ 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_WRITE 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_FLUSH_BUFFERS 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_SHUTDOWN 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_CLEANUP 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_POWER 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_SYSTEM_CONTROL 8B180708
Device \Driver\Ftdisk \Device\HarddiskVolume4 IRP_MJ_PNP 8B180708
Device \Driver\usbstor \Device\00000090 IRP_MJ_CREATE 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_CLOSE 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_READ 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_WRITE 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_INTERNAL_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_POWER 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_SYSTEM_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000090 IRP_MJ_PNP 89EAD838
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CREATE 8A0BFEB0
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLOSE 8A0BFEB0
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_DEVICE_CONTROL 8A0BFEB0
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_INTERNAL_DEVICE_CONTROL 8A0BFEB0
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_CLEANUP 8A0BFEB0
Device \Driver\NetBT \Device\NetBt_Wins_Export IRP_MJ_PNP 8A0BFEB0
Device \Driver\usbstor \Device\00000091 IRP_MJ_CREATE 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_CLOSE 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_READ 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_WRITE 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_INTERNAL_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_POWER 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_SYSTEM_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000091 IRP_MJ_PNP 89EAD838
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CREATE 8A0BFEB0
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLOSE 8A0BFEB0
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_DEVICE_CONTROL 8A0BFEB0
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_INTERNAL_DEVICE_CONTROL 8A0BFEB0
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_CLEANUP 8A0BFEB0
Device \Driver\NetBT \Device\NetbiosSmb IRP_MJ_PNP 8A0BFEB0
Device \Driver\usbstor \Device\00000086 IRP_MJ_CREATE 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_CLOSE 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_READ 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_WRITE 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_INTERNAL_DEVICE_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_POWER 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_SYSTEM_CONTROL 89EAD838
Device \Driver\usbstor \Device\00000086 IRP_MJ_PNP 89EAD838
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE_NAMED_PIPE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CLOSE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_READ [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_WRITE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_FLUSH_BUFFERS [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DIRECTORY_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_FILE_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SHUTDOWN [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_LOCK_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CLEANUP [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE_MAILSLOT [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_POWER [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CHANGE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_QUOTA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_QUOTA [AD71B440] SYMTDI.SYS
Device \Driver\00000066 \Device\0000005d IRP_MJ_POWER [BA6E0A26] sptd.sys
Device \Driver\00000066 \Device\0000005d IRP_MJ_SYSTEM_CONTROL [BA6F4BD8] sptd.sys
Device \Driver\00000066 \Device\0000005d IRP_MJ_PNP [BA6ED54E] sptd.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE_NAMED_PIPE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CLOSE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_READ [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_WRITE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_EA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_FLUSH_BUFFERS [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_VOLUME_INFORMATION [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DIRECTORY_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_FILE_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_INTERNAL_DEVICE_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SHUTDOWN [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_LOCK_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CLEANUP [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE_MAILSLOT [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_SECURITY [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_POWER [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SYSTEM_CONTROL [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CHANGE [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_QUOTA [AD71B440] SYMTDI.SYS
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_QUOTA [AD71B440] SYMTDI.SYS
