Report of OSAM: Autorun Manager v5.0.11926.0
http://www.online-solutions.ru/en/
Saved at 13:58:47 on 08.04.2013
Risk | Name | Publisher | Full Path | Status | |
---|---|---|---|---|---|
Common | |||||
%SystemRoot%\Tasks | |||||
|||| | "AppleSoftwareUpdate.job" | "Apple Inc." | C:\Programmi\Apple Software Update\SoftwareUpdate.exe | File exists | |
"Adobe Flash Player Updater.job" | "Adobe Systems Incorporated" | C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe | File exists | ||
"RealUpgradeLogonTaskS-1-5-21-3066020028-1826277225-4034825517-1005.job" | "RealNetworks, Inc." | C:\Programmi\Real\RealUpgrade\realupgrade.exe | File exists | ||
"RealUpgradeScheduledTaskS-1-5-21-3066020028-1826277225-4034825517-1005.job" | "RealNetworks, Inc." | C:\Programmi\Real\RealUpgrade\realupgrade.exe | File exists | ||
|||| | "1-Click Maintenance.job" | "TuneUp Software GmbH" | C:\Programmi\TuneUp Utilities 2008\OneClick.exe | File exists | |
|||||| | "MP Scheduled Scan.job" | "Microsoft Corporation" | c:\Programmi\Windows Defender\MpCmdRun.exe | File exists | |
|||| | "GoogleUpdateTaskMachineCore.job" | "Google Inc." | C:\Programmi\Google\Update\GoogleUpdate.exe | File exists | |
|||| | "GoogleUpdateTaskMachineUA.job" | "Google Inc." | C:\Programmi\Google\Update\GoogleUpdate.exe | File exists | |
Control Panel Objects | |||||
%SystemRoot%\system32 | |||||
|||||| | "BACSCPL.cpl" | C:\WINDOWS\system32\BACSCPL.cpl | File exists | ||
|||||| | "bdeadmin.cpl" | C:\WINDOWS\system32\bdeadmin.cpl | File exists | ||
"FlashPlayerCPLApp.cpl" | "Adobe Systems Incorporated" | C:\WINDOWS\system32\FlashPlayerCPLApp.cpl | File exists | ||
|||||| | "infocardcpl.cpl" | "Microsoft Corporation" | C:\WINDOWS\system32\infocardcpl.cpl | File exists | |
|||||| | "javacpl.cpl" | "Sun Microsystems, Inc." | C:\WINDOWS\system32\javacpl.cpl | File exists | |
|||||| | "NicConfigSvc.cpl" | "Dell Inc." | C:\WINDOWS\system32\NicConfigSvc.cpl | File exists | |
|||||| | "nvtuicpl.cpl" | "NVIDIA Corporation" | C:\WINDOWS\system32\nvtuicpl.cpl | File exists | |
|||||| | "plotman.cpl" | "Autodesk, Inc." | C:\WINDOWS\system32\plotman.cpl | File exists | |
|||||| | "S7epaepx.cpl" | "SIEMENS AG" | C:\WINDOWS\system32\S7epaepx.cpl | File exists | |
|||||| | "S7EPATDX.CPL" | "SIEMENS AG" | C:\WINDOWS\system32\S7EPATDX.CPL | File exists | |
|||||| | "stacgui.cpl" | "SigmaTel, Inc." | C:\WINDOWS\system32\stacgui.cpl | File exists | |
|||||| | "styleman.cpl" | "Autodesk, Inc." | C:\WINDOWS\system32\styleman.cpl | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls | |||||
"Avira AntiVir Personal - Free Antivirus " | "Avira GmbH" | C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl | File exists | ||
"Avira AntiVir PersonalEdition Classic " | "Avira GmbH" | C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl | File exists | ||
|||||| | "mlcfg32.cpl" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office12\MLCFG32.CPL | File exists | |
|||||| | "Nero BurnRights" | "Nero AG" | C:\Programmi\Nero\Nero8\Nero Toolkit\NeroBurnRights.cpl | File exists | |
Drivers | |||||
HKLM\SYSTEM\CurrentControlSet\Services | |||||
|||||| | "AEGIS Protocol (IEEE 802.1x) v3.6.0.0" (AegisP) | "Meetinghouse Data Communications" | C:\WINDOWS\System32\DRIVERS\AegisP.sys | File exists | |
|||||| | "APPDRV" (APPDRV) | "Dell Inc" | C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS | File exists | |
"avgntflt" (avgntflt) | "Avira Operations GmbH & Co. KG" | C:\WINDOWS\System32\DRIVERS\avgntflt.sys | File exists | ||
"avipbb" (avipbb) | "Avira Operations GmbH & Co. KG" | C:\WINDOWS\System32\DRIVERS\avipbb.sys | File exists | ||
"avkmgr" (avkmgr) | "Avira Operations GmbH & Co. KG" | C:\WINDOWS\System32\DRIVERS\avkmgr.sys | File exists | ||
"catchme" (catchme) | C:\ComboFix\catchme.sys | File not found | |||
