Valutazione 4.87/ 5 (100.00%) 5838 voti

Condividi:        

citofarera

Come rimuovere virus e spyware? Le carte di credito sono davvero sicure in rete? È possibile navigare anonimi? Con quali programmi tutelare la propria privacy? Come proteggere i file importanti? Se volete una risposta a queste e altre domande questo è il luogo giusto!

Moderatori: kadosh, Luke57

inoltre...

Postdi ishara » 27/08/06 08:09

Ho fatto un'altra scansione con HijackThis, così magari potete vedere se c'è qualcosa che non va... Grazie ancora!!!!Logfile of HijackThis v1.99.1
Scan saved at 9.08.40, on 27/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\AntiVir PersonalEdition Classic\sched.exe
C:\Programmi\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Programmi\File comuni\Real\Update_OB\realsched.exe
C:\Programmi\QuickTime\qttask.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
C:\Programmi\digicomt\Michelangelo USB ADSL\CnxDslTb.exe
C:\Programmi\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe
C:\Programmi\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Programmi\AVerTV PVR\QuickTV.exe
C:\WINDOWS\system32\dllhost.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Programmi\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\MSN Messenger\msnmsgr.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\DOCUME~1\Loredana\IMPOST~1\Temp\Rar$EX00.953\HijackThis.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\WinRAR\WinRAR.exe
C:\DOCUME~1\Loredana\IMPOST~1\Temp\Rar$EX00.922\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.it/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {2a6af021-17a2-4014-8624-cf6015f82fad} - C:\WINDOWS\system32\kfaa.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NVMixerTray] "C:\Programmi\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Programmi\File comuni\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Programmi\Creative\Shared Files\CamTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RemoteControl] C:\Programmi\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [{1290A33C-85F5-4164-A1BE-7DD299D4986A}] C:\Programmi\CyberLink\PowerBackup\PBKScheduler.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\\PSDrvCheck.exe
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Programmi\digicomt\Michelangelo USB ADSL\CnxDslTb.exe"
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [avgnt] "C:\Programmi\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Programmi\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [msnmsgr] "C:\Programmi\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Programmi\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Programmi\eMule\emule.exe -AutoStart
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: QuickTV.lnk = C:\Programmi\AVerTV PVR\QuickTV.exe
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/c ... /tt4_x.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Programmi\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by104fd.bay104.hotmail.msn.com/r ... nPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 7121058812
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 4524355875
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMe ... loader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZI ... b32846.cab
O16 - DPF: {C1B7E532-3ECB-4E9E-BB3A-2951FFE67C61} (DownloaderActiveX Control) - http://c6.community.virgilio.it/downloa ... ctiveX.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{BD17F3FC-200F-4368-BBC4-B2469ED86579}: NameServer = 85.37.17.9 85.38.28.75
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: SASWinLogon - C:\Programmi\SUPERAntiSpyware\SASWINLO.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Programmi\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Programmi\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
ishara
Newbie
 
Post: 8
Iscritto il: 27/08/06 07:47

Sponsor
 

Postdi andorra24 » 27/08/06 08:13

C'e' solo questa voce da eliminare:

O2 - BHO: (no name) - {2a6af021-17a2-4014-8624-cf6015f82fad} - C:\WINDOWS\system32\kfaa.dll (file missing)
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

grazie

Postdi ishara » 27/08/06 08:22

Grazie andorra24!!!!

L'ho eliminato e mi ha cambiato l'homepage, che prima era google e adesso è about:blank

E' normale?
ishara
Newbie
 
Post: 8
Iscritto il: 27/08/06 07:47

Postdi andorra24 » 27/08/06 08:31

Scaricati cwshredder e fai una scansione premendo il pulsante fix. Dopo puoi risistemarti nuovamente l'homepage di google.

http://www.trendmicro.com/ftp/products/ ... redder.exe
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi ishara » 27/08/06 08:36

Spettacolo andorra24!!!!

SUPERGRASSIE!!!!!!!
ishara
Newbie
 
Post: 8
Iscritto il: 27/08/06 07:47

Postdi ishara » 27/08/06 08:41

E si è risolto anche il problema dei link e degli allegati....

Co sto cavolo che pago il tecnico adesso... Mi sentirà domani!!! :evil:
ishara
Newbie
 
Post: 8
Iscritto il: 27/08/06 07:47

Postdi andorra24 » 27/08/06 08:47

Bene, mi fa piacere che adesso sia tutto ok. ;)
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi biosistemi » 28/08/06 08:59

ho ripreso di nuovo citofarera :oops: ...mi aiutereste?

vi copio il log file

Logfile of HijackThis v1.99.1
Scan saved at 9.50.18, on 28/08/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\File comuni\Microsoft Shared\VS7Debug\mdm.exe
C:\Programmi\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\File comuni\Symantec Shared\ccApp.exe
C:\Programmi\Microsoft Office\Office10\OUTLOOK.EXE
C:\Programmi\Spybot - Search & Destroy\SpybotSD.exe
C:\Programmi\Messenger\msmsgs.exe
C:\Documents and Settings\Utente\Impostazioni locali\Temp\Directory temporanea 3 per hijackthis_199.zip\HijackThis.exe

O2 - BHO: edit_html Class - {14D1A72D-8705-11D8-B120-0040F46CB696} - C:\Documents and Settings\Utente\Desktop\821133128.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Programmi\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Programmi\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ccApp] "C:\Programmi\File comuni\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Programmi\File comuni\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\MSMSGS.EXE
O15 - Trusted Zone: http://www.1987324.com
O16 - DPF: {08BEF711-06DA-48B2-9534-802ECAA2E4F9} (PlxInstall Class) - http://down.plaxo.com/down/latest/PlaxoInstall.cab
O16 - DPF: {C982AFAD-04DD-400C-9486-219A25B36363} (prgDoEvents.clsDoEvents) - http://tema/Include/prgDoEvents.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{F9B7D34A-CCCD-46D7-A43E-69D9CD39E7E7}: NameServer = 151.99.125.2,151.99.125.3
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\ccSetMgr.exe
O23 - Service: Servizio Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Programmi\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Programmi\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FILECO~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Programmi\File comuni\Symantec Shared\Security Center\SymWSC.exe

Ed in più vi chiedo, come posso fare per evitare di nuovo di beccarmelo. Ora sul mio pc c'è il norton antivirus. mi consigliate di cambiarlo o di affiancargli qualche altro tool?
grazie
biosistemi
Newbie
 
Post: 4
Iscritto il: 24/08/06 09:54
Località: bologna

Postdi andorra24 » 28/08/06 09:05

Metti la spunta nella casellina accanto alle seguenti voci e dopo esserti disconnesso da internet e aver chiuso tutti i programmi aperti premi fix checked:

O2 - BHO: edit_html Class - {14D1A72D-8705-11D8-B120-0040F46CB696} - C:\Documents and Settings\Utente\Desktop\821133128.dll (file missing)
O15 - Trusted Zone: http://www.1987324.com
O16 - DPF: {08BEF711-06DA-48B2-9534-802ECAA2E4F9} (PlxInstall Class) - http://down.plaxo.com/down/latest/PlaxoInstall.cab (se non conosci questa voce eliminala)
O16 - DPF: {C982AFAD-04DD-400C-9486-219A25B36363} (prgDoEvents.clsDoEvents) - http://tema/Include/prgDoEvents.CAB (se non conosci questa voce eliminala)

Controlla se c'e' questo file e se lo trovi eliminalo:
C:\Documents and Settings\Utente\Desktop\821133128.dll

Fai una scansione con superantispyware:
http://www.superantispyware.com/downloa ... PYWAREFREE

biosistemi ha scritto:
Ed in più vi chiedo, come posso fare per evitare di nuovo di beccarmelo.


Evita di andare negli stessi siti dove l'hai beccato per ben 2 volte. Errare humanum est. Perseverare diabolicum. :D ;)
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi biosistemi » 28/08/06 09:13

hai ragione ma sono in ufficio e quelli che navigo sono siti di lavoro (a parte repubblica.it e corriere.it)
comunque grazie, ora torno alla mia battaglia con citofarera nella speranza di vincere la guerra!
biosistemi
Newbie
 
Post: 4
Iscritto il: 24/08/06 09:54
Località: bologna

Postdi andorra24 » 28/08/06 09:24

biosistemi ha scritto:hai ragione ma sono in ufficio e quelli che navigo sono siti di lavoro (a parte repubblica.it e corriere.it)
comunque grazie, ora torno alla mia battaglia con citofarera nella speranza di vincere la guerra!

