Report of OSAM: Autorun Manager v5.0.11926.0
http://www.online-solutions.ru/en/
Saved at 13:58:47 on 08.04.2013

OS: Windows XP Professional Service Pack 3 (Build 2600)
Default Browser: Opera Software Opera Internet Browser 12.14

Scanner Settings
Rootkits detection (hidden registry)
Rootkits detection (hidden files)
Retrieve files information
Check Microsoft signatures

Filters
Trusted entries
Empty entries
Hidden registry entries (rootkit activity)
Exclusively opened files
Not found files
Files without detailed information
Existing files
Non-startable services
Non-startable drivers
Active entries
Disabled entries

  Risk Name Publisher Full Path Status
Common
%SystemRoot%\Tasks
||||   "AppleSoftwareUpdate.job" "Apple Inc." C:\Programmi\Apple Software Update\SoftwareUpdate.exe File exists
       "Adobe Flash Player Updater.job" "Adobe Systems Incorporated" C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe File exists
       "RealUpgradeLogonTaskS-1-5-21-3066020028-1826277225-4034825517-1005.job" "RealNetworks, Inc." C:\Programmi\Real\RealUpgrade\realupgrade.exe File exists
       "RealUpgradeScheduledTaskS-1-5-21-3066020028-1826277225-4034825517-1005.job" "RealNetworks, Inc." C:\Programmi\Real\RealUpgrade\realupgrade.exe File exists
||||   "1-Click Maintenance.job" "TuneUp Software GmbH" C:\Programmi\TuneUp Utilities 2008\OneClick.exe File exists
|||||| "MP Scheduled Scan.job" "Microsoft Corporation" c:\Programmi\Windows Defender\MpCmdRun.exe File exists
||||   "GoogleUpdateTaskMachineCore.job" "Google Inc." C:\Programmi\Google\Update\GoogleUpdate.exe File exists
||||   "GoogleUpdateTaskMachineUA.job" "Google Inc." C:\Programmi\Google\Update\GoogleUpdate.exe File exists
Control Panel Objects
%SystemRoot%\system32
|||||| "BACSCPL.cpl" C:\WINDOWS\system32\BACSCPL.cpl File exists
|||||| "bdeadmin.cpl" C:\WINDOWS\system32\bdeadmin.cpl File exists
       "FlashPlayerCPLApp.cpl" "Adobe Systems Incorporated" C:\WINDOWS\system32\FlashPlayerCPLApp.cpl File exists
|||||| "infocardcpl.cpl" "Microsoft Corporation" C:\WINDOWS\system32\infocardcpl.cpl File exists
|||||| "javacpl.cpl" "Sun Microsystems, Inc." C:\WINDOWS\system32\javacpl.cpl File exists
|||||| "NicConfigSvc.cpl" "Dell Inc." C:\WINDOWS\system32\NicConfigSvc.cpl File exists
|||||| "nvtuicpl.cpl" "NVIDIA Corporation" C:\WINDOWS\system32\nvtuicpl.cpl File exists
|||||| "plotman.cpl" "Autodesk, Inc." C:\WINDOWS\system32\plotman.cpl File exists
|||||| "S7epaepx.cpl" "SIEMENS AG" C:\WINDOWS\system32\S7epaepx.cpl File exists
|||||| "S7EPATDX.CPL" "SIEMENS AG" C:\WINDOWS\system32\S7EPATDX.CPL File exists
|||||| "stacgui.cpl" "SigmaTel, Inc." C:\WINDOWS\system32\stacgui.cpl File exists
|||||| "styleman.cpl" "Autodesk, Inc." C:\WINDOWS\system32\styleman.cpl File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls
       "Avira AntiVir Personal - Free Antivirus " "Avira GmbH" C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl File exists
       "Avira AntiVir PersonalEdition Classic " "Avira GmbH" C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl File exists
|||||| "mlcfg32.cpl" "Microsoft Corporation" C:\PROGRA~1\MICROS~2\Office12\MLCFG32.CPL File exists
|||||| "Nero BurnRights" "Nero AG" C:\Programmi\Nero\Nero8\Nero Toolkit\NeroBurnRights.cpl File exists
Drivers
HKLM\SYSTEM\CurrentControlSet\Services
|||||| "AEGIS Protocol (IEEE 802.1x) v3.6.0.0" (AegisP) "Meetinghouse Data Communications" C:\WINDOWS\System32\DRIVERS\AegisP.sys File exists
|||||| "APPDRV" (APPDRV) "Dell Inc" C:\WINDOWS\SYSTEM32\DRIVERS\APPDRV.SYS File exists
       "avgntflt" (avgntflt) "Avira Operations GmbH & Co. KG" C:\WINDOWS\System32\DRIVERS\avgntflt.sys File exists