|||||| | "cercsr6" (cercsr6) | "Adaptec, Inc." | C:\WINDOWS\system32\drivers\cercsr6.sys | File exists | |
"Changer" (Changer) | C:\WINDOWS\system32\drivers\Changer.sys | File not found | |||
"cpuz132" (cpuz132) | C:\DOCUME~1\Giorgio\IMPOST~1\Temp\cpuz132\cpuz132_x32.sys | File not found | |||
|||||| | "FssFltr" (fssfltr) | "Microsoft Corporation" | C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys | File exists | |
|| | "KeyP" (KeyP) | "Microsoft Corporation" | C:\WINDOWS\system32\DRIVERS\KeyP.sys | File exists | |
"lbrtfdc" (lbrtfdc) | C:\WINDOWS\system32\drivers\lbrtfdc.sys | File not found | |||
|||||| | "Padus ASPI Shell" (pfc) | "Padus, Inc." | C:\WINDOWS\System32\drivers\pfc.sys | File exists | |
"PCIDump" (PCIDump) | C:\WINDOWS\system32\drivers\PCIDump.sys | File not found | |||
"PDCOMP" (PDCOMP) | C:\WINDOWS\system32\drivers\PDCOMP.sys | File not found | |||
"PDFRAME" (PDFRAME) | C:\WINDOWS\system32\drivers\PDFRAME.sys | File not found | |||
"PDRELI" (PDRELI) | C:\WINDOWS\system32\drivers\PDRELI.sys | File not found | |||
"PDRFRAME" (PDRFRAME) | C:\WINDOWS\system32\drivers\PDRFRAME.sys | File not found | |||
"PLCHW" (PLCHW) | C:\WINDOWS\System32\Drivers\PLCHW.SYS | File found, but it contains no detailed information | |||
|||||| | "PQNTDrv" (PQNTDrv) | "PowerQuest Corporation" | C:\WINDOWS\system32\drivers\PQNTDrv.sys | File exists | |
|||||| | "PxHelp20" (PxHelp20) | "Sonic Solutions" | C:\WINDOWS\System32\Drivers\PxHelp20.sys | File exists | |
|||||| | "s7oppitx" (s7oppitx) | "SIEMENS AG" | C:\WINDOWS\System32\Drivers\S7oppitx.sys | File exists | |
|||||| | "s7otranx" (s7otranx) | "SIEMENS AG" | C:\WINDOWS\System32\Drivers\S7otranx.sys | File exists | |
|||||| | "SCDEmu" (SCDEmu) | "PowerISO Computing, Inc." | C:\WINDOWS\system32\drivers\SCDEmu.sys | File exists | |
|||||| | "Sentinel" (Sentinel) | "Rainbow Technologies, Inc." | C:\WINDOWS\System32\Drivers\SENTINEL.SYS | File exists | |
|||||| | "Siemens PC/PPI Cable" (S7oppilx) | "SIEMENS AG" | C:\WINDOWS\System32\Drivers\S7oppilx.sys | File exists | |
|||||| | "SIMATIC Industrial Ethernet (ISO)" (SNTIE) | "Siemens AG" | C:\WINDOWS\System32\DRIVERS\sntie.sys | File exists | |
|||||| | "ssmdrv" (ssmdrv) | "Avira GmbH" | C:\WINDOWS\System32\DRIVERS\ssmdrv.sys | File exists | |
|||||| | "Trasporto WLAN" (s24trans) | "Intel Corporation" | C:\WINDOWS\System32\DRIVERS\s24trans.sys | File exists | |
"VMware Bridge Protocol" (VMnetBridge) | C:\WINDOWS\System32\DRIVERS\vmnetbridge.sys | File not found | |||
"VMware Network Application Interface" (VMnetuserif) | C:\WINDOWS\system32\drivers\vmnetuserif.sys | File not found | |||
"VMware Virtual Ethernet Adapter Driver" (VMnetAdapter) | C:\WINDOWS\System32\DRIVERS\vmnetadapter.sys | File not found | |||
|||||| | "VSO Software pcouffin" (pcouffin) | "VSO Software" | C:\WINDOWS\System32\Drivers\pcouffin.sys | File exists | |
"WDICA" (WDICA) | C:\WINDOWS\system32\drivers\WDICA.sys | File not found | |||
|||||| | "WinDriver6" (WinDriver6) | "Jungo" | C:\WINDOWS\System32\drivers\windrvr6.sys | File exists | |
Explorer | |||||
HKCU\Software\Microsoft\Internet Explorer\Desktop\Components | |||||
"(0) Source" | /C:/DOCUME~1/Giorgio/IMPOST~1/Temp/msohtmlclip1/01/clip_image002.jpg | File not found | |||
HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | |||||
{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" | File not found | COM-object registry key not found | ||||
{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" | File not found | COM-object registry key not found | ||||
{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" | File not found | COM-object registry key not found | ||||
{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" | File not found | COM-object registry key not found | ||||
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components | |||||
