Thread: ciao a tutti
View Single Post
  #18 (permalink)  
Old 09-21-2008
MatteoDat
 

Posts: n/a
Re: ciao a tutti
ed il log file di Runscanner

Runscanner logfile http://www.runscanner.net

* = signed file
- = file not found

General info
------------
Computer name : PC-MATTEO
Creation time : 21/09/2008 20.03.19
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 8.0.6001.18241
OS : Windows Vista (TM) Home Basic
OS Build : 6001
OS SP : Service Pack 1
RunScanner Version : 1.7.0.0
User Language : Italiano (Italia)
User rights : Administrator
Windows folder : C:\Windows

Running processes
-----------------
C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe ( )
* C:\Windows\system32\winlogon.exe (Microsoft Corporation)
* C:\Windows\system32\wininit.exe (Microsoft Corporation)
* C:\Windows\system32\services.exe (Microsoft Corporation)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
* C:\PROGRA~1\AVG\AVG8\avgemc.exe (AVG Technologies CZ, s.r.o.)
* C:\PROGRA~1\AVG\AVG8\avgrsx.exe (AVG Technologies CZ, s.r.o.)
* C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
* C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
c:\Program Files\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\Powercinema\PCMService.exe (CyberLink Corp.)
* C:\Windows\Explorer.EXE (Microsoft Corporation)
* C:\Windows\system32\Dwm.exe (Microsoft Corporation)
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
(Google)
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
(Google)
* C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
* C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
* C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
* audiodg.exe (Microsoft Corporation)
* C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(Macrovision Corporation)
* C:\Windows\system32\SearchFilterHost.exe (Microsoft Corporation)
* C:\Windows\system32\SearchIndexer.exe (Microsoft Corporation)
* C:\Windows\system32\SearchProtocolHost.exe (Microsoft Corporation)
* C:\Windows\system32\taskeng.exe (Microsoft Corporation)
* C:\Windows\system32\taskeng.exe (Microsoft Corporation)
* C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation)
* C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
* C:\Windows\system32\lsass.exe (Microsoft Corporation)
* C:\Windows\System32\rundll32.exe (Microsoft Corporation)
* C:\Windows\system32\rundll32.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\svchost.exe (Microsoft Corporation)
* C:\Windows\system32\csrss.exe (Microsoft Corporation)
* C:\Windows\system32\csrss.exe (Microsoft Corporation)
* C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
(Sonic Solutions)
* C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
(Sonic Solutions)
* C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
(Sonic Solutions)
* C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
(Sonic Solutions)
* C:\Users\Matteo\AppData\Local\Temp\Temp1_runscanne r.zip\RunScanner.exe
(Runscanner.net)
* C:\Windows\system32\SLsvc.exe (Microsoft Corporation)
* C:\Windows\system32\lsm.exe (Microsoft Corporation)
C:\Program Files\Skype\Plugin Manager\skypePM.exe (Skype Technologies)
* C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe (Packard Bell BV)
* C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
* C:\Windows\system32\WUDFHost.exe (Microsoft Corporation)
* c:\windows\System32\smss.exe (Microsoft Corporation)
* C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)

Unrated items
-------------
002 C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe (Google)
002 c:\Program Files\Powercinema\PCMService.exe (CyberLink Corp.)
002 C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe ( )
003 * C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(Macrovision Corporation)
003 * C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe (Packard Bell BV)
010 c:\Program Files\Powercinema\Kernel\TV\CLCapSvc.exe (CyberLink
Background Capture Service (CBCS))
010 c:\Program Files\Powercinema\Kernel\TV\CLSched.exe (CyberLink Task
Scheduler (CTS))
010 C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
(GoogleDesktopManager)
010 C:\Program Files\Common Files\InstallShield\Driver\1050\Intel
32\IDriverT.exe (InstallDriver Table Manager)
010 C:\Program Files\Common Files\SureThing Shared\stllssvr.exe (stllssvr)
011 C:\Windows\System32\Drivers\PxHelp20.sys (PxHelp20)
042 GUID / CLSID not found {92780B25-18CC-41C8-B9BE-3C9C571A8263}
052 C:\Program Files\Google\Google_BAE\BAE.dll (Packard Bell)
{CA6319C0-31B7-401E-A518-A07C3DB8F777}
069 mdimon.dll (Microsoft Corporation)
073 Garanzia estesa.job : C:\Program Files\Packard
Bell\SetupmyPC\PBCarNot.exe (Packard Bell BV)
073 HDReg.job : C:\Program Files\HDReg\HDRegRem.exe
073 Recovery DVD Creator.job : C:\Program Files\Packard
Bell\SetupMyPc\MCDCheck.exe (Packard Bell BV)
100 Start Page HKCU : http://www.tiscali.it/
104 C:\Windows\DOWNLO~1\NVIDIA~1.OCX (NVIDIA)
{74DBCB52-F298-4110-951D-AD2FF67BC8AB}
105 E&sporta in Microsoft Excel :
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
120 NameServer {92E7C436-239B-40E8-8B5F-0765633AF1E7} : 85.37.17.4
85.38.28.70
121 C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL (Google)