       "avipbb" (avipbb) "Avira Operations GmbH & Co. KG" C:\WINDOWS\System32\DRIVERS\avipbb.sys File exists
       "avkmgr" (avkmgr) "Avira Operations GmbH & Co. KG" C:\WINDOWS\System32\DRIVERS\avkmgr.sys File exists
       "catchme" (catchme) C:\ComboFix\catchme.sys File not found
|||||| "cercsr6" (cercsr6) "Adaptec, Inc." C:\WINDOWS\system32\drivers\cercsr6.sys File exists
       "Changer" (Changer) C:\WINDOWS\system32\drivers\Changer.sys File not found
       "cpuz132" (cpuz132) C:\DOCUME~1\Giorgio\IMPOST~1\Temp\cpuz132\cpuz132_x32.sys File not found
|||||| "FssFltr" (fssfltr) "Microsoft Corporation" C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys File exists
||     "KeyP" (KeyP) "Microsoft Corporation" C:\WINDOWS\system32\DRIVERS\KeyP.sys File exists
       "lbrtfdc" (lbrtfdc) C:\WINDOWS\system32\drivers\lbrtfdc.sys File not found
|||||| "Padus ASPI Shell" (pfc) "Padus, Inc." C:\WINDOWS\System32\drivers\pfc.sys File exists
       "PCIDump" (PCIDump) C:\WINDOWS\system32\drivers\PCIDump.sys File not found
       "PDCOMP" (PDCOMP) C:\WINDOWS\system32\drivers\PDCOMP.sys File not found
       "PDFRAME" (PDFRAME) C:\WINDOWS\system32\drivers\PDFRAME.sys File not found
       "PDRELI" (PDRELI) C:\WINDOWS\system32\drivers\PDRELI.sys File not found
       "PDRFRAME" (PDRFRAME) C:\WINDOWS\system32\drivers\PDRFRAME.sys File not found
       "PLCHW" (PLCHW) C:\WINDOWS\System32\Drivers\PLCHW.SYS File found, but it contains no detailed information
|||||| "PQNTDrv" (PQNTDrv) "PowerQuest Corporation" C:\WINDOWS\system32\drivers\PQNTDrv.sys File exists
|||||| "PxHelp20" (PxHelp20) "Sonic Solutions" C:\WINDOWS\System32\Drivers\PxHelp20.sys File exists
|||||| "s7oppitx" (s7oppitx) "SIEMENS AG" C:\WINDOWS\System32\Drivers\S7oppitx.sys File exists
|||||| "s7otranx" (s7otranx) "SIEMENS AG" C:\WINDOWS\System32\Drivers\S7otranx.sys File exists
|||||| "SCDEmu" (SCDEmu) "PowerISO Computing, Inc." C:\WINDOWS\system32\drivers\SCDEmu.sys File exists
|||||| "Sentinel" (Sentinel) "Rainbow Technologies, Inc." C:\WINDOWS\System32\Drivers\SENTINEL.SYS File exists
|||||| "Siemens PC/PPI Cable" (S7oppilx) "SIEMENS AG" C:\WINDOWS\System32\Drivers\S7oppilx.sys File exists
|||||| "SIMATIC Industrial Ethernet (ISO)" (SNTIE) "Siemens AG" C:\WINDOWS\System32\DRIVERS\sntie.sys File exists
|||||| "ssmdrv" (ssmdrv) "Avira GmbH" C:\WINDOWS\System32\DRIVERS\ssmdrv.sys File exists
|||||| "Trasporto WLAN" (s24trans) "Intel Corporation" C:\WINDOWS\System32\DRIVERS\s24trans.sys File exists
       "VMware Bridge Protocol" (VMnetBridge) C:\WINDOWS\System32\DRIVERS\vmnetbridge.sys File not found
       "VMware Network Application Interface" (VMnetuserif) C:\WINDOWS\system32\drivers\vmnetuserif.sys File not found
       "VMware Virtual Ethernet Adapter Driver" (VMnetAdapter) C:\WINDOWS\System32\DRIVERS\vmnetadapter.sys File not found
|||||| "VSO Software pcouffin" (pcouffin) "VSO Software" C:\WINDOWS\System32\Drivers\pcouffin.sys File exists
       "WDICA" (WDICA) C:\WINDOWS\system32\drivers\WDICA.sys File not found
|||||| "WinDriver6" (WinDriver6) "Jungo" C:\WINDOWS\System32\drivers\windrvr6.sys File exists
Explorer
HKCU\Software\Microsoft\Internet Explorer\Desktop\Components
       "(0) Source" /C:/DOCUME~1/Giorgio/IMPOST~1/Temp/msohtmlclip1/01/clip_image002.jpg File not found
HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
       {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" File not found | COM-object registry key not found
       {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" File not found | COM-object registry key not found