{8A69D345-D564-463c-AFF1-A69D9E530F96} "Google Chrome" | "Google Inc." | "C:\Programmi\Google\Chrome\Application\26.0.1410.43\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome | File exists | ||
|||||| | {89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" | "Microsoft Corporation" | c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install | File exists | |
HKLM\Software\Classes\Folder\shellex\ColumnHandlers | |||||
|||||| | {7D4D6379-F301-4311-BEBA-E26EB0561882} "NeroDigitalColumnHandler Class" | "Nero AG" | C:\Programmi\File comuni\Nero\Lib\NeroDigitalExt.dll | File exists | |
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" | "Adobe Systems, Inc." | C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.dll | File exists | ||
HKLM\Software\Classes\Protocols\Filter | |||||
|||||| | {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" | "Microsoft Corporation" | C:\WINDOWS\system32\mscoree.dll | File exists | |
|||||| | {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" | "Microsoft Corporation" | C:\WINDOWS\system32\mscoree.dll | File exists | |
|||||| | {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" | "Microsoft Corporation" | C:\WINDOWS\system32\mscoree.dll | File exists | |
|||||| | {807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" | "Microsoft Corporation" | C:\PROGRA~1\FILECO~1\MICROS~1\OFFICE12\MSOXMLMF.DLL | File exists | |
HKLM\Software\Classes\Protocols\Handler | |||||
|||||| | {314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" | "Microsoft Corporation" | C:\Programmi\File comuni\Microsoft Shared\Help\hxds.dll | File exists | |
|||||| | {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" | "Skype Technologies" | C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL | File exists | |
|||| | {828030A1-22C1-4009-854F-8E305202313F} "livecall" | "Microsoft Corporation" | C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL | File exists | |
|||||| | {88FED34C-F0CA-4636-A375-3CB6248B04CD} "Local Groove Web Services Protocol" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveSystemServices.dll | File exists | |
|||| | {828030A1-22C1-4009-854F-8E305202313F} "msnim" | "Microsoft Corporation" | C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL | File exists | |
|||||| | {03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" | "Microsoft Corporation" | C:\Programmi\Windows Live\Mail\mailcomm.dll | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks | |||||
|||||| | {B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} "ShellExecuteHook antimalware di Microsoft" | "Microsoft Corporation" | c:\PROGRA~1\WIFD1F~1\MpShHook.dll | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved | |||||
|||||| | {6DEA92E9-8682-4b6a-97DE-354772FE5727} "ACDWFTHMBPRXY" | "Autodesk" | C:\Programmi\File comuni\Autodesk Shared\Thumbnail\AcDwfThmbPrxy16.dll | File exists | |
|||||| | {36A21736-36C2-4C11-8ACB-D4136F2B57BD} "AcSignIcon" | "Autodesk" | C:\WINDOWS\system32\AcSignIcon.dll | File exists | |
|||||| | {AC1DB655-4F9A-4c39-8AD2-A65324A4C446} "ACTHUMBNAIL" | "Autodesk" | C:\Programmi\File comuni\Autodesk Shared\Thumbnail\AcThumbnail16.dll | File exists | |
|||||| | {0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" | "Microsoft Corporation" | C:\Programmi\Windows Live\Mail\mailcomm.dll | File exists | |
|||||| | {1CDB2949-8F65-4355-8456-263E7C208A5D} "Desktop Explorer" | "NVIDIA Corporation" | C:\WINDOWS\system32\nvshell.dll | File exists | |
|||||| | {1E9B04FB-F9E5-4718-997B-B8DA88302A47} "Desktop Explorer Menu" | "NVIDIA Corporation" | C:\WINDOWS\system32\nvshell.dll | File exists | |
|||||| | {21D928D4-4850-45E3-9982-AD57051ECD42} "EdrawingThumbNailProvider Class" | "Dassault Systèmes SolidWorks Corp." | C:\Programmi\File comuni\eDrawings2009\edrwthumbnailprovider.dll | File exists | |