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk0\DR0 IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DR5 IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk1\DP(1)0-0+9 IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DP(1)0-0+a IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk2\DR6 IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DP(1)0-0+b IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk3\DR7 IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DP(1)0-0+c IRP_MJ_PNP 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_CREATE 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_CLOSE 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_READ 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_WRITE 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_FLUSH_BUFFERS 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_SHUTDOWN 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_POWER 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_SYSTEM_CONTROL 8B1CB608
Device \Driver\Disk \Device\Harddisk4\DR8 IRP_MJ_PNP 8B1CB608
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_NAMED_PIPE 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLOSE 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_READ 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_WRITE 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_INFORMATION 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_INFORMATION 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_EA 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_EA 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FLUSH_BUFFERS 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_VOLUME_INFORMATION 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_VOLUME_INFORMATION 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DIRECTORY_CONTROL 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_FILE_SYSTEM_CONTROL 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CONTROL 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_INTERNAL_DEVICE_CONTROL 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SHUTDOWN 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_LOCK_CONTROL 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CLEANUP 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_CREATE_MAILSLOT 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_SECURITY 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_SECURITY 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_POWER 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SYSTEM_CONTROL 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_DEVICE_CHANGE 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_QUERY_QUOTA 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_SET_QUOTA 8A137B10
Device \FileSystem\MRxSmb \Device\LanmanDatagramReceiver IRP_MJ_PNP 8A137B10
Device \Device\LanmanRedirector IRP_MJ_CREATE 8A137B10
Device \Device\LanmanRedirector IRP_MJ_CREATE_NAMED_PIPE 8A137B10
Device \Device\LanmanRedirector IRP_MJ_CLOSE 8A137B10
Device \Device\LanmanRedirector IRP_MJ_READ 8A137B10
Device \Device\LanmanRedirector IRP_MJ_WRITE 8A137B10
Device \Device\LanmanRedirector IRP_MJ_QUERY_INFORMATION 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SET_INFORMATION 8A137B10
Device \Device\LanmanRedirector IRP_MJ_QUERY_EA 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SET_EA 8A137B10
Device \Device\LanmanRedirector IRP_MJ_FLUSH_BUFFERS 8A137B10
Device \Device\LanmanRedirector IRP_MJ_QUERY_VOLUME_INFORMATION 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SET_VOLUME_INFORMATION 8A137B10
Device \Device\LanmanRedirector IRP_MJ_DIRECTORY_CONTROL 8A137B10
Device \Device\LanmanRedirector IRP_MJ_FILE_SYSTEM_CONTROL 8A137B10
Device \Device\LanmanRedirector IRP_MJ_DEVICE_CONTROL 8A137B10
Device \Device\LanmanRedirector IRP_MJ_INTERNAL_DEVICE_CONTROL 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SHUTDOWN 8A137B10
Device \Device\LanmanRedirector IRP_MJ_LOCK_CONTROL 8A137B10
Device \Device\LanmanRedirector IRP_MJ_CLEANUP 8A137B10
Device \Device\LanmanRedirector IRP_MJ_CREATE_MAILSLOT 8A137B10
Device \Device\LanmanRedirector IRP_MJ_QUERY_SECURITY 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SET_SECURITY 8A137B10
Device \Device\LanmanRedirector IRP_MJ_POWER 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SYSTEM_CONTROL 8A137B10
Device \Device\LanmanRedirector IRP_MJ_DEVICE_CHANGE 8A137B10
Device \Device\LanmanRedirector IRP_MJ_QUERY_QUOTA 8A137B10
Device \Device\LanmanRedirector IRP_MJ_SET_QUOTA 8A137B10
Device \Device\LanmanRedirector IRP_MJ_PNP 8A137B10
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_CREATE 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_CREATE_NAMED_PIPE 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_CLOSE 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_READ 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_WRITE 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_QUERY_INFORMATION 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_SET_INFORMATION 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_FLUSH_BUFFERS 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_QUERY_VOLUME_INFORMATION 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_DIRECTORY_CONTROL 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_FILE_SYSTEM_CONTROL 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_CLEANUP 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_QUERY_SECURITY 8A0C0EB0
Device \FileSystem\Npfs \Device\NamedPipe IRP_MJ_SET_SECURITY 8A0C0EB0
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CREATE 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_READ 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_WRITE 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_FLUSH_BUFFERS 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_INTERNAL_DEVICE_CONTROL 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SHUTDOWN 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_CLEANUP 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_POWER 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_SYSTEM_CONTROL 8B180708