       {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" File not found | COM-object registry key not found
       {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt" File not found | COM-object registry key not found
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
       {8A69D345-D564-463c-AFF1-A69D9E530F96} "Google Chrome" "Google Inc." "C:\Programmi\Google\Chrome\Application\26.0.1410.43\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome File exists
|||||| {89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" "Microsoft Corporation" c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install File exists
HKLM\Software\Classes\Folder\shellex\ColumnHandlers
|||||| {7D4D6379-F301-4311-BEBA-E26EB0561882} "NeroDigitalColumnHandler Class" "Nero AG" C:\Programmi\File comuni\Nero\Lib\NeroDigitalExt.dll File exists
       {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" "Adobe Systems, Inc." C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\PDFShell.dll File exists
HKLM\Software\Classes\Protocols\Filter
|||||| {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
|||||| {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
|||||| {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
|||||| {807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" "Microsoft Corporation" C:\PROGRA~1\FILECO~1\MICROS~1\OFFICE12\MSOXMLMF.DLL File exists
HKLM\Software\Classes\Protocols\Handler
|||||| {314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" "Microsoft Corporation" C:\Programmi\File comuni\Microsoft Shared\Help\hxds.dll File exists
|||||| {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" "Skype Technologies" C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL File exists
||||   {828030A1-22C1-4009-854F-8E305202313F} "livecall" "Microsoft Corporation" C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL File exists
|||||| {88FED34C-F0CA-4636-A375-3CB6248B04CD} "Local Groove Web Services Protocol" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveSystemServices.dll File exists
||||   {828030A1-22C1-4009-854F-8E305202313F} "msnim" "Microsoft Corporation" C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL File exists
|||||| {03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" "Microsoft Corporation" C:\Programmi\Windows Live\Mail\mailcomm.dll File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
|||||| {B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} "ShellExecuteHook antimalware di Microsoft" "Microsoft Corporation" c:\PROGRA~1\WIFD1F~1\MpShHook.dll File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
|||||| {6DEA92E9-8682-4b6a-97DE-354772FE5727} "ACDWFTHMBPRXY" "Autodesk" C:\Programmi\File comuni\Autodesk Shared\Thumbnail\AcDwfThmbPrxy16.dll File exists
|||||| {36A21736-36C2-4C11-8ACB-D4136F2B57BD} "AcSignIcon" "Autodesk" C:\WINDOWS\system32\AcSignIcon.dll File exists
|||||| {AC1DB655-4F9A-4c39-8AD2-A65324A4C446} "ACTHUMBNAIL" "Autodesk" C:\Programmi\File comuni\Autodesk Shared\Thumbnail\AcThumbnail16.dll File exists
|||||| {0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" "Microsoft Corporation" C:\Programmi\Windows Live\Mail\mailcomm.dll File exists
|||||| {1CDB2949-8F65-4355-8456-263E7C208A5D} "Desktop Explorer" "NVIDIA Corporation" C:\WINDOWS\system32\nvshell.dll File exists
|||||| {1E9B04FB-F9E5-4718-997B-B8DA88302A47} "Desktop Explorer Menu" "NVIDIA Corporation" C:\WINDOWS\system32\nvshell.dll File exists
|||||| {21D928D4-4850-45E3-9982-AD57051ECD42} "EdrawingThumbNailProvider Class" "Dassault Systèmes SolidWorks Corp." C:\Programmi\File comuni\eDrawings2009\edrwthumbnailprovider.dll File exists