|||||| | {09A47860-11B0-4DA5-AFA5-26D86198A780} "EPP" | "Microsoft Corporation" | c:\PROGRA~1\MI239C~1\shellext.dll | File exists | |
{42071714-76d4-11d1-8b24-00a0c9068ff3} "Estensione panoramica video del Pannello di controllo" | File not found | COM-object registry key not found | ||||
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Estensioni shell per la compressione dei file" | File not found | COM-object registry key not found | ||||
{59A3380E-5305-4cea-BD99-4F2FF510C91F} "FineReader9ContextMenu" | File not found | COM-object registry key not found | ||||
|||||| | {1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" | "Microsoft Corporation" | C:\WINDOWS\system32\mscoree.dll | File exists | |
|||||| | {99FD978C-D287-4F50-827F-B2C658EDA8E7} "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} "Groove Explorer Icon Overlay 2 (GFS Stub)" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {920E6DB1-9907-4370-B3A0-BAFC03D81399} "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {16F3DD56-1AF5-4347-846D-7C10C4192619} "Groove Explorer Icon Overlay 3 (GFS Folder)" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {2A541AE1-5BF6-4665-A8A3-CFA9672E4291} "Groove Folder Synchronization" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {6C467336-8281-4E60-8204-430CED96822D} "Groove GFS Context Menu Handler" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {A449600E-1DC6-4232-B948-9BD794D62056} "Groove GFS Stub Icon Handler" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||||| | {387E725D-DC16-4D76-B310-2C93ED4752A0} "Groove XML Icon Handler" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" | "Apple Inc." | C:\Programmi\iTunes\iTunesMiniPlayer.dll | File exists | ||
|||||| | {DC70C4A5-2044-4c59-B806-DEFB9AE0DF7C} "KbLogiExt Class" | "Logitech, Inc." | C:\Programmi\Logitech\SetPoint\kbcplext.dll | File exists | |
|||||| | {B9B9F083-2B04-452A-8691-83694AC1037B} "LogiExt Class" | "Logitech, Inc." | C:\Programmi\Logitech\SetPoint\mcplext.dll | File exists | |
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Menu di scelta rapida di crittografia" | File not found | COM-object registry key not found | ||||
|||||| | {42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\msohevi.dll | File exists | |
|||||| | {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" | "Microsoft Corporation" | C:\PROGRA~1\FILECO~1\MICROS~1\OFFICE12\msoshext.dll | File exists | |
|||||| | {5858A72C-C2B4-4dd7-B2BF-B76DB1BD9F6C} "Microsoft Office OneNote Namespace Extension for Windows Desktop Search" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office12\ONFILTER.DLL | File exists | |
|||||| | {00020D75-0000-0000-C000-000000000046} "Microsoft Office Outlook" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL | File exists | |
|||||| | {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" | "Microsoft Corporation" | C:\PROGRA~1\FILECO~1\MICROS~1\OFFICE12\msoshext.dll | File exists | |
|||||| | {49BF5420-FA7F-11cf-8011-00A0C90A8F78} "Mobile Device" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~3\Wcesview.dll | File exists | |
|||||| | {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} "NeroCoverEdLiveIcons Class" | "Nero AG" | C:\Programmi\Nero\Nero8\Nero CoverDesigner\CoverEdExtension.dll | File exists | |
|||||| | {B327765E-D724-4347-8B16-78AE18552FC3} "NeroDigitalIconHandler Class" | "Nero AG" | C:\Programmi\File comuni\Nero\Lib\NeroDigitalExt.dll | File exists | |
|||||| | {7F1CF152-04F8-453A-B34C-E609530A9DC8} "NeroDigitalPropSheetHandler Class" | "Nero AG" | C:\Programmi\File comuni\Nero\Lib\NeroDigitalExt.dll | File exists | |
|||||| | {1E9B04FB-F9E5-4718-997B-B8DA88302A48} "nView Desktop Context Menu" | "NVIDIA Corporation" | C:\WINDOWS\system32\nvshell.dll | File exists | |
{0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL | File exists | ||