Device \Driver\Ftdisk \Device\FtControl IRP_MJ_PNP 8B180708
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_CREATE 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_CLOSE 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_READ 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_WRITE 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_QUERY_INFORMATION 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_SET_INFORMATION 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_QUERY_VOLUME_INFORMATION 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_DIRECTORY_CONTROL 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_FILE_SYSTEM_CONTROL 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_CLEANUP 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_CREATE_MAILSLOT 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_QUERY_SECURITY 8A142EB0
Device \FileSystem\Msfs \Device\Mailslot IRP_MJ_SET_SECURITY 8A142EB0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_CREATE 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_CLOSE 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_DEVICE_CONTROL 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_INTERNAL_DEVICE_CONTROL 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_POWER 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_SYSTEM_CONTROL 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1Port4Path0Target0Lun0 IRP_MJ_PNP 8A220AF0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_CREATE 8B1CB8C0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_CLOSE 8B1CB8C0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_DEVICE_CONTROL 8B1CB8C0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8B1CB8C0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_POWER 8B1CB8C0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_SYSTEM_CONTROL 8B1CB8C0
Device \Driver\imagedrv \Device\Scsi\imagedrv1 IRP_MJ_PNP 8B1CB8C0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_CREATE 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_CLOSE 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_DEVICE_CONTROL 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_INTERNAL_DEVICE_CONTROL 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_POWER 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_SYSTEM_CONTROL 8A220AF0
Device \Driver\dtscsi \Device\Scsi\dtscsi1 IRP_MJ_PNP 8A220AF0
Device \Fat IRP_MJ_CREATE 8A4390E8
Device \Fat IRP_MJ_CLOSE 8A4390E8
Device \Fat IRP_MJ_READ 8A4390E8
Device \Fat IRP_MJ_WRITE 8A4390E8
Device \Fat IRP_MJ_QUERY_INFORMATION 8A4390E8
Device \Fat IRP_MJ_SET_INFORMATION 8A4390E8
Device \Fat IRP_MJ_QUERY_EA 8A4390E8
Device \Fat IRP_MJ_SET_EA 8A4390E8
Device \Fat IRP_MJ_FLUSH_BUFFERS 8A4390E8
Device \Fat IRP_MJ_QUERY_VOLUME_INFORMATION 8A4390E8
Device \Fat IRP_MJ_SET_VOLUME_INFORMATION 8A4390E8
Device \Fat IRP_MJ_DIRECTORY_CONTROL 8A4390E8
Device \Fat IRP_MJ_FILE_SYSTEM_CONTROL 8A4390E8
Device \Fat IRP_MJ_DEVICE_CONTROL 8A4390E8
Device \Fat IRP_MJ_SHUTDOWN 8A4390E8
Device \Fat IRP_MJ_LOCK_CONTROL 8A4390E8
Device \Fat IRP_MJ_CLEANUP 8A4390E8
Device \Fat IRP_MJ_PNP 8A4390E8
Device \Fat FastIoCheckIfPossible [A69581F9] Fastfat.SYS
Device \Fat FastIoQueryBasicInfo [A6947646] Fastfat.SYS
Device \Fat FastIoQueryStandardInfo [A6947405] Fastfat.SYS
Device \Fat FastIoLock [A694D9F3] Fastfat.SYS
Device \Fat FastIoUnlockSingle [A6950518] Fastfat.SYS
Device \Fat FastIoUnlockAll [A695C929] Fastfat.SYS
Device \Fat FastIoUnlockAllByKey [A695CA21] Fastfat.SYS
Device \Fat FastIoQueryNetworkOpenInfo [A695828E] Fastfat.SYS
Device \Fat AcquireForCcFlush [A695D4A6] Fastfat.SYS
Device \Fat ReleaseForCcFlush [A695D51F] Fastfat.SYS
AttachedDevice \Fat IRP_MJ_CREATE [BA4D51DE] fltMgr.sys
AttachedDevice \Fat IRP_MJ_CREATE_NAMED_PIPE [BA4D51DE] fltMgr.sys
AttachedDevice \Fat IRP_MJ_CLOSE [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_READ [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_WRITE [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_QUERY_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SET_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_QUERY_EA [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SET_EA [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_FLUSH_BUFFERS [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_QUERY_VOLUME_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SET_VOLUME_INFORMATION [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_DIRECTORY_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_FILE_SYSTEM_CONTROL [BA4D5454] fltMgr.sys
AttachedDevice \Fat IRP_MJ_DEVICE_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_INTERNAL_DEVICE_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SHUTDOWN [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_LOCK_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_CLEANUP [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_CREATE_MAILSLOT [BA4D51DE] fltMgr.sys
AttachedDevice \Fat IRP_MJ_QUERY_SECURITY [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SET_SECURITY [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_POWER [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SYSTEM_CONTROL [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_DEVICE_CHANGE [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_QUERY_QUOTA [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_SET_QUOTA [BA4C8F4C] fltMgr.sys