|||||| {09A47860-11B0-4DA5-AFA5-26D86198A780} "EPP" "Microsoft Corporation" c:\PROGRA~1\MI239C~1\shellext.dll File exists
       {42071714-76d4-11d1-8b24-00a0c9068ff3} "Estensione panoramica video del Pannello di controllo" File not found | COM-object registry key not found
       {764BF0E1-F219-11ce-972D-00AA00A14F56} "Estensioni shell per la compressione dei file" File not found | COM-object registry key not found
       {59A3380E-5305-4cea-BD99-4F2FF510C91F} "FineReader9ContextMenu" File not found | COM-object registry key not found
|||||| {1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
|||||| {99FD978C-D287-4F50-827F-B2C658EDA8E7} "Groove Explorer Icon Overlay 1 (GFS Unread Stub)" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} "Groove Explorer Icon Overlay 2 (GFS Stub)" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {920E6DB1-9907-4370-B3A0-BAFC03D81399} "Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {16F3DD56-1AF5-4347-846D-7C10C4192619} "Groove Explorer Icon Overlay 3 (GFS Folder)" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} "Groove Explorer Icon Overlay 4 (GFS Unread Mark)" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {2A541AE1-5BF6-4665-A8A3-CFA9672E4291} "Groove Folder Synchronization" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {6C467336-8281-4E60-8204-430CED96822D} "Groove GFS Context Menu Handler" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {B5A7F190-DDA6-4420-B3BA-52453494E6CD} "Groove GFS Stub Execution Hook" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {A449600E-1DC6-4232-B948-9BD794D62056} "Groove GFS Stub Icon Handler" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
|||||| {387E725D-DC16-4D76-B310-2C93ED4752A0} "Groove XML Icon Handler" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
       {B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF} "iTunes" "Apple Inc." C:\Programmi\iTunes\iTunesMiniPlayer.dll File exists
|||||| {DC70C4A5-2044-4c59-B806-DEFB9AE0DF7C} "KbLogiExt Class" "Logitech, Inc." C:\Programmi\Logitech\SetPoint\kbcplext.dll File exists
|||||| {B9B9F083-2B04-452A-8691-83694AC1037B} "LogiExt Class" "Logitech, Inc." C:\Programmi\Logitech\SetPoint\mcplext.dll File exists
       {853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Menu di scelta rapida di crittografia" File not found | COM-object registry key not found
|||||| {42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\msohevi.dll File exists
|||||| {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" "Microsoft Corporation" C:\PROGRA~1\FILECO~1\MICROS~1\OFFICE12\msoshext.dll File exists
|||||| {5858A72C-C2B4-4dd7-B2BF-B76DB1BD9F6C} "Microsoft Office OneNote Namespace Extension for Windows Desktop Search" "Microsoft Corporation" C:\PROGRA~1\MICROS~2\Office12\ONFILTER.DLL File exists
|||||| {00020D75-0000-0000-C000-000000000046} "Microsoft Office Outlook" "Microsoft Corporation" C:\PROGRA~1\MICROS~2\Office12\MLSHEXT.DLL File exists
|||||| {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" "Microsoft Corporation" C:\PROGRA~1\FILECO~1\MICROS~1\OFFICE12\msoshext.dll File exists
|||||| {49BF5420-FA7F-11cf-8011-00A0C90A8F78} "Mobile Device" "Microsoft Corporation" C:\PROGRA~1\MICROS~3\Wcesview.dll File exists
|||||| {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} "NeroCoverEdLiveIcons Class" "Nero AG" C:\Programmi\Nero\Nero8\Nero CoverDesigner\CoverEdExtension.dll File exists
|||||| {B327765E-D724-4347-8B16-78AE18552FC3} "NeroDigitalIconHandler Class" "Nero AG" C:\Programmi\File comuni\Nero\Lib\NeroDigitalExt.dll File exists
