Torna indietro   Hardware Upgrade Forum > Networking e sicurezza > Antivirus e Sicurezza > Aiuto sono infetto! Cosa faccio?

Recensione HUAWEI MatePad 11.5''S, con il display PaperMatte si scrive come sulla carta
Recensione HUAWEI MatePad 11.5''S, con il display PaperMatte si scrive come sulla carta
HUAWEI MatePad 11,5''S è il nuovo tablet tuttofare di Huawei. Un device che adotta un display PaperMatte offrendo un'esperienza di scrittura e lettura simile alla carta, e vantando al contempo funzionalità pensate per la produttività come due accessori dedicati fra pennino e tastiera magnetica. Lo abbiamo provato e vi raccontiamo tutto quello che c'è da sapere nella nostra recensione completa.
Recensione HONOR 200 Pro: potrete fare ritratti da fotografo professionista! 
Recensione HONOR 200 Pro: potrete fare ritratti da fotografo professionista! 
HONOR sorprende il mercato dei medio gamma e lo fa con il nuovo HONOR 200 Pro, uno smartphone che sa fotografare ritratti professionali grazie ad un lavoro di Intelligenza Artificiale e di ottimizzazione realizzato in collaborazione con lo studio Harcourt di Parigi. Lo abbiamo messo in prova e questi sono i risultati.
I robot tagliaerba che nascono in Italia: visita nella sede (e nella fabbrica) di Stiga
I robot tagliaerba che nascono in Italia: visita nella sede (e nella fabbrica) di Stiga
Abbiamo avuto l'opportunità di visitare la sede di Stiga, azienda che a Castelfranco Veneto ha la sua sede operativa e produttiva, dove nascono tanti prodotti per la cura del verde, tra cui i nuovi robot autonomi
Tutti gli articoli Tutte le news

Vai al Forum
Rispondi
 
Strumenti
Old 13-02-2008, 16:52   #21
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Ok, comincio con ESET ADS Revealer. Posto i risultati appena finisce di scansionare...

Intanto questo è il log di Prevxcsi:
Codice:
Prevx CSI Log - Version v1.5.103.197

Some non-malicious entries have been removed automatically
C:\windows\System32\smss.exe	InMem: 1	Det [G]	MD5: 036FC522AC5784EBF03C1F85E93415E7	PX5: EAEF384300B86E2BC60900AD18ED0300B6B454BF
C:\windows\system32\ntdll.dll	InMem: 1	Det [G]	MD5: 75A0AECC55A3F0B9E2D54119FA4AAB6D	PX5: 98EF83350066C70122B20B444BEBEA00D217A1B2
C:\windows\system32\csrss.exe	InMem: 1	Det [G]	MD5: 2B511A5438308A1AC8D48482279810E6	PX5: 457E08CD00DE83E3183600665DD0AE001F0FA82A
C:\windows\system32\CSRSRV.dll	InMem: 1	Det [G]	MD5: 4BA2DBAC6357B3B9D89C53823AFE15C5	PX5: 672F934100D50DA280D100335AB03A0006C3D206
C:\windows\system32\basesrv.dll	InMem: 1	Det [G]	MD5: 7B37B598B55BF80415C15BFFE7A992A2	PX5: CDE7154D0060E2E4CE1D00F8B4D58500AEAC4112
C:\windows\system32\winsrv.dll	InMem: 1	Det [G]	MD5: A372E3E086A11A01CFCA3B8DCCBFCB50	PX5: EA125ACC0017E3527A0804FB6E773E00D0D2275E
C:\windows\system32\GDI32.dll	InMem: 1	Det [G]	MD5: 82D7DE4DF9B7FF8D8B9AEFC48F2F3BE5	PX5: E0AE989400FE60C04EE004B2BF0AC40001B8B70F
C:\windows\system32\KERNEL32.dll	InMem: 1	Det [G]	MD5: EB1428078E1D10FDEC060857AA526A9F	PX5: 0AD652AA00FC1D0CB2930F5593CD84005E517D9A
C:\windows\system32\USER32.dll	InMem: 1	Det [G]	MD5: 9DAA2190A18739B657B58F794ACF2E47	PX5: D423C40D007DC87CD48F089CF302B800036F5CB9
C:\windows\system32\sxs.dll	InMem: 1	Det [G]	MD5: 1F0124663855AF228233F43021400F72	PX5: F6867B260073AE3BE8420A9D4CB88200ED96EA53
C:\windows\system32\ADVAPI32.dll	InMem: 1	Det [G]	MD5: 09BB0A2C325F7085E24FAE6134DE2D16	PX5: DA31EA390036C3916C5C0A395DA4E3007CA4EABA
C:\windows\system32\RPCRT4.dll	InMem: 1	Det [G]	MD5: 22413A53995E0A23915A6433BFB90563	PX5: D30BFA4500E11CC3EA0408EA8337540073B46F29
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncacn_np [rpcrt4.dll]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncacn_ip_tcp [rpcrt4.dll]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncadg_ip_udp [rpcrt4.dll]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\ClientProtocols - ncacn_http [rpcrt4.dll]
C:\windows\system32\Secur32.dll	InMem: 1	Det [G]	MD5: 8285B8B146B42FF18ED08C558435011E	PX5: 2226211D005B7868DA45009E23898E00149E78C6
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 9 [secur32.dll]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 10 [secur32.dll]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 16 [secur32.dll]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 18 [secur32.dll]
C:\windows\system32\winlogon.exe	InMem: 1	Det [G]	MD5: 4166454E2BCFCC20D1B8A5AC9FEAB243	PX5: D0D54E6C00E89575B4CC07CFE43BE400C1F31A26
C:\windows\system32\AUTHZ.dll	InMem: 1	Det [G]	MD5: AC3257B2E441866289D7EB8377490765	PX5: 869C1EE500523D0FDE60003D7F38BD0038C5A93D
C:\windows\system32\msvcrt.dll	InMem: 1	Det [G]	MD5: 9E6CB81BE111B9935F6A97C367CABD4E	PX5: EAD3CF360087D2AD3C120509FE506F008FB88290
C:\windows\system32\CRYPT32.dll	InMem: 1	Det [G]	MD5: 5588D8AFD51D060F82315C50D7590323	PX5: DD3ED9060033BBFB2E83098709F8D4001E524429
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain - DllName [crypt32.dll]
C:\windows\system32\MSASN1.dll	InMem: 1	Det [G]	MD5: 0A75AC7D90BD8E6BC942DBA004579D5B	PX5: 09F301D4001F77D2E0150027945354004927323C
C:\windows\system32\NDdeApi.dll	InMem: 1	Det [G]	MD5: 11BE44F0C0978927AED7D69B75C24937	PX5: 8E19EB1100E774A0488300C192BED30080B1D3E4
C:\windows\system32\PROFMAP.dll	InMem: 1	Det [G]	MD5: 0328058695D324D26528077F5B136636	PX5: 90AEB4A600D0EF596C4F00D134ACAA00BDFD0752
C:\windows\system32\NETAPI32.dll	InMem: 1	Det [G]	MD5: 9003E9374EA7C1A81DB51CEE64C427F6	PX5: 0919F94300F3C16412B605F0CC86050045AA2AE7
C:\windows\system32\USERENV.dll	InMem: 1	Det [G]	MD5: AC31CA2B251FE8057528FA937335B164	PX5: 02BF46CD00DC848D207F0BA7D391AB00DCDEB32E
C:\windows\system32\PSAPI.DLL	InMem: 1	Det [G]	MD5: 2BAF81B8504D9C1600C51A498E5453B3	PX5: 5DB1DF3A00AE978A5A1800B9B5A8C30041FF3076
C:\windows\system32\REGAPI.dll	InMem: 1	Det [G]	MD5: BB756F78728C2D953574E8652B7E86A8	PX5: BDCF1CB600ACB6D2C2EE007361942C0007606048
C:\windows\system32\SETUPAPI.dll	InMem: 1	Det [G]	MD5: 6F83A7ED3217D0E612445612D1991767	PX5: 085443D800EAF0FA42960F6622B8E300CB4CB91D
C:\windows\system32\VERSION.dll	InMem: 1	Det [G]	MD5: 9B5A59851D9A237C86210E07E2195A12	PX5: 17E09890009DDCC84AAD00E153CBBA0071FD3882
C:\windows\system32\WINSTA.dll	InMem: 1	Det [G]	MD5: DE24EBECF7833A4DE925D0832956F21A	PX5: 1789B2A5005E39C8D2660086022E8500C3B9450D
C:\windows\system32\WINTRUST.dll	InMem: 1	Det [G]	MD5: 48BD2908FE77ABB5EF42DD4A108600B5	PX5: 0D34C3E0002C3B32B2670226273B8500327F7603
C:\windows\system32\IMAGEHLP.dll	InMem: 1	Det [G]	MD5: F309C34E0F66DAC995053E91EFFC9002	PX5: 92D4CA5F00EA8A5C340F02F2506EE800E1319CFF
C:\windows\system32\WS2_32.dll	InMem: 1	Det [G]	MD5: 12EAD983C875ED9BCC8B90E3F77F2E4A	PX5: 42D0077300700B1344D7019D11CF0E00A225E294
C:\windows\system32\WS2HELP.dll	InMem: 1	Det [G]	MD5: 0C1F495C1761C126BC820F4DE4C8B967	PX5: 097C6291004A18B14EEC00B4A6264D00B84611B9
C:\windows\system32\MSGINA.dll	InMem: 1	Det [G]	MD5: 4BA6464CF0D5FE0CD0B43AE4B3B32D26	PX5: 0590994000D0A8B53A390FFB32187D003143117B
C:\windows\system32\SHELL32.dll	InMem: 1	Det [G]	PX5: 215DA5830048FB3674DB81C1D671C100E9F4366E
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - VmApplet [rundll32 shell32,Control_RunDLL "sysdm.cpl"]
C:\windows\system32\SHLWAPI.dll	InMem: 1	Det [GP]	MD5: D81B5FD63D49B4748A0309CF63FEBD72	PX5: 7847F983005ABB1E3E0D0779BB584600F56F7404
C:\windows\system32\COMCTL32.dll	InMem: 1	Det [G]	MD5: EFA21A3FE23BBCFDB6F61A3AF723E05A	PX5: 58711F2E00E7D4E26C3A0946506D1B008DF24393
C:\windows\system32\ODBC32.dll	InMem: 1	Det [G]	MD5: 485B2381CF003DAD79F1371FBEAACD5A	PX5: A52E0F9B00E1697FD015036BACB9C10078B33C67
C:\windows\system32\comdlg32.dll	InMem: 1	Det [G]	MD5: C99FD691ACAFAEEEFD03F1E4E6D3DD60	PX5: D1079ADC002DFDB3487D042258AF1F00F0FB72E4
C:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll	InMem: 1	Det [G]	MD5: 837B282813808C17E9C94E56300AA29E	PX5: 6C2DA8F700C891F6167D107D5B6FFD004BDE3FD7
C:\windows\system32\odbcint.dll	InMem: 1	Det [G]	MD5: EA88A16DA0D06069C0C06AB5A4669E26	PX5: 17030F830012904980B601AEBBE29A00B94ABB0D
C:\windows\system32\SHSVCS.dll	InMem: 1	Det [G]	MD5: FAD73705BED0910E910DE852B0F8AEBC	PX5: 593617FD0028BAC30E8502553039DB005AE5DAA4
C:\windows\system32\sfc.dll	InMem: 1	Det [G]	MD5: E6F026DBC75B6EED7331EBF581AFD4D8	PX5: 16BA5AAF006AA18914FD002B882F7D0027109E10
C:\windows\system32\sfc_os.dll	InMem: 1	Det [G]	MD5: 8FBF27AB56DE71E2BDD5A2CCB7FB9023	PX5: 53B4176200566C3D2844029CE35AC3003149753E
C:\windows\system32\ole32.dll	InMem: 1	Det [G]	MD5: D5622B6D4CD43F2223718820C0A178AD	PX5: 85434D2700A77E169AF713D8C3B0DC00CF7A5885
C:\windows\system32\Apphelp.dll	InMem: 1	Det [G]	MD5: 086DA77C3C612759D4EF437F67532E2D	PX5: 2E534C590076A85BF05D01EC9E4FFB0089A4554F
C:\windows\system32\WINSCARD.DLL	InMem: 1	Det [G]	MD5: 840535254EDD74E79D059229C5A2F800	PX5: 49E7BE4C00EA6409841F01CF112B5500E75D0DD5
C:\windows\system32\WTSAPI32.dll	InMem: 1	Det [G]	MD5: E2703BB7BEAC36269482A8D32400AD38	PX5: 1CDB8610004CDD7F48CB007245065C0097B2DD61
C:\windows\system32\uxtheme.dll	InMem: 1	Det [G]	MD5: 07CBAFD1A2D4EA41E8F691CA31F010A9	PX5: D88EDDB7006796175ABD030829F64C004652CB38
C:\windows\system32\WINMM.dll	InMem: 1	Det [G]	MD5: 1DC87F8C450E295FB8CC5039D27292E5	PX5: 8B514EB5005BE141BAA3022C5AD8F400CAAEB534
C:\windows\system32\Ati2evxx.dll	InMem: 1	Det [G]	MD5: 445AC70EB43FBEEF067F50794C291A19	PX5: 76CC25D900ABEA41E0430145BA6CFD00A4C0FD90
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent - DLLName [Ati2evxx.dll]
C:\windows\system32\OLEAUT32.dll	InMem: 1	Det [G]	MD5: B8D7F1638A52EA67FE5FEB22D3B725D1	PX5: D947C0320023C1EC686E08689A597900A28F94EE
C:\windows\system32\rsaenh.dll	InMem: 1	Det [G]	MD5: 26ACBD865F8CFF730F1791C4D0854352	PX5: 19B797A900BB112F5426027FDD39EC001D5760F1
C:\windows\system32\cscdll.dll	InMem: 1	Det [G]	MD5: 38C69B2BC3182A85F0B323C9D1EB7E26	PX5: 36CC0D8B0009157E909D017F19231E0041E0A92E
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll - DLLName [cscdll.dll]
C:\windows\system32\WlNotify.dll	InMem: 1	Det [G]	MD5: 72E4CAD810A967449CAAB723E99C74B1	PX5: 3C08F14B008AD1456C990109A197100002605D8A
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp - DLLName [wlnotify.dll]
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule - DllName [wlnotify.dll]
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn - DLLName [WlNotify.dll]
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv - DllName [wlnotify.dll]
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon - DLLName [wlnotify.dll]
C:\windows\system32\WINSPOOL.DRV	InMem: 1	Det [G]	MD5: A357128EEA84698DCF3ED33E521292CC	PX5: A35B6D1900D11F1D3E5102B97EFC0500E974203D
C:\windows\system32\MPR.dll	InMem: 1	Det [G]	MD5: 7013FC08075EEF2D881D55F898F2D402	PX5: 4E92FBCC002BB291EAE5000F10C15F00A1E7AD21
C:\windows\system32\WgaLogon.dll	InMem: 1	Det [G]	MD5: 82B156FE5E66C65BD282C336226A3E65	PX5: 3E39799B30107989C30C04732240FA00372D374F
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon - DllName [WgaLogon.dll]
C:\windows\system32\NTMARTA.DLL	InMem: 1	Det [G]	MD5: 3C1B1065C5BFCA5190E7FA7EFCB11B59	PX5: 1D452FC300F103CCD4AF019C0B4A1000D0C05759
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa\AccessProviders\Windows NT Access Provider - ProviderPath [%SystemRoot%\system32\ntmarta.dll]
C:\windows\system32\WLDAP32.dll	InMem: 1	Det [G]	MD5: A340DEC6229F08D8B9644F2BE00100FC	PX5: 9E81915C002CE532A4010226E6EC3100C992DBA0
C:\windows\system32\SAMLIB.dll	InMem: 1	Det [G]	MD5: F16C9CDB4A47969B1CF48E0620F6E217	PX5: 6D3509C200E203F6FAF00078D7EA35003D8429D0
C:\windows\system32\CLBCATQ.DLL	InMem: 1	Det [G]	MD5: 092813B8F60F1E12E8AF5DB98037B770	PX5: DDDD061C00DDD1C99CCC07876975D5003DF223DA
C:\windows\system32\COMRes.dll	InMem: 1	Det [G]	MD5: B979BBBA74F4F5DB69C3A5DFDC52828C	PX5: D3FD3AB2006F991AE8A30C7CE8FD780095D6A640
C:\windows\system32\msv1_0.dll	InMem: 1	Det [G]	MD5: AFFA7A2ECB1476F29641C90524F63E2E	PX5: 7DDBB66E00F27A20FA0D01B81C65BB005752F1B9
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Authentication Packages [msv1_0]
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
C:\windows\system32\iphlpapi.dll	InMem: 1	Det [G]	MD5: 6150872A38D85C8CDDB1B2FBFF1BB07F	PX5: 352A2D920078A26F766401FF71F80300DA785AEF
C:\windows\system32\cscui.dll	InMem: 1	Det [G]	MD5: 53E5AB61DDCC0F057182BC1B5513B744	PX5: 8E7CD5F4006500C1188E05B6248B9200BAF8CA73
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{C631DF4C-088F-4156-B058-4375F0853CD8} - DllName [%SystemRoot%\System32\cscui.dll]
C:\windows\system32\xpsp2res.dll	InMem: 1	Det [G]	MD5: 0E8E6901C637095EC3B483475E39731E	PX5: DD9EAB9A00D5F12036192D6118710400ADB6810C
C:\windows\system32\wdmaud.drv	InMem: 1	Det [G]	MD5: 6DEB9059000C34770192B78D85F6D387	PX5: E19B13CB00CFB9ED5C250033B033BB00A27F216F
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - wave [wdmaud.drv]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - midi [wdmaud.drv]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - mixer [wdmaud.drv]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - aux [wdmaud.drv]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Userinstallable.drivers - wave [wdmaud.drv]
C:\windows\system32\msacm32.drv	InMem: 1	Det [G]	MD5: 05E84EEAD6B27C958621A4E6D33859D1	PX5: F8EB7CDA00A2596F522700876A3BC9005F29A42B
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - wavemapper [msacm32.drv]
C:\windows\system32\MSACM32.dll	InMem: 1	Det [G]	MD5: B088085D01B3E80E2BE0E9CD1838BA9B	PX5: CD32AC5300D4DB3A183401A597817D009B477A6B
C:\windows\system32\midimap.dll	InMem: 1	Det [G]	MD5: EAAA11BE5C162266E698F7658BD8A1DA	PX5: 8C299C3E002D88084A0000F598A51000C8C9681D
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - midimapper [midimap.dll]
C:\windows\system32\services.exe	InMem: 1	Det [G]	MD5: E77F6FA2A15390F1727F4C1C55B69DA6	PX5: 55CFB3920083E585A8B8011373392400747D1070
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Eventlog - ImagePath [C:\windows\system32\services.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PlugPlay - ImagePath [C:\windows\system32\services.exe]
C:\windows\system32\SCESRV.dll	InMem: 1	Det [G]	MD5: E84A4BFD34F64AF3A9B2E4FF45C02DCA	PX5: 42090831009A7DEDFC25041A41C0A6009F850DB8
C:\windows\system32\umpnpmgr.dll	InMem: 1	Det [G]	MD5: D717635E8C6D91644AEDA4B37A49762A	PX5: A0722C41001DFC8BE8A7011B43DD8300C52FA704
C:\windows\system32\NCObjAPI.DLL	InMem: 1	Det [G]	MD5: 1FC06B22BA62AB448613461D06C328C9	PX5: 7EA0BF3D001A18F58E38007796CD8000CD7F3FCC
C:\windows\system32\MSVCP60.dll	InMem: 1	Det [G]	MD5: B30C42DFA52A70037AB31A85057A5657	PX5: 2D7DD02900BE71EC5085060A796CD8005BF97344
C:\windows\system32\ShimEng.dll	InMem: 1	Det [G]	MD5: DC7D49E0DEC335B8E14C734AB1BADE66	PX5: 279F162200D45347000001BBAACC850063724C8D
C:\windows\AppPatch\AcAdProc.dll	InMem: 1	Det [G]	MD5: 744EA281298317E91C3BEA70BF3843D4	PX5: 4481FDAC006BDDB69ABC00D7D79D140035AF8893
C:\windows\system32\eventlog.dll	InMem: 1	Det [G]	MD5: D1CAA255F33C06C8302769A86FFB905E	PX5: D2B7D57A001E9CD9DA5600E2BE4F3C00079E4466
C:\windows\system32\lsass.exe	InMem: 1	Det [G]	MD5: 0815E8DA286775FA432C7C9EE5E10BA1	PX5: CC1BA69F00AF6D2D3445003B3C2E0700B638080D
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Netlogon - ImagePath [C:\windows\system32\lsass.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NtLmSsp - ImagePath [C:\windows\system32\lsass.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PolicyAgent - ImagePath [C:\windows\system32\lsass.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ProtectedStorage - ImagePath [C:\windows\system32\lsass.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SamSs - ImagePath [C:\windows\system32\lsass.exe]