AttachedDevice \Fat IRP_MJ_CREATE [BA91C742] bb-run.sys
AttachedDevice \Fat IRP_MJ_CREATE_NAMED_PIPE [BA91C742] bb-run.sys
AttachedDevice \Fat IRP_MJ_CLOSE [BA91C000] bb-run.sys
AttachedDevice \Fat IRP_MJ_READ [BA9195C2] bb-run.sys
AttachedDevice \Fat IRP_MJ_WRITE [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_QUERY_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SET_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_QUERY_EA [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SET_EA [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_FLUSH_BUFFERS [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_QUERY_VOLUME_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SET_VOLUME_INFORMATION [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_DIRECTORY_CONTROL [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_FILE_SYSTEM_CONTROL [BA91D5D2] bb-run.sys
AttachedDevice \Fat IRP_MJ_DEVICE_CONTROL [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_INTERNAL_DEVICE_CONTROL [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SHUTDOWN [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_LOCK_CONTROL [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_CLEANUP [BA91C000] bb-run.sys
AttachedDevice \Fat IRP_MJ_CREATE_MAILSLOT [BA91C742] bb-run.sys
AttachedDevice \Fat IRP_MJ_QUERY_SECURITY [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SET_SECURITY [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_POWER [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SYSTEM_CONTROL [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_DEVICE_CHANGE [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_QUERY_QUOTA [BA919000] bb-run.sys
AttachedDevice \Fat IRP_MJ_SET_QUOTA [BA919000] bb-run.sys
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CREATE 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLOSE 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_READ 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_INFORMATION 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_SET_INFORMATION 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_QUERY_VOLUME_INFORMATION 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_DIRECTORY_CONTROL 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_FILE_SYSTEM_CONTROL 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_DEVICE_CONTROL 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_SHUTDOWN 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_LOCK_CONTROL 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_CLEANUP 8A2598B0
Device \FileSystem\Cdfs \Cdfs IRP_MJ_PNP 8A2598B0
---- EOF - GMER 1.0.13 ----
Ho fatto tutto quello che era richiesto. Ci ho messo circa 9 ore ma spero ne sia valsa la pena. Aspetto di sapere cosa devo fare adesso. Un’altra cosa strana è che da ieri (momento in cui mi sono accorto del dialer, le pagine Internet si aprono con una lentezza disarmante. Cioè, una volta che una pagina è stata caricata su un determinato sito, a passare da un sito all’altro ci metto i tempi normali. Ma se devo aprire una nuova scheda o una nuova finestra ci mette una vita a connettersi. Perché? Il dialer (che tra l’altro oggi non mi ha dato fastidi) non dovrebbe limitarsi a disconnettermi e a cercare di connettermi ad una linea ad alti costi? Perché tutta questa lentezza per aprire una pagina? Grazie per l’aiuto!!!
__________________
|
|
|
|
|
#11 |
|
Bannato
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
|
in realtà quello che ti trova asquared è x cosi dire un dialer leggittimo: dovrebbe essere un programma di connessione della hp quello che trova asquared, quindi niente di preoccupante
prevx nn ha trovato nulla gmer ha trovato righe rosse? hijakcthis te l'ho già esaminato,vediamo qualke altro parere essendo 56k credo sia normale che sia lenta la connessione...no?è piu lenta di prima? prima quando? vediamo cosa dicono gli altri dottori ciao ciao |
|
|
|
|
#12 | |
|
Senior Member
Iscritto dal: Oct 2007
Città: Messina (provincia) Trattative HWUpgrade: 29 Feedback eBay: 158 100% positivi
Messaggi: 1886
|
Quote:
Gmer non ha trovato righe rosse. Cmq non è normale la lentezza nell'aprire pagine nuove. Ieri mi è apparsa quella connessione, Internet connection che ho rimosso manualmente due volte. Ho cercato informazioni sul WEB e si diceva fosse un dialer nuovo. Si consigliava l'utilizzo di due programmi che ho inserito a inizio thread: uno per la scansione e l'altro per eliminare i file duplicati dal dialer che erano nella cartella bak e ripristinare quelli normali. Io sono arrivato alla scansione col primo programma (che ho riportato nel messaggio ad inizio thread) , ma poi non ho capito cosa devo scrivere con Average, e infatti chiedevo se qualcuno poteva postarmi il codice intero da scrivere su Average in modo che lo copiassi. Poi invece mi è stato detto di seguire la guida per infestati. E l'ho fatto. Non vedo la connessione, o almeno al momento non è riapparsa, anche se non mi appare già da ieri notte, ma la connessione alle pagine di IE7 resta inspiegabilmente lenta. Ora provo a vedere se c'è qualcosa di diverso nelle impostazioni di internet. Perchè se il problema fosse il 56k dovrei avere problema anche nel passare da un sito all'altro. Invece h oproblemi solo se apro nuove finestre o nuove schede di Internet Explorer 7.
__________________
Ultima modifica di Francizio : 07-01-2008 alle 23:09. |
|
|
|
|
|
#13 |
|
Senior Member
Iscritto dal: Feb 2007
Città: Salerno......
Messaggi: 3259
|
Hai effettuato quell'operazione con avenger?