|||||| {7F1CF152-04F8-453A-B34C-E609530A9DC8} "NeroDigitalPropSheetHandler Class" "Nero AG" C:\Programmi\File comuni\Nero\Lib\NeroDigitalExt.dll File exists
|||||| {1E9B04FB-F9E5-4718-997B-B8DA88302A48} "nView Desktop Context Menu" "NVIDIA Corporation" C:\WINDOWS\system32\nvshell.dll File exists
       {0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" "Microsoft Corporation" C:\PROGRA~1\MICROS~2\Office12\OLKFSTUB.DLL File exists
|||||| {F8B4672E-1F26-4828-A33B-C439B1F3AEEF} "PdfGrabber 6 Context Menu Shell Extension" "PixelPlanet" C:\PROGRA~1\PIXELP~1\PDFGRA~1.0\PDFGRA~2.DLL File exists
|||||| {35786D3C-B075-49b9-88DD-029876E11C01} "Portable Devices" "Microsoft Corporation" C:\WINDOWS\system32\wpdshext.dll File exists
|||||| {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} "Portable Devices Menu" "Microsoft Corporation" C:\WINDOWS\system32\wpdshext.dll File exists
|||||| {640167b4-59b0-47a6-b335-a6b3c0695aea} "Portable Media Devices" "Microsoft Corporation" C:\WINDOWS\system32\Audiodev.dll File exists
|||||| {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} "PowerISO" "PowerISO Computing, Inc." C:\Programmi\PowerISO\PWRISOSH.DLL File exists
||     {9E6C9AB4-B9BD-481D-8D8B-70D739B71312} "RdxShlExt Class" C:\Programmi\RD1000\ShlExt\RdxExt.dll File exists
|||||| {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} "RealOne Player Context Menu Class" "RealNetworks, Inc." c:\programmi\real\realplayer\rpshell.dll File exists
       {45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" "Avira Operations GmbH & Co. KG" C:\Programmi\Avira\AntiVir Desktop\shlext.dll File exists
|||||| {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" "Microsoft Corporation" c:\WINDOWS\system32\dfshim.dll File exists
|||||| {e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" "Microsoft Corporation" c:\WINDOWS\system32\dfshim.dll File exists
|||||| {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} "TuneUp Shredder Shell Extension" "TuneUp Software GmbH" C:\Programmi\TuneUp Utilities 2008\SDShelEx-win32.dll File exists
|||||| {44440D00-FF19-4AFC-B765-9A0970567D97} "TuneUp Theme Extension" "TuneUp Software GmbH" C:\WINDOWS\System32\uxtuneup.dll File exists
|||||| {BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" "Microsoft Corporation" C:\Programmi\File comuni\Microsoft Shared\Web Folders\MSONSEXT.DLL File exists
       {2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\WLXPhotoGallery.exe File exists
       {00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\WLXPhotoGallery.exe File exists
|||||| {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
       {00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\WLXPhotoGallery.exe File exists
|||||| {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {45670FA8-ED97-4F44-BC93-305082590BFB} "Windows XPS Document Metadata Handler" "Microsoft Corporation" C:\WINDOWS\System32\XPSSHHDR.DLL File exists
|||||| {44121072-A222-48f2-A58A-6D9AD51EBBE9} "Windows XPS Document Thumbnail Handler" "Microsoft Corporation" C:\WINDOWS\System32\XPSSHHDR.DLL File exists
|||||| {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" "Alexander Roshal" C:\Programmi\WinRAR\rarext.dll File exists
|||||| {06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" "Microsoft Corporation" C:\Programmi\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
|||||| {AAA288BA-9A4C-45B0-95D7-94D524869DB5} "WPDShServiceObj Class" "Microsoft Corporation" C:\WINDOWS\system32\WPDShServiceObj.dll File exists
Internet Explorer
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