C:\windows\system32\LSASRV.dll	InMem: 1	Det [G]	MD5: CCA9A75FC163ED610CF3945069BF4A3A	PX5: 4A2D1F9A00EE2E841A4F0B1A2FFB0900A3181BF3
C:\windows\system32\NTDSAPI.dll	InMem: 1	Det [G]	MD5: 6AE3588C5FEA68CDFCD743AF5FC95398	PX5: B049763B0042836806A701AA022FCD00F10A90B1
C:\windows\system32\DNSAPI.dll	InMem: 1	Det [G]	MD5: B4936FB637C2E2EC03F2589CBCD077EF	PX5: 74EB5FA400ECF6FA447C02F4107A1600E5E5C273
C:\windows\system32\SAMSRV.dll	InMem: 1	Det [G]	MD5: 12B717E63F23BDF3FD43B295542154D9	PX5: E92EC68300CE21C68E4E06BCC0EDF6004268C49A
C:\windows\system32\cryptdll.dll	InMem: 1	Det [G]	MD5: 4AC54687B901091378C512A6C56F6214	PX5: 81B30DAB0078862F82C6000202049600DB968CD1
C:\windows\AppPatch\AcGenral.DLL	InMem: 1	Det [G]	MD5: 26CAAEE19627A49509A5FAAF49E418A0	PX5: 5F6310EE002D3DBC446C1C5A826CF10048881669
C:\windows\system32\msprivs.dll	InMem: 1	Det [G]	MD5: D7D64FF974B96816E1AE2C5B86DE35BA	PX5: 0CA48DC3002C50B3BC750065E2B27800000C62EB
C:\windows\system32\kerberos.dll	InMem: 1	Det [G]	MD5: A3103D196CE0DB4C8B5C6A365628E9EF	PX5: 6F259D99008DE085843504BA6E05F400BD1351EF
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
C:\windows\system32\netlogon.dll	InMem: 1	Det [G]	MD5: 926BB51BB6DE79DEDB93E9C2B0811CCF	PX5: 7826BE4E00B0693C362206A7BBB246000E968C98
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 68 [netlogon.dll]
C:\windows\system32\w32time.dll	InMem: 1	Det [G]	MD5: 8B97D00E5C6A593EBB605CE4B8A5CAA5	PX5: B0DB78E90001F969B24A022F16FE9C007D6DCCBC
C:\windows\system32\schannel.dll	InMem: 1	Det [G]	MD5: E9836D1ACE460B4B96FBCB03861D0323	PX5: 978AEDC000D16F92363B021213F745004B5CD31C
	REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
	REGRPC - \REGISTRY\Machine\Software\Microsoft\Rpc\SecurityService - 14 [schannel.dll]
C:\windows\system32\wdigest.dll	InMem: 1	Det [G]	MD5: BC6964976170DC87CAF151A144BE586C	PX5: F311FBD900986B6DC09400C9FE9A9C00CD8F608E
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Security Packages [kerberos]
C:\windows\system32\scecli.dll	InMem: 1	Det [G]	MD5: 1446EB71ADF0F54980CDD7E5A812E102	PX5: C91F3DA800B1BEBADA0C02480448D00054984981
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} - DllName [scecli.dll]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A} - DllName [scecli.dll]
	REGLSA - \REGISTRY\Machine\System\CurrentControlSet\Control\Lsa - Notification Packages [scecli]
C:\windows\system32\ipsecsvc.dll	InMem: 1	Det [G]	MD5: 24E00A2782F1FBDDA55173F6A92793B4	PX5: B05D914900808F8FCED102E7A46D080020A33905
C:\windows\system32\oakley.DLL	InMem: 1	Det [G]	MD5: F450886F41773A5FAEB25E87B758D6A8	PX5: A4E8D0C400046CE116C204B93C6D3F0003672778
C:\windows\system32\WINIPSEC.DLL	InMem: 1	Det [G]	MD5: 30E14D74BCD1BEEA96A279F78A723346	PX5: 5E3F044E00E5E84280510004471F8A00BD7E5854
C:\windows\system32\pstorsvc.dll	InMem: 1	Det [G]	MD5: 24B2F25A42BA3CAD1D238F2ADAE63F7C	PX5: DCF79E3E001DA16F86F70051A83A8600579ADC98
C:\windows\system32\psbase.dll	InMem: 1	Det [G]	MD5: 7FE963BD4BDE86B5EAF5C07C6D0118C3	PX5: E242805400420CE08090017E79023900E657FC90
C:\windows\system32\mswsock.dll	InMem: 1	Det [G]	MD5: 337CB52AF1F7CF6C0F57EC8BD14DC6D1	PX5: 644C52BE00A05754C6240337B7759700C1FF12E3
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 - PackedCatalogItem [%SystemRoot%\system32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001 - LibraryPath [%SystemRoot%\System32\mswsock.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003 - LibraryPath [%SystemRoot%\System32\mswsock.dll]
C:\windows\system32\hnetcfg.dll	InMem: 1	Det [G]	MD5: 250D4F4E1E27543C121378268FE07208	PX5: 2CFD58C600B6F9414A810565679BD6001F42D5DE
C:\windows\System32\wshtcpip.dll	InMem: 1	Det [G]	MD5: 08B3A60A4DD7FAE800B552F8F8D5DEB0	PX5: 522AC66D001B6D5A4E8E00D8A0AEF000528059BA
C:\windows\system32\dssenh.dll	InMem: 1	Det [G]	MD5: CACD2C63A79268D131EA37E85524CC44	PX5: 31E843BE00E2A81C18FA0265E10B6500232880A4
C:\windows\system32\Ati2evxx.exe	InMem: 1	Det [G]	MD5: E02ABC15C3428809F7BCB82571633575	PX5: 71739AD40021715E90350751D62B7F00325641C1
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Ati HotKey Poller - ImagePath [C:\windows\system32\Ati2evxx.exe]
C:\windows\system32\powrprof.dll	InMem: 1	Det [G]	MD5: 41FF9D663219A1DD0397FE2C5B09436C	PX5: 31AB7E9C00B2127E4485007208C03300950D28C1
C:\windows\system32\cfgMgr32.dll	InMem: 1	Det [G]	MD5: 15797C5AA673590064348A025A5F17D9	PX5: 74C69D7C00EDC85142F6003C4DC9A1006D7B8195
C:\windows\system32\Ati2edxx.dll	InMem: 1	Det [G]	MD5: 65F0FBE3C89DB10D9EE86733B78401D1	PX5: BB94CE8E004D14E8AA2B0055300C55002D86A2BF
C:\windows\system32\atipdlxx.dll	InMem: 1	Det [G]	MD5: 5E53622500CEF2B616ACB766E1AD33C6	PX5: BD5C3EE700EB3904407602184A669B00A7A90B6D
C:\windows\system32\svchost.exe	InMem: 1	Det [G]	MD5: 73955B04F209D8A1C633867841267A96	PX5: 41467A9700616549387D0095555BE300B7CBF228
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Alerter - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\AppMgmt - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\AudioSrv - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\BITS - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Browser - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\CryptSvc - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\DcomLaunch - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Dhcp - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\dmserver - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Dnscache - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ERSvc - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\EventSystem - ImagePath [C:\WINDOWS\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\FastUserSwitchingCompatibility - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\helpsvc - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\HidServ - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\HTTPFilter - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\lanmanserver - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\lanmanworkstation - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\LmHosts - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Messenger - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Netman - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Nla - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NtmsSvc - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RasAuto - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RasMan - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RemoteAccess - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RemoteRegistry - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RpcSs - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Schedule - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\seclogon - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SENS - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SharedAccess - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ShellHWDetection - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\srservice - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SSDPSRV - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\stisvc - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\TapiSrv - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\TermService - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Themes - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\TrkWks - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\upnphost - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\W32Time - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WebClient - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\winmgmt - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WmdmPmSN - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Wmi - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\wscsvc - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\wuauserv - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WudfSvc - ImagePath [C:\windows\system32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WZCSVC - ImagePath [C:\windows\System32\svchost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\xmlprov - ImagePath [C:\windows\System32\svchost.exe]
c:\windows\system32\rpcss.dll	InMem: 1	Det [G]	MD5: CC41F9D29EDD55037A4C26E70C175528	PX5: 27F0519E00F08DE512070643B0627F006598C78A
c:\windows\system32\termsrv.dll	InMem: 1	Det [G]	MD5: C06CD1890279603E15020757E02DE56B	PX5: 15A4D5880058E23888C304BFF814830042F0D520
c:\windows\system32\ICAAPI.dll	InMem: 1	Det [G]	MD5: 66DA850192B87548374FE13F38A2A265	PX5: BB3E4FC6005CCAE92CC10044E2AB07008B832EBD
c:\windows\system32\mstlsapi.dll	InMem: 1	Det [G]	MD5: 9E54D8528F9B4324ED20CFCDF3BE6A76	PX5: F3CF001500470019C4F901369ADAFD00DF876B1F
c:\windows\system32\ACTIVEDS.dll	InMem: 1	Det [G]	MD5: 25E4E36CED6B15DF8D8C10460BE834A2	PX5: EFB02947002647C8F6250205FD9612006E9558F5
c:\windows\system32\adsldpc.dll	InMem: 1	Det [G]	MD5: 15CE221ACE929705BA7E4346D74E8A06	PX5: 6D8B11FE00EF99F53026027F152EC40097EA0ACA
c:\windows\system32\ATL.DLL	InMem: 1	Det [G]	MD5: 32BD4CC64449EA2549BE4A8EFC54F4DE	PX5: 90FBA32A008A4DC9E6A3004879775D009B9241D5
C:\windows\System32\winrnr.dll	InMem: 1	Det [G]	MD5: BB78454C44A5B0F97295A6D66B217D65	PX5: DD7C6D7B00A7C2A842AB003098E8920063CE769A
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002 - LibraryPath [%SystemRoot%\System32\winrnr.dll]
C:\Programmi\Bonjour\mdnsNSP.dll	InMem: 1	Det [G]	MD5: 1F5A570AD942DFCFE4500326ABDD72B2	PX5: D240058C00D95FC2705201A57ACB2E004585C058
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000004 - LibraryPath [C:\Programmi\Bonjour\mdnsNSP.dll]
C:\windows\system32\rasadhlp.dll	InMem: 1	Det [G]	MD5: 266D8FA8F97CBBBA8BADE273F47215D9	PX5: 44992DD300BD805F2027003B3C2E0700008DD7C4
c:\windows\system32\dhcpcsvc.dll	InMem: 1	Det [G]	MD5: 4F56AD1B19373851392BFF248C8CE1CB	PX5: 6B31A5B6003DEA2AB413012609A16300F9086E97
c:\windows\system32\wzcsvc.dll	InMem: 1	Det [G]	MD5: 312913174D070ED81E9D78DA7B648774	PX5: 3DF4750600996C8B7E470562CED514005814EDBA
c:\windows\system32\rtutils.dll	InMem: 1	Det [G]	MD5: 204A7D354683A49C37505BE1646C5D43	PX5: BF0F14BA00130FA5ACFA00D907EAE70083958E2B
c:\windows\system32\WMI.dll	InMem: 1	Det [G]	MD5: 7F9FD6E98CF1898F94D4A6246D4D639E	PX5: 781B3D7300C600C41695006A26ACBD006AA9CB45
c:\windows\system32\ESENT.dll	InMem: 1	Det [G]	MD5: 26E0AC18AC6DC3F7F17AEE22C9E0A01F	PX5: 44A1D0F1009656EFAA4210CE1D5F1E00AAA3CF3A
C:\windows\System32\rastls.dll	InMem: 1	Det [G]	MD5: F90A2F77CB88F8201A3AD783D7EDB19C	PX5: F64AC68A00F37A69B87E01DB8E696800CC9225D9
C:\windows\system32\CRYPTUI.dll	InMem: 1	Det [G]	MD5: 502A30E1A880124D7F71667E75BE9688	PX5: 5142AFD100A220AEFE57076D08D9310067F36935
C:\windows\system32\WININET.dll	InMem: 1	Det [G]	MD5: A00EA19301855E5B844EFBA84B21860B	PX5: E48780E6008980251A6E0A5168187A002C0F8B88
C:\windows\System32\MPRAPI.dll	InMem: 1	Det [G]	MD5: B61978022A65FAC95B8E3817D5029870	PX5: F40536E000846CE4547B017CD7ABC100D153D57A
C:\windows\System32\RASAPI32.dll	InMem: 1	Det [G]	MD5: 7ECE54A6785E6A07ED02018A32B246E6	PX5: 7E18516500FFE5CC9C5B03564D831C0011FCFEEB
C:\windows\System32\rasman.dll	InMem: 1	Det [G]	MD5: 79D87679F6F13F7F18062C39A3C5B38A	PX5: 7F1D9BFF002D89D3F04E005C98AFF900ECE9EEA3
C:\windows\System32\TAPI32.dll	InMem: 1	Det [G]	MD5: 9B53CE123C15E95DE40592CFECEC5A09	PX5: ECB3A62200F5E5E3C61D0271F9934A0018AE4A00
C:\windows\System32\raschap.dll	InMem: 1	Det [G]	MD5: D7DE6CD7A5F84909B12B7DBD7D93811D	PX5: 6CBEE3D600A4FEB310F101DE8C083F003D6F721F
C:\WINDOWS\system32\actxprxy.dll	InMem: 1	Det [G]	MD5: CAC8CE72845461A8C6818071D923FC89	PX5: 007947C1003133828EF901D865E09C00F6A66BF3
c:\windows\system32\schedsvc.dll	InMem: 1	Det [G]	MD5: 546254D4769E165CDC3388D74B201FCB	PX5: 5DDC4A3800A53317F204023D51875A00711FF5B5
C:\windows\System32\MSIDLE.DLL	InMem: 1	Det [G]	MD5: 3DC13080F28F80ED5D31E20E226536A5	PX5: 892E25230047BFE41A2700448F955F00DB3FDA3D
c:\windows\system32\audiosrv.dll	InMem: 1	Det [G]	MD5: 15EE9EFF206DAA73B9642FCD51A69BB1	PX5: 97A7792B000122A1A6A80092373D18006EB85382
c:\windows\system32\wkssvc.dll	InMem: 1	Det [G]	MD5: 6953DE298C888ABE268FF59BAC64CF4E	PX5: F785B0520050629F0457028102F0DA00CD162C70
c:\windows\system32\qmgr.dll	InMem: 1	Det [G]	MD5: 04E8321935AD5643FF59901F3EF5F4F3	PX5: A628078700D0FC00D60105464D1E6100132AFD53
c:\windows\system32\SHFOLDER.dll	InMem: 1	Det [G]	MD5: 8B205EB92B49D10055427365065357E8	PX5: 209DE55C009ABDE8627700E93AF07200F7058D40
c:\windows\system32\WINHTTP.dll	InMem: 1	Det [G]	MD5: 5B4EC6C0FBACC85430CE3D6AE8563A0D	PX5: 8A8FE9C3008B23F25C3905D494C02C00D181B661
c:\windows\system32\cryptsvc.dll	InMem: 1	Det [G]	MD5: E0CC838265401128097D182FB583889A	PX5: 4924777000FF363CECB300E8D69F7300112A6AF8
c:\windows\system32\certcli.dll	InMem: 1	Det [G]	MD5: 5F24A58D40870F8FE6CF7E15E73DE146	PX5: 925C7DF9003B9C1200C5031520AB850028BB5515
c:\windows\system32\dmserver.dll	InMem: 1	Det [G]	MD5: 499FFF7BCA07009A23447776286F0510	PX5: FABFF932000B9F155E610037E22ABC006B953D35
c:\windows\system32\es.dll	InMem: 1	Det [G]	MD5: 659C04BB6086E480966FFD0D44F1CC4D	PX5: 79EA0C1C007DD384B6CC033ACA71FA00F62D9D5F
c:\windows\system32\ersvc.dll	InMem: 1	Det [G]	MD5: FF547B3876B6E652431412345FB8EE11	PX5: 1075AE7B006257925A3B00E01F4D2400B15FB39E
c:\windows\system32\srvsvc.dll	InMem: 1	Det [G]	MD5: 974831AA16AEE016D902F8582CCB30FE	PX5: 0BFF5A6200F821CA7A0401E40DD655008D70866B
c:\windows\pchealth\helpctr\binaries\pchsvc.dll	InMem: 1	Det [G]	MD5: 03A7A19834E2A63C445B3AC5E73AAB50	PX5: 5BE772A20028818F98B300E973AA5500998EE021
c:\windows\system32\netman.dll	InMem: 1	Det [G]	MD5: 1231D4353698E19495DC8A929B8B74EB	PX5: 65612A5600E1886F042503516394BA0003C1C8BE
c:\windows\system32\netshell.dll	InMem: 1	Det [G]	MD5: 4CC28DE5620ACE4F613B42A4F836DEDE	PX5: F7F9A56A007CF701368C1AE01A3E1600E0C02A68
c:\windows\system32\credui.dll	InMem: 1	Det [G]	MD5: 2D68AF44B169D033545FA501B9FF4F30	PX5: E886FD9F0056D4F18254029213832F003DEFF647
c:\windows\system32\WZCSAPI.DLL	InMem: 1	Det [G]	MD5: 28CDDFDF8C30D886284F3549C4A8E284	PX5: EBF8733200CD9B7CCA4C0051E7642A0024707F2E
c:\windows\system32\seclogon.dll	InMem: 1	Det [G]	MD5: 241D074DAB2A67D2D7616CE7C8B05650	PX5: 5B80E36F00AA396B4A8300B7E7951D00D7AA4B2D
c:\windows\system32\sens.dll	InMem: 1	Det [G]	MD5: 688BE760C858E347A4E23186B725C86B	PX5: 00AF89660086F69E989700E590F03600F597A8F5
c:\windows\system32\srsvc.dll	InMem: 1	Det [G]	MD5: BA4E8AC9A60C4527C969D08F3ABE9D36	PX5: F652BD0100BA7CC29C6202A16DDB5500C590261B
c:\windows\system32\trkwks.dll	InMem: 1	Det [G]	MD5: 6C7F265BD43A1D85103EC5CB1251D2B6	PX5: 906F8E37007C9B5A621D011F493B83005C29CC43
c:\windows\system32\wbem\wmisvc.dll	InMem: 1	Det [G]	MD5: A91ACDD987DC3E0E1FCEDDA6F1FFEF2A	PX5: CEF9F3BC00C6E32738BF0260919AD800E787713F
C:\windows\system32\VSSAPI.DLL	InMem: 1	Det [G]	MD5: B590F13F17409970A6994473EB98EF74	PX5: FAEC6BFB002AF8059230067AACCA280087EB5B02
c:\windows\system32\wuauserv.dll	InMem: 1	Det [G]	MD5: 4CBB7CC975E5B67022A7F95DFC6EF9EC	PX5: 0799809A00702BD41AB400068A66AC0043C84727
C:\windows\system32\wuaueng.dll	InMem: 1	Det [G]	MD5: 3EEC20E41F5F331B94002970CEAEC92F	PX5: 26C07DF358FF2BE623151A8BD3FD64005FC70733
C:\windows\System32\Cabinet.dll	InMem: 1	Det [G]	MD5: 4D7708FD334C23E17400CA8327CE3D11	PX5: 60605FEC005AB19AEA050033F1225300422702FD
C:\windows\System32\mspatcha.dll	InMem: 1	Det [G]	MD5: A434E5666A953F6A0406CC99B8B8C6A0	PX5: 192CF4F3003C31E4769D0029DA080500F7D037E4
c:\windows\system32\ipnathlp.dll	InMem: 1	Det [G]	MD5: 1DA364FA673E18BC1DE8F5CDF3657DBD	PX5: 89882A6E0030CF0B12CE052A40AAE5009F9198F9