|||||| | {F8B4672E-1F26-4828-A33B-C439B1F3AEEF} "PdfGrabber 6 Context Menu Shell Extension" | "PixelPlanet" | C:\PROGRA~1\PIXELP~1\PDFGRA~1.0\PDFGRA~2.DLL | File exists | |
|||||| | {35786D3C-B075-49b9-88DD-029876E11C01} "Portable Devices" | "Microsoft Corporation" | C:\WINDOWS\system32\wpdshext.dll | File exists | |
|||||| | {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} "Portable Devices Menu" | "Microsoft Corporation" | C:\WINDOWS\system32\wpdshext.dll | File exists | |
|||||| | {640167b4-59b0-47a6-b335-a6b3c0695aea} "Portable Media Devices" | "Microsoft Corporation" | C:\WINDOWS\system32\Audiodev.dll | File exists | |
|||||| | {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} "PowerISO" | "PowerISO Computing, Inc." | C:\Programmi\PowerISO\PWRISOSH.DLL | File exists | |
|| | {9E6C9AB4-B9BD-481D-8D8B-70D739B71312} "RdxShlExt Class" | C:\Programmi\RD1000\ShlExt\RdxExt.dll | File exists | ||
|||||| | {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} "RealOne Player Context Menu Class" | "RealNetworks, Inc." | c:\programmi\real\realplayer\rpshell.dll | File exists | |
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" | "Avira Operations GmbH & Co. KG" | C:\Programmi\Avira\AntiVir Desktop\shlext.dll | File exists | ||
|||||| | {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" | "Microsoft Corporation" | c:\WINDOWS\system32\dfshim.dll | File exists | |
|||||| | {e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" | "Microsoft Corporation" | c:\WINDOWS\system32\dfshim.dll | File exists | |
|||||| | {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} "TuneUp Shredder Shell Extension" | "TuneUp Software GmbH" | C:\Programmi\TuneUp Utilities 2008\SDShelEx-win32.dll | File exists | |
|||||| | {44440D00-FF19-4AFC-B765-9A0970567D97} "TuneUp Theme Extension" | "TuneUp Software GmbH" | C:\WINDOWS\System32\uxtuneup.dll | File exists | |
|||||| | {BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" | "Microsoft Corporation" | C:\Programmi\File comuni\Microsoft Shared\Web Folders\MSONSEXT.DLL | File exists | |
{2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\WLXPhotoGallery.exe | File exists | ||
{00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\WLXPhotoGallery.exe | File exists | ||
|||||| | {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll | File exists | |
|||||| | {00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll | File exists | |
|||||| | {00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll | File exists | |
{00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\WLXPhotoGallery.exe | File exists | ||
|||||| | {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll | File exists | |
|||||| | {45670FA8-ED97-4F44-BC93-305082590BFB} "Windows XPS Document Metadata Handler" | "Microsoft Corporation" | C:\WINDOWS\System32\XPSSHHDR.DLL | File exists | |
|||||| | {44121072-A222-48f2-A58A-6D9AD51EBBE9} "Windows XPS Document Thumbnail Handler" | "Microsoft Corporation" | C:\WINDOWS\System32\XPSSHHDR.DLL | File exists | |
|||||| | {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" | "Alexander Roshal" | C:\Programmi\WinRAR\rarext.dll | File exists | |
|||||| | {06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" | "Microsoft Corporation" | C:\Programmi\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad | |||||
|||||| | {AAA288BA-9A4C-45B0-95D7-94D524869DB5} "WPDShServiceObj Class" | "Microsoft Corporation" | C:\WINDOWS\system32\WPDShServiceObj.dll | File exists | |
Internet Explorer | |||||
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser | |||||
File not found | COM-object registry key not found | |||||
File not found | COM-object registry key not found | |||||
File not found | COM-object registry key not found | |||||
File not found | COM-object registry key not found | |||||