Comunque ti consiglio di usare Firefox per navigare perche' IE e' un colabrodo e fa entrare di tutto. E anche il SP2 di XP non ti farebbe male. ;)
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi n1926 » 30/08/06 22:58

ho fatto tutto quello che mi è stato detto da andorra24 x eliminare questa voce che mi compare in Spybot...
HKEY_USERS\S-1-5-21-448539723-789336058-854245398-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com\www\*!=W=4

...ma questa mi compare sempre...
ho eliminato i file indicatemi, fixato le voci che dovevo, ho scaricato superantispyware fatto la scansione ma nn mi segnala nulla...
di cosa si tratta secondo voi?...
(ho fatto tutte le operazioni non in modalità provvisoria...)
n1926
Utente Junior
 
Post: 41
Iscritto il: 24/08/06 10:48

Postdi andorra24 » 30/08/06 23:32

n1926 ha scritto: questa voce che mi compare in Spybot...
HKEY_USERS\S-1-5-21-448539723-789336058-854245398-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com\www\*!=W=4


Allora, direi che l'unica cosa da fare sia di andare nel registro (start/esegui/regedit) e seguendo con attenzione il percorso indicato da spybot elimini manualmente la voce 1987324.com. E' molto facile. Fallo preferibilmente disconnesso da internet.
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi n1926 » 31/08/06 01:00

andorra24 ha scritto:
n1926 ha scritto: questa voce che mi compare in Spybot...
HKEY_USERS\S-1-5-21-448539723-789336058-854245398-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com\www\*!=W=4


Allora, direi che l'unica cosa da fare sia di andare nel registro (start/esegui/regedit) e seguendo con attenzione il percorso indicato da spybot elimini manualmente la voce 1987324.com. E' molto facile. Fallo preferibilmente disconnesso da internet.


fatto... ti ringrazio...!!!!! buonanotte!!! ;)
n1926
Utente Junior
 
Post: 41
Iscritto il: 24/08/06 10:48

Postdi andorra24 » 31/08/06 10:12

n1926 ha scritto:
fatto... ti ringrazio...!!!!!

Bene. ;)
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

infetto citoforera

Postdi cirino » 02/09/06 13:04

mi sono beccato citofarera,
vorrei allegare i risultati della scansione con spybot, ma...
come aggiungo un allegato?
cirino
Utente Junior
 
Post: 13
Iscritto il: 02/09/06 12:59
Località: roma

Re: infetto citoforera

Postdi andorra24 » 02/09/06 13:12

cirino ha scritto:mi sono beccato citofarera,
vorrei allegare i risultati della scansione con spybot, ma...
come aggiungo un allegato?

Non occorre l'allegato, basta un semplice copia/incolla.
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi cirino » 02/09/06 13:19

grazie della tempestività.
sicuramente avrete risposto già per altri, ma non sono molto pratico, ed è più facile se si hanno notizie dirette a sè stessi
ancora grazie per l'attenzione



--- Search result list ---
Citofarera: Collegamento (File, nothing done)
C:\Documents and Settings\rossi mario\Dati applicazioni\Microsoft\Internet Explorer\Quick Launch\e1xplorer.lnk

Citofarera: Pagina web (File, nothing done)
C:\Documents and Settings\rossi mario\Documenti\e1xplorer.lnk

Citofarera: Pagina web (File, nothing done)
C:\Documents and Settings\rossi mario\Preferiti\e1xplorer.lnk

GAIN.DashBar: Cartella temporanea (Cartella, nothing done)
C:\Documents and Settings\rossi mario\Impostazioni locali\Temp\fsg_tmp\

Alexa Related: Collegamento (Sostituisci file, nothing done)
C:\WINDOWS\Web\related.htm

Radiate: Cartella di programma (Cartella, nothing done)
C:\WINDOWS\amcdl\


--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2006-09-02 unins000.exe (51.41.0.0)
2005-05-31 Update.exe (1.4.0.0)
2005-05-31 advcheck.dll (1.0.2.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2005-05-31 Tools.dll (2.0.0.2)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2006-08-25 Includes\Cookies.sbi (*)
2006-08-25 Includes\Dialer.sbi (*)
2006-08-25 Includes\Hijackers.sbi (*)
2006-08-25 Includes\Keyloggers.sbi (*)
2006-08-25 Includes\Malware.sbi (*)
2006-08-25 Includes\PUPS.sbi (*)
2006-08-25 Includes\Revision.sbi (*)
2006-08-25 Includes\Security.sbi (*)
2006-08-25 Includes\Spybots.sbi (*)
2005-02-17 Includes\Tracks.uti
2006-08-25 Includes\Trojans.sbi (*)



--- System information ---
Windows XP (Build: 2600) Service Pack 1


--- Startup entries list ---
Located: HK_LM:Run, PCdefense
command: C:\Programmi\Laplink\PCdefense\PCdefense.exe
file: C:\Programmi\Laplink\PCdefense\PCdefense.exe
size: 1572864
MD5: ee4a4b8f868362cad0e09d6a197497f1

Located: HK_LM:Run, QuickTime Task
command: "C:\Programmi\QuickTime\qttask.exe" -atboottime
file: C:\Programmi\QuickTime\qttask.exe
size: 98304
MD5: 76a3a30b58405c2c6d833895253a51a9

Located: HK_LM:Run, SO5 Integrator Pass Two
command: C:\WINDOWS\SOINTGR.EXE
file: C:\WINDOWS\SOINTGR.EXE
size: 20480
MD5: 7dae337742d4ad01c2823f8c3bcb4afc

Located: HK_CU:Run, BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}
command: "C:\Programmi\File comuni\Ahead\lib\NMBgMonitor.exe"
file:

Located: HK_CU:Run, ctfmon.exe
command: C:\WINDOWS\System32\ctfmon.exe
file: C:\WINDOWS\System32\ctfmon.exe
size: 13312
MD5: 177476265ad4fbfd151a27f74b8da42f

Located: WinLogon, crypt32chain
command: crypt32.dll
file: crypt32.dll

Located: WinLogon, cryptnet
command: cryptnet.dll
file: cryptnet.dll

Located: WinLogon, cscdll
command: cscdll.dll
file: cscdll.dll

Located: WinLogon, ScCertProp
command: wlnotify.dll
file: wlnotify.dll

Located: WinLogon, Schedule
command: wlnotify.dll
file: wlnotify.dll

Located: WinLogon, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll

Located: WinLogon, SensLogn
command: WlNotify.dll
file: WlNotify.dll

Located: WinLogon, termsrv
command: wlnotify.dll
file: wlnotify.dll

Located: WinLogon, wlballoon
command: wlnotify.dll
file: wlnotify.dll



--- Browser helper object list ---
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
BHO name:
CLSID name: AcroIEHlprObj Class
description: Adobe Acrobat reader
classification: Legitimate
known filename: AcroIEhelper.ocx<br>AcroIEhelper.dll
info link: http://www.adobe.com/products/acrobat/readstep2.html
info source: TonyKlein
Path: C:\Programmi\Adobe\Acrobat 5.0\Reader\ActiveX\
Long name: AcroIEHelper.ocx
Short name: ACROIE~1.OCX
Date (created): 21/02/2006 13.49.46
Date (last access): 02/09/2006 12.17.16
Date (last write): 16/04/2001 16.39.02
Filesize: 37808
Attributes: archive
MD5: 8394ABFC1BE196A62C9F532511936DF7
CRC32: 71D6E350
Version: 1.0.0.1

{14D1A72D-8705-11D8-B120-0040F46CB696} (edit_html Class)
BHO name:
CLSID name: edit_html Class
Path: C:\Documents and Settings\rossi mario\Desktop\
Long name: 822104041.dll

{53707962-6F74-2D53-2644-206D7942484F} ()
BHO name:
CLSID name:
description: Spybot-S&D IE Browser plugin
classification: Legitimate
known filename: SDhelper.dll
info link: http://spybot.eon.net.au/
info source: Patrick M. Kolla
Path: C:\PROGRA~1\SPYBOT~1\
Long name: SDHelper.dll
Short name:
Date (created): 02/09/2006 12.34.02
Date (last access): 02/09/2006 12.34.02
Date (last write): 31/05/2005 1.04.00
Filesize: 853672
Attributes: archive
MD5: 250D787A5712D7768DDC133B3E477759
CRC32: D4589A41
Version: 1.4.0.0



--- ActiveX list ---
DirectAnimation Java Classes (DirectAnimation Java Classes)
DPF name: DirectAnimation Java Classes
CLSID name:
Installer:
Codebase: file://C:\WINDOWS\Java\classes\dajava.cab
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\dajava.cab
info link:
info source: Patrick M. Kolla