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\AUTODHCP - DllName [ipnathlp.dll]
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\DNSPROXY - DllName [ipnathlp.dll]
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\FTP - DllName [ipnathlp.dll]
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\H323 - DllName [ipnathlp.dll]
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip\IPNAT - DllName [ipnathlp.dll]
c:\windows\system32\wscsvc.dll	InMem: 1	Det [G]	MD5: 17F70F4E37452A30C35565052AB68BE9	PX5: B11BC224000C550D3E4B01F1618F6300676DF706
c:\windows\system32\msi.dll	InMem: 1	Det [G]	MD5: 34A737E1344985BC5A636A4ED286DE61	PX5: B09678EF00F05CBD8EB12B2266AE240024089B64
C:\WINDOWS\system32\wbem\wbemprox.dll	InMem: 1	Det [G]	MD5: CECE259D273771497D2C96C8121D9C58	PX5: 118AA1B200D76A754A3B0017C7664600A1463C19
C:\WINDOWS\system32\wbem\wbemcomn.dll	InMem: 1	Det [G]	MD5: 7DB0054945C1C937553F97FA1F1EAFFB	PX5: 30B285D60040901346F3037FF72C08005C58C30E
C:\windows\System32\Wbem\wbemcore.dll	InMem: 1	Det [G]	MD5: 2E9B41FDD71FDDD9D596CF3FDF0A1FDD	PX5: D34E2BC3004DE1451AED08DF0B2B620026599912
C:\windows\System32\Wbem\esscli.dll	InMem: 1	Det [G]	MD5: 20938C6D287B27AB3F1FDE53FF3507DE	PX5: DE687FC600BAAC77C8B4030B6F14AB0094AE7226
C:\windows\System32\Wbem\FastProx.dll	InMem: 1	Det [G]	MD5: FC9F0B7216D087F9502ECE38439AE144	PX5: AEBA61B800E4BC9A34F5075F66FDAB005D1447F9
C:\WINDOWS\system32\wbem\wbemsvc.dll	InMem: 1	Det [G]	MD5: DD3E1E96EA769C31936D9B09F9137954	PX5: 25397BDF00757EBFAAF700E3ED2B7800B9284F1B
C:\WINDOWS\system32\wbem\wmiutils.dll	InMem: 1	Det [G]	MD5: BC664C7546EF5C1A5712E7B48AF24741	PX5: 0BDBA5A5000A6748803F0102F9279500D2C1C9B2
C:\WINDOWS\system32\comsvcs.dll	InMem: 1	Det [G]	MD5: 9C38B58FDD3FFBE7ED90B5936CCE3784	PX5: ED0A598E00540BAB56A9139D5AFF60002DA225EE
C:\WINDOWS\system32\colbact.DLL	InMem: 1	Det [G]	MD5: A9126ECB8BCA406D6DF60BEC11AF594A	PX5: A0B0F9B500ACD436ECA70034F32E2C001398A8B7
C:\WINDOWS\system32\MTXCLU.DLL	InMem: 1	Det [G]	MD5: 7C5986B94EEE98CF0A0F5EAE44912E5E	PX5: 66978F8E0092BC0304EB01E29B925900A2E75CFB
C:\WINDOWS\system32\WSOCK32.dll	InMem: 1	Det [G]	MD5: 3BD93201E3AFA5A0660C793A4BDAE773	PX5: 2C097C2B007169C960BA0014DCE7CC0038229E38
C:\windows\System32\CLUSAPI.DLL	InMem: 1	Det [G]	MD5: C3B4CFBA8936D0AF25D5391F53F2DA91	PX5: F4F4A6AD001EC8C1E2C500B4FE61840054C0DDE3
C:\windows\System32\RESUTILS.DLL	InMem: 1	Det [G]	MD5: CAD4191048F595A794E14CEE31DB06FD	PX5: 6DFA47A500DAF26FE68800D61F5B31009BB0B65D
C:\WINDOWS\system32\wbem\repdrvfs.dll	InMem: 1	Det [G]	MD5: 41B4ED9F8D444CE09B6A1FE76AE22040	PX5: DAAC922100087395B4C8026D60ACD300B870E129
C:\windows\system32\wuapi.dll	InMem: 1	Det [G]	MD5: EDCED3393985ED2D86641747EDCA53AE	PX5: CDD35EBA58DB0AE863FB08B33BD0060031EAFA5A
c:\windows\system32\browser.dll	InMem: 1	Det [G]	MD5: 72FBF0322BE8A0F25AE722FDE36AB1E6	PX5: 9CDD0A4F005D0D9D2E6201C807EC76000E0D1CE8
C:\WINDOWS\system32\upnp.dll	InMem: 1	Det [G]	MD5: 7E7491C2CF7A0781C0004D2C5BE71BC4	PX5: 5CC09E6000F77B62063F026310FD670014E0CF2C
C:\WINDOWS\system32\SSDPAPI.dll	InMem: 1	Det [G]	MD5: 4EA31D2858780DDB446A9DC9B2D23C3D	PX5: B458C80C0094BE55886700FEA91CE300F0D01D10
C:\WINDOWS\system32\netcfgx.dll	InMem: 1	Det [G]	MD5: AB06350510C1F68C7202703480F6FF17	PX5: 4F8DF8B4009990EE9C82091CBF6CD600CD59067D
C:\windows\System32\RASDLG.dll	InMem: 1	Det [G]	MD5: D52A1298D47FA8652B30451855265F94	PX5: 289AD96400BB9C934C7F0AD56A0D5500E683D618
C:\windows\system32\msxml3.dll	InMem: 1	Det [G]	MD5: F95E644F65D439D2F9122D52F0321327	PX5: 60B20BB200F84299DCAB10FF374BBC00797C1A91
C:\windows\system32\wups2.dll	InMem: 1	Det [G]	MD5: CEB1BD87FBCB5984BDF7DC0991A060B5	PX5: 8F8648A158D15CF4A9FE004434B05300230EE2A8
c:\windows\system32\dnsrslvr.dll	InMem: 1	Det [G]	MD5: 1A4CCB390093D1A6F0EEC063F44AFF31	PX5: 3AB739DC00686EC6B26F00A3B54A4300F767B865
c:\windows\system32\lmhsvc.dll	InMem: 1	Det [G]	MD5: 6E008B7EB9B67D555B5EE1C1091F3A7E	PX5: 050B19680015AAE33629000A173BF5000631D061
c:\windows\system32\webclnt.dll	InMem: 1	Det [G]	MD5: 83ED24C34250AFAB1E55DEB3D8D7EC1A	PX5: F49C6F7000D3BB7B0AFE01B9E6A55A009E654432
c:\windows\system32\regsvc.dll	InMem: 1	Det [G]	MD5: 78FBE7DA29307EDE7ED0E33F1C4969BC	PX5: 0038ECD50092146CEAE600DC41696F006EFFA138
c:\windows\system32\ssdpsrv.dll	InMem: 1	Det [G]	MD5: 1FBF38A525EEDD7402BFA7E27236A64F	PX5: EFEEB4A70072CCE218E201A90823060000AE77FB
C:\Ad-Aware 2007\aawservice.exe	InMem: 1	Det [GP]	MD5: 0629361FAC4576BA48AB39F4903DCE9E	PX5: BC5F9CE5587AA4CEF5D0088B27A70000E04EEAA4
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\aawservice - ImagePath [C:\Ad-Aware 2007\aawservice.exe]
C:\Ad-Aware 2007\CEAPI.dll	InMem: 1	Det [G]	MD5: 759C45CA544A92DE4B88618894A15587	PX5: A61CB37168A920F8457E0B5A08E1F00084E8F100
C:\Ad-Aware 2007\PKArchive85u.dll	InMem: 1	Det [GP]	MD5: 46374252AFA0A37F4F7AF528F6F16B96	PX5: A6A83F635884CF1AD7B40D2026D13D0066B1F9FB
C:\Ad-Aware 2007\Update.dll	InMem: 1	Det [G]	MD5: 72CCE73551D24D7863369F3BFD6548C9	PX5: 257E4CA860FA884205950831D883550042BDA968
C:\windows\Explorer.EXE	InMem: 1	Det [G]	MD5: 7E2817A623E16F830B660F81C0FD63DA	PX5: 5F224AD100F73BC6CEBA0FDC56B8E400769BB8AE
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - Shell [Explorer.exe]
C:\windows\system32\BROWSEUI.dll	InMem: 1	Det [G]	MD5: 3C980090E5313D1B6A2378BA9ED5A296	PX5: 6F02E5D500A9C0D09E6B0F878595D30083B7E67E
C:\windows\system32\SHDOCVW.dll	InMem: 1	Det [G]	MD5: AA3930156BDB25FF32E0D69E2770C351	PX5: D9FE865200515F3DD0E7162E20EFC1005D2ED551
C:\windows\system32\themeui.dll	InMem: 1	Det [G]	MD5: 0F7BFE3EF3FC33FD598427C015BB8B5D	PX5: BAC50787005D6D22F49E05A57642CD002A91E075
C:\windows\system32\MSIMG32.dll	InMem: 1	Det [G]	MD5: 51F309AA675B5B77D19C573B7E0BB253	PX5: CB413D4600B070AF127100D0C427CA00FD59EFF9
C:\Programmi\Windows Media Player\wmpband.dll	InMem: 1	Det [G]	MD5: 6FAD4C5B73DB1C2E26C7703E67DBE0FD	PX5: B825F32F006A51A630220103AB37070011AF0E8D
C:\windows\system32\LINKINFO.dll	InMem: 1	Det [G]	MD5: B737A3DA2C0A605CE2C7E118C59F38C7	PX5: 87EB2C9D005DD1A14E450046E4D6CC0014CFCDB6
C:\windows\system32\ntshrui.dll	InMem: 1	Det [G]	MD5: 64E0C77FAF1A30547739580EB5F3AACF	PX5: 5EB8DF8A0005A80F3870025CC8B2C100D6ECC82F
C:\WINDOWS\system32\urlmon.dll	InMem: 1	Det [G]	MD5: 9E9F80B3B707D9523C0BCFB98F81FA0B	PX5: 2F975D23009DDBAA6866093CCE5FA8002CF6AC4A
C:\windows\system32\MSCTF.dll	InMem: 1	Det [G]	MD5: 5D2F1BEEA828B4951F550BADE794C1EF	PX5: 64563C73008EB95E7EDD046B94EDCE00A3D588EB
C:\windows\system32\webcheck.dll	InMem: 1	Det [G]	MD5: 9ADAE07A13E295A98F5EE7726354C28F	PX5: 7A671D1200F332C4486E04DF4339C300F2AAD0B7
C:\WINDOWS\system32\stobject.dll	InMem: 1	Det [G]	MD5: 6474C3D1C136C60291B8A5EE9ED1735B	PX5: 54D80CDC00F43E2DDE26016C15CB850052548DBB
C:\WINDOWS\system32\BatMeter.dll	InMem: 1	Det [G]	MD5: 66DB9D9CA443D7C8C9222BFF72F61ACF	PX5: 73074F1200F9F02570C400FC5F48D3002E4325D8
C:\windows\System32\drprov.dll	InMem: 1	Det [G]	MD5: 4F32C69E05AE35FC609218E94B0DF5D9	PX5: BB8EDCE2008403A638800074FD083400905C26EC
C:\windows\System32\ntlanman.dll	InMem: 1	Det [G]	MD5: D72C81E7F4986BEB202813FC743AF8D7	PX5: FCEBCD7A009905FEAA4200960455950080D2A1BD
C:\windows\System32\NETUI0.dll	InMem: 1	Det [G]	MD5: 9FE57C0551C88667B8FBDE49BD399144	PX5: 074187360063FEE5400A014D6C2C430053ABE349
C:\windows\System32\NETUI1.dll	InMem: 1	Det [G]	MD5: A5CA0066DF5A68D4A7403F2E32D620D8	PX5: A4DAD8A200850E09C097034C744E770099F86FBA
C:\windows\System32\NETRAP.dll	InMem: 1	Det [G]	MD5: E7FC69C00BEBC04DAEF86071822B2B89	PX5: B3940B1900334CEB30F300847BE9340024D302E6
C:\windows\System32\davclnt.dll	InMem: 1	Det [G]	MD5: FA5791230A59DCC0F1BB0B0A193375A7	PX5: 5E0DDE0C0099E131624800B42D603500DF9BC5AA
C:\windows\system32\browselc.dll	InMem: 1	Det [G]	MD5: 03163D2CD97C11514F29987971F50A13	PX5: EA63F88500B471270C9A01309A4A800054BE305C
C:\windows\system32\DUSER.dll	InMem: 1	Det [G]	MD5: 0E316FF410E9A5BCA1BD1794DECE800F	PX5: 576588D800DB533AA46504C81FA1F900F6700574
C:\Programmi\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll	InMem: 1	Det [G]	MD5: 4B0991CD076B617A2231B19A6663C1C9	PX5: 066EC4DE00858605B060015F10D3790055C4D630
C:\Programmi\Adobe\Acrobat 7.0\ActiveX\PDFShell.ITA	InMem: 1	Det [G]	MD5: 78B5FBF9717AED90F9771F6F109843CE	PX5: B3893887007C791076CA0005C8CBBB00E832FD48
C:\Programmi\Adobe\Acrobat 7.0\Acrobat Elements\ContextMenu.ita	InMem: 1	Det [G]	MD5: ECE1B73469B454B63C76D507630378B3	PX5: FC070DB1007F91F1E0E604E5384E9900B04DBB84
C:\windows\RTHDCPL.EXE	InMem: 1	Det [G]	PX5: 5801D6DD009A97354804DB7F2135FB00E00C3D1C
	REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - RTHDCPL [RTHDCPL.EXE]
C:\windows\system32\HHCTRL.OCX	InMem: 1	Det [G]	MD5: ACF5FAE68ECE86C536346DD7013B66CD	PX5: 3A3A400300CF41F6565408AC6071460085CCA9C8
C:\windows\system32\DSOUND.DLL	InMem: 1	Det [G]	MD5: E99A5DF2A937580361D6C698E4620DBA	PX5: E5087FD800F9DAEF9CF20543474A2400CFECBDBE
C:\windows\system32\mui\0010\HHCTRLui.dll	InMem: 1	Det [G]	MD5: 126A1B4A38BDEEB1CDF0E06E5A547669	PX5: BA28999700DF7F81607B01C7951F4A005B77C7B8
C:\windows\system32\KsUser.dll	InMem: 1	Det [G]	MD5: FBBB356A996903FFB831BF72FD2A3E85	PX5: AAD6D56F00EC2271104D0037883D3E00B79BCD14
C:\AVG 7\avgcc.exe	InMem: 1	Det [G]	MD5: 76CD8B6DBB4B8A984193AD07ADC1BD3A	PX5: B2AE899700F57D38D69508B44FC71F0069D2607D
	REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - AVG7_CC [C:\AVG7~1\avgcc.exe /STARTUP]
C:\AVG 7\avgtmgr.dll	InMem: 1	Det [G]	MD5: 5BD5BD73E02C3D8B2ECBF204E3A67345	PX5: D6DA4E6300CB354548B9066D9731FC002544E9AA
C:\AVG 7\avgctrl.dll	InMem: 1	Det [G]	MD5: 129BCCA44DD86F63532D59F4377918DC	PX5: 6C1F1FBA002BCCA6D2800DBD0E993100868D3AD9
C:\windows\system32\MFC71.DLL	InMem: 1	Det [G]	MD5: F35A584E947A5B401FEB0FE01DB4A0D7	PX5: 6CC9C2640078308D309410C7EE8D9E0004FCAA75
C:\windows\system32\MSVCR71.dll	InMem: 1	Det [G]	MD5: 86F1895AE8C5E8B17D99ECE768A70732	PX5: 3FEE1145002F2EB8504E05ED76DA9100776D97E7
C:\windows\system32\MSVFW32.dll	InMem: 1	Det [G]	MD5: 35DE518C32E4D878A250301A8F2EEE08	PX5: 4870710600DDCA90DC7001F6C351A000C502322F
C:\windows\system32\MSVCP71.dll	InMem: 1	Det [G]	MD5: 561FA2ABB31DFA8FAB762145F81667C2	PX5: F133D4F000B92F08A0E107FD67B66E0015498C05
C:\AVG 7\avgabout.dll	InMem: 1	Det [G]	MD5: 04E0E30E244A96B7DBE37A30796FEA2D	PX5: 17BFD9EE00E7FFBDA64A06D4E4406400DF2ACBC4
C:\AVG 7\avgtest.dll	InMem: 1	Det [G]	MD5: C7F153B54C1DF8C8E03828C7EE3A74E4	PX5: EB8A58F50085CD0538CC094F9178D9007B42498B
C:\AVG 7\avgtres.dll	InMem: 1	Det [G]	MD5: A8E8CE4A172FD204F745D8C570D23549	PX5: D9465DA7000B3E55BE48031BC2C8C600A3BF6D08
C:\AVG 7\avgset.dll	InMem: 1	Det [G]	MD5: 940BE885A17CBD5D6AD82C3FA0BB1BF3	PX5: EF8C449100C5923622A9078868FB0A008E2415C2
C:\windows\system32\MFC71ITA.DLL	InMem: 1	Det [G]	MD5: BA14D19B7C983C5863601D95EA473FD2	PX5: 8C47BF9900C00236F0DE00B45623C60074094F00
C:\AVG 7\avglog.dll	InMem: 1	Det [G]	MD5: C935B33CB471DB79A42B81276A8D0934	PX5: D7A89D52008854C89AC801A4B599270028FCA248
C:\AVG 7\avgcfg.dll	InMem: 1	Det [G]	MD5: EE3201BF942FB000B8C98A6CEB9C4105	PX5: 9E42292C0097D465BE5108AD760F6200DA2B1CA8
C:\AVG 7\avgklib.dll	InMem: 1	Det [G]	MD5: D756DC41EFFAAD294C858E94B4A11BD2	PX5: 0905B47E00DB8F4AF0C200D2E1793900305E89E0
C:\AVG 7\avglng.dll	InMem: 1	Det [G]	MD5: 1C8526EDBCE5499EB5722BED0A14B97C	PX5: 4ECED89B00CF9794E450009CD16D5500FFF988A8
C:\AVG 7\AVGRES.DLL	InMem: 1	Det [G]	MD5: 8222ADB1A3068E7CC457D72E57339436	PX5: 23E816BB007D3F24922513DDDD54080019D56CB3
C:\AVG 7\avgcckrn.dll	InMem: 1	Det [G]	MD5: E7588025E17A4C60231A96B4021EF3F2	PX5: A0E95FBA00D5DC8EE4A80879C65ABC006B005312
C:\AVG 7\avgvault.dll	InMem: 1	Det [G]	MD5: BB59C88CBF24F6D136E12CBB7D1F2B64	PX5: 9730B38800BDBCA9448E01B6BAEF3900B9CAF783
C:\AVG 7\avgrep.dll	InMem: 1	Det [G]	MD5: D1F3D118ADF63B29BE4F40871514E341	PX5: 570F223B00266A721067016EC8DFC50070955DEA
C:\AVG 7\avgunarc.dll	InMem: 1	Det [G]	MD5: E5D4EDFBE5C6EC8B5FFE2CFCDC6DA880	PX5: 94CC112C000ECAA6EC0102379DE66800C3E8D4CB
C:\AVG 7\avgamsps.dll	InMem: 1	Det [G]	MD5: BD30B82A0364670E95DDBEE7902290C9	PX5: 1A773CF4006542552A8400BB017FF80037C5472C
C:\windows\system32\ctfmon.exe	InMem: 1	Det [G]	MD5: 5B33B4265966EE063C7FBEA28958D9C2	PX5: 7BE460C100E5509F3C0D00F14B5A510097B91217
	REGRUNKEY - \REGISTRY\User\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run - CTFMON.EXE [C:\WINDOWS\system32\CTFMON.EXE]
	REGRUNKEY - \REGISTRY\User\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run - CTFMON.EXE [C:\WINDOWS\system32\CTFMON.EXE]
	REGRUNKEY - \REGISTRY\User\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run - CTFMON.EXE [C:\WINDOWS\system32\CTFMON.EXE]
	REGRUNKEY - \REGISTRY\User\S-1-5-21-1078081533-839522115-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Run - ctfmon.exe [C:\windows\system32\ctfmon.exe]
	REGRUNKEY - \REGISTRY\User\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run - CTFMON.EXE [C:\WINDOWS\system32\CTFMON.EXE]
C:\windows\system32\MSUTB.dll	InMem: 1	Det [G]	MD5: FC6C38A1249D86FC62F72C8A5E3379DB	PX5: 7A3AA486004261ECFC5902E8FBAFDA00B6B25BB1
C:\windows\system32\sensapi.dll	InMem: 1	Det [G]	MD5: 344E594BB748D4F828211A7C9CEA0829	PX5: 945479A500423FB71A9A004C020A3B0024ABF6B3
C:\Microsoft ActiveSync\wcescomm.exe	InMem: 1	Det [G]	MD5: 8F9265FC5A477D1AE669FB9C23E8B5EB	PX5: 572FBDA328767BCDAB731395348F9300104074EB
	REGRUNKEY - \REGISTRY\User\S-1-5-21-1078081533-839522115-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Run - H/PC Connection Agent ["C:\Microsoft ActiveSync\wcescomm.exe"]
C:\windows\system32\CEUTIL.dll	InMem: 1	Det [G]	MD5: D77A8EB838055F4BB39F4EB352C04061	PX5: AFCE08DE2811FAE55B9C00F94588C6005F6FB30D
C:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll	InMem: 1	Det [G]	MD5: E4FECE18310E23B1D8FEE993E35E7A6F	PX5: 9A45456900EE9D7990C909755A3A5C00A6DAF154
C:\windows\system32\RAPI.dll	InMem: 1	Det [G]	MD5: BB0686819329588E72995D6D5AF1EBC6	PX5: 0C4E866D28ECF84E1B5D02686FDF77008EB475FD
C:\Microsoft ActiveSync\TCP2UDP.dll	InMem: 1	Det [G]	MD5: 019DF0CF1F7D41A5BE2D0EB406738564	PX5: 7C8F9B3B28611898635F00F01E298400CB0F0BE5
C:\Microsoft ActiveSync\rapiproxystub.dll	InMem: 1	Det [G]	MD5: CEEDC60A60CDBEA1F1068AF34BCA2B28	PX5: 79707937289390B2579400892861F200139EBAE3
C:\Microsoft ActiveSync\dtptdns.dll	InMem: 1	Det [G]	MD5: 37FE4E7BB3770811115FCC5AE46357FF	PX5: FBE2626628481F96479C000CEFC3780093C5220E
C:\Microsoft ActiveSync\rapimgr.exe	InMem: 1	Det [G]	MD5: A1CC47AEB3A17E76581FF18864871CC9	PX5: 899B7ED5288CAB530B13033C46745800787DD0AB
C:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll	InMem: 1	Det [G]	MD5: 4C8A880EABC0B4D462CC4B2472116EA1	PX5: 1CD79A6B00ACCCBD60660869F17C0900CE4B6B7D
C:\windows\system32\spoolsv.exe	InMem: 1	Det [G]	MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F	PX5: 1DCDB07A00179F65E28700A02CD4BA00B29C7A8B
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Spooler - ImagePath [C:\windows\system32\spoolsv.exe]
C:\windows\system32\SPOOLSS.DLL	InMem: 1	Det [G]	MD5: DD90C59EF82D6CDE5886B595CA8D8D8A	PX5: EEC4C153008FC3AA248101F4B2E71800601A2E7A
C:\windows\system32\localspl.dll	InMem: 1	Det [G]	MD5: D5882ABF5F3652ACBF36C882EA4DC9A8	PX5: 4416D740002AA3683E4E05C1EF102900643A9BD8
C:\WINDOWS\system32\AdobePDF.dll	InMem: 1	Det [G]	MD5: F100EE264165CAC6A784A313D47A2819	PX5: 0BA2CD9300F289EE561C006CA804F300BA2D369A
C:\Programmi\Adobe\Acrobat 7.0\Distillr\AdistRes.ITA	InMem: 1	Det [G]	MD5: AE36261953DE55D3128694326D48C501	PX5: 876ED342009B7F8D5020130B2D84F40049287333
C:\windows\system32\cnbjmon.dll	InMem: 1	Det [G]	MD5: A2660003F73982579EBFEF1F6C2F6234	PX5: ADFEA2D500C13C76C238009F710B75002AA8B844