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units | |||||
|| | {12545791-AC9A-44B2-8964-0DA216C4A4E5} "Cnsweb3d Control" http://www.partserver.com/partserver/viewer/cnsweb3d/cnsweb3d.cab |
"Cadenas GmbH" | C:\WINDOWS\DOWNLO~1\cnsweb3d.ocx | File exists | |
|| | {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} "Controllo AcDc oggi" file://C:\Programmi\AutoCAD LT 2000i Ita\AcDcToday.ocx |
"Autodesk" | C:\WINDOWS\DOWNLO~1\ACDCTO~1.OCX | File exists | |
|| | {F281A59C-7B65-11D3-8617-0010830243BD} "Controllo AcPreview" file://C:\Programmi\AutoCAD LT 2000i Ita\AcPreview.ocx |
"Autodesk" | C:\WINDOWS\DOWNLO~1\ACPREV~1.OCX | File exists | |
|||||| | {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} "Java Plug-in 1.6.0_02" http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab |
"Sun Microsystems, Inc." | C:\Programmi\Java\jre1.6.0_02\bin\npjpi160_02.dll | File exists | |
|||| | {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22" http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab |
"Sun Microsystems, Inc." | C:\Programmi\Java\jre1.6.0_22\bin\npjpi160_22.dll | File exists | |
|||| | {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_24" http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab |
"Sun Microsystems, Inc." | C:\Programmi\Java\jre6\bin\npjpi160_24.dll | File exists | |
|||| | {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} "Java Plug-in 1.6.0_24" http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab |
"Sun Microsystems, Inc." | C:\Programmi\Java\jre6\bin\npjpi160_24.dll | File exists | |
|||| | {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_24" http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab |
"Sun Microsystems, Inc." | C:\Programmi\Java\jre6\bin\npjpi160_24.dll | File exists | |
|| | {1F831FA9-42FC-11D4-95A6-0080AD30DCE1} "NOXLATE" file://C:\Programmi\AutoCAD LT 2000i Ita\InstFred.ocx |
"Autodesk, Inc." | C:\WINDOWS\DOWNLO~1\InstFred.ocx | File exists | |
|||||| | {D27CDB6E-AE6D-11CF-96B8-444553540000} "Shockwave Flash Object" http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab |
"Adobe Systems, Inc." | C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx | File exists | |
{31435657-9980-0010-8000-00AA00389B71} "{31435657-9980-0010-8000-00AA00389B71}" http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab |
File not found | COM-object registry key not found | ||||
{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} "{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}" http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab |
File not found | COM-object registry key not found | ||||
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions | |||||
|||| | {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} "ClsidExtension" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~3\INetRepl.dll | File exists | |
|||| | {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} "Create Mobile Favorite" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~3\INetRepl.dll | File exists | |
|||| | {5F7B1267-94A9-47F5-98DB-E99415F33AEC} "Objavi ovo u blogu" | "Microsoft Corporation" | C:\Programmi\Windows Live\Writer\WriterBrowserExtension.dll | File exists | |
|| | {FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL | File exists | |
|||| | {48E73304-E1D6-4330-914C-F5F514E3486C} "Send to OneNote" | "Microsoft Corporation" | C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll | File exists | |
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects | |||||
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" | "Adobe Systems Incorporated" | C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll | File exists | ||
|||||| | {72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll | File exists | |