Microsoft XML Parser for Java (Microsoft XML Parser for Java)
DPF name: Microsoft XML Parser for Java
CLSID name:
Installer:
Codebase: file://C:\WINDOWS\Java\classes\xmldso.cab
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\xmldso.cab
info link:
info source: Patrick M. Kolla

{5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control)
DPF name:
CLSID name: BDSCANONLINE Control
Installer: C:\WINDOWS\Downloaded Program Files\oscan8.inf
Codebase: http://www.laplink.com/scan8/oscan8.cab
Path: C:\WINDOWS\bdoscan8\
Long name: oscan81.ocx
Short name:
Date (created): 30/08/2006 21.54.16
Date (last access): 30/08/2006 21.54.24
Date (last write): 30/08/2006 21.54.16
Filesize: 471040
Attributes: archive
MD5: B43F42791D9958C8B3AF2EC01E38FBF0
CRC32: 4F25E729
Version: 1.0.0.1

{6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)
DPF name:
CLSID name: WUWebControl Class
Installer: C:\WINDOWS\Downloaded Program Files\wuweb.inf
Codebase: http://update.microsoft.com/windowsupda ... 4160355200
Path: C:\WINDOWS\System32\
Long name: wuweb.dll
Short name:
Date (created): 26/05/2005 4.19.32
Date (last access): 30/08/2006 14.59.10
Date (last write): 26/05/2005 4.19.32
Filesize: 173536
Attributes: archive
MD5: C459F2D5E64C942F3F66E1CD7F1C4C00
CRC32: EEF66B50
Version: 5.8.0.2469

{745395C8-D0E1-4227-8586-624CA9A10A8D} ()
DPF name:
CLSID name:
Installer: C:\WINDOWS\Downloaded Program Files\setup.inf
Codebase: http://194.109.237.24/activex/AMC.cab

{917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class)
DPF name:
CLSID name: CamImage Class
Installer: C:\WINDOWS\Downloaded Program Files\AxisCamControl.inf
Codebase: http://217.72.104.252/activex/AxisCamControl.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: AxisCamControl.ocx
Short name: AXISCA~1.OCX
Date (created): 11/07/2003 12.09.34
Date (last access): 30/08/2006 20.20.16
Date (last write): 11/07/2003 12.09.34
Filesize: 188416
Attributes: archive
MD5: B0FFDCCCC185D95D86A9738F6D3F48DC
CRC32: D2BB9C50
Version: 2.20.0.6

{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class)
DPF name:
CLSID name: ActiveScan Installer Class
Installer: C:\WINDOWS\Downloaded Program Files\asinst.inf
Codebase: http://acs.pandasoftware.com/activescan ... asinst.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: asinst.dll
Short name:
Date (created): 11/04/2006 17.10.10
Date (last access): 02/09/2006 12.41.48
Date (last write): 11/04/2006 17.10.10
Filesize: 135168
Attributes: archive
MD5: 7267AE9C8DF527C30885DC29687D2A9B
CRC32: 1B1733A3
Version: 58.5.0.0

{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
DPF name:
CLSID name: Shockwave Flash Object
Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf
Codebase: http://fpdownload.macromedia.com/pub/sh ... wflash.cab
description: Macromedia Shockwave Flash Player
classification: Legitimate
known filename:
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\System32\Macromed\Flash\
Long name: Flash9.ocx
Short name:
Date (created): 22/06/2006 13.44.22
Date (last access): 02/09/2006 12.17.16
Date (last write): 22/06/2006 13.44.22
Filesize: 2201224
Attributes: readonly archive
MD5: 99F80CA1EBE95677668F54CAC6F4AD6D
CRC32: B7385E3B
Version: 9.0.16.0



--- Process list ---
PID: 0 ( 0) [System]
PID: 456 ( 4) \SystemRoot\System32\smss.exe
PID: 536 ( 456) \??\C:\WINDOWS\system32\winlogon.exe
PID: 584 ( 536) C:\WINDOWS\system32\services.exe
size: 101888
MD5: 47D6B593DBC04C586AFE1078118DCFC0
PID: 596 ( 536) C:\WINDOWS\system32\lsass.exe
size: 11776
MD5: 8CE9CC46E4DFB438069707D5D453E3AC
PID: 760 ( 584) C:\WINDOWS\system32\svchost.exe
size: 12800
MD5: E65C61DA8F552C16BE0C62320F256882
PID: 812 ( 584) C:\WINDOWS\System32\svchost.exe
size: 12800
MD5: E65C61DA8F552C16BE0C62320F256882
PID: 1088 ( 584) C:\WINDOWS\system32\spoolsv.exe
size: 51200
MD5: 4A06D428BC79100F9F79516ADBFE152C
PID: 1724 ( 584) C:\WINDOWS\system32\cisvc.exe
size: 5120
MD5: CC3326BCEB3EB483FC9009EE8157CF60
PID: 1736 ( 584) C:\Programmi\CPUCooL\CooLSrv.exe
size: 20480
MD5: BDD2A402468E157AA4954FB64865AF2F
PID: 1756 ( 584) C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
size: 94208
MD5: 12CDB5DC7774298223099D6E41ED5CE7
PID: 1944 ( 584) C:\WINDOWS\System32\svchost.exe
size: 12800
MD5: E65C61DA8F552C16BE0C62320F256882
PID: 1164 (1324) C:\Programmi\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
MD5: 09CA174A605B480318731E691DC98539
PID: 4 ( 0) System
PID: 512 ( 456) csrss.exe
PID: 928 ( 584) svchost.exe
PID: 984 ( 584) svchost.exe
PID: 1712 ( 584) alg.exe
PID: 2000 ( 584) wdfmgr.exe


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 02/09/2006 13.15.12

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\System32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.fastweb.it/myfastpage/res/ho ... ssi/?login
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.fastweb.it/myfastpage/res/ho ... ssi/?login
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


--- Winsock Layered Service Provider list ---
Protocol 0: MSAFD Tcpip [TCP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 1: MSAFD Tcpip [UDP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 2: MSAFD Tcpip [RAW/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]

Protocol 3: RSVP UDP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 4: RSVP TCP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 5: MSAFD NetBIOS [\Device\NetBT_Tcpip_{984D2E37-C428-418E-B841-E146AA05876B}] SEQPACKET 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 6: MSAFD NetBIOS [\Device\NetBT_Tcpip_{984D2E37-C428-418E-B841-E146AA05876B}] DATAGRAM 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 7: MSAFD NetBIOS [\Device\NetBT_Tcpip_{80FA0FDF-E407-409D-AABE-241662183E69}] SEQPACKET 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 8: MSAFD NetBIOS [\Device\NetBT_Tcpip_{80FA0FDF-E407-409D-AABE-241662183E69}] DATAGRAM 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 9: MSAFD NetBIOS [\Device\NetBT_Tcpip_{CABDA429-3292-4F64-A139-E730B540ED9F}] SEQPACKET 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 10: MSAFD NetBIOS [\Device\NetBT_Tcpip_{CABDA429-3292-4F64-A139-E730B540ED9F}] DATAGRAM 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 11: MSAFD NetBIOS [\Device\NetBT_Tcpip_{185E9EB1-67EA-4E45-9273-14E4B45E7D31}] SEQPACKET 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip_{185E9EB1-67EA-4E45-9273-14E4B45E7D31}] DATAGRAM 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip_{FC3789A6-79E4-4A9F-943E-B6BE3CB27AED}] SEQPACKET 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 14: MSAFD NetBIOS [\Device\NetBT_Tcpip_{FC3789A6-79E4-4A9F-943E-B6BE3CB27AED}] DATAGRAM 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Namespace Provider 0: Tcpip
GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: TCP/IP

Namespace Provider 1: NTDS
GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
Filename: %SystemRoot%\System32\winrnr.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\winrnr.dll
DB protocol: NTDS

Namespace Provider 2: Spazio dei nomi NLA (Network Location Awareness)
GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: NLA-Namespace



--- Uninstall list ---
(AddressBook)

Adobe Acrobat 5.0 5.0 (Adobe Acrobat 5.0)
version (major): 5
install location: C:\Programmi\Adobe\Acrobat 5.0
install source: C:\Documents and Settings\rossi mario\Impostazioni locali\Temp\pft4~tmp\
uninstall cmd: C:\WINDOWS\ISUN0410.EXE -f"C:\Programmi\File comuni\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Programmi\File comuni\Adobe\Acrobat 5.0\NT\Uninst.dll"
publisher: Adobe Systems, Inc.
help link: http://www.adobe.com/prodindex/acrobat/main.html