       "ITBar7Layout" File not found | COM-object registry key not found
       "ITBarLayout" File not found | COM-object registry key not found
       "{2318C2B1-4965-11D4-9B18-009027A5CD4F}" File not found | COM-object registry key not found
       "{EE5D279F-081B-4404-994D-C6B60AAEBA6D}" File not found | COM-object registry key not found
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units
||     {12545791-AC9A-44B2-8964-0DA216C4A4E5} "Cnsweb3d Control"
http://www.partserver.com/partserver/viewer/cnsweb3d/cnsweb3d.cab
"Cadenas GmbH" C:\WINDOWS\DOWNLO~1\cnsweb3d.ocx File exists
||     {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} "Controllo AcDc oggi"
file://C:\Programmi\AutoCAD LT 2000i Ita\AcDcToday.ocx
"Autodesk" C:\WINDOWS\DOWNLO~1\ACDCTO~1.OCX File exists
||     {F281A59C-7B65-11D3-8617-0010830243BD} "Controllo AcPreview"
file://C:\Programmi\AutoCAD LT 2000i Ita\AcPreview.ocx
"Autodesk" C:\WINDOWS\DOWNLO~1\ACPREV~1.OCX File exists
|||||| {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} "Java Plug-in 1.6.0_02"
http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
"Sun Microsystems, Inc." C:\Programmi\Java\jre1.6.0_02\bin\npjpi160_02.dll File exists
||||   {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} "Java Plug-in 1.6.0_22"
http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
"Sun Microsystems, Inc." C:\Programmi\Java\jre1.6.0_22\bin\npjpi160_22.dll File exists
||||   {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_24"
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
"Sun Microsystems, Inc." C:\Programmi\Java\jre6\bin\npjpi160_24.dll File exists
||||   {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} "Java Plug-in 1.6.0_24"
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
"Sun Microsystems, Inc." C:\Programmi\Java\jre6\bin\npjpi160_24.dll File exists
||||   {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_24"
http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
"Sun Microsystems, Inc." C:\Programmi\Java\jre6\bin\npjpi160_24.dll File exists
||     {1F831FA9-42FC-11D4-95A6-0080AD30DCE1} "NOXLATE"
file://C:\Programmi\AutoCAD LT 2000i Ita\InstFred.ocx
"Autodesk, Inc." C:\WINDOWS\DOWNLO~1\InstFred.ocx File exists
|||||| {D27CDB6E-AE6D-11CF-96B8-444553540000} "Shockwave Flash Object"
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
"Adobe Systems, Inc." C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx File exists
       {31435657-9980-0010-8000-00AA00389B71} "{31435657-9980-0010-8000-00AA00389B71}"
http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
File not found | COM-object registry key not found
       {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} "{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}"
http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
File not found | COM-object registry key not found
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
||||   {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} "ClsidExtension" "Microsoft Corporation" C:\PROGRA~1\MICROS~3\INetRepl.dll File exists
||||   {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} "Create Mobile Favorite" "Microsoft Corporation" C:\PROGRA~1\MICROS~3\INetRepl.dll File exists
||||   {5F7B1267-94A9-47F5-98DB-E99415F33AEC} "Objavi ovo u blogu" "Microsoft Corporation" C:\Programmi\Windows Live\Writer\WriterBrowserExtension.dll File exists
||     {FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" "Microsoft Corporation" C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL File exists
||||   {48E73304-E1D6-4330-914C-F5F514E3486C} "Send to OneNote" "Microsoft Corporation" C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