__________________
Opera disabilitazione script ed iframe Recuperare le proprie password on line. Messenger: massima attenzione ai SITI TRUFFA | GUIDA:ShutdownTimer (Spegnimento auto pc) | Quando il centro sicurezza non riconosce i soft. Guida a Malwarebytes' Anti-Malware = tiemp bell e na volta...
|
|
|
|
|
#14 |
|
Bannato
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
|
è proprio quel punto che gli manca....
io nn so usare avenger, pensaci tu, o sommo lancetta |
|
|
|
|
#15 | ||
|
Bannato
Iscritto dal: Jul 2007
Città: Riverside House
Messaggi: 3333
|
E come socio? non sarebbe qui, se sapesse scriversi lo script di suo.
Quote:
... nessuno lo ha mai chiamato così Quote:
Scarica AVENGER (Non richiede l’installazione) clicca qui per il download Devi creare una apposta Cartella sul Desktop ed al suo interno scompatta il file ● avvialo ● seleziona Input script manually e clicca sulla lente d'ingrandimento ● nella nuova finestra incolla questo script (tutto il testo in rosso): Files to delete: C:\Programmi\DAEMON Tools\daemon.exe C:\Programmi\HP DigitalMedia Archive\DMAScheduler.exe C:\Programmi\MemoRex\MemoRexOpt.exe C:\Programmi\MSN Messenger\MsnMsgr.Exe C:\Programmi\QuickTime\qttask.exe C:\WINDOWS\ehome\ehtray.exe C:\WINDOWS\SMINST\RECGUARD.EXE C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\NeroCheck.exe C:\Programmi\Google\googletoolbar2user.exe C:\Programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Programmi\File comuni\Real\GToolbar\GoogleToolbarInstaller.exe C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Programmi\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe C:\Programmi\HP\HP Software Update\HPWuSchd2.exe C:\Programmi\Intel\Intel Matrix Storage Manager\Iaanotif.exe C:\hp\drivers\Intel_raid\Utility\Application\Monitor\IAAnotif.exe C:\Programmi\Logitech\QuickCam10\QuickCam10.exe C:\Programmi\SlySoft\CloneCD\CloneCDTray.exe C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe C:\Programmi\File comuni\Logitech\LComMgr\Communications_Helper.exe C:\Programmi\File comuni\Logitech\LComMgr\LVComSX.exe C:\Programmi\File comuni\Real\Update_OB\realsched.exe C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe C:\Programmi\Java\jre1.5.0_14\bin\jusched.exe C:\Programmi\Java\jdk1.5.0_14\jre\bin\jusched.exe C:\Programmi\Sports Interactive\Football Manager 2008\jre\bin\jusched.exe C:\Programmi\Logitech\QuickCam10\LogitechUpdate.exe C:\Programmi\Logitech\DesktopMessenger\8876480\Program\LogitechDesktopMessenger.exe Files to move: C:\Programmi\DAEMON Tools\bak\daemon.exe | C:\Programmi\DAEMON Tools C:\Programmi\HP DigitalMedia Archive\bak\DMAScheduler.exe | C:\Programmi\HP DigitalMedia Archive C:\Programmi\MemoRex\bak\MemoRexStart.exe | C:\Programmi\MemoRex C:\Programmi\MSN Messenger\bak\MsnMsgr.Exe | C:\Programmi\MSN Messenger C:\Programmi\QuickTime\bak\qttask.exe | C:\Programmi\QuickTime C:\WINDOWS\ehome\bak\ehtray.exe | C:\WINDOWS\ehome C:\WINDOWS\SMINST\bak\RECGUARD.EXE | C:\WINDOWS\SMINST C:\WINDOWS\system32\bak\ctfmon.exe | C:\WINDOWS\system32 C:\WINDOWS\system32\bak\NeroCheck.exe | C:\WINDOWS\system32 C:\Programmi\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe | C:\Programmi\Google\GoogleToolbarNotifier C:\Programmi\Hewlett-Packard\HP Boot Optimizer\bak\HPBootOp.exe | C:\Programmi\Hewlett-Packard\HP Boot Optimizer C:\Programmi\HP\HP Software Update\bak\HPWuSchd2.exe | C:\Programmi\HP\HP Software Update C:\Programmi\Intel\Intel Matrix Storage Manager\bak\Iaanotif.exe | C:\Programmi\Intel\Intel Matrix Storage Manager C:\Programmi\Logitech\QuickCam10\bak\QuickCam10.exe | C:\Programmi\Logitech\QuickCam10 C:\Programmi\SlySoft\CloneCD\bak\CloneCDTray.exe | C:\Programmi\SlySoft\CloneCD