Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Virus/malware "probably" stopping me from updating Avira/ZoneAlarm/Spybot


  • Please log in to reply
18 replies to this topic

#1 parappa

parappa

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 15 July 2014 - 06:08 PM

Hello guys, I hope I'm doing this right.

 

OS: Windows XP SP3

Security programs: Avira (before and during infection), Avast (during and after), ZoneAlarm, Spybot.

 

The problem arised a few days ago (1 week?), same day I plugged in my USB key in my desktop PC, after I used it on a bookstall PC to print a file. Could be a coincidence though.

 

After booting up the PC I noticed it was running very slow, opened task manager and found a weird program listed: MRT.EXE if I remember correctly, but I'm not sure (maybe MTR?). Killed it and everything was fine again; looked online and I found it was a malware. Then Avira notified me about a malware/virus, sent it to quarantine. Problem never resurfaced, at least as far as I'm aware.

 

Though what I think was the next day I noticed Avira not updating, I tried the manual update but no dice. I kept trying several times, but it stopped around the middle. No other visible problems on the PC so I checked online and found others who had the same problem in the past, with guys from the Avira forum telling them to try and manually install the new version of the program. Tried but it didn't work, it gave me an error message during installation.

 

Downloaded and installed Avast instead. Now everything seems just fine. Too bad it probably isn't fine. While Avast and ZoneAlarm are set to periodically update by themselves, I have Spybot on manual update... and it seems it's tricking me into thinking it's up to date. I say this because it's not finding any updates, even though it's been at least a month since my last manual update; it's not even letting me choose the server to search for the updates or if I want beta and language updates. When I click on the "update" tab it just tells me "no updates avalaible" (in my native language, dunno if it's exactly like this in english).

 

The same goes for Avast and ZA, when I try the manual update they just say "you're updated". However with all the stuff that went down due to that MRT.EXE thing and the Avira business I can't shake the feeling that something's wrong. Especially now that XP isn't officially supported anymore.



BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,934 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:03 AM

Posted 15 July 2014 - 06:40 PM

Hello parappa, the proper file MRT.exe belongs to the Microsoft Windows Malicious Software Removal Tool and is located in the folder C:\Windows\System32.

Is Zonealarm only the Firewall? Your flash drive is probably infected. For the Flash drive...

Please download Flash_Disinfector.exe by sUBs and save it to your desktop.
  • Double-click Flash_Disinfector.exe to run it and follow any prompts that may appear.
  • The utility may ask you to insert your flash drive and/or other removable drives. Please do so and allow the utility to clean up those drives as well.
  • Hold down the Shift key when inserting the drive until Windows detects it to keep autorun.inf from executing if it is present.
  • Wait until it has finished scanning and then exit the program.
  • Reboot your computer when done.
Note: As part of its routine, Flash_Disinfector will create a hidden folder named autorun.inf in each partition and every USB drive that was plugged in when you ran it. Do not delete this folder...it will help protect your drives from future infection by keeping the autorun file from being installed on the root drive and running other malicious files.



Lets look at these for the PC.

Please download MiniToolBox, save it to your desktop and run it.
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
    Note: When using "Reset FF Proxy Settings" option Firefox should be closed.



    Download TDSSKiller and save it to your desktop.
  • Extract (unzip) its contents to your desktop.
  • Open the TDSSKiller folder and doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
  • If an infected file is detected, the default action will be Cure, click on Continue.
  • If a suspicious file is detected, the default action will be Skip, click on Continue.
  • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
  • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
  • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
  • .
    .
    .
    ADW Cleaner

    Please download AdwCleaner by Xplode and save to your Desktop.
  • Double-click on AdwCleaner.exe to run the tool.
    Vista/Windows 7/8 users right-click and select Run As Administrator.
  • Click on the Scan button.
  • AdwCleaner will begin...be patient as the scan may take some time to complete.
  • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
  • After reviewing the log, click on the Clean button.
  • Press OK when asked to close all programs and follow the onscreen prompts.
  • Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
  • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  • Copy and paste the contents of that logfile in your next reply.
  • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.
  • -- Note: The contents of the AdwCleaner log file may be confusing. Unless you see a program name that you recognize and know should not be removed, don't worry about it. If you see an entry you want to keep, return to AdwCleaner before cleaning...all detected items will be listed (and checked) in each tab. Click on each one and uncheck any items you want to keep (except you cannot uncheck Chrome and Firefox preferences lines).


    .

    thisisujrt.gif Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  • .
    .
    .
    .
  • Last run ESET.
  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the esetonlinebtn.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the esetsmartinstaller_enu.png icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
  • Scan potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Click the Back button.
  • Click the Finish button.
  • NOTE:Sometimes if ESET finds no infections it will not create a log.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 15 July 2014 - 06:59 PM

Hello parappa, the proper file MRT.exe belongs to the Microsoft Windows Malicious Software Removal Tool and is located in the folder C:\Windows\System32.

Is Zonealarm only the Firewall?

 

Yes, it's just the firewall. I will rigorously follow the steps you just listed, only tomorrow, it's very late here. Thanks, I'll be sure to post the results.



#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,934 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:03 AM

Posted 15 July 2014 - 07:31 PM

No problem. I'll look back.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 16 July 2014 - 04:33 AM

Ok, first problem. When I start Flash Disinfector a message pops up from ZoneAlarm: "nircmd.exe is a malicious program and was prevented from running on your computer".

 

Also when I booted the PC the firewall told me CMD.EXE (is that the commands prompt!?) was trying to open by itself, chose to deny access.


Edited by parappa, 16 July 2014 - 06:36 AM.


#6 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 16 July 2014 - 09:51 AM

MiniToolBox by Farbar  Version: 06-07-2014
Ran by Alessandro (administrator) on 16-07-2014 at 16:43:11
Running from "C:\Documents and Settings\Alessandro\Desktop"
Microsoft Windows XP Professional Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Configurazione IP di Windows



Svuotata la cache del resolver DNS.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
ProxyServer: http=127.0.0.1:8555

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.http", "proxy-auth.unifi.it"
"network.proxy.http_port", 8888
"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1       localhost
127.0.0.1    www.007guard.com
127.0.0.1    007guard.com
127.0.0.1    008i.com
127.0.0.1    www.008k.com
127.0.0.1    008k.com
127.0.0.1    www.00hq.com
127.0.0.1    00hq.com
127.0.0.1    010402.com
127.0.0.1    www.032439.com
127.0.0.1    032439.com
127.0.0.1    www.0scan.com
127.0.0.1    0scan.com
127.0.0.1    1000gratisproben.com
127.0.0.1    www.1000gratisproben.com
127.0.0.1    1001namen.com
127.0.0.1    www.1001namen.com
127.0.0.1    100888290cs.com
127.0.0.1    www.100888290cs.com

There are 15473 more lines starting with "127.0.0.1"

========================= IP Configuration: ================================

Realtek RTL8102/8103/8136 Family PCI-E FE NIC = LAN (Disconnected)
Telsey CPVA502+ USB = Tele 2 (Connected)


# ----------------------------------
# Configurazione IP interfaccia         
# ----------------------------------
pushd interface ip


# Configurazione IP interfaccia per "Tele 2"

set address name="Tele 2" source=dhcp
set dns name="Tele 2" source=dhcp register=PRIMARY
set wins name="Tele 2" source=dhcp


popd
# Termine della configurazione IP interfaccia




Configurazione IP di Windows



        Nome host . . . . . . . . . . . . . . : TOM

        Suffisso DNS primario  . . . . . . .  :

        Tipo nodo . . . . . . . . . . . .  : Misto

        Routing IP abilitato . . . . . . . .  : S

        Proxy WINS abilitato . . . . . . . .  : No



Scheda Ethernet Tele 2:



        Suffisso DNS specifico per connessione:

        Descrizione . . . . . . . . . . . . . : Telsey CPVA502+ USB #2

        Indirizzo fisico. . . . . . . . . . . : 00-03-6F-F9-75-FB

        DHCP abilitato. . . . . . . . . . . . : S

        Configurazione automatica abilitata   : S

        Indirizzo IP. . . . . . . . . . . . . : 192.168.1.2

        Subnet mask . . . . . . . . . . . . . : 255.255.255.0

        Indirizzo IP. . . . . . . . . . . . . : fe80::203:6fff:fef9:75fb%6

        Gateway predefinito . . . . . . . . . : 192.168.1.254

        Server DHCP . . . . . . . . . . . . . : 192.168.1.254

        Server DNS . . . . . . . . . . . . .  : 192.168.1.254

                                            fec0:0:0:ffff::1%1

                                            fec0:0:0:ffff::2%1

                                            fec0:0:0:ffff::3%1

        Lease ottenuto. . . . . . . . . . . . : mercoled 16 luglio 2014 12.11.02

        Scadenza lease . . . . . . . . . . .  : gioved 17 luglio 2014 12.11.02



Scheda Tunnel Teredo Tunneling Pseudo-Interface:



        Suffisso DNS specifico per connessione:

        Descrizione . . . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface

        Indirizzo fisico. . . . . . . . . . . : FF-FF-FF-FF-FF-FF-FF-FF

        DHCP abilitato. . . . . . . . . . . . : No

        Indirizzo IP. . . . . . . . . . . . . : fe80::ffff:ffff:fffd%4

        Gateway predefinito . . . . . . . . . :

        NetBIOS su TCPIP. . . . . . : Disabilitato



Scheda Tunnel Automatic Tunneling Pseudo-Interface:



        Suffisso DNS specifico per connessione:

        Descrizione . . . . . . . . . . . . . : Automatic Tunneling Pseudo-Interface

        Indirizzo fisico. . . . . . . . . . . : C0-A8-01-02

        DHCP abilitato. . . . . . . . . . . . : No

        Indirizzo IP. . . . . . . . . . . . . : fe80::5efe:192.168.1.2%2

        Gateway predefinito . . . . . . . . . :

        Server DNS . . . . . . . . . . . . .  : fec0:0:0:ffff::1%1

                                            fec0:0:0:ffff::2%1

                                            fec0:0:0:ffff::3%1

        NetBIOS su TCPIP. . . . . . : Disabilitato

Server:  UnKnown
Address:  192.168.1.254

Nome:    google.com
Addresses:  173.194.35.3, 173.194.35.0, 173.194.35.7, 173.194.35.6
      173.194.35.9, 173.194.35.1, 173.194.35.8, 173.194.35.5, 173.194.35.2
      173.194.35.4, 173.194.35.14



Esecuzione di Ping google.com [74.125.232.129] con 32 byte di dati:



Risposta da 74.125.232.129: byte=32 durata=46ms TTL=55

Risposta da 74.125.232.129: byte=32 durata=46ms TTL=54



Statistiche Ping per 74.125.232.129:

    Pacchetti: Trasmessi = 2, Ricevuti = 2, Persi = 0 (0% persi),

Tempo approssimativo percorsi andata/ritorno in millisecondi:

    Minimo = 46ms, Massimo =  46ms, Medio =  46ms

Server:  UnKnown
Address:  192.168.1.254

Nome:    yahoo.com
Addresses:  98.138.253.109, 206.190.36.45, 98.139.183.24



Esecuzione di Ping yahoo.com [206.190.36.45] con 32 byte di dati:



Risposta da 206.190.36.45: byte=32 durata=214ms TTL=51

Risposta da 206.190.36.45: byte=32 durata=215ms TTL=51



Statistiche Ping per 206.190.36.45:

    Pacchetti: Trasmessi = 2, Ricevuti = 2, Persi = 0 (0% persi),

Tempo approssimativo percorsi andata/ritorno in millisecondi:

    Minimo = 214ms, Massimo =  215ms, Medio =  214ms



Esecuzione di Ping 127.0.0.1 con 32 byte di dati:



Risposta da 127.0.0.1: byte=32 durata<1ms TTL=128

Risposta da 127.0.0.1: byte=32 durata<1ms TTL=128



Statistiche Ping per 127.0.0.1:

    Pacchetti: Trasmessi = 2, Ricevuti = 2, Persi = 0 (0% persi),

Tempo approssimativo percorsi andata/ritorno in millisecondi:

    Minimo = 0ms, Massimo =  0ms, Medio =  0ms

===========================================================================
Elenco interfacce
0x1 ........................... MS TCP Loopback interface
0x20003 ...00 03 6f f9 75 fb ...... Telsey CPVA502+ USB #2 - Miniport dell'Utilit di pianificazione pacchetti
===========================================================================
===========================================================================
Route attive:
Indirizzo rete             Mask             Gateway       Interfac.  Metric
          0.0.0.0          0.0.0.0    192.168.1.254     192.168.1.2      30
      31.13.86.49  255.255.255.255    192.168.1.254     192.168.1.2      30
   74.125.232.137  255.255.255.255    192.168.1.254     192.168.1.2      30
        127.0.0.0        255.0.0.0        127.0.0.1       127.0.0.1      1
    173.194.35.36  255.255.255.255    192.168.1.254     192.168.1.2      30
  173.194.113.224  255.255.255.255    192.168.1.254     192.168.1.2      30
  173.194.113.237  255.255.255.255    192.168.1.254     192.168.1.2      30
  173.194.113.250  255.255.255.255    192.168.1.254     192.168.1.2      30
  173.194.116.200  255.255.255.255    192.168.1.254     192.168.1.2      30
      192.168.1.0    255.255.255.0      192.168.1.2     192.168.1.2      30
      192.168.1.2  255.255.255.255        127.0.0.1       127.0.0.1      30
    192.168.1.255  255.255.255.255      192.168.1.2     192.168.1.2      30
        224.0.0.0        240.0.0.0      192.168.1.2     192.168.1.2      30
  255.255.255.255  255.255.255.255      192.168.1.2     192.168.1.2      1
Gateway predefinito:     192.168.1.254
===========================================================================
Route permanenti:
  Nessuno
========================= Winsock entries =====================================

Catalog5 01 mswsock.dll [] (Microsoft Corporation)
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog5 02 C:\WINDOWS\system32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 mswsock.dll [] (Microsoft Corporation)
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog5 04 C:\Programmi\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Catalog9 01 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 13 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 14 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 15 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 16 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 17 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 18 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 19 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 20 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 21 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 22 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 23 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 24 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 25 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 26 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 27 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 28 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 29 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)
Catalog9 30 C:\WINDOWS\system32\mswsock.dll [247296] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (07/16/2014 04:43:38 PM) (Source: Application Error) (User: )
Description: Applicazione che ha provocato l'errore plugin-container.exe, versione 30.0.0.5269, modulo che ha provocato l'errore mozalloc.dll, versione 30.0.0.5269, indirizzo errore 0x0000141b.
Elaborazione evento specifico al supporto per [plugin-container.exe!ws!] in corso

Error: (07/14/2014 03:04:25 PM) (Source: Microsoft Office 10) (User: )
Description: Faulting application winword.exe, version 10.0.6866.0, faulting module msgrit32.dll, version 3.0.0.37, fault address 0x0001ffb5.

Error: (07/14/2014 00:49:14 PM) (Source: Microsoft Office 10) (User: )
Description: Faulting application winword.exe, version 10.0.6866.0, faulting module msgrit32.dll, version 3.0.0.37, fault address 0x0001f679.

Error: (07/13/2014 05:09:14 PM) (Source: Application Error) (User: )
Description: Applicazione che ha provocato l'errore plugin-container.exe, versione 30.0.0.5269, modulo che ha provocato l'errore mozalloc.dll, versione 30.0.0.5269, indirizzo errore 0x0000141b.
Elaborazione evento specifico al supporto per [plugin-container.exe!ws!] in corso

Error: (07/13/2014 01:27:53 AM) (Source: Application Hang) (User: )
Description: Applicazione in stallo AvastUI.exe, versione 9.0.2021.515, modulo in stallo hungapp, versione 0.0.0.0, indirizzo stallo 0x00000000.

Error: (07/13/2014 01:27:52 AM) (Source: Application Hang) (User: )
Description: Applicazione in stallo AvastUI.exe, versione 9.0.2021.515, modulo in stallo hungapp, versione 0.0.0.0, indirizzo stallo 0x00000000.

Error: (07/11/2014 02:50:54 PM) (Source: .NET Runtime) (User: )
Description: Application: Avira.OE.ServiceHost.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.AccessViolationException
Stack:
   at Avira.OE.AvConnector.Interface.ILicensePlugin.GetLicenseType()
   at Avira.OE.AvConnector.AvStatusReporter.GetLicenseType()
   at Avira.OE.ServiceHost.ComputerAndServicesInfo.CreateMessagePayload()
   at Avira.OE.ServiceHost.ServiceHost.DispatchAnonymousSyncStatus(Avira.OE.Communicator.Interface.ICommunicator)
   at Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   at System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   at System.Threading.ThreadPoolWorkQueue.Dispatch()
   at System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (07/10/2014 05:01:58 PM) (Source: crypt32) (User: )
Description: Impossibile estrarre l'elenco principale di altri produttori dal file .cab di aggiornamento automatico in: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> a causa del seguente errore: Spazio su disco insufficiente.

Error: (07/10/2014 05:01:57 PM) (Source: crypt32) (User: )
Description: Impossibile estrarre l'elenco principale di altri produttori dal file .cab di aggiornamento automatico in: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> a causa del seguente errore: Spazio su disco insufficiente.

Error: (07/07/2014 07:22:57 PM) (Source: Microsoft Office 10) (User: )
Description: Faulting application winword.exe, version 10.0.6866.0, faulting module msgrit32.dll, version 3.0.0.37, fault address 0x0001f679.


System errors:
=============
Error: (07/16/2014 00:10:48 PM) (Source: ipnathlp) (User: )
Description: L'agente proxy DNS ha rilevato un errore durante il ricevimento dell'elenco locale
dei server di risoluzione dei nomi.
È possibile che alcuni server DNS o WINS siano inaccessibili ai client sulla rete locale.
Il codice di errore è nei dati.

Error: (07/16/2014 00:10:31 PM) (Source: ipnathlp) (User: )
Description: L'agente proxy DNS ha rilevato un errore durante il ricevimento dell'elenco locale
dei server di risoluzione dei nomi.
È possibile che alcuni server DNS o WINS siano inaccessibili ai client sulla rete locale.
Il codice di errore è nei dati.

Error: (07/16/2014 00:10:31 PM) (Source: ipnathlp) (User: )
Description: L'agente proxy DNS ha rilevato un errore durante il ricevimento dell'elenco locale
dei server di risoluzione dei nomi.
È possibile che alcuni server DNS o WINS siano inaccessibili ai client sulla rete locale.
Il codice di errore è nei dati.

Error: (07/16/2014 00:10:27 PM) (Source: ipnathlp) (User: )
Description: L'agente proxy DNS ha rilevato un errore durante il ricevimento dell'elenco locale
dei server di risoluzione dei nomi.
È possibile che alcuni server DNS o WINS siano inaccessibili ai client sulla rete locale.
Il codice di errore è nei dati.

Error: (07/16/2014 00:10:27 PM) (Source: ipnathlp) (User: )
Description: L'agente proxy DNS ha rilevato un errore durante il ricevimento dell'elenco locale
dei server di risoluzione dei nomi.
È possibile che alcuni server DNS o WINS siano inaccessibili ai client sulla rete locale.
Il codice di errore è nei dati.

Error: (07/16/2014 00:10:27 PM) (Source: ipnathlp) (User: )
Description: L'agente proxy DNS ha rilevato un errore durante il ricevimento dell'elenco locale
dei server di risoluzione dei nomi.
È possibile che alcuni server DNS o WINS siano inaccessibili ai client sulla rete locale.
Il codice di errore è nei dati.

Error: (07/16/2014 10:30:59 AM) (Source: Service Control Manager) (User: )
Description: Il servizio HDD & SSD access service non è stato avviato per il seguente errore:
%%3

Error: (07/16/2014 00:19:14 AM) (Source: Service Control Manager) (User: )
Description: Interruzione imprevista del servizio Pml Driver HPZ12. Questo evento si è già verificato 1 volta(e).

Error: (07/15/2014 09:24:14 AM) (Source: Service Control Manager) (User: )
Description: Il servizio HDD & SSD access service non è stato avviato per il seguente errore:
%%3

Error: (07/14/2014 00:19:35 PM) (Source: Service Control Manager) (User: )
Description: Il servizio HDD & SSD access service non è stato avviato per il seguente errore:
%%3


Microsoft Office Sessions:
=========================
Error: (07/16/2014 04:43:38 PM) (Source: Application Error)(User: )
Description: plugin-container.exe30.0.0.5269mozalloc.dll30.0.0.52690000141b

Error: (07/14/2014 03:04:25 PM) (Source: Microsoft Office 10)(User: )
Description: winword.exe10.0.6866.0msgrit32.dll3.0.0.370001ffb5

Error: (07/14/2014 00:49:14 PM) (Source: Microsoft Office 10)(User: )
Description: winword.exe10.0.6866.0msgrit32.dll3.0.0.370001f679

Error: (07/13/2014 05:09:14 PM) (Source: Application Error)(User: )
Description: plugin-container.exe30.0.0.5269mozalloc.dll30.0.0.52690000141b

Error: (07/13/2014 01:27:53 AM) (Source: Application Hang)(User: )
Description: AvastUI.exe9.0.2021.515hungapp0.0.0.000000000

Error: (07/13/2014 01:27:52 AM) (Source: Application Hang)(User: )
Description: AvastUI.exe9.0.2021.515hungapp0.0.0.000000000

Error: (07/11/2014 02:50:54 PM) (Source: .NET Runtime)(User: )
Description: Application: Avira.OE.ServiceHost.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.AccessViolationException
Stack:
   at Avira.OE.AvConnector.Interface.ILicensePlugin.GetLicenseType()
   at Avira.OE.AvConnector.AvStatusReporter.GetLicenseType()
   at Avira.OE.ServiceHost.ComputerAndServicesInfo.CreateMessagePayload()
   at Avira.OE.ServiceHost.ServiceHost.DispatchAnonymousSyncStatus(Avira.OE.Communicator.Interface.ICommunicator)
   at Avira.OE.ServiceHost.ServiceHost.Initialize(System.Object)
   at System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   at System.Threading.ThreadPoolWorkQueue.Dispatch()
   at System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (07/10/2014 05:01:58 PM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabSpazio su disco insufficiente.

Error: (07/10/2014 05:01:57 PM) (Source: crypt32)(User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabSpazio su disco insufficiente.