|||| | {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" | "Sun Microsystems, Inc." | C:\Programmi\Java\jre6\bin\jp2ssv.dll | File exists | |
|||| | {E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" | "Sun Microsystems, Inc." | C:\Programmi\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll | File exists | |
|||| | {3049C3E9-B461-4BC5-8870-4C09146192CA} "RealPlayer Download and Record Plugin for Internet Explorer" | "RealPlayer" | C:\Documents and Settings\All Users\Dati applicazioni\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll | File exists | |
|||||| | {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live pomagač za prijavljivanje" | "Microsoft Corporation" | C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll | File exists | |
Logon | |||||
%AllUsersProfile%\Menu Avvio\Programmi\Esecuzione automatica | |||||
|||||| | "desktop.ini" | C:\Documents and Settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\desktop.ini | File exists | ||
|||| | "Logitech SetPoint.lnk" | "Logitech, Inc." | C:\Programmi\Logitech\SetPoint\SetPoint.exe | Shortcut exists | File exists | |
%UserProfile%\Menu Avvio\Programmi\Esecuzione automatica | |||||
|||||| | "desktop.ini" | C:\Documents and Settings\Giorgio\Menu Avvio\Programmi\Esecuzione automatica\desktop.ini | File exists | ||
HKLM\Software\Microsoft\Windows\CurrentVersion\Run | |||||
"avgnt" | "Avira Operations GmbH & Co. KG" | "C:\Programmi\Avira\AntiVir Desktop\avgnt.exe" /min | File exists | ||
"iTunesHelper" | "Apple Inc." | "C:\Programmi\iTunes\iTunesHelper.exe" | File exists | ||
|||| | "NVHotkey" | "NVIDIA Corporation" | rundll32.exe nvHotkey.dll,Start | File exists | |
|||| | "nwiz" | "NVIDIA Corporation" | nwiz.exe /installquiet | File exists | |
|||| | "SigmatelSysTrayApp" | "SigmaTel, Inc." | stsystra.exe | File exists | |
Print Monitors | |||||
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors | |||||
|||||| | "CutePDF Writer Monitor" | C:\WINDOWS\system32\cpwmon2k.dll | File found, but it contains no detailed information | ||
|||||| | "EPSON Stylus Photo R285 Series 32MonitorBE" | "SEIKO EPSON CORPORATION" | C:\WINDOWS\system32\E_FLBCKE.DLL | File exists | |
|||||| | "EPSON Stylus Photo RX420 Series 2KMonitor5E" | "SEIKO EPSON CORPORATION" | C:\WINDOWS\system32\E_FLM9CE.DLL | File exists | |
"KM Language Monitor" | "KYOCERA MITA Corporation" | C:\WINDOWS\system32\KMPJLMN.DLL | File exists | ||
|||||| | "Microsoft Document Imaging Writer Monitor" | "Microsoft Corporation" | C:\WINDOWS\system32\mdimon.dll | File exists | |
|||||| | "Send To Microsoft OneNote Monitor" | "Microsoft Corporation" | C:\WINDOWS\system32\msonpmon.dll | File exists | |
Services | |||||
HKLM\SYSTEM\CurrentControlSet\Services | |||||
|||||| | " Servizio Bonjour" (Bonjour Service) | "Apple Inc." | C:\Programmi\Bonjour\mDNSResponder.exe | File exists | |
|||||| | ".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) | "Microsoft Corporation" | C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe | File exists | |
"Apple Mobile Device" (Apple Mobile Device) | "Apple Inc." | C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe | File exists | ||
"Avira AntiVir Scheduler" (AntiVirScheduler) | "Avira Operations GmbH & Co. KG" | C:\Programmi\Avira\AntiVir Desktop\sched.exe | File exists | ||
"Avira Real-Time Protection" (AntiVirService) | "Avira Operations GmbH & Co. KG" | C:\Programmi\Avira\AntiVir Desktop\avguard.exe | File exists | ||
"Avira Scheduler" (AntiVirSchedulerService) | "Avira Operations GmbH & Co. KG" | C:\Programmi\Avira\AntiVir Desktop\sched.exe | File exists | ||
|||||| | "getPlus(R) Helper" (getPlus(R) Helper) | "NOS Microsystems Ltd." | C:\Programmi\NOS\bin\getPlus_HelperSvc.exe | File exists | |
|||||| | "Intel(R) PROSet/Wireless Event Log" (EvtEng) | "Intel Corporation" | C:\Programmi\Intel\Wireless\Bin\EvtEng.exe | File exists | |