C:\windows\system32\CNMLM78.DLL	InMem: 1	Det [G]	MD5: 13E40C0B560E90007DF9F429877488BE	PX5: 6F7BD5AF0040683724CF020D6D8B0A0000A01A6B
C:\windows\system32\pjlmon.dll	InMem: 1	Det [G]	MD5: BBD335EEABDA429E2A4A401AE977ACCC	PX5: 84CFC62400E584133C01005DDEFEF70074DE7C99
C:\windows\system32\tcpmon.dll	InMem: 1	Det [G]	MD5: 1417745D9156EED7C8B871A3F8A8F56D	PX5: 4DB1307F00B38383B4DE0091A261F900D73B20B9
C:\windows\system32\usbmon.dll	InMem: 1	Det [G]	MD5: 1AE1CDA7F68B0A8603A3117AE5F00B03	PX5: 355B55CF00434C1C429F0037D7A64900612AB6C2
C:\windows\System32\spool\PRTPROCS\W32X86\CNMPD78.DLL	InMem: 1	Det [G]	MD5: 46E93E39E5A4EC82BA40719D3DFF49CB	PX5: 75A3456A0015392D52610060B215B2004726D5A4
C:\windows\System32\spool\PRTPROCS\W32X86\mdippr.dll	InMem: 1	Det [G]	MD5: 063457262374B224226710D8DB74C37C	PX5: E48E2F6AF05219F164EA008F9C19CC0025975546
C:\windows\system32\win32spl.dll	InMem: 1	Det [G]	MD5: 660E56BC8C253B5B47DCC6560CCD62DA	PX5: 3EE5A7330005B84D903F019D6D465800D7DE2821
C:\windows\system32\inetpp.dll	InMem: 1	Det [G]	MD5: BE4FF5FBBC55DC3C2445377C50497F1F	PX5: 84746D7B00F17DE826600104529E590058DFB441
C:\Programmi\File comuni\Maxtor\Schedule2\schedul2.exe	InMem: 1	Det [G]	MD5: FC2BF5FE5B91D01CCBFE854D0548BF65	PX5: 473F147120B7351846170636278F88008F81FC1F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\AcrSch2Svc - ImagePath [C:\Programmi\File comuni\Maxtor\Schedule2\schedul2.exe]
C:\Programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe	InMem: 1	Det [G]	MD5: 4DF21270B6933004A2621CCFD6C51560	PX5: 544A803F0075F48936C10184C4772D00FEFE8FAC
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Autodesk Licensing Service - ImagePath [C:\Programmi\File comuni\Autodesk Shared\Service\AdskScSrv.exe]
C:\AVG 7\avgamsvr.exe	InMem: 1	Det [G]	MD5: 3C7B93F947355E374A49564D0D017B7B	PX5: 21DE92A5001AF2AB64A906625DE519006365E2D7
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Avg7Alrt - ImagePath [C:\AVG 7\avgamsvr.exe]
C:\AVG 7\avgamint.dll	InMem: 1	Det [G]	MD5: A487A2BDC8EF099CEDE6DAFE7B5525CE	PX5: A536B0BE00B629273EE50492BB140A00FFE4E0D0
C:\AVG 7\avgupsvc.exe	InMem: 1	Det [G]	MD5: 30A14F65DB477DC00A64A5A24E96919C	PX5: FB2D0C8C0030CE48C28B00B9473117008F2553BE
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Avg7UpdSvc - ImagePath [C:\AVG 7\avgupsvc.exe]
C:\Programmi\Bonjour\mDNSResponder.exe	InMem: 1	Det [G]	MD5: 73686FE0B2E0469F89FD2075BE724704	PX5: 2CBE3E9F00938A9E8020038544862100384CBF16
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Bonjour Service - ImagePath [C:\Programmi\Bonjour\mDNSResponder.exe]
C:\Programmi\Autodesk\3ds Max 2008\mentalray\satellite\raysat_3dsMax2008_32server.exe	InMem: 1	Det [G]	MD5: AA0C4A2C33CE075DF2C272D678734991	PX5: 3C9A2E0C00033CD7007E017873A62000DD647171
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\mi-raysat_3dsMax2008_32 - ImagePath [C:\Programmi\Autodesk\3ds Max 2008\mentalray\satellite\raysat_3d]
C:\windows\system32\PnkBstrA.exe	InMem: 1	Det [G]	MD5: 0E01D7EEBADA0B324DB0CA1EE73440BA	PX5: 5C25999738CA5CB505CA01BD3938C800DBD48BB5
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PnkBstrA - ImagePath [C:\windows\system32\PnkBstrA.exe]
C:\windows\system32\PnkBstrB.exe	InMem: 1	Det [G]	MD5: 1428E6CC1458A36CBFC1F2E304C7C42D	PX5: 1352FF5C3855DFFB95370106BACE64002BFC93B6
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PnkBstrB - ImagePath [C:\windows\system32\PnkBstrB.exe]
c:\windows\system32\wiaservc.dll	InMem: 1	Det [G]	MD5: 385CF0E9C4679D23E1E8715AF2116D03	PX5: B69A81C6002918EE1A4705E2549FBB00ED5C7BBD
c:\windows\system32\mscms.dll	InMem: 1	Det [G]	MD5: CD669D359DAD2AB7EE5F6E09010A6167	PX5: DF52A2B9002BAEF722FE01B4E2E8B900D4427BF9
C:\WINDOWS\system32\wdfmgr.exe	InMem: 1	Det [G]	MD5: C81B8635DEE0D3EF5F64B3DD643023A5	PX5: 2258F0E80041C27898DD0037D087BF00D809B38A
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\UMWdf - ImagePath [C:\WINDOWS\system32\wdfmgr.exe]
C:\windows\System32\alg.exe	InMem: 1	Det [G]	MD5: D4A42BF3C11302AA3CCD857034EF1E54	PX5: A1E5D90F00A84BB2AEC200E087F3A200AB0BF90E
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ALG - ImagePath [C:\windows\System32\alg.exe]
C:\windows\system32\WgaTray.exe	InMem: 1	Det [G]	MD5: BFB7E29151FBA0DF4A899CDA4A87353C	PX5: 4698E0D7306CA73DDFFB03B889D30100D1616B1C
C:\Mozilla Firefox\firefox.exe	InMem: 1	Det [G]	PX5: 311CE5D17037FA84CEE2748FBC826D00A5720D40
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\ftp\shell\open\command -  [C:\MOZILL~1\FIREFOX.EXE -requestPending -osint -url "%1"]
C:\Mozilla Firefox\js3250.dll	InMem: 1	Det [G]	MD5: 80233E7A57AC5827BDA37FF6ACDC8130	PX5: E477DEDE68CCAD24F8B70643C207780051137F32
C:\Mozilla Firefox\nspr4.dll	InMem: 1	Det [G]	MD5: CBA8C40CADEF783DEF6207FD69B3AF40	PX5: 5263A09E70E6B3FA76F402F4E50AA8006CCDC829
C:\Mozilla Firefox\xpcom_core.dll	InMem: 1	Det [G]	MD5: 95659CFD8339E4D5CB03CFF8D632EA62	PX5: 56A0AA4970779FF870220668872C2300B290F122
C:\Mozilla Firefox\plc4.dll	InMem: 1	Det [G]	MD5: C78B192903059AC9A9FB2A8313786784	PX5: 805ED1397829B78F86F6002DDDE82A00174BE8B2
C:\Mozilla Firefox\plds4.dll	InMem: 1	Det [G]	MD5: 067EC7AFE87471B1B2DBAFF90C21FC54	PX5: D89FD48170A74E7D768A00A323AA3300F65336CC
C:\Mozilla Firefox\smime3.dll	InMem: 1	Det [G]	MD5: 90A5566097210101AA9032BCFF5D8C7F	PX5: 89F2D56768AD0AA4B61B014C7B609900FEDA7786
C:\Mozilla Firefox\nss3.dll	InMem: 1	Det [G]	MD5: D539B83F693A32D015EA1E91B0317E7D	PX5: AA1EDE4568A6A7CAC6F105427FB01100C67CC43B
C:\Mozilla Firefox\softokn3.dll	InMem: 1	Det [G]	MD5: 3EDD37B198E0D5A6477BF07E6E605AF7	PX5: 8542B9B86C54271FE0A2030F4DD1D900471EA04F
C:\Mozilla Firefox\ssl3.dll	InMem: 1	Det [G]	MD5: D3FBE3B8C8A0BA53D0BEC148B3B656C8	PX5: CD745CC168357AF9062E021B815ED00013892A17
C:\Mozilla Firefox\xpcom_compat.dll	InMem: 1	Det [G]	MD5: 4288CBED681F925A8B1D315792895370	PX5: 5CA5D7C57880F7BB20DF01B3C46778007A5E04E4
C:\Mozilla Firefox\components\myspell.dll	InMem: 1	Det [G]	MD5: 41523945948464D0F4336E3DB658DBA9	PX5: 17BCE6718838929888B7000AF9F43C00384324B6
C:\Mozilla Firefox\components\jar50.dll	InMem: 1	Det [G]	MD5: 6B1CAB00A011A04A5C45A3F2D5C2EE55	PX5: DE12F24070F77D0B0878018368F55C00690709BF
C:\WINDOWS\system32\msimtf.dll	InMem: 1	Det [G]	MD5: E41D5BBED01EDD653DFBE699C8B77FBF	PX5: 84310A0800BF02296E1202C6BE073C009D305F2B
C:\Mozilla Firefox\freebl3.dll	InMem: 1	Det [G]	MD5: 2EE9A139FD7803DCEE9641AA69A68F96	PX5: 656849DF7D6F8DBF10880339B81361000E6226A7
C:\Mozilla Firefox\nssckbi.dll	InMem: 1	Det [G]	MD5: 781453272D9830726B25A51147252E0F	PX5: 48E2FA29701572B72617045B50510700A4AD3F9C
C:\Mozilla Firefox\components\spellchk.dll	InMem: 1	Det [G]	MD5: AB05AA6145CFF82557E412007E16D6B8	PX5: E1CB440280C540A3B6F600BB5161FA00EB5D4CE0
C:\WINDOWS\system32\mlang.dll	InMem: 1	Det [G]	MD5: F036BC2525F8701628ABB0A550C1C692	PX5: A0FB8BA50045A9FEF20208062C04B3005F96B032
C:\windows\system32\IMM32.DLL	InMem: 1	Det [G]	MD5: CA38A6091ECAC2668EC99AFD4B6C0615	PX5: CDBF4DDD001A7574AE3A01510D252400AF18CE5E
C:\windows\system32\zipfldr.dll	InMem: 1	Det [G]	MD5: 84DC2B97AE10DEA7B265A74971634131	PX5: ED969ADB00D5666D2CF80569EB9E87007A803837
C:\Mozilla Firefox\plugins\NPSWF32.dll	InMem: 1	Det [G]	MD5: 40D0B608BBF9A19F681CCF976D4CA5B9	PX5: BA60131F8085157205FF2C6ED88F6E00BF24496C
C:\windows\system32\Macromed\Common\SwSupport.dll	InMem: 1	Det [G]	MD5: 535A556C63790C8356DDCF562D237A16	PX5: 27D279C2000674A2D06F000600FD52001C4E536B
C:\eMule v0.48a\emule.exe	InMem: 1	Det [G]	PX5: FFBE563F00E5D13F00B45190355B020096758CC9
C:\Documents and Settings\Andrea\Desktop\PREVXCSIFREE.EXE	InMem: 1	Det [G]	MD5: 5B3F4F9E32EAFE0A975BAFC596BAED9D	PX5: 3043F13238834E377CDF093924CA370089D32B25
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\Tmp___5200\prevxcsi.exe	InMem: 1	Det [GP]	MD5: 0A142F5C52D56C947CB14DCF2DAAFFBB	PX5: 8C75877B00DBED6E5E6B018A7647BF00E2C6767C
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\Tmp___5200\csicore.dll	InMem: 1	Det [GP]	MD5: A0D72E93B9799CDAD4188C85E248A0F7	PX5: F7966D21001605564AE204900658AF008C09D10D
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\Tmp___5200\csiLang.dll	InMem: 1	Det [GP]	MD5: 40BC04CD06528EBCFC414AD6F7C845C1	PX5: 44FC3B0000F3E5169AC801313D264500534E49D3
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\Tmp___5200\csiPart.dll	InMem: 1	Det [GP]	MD5: 038037C580B4D4C276407F44F3848D91	PX5: 459EEE08004BB0E8AC8A0015FA256700572E1113
C:\windows\system32\DRIVERS\ACPI.sys	InMem: 0	Det [G]	MD5: AD825CB3397C837D1FB91D566D78DE04	PX5: 6EB7D724001F4D96E0A8029EF0BB700070C5BA93
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ACPI - ImagePath [C:\windows\system32\DRIVERS\ACPI.sys]
C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe	InMem: 0	Det [G]	MD5: 6DCBE41762CFF1A00AAAB4F5C07B5F28	PX5: B40B5B27001158621CAC01740744FC008277A805
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Adobe LM Service - ImagePath [C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc]
C:\windows\system32\drivers\aec.sys	InMem: 0	Det [G]	MD5: 1EE7B434BA961EF845DE136224C30FEC	PX5: E884BE24808C5EEB2C92028B464629005484ED65
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\aec - ImagePath [C:\windows\system32\drivers\aec.sys]
C:\windows\System32\drivers\afd.sys	InMem: 0	Det [G]	MD5: 5AC495F4CB807B2B98AD2AD591E6D92E	PX5: EE224F5C0089E9241DEF0273688B740025971F4C
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\AFD - ImagePath [C:\windows\System32\drivers\afd.sys]
C:\windows\system32\DRIVERS\arp1394.sys	InMem: 0	Det [G]	MD5: F0D692B0BFFB46E30EB3CEA168BBC49F	PX5: E79B803D809043E9ED9C00655C5EAE00E1E46E49
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Arp1394 - ImagePath [C:\windows\system32\DRIVERS\arp1394.sys]
C:\windows\System32\drivers\as6eio.sys	InMem: 0	Det [G]	MD5: 1C5307F88C5752478FAED9A96B91FE89	PX5: DB4B7ACF20FF613B0E6700F57E409800B79BCD14
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\as6eio - ImagePath [C:\windows\System32\drivers\as6eio.sys]
C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe	InMem: 0	Det [G]	MD5: E1633440859F9A1B3CEAF73BA85225CA	PX5: B459BB6960A3FB1D836F009875179A005CB18458
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\aspnet_state - ImagePath [C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe]
C:\windows\system32\DRIVERS\asyncmac.sys	InMem: 0	Det [G]	MD5: 02000ABF34AF4C218C35D257024807D6	PX5: 8BD45D2B002F3B40389D007E91CC59004B62F8E9
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\AsyncMac - ImagePath [C:\windows\system32\DRIVERS\asyncmac.sys]
C:\windows\system32\DRIVERS\atapi.sys	InMem: 0	Det [G]	MD5: CDFE4411A69C224BD1D11B2DA92DAC51	PX5: 9D6081B280209DE174C2011395153C00E47C5A8D
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\atapi - ImagePath [C:\windows\system32\DRIVERS\atapi.sys]
C:\WINDOWS\system32\ati2sgag.exe	InMem: 0	Det [G]	MD5: 3AE69EA1AF3D65C362869D6DEC0CFA52	PX5: 0D86579400AF74A6106E09885547380070280E51
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ATI Smart - ImagePath [C:\WINDOWS\system32\ati2sgag.exe]
C:\windows\system32\DRIVERS\ati2mtag.sys	InMem: 0	Det [G]	MD5: EC2743BF722D4356375A0A01B69A81E0	PX5: 5AE27B4200AAE9F674302A712707AD007FF4464F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ati2mtag - ImagePath [C:\windows\system32\DRIVERS\ati2mtag.sys]
C:\windows\system32\DRIVERS\ATITool.sys	InMem: 0	Det [G]	MD5: 0E4BB35C5305099AC82053AC992E3E0E	PX5: 214A0A7D00368B895E0500AFDFC9120097401949
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ATITool - ImagePath [C:\windows\system32\DRIVERS\ATITool.sys]
C:\windows\system32\DRIVERS\atmarpc.sys	InMem: 0	Det [G]	MD5: EC88DA854AB7D7752EC8BE11A741BB7F	PX5: C41A09F600246E0AEA81009B2DE4BF0073057136
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Atmarpc - ImagePath [C:\windows\system32\DRIVERS\atmarpc.sys]
C:\windows\system32\DRIVERS\audstub.sys	InMem: 0	Det [G]	MD5: D9F724AA26C010A217C97606B160ED68	PX5: C910D030000E35B30CDC00441BDEF300B79BCD14
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\audstub - ImagePath [C:\windows\system32\DRIVERS\audstub.sys]
C:\windows\System32\Drivers\avg7core.sys	InMem: 0	Det [G]	MD5: 400E920D2E3F42BF6F1F75DD1B069CE3	PX5: 67739A3E605266738A910CA383908000FB63460D
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Avg7Core - ImagePath [C:\windows\System32\Drivers\avg7core.sys]
C:\windows\System32\Drivers\avg7rsw.sys	InMem: 0	Det [G]	MD5: 8A7E25876955E06142EF65B52C906CF1	PX5: D3752A4F8005D64C100000F6EA3191000922D830
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Avg7RsW - ImagePath [C:\windows\System32\Drivers\avg7rsw.sys]
C:\windows\System32\Drivers\avg7rsxp.sys	InMem: 0	Det [G]	MD5: 04D823D681F0D53191A172C3E667FC33	PX5: 587F629080BFBF736CAB001984B437005EE48C55
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Avg7RsXP - ImagePath [C:\windows\System32\Drivers\avg7rsxp.sys]
C:\windows\System32\Drivers\avgclean.sys	InMem: 0	Det [G]	MD5: 603DC17A48C65C637623A9BB5A5E6008	PX5: 87B050E3083D57B52A2F00D1C9CA3A00EF6956A7
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\AvgClean - ImagePath [C:\windows\System32\Drivers\avgclean.sys]
C:\windows\system32\DRIVERS\cdrom.sys	InMem: 0	Det [G]	MD5: AF9C19B3100FE010496B1A27181FBF72	PX5: B3CE44DD80DABE80C1400031E25C450069663A5F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Cdrom - ImagePath [C:\windows\system32\DRIVERS\cdrom.sys]
C:\windows\system32\cisvc.exe	InMem: 0	Det [G]	MD5: C4E84243292E37CA3B6FAF4A1855B8A7	PX5: B03833B20005A59D1629005665669D00201F0525
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\CiSvc - ImagePath [C:\windows\system32\cisvc.exe]
C:\windows\system32\clipsrv.exe	InMem: 0	Det [G]	MD5: 0A215E4BAC9A1A9381D88C67517C850B	PX5: 50E35C41004F616D823700EBB15ECF008A4FA87F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ClipSrv - ImagePath [C:\windows\system32\clipsrv.exe]
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe	InMem: 0	Det [G]	MD5: 3D560AF01BDC50B4A1E1BFB5CDC06D63	PX5: 639D7FDD58E813780DE701C08A718E00AD3C3A7E
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\clr_optimization_v2.0.50727_32 - ImagePath [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe]
C:\WINDOWS\system32\dllhost.exe	InMem: 0	Det [G]	MD5: F4B3C65E2A3406F32D220019DEB522F8	PX5: 6EA1D06F0041EB21141900B4A32FF2002F6B8881
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\COMSysApp - ImagePath [C:\WINDOWS\system32\dllhost.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SwPrv - ImagePath [C:\WINDOWS\system32\dllhost.exe]
C:\windows\system32\DRIVERS\disk.sys	InMem: 0	Det [G]	MD5: 00CA44E4534865F8A3B64F7C0984BFF0	PX5: 61E4E34300C80A908E6D00C10934AF006F571071
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Disk - ImagePath [C:\windows\system32\DRIVERS\disk.sys]
C:\windows\System32\dmadmin.exe	InMem: 0	Det [G]	MD5: 6C9AAA1AA9BF1699D23DEC4D4113226F	PX5: CB8A3D6900018319702703238C5916001DF268F6
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\dmadmin - ImagePath [C:\windows\System32\dmadmin.exe]
C:\windows\System32\drivers\dmboot.sys	InMem: 0	Det [G]	MD5: 6570B4C952F0D8FEE4C6EF2FF5E10C08	PX5: 917F152000320DE9366A0C362239380089D45879
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\dmboot - ImagePath [C:\windows\System32\drivers\dmboot.sys]
C:\windows\System32\drivers\dmio.sys	InMem: 0	Det [G]	MD5: C57D35621782C7F40770F3E5CA20A182	PX5: 33A7916180B2EE7E5AC702A49AA6DC00E6795F14
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\dmio - ImagePath [C:\windows\System32\drivers\dmio.sys]
C:\windows\System32\drivers\dmload.sys	InMem: 0	Det [G]	MD5: E9317282A63CA4D188C0DF5E09C6AC5F	PX5: FC216AA0003B46A9171D00359F9C1600E909FEB4