AnyDVD (AnyDVD)
install location: C:\Programmi\SlySoft\AnyDVD
uninstall cmd: "C:\Programmi\SlySoft\AnyDVD\AnyDVD-uninst.exe" /D="C:\Programmi\SlySoft\AnyDVD"
publisher: SlySoft

CloneCD (CloneCD)
install location: C:\Programmi\SlySoft\CloneCD
uninstall cmd: "C:\Programmi\SlySoft\CloneCD\ccd-uninst.exe" /D="C:\Programmi\SlySoft\CloneCD"
publisher: SlySoft

CloneDVD2 (CloneDVD2)
install location: C:\Programmi\Elaborate Bytes\CloneDVD2
uninstall cmd: "C:\Programmi\Elaborate Bytes\CloneDVD2\CloneDVD2-uninst.exe" /D="C:\Programmi\Elaborate Bytes\CloneDVD2"
publisher: Elaborate Bytes

(Connection Manager)

CPUCooL (remove only) (CPUCooL)
uninstall cmd: "C:\Programmi\CPUCooL\CPUCooL-uninst.exe"

(DirectAnimation)

(DirectDrawEx)

Software per stampante EPSON (EPSON Printer and Utilities)
uninstall cmd: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R

(Fontcore)

Guida di ES C44 (Guida di ES C44)
uninstall cmd: C:\WINDOWS\unin0410.exe -f"C:\PROGRAMF\EPSON\ES C44\DeIsL1.isu"

I Magicanti (I Magicanti_is1)
uninstall cmd: C:\Programmi\Ferrero\Magicanti\unins000.exe
publisher: Ferrero

(ICW)

(IE40)

(IE4Data)

(IE5BAKEX)

(IEData)

(InstallShield Uninstall Information)

VIA Platform Device Manager 1.13 (InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169})
version: 17629184
version (major): 1
version (minor): 13
install date: 20060304
install source: C:\Software\Sistema\HyperionPro\VIA_HyperionPro_V507A\
uninstall cmd: C:\PROGRA~1\FILECO~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
publisher: VIA Technologies, Inc.
comments: VIA Hyperion Pro Setup Program
contact: http://forums.viaarena.com/
help link: http://www.viaarena.com/
help telephone: NULL
readme: NULL

PCdefense 1.00.26.00 (InstallShield_{8856E39A-D458-49DB-80F2-578E8F089072})
version: 16777242
version (major): 1
estimated size: 8052
install date: 20060830
install source: C:\WINDOWS\Downloaded Installations\{CCEC3C93-9115-4C73-9F44-FE0ADED69BA1}\
uninstall cmd: C:\PROGRA~1\FILECO~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{8856E39A-D458-49DB-80F2-578E8F089072}
publisher: Laplink Software, Inc.
comments: Thank you for using PCdefense
contact: Web Support Only
help link: http://www.laplink.com/support
help telephone: Web Support Only
readme: Readme

(Intel® Integrated Performance Primitives 1.1)
uninstall cmd: C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\System32\UninstIPP.isu

IsoBuster 1.9 1.9 (IsoBuster_is1)
install location: C:\Programmi\Smart Projects\IsoBuster\
uninstall cmd: "C:\Programmi\Smart Projects\IsoBuster\Uninst\unins000.exe"
publisher: Smart Projects

K-Lite Mega Codec Pack 1.45 1.45 (KLiteCodecPack_is1)
install location: C:\Programmi\K-Lite Codec Pack\
uninstall cmd: "C:\Programmi\K-Lite Codec Pack\unins000.exe"

LiveReg (Symantec Corporation) 2.0.6.1314 (LiveReg)
install location: C:\Programmi\File comuni\Symantec Shared\LiveReg
uninstall cmd: C:\Programmi\File comuni\Symantec Shared\LiveReg\VcSetup.exe /REMOVE
publisher: Symantec Corporation

LiveUpdate 1.6 (Symantec Corporation) (LiveUpdate1.6)
install location: C:\Programmi\Symantec\LiveUpdate
uninstall cmd: C:\Programmi\Symantec\LiveUpdate\LSETUP.EXE /U
publisher: Symantec Corporation

Macromedia Shockwave Player (Macromedia Shockwave Player)
uninstall cmd: C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\Install.log

MGI PhotoSuite II SE (Solo Rimozione) (MGI_PRISM_V1_0)
uninstall cmd: "C:\Programmi\MGI\MGI PhotoSuite II\System\MGIUninstall.exe" C:\WINDOWS\IsUn0410.exe -f"C:\Programmi\MGI\MGI PhotoSuite II\Uninst.isu" -y -c"C:\Programmi\MGI\MGI PhotoSuite II\System\CustomUninstall.dll"

(Microsoft Interactive Training)
uninstall cmd: C:\WINDOWS\IsUn0410.exe -fC:\WINDOWS\orun32.isu

(Microsoft NetShow Player 2.0)

(MobileOptionPack)

(MPlayer2)

(MsJavaVM)

(NetMeeting)

NEXT 3D ARREDAMENTO D'INTERNI (NEXT 3D ARREDAMENTO D'INTERNI)
uninstall cmd: "C:\Programmi\NEXT 3D ARREDAMENTO D'INTERNI\UNWISE.EXE" "C:\Programmi\NEXT 3D ARREDAMENTO D'INTERNI\INSTALL.LOG"

(OutlookExpress)

Panda ActiveScan (Panda ActiveScan)
uninstall cmd: C:\WINDOWS\System32\ASUninst.exe Panda ActiveScan
publisher: Panda Software S.L.

PaperPort 6.1 (PaperPort 6.1)
uninstall cmd: C:\WINDOWS\IsUn0410.exe -fC:\Programmi\ScanSoft\PaperPort\Config\DeIsL1.isu -y -cC:\Programmi\ScanSoft\PaperPort\UnInstl2.dll

(PCHealth)
uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

QuickTime (QuickTime)
uninstall cmd: C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log

(SchedulingAgent)

Shockwave (Shockwave)
uninstall cmd: C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\INSTALL.LOG

Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
uninstall cmd: C:\WINDOWS\System32\Macromed\Flash\UninstFl.exe -q
publisher: Adobe Systems
help link: http://www.adobe.com/go/flashplayer_support/

Soluzioni Interfree (SoluzioniInterfree_is1)
uninstall cmd: C:\Programmi\Interfree\Soluzioni\unins000.exe
publisher: Interfree

Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
install location: C:\Programmi\Spybot - Search & Destroy\
uninstall cmd: "C:\Programmi\Spybot - Search & Destroy\unins000.exe"
publisher: Safer Networking Limited

StarOffice 5.2 (StarOffice 5.0)
uninstall cmd: C:\Office52\program\setup.exe

Microsoft Word Viewer 97 (Viewer97)
uninstall cmd: C:\Programmi\WordView\setup\setup.exe

VoipBuster 2.11 build 357 (VoipBuster_is1)
install location: C:\Programmi\VoipBuster.com\VoipBuster\
uninstall cmd: "C:\Programmi\VoipBuster.com\VoipBuster\unins000.exe"
publisher: Finarea S.A. Switzerland
help link: http://www.VoipBuster.com

Wiki Sudoku (Wiki Sudoku)
uninstall cmd: C:\Programmi\Wiki Sudoku\Dati installazione\CyberUninstaller.exe /C:\Programmi\Wiki Sudoku\Dati installazione\Uninstall.dat

WinAVI Video Converter 5.8 (WinAVI Video Converter_is1)
uninstall cmd: "C:\Programmi\WinAVI Video Converter\unins000.exe"
publisher: ZJ Computing, Inc.
help link: http://www.Winavi.com

Windows Media Format Runtime (Windows Media Format Runtime)
uninstall cmd: "C:\Programmi\Windows Media Player\wmsetsdk.exe" /UninstallAll

Windows Media Player 10 (Windows Media Player)
uninstall cmd: "C:\Programmi\Windows Media Player\Setup_wm.exe" /Uninstall

WinISO 5.3 (WinISO_is1)
uninstall cmd: C:\Programmi\WinISO\unins000.exe
publisher: WinISO Computing Inc.
help link: http://www.winiso.com

WinRAR gestione archivi (WinRAR archiver)
uninstall cmd: C:\Programmi\WinRAR\uninstall.exe

Microsoft Excel Viewer 97 (XLViewer97)
uninstall cmd: C:\Programmi\XLView\setup\setup.exe