C:\Programmi\Adobe\Reader 8.0\Reader\bak\Reader_sl.exe | C:\Programmi\Adobe\Reader 8.0 C:\Programmi\File comuni\Ahead\Lib\bak\NMBgMonitor.exe | C:\Programmi\File comuni\Ahead\Lib C:\Programmi\File comuni\Logitech\LComMgr\bak\Communications_Helper.exe | C:\Programmi\File comuni\Logitech\LComMgr C:\Programmi\File comuni\Logitech\LComMgr\bak\LVComSX.exe | C:\Programmi\File comuni\Logitech\LComMgr C:\Programmi\File comuni\Real\Update_OB\bak\realsched.exe | C:\Programmi\File comuni\Real\Update_OB C:\Programmi\Java\jre1.5.0_14\bin\bak\jusched.exe | C:\Programmi\Java\jre1.5.0_14\bin C:\Programmi\Logitech\Desktop Messenger\8876480\Program\bak\LogitechDesktopMessenger.exe | C:\Programmi\Logitech\Desktop Messenger\8876480\Program ● clicca sul pulsante Done ● clicca sull'icona semaforo verde ● rispondi yes ● Il P.C. dovrebbe riavviarsi da solo; altrimenti riavvia manualmente ● al riavvio del sistema verrà salvato un log in C:\avenger.txt allega il log che verrà rilasciato @ Nà, socio: dagli una occhiata, anche tu, per favore, giusto per conferma. |
||
|
|
|
|
#16 |
|
Bannato
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
|
OT:
evoco il sommo lancetta e mi spunta il dottor riverside....dottore va bene? o vuoi una qualifica superiore? chiuso OT |
|
|
|
|
#17 |
|
Senior Member
Iscritto dal: Feb 2007
Città: Salerno......
Messaggi: 3259
|
se mi date 10 minuti lo faccio ......
grazie per il sommo edit
__________________
Opera disabilitazione script ed iframe Recuperare le proprie password on line. Messenger: massima attenzione ai SITI TRUFFA | GUIDA:ShutdownTimer (Spegnimento auto pc) | Quando il centro sicurezza non riconosce i soft. Guida a Malwarebytes' Anti-Malware = tiemp bell e na volta...
Ultima modifica di lancetta : 07-01-2008 alle 23:44. |
|
|
|
|
#18 | |
|
Senior Member
Iscritto dal: Feb 2007
Città: Salerno......
Messaggi: 3259
|
Quote:
OT: msn non mi si apre....mah?
__________________
Opera disabilitazione script ed iframe Recuperare le proprie password on line. Messenger: massima attenzione ai SITI TRUFFA | GUIDA:ShutdownTimer (Spegnimento auto pc) | Quando il centro sicurezza non riconosce i soft. Guida a Malwarebytes' Anti-Malware = tiemp bell e na volta...
Ultima modifica di lancetta : 07-01-2008 alle 23:55. |
|
|
|
|
|
#19 | |||
|
Bannato
Iscritto dal: Jul 2007
Città: Riverside House
Messaggi: 3333
|
Quote:
e ti pare che, dopo aver passato ben tre ore (l'insonnia, brutta bestia) a studiarmi Avenger ed a capire come funziona la compilazione dello script, mi metta a fare le cose a metà ![]() Quote:
Quote:
Ultima modifica di Riverside : 08-01-2008 alle 00:02. |
|||
|
|
|
|
#20 | |
|
Senior Member
Iscritto dal: Feb 2007
Città: Salerno......
Messaggi: 3259
|
Quote:
hai ragione socio..... ma te sei un grande il rompimento è la compilazione dello script,basta tralasciarne uno che si vanifica il tuttoperò per te che sei capacissimo... e comunque stasera navigazione di merda (a prescindere dai catorci è un pò di giorni che in zona da me ci sono problemi....
__________________
Opera disabilitazione script ed iframe Recuperare le proprie password on line. Messenger: massima attenzione ai SITI TRUFFA | GUIDA:ShutdownTimer (Spegnimento auto pc) | Quando il centro sicurezza non riconosce i soft. Guida a Malwarebytes' Anti-Malware = tiemp bell e na volta...
|
|
|
|
|
| Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 23:24.












Recuperare le proprie password on line. Messenger: massima attenzione ai SITI TRUFFA | GUIDA:ShutdownTimer (Spegnimento auto pc) | Quando il centro sicurezza non riconosce i soft. Guida a Malwarebytes' Anti-Malware = tiemp bell e na volta...
... nessuno lo ha mai chiamato così