Error: (07/07/2014 07:22:57 PM) (Source: Microsoft Office 10)(User: )
Description: winword.exe10.0.6866.0msgrit32.dll3.0.0.370001f679



=========================== Installed Programs ============================
µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.30971 - BitTorrent Inc.)
1400 (Version: 47.0.1.000 - Hewlett-Packard) Hidden
1400_Help (Version: 47.1.14.000 - Hewlett-Packard) Hidden
1400Trb (Version: 47.1.14.000 - Hewlett-Packard) Hidden
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.7.1.19610 - Adobe Systems Incorporated)
Adobe AIR (Version: 2.7.1.19610 - Adobe Systems Incorporated) Hidden
Adobe Anchor Service CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Asset Services CS3 (Version: 3 - Adobe Systems Incorporated) Hidden
Adobe Bridge CS3 (Version: 2 - Adobe Systems Incorporated) Hidden
Adobe Bridge Start Meeting (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Camera Raw 4.0 (Version: 4.0 - Adobe Systems Incorporated) Hidden
Adobe CMaps (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color - Photoshop Specific (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color Common Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color EU Extra Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color JA Extra Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color NA Recommended Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Default Language CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Device Central CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Download Manager (HKLM\...\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}) (Version: 1.6.2.103 - NOS Microsystems Ltd.)
Adobe ExtendScript Toolkit 2 (Version: 2.0 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.5.502.135 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Fonts All (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Help Viewer CS3 (Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Linguistics CS3 (Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe PDF Library Files (Version: 8.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop CS3 (HKLM\...\Adobe_2ac78060bc5856b0c1cf873bb919b58) (Version: 10.0 - Adobe Systems Incorporated)
Adobe Photoshop CS3 (Version: 10 - Adobe Systems Incorporated) Hidden
Adobe Reader XI (11.0.03) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated)
Adobe Setup (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Shockwave Player 12.0 (HKLM\...\Adobe Shockwave Player) (Version: 12.0.3.133 - Adobe Systems, Inc.)
Adobe Stock Photos CS3 (Version: 1.5 - Adobe Systems Incorporated) Hidden
Adobe Type Support (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Update Manager CS3 (Version: 5.1.0 - Adobe Systems Incorporated) Hidden
Adobe Version Cue CS3 Client (Version: 3 - Adobe Systems Incorporated) Hidden
Adobe WinSoft Linguistics Plugin (Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe XMP Panels CS3 (Version: 1.0 - Adobe Systems Incorporated) Hidden
Advanced Video FX Engine (HKLM\...\Advanced Video FX Engine) (Version:  - )
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2183461) (HKLM\...\KB2183461-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2416400) (HKLM\...\KB2416400-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2482017) (HKLM\...\KB2482017-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2497640) (HKLM\...\KB2497640-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2510531) (HKLM\...\KB2510531-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2530548) (HKLM\...\KB2530548-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2544521) (HKLM\...\KB2544521-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2559049) (HKLM\...\KB2559049-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2586448) (HKLM\...\KB2586448-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2618444) (HKLM\...\KB2618444-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2647516) (HKLM\...\KB2647516-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2675157) (HKLM\...\KB2675157-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2699988) (HKLM\...\KB2699988-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2722913) (HKLM\...\KB2722913-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2744842) (HKLM\...\KB2744842-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2761465) (HKLM\...\KB2761465-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2792100) (HKLM\...\KB2792100-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2797052) (HKLM\...\KB2797052-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2799329) (HKLM\...\KB2799329-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2809289) (HKLM\...\KB2809289-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2817183) (HKLM\...\KB2817183-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2829530) (HKLM\...\KB2829530-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2838727) (HKLM\...\KB2838727-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2846071) (HKLM\...\KB2846071-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2847204) (HKLM\...\KB2847204-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2862772) (HKLM\...\KB2862772-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2870699) (HKLM\...\KB2870699-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2879017) (HKLM\...\KB2879017-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2888505) (HKLM\...\KB2888505-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2898785) (HKLM\...\KB2898785-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2909210) (HKLM\...\KB2909210-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2909921) (HKLM\...\KB2909921-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2925418) (HKLM\...\KB2925418-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2936068) (HKLM\...\KB2936068-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB2964358) (HKLM\...\KB2964358-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB971961) (HKLM\...\KB971961-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB981332) (HKLM\...\KB981332-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Internet Explorer 8 (KB982381) (HKLM\...\KB982381-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB2378111) (HKLM\...\KB2378111_WM9) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB2834904) (HKLM\...\KB2834904_WM11) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB2834904-v2) (HKLM\...\KB2834904-v2_WM11) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB952069) (HKLM\...\KB952069_WM9) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB954155) (HKLM\...\KB954155_WM9) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB973540) (HKLM\...\KB973540_WM9) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB975558) (HKLM\...\KB975558_WM8) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player  (KB978695) (HKLM\...\KB978695_WM9) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows Media Player 11  (KB954154) (HKLM\...\KB954154_WM11) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2079403) (HKLM\...\KB2079403) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2115168) (HKLM\...\KB2115168) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2121546) (HKLM\...\KB2121546) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2160329) (HKLM\...\KB2160329) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2229593) (HKLM\...\KB2229593) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2259922) (HKLM\...\KB2259922) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2286198) (HKLM\...\KB2286198) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2296011) (HKLM\...\KB2296011) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2296199) (HKLM\...\KB2296199) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2347290) (HKLM\...\KB2347290) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2360937) (HKLM\...\KB2360937) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2387149) (HKLM\...\KB2387149) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2393802) (HKLM\...\KB2393802) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2412687) (HKLM\...\KB2412687) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2419632) (HKLM\...\KB2419632) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2423089) (HKLM\...\KB2423089) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2436673) (HKLM\...\KB2436673) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2440591) (HKLM\...\KB2440591) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2443105) (HKLM\...\KB2443105) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2476490) (HKLM\...\KB2476490) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2476687) (HKLM\...\KB2476687) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2478960) (HKLM\...\KB2478960) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2478971) (HKLM\...\KB2478971) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2479628) (HKLM\...\KB2479628) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2479943) (HKLM\...\KB2479943) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2481109) (HKLM\...\KB2481109) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2483185) (HKLM\...\KB2483185) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2485376) (HKLM\...\KB2485376) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2485663) (HKLM\...\KB2485663) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2503658) (HKLM\...\KB2503658) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2503665) (HKLM\...\KB2503665) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2506212) (HKLM\...\KB2506212) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2506223) (HKLM\...\KB2506223) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2507618) (HKLM\...\KB2507618) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2507938) (HKLM\...\KB2507938) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2508272) (HKLM\...\KB2508272) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2508429) (HKLM\...\KB2508429) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2509553) (HKLM\...\KB2509553) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2511455) (HKLM\...\KB2511455) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2524375) (HKLM\...\KB2524375) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2535512) (HKLM\...\KB2535512) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2536276) (HKLM\...\KB2536276) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2536276-v2) (HKLM\...\KB2536276-v2) (Version: 2 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2544893) (HKLM\...\KB2544893) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2544893-v2) (HKLM\...\KB2544893-v2) (Version: 2 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2555917) (HKLM\...\KB2555917) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2562937) (HKLM\...\KB2562937) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2566454) (HKLM\...\KB2566454) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2567053) (HKLM\...\KB2567053) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2567680) (HKLM\...\KB2567680) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2570222) (HKLM\...\KB2570222) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2570947) (HKLM\...\KB2570947) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2584146) (HKLM\...\KB2584146) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2585542) (HKLM\...\KB2585542) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2592799) (HKLM\...\KB2592799) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2598479) (HKLM\...\KB2598479) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2603381) (HKLM\...\KB2603381) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2618451) (HKLM\...\KB2618451) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2619339) (HKLM\...\KB2619339) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2620712) (HKLM\...\KB2620712) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2621440) (HKLM\...\KB2621440) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2624667) (HKLM\...\KB2624667) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2631813) (HKLM\...\KB2631813) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2633171) (HKLM\...\KB2633171) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2639417) (HKLM\...\KB2639417) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2641653) (HKLM\...\KB2641653) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2646524) (HKLM\...\KB2646524) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2647518) (HKLM\...\KB2647518) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2653956) (HKLM\...\KB2653956) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2655992) (HKLM\...\KB2655992) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2659262) (HKLM\...\KB2659262) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2660465) (HKLM\...\KB2660465) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2661637) (HKLM\...\KB2661637) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2676562) (HKLM\...\KB2676562) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2685939) (HKLM\...\KB2685939) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2686509) (HKLM\...\KB2686509) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2691442) (HKLM\...\KB2691442) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2695962) (HKLM\...\KB2695962) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2698365) (HKLM\...\KB2698365) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2705219) (HKLM\...\KB2705219) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2707511) (HKLM\...\KB2707511) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2709162) (HKLM\...\KB2709162) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2712808) (HKLM\...\KB2712808) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2718523) (HKLM\...\KB2718523) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2719985) (HKLM\...\KB2719985) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2723135) (HKLM\...\KB2723135) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2724197) (HKLM\...\KB2724197) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2727528) (HKLM\...\KB2727528) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2731847) (HKLM\...\KB2731847) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2753842) (HKLM\...\KB2753842) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2753842-v2) (HKLM\...\KB2753842-v2) (Version: 2 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2757638) (HKLM\...\KB2757638) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2758857) (HKLM\...\KB2758857) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2761226) (HKLM\...\KB2761226) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2770660) (HKLM\...\KB2770660) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2778344) (HKLM\...\KB2778344) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2779030) (HKLM\...\KB2779030) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2780091) (HKLM\...\KB2780091) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2799494) (HKLM\...\KB2799494) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2802968) (HKLM\...\KB2802968) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2807986) (HKLM\...\KB2807986) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2808735) (HKLM\...\KB2808735) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2813170) (HKLM\...\KB2813170) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2813345) (HKLM\...\KB2813345) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2820197) (HKLM\...\KB2820197) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2820917) (HKLM\...\KB2820917) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2829361) (HKLM\...\KB2829361) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2834886) (HKLM\...\KB2834886) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2839229) (HKLM\...\KB2839229) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2845187) (HKLM\...\KB2845187) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2847311) (HKLM\...\KB2847311) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2849470) (HKLM\...\KB2849470) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2850851) (HKLM\...\KB2850851) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2850869) (HKLM\...\KB2850869) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2859537) (HKLM\...\KB2859537) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2862152) (HKLM\...\KB2862152) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2862330) (HKLM\...\KB2862330) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2862335) (HKLM\...\KB2862335) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2864063) (HKLM\...\KB2864063) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2868626) (HKLM\...\KB2868626) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2876217) (HKLM\...\KB2876217) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2876315) (HKLM\...\KB2876315) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2876331) (HKLM\...\KB2876331) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2883150) (HKLM\...\KB2883150) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2892075) (HKLM\...\KB2892075) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2893294) (HKLM\...\KB2893294) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2893984) (HKLM\...\KB2893984) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2898715) (HKLM\...\KB2898715) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2900986) (HKLM\...\KB2900986) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2914368) (HKLM\...\KB2914368) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2916036) (HKLM\...\KB2916036) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2922229) (HKLM\...\KB2922229) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2929961) (HKLM\...\KB2929961) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB2930275) (HKLM\...\KB2930275) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB923561) (HKLM\...\KB923561) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB923789) (HKLM\...\KB923789) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB941569) (HKLM\...\KB941569) (Version:  - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB946648) (HKLM\...\KB946648) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB950760) (HKLM\...\KB950760) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB950762) (HKLM\...\KB950762) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB950974) (HKLM\...\KB950974) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB951376-v2) (HKLM\...\KB951376-v2) (Version: 2 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB951748) (HKLM\...\KB951748) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB952004) (HKLM\...\KB952004) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB952954) (HKLM\...\KB952954) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB954459) (HKLM\...\KB954459) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB956572) (HKLM\...\KB956572) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB956744) (HKLM\...\KB956744) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB956802) (HKLM\...\KB956802) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB956803) (HKLM\...\KB956803) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB956844) (HKLM\...\KB956844) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB958644) (HKLM\...\KB958644) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB958869) (HKLM\...\KB958869) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB959426) (HKLM\...\KB959426) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB960803) (HKLM\...\KB960803) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB960859) (HKLM\...\KB960859) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB961501) (HKLM\...\KB961501) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB969059) (HKLM\...\KB969059) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB970430) (HKLM\...\KB970430) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB971657) (HKLM\...\KB971657) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB971961) (Version: 1 - Microsoft Corporation) Hidden
Aggiornamento della protezione per Windows XP (KB972270) (HKLM\...\KB972270) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB973507) (HKLM\...\KB973507) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB973869) (HKLM\...\KB973869) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB973904) (HKLM\...\KB973904) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB974112) (HKLM\...\KB974112) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB974318) (HKLM\...\KB974318) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB974392) (HKLM\...\KB974392) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB974571) (HKLM\...\KB974571) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB975025) (HKLM\...\KB975025) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB975467) (HKLM\...\KB975467) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB975560) (HKLM\...\KB975560) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB975562) (HKLM\...\KB975562) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB975713) (Version: 1 - Microsoft Corporation) Hidden
Aggiornamento della protezione per Windows XP (KB977816) (HKLM\...\KB977816) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB977914) (HKLM\...\KB977914) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB978037) (HKLM\...\KB978037) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB978338) (HKLM\...\KB978338) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB978542) (HKLM\...\KB978542) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB978601) (HKLM\...\KB978601) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB978706) (HKLM\...\KB978706) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB979309) (HKLM\...\KB979309) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB979482) (HKLM\...\KB979482) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB979687) (HKLM\...\KB979687) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB980195) (HKLM\...\KB980195) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB980218) (HKLM\...\KB980218) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB980232) (HKLM\...\KB980232) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB980436) (HKLM\...\KB980436) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB981322) (HKLM\...\KB981322) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB981349) (HKLM\...\KB981349) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB981852) (HKLM\...\KB981852) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB981997) (HKLM\...\KB981997) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB982132) (HKLM\...\KB982132) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB982214) (HKLM\...\KB982214) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB982665) (HKLM\...\KB982665) (Version: 1 - Microsoft Corporation)
Aggiornamento della protezione per Windows XP (KB982802) (HKLM\...\KB982802) (Version: 1 - Microsoft Corporation)
Aggiornamento della sicurezza per Microsoft Windows (KB2564958) (HKLM\...\KB2564958) (Version:  - Microsoft Corporation)
Aggiornamento per Windows Internet Explorer 8 (KB976662) (HKLM\...\KB976662-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows Internet Explorer 8 (KB982664) (HKLM\...\KB982664-IE8) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2141007) (HKLM\...\KB2141007) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2345886) (HKLM\...\KB2345886) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2467659) (HKLM\...\KB2467659) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2541763) (HKLM\...\KB2541763) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2607712) (HKLM\...\KB2607712) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2616676) (HKLM\...\KB2616676) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2641690) (HKLM\...\KB2641690) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2661254-v2) (HKLM\...\KB2661254-v2) (Version: 2 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2718704) (HKLM\...\KB2718704) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2736233) (HKLM\...\KB2736233) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2749655) (HKLM\...\KB2749655) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2863058) (HKLM\...\KB2863058) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2904266) (HKLM\...\KB2904266) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB2934207) (HKLM\...\KB2934207) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB898461) (HKLM\...\KB898461) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB951978) (HKLM\...\KB951978) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB955759) (HKLM\...\KB955759) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB961503) (HKLM\...\KB961503) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB967715) (HKLM\...\KB967715) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB968389) (HKLM\...\KB968389) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB971029) (HKLM\...\KB971029) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB971737) (HKLM\...\KB971737) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB973687) (HKLM\...\KB973687) (Version: 1 - Microsoft Corporation)
Aggiornamento per Windows XP (KB973815) (HKLM\...\KB973815) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows Media Player 11  (KB939683) (HKLM\...\KB939683) (Version:  - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB2443685) (HKLM\...\KB2443685) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB2570791) (HKLM\...\KB2570791) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB2633952) (HKLM\...\KB2633952) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB2756822) (HKLM\...\KB2756822) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB2779562) (HKLM\...\KB2779562) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB932716-v2) (HKLM\...\KB932716-v2) (Version: 2 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB942288-v3) (HKLM\...\KB942288-v3) (Version: 3 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB952287) (HKLM\...\KB952287) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB961118) (HKLM\...\KB961118) (Version: 1 - Microsoft Corporation)
Aggiornamento rapido per Windows XP (KB981793) (HKLM\...\KB981793) (Version: 1 - Microsoft Corporation)
AiO_Scan (Version: 47.0.1.000 - Hewlett-Packard) Hidden
AiOSoftware (Version: 47.0.1.000 - Hewlett-Packard) Hidden
Angry Birds (HKLM\...\{370CA4B0-A1D8-4863-A3C5-6879AEE1663A}) (Version: 3.0.0 - Rovio)
Angry Birds Space (HKLM\...\{561AA971-37EB-4D63-9FB9-810B663B5CC7}) (Version: 1.4.1 - Rovio)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Assistente per l'accesso a Windows Live (HKLM\...\{6F695BCF-9BDC-48AB-8D46-D57CFAD7A248}) (Version: 5.000.818.5 - Microsoft Corporation)
Audiosurf (HKLM\...\{6D316D67-DA52-4659-9C98-F479963534D6}) (Version: 1.00.0000 - BestGameEver)
avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2021 - AVAST Software)
BufferChm (Version: 45.4.157.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.07 - Piriform)
CD&DVD Analyse (HKLM\...\CD&DVD Analyse) (Version:  - )
CDisplayEx 1.8 (HKLM\...\CDisplayEx_is1) (Version:  - Henri Gourvest.)
Codename Gordon (HKLM\...\Steam App 92) (Version:  - Nuclear Vision)
Combined Community Codec Pack 2013-05-30 (HKLM\...\Combined Community Codec Pack_is1) (Version: 2013.05.30.0 - CCCP Project)
Copy (Version: 45.4.157.000 - Hewlett-Packard) Hidden
CP_AtenaShokunin1Config (Version: 45.4.131.000 - Hewlett-Packard) Hidden
cp_dwShrek2Albums1 (Version: 45.4.157.000 - Hewlett-Packard) Hidden
cp_dwShrek2Cards1 (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Cpukiller3 v1.0.5 (HKLM\...\Cpukiller3_is1) (Version:  - Robyrobo)
Creative Live! Cam Center (HKLM\...\Creative Live! Cam Center) (Version:  - )
Creative Live! Cam Manager (HKLM\...\Creative Live! Cam Manager) (Version:  - )
Creative Live! Cam Video IM Driver (1.01.01.00) (HKLM\...\Creative VF0220) (Version:  - )
Creative Software AutoUpdate (HKLM\...\Creative Software AutoUpdate) (Version:  - )
Creative System Information (HKLM\...\SysInfo) (Version:  - )
CreativeProjects (Version: 45.4.157.000 - Hewlett-Packard) Hidden
CreativeProjectsTemplates (Version: 45.4.157.000 - Hewlett-Packard) Hidden
CueTour (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Destinations (Version: 45.4.157.000 - Hewlett-Packard) Hidden
D-Fend Reloaded 0.9.3 (deinstall) (HKLM\...\D-Fend Reloaded) (Version: 0.9.3 - Alexander Herzog)
Director (Version: 45.4.157.000 - Hewlett-Packard) Hidden
DivX Setup (HKLM\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC)
DocProc (Version: 4.5.0.0 - Hewlett-Packard) Hidden
DocumentViewer (Version: 45.4.157.000 - Hewlett-Packard) Hidden
DVD Decrypter (Remove Only) (HKLM\...\DVD Decrypter) (Version:  - )
DVD Shrink 3.2 (HKLM\...\DVD Shrink_is1) (Version:  - DVD Shrink)
eMule (HKLM\...\eMule) (Version:  - )
Fallout (HKLM\...\Fallout) (Version:  - )
Fax (Version: 47.0.1.000 - Hewlett-Packard) Hidden
Fez (HKLM\...\GOGPACKFEZ_is1) (Version: 2.0.0.2 - GOG.com)
Google Chrome (HKLM\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
GPL Ghostscript (HKLM\...\GPL Ghostscript 9.10) (Version: 9.10 - Artifex Software Inc.)
HP Image Zone 4.7 (HKLM\...\HP Photo & Imaging) (Version: 4.7 - HP)
HP Product Assistant (Version: 2.0.0.0 - Hewlett-Packard) Hidden
HP PSC & OfficeJet 4.7 (HKLM\...\{342C7C88-D335-4bc2-8CF1-281857629CE2}) (Version:  - HP)
HPSystemDiagnostics (Version: 1.6.0.0 - Your Company Name) Hidden
HxD Hex Editor versione 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
InstantShare (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
Java 7 Update 65 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.650 - Oracle)
Java Auto Updater (Version: 2.1.65.19 - Oracle, Inc.) Hidden
La-Mulana  (HKLM\...\La-Mulana) (Version:  - ASTERIZM CO., LTD.)
Manuale dell'utente di Creative Live! Cam Video IM (Italiano) (HKLM\...\Manuale dell'utente di Creative Live! Cam Video IM Italian) (Version:  - )
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft) Hidden
Microsoft .NET Framework 1.1 Italian Language Pack (HKLM\...\{F2D2B58B-B2FD-46D1-8319-DCE564079934}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - ITA (HKLM\...\{71CB2612-627C-3D58-8D82-B77444B27B6A}) (Version: 2.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - ITA (HKLM\...\{59EC5F32-D8D7-3909-B0CB-255AD09F5993}) (Version: 3.1.21022 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 - Language Pack (italiano) (HKLM\...\Microsoft .NET Framework 3.5 Language Pack - ita) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 Language Pack - ita (Version: 3.5.21022 - Microsoft Corporation) Hidden
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office XP Professional con FrontPage (HKLM\...\{90280410-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{5b6b8fa4-b54c-4388-ba7f-1f8b39b1abea}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
mIRC (HKLM\...\mIRC) (Version: 7.22 - mIRC Co. Ltd.)
MKV Player 2.1.7 (HKLM\...\MKV Player_is1) (Version:  - )
Mozilla Firefox 30.0 (x86 it) (HKLM\...\Mozilla Firefox 30.0 (x86 it)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSVCRT (Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 6.0 Parser (KB927977) (HKLM\...\{5A710547-B58E-488B-828D-CA9A25A0533C}) (Version: 6.00.3890.0 - Microsoft Corporation)
Nero 6 Ultra Edition (HKLM\...\Nero - Burning Rom!UninstallKey) (Version:  - )
Notepad++ (HKLM\...\Notepad++) (Version: 5.9 - )
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version:  - )
NVIDIA Install Application (Version: 2.1002.124.810 - NVIDIA Corporation) Hidden
NVIDIA PhysX (Version: 9.13.0604 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation)
OpenAL (HKLM\...\OpenAL) (Version:  - )
OpenOffice.org 3.2 (HKLM\...\{691BD252-796D-4AE3-924C-C48A1CD4BEDF}) (Version: 3.2.9502 - OpenOffice.org)
Pacchetto di compatibilità per Office System 2007 (HKLM\...\{90120000-0020-0410-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
PanoStandAlone (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Papers, Please (HKLM\...\Steam App 239030) (Version:  - 3909)
PDF Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
Peggle Nights Deluxe 1.00 (HKLM\...\Peggle Nights Deluxe 1.00) (Version:  - )
PhotoGallery (Version: 45.4.157.000 - Hewlett-Packard) Hidden
pl2_screensaver (HKLM\...\pl2_screensaver) (Version:  - )
ProductContext (Version: 47.1.14.000 - Hewlett-Packard) Hidden
Proun (HKLM\...\Proun) (Version:  - )
QFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden
QuickTime (HKLM\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.)
Reader for PC (HKLM\...\{91605026-DBBF-48FF-B703-F7719CE3F703}) (Version: 1.1.05.13310 - Sony Corporation)
Readme (Version: 47.0.1.000 - Hewlett-Packard) Hidden
RealPlayer (HKLM\...\RealPlayer 6.0) (Version:  - RealNetworks)
REALTEK GbE & FE Ethernet PCI-E NIC Driver (HKLM\...\{C9BED750-1211-4480-B1A5-718A3BE15525}) (Version: 1.23.0000 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.6343 - Realtek Semiconductor Corp.)
Revenge of the Titans (HKLM\...\Revenge of the Titans) (Version: 1.80.10 - Jimbo)
Scan (Version: 4.5.0.0 - Hewlett-Packard) Hidden
ScannerCopy (Version: 4.5.0.0 - Hewlett-Packard) Hidden
ScummVM 1.5.0 (HKLM\...\ScummVM_is1) (Version:  - The ScummVM Team)
Segoe UI (Version: 14.0.4327.805 - Microsoft Corp) Hidden
SequoiaView (HKLM\...\SequoiaView) (Version:  - )
SkinsHP1 (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Skype™ 6.14 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
SpeedFan (remove only) (HKLM\...\SpeedFan) (Version:  - )
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited)
SpywareBlaster 5.0 (HKLM\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC)
Steam (HKLM\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Strumento di caricamento di Windows Live (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Supporto applicazioni Apple (HKLM\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TrayApp (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Ubisoft Game Launcher (HKLM\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Unload (Version: 4.5.0 - Hewlett-Packard) Hidden
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation)
USB Network Driver (HKLM\...\{66ED8E01-C915-41F5-B33E-C5C31F27B885}) (Version: V3.70a - )
VC 9.0 Runtime (Version: 1.0.0 - Check Point Software Technologies Ltd) Hidden
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0 - DivX, Inc) Hidden
VDMSound 2.0.4 (HKLM\...\{8ECBE643-8230-11D5-9D6B-00A024112F81}) (Version: 2.0.4.0 - VDMSound Project)
VLC media player 1.1.11 (HKLM\...\VLC media player) (Version: 1.1.11 - VideoLAN)
VobSub v2.23 (Remove Only) (HKLM\...\VobSub) (Version:  - )
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
WebReg (Version: 45.4.157.000 - Hewlett-Packard) Hidden
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows Live Call (Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
Windows Live Communications Platform (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Essentials (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Windows Live Messenger (Version: 14.0.8117.0416 - Microsoft Corporation) Hidden
WinRAR 4.00 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)
XML Paper Specification Shared Components Language Pack 1.0 (Version:  - Microsoft Corporation) Hidden
XML Paper Specification Shared Components Pack 1.0 (Version:  - Microsoft Corporation) Hidden
Zip Motion Block Video codec (Remove Only) (HKLM\...\ZMBV) (Version:  - DOSBox Team)
ZoneAlarm Firewall (Version: 10.2.072.000 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Free Firewall (HKLM\...\ZoneAlarm Free Firewall) (Version: 10.2.068.000 - Check Point)
ZoneAlarm LTD Toolbar (HKLM\...\ZoneAlarm LTD Toolbar) (Version:  - Check Point Software Technologies)
ZoneAlarm Security (Version: 10.2.072.000 - Check Point Software Technologies Ltd.) Hidden