Enciclopedia Microsoft Encarta 2001 I 2001 ({01040101-5D65-445A-B3B4-3DCE72BA0C6C})
version (major): 2001
version (minor): 2001
estimated size: 54930
install date: 20040512
install source: E:\
uninstall cmd: MsiExec.exe /I{01040101-5D65-445A-B3B4-3DCE72BA0C6C}
publisher: Microsoft Encarta

Atlante mondiale Microsoft Encarta 2001 2001 ({02040201-5D65-445A-B3B4-3DCE72BA0C6C})
version (major): 2001
version (minor): 2001
estimated size: 43067
install date: 20040506
install source: E:\
uninstall cmd: MsiExec.exe /I{02040201-5D65-445A-B3B4-3DCE72BA0C6C}
publisher: Microsoft Encarta

({0500C280-2B83-4B7F-9336-FFEBAD233FAD})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{0500C280-2B83-4B7F-9336-FFEBAD233FAD}\setup.exe" -l0x10 anything

AutoUpdate 1.1 ({18D10072035C4515918F7E37EAFAACFC})
install location: C:\Programmi\DivX

Video DVD Maker Free v1.7.0.44 ({1ADE23D7-7A1E-4AEC-BA5D-EB8A21BED943})
install date: 08/19/2006
install location: C:\Programmi\Video DVD Maker
install source: C:\Documents and Settings\rossi mario\Impostazioni locali\Temporary Internet Files\Content.IE5\Z91B34N6
uninstall cmd: "C:\Programmi\Video DVD Maker\Uninstall.exe" "C:\Programmi\Video DVD Maker\install.log" -u

Ferrero la giungla tenebrosa ({2092FC23-164A-4323-BCA8-09D4DE4F9DCA})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{2092FC23-164A-4323-BCA8-09D4DE4F9DCA}\Setup.exe"

Platform 1.13 ({20D4A895-748C-4D88-871C-FDB1695B0169})
version: 17629184
version (major): 1
version (minor): 13
install date: 20060304
install source: C:\Software\Sistema\HyperionPro\VIA_HyperionPro_V507A\
publisher: VIA Technologies, Inc.
comments: VIA Hyperion Pro Setup Program
contact: http://forums.viaarena.com/
help link: http://www.viaarena.com/
help telephone: NULL
readme: NULL

({3296C92C-638D-11D7-8444-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{3296C92C-638D-11D7-8444-0050BA1D384D}\setup.exe" -l0x10 anything

({3296CA07-638D-11D7-8444-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{3296CA07-638D-11D7-8444-0050BA1D384D}\setup.exe" -l0x10 anything

WebFldrs XP 9.50.6513 ({350C9410-3D7C-4EE8-BAA9-00BCB3D54227})
version: 154278257
version (major): 9
version (minor): 50
estimated size: 2648
install date: 20030130
install source: C:\WINDOWS\System32\
publisher: Microsoft Corporation
help link: http://www.microsoft.com/windows

({3BB529C7-855D-11D7-8444-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{3BB529C7-855D-11D7-8444-0050BA1D384D}\setup.exe" -l0x10

ArcSoft Software Suite ({3F7BB0F7-E782-4086-BD9E-762204239605})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{3F7BB0F7-E782-4086-BD9E-762204239605}\setup.exe" -l0x10

Simply Music ({4E9E3DA0-6FA4-11D4-97E5-002078016658})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{4E9E3DA0-6FA4-11D4-97E5-002078016658}\Setup.exe"

The Sum of All Fears Demo ({57AD3417-E56A-4806-850E-97C0456FC992})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{57AD3417-E56A-4806-850E-97C0456FC992}\Setup.exe" -l0x9

({62369F2F77534556AEF4C58152E3BDE5})

Presto! DVD PowerSuite (FE Version) v1.1 ({6D49479B-5F8F-11D7-8444-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{6D49479B-5F8F-11D7-8444-0050BA1D384D}\Setup.exe" -l0x10 anything

EPSON PRINT Image Framer Tool2.1 ({71EFC711-33D6-4E1F-A38C-7D281E92EFF8})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{71EFC711-33D6-4E1F-A38C-7D281E92EFF8}\setup.exe" -l0x10 anything

DivX 6.1 ({7B63B2922B174135AFC0E1377DD81EC2})
install location: C:\Programmi\DivX
uninstall cmd: C:\Programmi\DivX\DivXCodecUninstall.exe /CODEC
publisher: DivX, Inc.

PCdefense 1.00.26.00 ({8856E39A-D458-49DB-80F2-578E8F089072})
version: 16777242
version (major): 1
estimated size: 8052
install date: 20060830
install source: C:\WINDOWS\Downloaded Installations\{CCEC3C93-9115-4C73-9F44-FE0ADED69BA1}\
publisher: Laplink Software, Inc.
comments: Thank you for using PCdefense
contact: Web Support Only
help link: http://www.laplink.com/support
help telephone: Web Support Only
readme: Readme

EPSON PhotoQuicker3.4 ({8A793FC6-6DF5-11DD-BB6A-00018021113F})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{8A793FC6-6DF5-11DD-BB6A-00018021113F}\setup.exe" -l0x10 uninst

DivX Player 6.0 ({8ADFC4160D694100B5B8A22DE9DCABD9})
install location: C:\Programmi\DivX
uninstall cmd: C:\Programmi\DivX\DivXPlayerUninstall.exe /PLAYER
publisher: DivXNetworks, Inc.

({90F9435B-3BAF-11D8-8446-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{90F9435B-3BAF-11D8-8446-0050BA1D384D}\setup.exe" -l0x10 anything

({98784C4B-7B11-11D7-8444-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{98784C4B-7B11-11D7-8444-0050BA1D384D}\setup.exe" -l0x9 anything

({B2F2717E-8DF7-11D8-8446-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{B2F2717E-8DF7-11D8-8446-0050BA1D384D}\setup.exe" -l0x10 anything

({B2F2748A-8DF7-11D8-8446-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{B2F2748A-8DF7-11D8-8446-0050BA1D384D}\setup.exe" -l0x10 anything

({B2F278C8-8DF7-11D8-8446-0050BA1D384D})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{B2F278C8-8DF7-11D8-8446-0050BA1D384D}\setup.exe" -l0x10 anything

DivX Web Player 1.0.0 ({B7050CBDB2504B34BC2A9CA0A692CC29})
install location: C:\Programmi\DivX
uninstall cmd: C:\Programmi\DivX\DivXWebPlayerUninstall.exe /PLUGIN
publisher: DivX,Inc.

Garmin StreetPilot c320 Europe 1.0.0.0 ({B820CB04-D21E-48A4-A110-1A783A86EAA3})
version: 16777216
version (major): 1
estimated size: 2445451
install date: 20060629
install source: E:\bin\
uninstall cmd: MsiExec.exe /X{B820CB04-D21E-48A4-A110-1A783A86EAA3}
publisher: Garmin Ltd. o sue filiali
comments: Rivolgersi a Garmin per commenti e domande.
contact: Reparto assistenza clienti
help link: http://www.garmin.com/support

Microsoft .NET Framework 1.1 1.1.4322 ({CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1})
version: 16847074
version (major): 1
version (minor): 1
estimated size: 37963
install date: 20060322
install source: C:\DOCUME~1\ROSSIM~1\IMPOST~1\Temp\IXP000.TMP\
uninstall cmd: MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
publisher: Microsoft
readme: file://C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\1033\RepairRedist.htm

STK014 ({E7C401C6-B490-4C92-9E6D-F6A862A27B65})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{E7C401C6-B490-4C92-9E6D-F6A862A27B65}\Setup.exe" -l0x9

PIF DESIGNER2.1 ({E9A9692C-E747-4E31-B7C0-39C6BA4B2AED})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{E9A9692C-E747-4E31-B7C0-39C6BA4B2AED}\setup.exe" -l0x10 anything

ScanToWeb ({EBAE381B-60A6-4863-AA9F-FCAB755BC9E5})
uninstall cmd: RunDll32 C:\PROGRA~1\FILECO~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Programmi\InstallShield Installation Information\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}\setup.exe" ADDREMOVEDLG



--- System Services ---
Service (registry key): .NET CLR Data
Start: 0
Type: 0
Error Control: 0

Service (registry key): .NET CLR Networking
Start: 0
Type: 0
Error Control: 0

Service (registry key): .NETFramework
Start: 0
Type: 0
Error Control: 0

Service (registry key): Abiosdsk
Start: 4
Type: 1
Error Control: 0

Service (registry key): abp480n5
Start: 4
Type: 1
Error Control: 1

Service (registry key): Achernar
Display name: Achernar - SCSI Command Filters
Image path: System32\Drivers\Achernar.sys
Image size: 16855
Image MD5: 4848ABF6D2F38C8A1F2138D4FE8F9455
Start: 0
Type: 1
Error Control: 0