       {18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" "Adobe Systems Incorporated" C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll File exists
|||||| {72853161-30C5-4D22-B7F9-0BBC1D38A37E} "Groove GFS Browser Helper" "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll File exists
||||   {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" "Sun Microsystems, Inc." C:\Programmi\Java\jre6\bin\jp2ssv.dll File exists
||||   {E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" "Sun Microsystems, Inc." C:\Programmi\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll File exists
||||   {3049C3E9-B461-4BC5-8870-4C09146192CA} "RealPlayer Download and Record Plugin for Internet Explorer" "RealPlayer" C:\Documents and Settings\All Users\Dati applicazioni\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll File exists
|||||| {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live pomagač za prijavljivanje" "Microsoft Corporation" C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll File exists
Logon
%AllUsersProfile%\Menu Avvio\Programmi\Esecuzione automatica
|||||| "desktop.ini" C:\Documents and Settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\desktop.ini File exists
||||   "Logitech SetPoint.lnk" "Logitech, Inc." C:\Programmi\Logitech\SetPoint\SetPoint.exe Shortcut exists | File exists
%UserProfile%\Menu Avvio\Programmi\Esecuzione automatica
|||||| "desktop.ini" C:\Documents and Settings\Giorgio\Menu Avvio\Programmi\Esecuzione automatica\desktop.ini File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
       "avgnt" "Avira Operations GmbH & Co. KG" "C:\Programmi\Avira\AntiVir Desktop\avgnt.exe" /min File exists
       "iTunesHelper" "Apple Inc." "C:\Programmi\iTunes\iTunesHelper.exe" File exists
||||   "NVHotkey" "NVIDIA Corporation" rundll32.exe nvHotkey.dll,Start File exists
||||   "nwiz" "NVIDIA Corporation" nwiz.exe /installquiet File exists
||||   "SigmatelSysTrayApp" "SigmaTel, Inc." stsystra.exe File exists
Print Monitors
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors
|||||| "CutePDF Writer Monitor" C:\WINDOWS\system32\cpwmon2k.dll File found, but it contains no detailed information
|||||| "EPSON Stylus Photo R285 Series 32MonitorBE" "SEIKO EPSON CORPORATION" C:\WINDOWS\system32\E_FLBCKE.DLL File exists
|||||| "EPSON Stylus Photo RX420 Series 2KMonitor5E" "SEIKO EPSON CORPORATION" C:\WINDOWS\system32\E_FLM9CE.DLL File exists
       "KM Language Monitor" "KYOCERA MITA Corporation" C:\WINDOWS\system32\KMPJLMN.DLL File exists
|||||| "Microsoft Document Imaging Writer Monitor" "Microsoft Corporation" C:\WINDOWS\system32\mdimon.dll File exists
|||||| "Send To Microsoft OneNote Monitor" "Microsoft Corporation" C:\WINDOWS\system32\msonpmon.dll File exists
Services
HKLM\SYSTEM\CurrentControlSet\Services
|||||| " Servizio Bonjour" (Bonjour Service) "Apple Inc." C:\Programmi\Bonjour\mDNSResponder.exe File exists
|||||| ".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe File exists
       "Apple Mobile Device" (Apple Mobile Device) "Apple Inc." C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe File exists
       "Avira AntiVir Scheduler" (AntiVirScheduler) "Avira Operations GmbH & Co. KG" C:\Programmi\Avira\AntiVir Desktop\sched.exe File exists
       "Avira Real-Time Protection" (AntiVirService) "Avira Operations GmbH & Co. KG" C:\Programmi\Avira\AntiVir Desktop\avguard.exe File exists
       "Avira Scheduler" (AntiVirSchedulerService) "Avira Operations GmbH & Co. KG" C:\Programmi\Avira\AntiVir Desktop\sched.exe File exists