========================= Memory info: ===================================

Percentage of memory in use: 28%
Total physical RAM: 2047.02 MB
Available physical RAM: 1457.89 MB
Total Pagefile: 3942.93 MB
Available Pagefile: 3406.98 MB
Total Virtual: 2047.88 MB
Available Virtual: 1973.1 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:465.75 GB) (Free:3.35 GB) NTFS
2 Drive d: (Registrazioni) (CDROM) (Total:4.3 GB) (Free:0 GB) CDFS

========================= Users: ========================================

Account utente per \\TOM

Administrator            Alessandro               ASPNET                   
Guest                    HelpAssistant            SUPPORT_388945a0         
Esecuzione comando riuscita.


**** End of log ****
 



#7 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 16 July 2014 - 09:57 AM

16:55:35.0625 0x0244  TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
16:55:48.0578 0x0244  ============================================================
16:55:48.0578 0x0244  Current date / time: 2014/07/16 16:55:48.0578
16:55:48.0578 0x0244  SystemInfo:
16:55:48.0578 0x0244  
16:55:48.0578 0x0244  OS Version: 5.1.2600 ServicePack: 3.0
16:55:48.0578 0x0244  Product type: Workstation
16:55:48.0578 0x0244  ComputerName: TOM
16:55:48.0578 0x0244  UserName: Alessandro
16:55:48.0578 0x0244  Windows directory: C:\WINDOWS
16:55:48.0578 0x0244  System windows directory: C:\WINDOWS
16:55:48.0578 0x0244  Processor architecture: Intel x86
16:55:48.0578 0x0244  Number of processors: 2
16:55:48.0578 0x0244  Page size: 0x1000
16:55:48.0578 0x0244  Boot type: Normal boot
16:55:48.0578 0x0244  ============================================================
16:55:55.0062 0x0244  KLMD registered as C:\WINDOWS\system32\drivers\18008395.sys
16:55:55.0609 0x0244  System UUID: {2616CFC7-CB22-E475-72B9-D487045E04BC}
16:55:56.0343 0x0244  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
16:55:56.0343 0x0244  ============================================================
16:55:56.0343 0x0244  \Device\Harddisk0\DR0:
16:55:56.0343 0x0244  MBR partitions:
16:55:56.0343 0x0244  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A380D41
16:55:56.0343 0x0244  ============================================================
16:55:56.0375 0x0244  C: <-> \Device\Harddisk0\DR0\Partition1
16:55:56.0375 0x0244  ============================================================
16:55:56.0375 0x0244  Initialize success
16:55:56.0375 0x0244  ============================================================
16:56:02.0640 0x0e8c  ============================================================
16:56:02.0640 0x0e8c  Scan started
16:56:02.0640 0x0e8c  Mode: Manual;
16:56:02.0640 0x0e8c  ============================================================
16:56:02.0640 0x0e8c  KSN ping started
16:56:05.0546 0x0e8c  KSN ping finished: true
16:56:07.0671 0x0e8c  ================ Scan system memory ========================
16:56:07.0671 0x0e8c  System memory - ok
16:56:07.0671 0x0e8c  ================ Scan services =============================
16:56:07.0765 0x0e8c  [ 2F0386C44AEEBDF02E477F0A932A9FD0, 65817275DB1ED65E6A912AC5837A45D88F7FE5AD1A987B94D54A2486C5162551 ] 6to4            C:\WINDOWS\System32\6to4svc.dll
16:56:07.0765 0x0e8c  6to4 - ok
16:56:07.0828 0x0e8c  Abiosdsk - ok
16:56:07.0828 0x0e8c  abp480n5 - ok
16:56:07.0859 0x0e8c  [ D766E636187B8F240BBFBABCD51EB2C6, 7B4CA12B475DCD25BD1E7B0D97BCD7ACCA2B937C413725A25DE414FDDDF3E435 ] ACPI            C:\WINDOWS\system32\DRIVERS\ACPI.sys
16:56:07.0859 0x0e8c  ACPI - ok
16:56:07.0906 0x0e8c  [ 49AC5CD87FBDDA62F3E25190019E7627, E2AF6436C460CB7FC8E5458383395C94E155120730887E611841D39C33A6B0FA ] ACPIEC          C:\WINDOWS\system32\drivers\ACPIEC.sys
16:56:07.0906 0x0e8c  ACPIEC - ok
16:56:07.0984 0x0e8c  [ A6B6AB9502B63F43A9A56AE6AFB22078, DD1F0BA3D8F3333F52A71EAE3719A001F6EF844D647FFABF0E4C56C6C764ACA7 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
16:56:07.0984 0x0e8c  AdobeFlashPlayerUpdateSvc - ok
16:56:08.0000 0x0e8c  adpu160m - ok
16:56:08.0015 0x0e8c  [ 8BED39E3C35D6A489438B8141717A557, 1B5796E56B0927360CE0759641B1151828BC0A9E45620D2B2D880491F5CE33D0 ] aec             C:\WINDOWS\system32\drivers\aec.sys
16:56:08.0015 0x0e8c  aec - ok
16:56:08.0062 0x0e8c  [ 1E44BC1E83D8FD2305F8D452DB109CF9, CF5EC07E0B589FA2A4701C6CFD69E893FC3ABF274AD57AE3C13FFE49063B02C8 ] AFD             C:\WINDOWS\System32\drivers\afd.sys
16:56:08.0062 0x0e8c  AFD - ok
16:56:08.0062 0x0e8c  Aha154x - ok
16:56:08.0062 0x0e8c  aic78u2 - ok
16:56:08.0062 0x0e8c  aic78xx - ok
16:56:08.0093 0x0e8c  [ 14A077AD0CF6116D1102631D8E1EDEE8, 86F05D20687B2C1271CACDCD2BBE397AFB27A0FDA8EF27922D56AF1CCDF03C41 ] Alerter         C:\WINDOWS\system32\alrsvc.dll
16:56:08.0093 0x0e8c  Alerter - ok
16:56:08.0125 0x0e8c  [ 79FE2E0D7859738225816658F0BB2A0D, CD9502C805756F4AAA1DCC535AC51DBD4D66EDCC00DC9BFE555BA33762905A5B ] ALG             C:\WINDOWS\System32\alg.exe
16:56:08.0125 0x0e8c  ALG - ok
16:56:08.0125 0x0e8c  AliIde - ok
16:56:08.0218 0x0e8c  [ 267FC636801EDC5AB28E14036349E3BE, CFEF5DF5F9BE820283376BB86DB3CF6609C02D316A742E17459A2BFA42E724E0 ] Ambfilt         C:\WINDOWS\system32\drivers\Ambfilt.sys
16:56:08.0296 0x0e8c  Ambfilt - ok
16:56:08.0312 0x0e8c  amsint - ok
16:56:08.0343 0x0e8c  [ 9062ED05B7519324FD7F0D6AFB9D1147, 1DF6B70CDB74D5F91CB8FC88CD83FB351ED5FF79DA3283674CBD79463C66AFBC ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
16:56:08.0343 0x0e8c  AppMgmt - ok
16:56:08.0343 0x0e8c  asc - ok
16:56:08.0359 0x0e8c  asc3350p - ok
16:56:08.0359 0x0e8c  asc3550 - ok
16:56:08.0437 0x0e8c  [ 776ACEFA0CA9DF0FAA51A5FB2F435705, 72DF7ED6B085BC468994F5B3189506FD726A9A17A9C42ACA1E420D787691361D ] aspnet_state    C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
16:56:08.0484 0x0e8c  aspnet_state - ok
16:56:08.0515 0x0e8c  [ 3BFBB5DAE801CB893B8B46345FED6437, 2C2B71C1294585265D4871E74F17541500CA20DE34AC516F2A906DD81964C833 ] aswHwid         C:\WINDOWS\system32\drivers\aswHwid.sys
16:56:08.0515 0x0e8c  aswHwid - ok
16:56:08.0531 0x0e8c  [ C3014C735F450FE822C97FFBB0627113, 1CCFE845AED1757B8C1F52D310933076FF1EC197D82E499DB4592B09D66137B0 ] aswMonFlt       C:\WINDOWS\system32\drivers\aswMonFlt.sys
16:56:08.0531 0x0e8c  aswMonFlt - ok
16:56:08.0546 0x0e8c  [ D6C9024F5D14843D33ADA8A6A10A1BE1, D40022D0A360FD4010D3D5D452BBC4CE9EE68224DEAB9584626E6F435E128857 ] aswRdr          C:\WINDOWS\system32\drivers\aswRdr.sys
16:56:08.0546 0x0e8c  aswRdr - ok
16:56:08.0562 0x0e8c  [ B7750AF7EDFD95674EB7CA92BCDD3358, A097577004F3CF71E2F9465F02B073D39926D7DEE2E2A9516D888158A5CB19E9 ] aswRvrt         C:\WINDOWS\system32\drivers\aswRvrt.sys
16:56:08.0562 0x0e8c  aswRvrt - ok
16:56:08.0593 0x0e8c  [ 51FDE588D860857A97E4C4B560E40C9B, 8A3AC3E55249DAE6CCD95593989F8B100D5C4712A16681A36E5D0F2F08BD57AA ] aswSnx          C:\WINDOWS\system32\drivers\aswSnx.sys
16:56:08.0609 0x0e8c  aswSnx - ok
16:56:08.0640 0x0e8c  [ 1AEB8CDB797666AF709A291B47AE81E0, 12AC4DBC6338BA5E5C04B449FF8362E7EC8EBFCA675C4F21BE847DFDCAE8F7C9 ] aswSP           C:\WINDOWS\system32\drivers\aswSP.sys
16:56:08.0640 0x0e8c  aswSP - ok
16:56:08.0656 0x0e8c  [ 26C51C289E39E8EE0F12B8B06B71E436, 81382FC3E836698432EE832A166F09251CC9164B17584E90F73037A1FA54E4F7 ] aswTdi          C:\WINDOWS\system32\drivers\aswTdi.sys
16:56:08.0656 0x0e8c  aswTdi - ok
16:56:08.0656 0x0e8c  [ 90BEE0170D70D6744CEF2355EEAF8086, 8F9FF53F529B854934020E2F8163605DC794FF48464D3D4439BAAF70ECE8E963 ] aswVmm          C:\WINDOWS\system32\drivers\aswVmm.sys
16:56:08.0671 0x0e8c  aswVmm - ok
16:56:08.0687 0x0e8c  [ B153AFFAC761E7F5FCFA822B9C4E97BC, 7E60F572A6B3C6219E3C86225AA37243AFFD74337DB7F108B04778042E5CC959 ] AsyncMac        C:\WINDOWS\system32\DRIVERS\asyncmac.sys
16:56:08.0687 0x0e8c  AsyncMac - ok
16:56:08.0718 0x0e8c  [ 9F3A2F5AA6875C72BF062C712CFA2674, B4DF1D2C56A593C6B54DE57395E3B51D288F547842893B32B0F59228A0CF70B9 ] atapi           C:\WINDOWS\system32\DRIVERS\atapi.sys
16:56:08.0718 0x0e8c  atapi - ok
16:56:08.0734 0x0e8c  Atdisk - ok
16:56:08.0750 0x0e8c  [ 9916C1225104BA14794209CFA8012159, 5D6F05F715C52A16D05CAE15C3DFE77A139A7F27F7AE710EC9A10F9EE05115A1 ] Atmarpc         C:\WINDOWS\system32\DRIVERS\atmarpc.sys
16:56:08.0750 0x0e8c  Atmarpc - ok
16:56:08.0781 0x0e8c  [ 1B58D118049304E88464BE614C6D0014, 4925C9EFF5B44706D654FDBD414F1BD121FD087F2405968C3DBB55AFF317B130 ] AudioSrv        C:\WINDOWS\System32\audiosrv.dll
16:56:08.0781 0x0e8c  AudioSrv - ok
16:56:08.0781 0x0e8c  [ D9F724AA26C010A217C97606B160ED68, 329B5118F2409731D06FDAE85B6ADD64A048292801BCB3546651CEB303111695 ] audstub         C:\WINDOWS\system32\DRIVERS\audstub.sys
16:56:08.0796 0x0e8c  audstub - ok
16:56:08.0875 0x0e8c  [ 73F5C13B431915BAE35254B4E95DFB71, 393A045859382C44133C004598B1512048046BCC129FED2247A77FDBFCDB6DFF ] avast! Antivirus C:\Programmi\AVAST Software\Avast\AvastSvc.exe
16:56:08.0875 0x0e8c  avast! Antivirus - ok
16:56:08.0921 0x0e8c  [ DA1F27D85E0D1525F6621372E7B685E9, 5A81A46A3BDD19DAFC6C87D277267A5D44F3A1B5302F2CC1111D84B7BAD5610D ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
16:56:08.0921 0x0e8c  Beep - ok
16:56:08.0968 0x0e8c  [ 48C4763A9C8990FB48B73445BEB15D6A, 6D82346967D2D5F53FC6EF401C0187BB4D2EA304421C6FC5CB1E9F751FED2D80 ] BITS            C:\WINDOWS\system32\qmgr.dll
16:56:09.0109 0x0e8c  BITS - ok
16:56:09.0140 0x0e8c  [ 076D11B52F066ED33E3A80F8070A3E2E, 4CC4A71D3CB790D2D28F60E8AB955677EB67BB7CE5B087DC21E4EE07EE1B0858 ] Browser         C:\WINDOWS\System32\browser.dll
16:56:09.0156 0x0e8c  Browser - ok
16:56:09.0171 0x0e8c  [ 90A673FC8E12A79AFBED2576F6A7AAF9, BDE7858A3457DB979FEDD8577FA6321BF72848E4A7BF9F173C78A6A10CBB3EBE ] cbidf2k         C:\WINDOWS\system32\drivers\cbidf2k.sys
16:56:09.0187 0x0e8c  cbidf2k - ok
16:56:09.0218 0x0e8c  [ 0BE5AEF125BE881C4F854C554F2B025C, 1770DD70B3F115A0EF460907DEDC1E4B7241C08615A98F194D61A49C3E2BAA54 ] CCDECODE        C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
16:56:09.0218 0x0e8c  CCDECODE - ok
16:56:09.0218 0x0e8c  cd20xrnt - ok
16:56:09.0234 0x0e8c  [ C1B486A7658353D33A10CC15211A873B, AA4DD9E7AAE5AAB1146B360B17001F975D2F29A1281CF7B13E7136480410F347 ] Cdaudio         C:\WINDOWS\system32\drivers\Cdaudio.sys
16:56:09.0250 0x0e8c  Cdaudio - ok
16:56:09.0281 0x0e8c  [ C885B02847F5D2FD45A24E219ED93B32, B26B2F8E3A831E2B65EB0C5195B0645CD50E22615CE79C9B0B391CD563B121DB ] Cdfs            C:\WINDOWS\system32\drivers\Cdfs.sys
16:56:09.0281 0x0e8c  Cdfs - ok
16:56:09.0312 0x0e8c  [ 4B0A100EAF5C49EF3CCA8C641431EACC, 88D9C066FFB863910EE1863CE63D38846ACA2DF72D6B5FDFCE0F3379A6DA5EF9 ] Cdrom           C:\WINDOWS\system32\DRIVERS\cdrom.sys
16:56:09.0312 0x0e8c  Cdrom - ok
16:56:09.0312 0x0e8c  Changer - ok
16:56:09.0343 0x0e8c  [ D04F2BEB5EA63D0766E12E44AEF7C38D, 7D2F5173F4EC4BD27094F6E1D123D274EE0B9A9A8732F30F8057A14913A2E6A7 ] CiSvc           C:\WINDOWS\system32\cisvc.exe
16:56:09.0343 0x0e8c  CiSvc - ok
16:56:09.0375 0x0e8c  [ 48CB1DEFA1A6506C3CF09E4950F82EF6, FAF3A4636242DD51EB5806337C15A8735FE0D4DBA6797CA564EC5A87F35279FC ] ClipSrv         C:\WINDOWS\system32\clipsrv.exe
16:56:09.0375 0x0e8c  ClipSrv - ok
16:56:09.0453 0x0e8c  [ D87ACAED61E417BBA546CED5E7E36D9C, 14AC6034A5BC0FB2A1AFDAD42BEF4DE641556E54AD30D0C46765660A4BE55462 ] clr_optimization_v2.0.50727_32 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
16:56:09.0453 0x0e8c  clr_optimization_v2.0.50727_32 - ok
16:56:09.0500 0x0e8c  [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
16:56:09.0593 0x0e8c  clr_optimization_v4.0.30319_32 - ok
16:56:09.0593 0x0e8c  CmdIde - ok
16:56:09.0593 0x0e8c  COMSysApp - ok
16:56:09.0593 0x0e8c  Cpqarray - ok
16:56:09.0640 0x0e8c  [ B6FCBB157E9C8ABDCA4134C535535A8B, 03D8D24A277F22F81FC7294D626A1169AC862CD9DD45508FB9E13766B383482B ] CryptSvc        C:\WINDOWS\System32\cryptsvc.dll
16:56:09.0640 0x0e8c  CryptSvc - ok
16:56:09.0640 0x0e8c  dac2w2k - ok
16:56:09.0640 0x0e8c  dac960nt - ok
16:56:09.0687 0x0e8c  [ BC4E0226341AAEC1222336B3AED86BAB, CBE39840A484EC182133B18794BD5AAFCC25C306B5F497CA22BFC8321C12F88F ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
16:56:09.0703 0x0e8c  DcomLaunch - ok
16:56:09.0750 0x0e8c  [ 699EE7F752A25180AEB92C3A0EAEE440, 4AC5439470AD8481EB0C8AD82DAC6D39A520CB82DF5CCB2C422B7354DC290F4F ] Dhcp            C:\WINDOWS\System32\dhcpcsvc.dll
16:56:09.0750 0x0e8c  Dhcp - ok
16:56:09.0765 0x0e8c  [ 044452051F3E02E7963599FC8F4F3E25, 584BDDB074618BE76454CF90E74829CFF588B5B5FAEB793E2F7AAD26352DD689 ] Disk            C:\WINDOWS\system32\DRIVERS\disk.sys
16:56:09.0781 0x0e8c  Disk - ok
16:56:09.0781 0x0e8c  dmadmin - ok
16:56:09.0812 0x0e8c  [ 82BC125A8ED33F5F0E75F2AAC1065323, D062D2FCBF3A29A543505060C0E8B8E9F13B07B3B4F9EB113DA374C6E0A41DB3 ] dmboot          C:\WINDOWS\system32\drivers\dmboot.sys
16:56:09.0843 0x0e8c  dmboot - ok
16:56:09.0843 0x0e8c  [ E959DDC0EA7AC11EE5E5602E2A364310, 49E8229E8695657D1E814C47D441E16BA354DA6DA21BCCC07DB707D06D5C6B2F ] dmio            C:\WINDOWS\system32\drivers\dmio.sys
16:56:09.0859 0x0e8c  dmio - ok
16:56:09.0859 0x0e8c  [ E9317282A63CA4D188C0DF5E09C6AC5F, D41E002F555FE9015EF620975255F58BB79198CA1FF0E09EC950CB450FF77CF7 ] dmload          C:\WINDOWS\system32\drivers\dmload.sys
16:56:09.0859 0x0e8c  dmload - ok
16:56:09.0890 0x0e8c  [ A01858C50704B2D2EDEEBBF6BBBCED2A, 64C05CE32BBA5D38FADA1FC0EA10080F9B0286D399C9C4362BB574C89F36A13A ] dmserver        C:\WINDOWS\System32\dmserver.dll
16:56:09.0890 0x0e8c  dmserver - ok
16:56:09.0937 0x0e8c  [ 8A208DFCF89792A484E76C40E5F50B45, 4E40E2EB38C6254E7CAA488200E89EE7DEBBBA773890BC6A84313CC68178D54F ] DMusic          C:\WINDOWS\system32\drivers\DMusic.sys
16:56:09.0937 0x0e8c  DMusic - ok
16:56:09.0984 0x0e8c  [ B7A1162B1A26DF7B60D5D9500006096C, CB008A400BB25B32095172E7F6B04AE83C90460308F784F3EF9BD9980496F7CE ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
16:56:09.0984 0x0e8c  Dnscache - ok
16:56:10.0000 0x0e8c  [ D580D77DFF316BD8C9D73B38695DE8DC, 87456B4B8644E1E19BFA929F216A45A13A13B7795829713203D2AC825473380B ] Dot3svc         C:\WINDOWS\System32\dot3svc.dll
16:56:10.0015 0x0e8c  Dot3svc - ok
16:56:10.0015 0x0e8c  dpti2o - ok
16:56:10.0046 0x0e8c  [ 8F5FCFF8E8848AFAC920905FBD9D33C8, C8C6FB97AB0871C8C88A2201525A5CF10D5131CB6980D32692ED7A8F58399AD5 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
16:56:10.0046 0x0e8c  drmkaud - ok
16:56:10.0062 0x0e8c  [ 86B1F123BACD444E81960B339BAE3FF2, B00AA9ADB902B527C9694AD9CD12BE7F0C5385BA1F11A2BF878D0C37D7AF975A ] EapHost         C:\WINDOWS\System32\eapsvc.dll
16:56:10.0078 0x0e8c  EapHost - ok
16:56:10.0078 0x0e8c  [ B6599EDA9F3EBEF064504EE35BBECA1C, 85AED431255F65EF2F90557B59FD36C038E983EFE30388948657F3F3E6712AE0 ] ERSvc           C:\WINDOWS\System32\ersvc.dll
16:56:10.0078 0x0e8c  ERSvc - ok
16:56:10.0109 0x0e8c  [ A55DD7D8CED5D2624A9EE2DDA7BE0319, 561C010E1E0102D63C6EBAA98145FAA57A4B9E8FBBCAE362FD072B18EF2E88E4 ] es1371          C:\WINDOWS\system32\drivers\es1371mp.sys
16:56:10.0109 0x0e8c  es1371 - ok
16:56:10.0140 0x0e8c  [ 26845F272435302E0F3322E660A24F7D, 3034AA4913525B0BB8761A3A1741DDB65E0B87DA6C90B481DD458B2253083DA3 ] Eventlog        C:\WINDOWS\system32\services.exe
16:56:10.0156 0x0e8c  Eventlog - ok
16:56:10.0203 0x0e8c  [ 8360CB9756E598A5C6214EACFB3677C3, 6E63B47D1D9966C3880C88FEE78A2531A3533E29D9DACAABA14D0F1FA5C3961F ] EventSystem     C:\WINDOWS\system32\es.dll
16:56:10.0203 0x0e8c  EventSystem - ok
16:56:10.0218 0x0e8c  [ 38D332A6D56AF32635675F132548343E, E6909DB836AF679B4F4D62C7396D6C82769CC7ABB8C919C2AABFE934FCE268F6 ] Fastfat         C:\WINDOWS\system32\drivers\Fastfat.sys
16:56:10.0218 0x0e8c  Fastfat - ok
16:56:10.0265 0x0e8c  [ DCCC606FC144F6E44E497F9A906F1C30, 961D1A633BAE3634BA649BE4D7CD01836072A5956D3BD8F0AE3241DF55ED884C ] FastUserSwitchingCompatibility C:\WINDOWS\System32\shsvcs.dll
16:56:10.0281 0x0e8c  FastUserSwitchingCompatibility - ok
16:56:10.0281 0x0e8c  [ 92CDD60B6730B9F50F6A1A0C1F8CDC81, 8307A532AB4D05CBBCE206DC2759497708BF5AAA880BD00F0E4F281D8578A1F5 ] Fdc             C:\WINDOWS\system32\drivers\Fdc.sys
16:56:10.0296 0x0e8c  Fdc - ok
16:56:10.0296 0x0e8c  [ 2CFEA3326981A18C6BAF2BD9BE76225B, 0D55F67AEA1F18E7C5C279C09B54B6360B6C01901BC0D6004D7C46784684BBFC ] Fips            C:\WINDOWS\system32\drivers\Fips.sys
16:56:10.0296 0x0e8c  Fips - ok
16:56:10.0359 0x0e8c  [ 227846995AFEEFA70D328BF5334A86A5, B8EF22DE552B44E7DC352742C775BB6B4992B653AF4B66B231A60182CE7A7201 ] FLEXnet Licensing Service C:\Programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
16:56:10.0375 0x0e8c  FLEXnet Licensing Service - ok