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\dmload - ImagePath [C:\windows\System32\drivers\dmload.sys]
C:\windows\system32\drivers\DMusic.sys	InMem: 0	Det [G]	MD5: A6F881284AC1150E37D9AE47FF601267	PX5: 64B493018066E6FACEE6008D21636D008F236B03
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\DMusic - ImagePath [C:\windows\system32\drivers\DMusic.sys]
C:\windows\system32\drivers\drmkaud.sys	InMem: 0	Det [G]	MD5: 1ED4DBBAE9F5D558DBBA4CC450E3EB2E	PX5: FA93CCC9802BA0DD0B8800D3A4C66500B79BCD14
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\drmkaud - ImagePath [C:\windows\system32\drivers\drmkaud.sys]
C:\windows\System32\Drivers\dtscsi.sys	InMem: 0	Det [G]	MD5: 12ACA694B50EA53563C1E7C99E7BB27D	PX5: 09EB6F2198563BB1672703C5BEBDDC00F3DC65FA
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\dtscsi - ImagePath [C:\windows\System32\Drivers\dtscsi.sys]
C:\WINDOWS\system32\DRIVERS\ENTECH.sys	InMem: 0	Det [G]	MD5: FD9FC82F134B1C91004FFC76A5AE494B	PX5: 6AD7E5CDA087876C546200CB639CD9002477BE41
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ENTECH - ImagePath [C:\WINDOWS\system32\DRIVERS\ENTECH.sys]
C:\windows\system32\DRIVERS\fdc.sys	InMem: 0	Det [G]	MD5: CED2E8396A8838E59D8FD529C680E02C	PX5: 030113CC009ED3836B77000B64308F0030511E66
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Fdc - ImagePath [C:\windows\system32\DRIVERS\fdc.sys]
C:\Programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe	InMem: 0	Det [G]	MD5: 227846995AFEEFA70D328BF5334A86A5	PX5: 1DF0F05C001C564AFEAD09E72969BB0036C2AF88
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\FLEXnet Licensing Service - ImagePath [C:\Programmi\File comuni\Macrovision Shared\FLEXnet Publisher\FN]
C:\windows\system32\DRIVERS\flpydisk.sys	InMem: 0	Det [G]	MD5: 0DD1DE43115B93F4D85E889D7A86F548	PX5: 60E1171000EEA79E50BF00391F7EE000F2860CEC
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Flpydisk - ImagePath [C:\windows\system32\DRIVERS\flpydisk.sys]
C:\windows\system32\DRIVERS\fltMgr.sys	InMem: 0	Det [G]	MD5: 3D234FB6D6EE875EB009864A299BEA29	PX5: DD494D2180C4BB98F7F901405AA62900817D3A94
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\FltMgr - ImagePath [C:\windows\system32\DRIVERS\fltMgr.sys]
C:\windows\system32\DRIVERS\ftdisk.sys	InMem: 0	Det [G]	MD5: F3269A6EE547EA87B949A1CEA4816B38	PX5: D543638280F1FAF5EBA30154BD3E7700D3ED2EEC
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Ftdisk - ImagePath [C:\windows\system32\DRIVERS\ftdisk.sys]
C:\windows\system32\DRIVERS\msgpc.sys	InMem: 0	Det [G]	MD5: C0F1D4A21DE5A415DF8170616703DEBF	PX5: A6DC8C520088C979894600B57B2B1A00363C4157
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Gpc - ImagePath [C:\windows\system32\DRIVERS\msgpc.sys]
C:\windows\system32\DRIVERS\HDAudBus.sys	InMem: 0	Det [G]	MD5: 3FCC124B6E08EE0E9351F717DD136939	PX5: 0BF29F2900ECCC301EAB02F054A1A700522B006C
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\HDAudBus - ImagePath [C:\windows\system32\DRIVERS\HDAudBus.sys]
C:\windows\System32\Drivers\HTTP.sys	InMem: 0	Det [G]	MD5: CB77BB47E67E84DEB17BA29632501730	PX5: 1A572A9180D9F92E022704747529EC0016C1652C
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\HTTP - ImagePath [C:\windows\System32\Drivers\HTTP.sys]
C:\windows\system32\DRIVERS\i8042prt.sys	InMem: 0	Det [G]	MD5: 30E64DFA4EFAACC8142EA07766181FB4	PX5: 5176B379805D75ECD1900002BF9BC2003FF0C0D5
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\i8042prt - ImagePath [C:\windows\system32\DRIVERS\i8042prt.sys]
C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDriverT.exe	InMem: 0	Det [G]	MD5: 1CF03C69B49ACB70C722DF92755C0C8C	PX5: 22C88065009353A410B701F0598F040069CA50D0
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IDriverT - ImagePath [C:\Programmi\File comuni\InstallShield\Driver\11\Intel 32\IDrive]
C:\windows\system32\DRIVERS\imapi.sys	InMem: 0	Det [G]	MD5: F8AA320C6A0409C0380E5D8A99D76EC6	PX5: A6DE19768012C7FDA37F00B5535D7900050612BF
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Imapi - ImagePath [C:\windows\system32\DRIVERS\imapi.sys]
C:\WINDOWS\system32\imapi.exe	InMem: 0	Det [G]	MD5: ED7ABB35C81709FB41972D30FE15311E	PX5: 74CFCD09009BDDD14A8402202B1E530034B0D214
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ImapiService - ImagePath [C:\WINDOWS\system32\imapi.exe]
C:\windows\system32\drivers\RtkHDAud.sys	InMem: 0	Det [G]	MD5: 0437F0B4E0F84FBC5463F71A911006D3	PX5: 38528F1C002A2D74D2D82C412DDAC50052B02FA0
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IntcAzAudAddService - ImagePath [C:\windows\system32\drivers\RtkHDAud.sys]
C:\windows\system32\DRIVERS\intelppm.sys	InMem: 0	Det [G]	MD5: EBC07787034BBE312020D30198A9F362	PX5: 308DA7E000DC5FE09D58006BABC91A0052CD17AF
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\intelppm - ImagePath [C:\windows\system32\DRIVERS\intelppm.sys]
C:\windows\system32\DRIVERS\Ip6Fw.sys	InMem: 0	Det [G]	MD5: 4448006B6BC60E6C027932CFC38D6855	PX5: 554B18088049820E711F003BBA86E4005B660DCC
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Ip6Fw - ImagePath [C:\windows\system32\DRIVERS\Ip6Fw.sys]
C:\windows\system32\DRIVERS\ipfltdrv.sys	InMem: 0	Det [G]	MD5: 731F22BA402EE4B62748ADAF6363C182	PX5: E130718C809C039180F700DA0AC8EE00F2B31814
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IpFilterDriver - ImagePath [C:\windows\system32\DRIVERS\ipfltdrv.sys]
C:\windows\system32\DRIVERS\ipinip.sys	InMem: 0	Det [G]	MD5: E1EC7F5DA720B640CD8FB8424F1B14BB	PX5: 9655BFAF0030F62E523A00C352D248003081C413
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IpInIp - ImagePath [C:\windows\system32\DRIVERS\ipinip.sys]
C:\windows\system32\DRIVERS\ipnat.sys	InMem: 0	Det [G]	MD5: E2168CBC7098FFE963C6F23F472A3593	PX5: 16BC903800541BF40F8E02F0609797000CA3B3FE
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IpNat - ImagePath [C:\windows\system32\DRIVERS\ipnat.sys]
C:\windows\system32\DRIVERS\ipsec.sys	InMem: 0	Det [G]	MD5: 64537AA5C003A6AFEEE1DF819062D0D1	PX5: 84ED89D600412A2C245201A3F8A740006B772EC6
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IPSec - ImagePath [C:\windows\system32\DRIVERS\ipsec.sys]
C:\windows\system32\DRIVERS\irenum.sys	InMem: 0	Det [G]	MD5: 50708DAA1B1CBB7D6AC1CF8F56A24410	PX5: 42D7DCAC001BE9A12C7B00EF915041002AED16BC
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\IRENUM - ImagePath [C:\windows\system32\DRIVERS\irenum.sys]
C:\windows\system32\DRIVERS\isapnp.sys	InMem: 0	Det [G]	MD5: EA3245A8E8758D6B84DE189A5CAAA75E	PX5: 8A87001A0002BFB48D1F0066402D8A00BD468997
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\isapnp - ImagePath [C:\windows\system32\DRIVERS\isapnp.sys]
C:\windows\system32\DRIVERS\iteatapi.sys	InMem: 0	Det [G]	MD5: 1FB76EB4CAA25D493B20781F7CDD6818	PX5: 1F2711EB5023FCCE63490057E56E5400F3059515
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\iteatapi - ImagePath [C:\windows\system32\DRIVERS\iteatapi.sys]
C:\windows\system32\DRIVERS\kbdclass.sys	InMem: 0	Det [G]	MD5: E883AE6EA0B313E659225AA32E449CE9	PX5: 11013D51001BA498620F00A282D06D00135D5A16
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Kbdclass - ImagePath [C:\windows\system32\DRIVERS\kbdclass.sys]
C:\windows\system32\drivers\kmixer.sys	InMem: 0	Det [G]	MD5: BA5DEDA4D934E6288C2F66CAF58D2562	PX5: 1C3250A68067C4B7A11302D8512D99006E8A628F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\kmixer - ImagePath [C:\windows\system32\drivers\kmixer.sys]
C:\WINDOWS\system32\mnmsrvc.exe	InMem: 0	Det [G]	MD5: 940A4E02B7F03C2592A52E16DDDB3E46	PX5: F2F6E69800D71BFC80AE00AF40E07800F93A911A
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\mnmsrvc - ImagePath [C:\WINDOWS\system32\mnmsrvc.exe]
C:\windows\system32\DRIVERS\mouclass.sys	InMem: 0	Det [G]	MD5: C458E314B8722253897C94A714C2E0C0	PX5: 7E80CA6A0038C59C5C6F0047F0E35500920EB276
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Mouclass - ImagePath [C:\windows\system32\DRIVERS\mouclass.sys]
C:\windows\system32\DRIVERS\mrxdav.sys	InMem: 0	Det [G]	MD5: 29414447EB5BDE2F8397DC965DBB3156	PX5: 614867E18023D003BDFE0234E558A700F3D6C8CF
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MRxDAV - ImagePath [C:\windows\system32\DRIVERS\mrxdav.sys]
C:\windows\system32\DRIVERS\mrxsmb.sys	InMem: 0	Det [G]	MD5: 025AF03CE51645C62F3B6907A7E2BE5E	PX5: 3A6FDF2E00838449EA5E06BDEF52FE0062D6AA8B
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MRxSmb - ImagePath [C:\windows\system32\DRIVERS\mrxsmb.sys]
C:\WINDOWS\system32\msdtc.exe	InMem: 0	Det [G]	MD5: 3124662B40761A3EF8F4254D2F32E3F4	PX5: 3A5257C800292C38184B000639E3D800639539E0
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MSDTC - ImagePath [C:\WINDOWS\system32\msdtc.exe]
C:\WINDOWS\system32\msiexec.exe	InMem: 0	Det [L]	MD5: F5F0146580E7023ADB963879840777F8	PX5: 2199A4A600D88009341401C8D9AE0A004C78202A
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MSIServer - ImagePath [C:\WINDOWS\system32\msiexec.exe]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\Msi.Package\shell\open\command -  ["%SystemRoot%\System32\msiexec.exe" /i "%1" %*]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\Msi.Patch\shell\open\command -  ["%SystemRoot%\System32\msiexec.exe" /p "%1" %*]
C:\windows\system32\drivers\MSKSSRV.sys	InMem: 0	Det [G]	MD5: AE431A8DD3C1D0D0610CDBAC16057AD0	PX5: 441E162B80A429811D1500CB9CEDF700CED69BEA
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MSKSSRV - ImagePath [C:\windows\system32\drivers\MSKSSRV.sys]
C:\windows\system32\drivers\MSPCLOCK.sys	InMem: 0	Det [G]	MD5: 13E75FEF9DFEB08EEDED9D0246E1F448	PX5: 3656535900693AA115D1001337247B009D5BCE4B
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MSPCLOCK - ImagePath [C:\windows\system32\drivers\MSPCLOCK.sys]
C:\windows\system32\drivers\MSPQM.sys	InMem: 0	Det [G]	MD5: 1988A33FF19242576C3D0EF9CE785DA7	PX5: 5D7EA63E804A637C13CA0078C414AC000E912E93
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MSPQM - ImagePath [C:\windows\system32\drivers\MSPQM.sys]
C:\windows\system32\DRIVERS\mssmbios.sys	InMem: 0	Det [G]	MD5: 469541F8BFD2B32659D5D463A6714BCE	PX5: 5C75220680F731D03C3D001BD399CC00D7DBED29
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\mssmbios - ImagePath [C:\windows\system32\DRIVERS\mssmbios.sys]
C:\windows\system32\DRIVERS\ASACPI.sys	InMem: 0	Det [G]	MD5: D48659BB24C48345D926ECB45C1EBDF5	PX5: 7309133CB20421B216270097B9A4E300CE1E41B9
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\MTsensor - ImagePath [C:\windows\system32\DRIVERS\ASACPI.sys]
C:\windows\system32\DRIVERS\ndistapi.sys	InMem: 0	Det [G]	MD5: 08D43BBDACDF23F34D79E44ED35C1B4C	PX5: 25AEC9EA809D4D4825A500A2A9E22F00CCB1FFC8
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NdisTapi - ImagePath [C:\windows\system32\DRIVERS\ndistapi.sys]
C:\windows\system32\DRIVERS\ndisuio.sys	InMem: 0	Det [G]	MD5: 34D6CD56409DA9A7ED573E1C90A308BF	PX5: 0BF3AB388038D73732EB00A9A855ED006D3C0384
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Ndisuio - ImagePath [C:\windows\system32\DRIVERS\ndisuio.sys]
C:\windows\system32\DRIVERS\ndiswan.sys	InMem: 0	Det [G]	MD5: 0B90E255A9490166AB368CD55A529893	PX5: 304E26E9803B344266FF0104DAA0B500E6B358BD
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NdisWan - ImagePath [C:\windows\system32\DRIVERS\ndiswan.sys]
C:\windows\system32\DRIVERS\netbios.sys	InMem: 0	Det [G]	MD5: 3A2ACA8FC1D7786902CA434998D7CEB4	PX5: 6F5EDA40008AE18787EB007972CAB100F174D35C
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NetBIOS - ImagePath [C:\windows\system32\DRIVERS\netbios.sys]
C:\windows\system32\DRIVERS\netbt.sys	InMem: 0	Det [G]	MD5: 0C80E410CD2F47134407EE7DD19CC86B	PX5: 7D3B6A2A0069D5737CDE020A47DE6F00F472D659
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NetBT - ImagePath [C:\windows\system32\DRIVERS\netbt.sys]
C:\windows\system32\netdde.exe	InMem: 0	Det [G]	MD5: DE62EE316FAB09DE3D7A5180F0775ABF	PX5: AAA3C89900BB76ABBADC01BFB3AC1B00E2E8A55F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NetDDE - ImagePath [C:\windows\system32\netdde.exe]
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NetDDEdsdm - ImagePath [C:\windows\system32\netdde.exe]
C:\windows\system32\DRIVERS\nic1394.sys	InMem: 0	Det [G]	MD5: 5C5C53DB4FEF16CF87B9911C7E8C6FBC	PX5: 720917AF800A6EE8F12400F5E9C6E000F750E215
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NIC1394 - ImagePath [C:\windows\system32\DRIVERS\nic1394.sys]
C:\Programmi\File comuni\Nero\Lib\NMIndexingService.exe	InMem: 0	Det [GP]	MD5: 1BEF5464C06F4AF0C704378824C52ADB	PX5: 8B53D6502861ECEFD517055C464F65002F881F19
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NMIndexingService - ImagePath [C:\Programmi\File comuni\Nero\Lib\NMIndexingService.exe]
C:\windows\system32\DRIVERS\nwlnkflt.sys	InMem: 0	Det [G]	MD5: B305F3FAD35083837EF46A0BBCE2FC57	PX5: A826BA3A803B83AE30C000488911C200DC3CA878
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NwlnkFlt - ImagePath [C:\windows\system32\DRIVERS\nwlnkflt.sys]
C:\windows\system32\DRIVERS\nwlnkfwd.sys	InMem: 0	Det [G]	MD5: C99B3415198D1AAB7227F2C88FD664B9	PX5: B9B73139006979BB7FBC0031EA7E320032D237D0
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\NwlnkFwd - ImagePath [C:\windows\system32\DRIVERS\nwlnkfwd.sys]
C:\Programmi\File comuni\Microsoft Shared\OFFICE12\ODSERV.EXE	InMem: 0	Det [GP]	MD5: E54AA592A65F317390EEE386A8821692	PX5: 0AD576DD80101066C51606BB2E2EBD008D15B081
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\odserv - ImagePath [C:\Programmi\File comuni\Microsoft Shared\OFFICE12\ODSERV.EXE]
C:\windows\system32\DRIVERS\ohci1394.sys	InMem: 0	Det [G]	MD5: 0951DB8E5823EA366B0E408D71E1BA2A	PX5: 4A6E8F7F8033FF34EE4200E871B4F300047CEC38
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ohci1394 - ImagePath [C:\windows\system32\DRIVERS\ohci1394.sys]
C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE	InMem: 0	Det [G]	MD5: 5A432A042DAE460ABE7199B758E8606C	PX5: 70BFBB612075A40537DB02A8E0C1B70069455692
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\ose - ImagePath [C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE]
C:\windows\system32\DRIVERS\parport.sys	InMem: 0	Det [G]	MD5: 3490EAD0612BFD0E7C1B864EE24E6A4A	PX5: 4A82394D8019443A393C017F618C1500973C174B
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Parport - ImagePath [C:\windows\system32\DRIVERS\parport.sys]
C:\windows\system32\DRIVERS\pci.sys	InMem: 0	Det [G]	MD5: 91FC1D483D900B1C0600A08B871C39D5	PX5: 9DA3602E807459480C5D01595A918400CA482387
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PCI - ImagePath [C:\windows\system32\DRIVERS\pci.sys]
C:\windows\system32\DRIVERS\pciide.sys	InMem: 0	Det [G]	MD5: B2DF00D650FD6C4EE781740ED3C8E67F	PX5: 826808EE00CFD8500D55002AE8E7E200B79BCD14
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PCIIde - ImagePath [C:\windows\system32\DRIVERS\pciide.sys]
C:\windows\system32\DRIVERS\raspptp.sys	InMem: 0	Det [G]	MD5: 1C5CC65AAC0783C344F16353E60B72AC	PX5: F406FA260016D348BD2800EFDBDF52003203F53C
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PptpMiniport - ImagePath [C:\windows\system32\DRIVERS\raspptp.sys]
C:\windows\system32\DRIVERS\psched.sys	InMem: 0	Det [G]	MD5: 48671F327553DCF1D27F6197F622A668	PX5: C7C1320E008655110E77011715C66E0009C5AE75
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PSched - ImagePath [C:\windows\system32\DRIVERS\psched.sys]
C:\windows\system32\DRIVERS\ptilink.sys	InMem: 0	Det [G]	MD5: 80D317BD1C3DBC5D4FE7B1678C60CADD	PX5: F96F182D805891FA452B007EBD870E004C25BA07
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Ptilink - ImagePath [C:\windows\system32\DRIVERS\ptilink.sys]