Service (registry key): ACPI
Display name: Driver ACPI Microsoft
Image path: System32\DRIVERS\ACPI.sys
Image size: 179968
Image MD5: F48F48B53AB5ABBAFADAFE10703E30AD
Start: 0
Type: 1
Error Control: 1

Service (registry key): ACPIEC
Start: 4
Type: 1
Error Control: 1

Service (registry key): adpu160m
Start: 4
Type: 1
Error Control: 1

Service (registry key): aec
Display name: Eliminatore di eco acustico del kernel Microsoft
Image path: system32\drivers\aec.sys
Image size: 142208
Image MD5: FF773FEDA15E8BD97FD54FE87A0ACDBE
Start: 3
Type: 1
Error Control: 1

Service (registry key): AFD
Display name: Ambiente supporto di rete AFD
Image path: \SystemRoot\System32\drivers\afd.sys
Start: 2
Type: 1
Error Control: 1

Service (registry key): Aha154x
Start: 4
Type: 1
Error Control: 1

Service (registry key): aic78u2
Start: 4
Type: 1
Error Control: 1

Service (registry key): aic78xx
Start: 4
Type: 1
Error Control: 1

Service (registry key): Aldebaran
Display name: Aldebaran - SCSI Command Filters
Image path: \SystemRoot\System32\Drivers\Aldebaran.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): Alerter
Display name: Avvisi
Description: Notifica gli avvisi amministrativi agli utenti e computer selezionati. Se il servizio è stato arrestato, i programmi che utilizzano gli avvisi amministrativi non li riceveranno. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\svchost.exe -k LocalService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation

Service (registry key): ALG
Display name: Servizio Gateway di livello applicazione
Description: Fornisce supporto per plug-in di protocolli di terze parti per la Condivisione connessione Internet e il Firewall della connessione Internet
Object name: NT AUTHORITY\LocalService
Image path: %SystemRoot%\System32\alg.exe
Image size: 41984
Image MD5: 20DF6C9C567A6FB10C05EA063F8D4223
Start: 3
Type: 16
Error Control: 1

Service (registry key): AliIde
Start: 4
Type: 1
Error Control: 1

Service (registry key): AmdK7
Display name: Driver del processore AMD K7
Image path: System32\DRIVERS\amdk7.sys
Image size: 35200
Image MD5: 7FFD3EAC94989EC0DD08DB4D70228521
Start: 1
Type: 1
Error Control: 1

Service (registry key): amsint
Start: 4
Type: 1
Error Control: 1

Service (registry key): AnyDVD
Display name: AnyDVD
Image path: System32\Drivers\AnyDVD.sys
Image size: 20096
Image MD5: B9B27616DC541945737B837DA374147A
Start: 3
Type: 1
Error Control: 1

Service (registry key): AppMgmt
Display name: Gestione applicazione
Description: Offre servizi di installazione di software come Assegna, Pubblica e Rimuovi.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 3
Type: 32
Error Control: 1

Service (registry key): asc
Start: 4
Type: 1
Error Control: 1

Service (registry key): asc3350p
Start: 4
Type: 1
Error Control: 1

Service (registry key): asc3550
Start: 4
Type: 1
Error Control: 1

Service (registry key): ASP.NET
Start: 0
Type: 0
Error Control: 0

Service (registry key): ASP.NET_1.1.4322
Start: 0
Type: 0
Error Control: 0

Service (registry key): aspnet_state
Display name: ASP.NET State Service
Description: Provides support for out-of-process session states for ASP.NET. If this service is stopped, out-of-process requests will not be processed. If this service is disabled, any services that explicitly depend on it will fail to start.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
Image size: 32768
Image MD5: A986FCFDAC587E68478DB51547B90800
Start: 3
Type: 16
Error Control: 1

Service (registry key): AsyncMac
Display name: Driver per supporti asincroni RAS
Description: Driver per supporti asincroni RAS
Image path: System32\DRIVERS\asyncmac.sys
Image size: 13568
Image MD5: 03F403B07A884FC2AA54A0916C410931
Start: 3
Type: 1
Error Control: 1

Service (registry key): atapi
Display name: Controller disco rigido IDE/ESDI standard
Image path: System32\DRIVERS\atapi.sys
Image size: 86912
Image MD5: 95B858761A00E1D4F81F79A0DA019ACA
Start: 0
Type: 1
Error Control: 1

Service (registry key): Atdisk
Start: 4
Type: 1
Error Control: 0

Service (registry key): Atmarpc
Display name: Protocollo client ARP ATM
Description: Protocollo client ARP ATM
Image path: System32\DRIVERS\atmarpc.sys
Image size: 57216
Image MD5: 8D735CA1CBDB0081B0E3B9FF0EB222D0
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): AudioSrv
Display name: Audio Windows
Description: Gestisce periferiche audio per programmi basati su Windows. Se il servizio è stato arrestato, le periferiche audio e gli effetti non funzioneranno correttamente. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 1
Depends On services: PlugPlay,RpcSs

Service (registry key): audstub
Display name: Driver stub audio
Image path: System32\DRIVERS\audstub.sys
Image size: 3072
Image MD5: D9F724AA26C010A217C97606B160ED68
Start: 3
Type: 1
Error Control: 1

Service (registry key): basic2
Image path: System32\DRIVERS\HSF_BSC2.sys
Image size: 67167
Image MD5: 1B9C81AB9A456EABD9F8335F04B5F495
Start: 3
Type: 1
Error Control: 0

Service (registry key): BattC
Start: 0
Type: 0
Error Control: 0

Service (registry key): bdfdll
Display name: bdfdll
Image path: \??\C:\Programmi\Softwin\BitDefender9\bdfdll.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): Beep
Start: 1
Type: 1
Error Control: 1

Service (registry key): BITS
Display name: Servizio trasferimento intelligente in background
Description: Utilizza la larghezza di banda inattiva della rete per trasferire i dati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 3
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,RpcSs

Service (registry key): Browser
Display name: Browser di computer
Description: Mantiene un elenco aggiornato dei computer in rete e lo fornisce ai computer designati come browser. Se il servizio è stato arrestato, l'elenco non verrà aggiornato o mantenuto. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 1
Depends On services: LanmanWorkstation,LanmanServer

Service (registry key): cbidf2k
Start: 4
Type: 1
Error Control: 1

Service (registry key): CCDECODE
Display name: Closed Caption Decoder
Image path: System32\DRIVERS\CCDECODE.sys
Image size: 16384
Image MD5: FDC06E2ADA8C468EBB161624E03976CF
Start: 3
Type: 1
Error Control: 1

Service (registry key): cd20xrnt
Start: 4
Type: 1
Error Control: 1

Service (registry key): Cdaudio
Start: 1
Type: 1
Error Control: 0

Service (registry key): Cdfs
Start: 4
Type: 2
Error Control: 1
Depends On group: "SCSI CDROM Class"

Service (registry key): Cdrom
Display name: Driver del CD-ROM
Image path: System32\DRIVERS\cdrom.sys
Image size: 47488
Image MD5: 6506E033AD04CFEC9EE56DBEFD1083DD
Start: 1
Type: 1
Error Control: 1
Depends On group: "SCSI miniport"

Service (registry key): Changer
Start: 1
Type: 1
Error Control: 0

Service (registry key): CiSvc
Display name: Servizio di indicizzazione
Description: Indicizza contenuti e proprietà di file su computer locali e remoti, fornisce accesso rapido ai file tramite un flessibile linguaggio di query.
Object name: LocalSystem
Image path: %SystemRoot%\system32\cisvc.exe
Image size: 5120
Image MD5: CC3326BCEB3EB483FC9009EE8157CF60
Start: 2
Type: 288
Error Control: 1
Depends On services: RPCSS

Service (registry key): ClipSrv
Display name: ClipBook
Description: Abilita il Visualizzatore Cartella Appunti per la memorizzazione e condivisione delle informazioni con i computer remoti. Se il servizio è stato arrestato, Visualizzatore Cartella Appunti non sarà in grado di condividere informazioni con i computer remoti. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\clipsrv.exe
Image size: 30720
Image MD5: B58526A600C0432556E367325A7F9F43
Start: 3
Type: 16
Error Control: 1
Depends On services: NetDDE