16:56:10.0390 0x0e8c  [ 9D27E7B80BFCDF1CDD9B555862D5E7F0, 69C271AD5BCEBFD8AE5A769BDD7EC51256DA3A8ADAD5D12E5C0D13F4E82D8805 ] Flpydisk        C:\WINDOWS\system32\drivers\Flpydisk.sys
16:56:10.0390 0x0e8c  Flpydisk - ok
16:56:10.0421 0x0e8c  [ B2CF4B0786F8212CB92ED2B50C6DB6B0, 280F5CF8A90F7BEDE73ADD0DD0F8952088133A7CA9A3D3B7041957E33B36845D ] FltMgr          C:\WINDOWS\system32\DRIVERS\fltMgr.sys
16:56:10.0421 0x0e8c  FltMgr - ok
16:56:10.0500 0x0e8c  [ 8BA7C024070F2B7FDD98ED8A4BA41789, 47585006F86B2C6016EC54250A416794792D1E4024FF229C120BC25B684AF66A ] FontCache3.0.0.0 c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
16:56:10.0500 0x0e8c  FontCache3.0.0.0 - ok
16:56:10.0515 0x0e8c  [ 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A, EC635E071201A766845D48973772CBE0958942B4162F3F5F70660D114CC877E0 ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
16:56:10.0515 0x0e8c  Fs_Rec - ok
16:56:10.0531 0x0e8c  [ F3269A6EE547EA87B949A1CEA4816B38, FD0D11864A1C89F2E6E765BFE7D395F65019C20A9AECDA0ED31AB17296F26A44 ] Ftdisk          C:\WINDOWS\system32\DRIVERS\ftdisk.sys
16:56:10.0531 0x0e8c  Ftdisk - ok
16:56:10.0562 0x0e8c  [ 065639773D8B03F33577F6CDAEA21063, F20D0F3256F5F894CCA48755B23679619B5D02A0F64A142FC6CB619FC0952067 ] gameenum        C:\WINDOWS\system32\DRIVERS\gameenum.sys
16:56:10.0562 0x0e8c  gameenum - ok
16:56:10.0578 0x0e8c  [ 77EBF3E9386DAA51551AF429052D88D0, 94C3294BB9E14B07448734AE65B37801D3FF15BEC987D182A929A017FEF7B276 ] giveio          C:\WINDOWS\system32\giveio.sys
16:56:10.0578 0x0e8c  giveio - ok
16:56:10.0609 0x0e8c  [ 0A02C63C8B144BD8C86B103DEE7C86A2, 7A3235DD3E1995DD72B212FAEB3ECA2A974434DE9BF6D269EA11BA65A80E7E50 ] Gpc             C:\WINDOWS\system32\DRIVERS\msgpc.sys
16:56:10.0609 0x0e8c  Gpc - ok
16:56:10.0687 0x0e8c  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate         C:\Programmi\Google\Update\GoogleUpdate.exe
16:56:10.0687 0x0e8c  gupdate - ok
16:56:10.0703 0x0e8c  [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem        C:\Programmi\Google\Update\GoogleUpdate.exe
16:56:10.0703 0x0e8c  gupdatem - ok
16:56:10.0703 0x0e8c  h647906 - ok
16:56:10.0703 0x0e8c  h648101 - ok
16:56:10.0718 0x0e8c  h648103 - ok
16:56:10.0750 0x0e8c  [ 573C7D0A32852B48F3058CFD8026F511, BC384BBA394AFDCDA1A9ABC858C692AA84A1F0A31AF3DDF7F38D120C027927FB ] HDAudBus        C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
16:56:10.0765 0x0e8c  HDAudBus - ok
16:56:10.0765 0x0e8c  HDD & SSD access service - ok
16:56:10.0843 0x0e8c  [ 6CE66B51B4EB23D9D073F92698C55C8D, 0E639A74CF876FF55965BB65469CFEB986522600D59F067E6FE3D33AE963C017 ] helpsvc         C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
16:56:10.0843 0x0e8c  helpsvc - ok
16:56:10.0875 0x0e8c  [ 0B327E336604FBCCCEDEB86F3D679CA8, CA041FCE7F166835FE6F435B38737ECED95860868F079E1E2E5CBB64D337A6C8 ] hid7906         C:\WINDOWS\system32\drivers\hid7906.sys
16:56:10.0875 0x0e8c  hid7906 - ok
16:56:10.0906 0x0e8c  [ CADE474A8F6716E27A678492DD20B7CA, 75CAC88000F744481D5717F3A5E44622FAA1B5587E0D8851C5DDA2C9F87493CA ] hid8101         C:\WINDOWS\system32\drivers\hid8101.sys
16:56:10.0906 0x0e8c  hid8101 - ok
16:56:10.0906 0x0e8c  [ D6BC365E11D3BA1372B8F25B4AF76248, EEEBC13A588BC3B1AECAE6183F1A230FA2396581CBB18D1153730AC2A4A1D4C3 ] hid8103         C:\WINDOWS\system32\drivers\hid8103.sys
16:56:10.0906 0x0e8c  hid8103 - ok
16:56:10.0937 0x0e8c  [ 43D985A9A51E0295091B6EBE84C96B78, BF92D6F16D4EB2EE4BD2C9CFB4D47E7652A75680AEF59962DE008073EC430ABB ] HidServ         C:\WINDOWS\System32\hidserv.dll
16:56:10.0937 0x0e8c  HidServ - ok
16:56:10.0953 0x0e8c  [ CCF82C5EC8A7326C3066DE870C06DAF1, 93395FA4C26B2E82DC8B7025ED3BCF583885E5D8C5F60CD6EEAA6335D6A126EC ] hidusb          C:\WINDOWS\system32\DRIVERS\hidusb.sys
16:56:10.0953 0x0e8c  hidusb - ok
16:56:11.0000 0x0e8c  [ 00CAD842F48947887A972828ACA665F7, 5A139B5E303B4C87D21C7D7DA9CA07AE676A3B31D0DF80883E74960F3AE8F364 ] hkmsvc          C:\WINDOWS\System32\kmsvc.dll
16:56:11.0000 0x0e8c  hkmsvc - ok
16:56:11.0000 0x0e8c  hpn - ok
16:56:11.0031 0x0e8c  [ 9F1D80908658EB7F1BF70809E0B51470, 84FD62D34BC63BA41027DD2164B1E4F86BC8783E8A601E9F189627A4B3D54AAA ] HPZid412        C:\WINDOWS\system32\DRIVERS\HPZid412.sys
16:56:11.0031 0x0e8c  HPZid412 - ok
16:56:11.0046 0x0e8c  [ F7E3E9D50F9CD3DE28085A8FDAA0A1C3, 886A5222940A6E14B359B45AA158390468B601FB58949E7F5BEC93B5459AF689 ] HPZipr12        C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
16:56:11.0046 0x0e8c  HPZipr12 - ok
16:56:11.0078 0x0e8c  [ CF1B7951B4EC8D13F3C93B74BB2B461B, 3A1B8A9A9AB0E916288AD6198C377E3A4D278DB3D8DCD4299F0ADC83973F0495 ] HPZius12        C:\WINDOWS\system32\DRIVERS\HPZius12.sys
16:56:11.0078 0x0e8c  HPZius12 - ok
16:56:11.0125 0x0e8c  [ F80A415EF82CD06FFAF0D971528EAD38, 524D9E9201572929522F6805011783711B7C0F76308B924C89CF75F4B7A1FDF3 ] HTTP            C:\WINDOWS\system32\Drivers\HTTP.sys
16:56:11.0140 0x0e8c  HTTP - ok
16:56:11.0187 0x0e8c  [ 450091AEBFCD08E5858533EAB5B9A436, 523792DA923FEF2BD4EE93D66FDE0B0DD3B35B68B30388B63B10411951F78843 ] HTTPFilter      C:\WINDOWS\System32\w3ssl.dll
16:56:11.0187 0x0e8c  HTTPFilter - ok
16:56:11.0187 0x0e8c  i2omgmt - ok
16:56:11.0187 0x0e8c  i2omp - ok
16:56:11.0203 0x0e8c  [ 610726E28AF55B95043C5C35A727E320, 795B1D388BB0EC2402F00AC023DBD194A569F11EF8EA239A2EAA1B9C712A9D05 ] i8042prt        C:\WINDOWS\system32\DRIVERS\i8042prt.sys
16:56:11.0203 0x0e8c  i8042prt - ok
16:56:11.0406 0x0e8c  [ D1359E54D9755D28E56B17A352AB8AAE, A3442CAEFCC3D24CE743AA96F5ECD71D0E46F77B1F0F52945585244812DA9A32 ] ialm            C:\WINDOWS\system32\DRIVERS\igxpmp32.sys
16:56:11.0562 0x0e8c  ialm - ok
16:56:11.0640 0x0e8c  [ C01AC32DC5C03076CFB852CB5DA5229C, A4D7749220B5BC965D96A267F1E02FE8284A230BA249109207BD4B9EA8DFAC96 ] idsvc           C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
16:56:11.0656 0x0e8c  idsvc - ok
16:56:11.0703 0x0e8c  [ 083A052659F5310DD8B6A6CB05EDCF8E, 48D39B03FFB6FAA1529B774443BA12618AE3982D9F65A7B9D18F2269F78B31F4 ] Imapi           C:\WINDOWS\system32\DRIVERS\imapi.sys
16:56:11.0703 0x0e8c  Imapi - ok
16:56:11.0718 0x0e8c  [ DB491237445F172FDDDF00541DE1A51D, C1D80CB3B6E610BBDFBE957D24CA3E398C4337A15C805CE81771E7E071ABAEE1 ] ImapiService    C:\WINDOWS\system32\imapi.exe
16:56:11.0718 0x0e8c  ImapiService - ok
16:56:11.0718 0x0e8c  ini910u - ok
16:56:11.0921 0x0e8c  [ 07CFD02E9BEDCF2D2CCF9F55B4E46616, ED8DBE385AA74BD8E54115FD08EFEFA5051EB9DF642A39C397D1E672CD04C498 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RtkHDAud.sys
16:56:12.0093 0x0e8c  IntcAzAudAddService - ok
16:56:12.0140 0x0e8c  [ 027FE9B28FB0F861C181D25923B31E78, 8B787E95D8489669F01A70C2C3A59A633C34B1756F58895AF8CF9CC021014B5C ] IntelIde        C:\WINDOWS\system32\DRIVERS\intelide.sys
16:56:12.0156 0x0e8c  IntelIde - ok
16:56:12.0156 0x0e8c  [ EBD830A0970C438047006A49C23E287F, C957E7E64D556D60218E761D9E1A2EA4B379739601937B25A50A5229A672A635 ] intelppm        C:\WINDOWS\system32\DRIVERS\intelppm.sys
16:56:12.0156 0x0e8c  intelppm - ok
16:56:12.0171 0x0e8c  [ 3BB22519A194418D5FEC05D800A19AD0, F6662F440950596DC1382DD1DB5D7891CCEA30A6062BEA942C18445B5F0D8B16 ] Ip6Fw           C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
16:56:12.0171 0x0e8c  Ip6Fw - ok
16:56:12.0203 0x0e8c  [ 731F22BA402EE4B62748ADAF6363C182, 5C3BEBD008A5BE4DC2F92076FF41A10DDC01E10EC7E6552213CFA11970811848 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
16:56:12.0203 0x0e8c  IpFilterDriver - ok
16:56:12.0218 0x0e8c  [ B87AB476DCF76E72010632B5550955F5, E6E74D3A86A7917A8BAED44F8E97CCD2EB171E4E4B27E9907F60D1523FAF319A ] IpInIp          C:\WINDOWS\system32\DRIVERS\ipinip.sys
16:56:12.0218 0x0e8c  IpInIp - ok
16:56:12.0234 0x0e8c  [ CC748EA12C6EFFDE940EE98098BF96BB, AF523E21C25D9A1715EFEA573E4F52AF5D4FC9F28A2D613F5DB629C186C439E0 ] IpNat           C:\WINDOWS\system32\DRIVERS\ipnat.sys
16:56:12.0234 0x0e8c  IpNat - ok
16:56:12.0250 0x0e8c  [ 23C74D75E36E7158768DD63D92789A91, 394D296F38E7D8EFD91A6EEC301D9CE6AF910E35EB9819F1A9E3363863AEDFDC ] IPSec           C:\WINDOWS\system32\DRIVERS\ipsec.sys
16:56:12.0250 0x0e8c  IPSec - ok
16:56:12.0281 0x0e8c  [ C93C9FF7B04D772627A3646D89F7BF89, 805FA48E7A46D4F10240BF880A2468F53DEA36E83004399228AB70DB7D20544A ] IRENUM          C:\WINDOWS\system32\DRIVERS\irenum.sys
16:56:12.0281 0x0e8c  IRENUM - ok
16:56:12.0296 0x0e8c  [ 0953594BEB81CC72FCC62D37921B25A6, 8E4912C4714ADA04D1A75032DC5932695021139846A6085950D195517F7D3180 ] isapnp          C:\WINDOWS\system32\DRIVERS\isapnp.sys
16:56:12.0296 0x0e8c  isapnp - ok
16:56:12.0375 0x0e8c  [ A195C4FC49492928E8296B8C4AB00517, C2BED617FE127EEEE111E97187A9828CD6E512527AEBAA3415ABE713ACC3E0F5 ] ISWKL           C:\Programmi\CheckPoint\ZAForceField\ISWKL.sys
16:56:12.0390 0x0e8c  ISWKL - ok
16:56:12.0437 0x0e8c  [ E78EACA70B4E0C260E4B32972B7086AC, A62F364D0D55C3862E36B613F02C46ED06BD2215E0E5FEBEFA77E8A6EA22D918 ] IswSvc          C:\Programmi\CheckPoint\ZAForceField\IswSvc.exe
16:56:12.0453 0x0e8c  IswSvc - ok
16:56:12.0500 0x0e8c  [ 92B9FCC20486767736D345C3B1CA6621, 3856290AB765D5BC7F5A845D906C82CD4730EF167C35568E4945F1FA75E367C2 ] JavaQuickStarterService C:\Programmi\Java\jre7\bin\jqs.exe
16:56:12.0500 0x0e8c  JavaQuickStarterService - ok
16:56:12.0546 0x0e8c  [ 28B6EACE513CA7EABA3B809AD4BC274D, 8079FE59F681070D67AE51D259BFF2C651AFECE182AE10E604B3BB6B2DBD81AD ] Kbdclass        C:\WINDOWS\system32\DRIVERS\kbdclass.sys
16:56:12.0546 0x0e8c  Kbdclass - ok
16:56:12.0546 0x0e8c  [ 4C61C226BDDA2EF1672B2C5F4E56625E, 81B229974C9059C3901E84AF54B84E22BCDC6FA163F14EC41204D4FEB5601F1D ] kbdhid          C:\WINDOWS\system32\DRIVERS\kbdhid.sys
16:56:12.0562 0x0e8c  kbdhid - ok
16:56:12.0593 0x0e8c  [ 692BCF44383D056AED41B045A323D378, 1A99DEE83FFAF64E73067FC049C0A4CE07D94E4AE31EFA17B38CEFA9E41D67DC ] kmixer          C:\WINDOWS\system32\drivers\kmixer.sys
16:56:12.0609 0x0e8c  kmixer - ok
16:56:12.0640 0x0e8c  [ B467646C54CC746128904E1654C750C1, 3BD71BE3663EA23463D236D8A2A2E42DFA10C502BDB4B6E131FAF0FBA748219E ] KSecDD          C:\WINDOWS\system32\drivers\KSecDD.sys
16:56:12.0640 0x0e8c  KSecDD - ok
16:56:12.0671 0x0e8c  [ 0F726D49C0B19E5A506A1CDFCE0EE42F, 5896344C186EC478F88AC4189B4636EAB686466E2E6D7E9ECD72147CF84892CE ] LanmanServer    C:\WINDOWS\System32\srvsvc.dll
16:56:12.0687 0x0e8c  LanmanServer - ok
16:56:12.0718 0x0e8c  [ E13B0181DDA60B93E3253EFF52A79CBE, C9204D714B3BA54C0793E57B95419BDE2D88A6C510B7622F6CA0788F7E88D435 ] lanmanworkstation C:\WINDOWS\System32\wkssvc.dll
16:56:12.0734 0x0e8c  lanmanworkstation - ok
16:56:12.0734 0x0e8c  lbrtfdc - ok
16:56:12.0781 0x0e8c  [ E01255727D0B158538D7C2B469B533A8, D56D004BA2381232AD4FAEBABAA6245DF62C1C69397F2533686515FBE7836310 ] LmHosts         C:\WINDOWS\System32\lmhsvc.dll
16:56:12.0781 0x0e8c  LmHosts - ok
16:56:12.0796 0x0e8c  [ 3B32F662C8607E891F325E41F7EE225C, 6118AF8D82FEA98AE29718DD60391337F7B027622A8F7EEAF0B60EAB8814FAAA ] Messenger       C:\WINDOWS\System32\msgsvc.dll
16:56:12.0812 0x0e8c  Messenger - ok
16:56:12.0828 0x0e8c  [ 4AE068242760A1FB6E1A44BF4E16AFA6, 1FB771162B96AAF787AC24867B818DF8511F0780BB094FA9A38C11D8DBFE68BC ] mnmdd           C:\WINDOWS\system32\drivers\mnmdd.sys
16:56:12.0828 0x0e8c  mnmdd - ok
16:56:12.0859 0x0e8c  [ 514A299EC926BAADA3C718B171476AA4, B546297504C120FDB56A059E4E93D3E0B21381128629A60ED9171E76FFBA7B2A ] mnmsrvc         C:\WINDOWS\system32\mnmsrvc.exe
16:56:12.0859 0x0e8c  mnmsrvc - ok
16:56:12.0906 0x0e8c  [ 8CB6636806D76B85FAFAEE94D75F5129, 7233A4832A97C2BEF6951676533AE157632B88C7CDD3BE74B810B6501A66D894 ] Modem           C:\WINDOWS\system32\drivers\Modem.sys
16:56:12.0906 0x0e8c  Modem - ok
16:56:12.0953 0x0e8c  [ C7D9F9717916B34C1B00DD4834AF485C, A9512A03E8142C83534189963F90ADA6FA425BD606928C40C3D724177105A658 ] Monfilt         C:\WINDOWS\system32\drivers\Monfilt.sys
16:56:12.0984 0x0e8c  Monfilt - ok
16:56:13.0031 0x0e8c  [ E904EBED608055A2BFB824C07F59766C, 032AB7397FD6B269EB4C6A71AF26284736AAD17E9EAA85A470A52FAA6FA48486 ] Mouclass        C:\WINDOWS\system32\DRIVERS\mouclass.sys
16:56:13.0031 0x0e8c  Mouclass - ok
16:56:13.0046 0x0e8c  [ D7662F0CF5B77BBBE3202716F5BD5318, F5B352F6A618CA125C587342296AB257115CE7ABC8B7098CDF83A73BDFC221C8 ] mouhid          C:\WINDOWS\system32\DRIVERS\mouhid.sys
16:56:13.0046 0x0e8c  mouhid - ok
16:56:13.0062 0x0e8c  [ A80B9A0BAD1B73637DBCBBA7DF72D3FD, 2A5E15ED2C24C6C65EF2F7E1FD93374774076C9D8D451E4422561F4D269C012F ] MountMgr        C:\WINDOWS\system32\drivers\MountMgr.sys
16:56:13.0062 0x0e8c  MountMgr - ok
16:56:13.0109 0x0e8c  [ 26EA1DAD601EE3ACAC301D66F07BA219, C9594BB15D53D4AC2156CCCD2DB65B2C20620F1F60DA85F48D1586FC10028096 ] MozillaMaintenance C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
16:56:13.0109 0x0e8c  MozillaMaintenance - ok
16:56:13.0109 0x0e8c  mraid35x - ok
16:56:13.0187 0x0e8c  [ 594B9D8194E3F4ECBF0325BD10BBEB05, BA002410AB77F129564FBA4BA2989B8E4E7128F81C016D742ADBAA40D55728F3 ] MRENDIS5        C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS
16:56:13.0203 0x0e8c  MRENDIS5 - ok
16:56:13.0203 0x0e8c  [ 11D42BB6206F33FBB3BA0288D3EF81BD, 76ABCFB62C5AC549F58C231F72A99882CDEB74928104B77FE52554765C2B1A22 ] MRxDAV          C:\WINDOWS\system32\DRIVERS\mrxdav.sys
16:56:13.0203 0x0e8c  MRxDAV - ok
16:56:13.0265 0x0e8c  [ 7D304A5EB4344EBEEAB53A2FE3FFB9F0, DB9B186F7076D7B94F45041AF7B77C1AD2CAB504D683B459C6CB1C22840ED170 ] MRxSmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
16:56:13.0265 0x0e8c  MRxSmb - ok
16:56:13.0296 0x0e8c  [ 01F77E9E473235C31796ADE46107B0AD, 89CE41DF55751C016E61F8C625B4050B86A01F7ED3D48B8BD01E82F3B8261C9F ] MSDTC           C:\WINDOWS\system32\msdtc.exe
16:56:13.0312 0x0e8c  MSDTC - ok
16:56:13.0312 0x0e8c  [ C941EA2454BA8350021D774DAF0F1027, C940E978C7B66A713A0FDAB54B5F995DF59D089AFCD96221DD3222948CD49BBD ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
16:56:13.0312 0x0e8c  Msfs - ok
16:56:13.0312 0x0e8c  MSIServer - ok
16:56:13.0343 0x0e8c  [ D1575E71568F4D9E14CA56B7B0453BF1, 4ABE0E24786C0D39FA2B885447E56204CA6942FB175E534DCE675D7BCF0B176A ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
16:56:13.0343 0x0e8c  MSKSSRV - ok
16:56:13.0359 0x0e8c  [ 325BB26842FC7CCC1FCCE2C457317F3E, C07BE560513B1FB91D756494F0BA4AEEB2E1998DE0E1C21EE83DB1183B0CEE91 ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
16:56:13.0375 0x0e8c  MSPCLOCK - ok
16:56:13.0390 0x0e8c  [ BAD59648BA099DA4A17680B39730CB3D, 9AD4C7C94C186C8815D0BC75DCAFB962158DA6935A244BA243EDDDEB33F9816C ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
16:56:13.0390 0x0e8c  MSPQM - ok
16:56:13.0406 0x0e8c  [ AF5F4F3F14A8EA2C26DE30F7A1E17136, AC93A1E4ABB0D038B772E429015567E44CC2EDB66C54DBE23A5F98176FAC1520 ] mssmbios        C:\WINDOWS\system32\DRIVERS\mssmbios.sys
16:56:13.0406 0x0e8c  mssmbios - ok
16:56:13.0453 0x0e8c  [ E53736A9E30C45FA9E7B5EAC55056D1D, 38602F280BF69EBA3706AD175AFC1AEB561A8302B4B61E3FECB3C27D7A9BDB41 ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
16:56:13.0453 0x0e8c  MSTEE - ok
16:56:13.0468 0x0e8c  [ DE6A75F5C270E756C5508D94B6CF68F5, FCC972DDC36C2C44D836913F10004C2C33B11C54DEFFF0C63E0FDF901D2F9261 ] Mup             C:\WINDOWS\system32\drivers\Mup.sys
16:56:13.0468 0x0e8c  Mup - ok
16:56:13.0500 0x0e8c  [ 5B50F1B2A2ED47D560577B221DA734DB, C16A554B6E1A7F5F98C94DFA88163E0F7426506BF2F51FD351B1A05FC0DB3BC5 ] NABTSFEC        C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
16:56:13.0500 0x0e8c  NABTSFEC - ok
16:56:13.0515 0x0e8c  [ 911587FD303C9690A428BB4B04732B61, D4E207C0F2D2A59F81BA681D564BA62E27DFDF902E14E7AFEA2E57A893D96C08 ] napagent        C:\WINDOWS\System32\qagentrt.dll
16:56:13.0531 0x0e8c  napagent - ok
16:56:13.0546 0x0e8c  [ 1DF7F42665C94B825322FAE71721130D, FE0DCB728471465B39A42A7511F4133021FBA5DF88F88BCB5FE2FF34CFD713F9 ] NDIS            C:\WINDOWS\system32\drivers\NDIS.sys
16:56:13.0562 0x0e8c  NDIS - ok
16:56:13.0578 0x0e8c  [ 7FF1F1FD8609C149AA432F95A8163D97, 18CD1FF5AC1EF8A38D1EC53014F2BADD28D9CDF4ECE2EBC2313D08903776F323 ] NdisIP          C:\WINDOWS\system32\DRIVERS\NdisIP.sys
16:56:13.0578 0x0e8c  NdisIP - ok
16:56:13.0609 0x0e8c  [ 0109C4F3850DFBAB279542515386AE22, 4F6DB1E499AC853FD36FD603FBB6D3AC9BDCEB298C7FE1FB59A9236CB46729B2 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
16:56:13.0609 0x0e8c  NdisTapi - ok
16:56:13.0625 0x0e8c  [ F927A4434C5028758A842943EF1A3849, B1AA3AF150C05307461774925901789456B0CCCD03A5E71ADA4AB58455962BEE ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
16:56:13.0625 0x0e8c  Ndisuio - ok