C:\windows\System32\drivers\pxark.sys	InMem: 0	Det [G]	MD5: 5366C15BFB99502A5A0DD218BFBACCBF	PX5: 50698F1300612E502B6C00001ED8EE00020A0AD1
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\pxark - ImagePath [C:\windows\System32\drivers\pxark.sys]
C:\windows\system32\DRIVERS\PxHelp20.sys	InMem: 0	Det [G]	MD5: D86B4A68565E444D76457F14172C875A	PX5: CEED5A5408FE9DE2AA3300585AD0A300BEEAAC3B
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\PxHelp20 - ImagePath [C:\windows\system32\DRIVERS\PxHelp20.sys]
C:\windows\system32\DRIVERS\rasacd.sys	InMem: 0	Det [G]	MD5: FE0D99D6F31E4FAD8159F690D68DED9C	PX5: EF519CA180B540A42200002C4F06E3005372DD33
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RasAcd - ImagePath [C:\windows\system32\DRIVERS\rasacd.sys]
C:\windows\system32\DRIVERS\rasl2tp.sys	InMem: 0	Det [G]	MD5: 98FAEB4A4DCF812BA1C6FCA4AA3E115C	PX5: C15C1546804EC8E6C8410037F34FAD00B1FBF6DF
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Rasl2tp - ImagePath [C:\windows\system32\DRIVERS\rasl2tp.sys]
C:\windows\system32\DRIVERS\raspppoe.sys	InMem: 0	Det [G]	MD5: 7306EEED8895454CBED4669BE9F79FAA	PX5: A8F2C94800B2E031A21A00F0EC682E009B5794D5
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RasPppoe - ImagePath [C:\windows\system32\DRIVERS\raspppoe.sys]
C:\windows\system32\DRIVERS\raspti.sys	InMem: 0	Det [G]	MD5: FDBB1D60066FCFBB7452FD8F9829B242	PX5: 506F10F380FEE57C406900BE351741009F00F0DE
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Raspti - ImagePath [C:\windows\system32\DRIVERS\raspti.sys]
C:\windows\system32\DRIVERS\rdbss.sys	InMem: 0	Det [G]	MD5: 03B965B1CA47F6EF60EB5E51CB50E0AF	PX5: EE21D17900972EBEAA93023D87A14E0013D2E867
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Rdbss - ImagePath [C:\windows\system32\DRIVERS\rdbss.sys]
C:\windows\System32\DRIVERS\RDPCDD.sys	InMem: 0	Det [G]	MD5: 4912D5B403614CE99C28420F75353332	PX5: 14FCFAAE80A686EB103300CFAE183900CB624D74
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RDPCDD - ImagePath [C:\windows\System32\DRIVERS\RDPCDD.sys]
C:\windows\system32\DRIVERS\rdpdr.sys	InMem: 0	Det [G]	MD5: A2CAE2C60BC37E0751EF9DDA7CEAF4AD	PX5: 02477783007980B5019E03607F7E03003B692115
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\rdpdr - ImagePath [C:\windows\system32\DRIVERS\rdpdr.sys]
C:\WINDOWS\system32\sessmgr.exe	InMem: 0	Det [G]	MD5: CC0693C481502844A24EF71B90A7195E	PX5: 2C67C68B0020C05D2C3E02893D0F09005D1CF7F5
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RDSessMgr - ImagePath [C:\WINDOWS\system32\sessmgr.exe]
C:\windows\system32\DRIVERS\redbook.sys	InMem: 0	Det [G]	MD5: A8EEE004A16AF1D583D9DE9F6DE250E0	PX5: AEF2FC7D804F986FE3C7004FF2D91D0029FD0FC2
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\redbook - ImagePath [C:\windows\system32\DRIVERS\redbook.sys]
C:\windows\system32\locator.exe	InMem: 0	Det [G]	MD5: 33A8F0FE0005B2D79DF53441679F5149	PX5: C3C0A8550045DDC726E601EBB10B83000E4A4556
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RpcLocator - ImagePath [C:\windows\system32\locator.exe]
C:\windows\system32\rsvp.exe	InMem: 0	Det [G]	MD5: DCE0D20F8FB66DF41D53734BFF9D66F0	PX5: 2057508700E163D906880231F30F2D00E5519440
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\RSVP - ImagePath [C:\windows\system32\rsvp.exe]
C:\windows\System32\SCardSvr.exe	InMem: 0	Det [G]	MD5: 74B1E7FCFCA9A3A23871AA014144013E	PX5: FFC6D19800BAA7847E46014ECC3CD200949D4E12
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SCardSvr - ImagePath [C:\windows\System32\SCardSvr.exe]
C:\windows\system32\DRIVERS\secdrv.sys	InMem: 0	Det [G]	MD5: 90A3935D05B494A5A39D37E71F09A677	PX5: 84A9A7CB006F9ECC508100883E7135006D51A95C
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Secdrv - ImagePath [C:\windows\system32\DRIVERS\secdrv.sys]
C:\windows\system32\DRIVERS\serenum.sys	InMem: 0	Det [G]	MD5: A2D868AEEFF612E70E213C451A70CAFB	PX5: 4F3C7EAD801665B83CEF00E324D68C009966C2DD
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\serenum - ImagePath [C:\windows\system32\DRIVERS\serenum.sys]
C:\windows\system32\DRIVERS\serial.sys	InMem: 0	Det [G]	MD5: DBAB3260E7EB3398CB87267D1410FAD4	PX5: 84269A0C80DA4AE9020E01315B99420097A96A32
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Serial - ImagePath [C:\windows\system32\DRIVERS\serial.sys]
C:\windows\system32\DRIVERS\sfloppy.sys	InMem: 0	Det [G]	MD5: 0D13B6DF6E9E101013A7AFB0CE629FE0	PX5: 6884E1AE807AAB872CD300DC197E0C00B015D834
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Sfloppy - ImagePath [C:\windows\system32\DRIVERS\sfloppy.sys]
C:\windows\system32\DRIVERS\SI3132.sys	InMem: 0	Det [G]	MD5: 9604998D0C578608151B6E59266FCAE1	PX5: B220720980693F0A06C501F74AE238004B1F100F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SI3132 - ImagePath [C:\windows\system32\DRIVERS\SI3132.sys]
C:\windows\system32\DRIVERS\SiWinAcc.sys	InMem: 0	Det [G]	MD5: 72CF151FB410E544904DBC7D7F29B796	PX5: FC331014808A1CB0281B0060CBC63700BF3DED19
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SiFilter - ImagePath [C:\windows\system32\DRIVERS\SiWinAcc.sys]
C:\windows\system32\drivers\splitter.sys	InMem: 0	Det [G]	MD5: 0CE218578FFF5F4F7E4201539C45C78F	PX5: 249A00630095166C194E008C6AC35800063B57CE
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\splitter - ImagePath [C:\windows\system32\drivers\splitter.sys]
C:\windows\System32\Drivers\sptd.sys	InMem: 0	Det [G]	MD5: 0C1DAD75274CB6E31F053CE3E08BF9C3	PX5: BC170CA8F0519021E90B0A795DCF8C00B35159BD
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\sptd - ImagePath [C:\windows\System32\Drivers\sptd.sys]
C:\windows\system32\DRIVERS\sr.sys	InMem: 0	Det [G]	MD5: 896F566AFC498077172EAE8A50E8BAF8	PX5: 4D90659E00D8A4771F1A013E6E421F00F36027A5
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\sr - ImagePath [C:\windows\system32\DRIVERS\sr.sys]
C:\windows\system32\DRIVERS\srv.sys	InMem: 0	Det [G]	MD5: EA554A3FFC3F536FE8320EB38F5E4843	PX5: 75BFBC608040FEEB14BC05A8A20D28000AA8481B
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Srv - ImagePath [C:\windows\system32\DRIVERS\srv.sys]
C:\windows\system32\DRIVERS\swenum.sys	InMem: 0	Det [G]	MD5: 03C1BAE4766E2450219D20B993D6E046	PX5: FDB253C8004ADC8E110200CB82EF3C003BACCEF1
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\swenum - ImagePath [C:\windows\system32\DRIVERS\swenum.sys]
C:\windows\system32\drivers\swmidi.sys	InMem: 0	Det [G]	MD5: 94ABC808FC4B6D7D2BBF42B85E25BB4D	PX5: D73823E800EBA9D4D48400057CBBEE004EA1E5C8
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\swmidi - ImagePath [C:\windows\system32\drivers\swmidi.sys]
C:\windows\system32\drivers\sysaudio.sys	InMem: 0	Det [G]	MD5: 650AD082D46BAC0E64C9C0E0928492FD	PX5: 23CF2276806778A5EDCF00D9512FDE00BB195FEF
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\sysaudio - ImagePath [C:\windows\system32\drivers\sysaudio.sys]
C:\windows\system32\smlogsvc.exe	InMem: 0	Det [G]	MD5: BC8B8694DEF74B4E6C626322D4321A54	PX5: C0E6801A0095AB606A660128541E440050C06325
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\SysmonLog - ImagePath [C:\windows\system32\smlogsvc.exe]
C:\windows\system32\DRIVERS\tcpip.sys	InMem: 0	Det [G]	MD5: 482AB7F9CD41702E8F856C11CFEFB02D	PX5: 9F6EEC1C80D7CCB57E0F0545DD505C00DB84D315
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Tcpip - ImagePath [C:\windows\system32\DRIVERS\tcpip.sys]
C:\windows\system32\DRIVERS\termdd.sys	InMem: 0	Det [G]	MD5: A540A99C281D933F3D69D55E48727F47	PX5: 3111E3EA882052CE9F39002D38F46900A7415306
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\TermDD - ImagePath [C:\windows\system32\DRIVERS\termdd.sys]
C:\WINDOWS\system32\tlntsvr.exe	InMem: 0	Det [G]	MD5: 2A9DAAEF2CC0333DB6F129F2F8B3D3FD	PX5: F869AF89008EB51B24EC0113A0DCBB001FBDD7D2
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\TlntSvr - ImagePath [C:\WINDOWS\system32\tlntsvr.exe]
C:\windows\system32\DRIVERS\update.sys	InMem: 0	Det [G]	MD5: CED744117E91BDC0BEB810F7D8608183	PX5: DB815C1080BD5D598E3605C672D6A20096A59C7E
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Update - ImagePath [C:\windows\system32\DRIVERS\update.sys]
C:\windows\System32\ups.exe	InMem: 0	Det [G]	MD5: E4896F38A3F8DACEA6EA8D7EC9889D91	PX5: B1B748F7000750CB484000B4D1F04D00484BD2C2
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\UPS - ImagePath [C:\windows\System32\ups.exe]
C:\windows\system32\DRIVERS\usbehci.sys	InMem: 0	Det [G]	MD5: 15E993BA2F6946B2BFBBFCD30398621E	PX5: 42E57CAC00DC4FAF684000867EE93C003087E4F7
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbehci - ImagePath [C:\windows\system32\DRIVERS\usbehci.sys]
C:\windows\system32\DRIVERS\usbhub.sys	InMem: 0	Det [G]	MD5: C72F40947F92CEA56A8FB532EDF025F1	PX5: 1972CD35009EF197E1E10053A918EE0090181966
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbhub - ImagePath [C:\windows\system32\DRIVERS\usbhub.sys]
C:\windows\system32\DRIVERS\usbprint.sys	InMem: 0	Det [G]	MD5: A42369B7CD8886CD7C70F33DA6FCBCF5	PX5: C449F0710094064A6580004CDAAF0B00CAA1349A
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbprint - ImagePath [C:\windows\system32\DRIVERS\usbprint.sys]
C:\windows\system32\DRIVERS\usbscan.sys	InMem: 0	Det [G]	MD5: A6BC71402F4F7DD5B77FD7F4A8DDBA85	PX5: A345B33E004758873B29000DE02C9B00A6455141
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbscan - ImagePath [C:\windows\system32\DRIVERS\usbscan.sys]
C:\windows\system32\DRIVERS\usbsermpt.sys	InMem: 0	Det [G]	MD5: CAAD3467FBFAE8A380F67E9C7150A85E	PX5: B31B494FF0A29A9D58A200C8C939EE005ED90F36
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbsermpt - ImagePath [C:\windows\system32\DRIVERS\usbsermpt.sys]
C:\windows\system32\DRIVERS\USBSTOR.SYS	InMem: 0	Det [G]	MD5: 6CD7B22193718F1D17A47A1CD6D37E75	PX5: 6135CAAA80509344675C002A218295006093CEAA
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbstor - ImagePath [C:\windows\system32\DRIVERS\USBSTOR.SYS]
C:\windows\system32\DRIVERS\usbuhci.sys	InMem: 0	Det [G]	MD5: F8FD1400092E23C8F2F31406EF06167B	PX5: 4756F37D00016D8B5030004DF844F10054C11836
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usbuhci - ImagePath [C:\windows\system32\DRIVERS\usbuhci.sys]
C:\Programmi\MSN Messenger\usnsvc.exe	InMem: 0	Det [GP]	MD5: C5B70A6AA947667CE0E5FC84A05EC8B6	PX5: 5ADE8CB4702068007B8E0103793683003D23EE98
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\usnjsvc - ImagePath [C:\Programmi\MSN Messenger\usnsvc.exe]
C:\windows\System32\drivers\vga.sys	InMem: 0	Det [G]	MD5: 8A60EDD72B4EA5AEA8202DAF0E427925	PX5: 14B18202007EA0B752C8003693833D00BCED634F
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\VgaSave - ImagePath [C:\windows\System32\drivers\vga.sys]
C:\windows\system32\DRIVERS\vncmirror.sys	InMem: 0	Det [G]	MD5: EFC092B667CBBE3B0A089DB902DF7FF6	PX5: A4DBCEE2005EF5E00CF500DCA2FFFF00B79BCD14
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\vncmirror - ImagePath [C:\windows\system32\DRIVERS\vncmirror.sys]
C:\windows\System32\vssvc.exe	InMem: 0	Det [G]	MD5: 147C653AD61BD01556723B3C8C4FAFC8	PX5: F8FD01E1006746AE7C9C04ADE2180F00B254A617
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\VSS - ImagePath [C:\windows\System32\vssvc.exe]
C:\windows\system32\DRIVERS\wanarp.sys	InMem: 0	Det [G]	MD5: 984EF0B9788ABF89974CFED4BFBAACBC	PX5: D61BDDFF00BF41D487E5002B87E94900EE92AF43
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\Wanarp - ImagePath [C:\windows\system32\DRIVERS\wanarp.sys]
C:\windows\system32\DRIVERS\wceusbsh.sys	InMem: 0	Det [G]	MD5: 46A247F6617526AFE38B6F12F5512120	PX5: 0A00F3FD0011215C7024001D2F29340072C06152
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\wceusbsh - ImagePath [C:\windows\system32\DRIVERS\wceusbsh.sys]
C:\windows\system32\drivers\wdmaud.sys	InMem: 0	Det [G]	MD5: EFD235CA22B57C81118C1AEB4798F1C1	PX5: 1A706C8200C406CF446E0184AD924B00FE330A09
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\wdmaud - ImagePath [C:\windows\system32\drivers\wdmaud.sys]
C:\WINDOWS\system32\wbem\wmiapsrv.exe	InMem: 0	Det [G]	MD5: 0EE2A2754039B13A632489726689DAD0	PX5: A8EB9B0C007C19C1EE9501FD1D31580061EB57F5
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WmiApSrv - ImagePath [C:\WINDOWS\system32\wbem\wmiapsrv.exe]
C:\windows\system32\DRIVERS\WudfPf.sys	InMem: 0	Det [G]	MD5: F15FEAFFFBB3644CCC80C5DA584E6311	PX5: 0CF32E7D00C942692FB1016FE6CD6B005D0F67E4
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WudfPf - ImagePath [C:\windows\system32\DRIVERS\WudfPf.sys]
C:\windows\system32\DRIVERS\wudfrd.sys	InMem: 0	Det [G]	MD5: 28B524262BCE6DE1F7EF9F510BA3985B	PX5: 938378B8001690D3445C01DE64563A001F0572DD
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\WudfRd - ImagePath [C:\windows\system32\DRIVERS\wudfrd.sys]
C:\windows\system32\DRIVERS\yk51x86.sys	InMem: 0	Det [G]	MD5: DEB4C7D9F61A75C360B925BF0592275D	PX5: 3869FE26008A6A5A828603CC88FCA1007F3841C0
	REGSERVICE - \REGISTRY\Machine\SYSTEM\ControlSet004\Services\yukonwxp - ImagePath [C:\windows\system32\DRIVERS\yk51x86.sys]
C:\Programmi\PrevxCSI\prevxcsi.exe	InMem: 1	Det [GP]	MD5: 0A142F5C52D56C947CB14DCF2DAAFFBB	PX5: 8C75877B00DBED6E5E6B018A7647BF00E2C6767C
C:\Programmi\PrevxCSI\CSICORE.DLL	InMem: 1	Det [GP]	MD5: A0D72E93B9799CDAD4188C85E248A0F7	PX5: F7966D21001605564AE204900658AF008C09D10D
C:\Programmi\PrevxCSI\csiLang.dll	InMem: 1	Det [GP]	MD5: 40BC04CD06528EBCFC414AD6F7C845C1	PX5: 44FC3B0000F3E5169AC801313D264500534E49D3
C:\Programmi\PrevxCSI\csiPart.dll	InMem: 1	Det [GP]	MD5: 038037C580B4D4C276407F44F3848D91	PX5: 459EEE08004BB0E8AC8A0015FA256700572E1113
C:\windows\system\smvss.exe	InMem: 0	Det [UP]	MD5: 480E424083A9F2493C08600382FD061A	PX5: AD131A7C00E44DCF861F00C64A9FF800A09F8B27
	REGRUNKEY - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Run - devenv [C:\windows\system\smvss.exe /w]
C:\AVG 7\avgw.exe	InMem: 0	Det [G]	MD5: B331EF4C7437F5093D703340678469EB	PX5: 75C2FBB50077C4CB589103ED9FC2A900DCA9D54E
	REGRUNKEY - \REGISTRY\User\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run - AVG7_Run [C:\AVG7~1\avgw.exe /RUNONCE]
	REGRUNKEY - \REGISTRY\User\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run - AVG7_Run [C:\AVG7~1\avgw.exe /RUNONCE]
	REGRUNKEY - \REGISTRY\User\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run - AVG7_Run [C:\AVG7~1\avgw.exe /RUNONCE]
	REGRUNKEY - \REGISTRY\User\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run - AVG7_Run [C:\AVG7~1\avgw.exe /RUNONCE]
C:\WINDOWS\system32\userinit.exe	InMem: 0	Det [G]	MD5: C1E7FE19F98A877BF8F941BF48148695	PX5: 33A4BB2F001DA1EB620B00510674AE00F15A5361
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - UserInit [C:\WINDOWS\system32\userinit.exe]
C:\windows\system32\logonui.exe	InMem: 0	Det [G]	MD5: 43BDF167CE792A5639D99AD7F1EABC1C	PX5: 6B3184960083D65DDE0B0761A134100078FE806C
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - UIHost [logonui.exe]
C:\windows\system32\rundll32.exe	InMem: 0	Det [G]	MD5: F88CDB0CCC416B3778736BE74CDEBB94	PX5: 797CA9E8007174E38209003396ABA600D9E79205
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon - VmApplet [rundll32 shell32,Control_RunDLL "sysdm.cpl"]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - StubPath [RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmt]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.i]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820} - StubPath [C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dl]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\ShellScrap\shell\open\command -  [rundll32 %SystemRoot%\system32\shscrap.dll,OpenScrap_RunDLL %1]