Service (registry key): CmdIde
Start: 4
Type: 1
Error Control: 1

Service (registry key): COMSysApp
Display name: Applicazione di sistema COM+
Description: Gestisce la configurazione e registrazione di componenti basati su COM+. Se il servizio viene arrestato, la maggior parte dei componenti basati su COM+ non sono in grado di funzionare correttamente. Se il servizio viene disattivato, tutti i servizi che dipendono esplicitamente da esso non possono essere avviati.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
Image size: 4608
Image MD5: FF21FFE05D7FBE3530DA7A62558F868D
Start: 3
Type: 16
Error Control: 1
Depends On services: rpcss

Service (registry key): ContentFilter
Start: 0
Type: 0
Error Control: 0

Service (registry key): ContentIndex
Start: 0
Type: 0
Error Control: 0

Service (registry key): Cpqarray
Start: 4
Type: 1
Error Control: 1

Service (registry key): CPUCooLServer
Display name: CPUCooLServer Service
Object name: LocalSystem
Image path: C:\Programmi\CPUCooL\CooLSrv.exe
Image size: 20480
Image MD5: BDD2A402468E157AA4954FB64865AF2F
Start: 2
Type: 16
Error Control: 1

Service (registry key): CryptSvc
Display name: Servizi di crittografia
Description: Fornisce tre servizi di gestione: il servizio Database catalogo, che serve per confermare le firme dei file di Windows; il servizio Archivio principale protetto, per aggiungere e rimuovere dal computer i certificati dell'autorità di certificazione delle fonti attendibili; e il servizio Chiave, che aiuta a registrare i certificati nel computer. Se questo servizio è interrotto, i servizi di gestione non funzioneranno in modo corretto. Se il servizio è disabilitato, tutti i servizi che dipendono direttamente da questo non potranno essere avviati.
Object name: LocalSystem
Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): dac2w2k
Start: 4
Type: 1
Error Control: 0

Service (registry key): dac960nt
Start: 4
Type: 1
Error Control: 1

Service (registry key): DCamUSBSTK014
Display name: STK014 Camera
Image path: System32\DRIVERS\STK014W2.sys
Image size: 99476
Image MD5: 60D78D49EF5D277A6F65FA735B492B16
Start: 3
Type: 1
Error Control: 1

Service (registry key): Dhcp
Display name: Client DHCP
Description: Gestisce la configurazione di rete registrando e aggiornando indirizzi IP e nomi DNS.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip,Afd,NetBT

Service (registry key): DiCapi
Display name: Driver Eicon CAPI 2.0
Image path: System32\DRIVERS\DISDN\capi20.sys
Image size: 164923
Image MD5: 16A6F479F49FD1FA06BB5539A3D493F8
Start: 2
Type: 1
Error Control: 1
Depends On services: Dimaint

Service (registry key): DiMaint
Display name: Driver di manutenzione Eicon
Image path: System32\DRIVERS\DISDN\dimaint.sys
Image size: 91305
Image MD5: 99A1FFD0E527D3B88E34735D85EAAA04
Start: 0
Type: 1
Error Control: 1

Service (registry key): Disk
Display name: Driver del disco
Image path: System32\DRIVERS\disk.sys
Image size: 33792
Image MD5: D1B16340CEACEECBF52340A0CBDF43E1
Start: 0
Type: 1
Error Control: 1
Depends On group: "SCSI miniport"

Service (registry key): DiWan
Display name: Driver Eicon per tutte le schede PnP DIVA
Image path: System32\DRIVERS\DISDN\Diwan.sys
Image size: 952007
Image MD5: 1E9038BE171CE8374DA0659474466280
Start: 3
Type: 1
Error Control: 1
Depends On services: NdisTapi

Service (registry key): dmadmin
Display name: Servizio amministrativo di Gestione disco logico
Description: Configura le unità disco rigido e i volumi. Il servizio viene eseguito soltanto per i processi di configurazione, quindi viene arrestato.
Object name: LocalSystem
Image path: %SystemRoot%\System32\dmadmin.exe /com
Image size: 205312
Image MD5: 38A8D4F0EF1CAECF5CBDC3025DB3F45F
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,PlugPlay,DmServer

Service (registry key): dmboot
Image path: System32\drivers\dmboot.sys
Image size: 781440
Image MD5: 9EF7CF7C5FD5B0D355A5AB31B9F1EBFF
Start: 4
Type: 1
Error Control: 1

Service (registry key): dmio
Image path: System32\drivers\dmio.sys
Image size: 147200
Image MD5: FA699FF52CBC44A7A3F356B5363722D6
Start: 4
Type: 1
Error Control: 1

Service (registry key): dmload
Image path: System32\drivers\dmload.sys
Image size: 5888
Image MD5: E9317282A63CA4D188C0DF5E09C6AC5F
Start: 4
Type: 1
Error Control: 1

Service (registry key): dmserver
Display name: Gestione dischi logici
Description: Rileva e controlla le nuove unità disco rigido e invia informazioni sul volume del disco al Servizio amministrativo di Gestione disco logico per la configurazione. Se il servizio è stato arrestato, lo stato del disco dinamico e le informazioni di configurazione potrebbero non essere aggiornate. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 3
Type: 32
Error Control: 1
Depends On services: RpcSs,PlugPlay

Service (registry key): DMusic
Display name: Sintetizzatore DLS Microsoft Kernel
Image path: system32\drivers\DMusic.sys
Image size: 50048
Image MD5: EF05974D47D56FA8387F170F05BAE5E7
Start: 3
Type: 1
Error Control: 1

Service (registry key): Dnscache
Display name: Client DNS
Description: Risolve e salva nella cache nomi DNS per il computer. Se il servizio è stato arrestato, il computer non sarà in grado di risolvere i nomi DNS e di individuare i controller di dominio Active Directory. Se il servizio è stato disabilitato, i servizi esplicitamente dipendenti da esso non verranno avviati.
Object name: NT AUTHORITY\NetworkService
Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 1
Depends On services: Tcpip

Service (registry key): dpti2o
Start: 4
Type: 1
Error Control: 1

Service (registry key): drmkaud
Display name: Decodificatore audio DRM del kernel Microsoft
Image path: system32\drivers\drmkaud.sys
Image size: 2816
Image MD5: FD859E517FA2ABB53654AFA7EC9E3A94
Start: 3
Type: 1
Error Control: 1

Service (registry key): dtscsi
Image path: \SystemRoot\System32\Drivers\dtscsi.sys
Start: 3
Type: 1
Error Control: 1

Service (registry key): ElbyCDFL
Display name: ElbyCDFL
Image path: System32\Drivers\ElbyCDFL.sys
Image size: 27392
Image MD5: C61C83501268B0110B5C5DB7E63DEE0C
Start: 3
Type: 1
Error Control: 1

Service (registry key): ElbyCDIO
Display name: ElbyCDIO Driver
Image path: System32\Drivers\ElbyCDIO.sys
Image size: 8064
Image MD5: FA13264EEA448B2E1B3A844AE4F75C7A
Start: 2
Type: 1
Error Control: 1

Service (registry key): ElbyDelay
Display name: ElbyDelay
Image path: System32\Drivers\ElbyDelay.sys
Image size: 4608
Image MD5: DF9957DB3BFE5136AAD3C2C101806C98
Start: 3
Type: 1
Error Control: 1

Service (registry key): EPSONStatusAgent2
Display name: EPSON Printer Status Agent2
Object name: LocalSystem
Image path: C:\Programmi\File comuni\EPSON\EBAPI\SAgent2.exe
Image size: 94208
Image MD5: 12CDB5DC7774298223099D6E41ED5CE7
Start: 2
Type: 16
Error Control: 1

Service (registry key): ERSvc
Display name: Servizio di segnalazione errori
Description: Consente la segnalazione di errori per servizi e applicazioni eseguiti in ambienti non standard.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 0
Depends On services: RpcSs

Service (registry key): Eventlog
Display name: Registro eventi
Description: Abilita i messaggi del registro eventi rilasciati dai programmi di Windows e rende possibile la visualizzazione dei componenti in Visualizzatore eventi. Impossibile interrompere questo servizio.
Object name: LocalSystem
Image path: %SystemRoot%\system32\services.exe
Image size: 101888
Image MD5: 47D6B593DBC04C586AFE1078118DCFC0
Start: 2
Type: 32
Error Control: 1