16:56:13.0625 0x0e8c  [ EDC1531A49C80614B2CFDA43CA8659AB, 494042F790F33721328B4451E79842E21919681CC421A4F9633EC4D383E06097 ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
16:56:13.0640 0x0e8c  NdisWan - ok
16:56:13.0640 0x0e8c  [ 2F597BB467E05B1FE3830EABD821B8E0, 141497F5A49D47CCE3C9289644F4BD838DCB238F6D8E847FC006652E21FE02AC ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
16:56:13.0640 0x0e8c  NDProxy - ok
16:56:13.0656 0x0e8c  [ 5D81CF9A2F1A3A756B66CF684911CDF0, 7989C36607CAEA17AFA2C1C9904145CA0714A54B9F712D9D4C1AB140D0B2CC0C ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
16:56:13.0656 0x0e8c  NetBIOS - ok
16:56:13.0671 0x0e8c  [ 74B2B2F5BEA5E9A3DC021D685551BD3D, 7932B71F98B4122BE88F576BF6D745A757AE378A48924B7F4358837B75640A82 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
16:56:13.0671 0x0e8c  NetBT - ok
16:56:13.0703 0x0e8c  [ 1B09227E41F414A93DBC0BAF80C4D527, 78726FFA0AD600BF915DAE524A4C72847DE399F68087A288D0FB05C4AB490724 ] NetDDE          C:\WINDOWS\system32\netdde.exe
16:56:13.0703 0x0e8c  NetDDE - ok
16:56:13.0703 0x0e8c  [ 1B09227E41F414A93DBC0BAF80C4D527, 78726FFA0AD600BF915DAE524A4C72847DE399F68087A288D0FB05C4AB490724 ] NetDDEdsdm      C:\WINDOWS\system32\netdde.exe
16:56:13.0718 0x0e8c  NetDDEdsdm - ok
16:56:13.0750 0x0e8c  [ 0FBA335727905DE8E4CB5A2CF438ABF5, 7D7C9D34C590C0F46EEA600C5185F266B66A972F3D9F535CABAADF622E97A67C ] Netlogon        C:\WINDOWS\system32\lsass.exe
16:56:13.0750 0x0e8c  Netlogon - ok
16:56:13.0765 0x0e8c  [ 02815B70FC4CA8611A926176F1C39FC2, D2B78A93584AB59252280ADAC942B65B80EFBE13DFADEC56650E12475CAA3D3B ] Netman          C:\WINDOWS\System32\netman.dll
16:56:13.0765 0x0e8c  Netman - ok
16:56:13.0812 0x0e8c  [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
16:56:13.0875 0x0e8c  NetTcpPortSharing - ok
16:56:13.0937 0x0e8c  [ C6B69A18D39744725FB73AC85E46032B, 5C33151152126A557F0C7C30646D169E00674F03CF5E187E540AAA22EB2DBF58 ] Nla             C:\WINDOWS\System32\mswsock.dll
16:56:13.0953 0x0e8c  Nla - ok
16:56:14.0015 0x0e8c  [ 1ACF98D80E95ADD298832C7A8996B48C, 33A0CF9C12271160A4F96A56A318166D23807E45782FB11EF897DFA40358132B ] nosGetPlusHelper C:\Programmi\NOS\bin\getPlus_Helper_3004.dll
16:56:14.0031 0x0e8c  nosGetPlusHelper - ok
16:56:14.0046 0x0e8c  [ 3182D64AE053D6FB034F44B6DEF8034A, 4ADFC76965BA2A5F488E71789A4E4EA702A74AF42725F72130D1CA919406CF19 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
16:56:14.0046 0x0e8c  Npfs - ok
16:56:14.0078 0x0e8c  [ 78A08DD6A8D65E697C18E1DB01C5CDCA, E0E6F3ED05068E32F1D5C2D2B38CDEF4536B8656DB6756C66CF6B40B60C8F3DA ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
16:56:14.0078 0x0e8c  Ntfs - ok
16:56:14.0093 0x0e8c  [ 0FBA335727905DE8E4CB5A2CF438ABF5, 7D7C9D34C590C0F46EEA600C5185F266B66A972F3D9F535CABAADF622E97A67C ] NtLmSsp         C:\WINDOWS\system32\lsass.exe
16:56:14.0093 0x0e8c  NtLmSsp - ok
16:56:14.0125 0x0e8c  [ 89DB90B5F35D2795D9FC56D933CC72B8, D2B337F648BDE65ACA5DF1277766784283FFC7DD231E7A66D3DF1DCFD0CB7564 ] NtmsSvc         C:\WINDOWS\system32\ntmssvc.dll
16:56:14.0140 0x0e8c  NtmsSvc - ok
16:56:14.0171 0x0e8c  [ 73C1E1F395918BC2C6DD67AF7591A3AD, B21133A75253EC15E2DFF66D3B480AB1A7E1A2360476C810E7AA55D0F0EB08D4 ] Null            C:\WINDOWS\system32\drivers\Null.sys
16:56:14.0171 0x0e8c  Null - ok
16:56:14.0390 0x0e8c  [ FEE170F182D5167B6E06E490DD7B42D7, C3B26AD4DFC9B8113F175B63A0AC2F6E7F6422D08151A4ECB8A4AFCF1964A071 ] nv              C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
16:56:14.0562 0x0e8c  nv - ok
16:56:14.0609 0x0e8c  [ E534FBD8340B7C6C6A80589383430A53, DB934C240DB241DC06DF0BF48C0230425F933E0B37A505983F450DEDCD26979F ] NVSvc           C:\WINDOWS\system32\nvsvc32.exe
16:56:14.0609 0x0e8c  NVSvc - ok
16:56:14.0640 0x0e8c  [ B305F3FAD35083837EF46A0BBCE2FC57, 9D0E0E666D652D0FC9EAB97280A5D67AAF61D6B21929DF7CF8ED72A367720464 ] NwlnkFlt        C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
16:56:14.0640 0x0e8c  NwlnkFlt - ok
16:56:14.0656 0x0e8c  [ C99B3415198D1AAB7227F2C88FD664B9, DD8DA4B5E804F134AB9233859544C025062902DFC3E8FB8A09A67337A4E73F55 ] NwlnkFwd        C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
16:56:14.0656 0x0e8c  NwlnkFwd - ok
16:56:14.0671 0x0e8c  [ 4E9408A178B2D955871C2CDD278DE3C3, 0D0C9A9F7281F13DED6AB0BEA3779380D1FBF7442461DE20869E744DE810328C ] Parport         C:\WINDOWS\system32\DRIVERS\parport.sys
16:56:14.0671 0x0e8c  Parport - ok
16:56:14.0687 0x0e8c  [ BEB3BA25197665D82EC7065B724171C6, 7E71C13BA30CD95CEE8A9CC85E6F48A01F30EDEAADEE69D80AE828BF97E5A5CA ] PartMgr         C:\WINDOWS\system32\drivers\PartMgr.sys
16:56:14.0687 0x0e8c  PartMgr - ok
16:56:14.0703 0x0e8c  [ 0DABEF655A444CB1E193626FB1D24B9F, 3B9923363E3B7A01FEA882E1BD2148F70ECD5106FC2F174548269F50E2E5F7D1 ] ParVdm          C:\WINDOWS\system32\drivers\ParVdm.sys
16:56:14.0703 0x0e8c  ParVdm - ok
16:56:14.0718 0x0e8c  [ F40A46892AFEBB0314536B849D57C11E, FB6EBF422CE1B71DD39103223851D36149B2D159B90903E553033BCDB244A091 ] PCI             C:\WINDOWS\system32\DRIVERS\pci.sys
16:56:14.0718 0x0e8c  PCI - ok
16:56:14.0734 0x0e8c  PCIDump - ok
16:56:14.0734 0x0e8c  [ B2DF00D650FD6C4EE781740ED3C8E67F, 204D3825143EDBF56BB819E7AA1CDD06AF2180F3E7A43B01065D7698919AE065 ] PCIIde          C:\WINDOWS\system32\drivers\PCIIde.sys
16:56:14.0734 0x0e8c  PCIIde - ok
16:56:14.0765 0x0e8c  [ 815C50F2B1D1562800BDCE8BE895000E, 4DE07E8A1390DF1A411F2813064888F457C229A7FA510159BA4D488031771F41 ] Pcmcia          C:\WINDOWS\system32\drivers\Pcmcia.sys
16:56:14.0765 0x0e8c  Pcmcia - ok
16:56:14.0765 0x0e8c  PDCOMP - ok
16:56:14.0765 0x0e8c  PDFRAME - ok
16:56:14.0765 0x0e8c  PDRELI - ok
16:56:14.0781 0x0e8c  PDRFRAME - ok
16:56:14.0781 0x0e8c  perc2 - ok
16:56:14.0781 0x0e8c  perc2hib - ok
16:56:14.0828 0x0e8c  [ 2F5532F9B0F903B26847DA674B4F55B2, D25AE8CBA8865116A2EE2F412942FE03F53EA6F8F9293C63FDCBCE1BC90AD69E ] PfModNT         C:\WINDOWS\system32\PfModNT.sys
16:56:14.0843 0x0e8c  PfModNT - ok
16:56:14.0843 0x0e8c  [ 26845F272435302E0F3322E660A24F7D, 3034AA4913525B0BB8761A3A1741DDB65E0B87DA6C90B481DD458B2253083DA3 ] PlugPlay        C:\WINDOWS\system32\services.exe
16:56:14.0859 0x0e8c  PlugPlay - ok
16:56:14.0906 0x0e8c  [ 9D84376931440F3679BEEF2A414FA493, C800227A67C3C10A26114DB54F5390D2A475D36BE65E87CB890A6819B0BB4884 ] Pml Driver HPZ12 C:\WINDOWS\system32\HPZipm12.exe
16:56:14.0906 0x0e8c  Pml Driver HPZ12 - ok
16:56:14.0906 0x0e8c  [ 0FBA335727905DE8E4CB5A2CF438ABF5, 7D7C9D34C590C0F46EEA600C5185F266B66A972F3D9F535CABAADF622E97A67C ] PolicyAgent     C:\WINDOWS\system32\lsass.exe
16:56:14.0906 0x0e8c  PolicyAgent - ok
16:56:14.0937 0x0e8c  [ EFEEC01B1D3CF84F16DDD24D9D9D8F99, C5F0C8C66A3AF7E7BB04CEDE4AC5306F8387AB384A2107DC5BE413AAE968EFF1 ] PptpMiniport    C:\WINDOWS\system32\DRIVERS\raspptp.sys
16:56:14.0937 0x0e8c  PptpMiniport - ok
16:56:14.0937 0x0e8c  [ 0FBA335727905DE8E4CB5A2CF438ABF5, 7D7C9D34C590C0F46EEA600C5185F266B66A972F3D9F535CABAADF622E97A67C ] ProtectedStorage C:\WINDOWS\system32\lsass.exe
16:56:14.0937 0x0e8c  ProtectedStorage - ok
16:56:14.0953 0x0e8c  [ 09298EC810B07E5D582CB3A3F9255424, 35473A1BE25AC289474090EB0806AC6B3035DC33D1F3DF97A14BF1E361AC6AC3 ] PSched          C:\WINDOWS\system32\DRIVERS\psched.sys
16:56:14.0953 0x0e8c  PSched - ok
16:56:14.0968 0x0e8c  [ 80D317BD1C3DBC5D4FE7B1678C60CADD, DA76804B55D0CAB3DDD01EFC06673764AE4860693375C658B6063FB14AF7F12C ] Ptilink         C:\WINDOWS\system32\DRIVERS\ptilink.sys
16:56:14.0968 0x0e8c  Ptilink - ok
16:56:14.0984 0x0e8c  ql1080 - ok
16:56:14.0984 0x0e8c  Ql10wnt - ok
16:56:14.0984 0x0e8c  ql12160 - ok
16:56:14.0984 0x0e8c  ql1240 - ok
16:56:14.0984 0x0e8c  ql1280 - ok
16:56:15.0015 0x0e8c  [ FE0D99D6F31E4FAD8159F690D68DED9C, 998685622ABE631984B7E4DBF91AB3594B1F574378D75EB9F6265F4650470692 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
16:56:15.0015 0x0e8c  RasAcd - ok
16:56:15.0015 0x0e8c  [ 9839B418343D6E6E52659BDF3FF1FE67, 8B3FDA61B82836D79DBC3C7B92538E5A921A4A9BFC0B60411D307150A0FBCFED ] RasAuto         C:\WINDOWS\System32\rasauto.dll
16:56:15.0031 0x0e8c  RasAuto - ok
16:56:15.0046 0x0e8c  [ 11B4A627BC9614B885C4969BFA5FF8A6, EAE0A412A2B0F68919C32A96B3A08CC1A06585E4998819F5C9051745F63FF5AD ] Rasl2tp         C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
16:56:15.0046 0x0e8c  Rasl2tp - ok
16:56:15.0062 0x0e8c  [ 62AD41548E720DB4763B86F95E44F3FA, D9349F6192134434362E602CA6B35AF1212B8CE413F02CDEDA8A644238F37DA4 ] RasMan          C:\WINDOWS\System32\rasmans.dll
16:56:15.0078 0x0e8c  RasMan - ok
16:56:15.0078 0x0e8c  [ 5BC962F2654137C9909C3D4603587DEE, A5CE5653D0105240F5E86CFAAB89E7917D42D939E2F27A5A7D6979289CA651B8 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
16:56:15.0078 0x0e8c  RasPppoe - ok
16:56:15.0078 0x0e8c  [ FDBB1D60066FCFBB7452FD8F9829B242, 10A2DACF944BD000032EBA8C095CB3D879CC55B28C377ADF6E52E508E47444DB ] Raspti          C:\WINDOWS\system32\DRIVERS\raspti.sys
16:56:15.0078 0x0e8c  Raspti - ok
16:56:15.0125 0x0e8c  [ 7AD224AD1A1437FE28D89CF22B17780A, 6645235CA27D671954E3557FA37082881C3D7D47492C71264CD8CB8D108EC801 ] Rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
16:56:15.0125 0x0e8c  Rdbss - ok
16:56:15.0125 0x0e8c  [ 4912D5B403614CE99C28420F75353332, 975341ECD660209987B5E5171B8315E032439E408CBE8A5986E67AF767F373BB ] RDPCDD          C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
16:56:15.0140 0x0e8c  RDPCDD - ok
16:56:15.0156 0x0e8c  [ 15CABD0F7C00C47C70124907916AF3F1, 66B5C978B7FB6359AD8BAC9F568FE9D469E358FEAB07B1F129BA9E85F1DF723E ] rdpdr           C:\WINDOWS\system32\DRIVERS\rdpdr.sys
16:56:15.0171 0x0e8c  rdpdr - ok
16:56:15.0187 0x0e8c  [ 43AF5212BD8FB5BA6EED9754358BD8F7, AF330F61CECA4AFA359CEABC5EB3227E6B56A9A2DCE50701381D665122D7356D ] RDPWD           C:\WINDOWS\system32\drivers\RDPWD.sys
16:56:15.0203 0x0e8c  RDPWD - ok
16:56:15.0218 0x0e8c  [ CC72E6AE90245F0AE48BF1236A7E1F9C, 17CF8F174DCC3B07379716C4532A4F875AE8E4010AA61E4C7B2EA24E29BF5ABD ] RDSessMgr       C:\WINDOWS\system32\sessmgr.exe
16:56:15.0234 0x0e8c  RDSessMgr - ok
16:56:15.0250 0x0e8c  [ 393FC252593323B624B230ECA6B85E63, 77030C7E4847859704B0E6CD404D7B00CE89036157883052A61101EDAE4B375B ] redbook         C:\WINDOWS\system32\DRIVERS\redbook.sys
16:56:15.0250 0x0e8c  redbook - ok
16:56:15.0296 0x0e8c  [ 7EBBF16FBD3E0E34F084FA635C1844E3, 6149B4FE725D8016932EEDF1A47288A5066046FF833EE5DCD7344A9077450690 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
16:56:15.0296 0x0e8c  RemoteAccess - ok
16:56:15.0312 0x0e8c  [ F667A41BCED959988E53FEECC8BF5DA0, 8F6C7FB408BD83F19F7582D92BDD84C582B5EC0DFA8EC894005F6E33A291C85E ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
16:56:15.0312 0x0e8c  RemoteRegistry - ok
16:56:15.0359 0x0e8c  [ DC97F6C8A94691834439872B9E8FF2B3, 6F751308F08D5B890FE49C67D4643EB7BD83566C9BA03CAF203EF431B23B7129 ] RpcLocator      C:\WINDOWS\system32\locator.exe
16:56:15.0375 0x0e8c  RpcLocator - ok
16:56:15.0390 0x0e8c  [ BC4E0226341AAEC1222336B3AED86BAB, CBE39840A484EC182133B18794BD5AAFCC25C306B5F497CA22BFC8321C12F88F ] RpcSs           C:\WINDOWS\system32\rpcss.dll
16:56:15.0406 0x0e8c  RpcSs - ok
16:56:15.0453 0x0e8c  [ DCE0D20F8FB66DF41D53734BFF9D66F0, 78B858710DAD33A2BDEFE538299339D94CC932648F329D974B0A2A3BFB75CA27 ] RSVP            C:\WINDOWS\system32\rsvp.exe
16:56:15.0468 0x0e8c  RSVP - ok
16:56:15.0515 0x0e8c  [ 00FD6811350E175585ABCF7D4A61DD90, 00B54CB6547E47E6A2B8AE4BB220E68BBFECF2188CB7DFE651B50F7FE6AC7E9D ] RTLE8023xp      C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
16:56:15.0515 0x0e8c  RTLE8023xp - ok
16:56:15.0531 0x0e8c  [ 0FBA335727905DE8E4CB5A2CF438ABF5, 7D7C9D34C590C0F46EEA600C5185F266B66A972F3D9F535CABAADF622E97A67C ] SamSs           C:\WINDOWS\system32\lsass.exe
16:56:15.0531 0x0e8c  SamSs - ok
16:56:15.0593 0x0e8c  [ A7DE58D5EAB336012BCE903AE7158C6C, 5A12DE7194377326C9DA7A4A83A6D564F5C280A289E1DCEB50F907BDE7C4005B ] sbpci           C:\WINDOWS\system32\drivers\sbpci.sys
16:56:15.0609 0x0e8c  sbpci - ok
16:56:15.0625 0x0e8c  [ 1D456F1CD76A80793C07BA52CF3A7455, 34E878C24A28D67395D8ABA0DACF5FD73F2F4F6F6314D436D287CA1D75BF974B ] SCardSvr        C:\WINDOWS\System32\SCardSvr.exe
16:56:15.0625 0x0e8c  SCardSvr - ok
16:56:15.0671 0x0e8c  [ 511886E5BD060046CCE8373E92E62EDF, 3BA4AEBE00474DA71C0A5EFBEC216C585A314D5F4F0C4E603D1EEBB9B6991343 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
16:56:15.0687 0x0e8c  Schedule - ok
16:56:15.0703 0x0e8c  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] Secdrv          C:\WINDOWS\system32\DRIVERS\secdrv.sys
16:56:15.0718 0x0e8c  Secdrv - ok
16:56:15.0734 0x0e8c  [ 17C6354CA08E7C7972E12C67478AE134, BA0C6EC30FF345840435C16DB30BD08047EF54455057104FEAB03657CFF5EB41 ] seclogon        C:\WINDOWS\System32\seclogon.dll
16:56:15.0750 0x0e8c  seclogon - ok
16:56:15.0750 0x0e8c  [ A0ECA1CE0FCCB29C5E4E1F416E95E73E, 36DB8E0D89255CCC7369A50542065E3661652D650130CAC22EBA3691512C6B81 ] SENS            C:\WINDOWS\system32\sens.dll
16:56:15.0750 0x0e8c  SENS - ok
16:56:15.0765 0x0e8c  [ 0F29512CCD6BEAD730039FB4BD2C85CE, 4F98AE390D1B14A755700DD6CEFB9CF921F0404AF2145D2D7E5F52394F87C6A5 ] serenum         C:\WINDOWS\system32\DRIVERS\serenum.sys
16:56:15.0765 0x0e8c  serenum - ok
16:56:15.0765 0x0e8c  [ FDBD9D64E2E03270021D424F0DCCF79D, F818B9355B6965FA4D8847AA2A54AC950381C914D96EB7E94B8DEE6CF820CFD5 ] Serial          C:\WINDOWS\system32\DRIVERS\serial.sys
16:56:15.0765 0x0e8c  Serial - ok
16:56:15.0828 0x0e8c  [ 8E6B8C671615D126FDC553D1E2DE5562, CEEC0067514555D5CA489F50E3D7562FCA8DB8E952C3C878604C9277FC77959F ] Sfloppy         C:\WINDOWS\system32\drivers\Sfloppy.sys
16:56:15.0828 0x0e8c  Sfloppy - ok
16:56:15.0875 0x0e8c  [ 152C0555925DFE028E3148FD215146BB, B34D6363CAD693FBF0354450A749A3F82BD1AA80CE719862D6C85854C7254D78 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
16:56:15.0875 0x0e8c  SharedAccess - ok
16:56:15.0890 0x0e8c  [ DCCC606FC144F6E44E497F9A906F1C30, 961D1A633BAE3634BA649BE4D7CD01836072A5956D3BD8F0AE3241DF55ED884C ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
16:56:15.0906 0x0e8c  ShellHWDetection - ok
16:56:15.0906 0x0e8c  Simbad - ok
16:56:15.0953 0x0e8c  [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate     C:\Programmi\Skype\Updater\Updater.exe
16:56:15.0953 0x0e8c  SkypeUpdate - ok
16:56:16.0000 0x0e8c  [ 866D538EBE33709A5C9F5C62B73B7D14, BC94BEB7C17B4FCAC8B5D0D5006A203BC209E0504EECE149651D8691935696CD ] SLIP            C:\WINDOWS\system32\DRIVERS\SLIP.sys
16:56:16.0000 0x0e8c  SLIP - ok
16:56:16.0031 0x0e8c  [ 3BB48F7E33C2B76184DDF233000C09CD, D1AAE5B0425047CA0C2D376D3E59324D35A90DF9074CD442DFD0ED6E434D3C84 ] Sony SCSI Helper Service C:\Programmi\File comuni\Sony Shared\Fsk\SonySCSIHelperService.exe
16:56:16.0031 0x0e8c  Sony SCSI Helper Service - ok
16:56:16.0046 0x0e8c  Sparrow - ok
16:56:16.0062 0x0e8c  [ 3FA2E254BFBCE52B3C6F1BF23AAB6911, 1E94D4E6D903E98F60C240DC841DCACE5F9E8BBB0802E6648A49AB80C23318CB ] speedfan        C:\WINDOWS\system32\speedfan.sys
16:56:16.0078 0x0e8c  speedfan - ok
16:56:16.0109 0x0e8c  [ AB8B92451ECB048A4D1DE7C3FFCB4A9F, DD17733CBB370FCA08F0296704D7CBEACA3C8F76D0ABE4761C3B1FFDF7481D9E ] splitter        C:\WINDOWS\system32\drivers\splitter.sys
16:56:16.0109 0x0e8c  splitter - ok
16:56:16.0156 0x0e8c  [ 60784F891563FB1B767F70117FC2428F, E0B07F08E60FFBAD36C2E58180F4B2A16DCA47716044CBE0213DF7B74D742F1F ] Spooler         C:\WINDOWS\system32\spoolsv.exe
16:56:16.0156 0x0e8c  Spooler - ok
16:56:16.0218 0x0e8c  [ 71E276F6D189413266EA22171806597B, AF3DF0DEF023ADBC81D742424B57581D7680FA4FA64B761BEAEEE60C9FCD34BF ] sptd            C:\WINDOWS\system32\Drivers\sptd.sys
16:56:16.0218 0x0e8c  Suspicious file ( NoAccess ): C:\WINDOWS\system32\Drivers\sptd.sys. md5: 71E276F6D189413266EA22171806597B, sha256: AF3DF0DEF023ADBC81D742424B57581D7680FA4FA64B761BEAEEE60C9FCD34BF
16:56:16.0218 0x0e8c  sptd - detected LockedFile.Multi.Generic ( 1 )
16:56:19.0062 0x0e8c  Detect skipped due to KSN trusted
16:56:19.0062 0x0e8c  sptd - ok
16:56:19.0078 0x0e8c  [ 618718CAE288BF7CBD8FCBAB2577D932, 51C5B937909884214CEE257505B5925D7089222E8B37B5D10DC6A7460C9D7546 ] sr              C:\WINDOWS\system32\DRIVERS\sr.sys
16:56:19.0093 0x0e8c  sr - ok
16:56:19.0093 0x0e8c  [ B3E3DA70A7A76E69B872DE3D06D32C19, 3398D5375077EBAAD5CDBCD3D5E0BE25AE78CCC13EE17CFC03723A8BA7CBD0D2 ] srservice       C:\WINDOWS\system32\srsvc.dll
16:56:19.0109 0x0e8c  srservice - ok
16:56:19.0125 0x0e8c  [ 47DDFC2F003F7F9F0592C6874962A2E7, 17C643BD4EB09B5666FE41817DC785BE04A6E491CE79E8E5A702CDBD98E1BDD7 ] Srv             C:\WINDOWS\system32\DRIVERS\srv.sys