Missing files
-------------
010 C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
011 c:\windows\system32\drivers\blbdrive.sys
011 c:\windows\system32\DRIVERS\ipinip.sys
011 c:\windows\system32\DRIVERS\nwlnkflt.sys
011 c:\windows\system32\DRIVERS\nwlnkfwd.sys
032 rdpclip


"MatteoDat" wrote:

> figoo
> fixato
>
> Microsoft (R) Windows (R) Version 6.0 (Build 6000)
> 9 20 2008 15:15:56.359
>
> Did not load driver \SystemRoot\System32\DRIVERS\srv.sys
>
>
>
> e
>
>
>
> Logfile of HijackThis v1.99.1
> Scan saved at 19.56.08, on 21/09/2008
> Platform: Unknown Windows (WinNT 6.00.1905 SP1)
> MSIE: Internet Explorer v8.00 (8.00.6001.18241)
>
> Running processes:
> C:\Windows\system32\taskeng.exe
> C:\Windows\system32\Dwm.exe
> C:\Windows\Explorer.EXE
> C:\Program Files\Windows Defender\MSASCui.exe
> C:\Windows\RtHDVCpl.exe
> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
> C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
> C:\Program Files\Powercinema\PCMService.exe
> C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
> C:\Program Files\AVG\AVG8\avgtray.exe
> C:\Windows\System32\rundll32.exe
> C:\Program Files\Windows Sidebar\sidebar.exe
> C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
> C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
> C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
> C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
> C:\Program Files\Skype\Phone\Skype.exe
> C:\Program Files\Skype\Plugin Manager\skypePM.exe
> C:\Program Files\Internet Explorer\iexplore.exe
> C:\Program Files\Internet Explorer\iexplore.exe
> C:\Program Files\Internet Explorer\iexplore.exe
> C:\Program Files\Hijackthis\HijackThis.exe
>
> R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
> http://go.microsoft.com/fwlink/?LinkId=54896
> R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
> http://www.tiscali.it/
> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
> http://format.packardbell.com/cgi-bi...=8&key=IESTART
> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
> http://go.microsoft.com/fwlink/?LinkId=54896
> R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
> http://go.microsoft.com/fwlink/?LinkId=54896
> R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
> http://go.microsoft.com/fwlink/?LinkId=69157
> R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
> R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
> R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
> O1 - Hosts: ::1 localhost
> O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -
> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
> O2 - BHO: WormRadar.com IESiteBlocker.NavFilter -
> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
> O2 - BHO: Browser Address Error Redirector -
> {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program
> Files\Google\Google_BAE\BAE.dll
> O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows
> Defender\MSASCui.exe -hide
> O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
> O4 - HKLM\..\Run: [Skytel] Skytel.exe
> O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio
> Shared\9.0\SharedCOM\RoxWatchTray9.exe"
> O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google
> Desktop Search\GoogleDesktop.exe" /startup
> O4 - HKLM\..\Run: [PCMService] "c:\Program Files\Powercinema\PCMService.exe"
> O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard
> Bell\GOOGLE_EULA\EULALauncher.exe
> O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
> O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program
> Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
> O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
> C:\Windows\system32\NvCpl.dll,NvStartup
> O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE
> C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
> O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe
> /autoRun
> O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
> O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common
> Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
> O8 - Extra context menu item: E&sporta in Microsoft Excel -
> res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
> O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
> C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
> O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
> O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
> O11 - Options group: [INTERNATIONAL] International
> O13 - Gopher Prefix:
> O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) -
> http://www.nvidia.com/content/Driver...aSmartScan.cab
> O17 -
> HKLM\System\CCS\Services\Tcpip\..\{92E7C436-239B-40E8-8B5F-0765633AF1E7}:
> NameServer = 85.37.17.4 85.38.28.70
> O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -
> C:\Program Files\AVG\AVG8\avgpp.dll
> O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -
> C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
> O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL,avgrsstx. dll
> O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ,
> s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
> O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. -
> C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
> O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) -
> Unknown owner - c:\Program Files\Powercinema\Kernel\TV\CLCapSvc.exe
> O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner -
> c:\Program Files\Powercinema\Kernel\TV\CLSched.exe
> O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown
> owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h
> ccCommon (file missing)
> O23 - Service: GoogleDesktopManager - Google - C:\Program
> Files\Google\Google Desktop Search\GoogleDesktopManager.exe
> O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner -
> %windir%\system32\svchost.exe (file missing)
> O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision
> Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel
> 32\IDriverT.exe
> O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation -
> C:\Windows\system32\nvvsvc.exe
> O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner -
> %windir%\system32\svchost.exe (file missing)
> O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common
> Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
> O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions -
> C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
> O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) -
> Unknown owner - %windir%\system32\svchost.exe (file missing)
> O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program
> Files\Common Files\SureThing Shared\stllssvr.exe
> O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101
> (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media
> Player\wmpnetwk.exe (file missing)
>
> Ciao! ormai almeno un aperitvo te lo devo
>
>
>

Reply With Quote
 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120