Service (registry key): EventSystem
Display name: Sistema di eventi COM+
Description: Supporta il servizio di notifica eventi di sistema (SENS), che implementa la distribuzione automatica degli eventi nei componenti COM che eseguono la sottoscrizione. Se il servizio viene arrestato, il servizio SENS viene chiuso e non è più in grado di inviare notifiche di connessione e disconnessione. Se il servizio viene disattivato, i servizi che dipendono esplicitamente da esso non possono essere avviati.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 3
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): Fallback
Image path: System32\DRIVERS\HSF_FALL.sys
Image size: 289887
Image MD5: C823DEBE2548656549F84A875D65237B
Start: 2
Type: 1
Error Control: 0

Service (registry key): Fastfat
Start: 4
Type: 2
Error Control: 1

Service (registry key): FastUserSwitchingCompatibility
Display name: Compatibilità di Cambio rapido utente
Description: Consente la gestione delle applicazioni che richiedono assistenza in un ambiente con più utenti.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 3
Type: 32
Error Control: 1
Depends On services: TermService

Service (registry key): Fdc
Display name: Driver controller disco floppy
Image path: System32\DRIVERS\fdc.sys
Image size: 26240
Image MD5: 19C5C7EAC0190A42522290BF002F64EA
Start: 3
Type: 1
Error Control: 1

Service (registry key): Fips
Start: 1
Type: 1
Error Control: 1

Service (registry key): Flpydisk
Display name: Driver disco floppy
Image path: System32\DRIVERS\flpydisk.sys
Image size: 19712
Image MD5: 8F70D1F7606F7442E2F7383F3701D728
Start: 3
Type: 1
Error Control: 1

Service (registry key): Fsks
Image path: System32\DRIVERS\HSF_FSKS.sys
Image size: 115807
Image MD5: 6483414841D4CAB6C3B4DB2AC6EDD70B
Start: 2
Type: 1
Error Control: 0

Service (registry key): Fs_Rec
Start: 1
Type: 8
Error Control: 0

Service (registry key): Ftdisk
Display name: Driver archiviazione volumi
Image path: System32\DRIVERS\ftdisk.sys
Image size: 125824
Image MD5: F3269A6EE547EA87B949A1CEA4816B38
Start: 0
Type: 1
Error Control: 1

Service (registry key): gameenum
Display name: Enumeratore porta giochi
Image path: System32\DRIVERS\gameenum.sys
Image size: 9856
Image MD5: 6D18CAD8A05D88E672B61DB855A08289
Start: 3
Type: 1
Error Control: 0

Service (registry key): giveio
Display name: giveio
Image path: System32\giveio.sys
Image size: 5248
Image MD5: 77EBF3E9386DAA51551AF429052D88D0
Start: 0
Type: 1
Error Control: 1

Service (registry key): Gpc
Display name: Utilità di classificazione pacchetti generica
Description: Utilità di classificazione pacchetti generica
Image path: System32\DRIVERS\msgpc.sys
Image size: 33792
Image MD5: 13591E0A02E85DE2A388F3EC4BD206DF
Start: 3
Type: 1
Error Control: 1

Service (registry key): grmnusb
Image path: system32\drivers\grmnusb.sys
Image size: 7296
Image MD5: CD007D03A9284BFE67D49C01213132BF
Start: 3
Type: 1
Error Control: 1

Service (registry key): Hardlock
Display name: Hardlock
Image path: \??\C:\WINDOWS\system32\drivers\hardlock.sys
Image size: 676864
Image MD5: ED32D389F8B0E74E400932E020BCFBDF
Start: 2
Type: 1
Error Control: 1

Service (registry key): Haspnt
Display name: Haspnt
Image path: \??\C:\WINDOWS\System32\drivers\Haspnt.sys
Image size: 47616
Image MD5: 2DD25F060DC9F79B5CDF33D90ED93669
Start: 2
Type: 1
Error Control: 1

Service (registry key): helpsvc
Display name: Guida in linea e supporto tecnico
Description: Consente l'esecuzione di Guida in linea e supporto tecnico. Se il servizio è arrestato, Guida in linea e supporto tecnico non è disponibile. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 2
Type: 32
Error Control: 1
Depends On services: RPCSS

Service (registry key): HidServ
Display name: Accesso periferica Human Interface
Description: Abilita l'accesso di input generico alle periferiche Human Interface (HID), che attiva e gestisce l'utilizzo di pulsanti predefiniti su tastiere, telecomandi e altre periferiche multimediali. Se il servizio è stato arrestato, il pulsanti controllati dal servizio non funzioneranno. Se il servizio è disabilitato, i servizi da esso dipendenti non verranno avviati.
Object name: LocalSystem
Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
Image size: 12800
Image MD5: E65C61DA8F552C16BE0C62320F256882
Start: 4
Type: 32
Error Control: 1
Depends On services: RpcSs

Service (registry key): hpn
Start: 4
Type: 1
Error Control: 1

Service (registry key): hsf_msft
Image path: System32\DRIVERS\HSF_MSFT.sys
Image size: 542879
Image MD5: 74E379857D4C0DFB56DE2D19B8F4C434
Start: 3
Type: 1
Error Control: 0

Service (registry key): i2omgmt
Start: 1
Type: 1
Error Control: 1

Service (registry key): i2omp
Start: 4
Type: 1
Error Control: 1

Service (registry key): i8042prt
Display name: Driver di porta mouse PS/2 e tastiera i8042
Image path: System32\DRIVERS\i8042prt.sys
Image size: 51840
Image MD5: 375082B8E014EFC60FF6B7B16081FAB2
Start: 1
Type: 1
Error Control: 1

Service (registry key): Imapi
Display name: Driver filtro masterizzazione CD
Image path: System32\DRIVERS\imapi.sys
Image size: 39808
Image MD5: 3CB4410747F2330D97B10B656D5BB2AC
Start: 1
Type: 1
Error Control: 1

Service (registry key): ImapiService
Display name: Servizio COM di masterizzazione CD IMAPI
Description: Gestisce la registrazione di CD utilizzando l'interfaccia IMAPI (Image Mastering Applications Programming Interface). Se si arresta il servizio, non sarà possibile registrare dei CD. Se si disabilita il servizio, non sarà possibile avviare ogni servizio che dipende esplicitamente da questo.
Object name: LocalSystem
Image path: C:\WINDOWS\System32\imapi.exe
Image size: 123904
Image MD5: 21666126ED8146B6CC477B11D10B0A3F
Start: 3
Type: 16
Error Control: 1

Service (registry key): InCDFs
Display name: InCD File System
Image path: system32\drivers\InCDFs.sys
Start: 4
Type: 2
Error Control: 1

Service (registry key): InCDPass
Display name: InCDPass
Image path: system32\drivers\InCDPass.sys
Start: 1
Type: 1
Error Control: 1

Service (registry key): InCDRm
Display name: InCD Reader
Image path: system32\drivers\InCDRm.sys
Start: 1
Type: 1
Error Control: 1

Service (registry key): inetaccs
Start: 0
Type: 0
Error Control: 0

Service (registry key): ini910u
Start: 4
Type: 1
Error Control: 1

Service (registry key): Inport
Start: 0
Type: 0
Error Control: 0

Service (registry key): IntelIde
Start: 4
Type: 1
Error Control: 1

Service (registry key): InternetClient
Start: 0
Type: 0
Error Control: 0

Service (registry key): IpFilterDriver
Display name: Driver filtro traffico IP
Description: Driver filtro traffico IP
Image path: System32\DRIVERS\ipfltdrv.sys
Image size: 32896
Image MD5: 731F22BA402EE4B62748ADAF6363C182
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IpInIp
Display name: Driver tunnel IP in IP
Description: Driver tunnel IP in IP
Image path: System32\DRIVERS\ipinip.sys
Image size: 19584
Image MD5: F56DD863BA732A4E8EE58D486C31250F
Start: 3
Type: 1
Error Control: 1
Depends On services: Tcpip

Service (registry key): IpNat
Display name: Traduttore indirizzi di rete IP
Description: Tradutto
cirino
Utente Junior
 
Post: 13
Iscritto il: 02/09/06 12:59
Località: roma

Postdi andorra24 » 02/09/06 13:27

Posta anche un log di hijackthis.
andorra24
Utente Senior
 
Post: 2742
Iscritto il: 21/05/06 15:44
Località: Palermo

Postdi cirino » 02/09/06 13:29

sorry but
cos'è hiackthis??????
cirino
Utente Junior
 
Post: 13
Iscritto il: 02/09/06 12:59
Località: roma

PrecedenteProssimo

Torna a Sicurezza e Privacy


Topic correlati a "citofarera":

citofarera
Autore: aiutocitofarera
Forum: Sicurezza e Privacy
Risposte: 1

Chi c’è in linea

Visitano il forum: Nessuno e 7 ospiti