16:56:19.0140 0x0e8c  Srv - ok
16:56:19.0156 0x0e8c  [ 5215569DD3A8FBC65A85E85F3C12258B, C6AD200F740BB0586520AD90C7D532AA167F2E63199801E7D07E6F6AE594BC73 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
16:56:19.0171 0x0e8c  SSDPSRV - ok
16:56:19.0187 0x0e8c  Steam Client Service - ok
16:56:19.0234 0x0e8c  [ 3B9263E137896E4D303494F116E00608, B0979242ABDADD4CB12617B8D8715DBD97B8B0A64B3640774A32E0D7DAE02741 ] stisvc          C:\WINDOWS\system32\wiaservc.dll
16:56:19.0250 0x0e8c  stisvc - ok
16:56:19.0281 0x0e8c  [ 77813007BA6265C4B6098187E6ED79D2, 93939120E803C46FBFD577C8FC2E6C7E71C0460E01D25CB29579490640AB50C7 ] streamip        C:\WINDOWS\system32\DRIVERS\StreamIP.sys
16:56:19.0281 0x0e8c  streamip - ok
16:56:19.0296 0x0e8c  [ 3941D127AEF12E93ADDF6FE6EE027E0F, EA1F0E32E1C5E90FA4AAC421DEBBE086512340758D3217A6334E886BCE638B51 ] swenum          C:\WINDOWS\system32\DRIVERS\swenum.sys
16:56:19.0296 0x0e8c  swenum - ok
16:56:19.0312 0x0e8c  [ 8CE882BCC6CF8A62F2B2323D95CB3D01, B408550A581F3DA222355964AFA4E976AD8471F0AA37573C42C4948AE5A23A3B ] swmidi          C:\WINDOWS\system32\drivers\swmidi.sys
16:56:19.0312 0x0e8c  swmidi - ok
16:56:19.0312 0x0e8c  SwPrv - ok
16:56:19.0328 0x0e8c  symc810 - ok
16:56:19.0328 0x0e8c  symc8xx - ok
16:56:19.0328 0x0e8c  sym_hi - ok
16:56:19.0328 0x0e8c  sym_u3 - ok
16:56:19.0375 0x0e8c  [ 8B83F3ED0F1688B4958F77CD6D2BF290, 546D3602183702B4F53E84413CFA2C933D64C8540378E54A8DCD148F3F36A2DA ] sysaudio        C:\WINDOWS\system32\drivers\sysaudio.sys
16:56:19.0375 0x0e8c  sysaudio - ok
16:56:19.0390 0x0e8c  [ A34A9A872EEC4C026FD542AC7156FE0B, D71D365E8F7C8F7BF347C06FB687B8E976D3CF5B319211009223D16638F8521A ] SysmonLog       C:\WINDOWS\system32\smlogsvc.exe
16:56:19.0406 0x0e8c  SysmonLog - ok
16:56:19.0406 0x0e8c  taphss - ok
16:56:19.0421 0x0e8c  [ 6B85F1A9DCE45D45BFFAD3222C21F297, 4285B0929162CE3497B89C31CA769547300FF920E3F264F4C7E06C2DB780C8B4 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
16:56:19.0437 0x0e8c  TapiSrv - ok
16:56:19.0484 0x0e8c  [ 9AEFA14BD6B182D61E3119FA5F436D3D, EA29E49434585409272E7901AF89771FE9D6E911A7DC44AB3C7020CFF8A44552 ] Tcpip           C:\WINDOWS\system32\DRIVERS\tcpip.sys
16:56:19.0484 0x0e8c  Tcpip - ok
16:56:19.0500 0x0e8c  [ 4E53BBCC4BE37D7A4BD6EF1098C89FF7, D084EFE07AC200672A1CE7BB8AE736612B3E353271188D26E29EC973E26E1F5F ] Tcpip6          C:\WINDOWS\system32\DRIVERS\tcpip6.sys
16:56:19.0500 0x0e8c  Tcpip6 - ok
16:56:19.0531 0x0e8c  [ 6471A66807F5E104E4885F5B67349397, F35CBFFB8BB235CCE30EF94A5273333900DD49FD506BF9D55D99A320B8A53A5A ] TDPIPE          C:\WINDOWS\system32\drivers\TDPIPE.sys
16:56:19.0531 0x0e8c  TDPIPE - ok
16:56:19.0562 0x0e8c  [ C56B6D0402371CF3700EB322EF3AAF61, 7743FA4C734BCE38EFB1CA69BC17364D8421E2CD172F856F7E38E7AE1EE93F2F ] TDTCP           C:\WINDOWS\system32\drivers\TDTCP.sys
16:56:19.0562 0x0e8c  TDTCP - ok
16:56:19.0562 0x0e8c  [ 88155247177638048422893737429D9E, B6D4E8691917946332C2208D01F8C8281978C1AD1E9951C5D99DF0D49AC34B3B ] TermDD          C:\WINDOWS\system32\DRIVERS\termdd.sys
16:56:19.0562 0x0e8c  TermDD - ok
16:56:19.0593 0x0e8c  [ FE5A5329CCFC33D645C33077FF04F052, 5B8F641C1F94CD9BAB0CB632F80E707F01118D77CF754C0DCE9E813F789ABCC3 ] TermService     C:\WINDOWS\System32\termsrv.dll
16:56:19.0593 0x0e8c  TermService - ok
16:56:19.0625 0x0e8c  [ DCCC606FC144F6E44E497F9A906F1C30, 961D1A633BAE3634BA649BE4D7CD01836072A5956D3BD8F0AE3241DF55ED884C ] Themes          C:\WINDOWS\System32\shsvcs.dll
16:56:19.0625 0x0e8c  Themes - ok
16:56:19.0640 0x0e8c  [ 2FFF150EA4396956F10B66211687F335, BB62A1E675D155FBB1FF91958370728436C3608CFF09C9B4FA239BAFAC272DEB ] TlntSvr         C:\WINDOWS\system32\tlntsvr.exe
16:56:19.0656 0x0e8c  TlntSvr - ok
16:56:19.0656 0x0e8c  TosIde - ok
16:56:19.0687 0x0e8c  [ 690294999DF1248FAF85D95B31955D0C, 74072BCBD543FC7FECCD4F54EA9D016BE10D1F00B5D3F90A7AB651DD9DCF276E ] TrkWks          C:\WINDOWS\system32\trkwks.dll
16:56:19.0687 0x0e8c  TrkWks - ok
16:56:19.0703 0x0e8c  [ 8F861EDA21C05857EB8197300A92501C, 374FF9464F273610A051B9220C8D20F01FD4DD029095A7BE37244E20C5C8B5BB ] tunmp           C:\WINDOWS\system32\DRIVERS\tunmp.sys
16:56:19.0703 0x0e8c  tunmp - ok
16:56:19.0718 0x0e8c  [ 5787B80C2E3C5E2F56C2A233D91FA2C9, 3774905CF77954DFCECDA5BCC7CDE3D0ED72712BFAAD85ADAE5246306447E46C ] Udfs            C:\WINDOWS\system32\drivers\Udfs.sys
16:56:19.0718 0x0e8c  Udfs - ok
16:56:19.0734 0x0e8c  ultra - ok
16:56:19.0765 0x0e8c  [ 402DDC88356B1BAC0EE3DD1580C76A31, 32A686595710336A6BFD54C03F552AE39439611662F84EF5D24193AE5665C6F3 ] Update          C:\WINDOWS\system32\DRIVERS\update.sys
16:56:19.0781 0x0e8c  Update - ok
16:56:19.0781 0x0e8c  [ 8057B0744D9842A090E51D2845861D5F, E226DFF48FB766CC36273FAA631140254F9C339891C9EE7D6F2FA2B2E5372FDF ] upnphost        C:\WINDOWS\System32\upnphost.dll
16:56:19.0796 0x0e8c  upnphost - ok
16:56:19.0828 0x0e8c  [ F5E8B846EC10E1DF8DCA64119E2EB709, D0475F2A2EF5C2DBCC64E27B548560F19124C4EC3BEA3B776A690A61B36E5A9A ] UPS             C:\WINDOWS\System32\ups.exe
16:56:19.0828 0x0e8c  UPS - ok
16:56:19.0890 0x0e8c  [ 1B611611C28D2DF25BC057D79C6F13FC, B0D86F63E44B40413BBAE6402CC088046CFAE082D41BBC2ED5A916293356B846 ] usbccgp         C:\WINDOWS\system32\DRIVERS\usbccgp.sys
16:56:19.0890 0x0e8c  usbccgp - ok
16:56:19.0890 0x0e8c  [ 4BAC8DF07F1D8434FC640E677A62204E, 76C1351AF6752224BF59DEEE0F8665FE699F3DFD679F5BCD01C7D9383E6402A4 ] usbehci         C:\WINDOWS\system32\DRIVERS\usbehci.sys
16:56:19.0906 0x0e8c  usbehci - ok
16:56:19.0953 0x0e8c  [ 1AB3CDDE553B6E064D2E754EFE20285C, A99C4528C4227B1E96847614745AAFACD3C5F1BDFE435214DBF78740FFB300FE ] usbhub          C:\WINDOWS\system32\DRIVERS\usbhub.sys
16:56:19.0953 0x0e8c  usbhub - ok
16:56:20.0000 0x0e8c  [ A717C8721046828520C9EDF31288FC00, 1530BBE832EDBB0974AD89D723A03FF7A0094B368992D73C2C3E62A181DF1E0A ] usbprint        C:\WINDOWS\system32\DRIVERS\usbprint.sys
16:56:20.0000 0x0e8c  usbprint - ok
16:56:20.0031 0x0e8c  [ F8EDE2B6928970DCE3D5614C27D9E7F6, 6E5EBBC8B70C1D593634DAF0C190DEADFDA18C3CBC8F552A76F156F3869EF05B ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
16:56:20.0046 0x0e8c  usbscan - ok
16:56:20.0078 0x0e8c  [ A32426D9B14A089EAA1D922E0C5801A9, ED1DC52EE45F8EAD3AEC4B1F817BB25634141CF48295494C5947DCE6CF7A9817 ] USBSTOR         C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
16:56:20.0078 0x0e8c  USBSTOR - ok
16:56:20.0093 0x0e8c  [ 26496F9DEE2D787FC3E61AD54821FFE6, 8BE7FF647470B9A951CBB478FAF83D657A15CC78037F42348A6B738F21D523DA ] usbuhci         C:\WINDOWS\system32\DRIVERS\usbuhci.sys
16:56:20.0109 0x0e8c  usbuhci - ok
16:56:20.0125 0x0e8c  [ 2A7A8AD9D39A2FAF9D9293B5DAFF3A4B, 38C6F6A440B718C75F7A1361297ACE671FC258B75BDCE9E0C27D497E3DF03C61 ] USB_RNDIS       C:\WINDOWS\system32\DRIVERS\usb8023.sys
16:56:20.0140 0x0e8c  USB_RNDIS - ok
16:56:20.0203 0x0e8c  [ D26829D436F592F6D80D71B9C02C690F, A606970EBB4EAE26B8478F55BD92975404D9E405E36456944C9F45BD96A92E54 ] V0220Dev        C:\WINDOWS\system32\DRIVERS\V0220Dev.sys
16:56:20.0203 0x0e8c  V0220Dev - ok
16:56:20.0218 0x0e8c  [ EB4E73963BC2EDA84B93B29174E15B02, FB0967330C672A9F0B87EE991D53686781EB1023382B615B6C29C3898E8969FB ] V0220Vfx        C:\WINDOWS\system32\DRIVERS\V0220Vfx.sys
16:56:20.0234 0x0e8c  V0220Vfx - ok
16:56:20.0250 0x0e8c  [ 0D3A8FAFCEACD8B7625CD549757A7DF1, B9CFDEFCD66AA139F3DC2F967B184669532922563AD5A71769BABDC4370D065E ] VgaSave         C:\WINDOWS\System32\drivers\vga.sys
16:56:20.0250 0x0e8c  VgaSave - ok
16:56:20.0250 0x0e8c  ViaIde - ok
16:56:20.0281 0x0e8c  [ E46C1B5A56DA7DA603D09DFCC79EC59E, E16CC03DE648AC9B79F6833A0771C4A5D3E85D331537CB2D442B48094B7AFB7B ] VolSnap         C:\WINDOWS\system32\drivers\VolSnap.sys
16:56:20.0281 0x0e8c  VolSnap - ok
16:56:20.0328 0x0e8c  [ 77B4D3121B737C51BDD1479E92DAB1FE, 2ED70F11ED8FD1CF80A5748EE08A08BA95F1CC47DE73978D66594C4B18989C58 ] Vsdatant        C:\WINDOWS\system32\vsdatant.sys
16:56:20.0343 0x0e8c  Vsdatant - ok
16:56:20.0359 0x0e8c  vsmon - ok
16:56:20.0390 0x0e8c  [ C2FE17125256102F5B44194D5DB0A799, 30C8B2788E552082E5672E6976D9665949D125E32491C59E7633101FD0E76C92 ] VSS             C:\WINDOWS\System32\vssvc.exe
16:56:20.0406 0x0e8c  VSS - ok
16:56:20.0421 0x0e8c  [ 2969DD84B584A6BB541A5273103957A3, 31D30251CEC9E165624AA4787384A44345996A785158B96EDA234D46B9999D3F ] W32Time         C:\WINDOWS\system32\w32time.dll
16:56:20.0421 0x0e8c  W32Time - ok
16:56:20.0437 0x0e8c  [ E20B95BAEDB550F32DD489265C1DA1F6, 5589B2067E6C9FBA290D8C5EADDC198EBAF39C50C3CD7D2BC5CDA7CBFBC445E5 ] Wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
16:56:20.0437 0x0e8c  Wanarp - ok
16:56:20.0437 0x0e8c  WDICA - ok
16:56:20.0484 0x0e8c  [ 6768ACF64B18196494413695F0C3A00F, 3A8F8586F1D997D19A8478345338D2AECD785AEABDB61531DD3F92003D3230A5 ] wdmaud          C:\WINDOWS\system32\drivers\wdmaud.sys
16:56:20.0484 0x0e8c  wdmaud - ok
16:56:20.0500 0x0e8c  [ 2EC50EE79B65F60C8E8B4A03BBB3A42F, D71F2AA601B71F16657E3B2F28EE89CE8A3DD99D77CCD63A2AFBE85F15501CB7 ] WebClient       C:\WINDOWS\System32\webclnt.dll
16:56:20.0515 0x0e8c  WebClient - ok
16:56:20.0593 0x0e8c  [ 40911E98D0F1CBB1015F2101982F1DDF, C4AF11AF406BA59FB9EFDB6CBE1F2005454CD3B9EEE19A8F4095D6EB2420EE6D ] winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
16:56:20.0593 0x0e8c  winmgmt - ok
16:56:20.0609 0x0e8c  [ C51B4A5C05A5475708E3C81C7765B71D, F776D2680BD3407307B7072626F78460361FC5BC38623C9E16F394D300AB25DE ] WmdmPmSN        C:\WINDOWS\system32\mspmsnsv.dll
16:56:20.0625 0x0e8c  WmdmPmSN - ok
16:56:20.0656 0x0e8c  [ F63CB6DBE268EA0620C67A90CF43885E, 4F41FE17730D9A11D4B3323060DAEA45A6392BFC1193C6FE68F0D272280B7382 ] Wmi             C:\WINDOWS\System32\advapi32.dll
16:56:20.0671 0x0e8c  Wmi - ok
16:56:20.0718 0x0e8c  [ 81FD02839FDB10ACF0EC40B809B9F8CC, 18917E10CEB48B3FE51D3C0AFD8FB27306646CE357EE10AE07BB14B4BDA5278A ] WmiApSrv        C:\WINDOWS\system32\wbem\wmiapsrv.exe
16:56:20.0718 0x0e8c  WmiApSrv - ok
16:56:20.0812 0x0e8c  [ F30DC8F80CF65A323E8B6A2DB81561E3, C249E3B13456D5EB5CA7F64FE8C7B1CC01D383129C7A2AF06360CF67C4445E5E ] WMPNetworkSvc   C:\Programmi\Windows Media Player\WMPNetwk.exe
16:56:20.0828 0x0e8c  WMPNetworkSvc - ok
16:56:20.0968 0x0e8c  [ 15673BD0B86150CB8E27766059C72A9B, 56C23289A8BFF4945EE532CF6D62D3EC81B827CA15A359F30A327789F9FE9CAF ] WPFFontCache_v0400 C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
16:56:21.0015 0x0e8c  WPFFontCache_v0400 - ok
16:56:21.0062 0x0e8c  [ 926D921C93CFF1E19EF4DE3E4C8368CA, 0DD2273872F77DA2A6A935E3EA25F3A8F48AF13D1317D51BA76D735A99D656EE ] wscsvc          C:\WINDOWS\system32\wscsvc.dll
16:56:21.0062 0x0e8c  wscsvc - ok
16:56:21.0093 0x0e8c  [ C98B39829C2BBD34E454150633C62C78, 71B60EA3AD0E2637917D528C6A9E7ECF2949E3E5E91036AA5BBADA95BD725511 ] WSTCODEC        C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
16:56:21.0109 0x0e8c  WSTCODEC - ok
16:56:21.0140 0x0e8c  [ CC48415E6C7CBAA441A3D6A6DCCBCFA6, 97CFB57AD1F30A690D032297019FB3A8A1664896AF0C310AB799C93EA18F98F8 ] wuauserv        C:\WINDOWS\system32\wuauserv.dll
16:56:21.0156 0x0e8c  wuauserv - ok
16:56:21.0187 0x0e8c  [ F15FEAFFFBB3644CCC80C5DA584E6311, 79B3E9AF35976CE49921E9BEA3BA3B4A8AF762FD3F284B62954038B5FFB32471 ] WudfPf          C:\WINDOWS\system32\DRIVERS\WudfPf.sys
16:56:21.0187 0x0e8c  WudfPf - ok
16:56:21.0203 0x0e8c  [ 28B524262BCE6DE1F7EF9F510BA3985B, AEFF02B899801A63CBB262757C3D4369E38BFF0690BD085DE60E873DFBE3C3F4 ] WudfRd          C:\WINDOWS\system32\DRIVERS\wudfrd.sys
16:56:21.0203 0x0e8c  WudfRd - ok
16:56:21.0234 0x0e8c  [ 05231C04253C5BC30B26CBAAE680ED89, 5C03C2D7E0B573646D32F4093E2FF2C3BA391C39F5BA37D67F69D38E357FCC3D ] WudfSvc         C:\WINDOWS\System32\WUDFSvc.dll
16:56:21.0281 0x0e8c  WudfSvc - ok
16:56:21.0312 0x0e8c  [ 053E0307A08CAC60793E27E921B46B3E, D886609D17F322075C644C2C9934437026349EA65CC4ED41E1FEA0D89556257E ] WZCSVC          C:\WINDOWS\System32\wzcsvc.dll
16:56:21.0328 0x0e8c  WZCSVC - ok
16:56:21.0390 0x0e8c  [ 5526482DCBA6047641B13BF9C75A74E0, 446EEF008FC5055D8C3640BE57058914D078573883FA3BB7815F847C638FD881 ] xmlprov         C:\WINDOWS\System32\xmlprov.dll
16:56:21.0406 0x0e8c  xmlprov - ok
16:56:21.0406 0x0e8c  ================ Scan global ===============================
16:56:21.0453 0x0e8c  [ 17DDFE6A0B5404C5EF4C03AD996D0562, 4E806713F5F86F60FB6204028321AEBE26195EE99A537B52D9627F2659C4A77A ] C:\WINDOWS\system32\basesrv.dll
16:56:21.0500 0x0e8c  [ 63A5456E7C4E7771A8B39F82217E7825, 38DF4B5D94D6186835AF8464C8090E0DBECE302A6125A228081D641C0C10D9D9 ] C:\WINDOWS\system32\winsrv.dll
16:56:21.0531 0x0e8c  [ 63A5456E7C4E7771A8B39F82217E7825, 38DF4B5D94D6186835AF8464C8090E0DBECE302A6125A228081D641C0C10D9D9 ] C:\WINDOWS\system32\winsrv.dll
16:56:21.0546 0x0e8c  [ 26845F272435302E0F3322E660A24F7D, 3034AA4913525B0BB8761A3A1741DDB65E0B87DA6C90B481DD458B2253083DA3 ] C:\WINDOWS\system32\services.exe
16:56:21.0562 0x0e8c  [ Global ] - ok
16:56:21.0562 0x0e8c  ================ Scan MBR ==================================
16:56:21.0578 0x0e8c  [ 828E02D5C4A4FBE53441EE9DBEE51F43 ] \Device\Harddisk0\DR0
16:56:21.0703 0x0e8c  \Device\Harddisk0\DR0 - ok
16:56:21.0703 0x0e8c  ================ Scan VBR ==================================
16:56:21.0703 0x0e8c  [ 50CD62AD5480B718009CD5DDADDC5745 ] \Device\Harddisk0\DR0\Partition1
16:56:21.0750 0x0e8c  \Device\Harddisk0\DR0\Partition1 - ok
16:56:21.0750 0x0e8c  ================ Scan generic autorun ======================
16:56:21.0781 0x0e8c  [ 828697D5B00ABBCA2F506485F66E3157, BF0F09F771FD11D9FF6A175EE4D1E1EA066A56A41453E156308913A3BC9E6A7F ] C:\WINDOWS\system32\igfxtray.exe
16:56:21.0781 0x0e8c  IgfxTray - ok
16:56:21.0796 0x0e8c  [ 4C4CA68CB5A9797A20D00CDCFC7C0266, BEBEBD5A09796CBC71A8E5D41DC267AD9CFCB0D5EDA3AC59DEEB4D5CA7DE6AAE ] C:\WINDOWS\system32\hkcmd.exe
16:56:21.0796 0x0e8c  HotKeysCmds - ok
16:56:21.0812 0x0e8c  [ 34D7282BFAF1A0A7E2B95EAE301426FB, C0A5E0EF8A3E8C9861E33CAD52DD8898DC5AF043839C472C73556FAC1F6C948D ] C:\WINDOWS\system32\igfxpers.exe
16:56:21.0812 0x0e8c  Persistence - ok
16:56:21.0859 0x0e8c  USB Gamepad - ok
16:56:21.0890 0x0e8c  [ 98BA501D9E6F635A40A9B3174F5A3088, EF6AAB97B52030A1234339C5DCFA9FFC60CD595DF57037228EF110360C5F7BA6 ] C:\Programmi\CheckPoint\ZoneAlarm\zatray.exe
16:56:21.0890 0x0e8c  ZoneAlarm - ok
16:56:21.0937 0x0e8c  [ F53CDDEF33A4C41336A782BE3D170158, 935DB29473BEC2EDB91035BCD94633D87E18017898C65269E2376BC311043753 ] C:\WINDOWS\system32\CTFMON.EXE
16:56:21.0937 0x0e8c  CTFMON.EXE - ok
16:56:21.0937 0x0e8c  nltide_2 - ok
16:56:21.0937 0x0e8c  nltide_3 - ok
16:56:21.0937 0x0e8c  [ F53CDDEF33A4C41336A782BE3D170158, 935DB29473BEC2EDB91035BCD94633D87E18017898C65269E2376BC311043753 ] C:\WINDOWS\system32\CTFMON.EXE
16:56:21.0937 0x0e8c  CTFMON.EXE - ok
16:56:21.0937 0x0e8c  nltide_2 - ok
16:56:21.0953 0x0e8c  nltide_3 - ok
16:56:21.0953 0x0e8c  [ F53CDDEF33A4C41336A782BE3D170158, 935DB29473BEC2EDB91035BCD94633D87E18017898C65269E2376BC311043753 ] C:\WINDOWS\system32\ctfmon.exe
16:56:21.0953 0x0e8c  ctfmon.exe - ok
16:56:22.0078 0x0e8c  [ 390679F7A217A5E73D756276C40AE887, 3EDFB645B2F58864E653C66516D6D48C4F9D691CFD51D91D4D88E316EE7B7177 ] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
16:56:22.0140 0x0e8c  SpybotSD TeaTimer - ok
16:56:22.0156 0x0e8c  [ F53CDDEF33A4C41336A782BE3D170158, 935DB29473BEC2EDB91035BCD94633D87E18017898C65269E2376BC311043753 ] C:\WINDOWS\system32\CTFMON.EXE
16:56:22.0156 0x0e8c  CTFMON.EXE - ok
16:56:22.0156 0x0e8c  nltide_2 - ok
16:56:22.0156 0x0e8c  nltide_3 - ok
16:56:22.0171 0x0e8c  [ F53CDDEF33A4C41336A782BE3D170158, 935DB29473BEC2EDB91035BCD94633D87E18017898C65269E2376BC311043753 ] C:\WINDOWS\system32\ctfmon.exe
16:56:22.0171 0x0e8c  CTFMON.EXE - ok
16:56:22.0171 0x0e8c  nltide_2 - ok
16:56:22.0171 0x0e8c  nltide_3 - ok
16:56:22.0171 0x0e8c  Waiting for KSN requests completion. In queue: 157
16:56:23.0171 0x0e8c  Waiting for KSN requests completion. In queue: 157
16:56:24.0171 0x0e8c  Waiting for KSN requests completion. In queue: 157
16:56:25.0171 0x0e8c  Waiting for KSN requests completion. In queue: 157
16:56:26.0281 0x0e8c  AV detected via SS1: avast! Antivirus, 5.0.150996965, enabled, updated
16:56:26.0281 0x0e8c  FW detected via SS1: ZoneAlarm Free Firewall Firewall, 10.2.072.000, enabled
16:56:29.0000 0x0e8c  ============================================================
16:56:29.0000 0x0e8c  Scan finished
16:56:29.0000 0x0e8c  ============================================================
16:56:29.0000 0x0250  Detected object count: 0
16:56:29.0000 0x0250  Actual detected object count: 0
 