|||||| "getPlus(R) Helper" (getPlus(R) Helper) "NOS Microsystems Ltd." C:\Programmi\NOS\bin\getPlus_HelperSvc.exe File exists
|||||| "Intel(R) PROSet/Wireless Event Log" (EvtEng) "Intel Corporation" C:\Programmi\Intel\Wireless\Bin\EvtEng.exe File exists
|||||| "Intel(R) PROSet/Wireless Registry Service" (RegSrvc) "Intel Corporation" C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe File exists
|||||| "Intel(R) PROSet/Wireless Service" (S24EventMonitor) "Intel Corporation " C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe File exists
|||||| "Intel(R) PROSet/Wireless SSO Service" (WLANKEEPER) "Intel(R) Corporation" C:\Programmi\Intel\Wireless\Bin\WLKeeper.exe File exists
|||||| "Java Quick Starter" (JavaQuickStarterService) "Sun Microsystems, Inc." C:\Programmi\Java\jre6\bin\jqs.exe File exists
|||||| "Logitech Bluetooth Service" (LBTServ) "Logitech, Inc." C:\Programmi\File comuni\Logitech\Bluetooth\LBTServ.exe File exists
|||||| "Microsoft .NET Framework NGEN v4.0.30319_X86" (clr_optimization_v4.0.30319_32) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe File exists
|||||| "Microsoft Office Groove Audit Service" (Microsoft Office Groove Audit Service) "Microsoft Corporation" C:\Programmi\Microsoft Office\Office12\GrooveAuditService.exe File exists
|||||| "NICCONFIGSVC" (NICCONFIGSVC) "Dell Inc." C:\Programmi\Dell\QuickSet\NICCONFIGSVC.exe File exists
|||||| "NMIndexingService" (NMIndexingService) "Nero AG" C:\Programmi\File comuni\Nero\Lib\NMIndexingService.exe File exists
|||||| "Office Source Engine" (ose) "Microsoft Corporation" C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE File exists
|||||| "PLFlash DeviceIoControl Service" (PLFlash DeviceIoControl Service) "Prolific Technology Inc." C:\WINDOWS\system32\IoctlSvc.exe File exists
||     "RDXmon 1.12" (RDXmon) C:\Programmi\RD1000\Service\RDXmon.exe File found, but it contains no detailed information
       "Servizio iPod" (iPod Service) "Apple Inc." C:\Programmi\iPod\bin\iPodService.exe File exists
|||||| "Servizio stato di ASP.NET" (aspnet_state) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe File exists
|||||| "SIMATIC IEPG Help Service" (s7oiehsx) "SIEMENS AG" C:\program files\common files\Siemens\S7IEPG\s7oiehsx.exe File exists
|||||| "TuneUp Drive Defrag Service" (TuneUp.Defrag) "TuneUp Software GmbH" C:\WINDOWS\System32\TuneUpDefragService.exe File exists
|||||| "TuneUp Theme Extension" (UxTuneUp) "TuneUp Software GmbH" C:\WINDOWS\System32\uxtuneup.dll File exists
|||||| "VMware DHCP Service" (VMnetDHCP) "VMware, Inc." C:\WINDOWS\system32\vmnetdhcp.exe File exists
|||||| "VMware NAT Service" (VMware NAT Service) "VMware, Inc." C:\WINDOWS\system32\vmnat.exe File exists
|||||| "Windows Defender" (WinDefend) "Microsoft Corporation" c:\Programmi\Windows Defender\MsMpEng.exe File exists
|||||| "Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe File exists
|||||| "Windows Presentation Foundation Font Cache 4.0.0.0" (WPFFontCache_v0400) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe File exists
Winlogon
HKCU\Control Panel\IOProcs
       "MVB" mvfs32.dll File not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
|||||| "LBTWlgn" "Logitech, Inc." c:\programmi\file comuni\logitech\bluetooth\LBTWlgn.dll File exists
||||   "WgaLogon" "Microsoft Corporation" C:\WINDOWS\system32\WgaLogon.dll File exists
Winsock Providers
HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries
|||||| "mdnsNSP" "Apple Inc." C:\Programmi\Bonjour\mdnsNSP.dll File exists

If You have questions or want to get some help, You can visit http://forum.online-solutions.ru