|||||| | "Intel(R) PROSet/Wireless Registry Service" (RegSrvc) | "Intel Corporation" | C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe | File exists | |
|||||| | "Intel(R) PROSet/Wireless Service" (S24EventMonitor) | "Intel Corporation " | C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe | File exists | |
|||||| | "Intel(R) PROSet/Wireless SSO Service" (WLANKEEPER) | "Intel(R) Corporation" | C:\Programmi\Intel\Wireless\Bin\WLKeeper.exe | File exists | |
|||||| | "Java Quick Starter" (JavaQuickStarterService) | "Sun Microsystems, Inc." | C:\Programmi\Java\jre6\bin\jqs.exe | File exists | |
|||||| | "Logitech Bluetooth Service" (LBTServ) | "Logitech, Inc." | C:\Programmi\File comuni\Logitech\Bluetooth\LBTServ.exe | File exists | |
|||||| | "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) | "Microsoft Corporation" | C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe | File exists | |
|||||| | "Microsoft Office Groove Audit Service" (Microsoft Office Groove Audit Service) | "Microsoft Corporation" | C:\Programmi\Microsoft Office\Office12\GrooveAuditService.exe | File exists | |
|||||| | "NICCONFIGSVC" (NICCONFIGSVC) | "Dell Inc." | C:\Programmi\Dell\QuickSet\NICCONFIGSVC.exe | File exists | |
|||||| | "NMIndexingService" (NMIndexingService) | "Nero AG" | C:\Programmi\File comuni\Nero\Lib\NMIndexingService.exe | File exists | |
|||||| | "Office Source Engine" (ose) | "Microsoft Corporation" | C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE | File exists | |
|||||| | "PLFlash DeviceIoControl Service" (PLFlash DeviceIoControl Service) | "Prolific Technology Inc." | C:\WINDOWS\system32\IoctlSvc.exe | File exists | |
|| | "RDXmon 1.12" (RDXmon) | C:\Programmi\RD1000\Service\RDXmon.exe | File found, but it contains no detailed information | ||
"Servizio iPod" (iPod Service) | "Apple Inc." | C:\Programmi\iPod\bin\iPodService.exe | File exists | ||
|||||| | "Servizio stato di ASP.NET" (aspnet_state) | "Microsoft Corporation" | C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe | File exists | |
|||||| | "SIMATIC IEPG Help Service" (s7oiehsx) | "SIEMENS AG" | C:\program files\common files\Siemens\S7IEPG\s7oiehsx.exe | File exists | |
|||||| | "TuneUp Drive Defrag Service" (TuneUp.Defrag) | "TuneUp Software GmbH" | C:\WINDOWS\System32\TuneUpDefragService.exe | File exists | |
|||||| | "TuneUp Theme Extension" (UxTuneUp) | "TuneUp Software GmbH" | C:\WINDOWS\System32\uxtuneup.dll | File exists | |
|||||| | "VMware DHCP Service" (VMnetDHCP) | "VMware, Inc." | C:\WINDOWS\system32\vmnetdhcp.exe | File exists | |
|||||| | "VMware NAT Service" (VMware NAT Service) | "VMware, Inc." | C:\WINDOWS\system32\vmnat.exe | File exists | |
|||||| | "Windows Defender" (WinDefend) | "Microsoft Corporation" | c:\Programmi\Windows Defender\MsMpEng.exe | File exists | |
|||||| | "Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) | "Microsoft Corporation" | C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe | File exists | |
|||||| | "Windows Presentation Foundation Font Cache 4.0.0.0" (WPFFontCache_v0400) | "Microsoft Corporation" | C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe | File exists | |
Winlogon | |||||
HKCU\Control Panel\IOProcs | |||||
"MVB" | mvfs32.dll | File not found | |||
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify | |||||
|||||| | "LBTWlgn" | "Logitech, Inc." | c:\programmi\file comuni\logitech\bluetooth\LBTWlgn.dll | File exists | |
|||| | "WgaLogon" | "Microsoft Corporation" | C:\WINDOWS\system32\WgaLogon.dll | File exists | |
Winsock Providers | |||||
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries | |||||
|||||| | "mdnsNSP" | "Apple Inc." | C:\Programmi\Bonjour\mdnsNSP.dll | File exists |
If You have questions or want to get some help, You can visit http://forum.online-solutions.ru