#8 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 16 July 2014 - 10:20 AM

# AdwCleaner v3.215 - Rapporto creato 16/07/2014 in 17:16:19
# Aggiornato 09/07/2014 di Xplode
# Sistema operativo : Microsoft Windows XP Service Pack 3 (32 bits)
# Nome utente : Alessandro - TOM
# In esecuzione da : C:\Documents and Settings\Alessandro\Desktop\AdwCleaner.exe
# Opzione : Pulisci

***** [ Servizi ] *****


***** [ File / Cartelle ] *****

Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\NCH Software
Cartella Eliminato : C:\WINDOWS\system32\hotspot shield
Cartella Eliminato : C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\PackageAware
Cartella Eliminato : C:\Documents and Settings\Alessandro\Dati applicazioni\CheckPoint\ZoneAlarm LTD Toolbar
Cartella Eliminato : C:\Documents and Settings\Alessandro\Dati applicazioni\pdfforge
Cartella Eliminato : C:\Documents and Settings\fbwuser\Dati applicazioni\hotspot shield
Cartella Eliminato : C:\Documents and Settings\Alessandro\Dati applicazioni\Mozilla\Firefox\Profiles\62vywp9j.default\ConduitCommon
Cartella Eliminato : C:\Documents and Settings\Alessandro\Dati applicazioni\Mozilla\Firefox\Profiles\62vywp9j.default\FoxTab
Cartella Eliminato : C:\Documents and Settings\Alessandro\Dati applicazioni\Mozilla\Firefox\Profiles\62vywp9j.default\StumbleUpon
File Eliminato : C:\Documents and Settings\Alessandro\Dati applicazioni\Mozilla\Firefox\Profiles\62vywp9j.default\foxydeal.sqlite

***** [ Collegamenti ] *****


***** [ Registro ] *****

Valore Eliminati : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}]
Chiave Eliminati : HKLM\SOFTWARE\Classes\speedupmypc
Chiave Eliminati : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
Chiave Eliminati : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Chiave Eliminati : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Chiave Eliminati : HKCU\Software\Conduit
Chiave Eliminati : HKCU\Software\smarttweak
Chiave Eliminati : HKCU\Software\Softonic
Chiave Eliminati : HKCU\Software\YahooPartnerToolbar
Chiave Eliminati : HKLM\Software\DivX\Install\Setup\WizardLayout\ConduitToolbar
Chiave Eliminati : HKLM\Software\Uniblue
Chiave Eliminati : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZoneAlarm LTD Toolbar
Chiave Eliminati : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\1ClickDownload
Chiave Eliminati : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\hotspotshield

***** [ Browser ] *****

-\\ Internet Explorer v8.0.6001.18702


-\\ Mozilla Firefox v30.0 (it)

[ File : C:\Documents and Settings\Administrator\Dati applicazioni\Mozilla\Firefox\Profiles\4trh74ov.default\prefs.js ]


[ File : C:\Documents and Settings\Alessandro\Dati applicazioni\Mozilla\Firefox\Profiles\62vywp9j.default\prefs.js ]

Riga eliminata : user_pref("CT2977475..clientLogIsEnabled", false);
Riga eliminata : user_pref("CT2977475..clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asmx/ReportDiagnosticsEvent");
Riga eliminata : user_pref("CT2977475..uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/RegisterToolbarUninstallation");
Riga eliminata : user_pref("CT2977475.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Riga eliminata : user_pref("CT2977475.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Riga eliminata : user_pref("CT2977475.AppTrackingLastCheckTime", "Sun Jan 08 2012 16:01:48 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2977475.CT2977475", "CT2977475");
Riga eliminata : user_pref("CT2977475.CurrentServerDate", "11-6-2012");
Riga eliminata : user_pref("CT2977475.DSInstall", false);
Riga eliminata : user_pref("CT2977475.DialogsAlignMode", "LTR");
Riga eliminata : user_pref("CT2977475.DialogsGetterLastCheckTime", "Mon Jun 11 2012 16:41:20 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.DownloadReferralCookieData", "{\"BannerName\":\"\",\"BannerTypeId\":\"\",\"BannerCulture\":\"\",\"DownloadTime\":\"1/8/2012 6:04:23 PM\",\"SourceId\":13,\"OriginSource\":0,\"Refer[...]
Riga eliminata : user_pref("CT2977475.FirstServerDate", "8-1-2012");
Riga eliminata : user_pref("CT2977475.FirstTime", true);
Riga eliminata : user_pref("CT2977475.FirstTimeFF3", true);
Riga eliminata : user_pref("CT2977475.FixPageNotFoundErrors", false);
Riga eliminata : user_pref("CT2977475.GroupingServerCheckInterval", 1440);
Riga eliminata : user_pref("CT2977475.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Riga eliminata : user_pref("CT2977475.HPInstall", false);
Riga eliminata : user_pref("CT2977475.HasUserGlobalKeys", true);
Riga eliminata : user_pref("CT2977475.HomePageProtectorEnabled", false);
Riga eliminata : user_pref("CT2977475.HomepageBeforeUnload", "hxxp://blog.kotaku.com/");
Riga eliminata : user_pref("CT2977475.Initialize", true);
Riga eliminata : user_pref("CT2977475.InitializeCommonPrefs", true);
Riga eliminata : user_pref("CT2977475.InstallationAndCookieDataSentCount", 2);
Riga eliminata : user_pref("CT2977475.InstallationType", "DirectDownload");
Riga eliminata : user_pref("CT2977475.InstalledDate", "Sun Jan 08 2012 16:01:44 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2977475.IsAlertDBUpdated", true);
Riga eliminata : user_pref("CT2977475.IsGrouping", false);
Riga eliminata : user_pref("CT2977475.IsInitSetupIni", true);
Riga eliminata : user_pref("CT2977475.IsMulticommunity", false);
Riga eliminata : user_pref("CT2977475.IsOpenThankYouPage", true);
Riga eliminata : user_pref("CT2977475.IsOpenUninstallPage", true);
Riga eliminata : user_pref("CT2977475.IsProtectorsInit", true);
Riga eliminata : user_pref("CT2977475.LanguagePackLastCheckTime", "Mon Jun 11 2012 16:41:21 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.LanguagePackReloadIntervalMM", 1440);
Riga eliminata : user_pref("CT2977475.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx");
Riga eliminata : user_pref("CT2977475.LastLogin_3.13.0.6", "Mon Jun 11 2012 16:41:20 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.LastLogin_3.9.0.3", "Sun Jan 08 2012 16:02:00 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2977475.LatestVersion", "3.13.0.6");
Riga eliminata : user_pref("CT2977475.Locale", "en");
Riga eliminata : user_pref("CT2977475.MCDetectTooltipHeight", "83");
Riga eliminata : user_pref("CT2977475.MCDetectTooltipShow", false);
Riga eliminata : user_pref("CT2977475.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Riga eliminata : user_pref("CT2977475.MCDetectTooltipWidth", "295");
Riga eliminata : user_pref("CT2977475.MyStuffEnabledAtInstallation", false);
Riga eliminata : user_pref("CT2977475.OriginalFirstVersion", "3.9.0.3");
Riga eliminata : user_pref("CT2977475.RadioShrinked", "shrinked");
Riga eliminata : user_pref("CT2977475.RadioShrinkedFromSetup", true);
Riga eliminata : user_pref("CT2977475.SHRINK_TOOLBAR", 0);
Riga eliminata : user_pref("CT2977475.SearchCaption", "ReversoEN Customized Web Search");
Riga eliminata : user_pref("CT2977475.SearchEngineBeforeUnload", "Google");
Riga eliminata : user_pref("CT2977475.SearchFromAddressBarIsInit", true);
Riga eliminata : user_pref("CT2977475.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2977475&SearchSource=2&q=");
Riga eliminata : user_pref("CT2977475.SearchInNewTabEnabled", true);
Riga eliminata : user_pref("CT2977475.SearchInNewTabIntervalMM", 1440);
Riga eliminata : user_pref("CT2977475.SearchInNewTabLastCheckTime", "Mon Jun 11 2012 16:41:20 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.SearchInNewTabServiceUrl", "hxxp://newtab.conduit-hosting.com/newtab/?ctid=EB_TOOLBAR_ID");
Riga eliminata : user_pref("CT2977475.SearchInNewTabUserEnabled", false);
Riga eliminata : user_pref("CT2977475.SearchProtectorEnabled", false);
Riga eliminata : user_pref("CT2977475.SearchProtectorToolbarDisabled", true);
Riga eliminata : user_pref("CT2977475.SendProtectorDataViaLogin", true);
Riga eliminata : user_pref("CT2977475.ServiceMapLastCheckTime", "Mon Jun 11 2012 16:41:19 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.SettingsLastCheckTime", "Mon Jun 11 2012 16:41:19 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.SettingsLastUpdate", "1337169810");
Riga eliminata : user_pref("CT2977475.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2977475&SearchSource=13");
Riga eliminata : user_pref("CT2977475.ThirdPartyComponentsInterval", 504);
Riga eliminata : user_pref("CT2977475.ThirdPartyComponentsLastCheck", "Mon Jun 11 2012 16:41:19 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.ThirdPartyComponentsLastUpdate", "1331805997");
Riga eliminata : user_pref("CT2977475.ToolbarDisabled", true);
Riga eliminata : user_pref("CT2977475.ToolbarShrinkedFromSetup", true);
Riga eliminata : user_pref("CT2977475.TrusteLinkUrl", "hxxp://trust.conduit.com/CT2977475");
Riga eliminata : user_pref("CT2977475.TrustedApiDomains", "conduit.com,conduit-hosting.com,conduit-services.com,client.conduit-storage.com,OurToolbar.com,CommunityToolbars.com,ForumToolbar.com,MyBlogToolbar.com,MyCity[...]
Riga eliminata : user_pref("CT2977475.UserID", "UN43335599237272154");
Riga eliminata : user_pref("CT2977475.alertChannelId", "1369207");
Riga eliminata : user_pref("CT2977475.approveUntrustedApps", true);
Riga eliminata : user_pref("CT2977475.backendstorage.langfrom", "656E676C697368");
Riga eliminata : user_pref("CT2977475.backendstorage.langto", "6672656E6368");
Riga eliminata : user_pref("CT2977475.backendstorage.lcidfrom", "31303333");
Riga eliminata : user_pref("CT2977475.backendstorage.lcidto", "31303336");
Riga eliminata : user_pref("CT2977475.components.129458834828419112", true);
Riga eliminata : user_pref("CT2977475.components.129458845489825197", false);
Riga eliminata : user_pref("CT2977475.components.129471061685819314", false);
Riga eliminata : user_pref("CT2977475.generalConfigFromLogin", "{\"ApiMaxAlerts\":\"12\",\"SocialDomains\":\"social.conduit.com;apps.conduit.com;services.apps.conduit.com\",\"AppsDetectionUrlPattern\":\"hxxp://appdown[...]
Riga eliminata : user_pref("CT2977475.globalFirstTimeInfoLastCheckTime", "Mon Jun 11 2012 16:41:20 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.homepageProtectorEnableByLogin", true);
Riga eliminata : user_pref("CT2977475.initDone", true);
Riga eliminata : user_pref("CT2977475.isAppTrackingManagerOn", true);
Riga eliminata : user_pref("CT2977475.isFirstRadioInstallation", false);
Riga eliminata : user_pref("CT2977475.isSearchProtectorNotifyChanges", false);
Riga eliminata : user_pref("CT2977475.myStuffEnabled", true);
Riga eliminata : user_pref("CT2977475.myStuffPublihserMinWidth", 400);
Riga eliminata : user_pref("CT2977475.myStuffSearchUrl", "hxxp://Apps.conduit.com/search?q=SEARCH_TERM&SearchSourceOrigin=29&ctid=EB_TOOLBAR_ID&octid=EB_ORIGINAL_CTID");
Riga eliminata : user_pref("CT2977475.myStuffServiceIntervalMM", 1440);
Riga eliminata : user_pref("CT2977475.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?ComponentId=EB_MY_STUFF_INSTANCE_GUID&lut=EB_MY_STUFF_LUT");
Riga eliminata : user_pref("CT2977475.oldAppsList", "129458831455031364,129458831455031365,111,129458834828419112,129471061685819314,1000034,1000080,1000082,1000234,1000515,1000,1001,1002,1003,1004,1005,1006,1007,1008[...]
Riga eliminata : user_pref("CT2977475.revertSettingsEnabled", true);
Riga eliminata : user_pref("CT2977475.searchProtectorDialogDelayInSec", 10);
Riga eliminata : user_pref("CT2977475.searchProtectorEnableByLogin", true);
Riga eliminata : user_pref("CT2977475.testingCtid", "");
Riga eliminata : user_pref("CT2977475.toolbarAppMetaDataLastCheckTime", "Mon Jun 11 2012 16:41:20 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.toolbarContextMenuLastCheckTime", "Mon Jun 11 2012 16:41:20 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CT2977475.usageEnabled", false);
Riga eliminata : user_pref("CT2977475.usagesFlag", 1);
Riga eliminata : user_pref("CT2990218.ALLOW_SHOWING_HIDDEN_TOOLBAR", false);
Riga eliminata : user_pref("CT2990218.AppTrackingLastCheckTime", "Tue Jan 17 2012 14:52:19 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.BrowserCompStateIsOpen_129473677946131396", true);
Riga eliminata : user_pref("CT2990218.DSInstall", false);
Riga eliminata : user_pref("CT2990218.DialogsAlignMode", "LTR");
Riga eliminata : user_pref("CT2990218.DialogsGetterLastCheckTime", "Tue Jan 17 2012 14:52:09 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.FirstTimeFF3", true);
Riga eliminata : user_pref("CT2990218.HPInstall", false);
Riga eliminata : user_pref("CT2990218.HasUserGlobalKeys", true);
Riga eliminata : user_pref("CT2990218.Initialize", true);
Riga eliminata : user_pref("CT2990218.InitializeCommonPrefs", true);
Riga eliminata : user_pref("CT2990218.InstalledDate", "Tue Jan 17 2012 14:52:28 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.IsGrouping", false);
Riga eliminata : user_pref("CT2990218.IsInitSetupIni", true);
Riga eliminata : user_pref("CT2990218.IsMulticommunity", false);
Riga eliminata : user_pref("CT2990218.IsOpenThankYouPage", true);
Riga eliminata : user_pref("CT2990218.IsOpenUninstallPage", true);
Riga eliminata : user_pref("CT2990218.LanguagePackLastCheckTime", "Tue Jan 17 2012 14:52:11 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.Locale", "en");
Riga eliminata : user_pref("CT2990218.MCDetectTooltipHeight", "83");
Riga eliminata : user_pref("CT2990218.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Riga eliminata : user_pref("CT2990218.MCDetectTooltipWidth", "295");
Riga eliminata : user_pref("CT2990218.MyStuffEnabledAtInstallation", true);
Riga eliminata : user_pref("CT2990218.SearchCaption", "servershare Customized Web Search");
Riga eliminata : user_pref("CT2990218.SearchFromAddressBarIsInit", true);
Riga eliminata : user_pref("CT2990218.SearchProtectorToolbarDisabled", true);
Riga eliminata : user_pref("CT2990218.SendProtectorDataViaLogin", true);
Riga eliminata : user_pref("CT2990218.ServiceMapLastCheckTime", "Tue Jan 17 2012 14:51:57 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.SettingsLastCheckTime", "Tue Jan 17 2012 14:52:04 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.SettingsLastUpdate", "1326723880");
Riga eliminata : user_pref("CT2990218.TBHomePageUrl", "hxxp://search.conduit.com/?ctid=CT2990218&SearchSource=13");
Riga eliminata : user_pref("CT2990218.ThirdPartyComponentsInterval", 504);
Riga eliminata : user_pref("CT2990218.ThirdPartyComponentsLastCheck", "Tue Jan 17 2012 14:51:57 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.ThirdPartyComponentsLastUpdate", "1312887586");
Riga eliminata : user_pref("CT2990218.ToolbarDisabled", true);
Riga eliminata : user_pref("CT2990218.ToolbarShrinkedFromSetup", false);
Riga eliminata : user_pref("CT2990218.alertChannelId", "1381953");
Riga eliminata : user_pref("CT2990218.globalFirstTimeInfoLastCheckTime", "Tue Jan 17 2012 14:52:07 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.initDone", true);
Riga eliminata : user_pref("CT2990218.isAppTrackingManagerOn", true);
Riga eliminata : user_pref("CT2990218.revertSettingsEnabled", true);
Riga eliminata : user_pref("CT2990218.testingCtid", "");
Riga eliminata : user_pref("CT2990218.toolbarAppMetaDataLastCheckTime", "Tue Jan 17 2012 14:52:11 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CT2990218.toolbarContextMenuLastCheckTime", "Tue Jan 17 2012 14:52:11 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2042647/CT2042647", "\"3f7c34b833766f5e3705640d9ee5ef361\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2977475/CT2977475", "\"5af65c13f3f6c1ffae6e7963147359031\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://Settings.toolbar.search.conduit.com/root/CT2990218/CT2990218", "\"1326723881\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://alerts.conduit-services.com/root/1369207/1364866/IT", "\"0\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2042647", "\"1295102353\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2977475", "\"0\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://appsmetadata.toolbar.conduit-services.com/?ctid=CT2990218", "\"1302894194\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en", "wNaokyQn90mMItP1sym06A==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=GottenApps&locale=en-us", "wNaokyQn90mMItP1sym06A==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en", "V3ke+ogt4ejn0sB1xPR3nw==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=OtherApps&locale=en-us", "V3ke+ogt4ejn0sB1xPR3nw==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en", "k9un27OkAvkwB2ZmvXxTnA==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=SharedApps&locale=en-us", "bM8wQLfFAEKgVLVF/G5zig==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en", "9zRvKErdMb8hJOq85ft5Vg==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://contextmenu.toolbar.conduit-services.com/?name=Toolbar&locale=en-us", "cTVrc75U9YwdI74PAhUYFw==");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.alert.conduit-services.com/alert/dlg.pkg", "\"8076e3ce381dcd1:0\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.11.1.1", "\"4ead38b3e6bcd1:0\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.13.0.6", "\"4ead38b3e6bcd1:0\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://dynamicdialogs.toolbar.conduit-services.com/DLG.pkg?ver=3.9.0.3", "\"6a637346d78ccc1:0\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2042647", "\"75babe825203d7a8eecb898dcf55bf17\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2977475", "\"d76323372b05c3748a3d6b1c93a98292\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://servicemap.conduit-services.com/Toolbar/?ownerId=CT2990218", "\"567c96be3ef640e157660940cadc2edb\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en", "\"21ba1682b5b6825cbfd420592a540476\"");
Riga eliminata : user_pref("CommunityToolbar.ETag.hxxp://translation.toolbar.conduit-services.com/?locale=en-us", "\"1feaeefdd176a2a47f0f1d287d3ed83c\"");
Riga eliminata : user_pref("CommunityToolbar.LatestLibsPath", "file:///C:\\Documents and Settings\\Alessandro\\Dati applicazioni\\Mozilla\\Firefox\\Profiles\\62vywp9j.default\\conduitCommon\\modules\\3.13.0.6");
Riga eliminata : user_pref("CommunityToolbar.LatestToolbarVersionInstalled", "3.13.0.6");
Riga eliminata : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://www.google.com/search?sourceid=navclient&hl=it&q=");
Riga eliminata : user_pref("CommunityToolbar.ToolbarsList", "CT2977475,CT2990218");
Riga eliminata : user_pref("CommunityToolbar.ToolbarsList2", "CT2977475");
Riga eliminata : user_pref("CommunityToolbar.ToolbarsList4", "CT2977475,CT2990218");
Riga eliminata : user_pref("CommunityToolbar.globalUserId", "7a82bbb8-b093-41a5-a756-d45d10dc50d2");
Riga eliminata : user_pref("CommunityToolbar.isAlertUrlAddedToFeedItemTable", true);
Riga eliminata : user_pref("CommunityToolbar.isClickActionAddedToFeedItemTable", true);
Riga eliminata : user_pref("CommunityToolbar.notifications.alertDialogsGetterLastCheckTime", "Mon Jun 11 2012 16:41:21 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CommunityToolbar.notifications.alertEnabled", false);
Riga eliminata : user_pref("CommunityToolbar.notifications.alertInfoInterval", 60);
Riga eliminata : user_pref("CommunityToolbar.notifications.alertInfoLastCheckTime", "Sun Jan 08 2012 16:01:45 GMT+0100 (ora solare Europa occidentale)");
Riga eliminata : user_pref("CommunityToolbar.notifications.clientsServerUrl", "hxxp://alert.client.conduit.com");
Riga eliminata : user_pref("CommunityToolbar.notifications.locale", "en");
Riga eliminata : user_pref("CommunityToolbar.notifications.loginIntervalMin", 1440);
Riga eliminata : user_pref("CommunityToolbar.notifications.loginLastCheckTime", "Mon Jun 11 2012 16:41:19 GMT+0200 (ora legale Europa occidentale)");
Riga eliminata : user_pref("CommunityToolbar.notifications.loginLastUpdateTime", "1313487611");
Riga eliminata : user_pref("CommunityToolbar.notifications.messageShowTimeSec", 20);
Riga eliminata : user_pref("CommunityToolbar.notifications.servicesServerUrl", "hxxp://alert.services.conduit.com");
Riga eliminata : user_pref("CommunityToolbar.notifications.showTrayIcon", false);
Riga eliminata : user_pref("CommunityToolbar.notifications.userCloseIntervalMin", 300);
Riga eliminata : user_pref("CommunityToolbar.notifications.userId", "97a1ae52-8195-41b4-8d08-93ac699d21ea");
Riga eliminata : user_pref("CommunityToolbar.originalHomepage", "hxxp://blog.kotaku.com/");
Riga eliminata : user_pref("CommunityToolbar.originalSearchEngine", "Google");
Riga eliminata : user_pref("gm-notifier.ui.counter.showInbox", true);

-\\ Google Chrome v35.0.1916.153

[ File : C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [22620 octets] - [16/07/2014 16:58:08]
AdwCleaner[S0].txt - [22927 octets] - [16/07/2014 17:16:19]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [22988 octets] ##########
 



#9 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 16 July 2014 - 10:35 AM

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Microsoft Windows XP x86
Ran by Alessandro on 16/07/2014 at 17.22.55,23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-1454471165-1972579041-682003330-1003\Software\Microsoft\Internet Explorer\Main\\Start Page



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ FireFox

Successfully deleted: [Folder] C:\Documents and Settings\Alessandro\Dati applicazioni\mozilla\firefox\profiles\62vywp9j.default\extensions\{ef522540-89f5-46b9-b6fe-1829e2b572c6}
Successfully deleted the following from C:\Documents and Settings\Alessandro\Dati applicazioni\mozilla\firefox\profiles\62vywp9j.default\prefs.js

user_pref("adblock.patterns", "!Filterset.G[hxxp://www.pierceive.com/]=2008-03-08a-MERGED .adquest.nl .adreporting.com .geldrace.nl .site-id.nl /(\\Wadv|banner|promo)s?(\\.(?!
user_pref("extensions.customizegoogle.cookies.SafeSearch", "empty");
user_pref("extensions.customizegoogle.cookies.enableSafeSearch", false);
user_pref("extensions.speeddial.thumbnail-13-label", "Anime News Network");
user_pref("fgupdater.patterns", "!Filterset.G[hxxp://www.pierceive.com/]=2008-03-08a-MERGED .adquest.nl .adreporting.com .geldrace.nl .site-id.nl /(\\Wadv|banner|promo)s?(\\.(
user_pref("google.toolbar.button_option.cached.gtbSearchBlogs", "<toolbarbutton xmlns=\"hxxp://www.mozilla.org/keymaster/gatekeeper/there.is.only.xul\" id=\"gtbSearchBlogs\" t
user_pref("google.toolbar.button_option.cached.gtbSearchPhotos", "<toolbarbutton xmlns=\"hxxp://www.mozilla.org/keymaster/gatekeeper/there.is.only.xul\" id=\"gtbSearchPhotos\"
user_pref("google.toolbar.button_option.cached.gtbSearchScholar", "<toolbarbutton xmlns=\"hxxp://www.mozilla.org/keymaster/gatekeeper/there.is.only.xul\" id=\"gtbSearchScholar
user_pref("google.toolbar.button_option.cached.gtbstoolbar-google-com_J66T77NJDBMW4FEUU7FA-xml", "<toolbarbutton xmlns=\"hxxp://www.mozilla.org/keymaster/gatekeeper/there.is.o
user_pref("google.toolbar.button_option.cached.gtbutoolbar-google-com_CHW6HL2ILDOMNY4CTR3Q-xml", "<toolbarbutton xmlns=\"hxxp://www.mozilla.org/keymaster/gatekeeper/there.is.o
user_pref("google.toolbar.search-icon", "data:image/x-icon;base64,AAABAAEAEBAAAAEAIABoBAAAFgAAACgAAAAQAAAAIAAAAAEAIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA7PT7/3zF6/9Ptu//RbHx/
Emptied folder: C:\Documents and Settings\Alessandro\Dati applicazioni\mozilla\firefox\profiles\62vywp9j.default\minidumps [3 files]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 16/07/2014 at 17.30.26,00
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



#10 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 16 July 2014 - 04:20 PM

ESET is still going (43%), will probably have to post the log tomorrow.



#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,934 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:03 AM

Posted 16 July 2014 - 09:40 PM

You may have to tell Zonealarm to allow that,it's safe.

I do not see AVira installed.
I do see Avast installed. You can have only ONE AV.

CMD.EXE is Command Prompt
CMD.exe is located in the folder C:\Windows\System32.

Let ESET complete.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#12 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 17 July 2014 - 04:29 AM

Of course I only have Avast right now, I removed Avira (couldn't update) before installing Avast. ESET was stuck at 99% on the same file for a very very long time (bunch of hours), after I allowed a request from it in ZoneAlarm, so I had to stop it, it just wouldn't progress. I will do the scan again if you want, though the last time took 14 hours (!).

 

ESET scan:

 

C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\CCleaner 3.0.7.exe    Win32/Bundled.Toolbar.Google.D potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Daemon Tools Lite 4122.exe    Win32/Adware.Toolbar.Shopper application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Driver Sweeper 2.9.0.exe    Win32/OpenCandy potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\HotSpot Shield 2.04.exe    a variant of Win32/Toolbar.Conduit.B potentially unwanted application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Keyfinder.exe    a variant of Win32/MagicalJellyBean.A potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Mirc 7.22 Crack.exe    a variant of Win32/HackTool.Patcher.T potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Update My Drivers 7.0.exe    a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\ZoneAlarm.exe    Win32/Toolbar.Conduit potentially unwanted application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\[Everything Else]\burp.exe    Win32/Joke.RJL.RandomBurper potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\[Everything Else]\DeathwishDog.exe    a variant of Win32/Joke.ScreenMate.AA potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\[Everything Else]\gattino.exe    Win32/Joke.ScreenMate potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\[Everything Else]\mg44.exe    Win16/BadJoke.Winshoot.A potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Videogames\[Everything Else]\Super Antivirus v.0.01.exe    Win32/Joke.SuperAntivirus.A potentially unsafe application    
C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Sun\Java\Deployment\cache\6.0\11\1727e90b-63f03d01    multiple threats    
C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Sun\Java\Deployment\cache\6.0\36\689d8ce4-44539319    a variant of Java/Exploit.CVE-2013-2460.AP trojan    
C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Sun\Java\Deployment\cache\6.0\46\6e201b2e-735fd76b    a variant of Java/Exploit.CVE-2013-0422.BF trojan    
C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Sun\Java\Deployment\cache\6.0\49\16c64df1-3a4ae734    multiple threats    
C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Sun\Java\Deployment\cache\6.0\55\4a5aa437-6bf2c365    multiple threats    
C:\Documents and Settings\Alessandro\Impostazioni locali\Dati applicazioni\Sun\Java\Deployment\cache\6.0\62\38bf833e-64ed2f18    a variant of Java/Exploit.CVE-2013-0422.DK trojan    
C:\Programmi\CheckPoint\Install\CUninstaller.exe    Win32/Toolbar.Conduit potentially unwanted application    
C:\Programmi\DAEMON Tools Lite\uninst.exe    Win32/Adware.Toolbar.Shopper application    
C:\WINDOWS\system32\Adobe\Shockwave 12\gt.exe    Win32/Bundled.Toolbar.Google.D potentially unsafe application    
C:\Documents and Settings\Alessandro\Desktop\Ale\[VVV]\cnet_Install Mario Kart Screensaver_exe.exe    a variant of Win32/InstallCore.D potentially unwanted application    deleted - quarantined
C:\Documents and Settings\Alessandro\Desktop\Ale\[VVV]\cnet_Install Mario World Screensaver_exe.exe    a variant of Win32/InstallCore.D potentially unwanted application    deleted - quarantined
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Alcohol 120% 1.9.7.6221.exe    a variant of Win32/Toolbar.Conduit.B potentially unwanted application    deleted - quarantined
C:\Documents and Settings\Alessandro\Desktop\Videogames\Programmi & Utilities\Avira Antivir 2013.exe    a variant of Win32/Bundled.Toolbar.Ask potentially unsafe application    deleted - quarantined
 



#13 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 17 July 2014 - 05:35 AM

Ran Flash Disinfector but:

 

As part of its routine, Flash_Disinfector will create a hidden folder named autorun.inf in each partition and every USB drive that was plugged in when you ran it

 

That's not there, I don't see it, it's not even a hidden folder.



#14 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 72,934 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:07:03 AM

Posted 17 July 2014 - 09:39 PM

Ok,,,, Try Panda USB Vaccine


How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#15 parappa

parappa
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Local time:01:03 PM

Posted 18 July 2014 - 07:11 AM

Ok,,,, Try Panda USB Vaccine

Done, now the autorun file is there.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users