C:\windows\system32\autochk.exe	InMem: 0	Det [G]	MD5: 779768A0A8091EDB749DCB8FE60213E1	PX5: 38890F3300760B775A86096430A56A00DB68AE82
	REGSESSMGR - \REGISTRY\Machine\System\CurrentControlSet\Control\Session Manager - BootExecute [autocheck]
C:\windows\system32\lsdelete.exe	InMem: 0	Det [G]	MD5: 56D1AA22BDBFDE2E3A64A93359DD9397	PX5: 685EDCA958E6FFEB31CF00F4C9946C00F7865F85
	REGSESSMGR - \REGISTRY\Machine\System\CurrentControlSet\Control\Session Manager - BootExecute [autocheck]
C:\WINDOWS\system32\msjava.dll	InMem: 0	Det [G]	MD5: E75AA32C6B79C846F5314CA4DA92F29E	PX5: 01A2D955103896C5756F0E58E5337C005E03C8EE
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500} - KeyFileName [C:\WINDOWS\system32\msjava.dll]
C:\windows\system32\Security.dll	InMem: 0	Det [G]	MD5: 71ECCDFAED35071ECB63430732E4276F	PX5: 6E962CC0006BCF2D162C007F8D738E00DB8BC691
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{0E92DD42-76F5-4EF2-B381-F9C1D72BE23D} -  [Security Update for Microsoft .NET Framework 2.0 (KB922770)]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{8056AC9E-49C5-4375-9ADE-B2F862C9DF51} -  [Security Update for Microsoft .NET Framework 2.0 (KB928365)]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{967B098A-042D-4367-BAC9-8BC11684174F} -  [Security Update for Microsoft .NET Framework 2.0 (KB917283)]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{D190DCE4-0B7B-3120-B5EE-C561EC227C52} -  [Security Update for Microsoft .NET Framework 2.0 (KB922770)]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A} -  [Security]
C:\Programmi\Messenger\msmsgs.exe	InMem: 0	Det [G]	MD5: 74E6E96C6F0E2ECA4EDBB7F7A468F259	PX5: 937DB9BC008B29B4DA13198C306CAF00327E8384
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be} - KeyFileName [C:\Programmi\Messenger\msmsgs.exe]
	REGEXPSHELL - \REGISTRY\Machine\Software\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683} - Exec [C:\Programmi\Messenger\msmsgs.exe]
C:\WINDOWS\system32\msieftp.dll	InMem: 0	Det [G]	MD5: 9BA0424BF46A751E9F68829A9AFBE680	PX5: 44133DFB00C5C1B9D64903B9EB9B6E00A95E5477
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9} - KeyFileName [C:\WINDOWS\system32\msieftp.dll]
C:\WINDOWS\inf\unregmp2.exe	InMem: 0	Det [G]	MD5: 8516EC97AAE094ED7B1AFF7BC97F9121	PX5: 9D66FD100033324AF0870217C4182400EAAC0E70
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Stubpath [C:\WINDOWS\inf\unregmp2.exe /ShowWMP]
C:\windows\system32\shmgrate.exe	InMem: 0	Det [G]	MD5: F8CBCDAA8C509F6A424834FE51956E21	PX5: 20602ECB00AD0F89A6D6007CC62E8E00FE74C13B
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c} - StubPath [%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - StubPath [%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE]
C:\windows\system32\IEDKCS32.DLL	InMem: 0	Det [G]	MD5: D99DF44836FD20FAA6B608A9CEE60F5F	PX5: FE6CE44B003461A1F06E045F06C65A008605BA00
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - StubPath [RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3} - DllName [iedkcs32.dll]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{A2E30F80-D7DE-11d2-BBDE-00C04F86AE3B} - DllName [iedkcs32.dll]
C:\windows\system32\regsvr32.exe	InMem: 0	Det [G]	MD5: DA9623D7E0CA24DD3E08523287E05A4C	PX5: 9F2DE48F0086912530FD001A3E083800D58E0872
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED} - StubPath [%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %System]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340} - StubPath [regsvr32.exe /s /n /i:U shell32.dll]
C:\Programmi\Outlook Express\setup50.exe	InMem: 0	Det [G]	MD5: 5565E7539564F955441DE6FDCBE447A9	PX5: 990052A900467F972069015D0AA93E00C6116D6B
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C} - StubPath ["%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WIN]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02} - StubPath ["%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WI]
C:\windows\system32\advpack.dll	InMem: 0	Det [G]	MD5: 486A0D63381B08D5A41F44E58FE3B4E4	PX5: 40DE446000D9DEB58E9C01A9A95DBB0000B29576
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmt]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.]
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6} - StubPath [rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.i]
C:\windows\system32\ie4uinit.exe	InMem: 0	Det [G]	MD5: 452FA07DD74200AD8BDADD145487F653	PX5: 77DF5E7B005FEC32864A001224995700729F5FAF
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383} - StubPath [%SystemRoot%\system32\ie4uinit.exe]
C:\WINDOWS\system32\mscories.dll	InMem: 0	Det [G]	MD5: 46E55AEA48BAD9297DF685C722619BD6	PX5: 652959240095250822A60140F37F47001792531A
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820} - StubPath [C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dl]
C:\windows\system32\svchast.exe	InMem: 0	Det [BP]	PX5: 48765CC1BD1945C5199496C74F13E50086726851	Malware Group: Generic.Malware
	REGACTIVEX - \REGISTRY\Machine\Software\Microsoft\Active Setup\Installed Components\{DDDFC9C8-A0F8-E0CF-AF00-F0F423E36752} - StubPath [C:\windows\system32\svchast.exe]
C:\windows\system32\logon.scr	InMem: 0	Det [G]	MD5: 6FA8411D60C4FAEE5102EEE1367AB34D	PX5: 509D0B6F00114C175E1803F3B4819D004996445C
	REGSCRNSAVE - \REGISTRY\User\.DEFAULT\Control Panel\Desktop - SCRNSAVE.EXE [logon.scr]
	REGSCRNSAVE - \REGISTRY\User\S-1-5-19\Control Panel\Desktop - SCRNSAVE.EXE [%SystemRoot%\System32\logon.scr]
	REGSCRNSAVE - \REGISTRY\User\S-1-5-20\Control Panel\Desktop - SCRNSAVE.EXE [%SystemRoot%\System32\logon.scr]
	REGSCRNSAVE - \REGISTRY\User\S-1-5-18\Control Panel\Desktop - SCRNSAVE.EXE [logon.scr]
C:\windows\system32\gptext.dll	InMem: 0	Det [G]	MD5: F286C70F59F434B6DDBAB5738B6B029B	PX5: 3937BBDB001CF5150EDE03108010A6002700AFB6
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63} - DllName [gptext.dll]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{426031c0-0b47-4852-b0ca-ac3d37bfcb39} - DllName [gptext.dll]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{42B5FAAE-6536-11d2-AE5A-0000F87571E3} - DllName [gptext.dll]
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{e437bc1c-aa7d-11d2-a382-00c04f991e27} - DllName [gptext.dll]
C:\windows\system32\fdeploy.dll	InMem: 0	Det [G]	MD5: B4767457D286EBB4767C5EC1DF9A7424	PX5: 4B245433003392E32A140131FF3EF30000999A70
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{25537BA6-77A8-11D2-9B6C-0000F8080861} - DllName [fdeploy.dll]
C:\windows\system32\dskquota.dll	InMem: 0	Det [G]	MD5: 78B72D69EE065560A89B7ECE65ED7E2C	PX5: 67A29FF30003BFCF6E3801450DA1040095E8819B
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{3610eda5-77ef-11d2-8dc5-00c04fa31a66} - DllName [dskquota.dll]
C:\windows\system32\appmgmts.dll	InMem: 0	Det [G]	MD5: 00E50CD4D9247CB56EFC1360C32AB755	PX5: D38F92810065B7EDAC840228F23E3C004E625C37
	REGGPOLICY - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{c6dc5466-785a-11d2-84d0-00c04fb169f7} - DllName [appmgmts.dll]
C:\windows\system32\cryptnet.dll	InMem: 0	Det [G]	MD5: F8DD2E38ECC275AE94EDC7C0492416EF	PX5: 7068F9AD00A507EDF8EF0072A0BBE3005197631B
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet - DllName [cryptnet.dll]
C:\windows\system32\sclgntfy.dll	InMem: 0	Det [G]	MD5: 5FF2551A3D740476F06B20F59CD7F0BE	PX5: 164435B300B5B4E0548400AA1F6E0800C2CDD06A
	REGWINLOG - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy - DllName [sclgntfy.dll]
C:\windows\system32\comm.drv	InMem: 0	Det [G]	MD5: 01B656374912D7CCF7465A3893F18982	PX5: 0D8B262B3068553F296F004B25B4F300F3172575
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - comm.drv [comm.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\vga.drv	InMem: 0	Det [G]	MD5: 9C86BBB80450AF95B6A4EA8EBDA93D76	PX5: 8D38D13480CC42FA089200F6F3895F00B79BCD14
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - display.drv [vga.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\mmsystem.dll	InMem: 0	Det [G]	MD5: 7B3633A771FFAD1CFB8D999FB5FC2687	PX5: B7018ADE208113FC103101C8EB6DD700B1D99765
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - drivers [mmsystem.dll]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\keyboard.drv	InMem: 0	Det [G]	MD5: ED4BF709AAD8B665075DE06A0945B030	PX5: 159F7A82D0C5E0D3077700FE801B1000B79BCD14
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - keyboard.drv [keyboard.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\mouse.drv	InMem: 0	Det [G]	MD5: 7D29780AC88BB7292CDCFF71BA67433D	PX5: D9EA0CB2F0FB384407BE00D28D0C0C00B79BCD14
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - mouse.drv [mouse.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\wfwnet.drv	InMem: 0	Det [G]	MD5: 5302ADA9B0793C84151FC463DD65D7BF	PX5: E9641F0220200734353000D28FC59A003BEC664C
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - network.drv [wfwnet.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\progman.exe	InMem: 0	Det [G]	MD5: DF0960F73F899D517FFE5A96F8715E0E	PX5: C0D0815600445D69AC3B01B2DAB067005DE0E11A
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - shell [progman.exe]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\sound.drv	InMem: 0	Det [G]	MD5: 028A1F74926DC3DF2D9629EDC9AEBAFB	PX5: E70CAE91D00DCE52067C00647C846400B79BCD14
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - sound.drv [sound.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\system.drv	InMem: 0	Det [G]	MD5: 4A00D59AE6D75BDFC2C8E5182C4B1376	PX5: D4BD27742043BEDB0DB0000478EA5C00B79BCD14
	REG16BITRUN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\WOW\boot - system.drv [system.drv]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ntvdm.exe	InMem: 0	Det [G]	MD5: 0FEA136CC628C6182E91598F7990229C	PX5: DFD881F400018F016A4F06473E7EAA001AE7779E
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - cmdline [%SystemRoot%\system32\ntvdm.exe]
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - wowcmdline [%SystemRoot%\system32\ntvdm.exe -a %SystemRoot%\system32\krnl386]
C:\windows\system32\commdlg.dll	InMem: 0	Det [G]	MD5: 282C6A1E0565458CE162C907A84043F4	PX5: D41FE74160643BD6833B006BB7E5A9004410FDC1
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ctl3dv2.dll	InMem: 0	Det [G]	MD5: 637D88E7A1BEDC4457C80DBC8BA9F135	PX5: C84734B440655DC66A4D00304EF8AC0014627D07
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ddeml.dll	InMem: 0	Det [G]	MD5: BF6529DE6619C4970E727F58E0AD48D1	PX5: 87F926CB00F2CB349A1200182C7413003E6FB37C
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\lanman.drv	InMem: 0	Det [G]	MD5: E9D142FEAA02E867C8DCDDFE84E29E20	PX5: A797EACD0BCFF4C3663403FC8369B500D2DCA4A2
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\netapi.dll	InMem: 0	Det [G]	MD5: 0F4AD2E828A6CB0F100CB36F3AC6FAEE	PX5: 3B2621E2C04DF3B2A77E0156CAF52A0029A06ED9
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\olecli.dll	InMem: 0	Det [G]	MD5: CA0305757C0648715F6D92BA0C43992F	PX5: B5F4F24400858B0246DF0121D0BC320031CB25FD
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\olesvr.dll	InMem: 0	Det [G]	MD5: 16BF834A84A7DC0D24EDC8E924C90637	PX5: CE221EF60049CF2B5E3B009B247C6A00F018477F
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\pmspl.dll	InMem: 0	Det [G]	MD5: 57F8A50513E43AAF6A7B23389E389BBC	PX5: 98CDEBDE0094268EB67200C1C6BF85009014DA93
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\shell.dll	InMem: 0	Det [G]	MD5: DC8A8C47542EDD026AD8F4AC3D6C2292	PX5: CE2E2C35000BF1E3147B0046192BB900FA35E49E
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\toolhelp.dll	InMem: 0	Det [G]	MD5: C86363C599E5D6836C21A3A3FD21C388	PX5: 87219368400265353643009B30E21C003936EBD7
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\win87em.dll	InMem: 0	Det [G]	MD5: C980C971AD4FF3CA5CEFDEF40932D3A1	PX5: 22C03F9D0005E87A34B40075B0F00E00517D625F
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\winoldap.mod	InMem: 0	Det [G]	MD5: 0DDFD6315DA4B29D09D09B6873EA460B	PX5: E19A53B2202676D208C7002132DA8800B79BCD14
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\winsock.dll	InMem: 0	Det [G]	MD5: 68485C5EF0E2EFCEBF21BBB1042B823B	PX5: FCF9BBDC30E28D0D0BF200D9F4D9CD00B79BCD14
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\winspool.exe	InMem: 0	Det [G]	MD5: 0B4B94B78123E8035B84105BC024F9F8	PX5: F5BB157440E5748C08D600021F9AD300B79BCD14
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\wowdeb.exe	InMem: 0	Det [G]	MD5: A7B82D6B38A2ACD3B2684E7371C6CE93	PX5: C1613D5DB0A80A260ABB006471357400B79BCD14
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\timer.drv	InMem: 0	Det [G]	MD5: 01DC53809B29550424FDB88345F6872C	PX5: 01DC5380F09B29550F040024FDB8830045F6872C
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\compobj.dll	InMem: 0	Det [G]	MD5: 40F9FC896B2BA69FDC04D75E9D00DD01	PX5: DA21156DD0BCD8E77562007DCF26A600F4FFDA3F
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\storage.dll	InMem: 0	Det [G]	MD5: 3A5CD674ADA85BCC1FF26B81B4CDEFB5	PX5: 60BAD4D270E3252C10B800A49D4C780095AFB292
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ole2.dll	InMem: 0	Det [G]	MD5: 145AA8ECF0526C093F71117C181694AB	PX5: F2FC4A2A40B7B6B59BDF00629364AB00A54AED31
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ole2disp.dll	InMem: 0	Det [G]	MD5: EB38BE7D7CF9EC15442A9D24CB39A2AC	PX5: 3E66404830EBCC7296B902E3361C6400BE12EFF7
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ole2nls.dll	InMem: 0	Det [G]	MD5: 32CFCC848A57F87638E31E8735515F80	PX5: 09B13294B021FA9E558F026E08072F00900228B5
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\typelib.dll	InMem: 0	Det [G]	MD5: 7161255DFA81E67B66B746D2504D2F2B	PX5: C0620321C004C14EB60D020DCCE16200701F9AEA
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\msvideo.dll	InMem: 0	Det [G]	MD5: 0FEC57467004486CF202ED7BDFA5DCEE	PX5: 790EE65FC0939660F0F4012F00509C00EF668BF3
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\avifile.dll	InMem: 0	Det [G]	MD5: 92FBB472D13A6CC283529301810922FB	PX5: 23078576D07C879BAB0E016052733100CC123BD6
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\msacm.dll	InMem: 0	Det [G]	MD5: B3E0E6C925D333FDCA47808EBF787CB2	PX5: 9509859960B48961EF3C0048E192C7002EB67DBB
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\mciavi.drv	InMem: 0	Det [G]	MD5: E6A1BB6F039486BCEB825B365AA5548D	PX5: 8B09E9FBC0AC80C41F5801300F1C5F00B1E6B4D8
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\mciseq.drv	InMem: 0	Det [G]	MD5: 6F3561B8890792B0F61C353D1FC85F9C	PX5: 6F3561B8D089079262B000F61C353D001FC85F9C
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\mciwave.drv	InMem: 0	Det [G]	MD5: 2D1A8D96222A829884C50D453B805765	PX5: 2D1A8D9600222A826E980084C50D45003B805765
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\avicap.dll	InMem: 0	Det [G]	MD5: 4A78D6C08D90BDE538D5B538A082C1C9	PX5: 8D50F512B0D5AAB0126C01BC85534E00FA0EC9E8
	REG16BITRUN - \REGISTRY\Machine\System\CurrentControlSet\Control\WOW - KnownDlls [comm.drv]
C:\windows\system32\ntsd.exe	InMem: 0	Det [G]	MD5: 3ECFFB9259462ACCCAF0063841E85E9B	PX5: 834FBBDD002D211C7C10004432E9BD00FC3D4F55
	REGIFEO - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a  - Debugger [ntsd -d]
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll	InMem: 0	Det [G]	MD5: 233CE7C252D3AC7DE4A793C45B6F4CC3	PX5: B885D7570011A1C33E580C3C0EDB9F0028F9BD5D
	REGRUNGEN - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\MiniDumpAuxiliaryDlls - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll [C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll]
C:\windows\system32\msapsspc.dll	InMem: 0	Det [G]	MD5: 9B6E96F4EC4104BCB180C5BEA2787B3F	PX5: 8C479BBA0065475850000105207F00002CA02E51
	REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
C:\windows\system32\digest.dll	InMem: 0	Det [G]	MD5: 9B4CD31081F2CE1D69D2580D015C82EA	PX5: 2283761F0087EB020C9B01CC3CCBC600B4AB6B96
	REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
C:\windows\system32\msnsspc.dll	InMem: 0	Det [G]	MD5: A99939BAE7757437683F4D6B1021A499	PX5: 5FC3C3D6008FE4D0702D042D3521CB003038EB19
	REGRUNGEN - \REGISTRY\Machine\System\CurrentControlSet\Control\SecurityProviders - SecurityProviders [msapsspc.dll]
C:\windows\Resources\themes\Luna\Luna.msstyles	InMem: 0	Det [G]	PX5: D4AC08E190E1815FF0763FFB772E82003759142D
	REGRUNGEN - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Themes - InstallVisualStyle [%SystemRoot%\Resources\themes\Luna\Luna.msstyles]
C:\windows\system32\rdpclip.exe	InMem: 0	Det [G]	MD5: 456E33D8A5B34B0B9B5DE1270E13C7A3	PX5: 3129DB34009CADCFF4300018D68AB90013FA4372
	REGTERM - \REGISTRY\Machine\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd - StartupPrograms [rdpclip]
C:\windows\system32\rdpwsx.dll	InMem: 0	Det [G]	MD5: 98B543037E34C640622FA61E895326C4	PX5: 2D4F90888862EA65546401DF11DAFF009FB4CACF
	REGTERM - \REGISTRY\Machine\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd - WsxDll [rdpwsx]
C:\windows\system32\RDPCFGEX.DLL	InMem: 0	Det [G]	MD5: 0F6F4433F47441C14F17D5348CF609B0	PX5: 648184F200AE0568123C00C1F661D900A8042FB8
	REGTERM - \REGISTRY\Machine\System\CurrentControlSet\Control\Terminal Server\Wds\rdpwd - CfgDll [RDPCFGEX.DLL]
C:\windows\System32\cmd.exe	InMem: 0	Det [G]	MD5: 94744851B6A9BDCEFCD26CC61A6AFD12	PX5: 174F65020044C14C121406F23AA7F300C65DE81F
	REGTELNET - \REGISTRY\Machine\Software\Microsoft\TelnetServer\1.0 - DefaultShell [%SYSTEMROOT%\System32\cmd.exe]
	REGTELNET - \REGISTRY\Machine\Software\Microsoft\TelnetServer\Defaults - DefaultShell [%SYSTEMROOT%\System32\cmd.exe]
	REGSAFESEC - \REGISTRY\Machine\System\CurrentControlSet\Control\SafeBoot - AlternateShell [cmd.exe]
C:\windows\system32\rdpsnd.dll	InMem: 0	Det [G]	MD5: 1C5C414CC29D507B89E355E1733A7491	PX5: 34FBA65500CFB6AF4EE7003742BB470065937B12
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - wave [rdpsnd.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32\Terminal Server\RDP - mixer [rdpsnd.dll]
C:\windows\system32\imaadp32.acm	InMem: 0	Det [G]	MD5: 316F81B3EC381C1C76E07CA43FC12BFC	PX5: 528D926A00EB3B4A408A0067B777E0007219DE4B
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.imaadpcm [imaadp32.acm]
C:\windows\system32\msadp32.acm	InMem: 0	Det [G]	MD5: 147BA07670FA18D112D631B9EEC2CA21	PX5: 9896734D003A7B4A3AD6001B2D129300C6CAD27F
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msadpcm [msadp32.acm]
C:\windows\system32\msg711.acm	InMem: 0	Det [G]	MD5: D609EDECB9692217BCA166C09A8AA6D0	PX5: 98836843004ECD5624170012D62AF300ADA7FDE1
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msg711 [msg711.acm]
C:\windows\system32\msgsm32.acm	InMem: 0	Det [G]	MD5: DBB6C6DBA7C404BF266E064889C45907	PX5: 7715C6930008610D4E5300A5AC1D5400348AB758
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msgsm610 [msgsm32.acm]
C:\windows\system32\tssoft32.acm	InMem: 0	Det [G]	MD5: 49445261FFAAB7F8B915C4D3041AA7F4	PX5: 9DB260C30072F5C620530046E6B0DC000EF1898D
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.trspch [tssoft32.acm]
C:\windows\system32\iccvid.dll	InMem: 0	Det [G]	MD5: BE4DE2539B3DB9D31D75FE0D323C52EE	PX5: 0CEE20B80002FE623A80014E667E0900EDC97E34
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.cvid [iccvid.dll]
C:\windows\system32\msh263.drv	InMem: 0	Det [G]	MD5: B2E67E6045966C14A746627DCCF3F67D	PX5: D1EBECF00092F1C390AB04548720B200A8771D55
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.I420 [msh263.drv]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.M263 [msh263.drv]
C:\windows\system32\ir32_32.dll	InMem: 0	Det [G]	MD5: CDE3AEAEEFF57DBB43133F46E96AD8C5	PX5: 48C6FD2800CF7D770AB40340E9EE0B00336C0935
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv31 [ir32_32.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv32 [ir32_32.dll]
C:\windows\system32\ir41_32.ax	InMem: 0	Det [G]	MD5: 757C7944EB0D518020BB59A1A3AE9826	PX5: 88C1844600D60C2BF2960C06110E8900D716354E
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv41 [ir41_32.ax]
C:\windows\system32\iyuv_32.dll	InMem: 0	Det [G]	MD5: 193315B73270BAD33A3C2F527C8380F6	PX5: 8D2F485A000F6953BA8B00EF89F3AE0028DCEE98
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iyuv [iyuv_32.dll]
C:\windows\system32\msrle32.dll	InMem: 0	Det [G]	MD5: 7B999CA58C6276D885F17ABC73982009	PX5: 6AD29AC5008293D12C2D00B216F74700B26503F0
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.mrle [msrle32.dll]
C:\windows\system32\msvidc32.dll	InMem: 0	Det [G]	MD5: D648EDBA85278839E30979CE627E5C81	PX5: CE4E524C0073A8EC64FF00E1300C68000D8D97A8
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.msvc [msvidc32.dll]
C:\windows\system32\msyuv.dll	InMem: 0	Det [G]	MD5: B35E1E08BF94E68DAF5D9F52485EA368	PX5: 92EC75E800DB9BE5440C000A47ABC3009642377A
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.uyvy [msyuv.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.yuy2 [msyuv.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.yvyu [msyuv.dll]
C:\windows\system32\tsbyuv.dll	InMem: 0	Det [G]	MD5: A892EC07DFFC3D8BF879102982F08721	PX5: 86646A040019522320A100B4BB4D900094B11477
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.yvu9 [tsbyuv.dll]
C:\windows\system32\msg723.acm	InMem: 0	Det [G]	MD5: D53BDE174AD076AE58C8245A524CFB85	PX5: 11020CC8008FB79ED00601EAD6C03900AA679A83
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msg723 [msg723.acm]
C:\windows\system32\msh261.drv	InMem: 0	Det [G]	MD5: 35F5338123495C871C4C7CC9FCE784F6	PX5: A41AA5420008DA3EF0B402388EE55600B25D24F8
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.M261 [msh261.drv]
C:\windows\system32\msaud32.acm	InMem: 0	Det [G]	MD5: 9EFCA60A4BDCF77FC5E2337E3AB61B1E	PX5: C38F33CC0026C9E080B10460DFC46F004CE633B9
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.msaudio1 [msaud32.acm]
C:\windows\system32\sl_anet.acm	InMem: 0	Det [G]	MD5: C2E1907DDE505F02585E7C85F927333A	PX5: 3DA8D952002B67BF508D01A57E615F00B2B2EA92
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.sl_anet [sl_anet.acm]
C:\windows\system32\iac25_32.ax	InMem: 0	Det [G]	MD5: 60B88C336EF385EB0ED77B73852712F3	PX5: D062C8E7003B5A390C1703C014BB9700CE1BED53
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.iac2 [C:\windows\system32\iac25_32.ax]
C:\windows\system32\ir50_32.dll	InMem: 0	Det [G]	MD5: B11FB596034932DC55A7638911F482C2	PX5: 8FA030FE0030B5D3865F0B4087D0420068F6854C
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.iv50 [ir50_32.dll]
C:\windows\system32\L3CODECA.ACM	InMem: 0	Det [G]	MD5: C5AF10FD0A2C5938C4D962537AF13BA3	PX5: BD6FA9CA00B4F05D702C042DD7B42E003DC5A552
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.l3acm [L3CODECA.ACM]
C:\windows\system32\mobilev.acm	InMem: 0	Det [G]	MD5: 2F2D08FA7E0AE68DBB2A836056B4618E	PX5: D352C36A52103C5EE0B500BAF47031002761CD98
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - MSACM.CEGSM [mobilev.acm]
C:\windows\system32\sirenacm.dll	InMem: 0	Det [G]	MD5: C2BDE52E48E668FE6F95C40BBA7AA310	PX5: 92D29F56708DC7D2C7BF005BB97C8A00D5F934F9
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.siren [sirenacm.dll]
C:\windows\system32\pdvcodec.dll	InMem: 0	Det [G]	MD5: C998E69D8884F49D0A6316DF96BA3DF2	PX5: 6995A2AD4576FC680E640406240F1A00D0FDCFDC
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.dvsd [pdvcodec.dll]
C:\windows\system32\cdvccodc.dll	InMem: 0	Det [G]	MD5: 2FB73C44BE6F1D5DFBF89ED3CFEF68A7	PX5: A2320DBC0072311B7E11009862819E0051C6BD61
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.CDVC [cdvccodc.dll]
C:\windows\system32\divx.dll	InMem: 0	Det [GP]	MD5: 5E1E3DB1E221217A9D8741DF89B739A1	PX5: EDB7DF0D00962A6F6A3F0AFC80E46A00C24897F6
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.DIVX [divx.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.YV12 [divx.dll]
C:\windows\system32\vp6vfw.dll	InMem: 0	Det [G]	MD5: FAC0D5B16EFA7376CA81047490187D0D	PX5: 5D138B0F00AF89B0B082068F89276C00B8B91ADA
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.VP60 [vp6vfw.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.VP61 [vp6vfw.dll]
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.VP62 [vp6vfw.dll]
C:\windows\system32\vp7vfw.dll	InMem: 0	Det [G]	MD5: 1D7856BE8960111D435CE8B73BF72232	PX5: 638F6977007132C1A0BB09DAB9D3AB00CA0AA94F
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.VP70 [vp7vfw.dll]
C:\windows\system32\mp3fhg.acm	InMem: 0	Det [G]	MD5: 23D4907D662E248E09872E5A32E71570	PX5: 4D8AC979006AFF4E8C2703B84BC6600010E96A91
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.l3fhg [mp3fhg.acm]
C:\windows\system32\xvidvfw.dll	InMem: 0	Det [G]	MD5: A91F3321579565EAF97F52FA2177E341	PX5: 90897D54006062B5502504F23D91FD008FB0F6DD
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.XVID [xvidvfw.dll]
C:\windows\system32\x264vfw.dll	InMem: 0	Det [G]	MD5: A716FD097E6505F3C6EC0E6C6DD88B6C	PX5: BCE12D8B00165AD09C40085A995F1C0084B89663
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.X264 [x264vfw.dll]
C:\windows\system32\huffyuv.dll	InMem: 0	Det [G]	MD5: 335A224416BA985EAFA71D15C004F702	PX5: 2AA2B8830039F1CE9CD70027D78222008EDFFB09
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.HFYU [huffyuv.dll]
C:\windows\system32\i263_32.drv	InMem: 0	Det [G]	MD5: B0C224473248EB1F21C2BC1676C7579C	PX5: A621F4F200BD0176FA8D0597214EDA00B368E67C
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - vidc.i263 [i263_32.drv]
C:\windows\system32\vorbis.acm	InMem: 0	Det [G]	MD5: CF2B89CD147519657CA087B180B5A884	PX5: 4EBE022700ECF49DC0C213C079C9BA0030755AE5
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.vorbis [vorbis.acm]
C:\windows\system32\ac3acm.acm	InMem: 0	Det [G]	MD5: D95393B383FB3DB265836C84B53892A3	PX5: A2FA01D3003B2343D09C01B8E0445B008811098A
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.ac3acm [ac3acm.acm]
C:\windows\system32\lameACM.acm	InMem: 0	Det [G]	MD5: 5C7769B696513302C31253C7E3F001C4	PX5: 5B7F52DA009F8CABF01005EDE25ADD00B8133162
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.lameacm [lameACM.acm]
C:\windows\system32\divxa32.acm	InMem: 0	Det [G]	MD5: 8B32D7F2C98E4CE24CA678551EE3F780	PX5: 8B6DCB9400FBB072643D04571B7B5600EAB4338B
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - msacm.divxa32 [divxa32.acm]
C:\windows\system32\ff_vfw.dll	InMem: 0	Det [G]	MD5: E98C08770FE5FE6C39770C459116373B	PX5: 6F05CFA300EB7A9D1E9E003B3C2E07000F1770C6
	REGDRIVER - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Drivers32 - VIDC.FFDS [ff_vfw.dll]
C:\windows\system32\JAVASUP.VXD	InMem: 0	Det [G]	MD5: 35BD074AE32E5EB19FF88DAF3030F803	PX5: 99B75F2393917E501C450098C8A2BA0043E75EB1
	REGDRIVER - \REGISTRY\Machine\System\CurrentControlSet\Services\VXD\JAVASUP - StaticVxD [JAVASUP.VXD]
C:\windows\system32\rsvpsp.dll	InMem: 0	Det [G]	MD5: B4B4BC22821A8A0AC357297B784B996E	PX5: 316FAA8C007F4493605401B98234D5008F685EE8
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 - PackedCatalogItem [%SystemRoot%\system32\rsvpsp.dll]
	REGLSP - \REGISTRY\Machine\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 - PackedCatalogItem [%SystemRoot%\system32\rsvpsp.dll]
C:\windows\system32\ipxrip.dll	InMem: 0	Det [G]	MD5: 2DAC54A61B837FAC36FFD92B7E39B3FF	PX5: 859821B9009D40A9548200AD83A363008B36EF0D
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ipx\IPXRIP - DllName [ipxrip.dll]
C:\windows\system32\ipxsap.dll	InMem: 0	Det [G]	MD5: 3EEA6D343B3D6FCF500DB1837C07DF06	PX5: 85797B9500D099280499015DBB948C00AAAAF548
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ipx\IPXSAP - DllName [ipxsap.dll]
C:\windows\System32\iprtrmgr.dll	InMem: 0	Det [G]	MD5: 30584106B1E3C4F836D35C92BA38B184	PX5: D40494A6008ED12A98FE023AAD1857000DD8C7B5
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ip - DllPath [%SystemRoot%\System32\iprtrmgr.dll]
C:\windows\System32\ipxrtmgr.dll	InMem: 0	Det [G]	MD5: 7FF943A30BA413C3F43E8441A28B7AA7	PX5: 4718448E00AA1CC09C1B00C6E262700012078A35
	REGROUTER - \REGISTRY\Machine\Software\Microsoft\Router\CurrentVersion\RouterManagers\Ipx - DllPath [%SystemRoot%\System32\ipxrtmgr.dll]
C:\windows\system32\Firewall.cpl	InMem: 0	Det [G]	MD5: 486C95D7867757EF75946CDC7FA547DD	PX5: C6AD4E5900619E5B3AA801566FFF65004318E0B5
	REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - Internet Connection Firewall [Firewall.cpl]
C:\windows\system32\NetSetup.cpl	InMem: 0	Det [G]	MD5: 6C00E8B5734CD98456E36A1919393597	PX5: 1727E2B500CA6EDF648A0091303FF7003D7EE312
	REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - NetSetupWizard [NetSetup.cpl]
C:\Programmi\File comuni\Microsoft Shared\Speech\sapi.cpl	InMem: 0	Det [G]	MD5: B281E4E0C7DE6016F067191AA0B10047	PX5: 4B95DF2F0028608F7026024663B5470081E40772
	REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - Speech [C:\Programmi\File comuni\Microsoft Shared\Speech\sapi.cpl]
C:\QuickTime v7.0.2\QTSystem\QuickTime.cpl	InMem: 0	Det [G]	MD5: 0687610AB340C89E988ADE9E728C36FF	PX5: F82EA11D00DB47B3206F106EF670C6000E0CFA09
	REGCPL - \REGISTRY\Machine\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls - QuickTime [C:\QuickTime v7.0.2\QTSystem\QuickTime.cpl]
C:\windows\system32\Magnify.exe	InMem: 0	Det [G]	MD5: B8485B1B335C0C00397DD7ABC041475D	PX5: 8FD0DD1200F1CC211E520147693D72005CC20F83
	REGUTIL - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\Magnifier - Application path [Magnify.exe]
C:\windows\system32\osk.exe	InMem: 0	Det [G]	MD5: 7D5B9DD2D397E5D323C5DE2D0B4CAEB6	PX5: 865A974F008F100B4EF6035F16FFB2007D13E899
	REGUTIL - \REGISTRY\Machine\Software\Microsoft\Windows NT\CurrentVersion\Accessibility\Utility Manager\On-Screen Keyboard - Application path [osk.exe]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\GIFIMP32.FLT	InMem: 0	Det [G]	MD5: 3EA24F7FC44D3853E83426C12B67C681	PX5: 84D2B872308981F9BF570329B226A900908A8352
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Export\GIF - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\GIFIMP32.FLT]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\GIF - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\GIFIMP32.FLT]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\JPEGIM32.FLT	InMem: 0	Det [G]	MD5: 13B49FCD0B41B7DBB5872F0055E6EF14	PX5: 01E5873538811227C15E021F73B8120041AB700B
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Export\JPEG - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\JPEGIM32.FLT]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\JPEG - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\JPEGIM32.FLT]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\PNG32.FLT	InMem: 0	Det [G]	MD5: 25EBC1E36D19BEF849D1BB269F0EB705	PX5: 3DC90F9B580731FB899903BA4067C600560CECF6
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Export\PNG - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\PNG32.FLT]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\PNG - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\PNG32.FLT]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\CGMIMP32.FLT	InMem: 0	Det [G]	MD5: C9E3FB4BDE38B40624895D6EC5456168	PX5: 647345C080677B4E6F890467F3A5A0006554453E
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\CGM - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\CGMIMP32.FLT]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\EPSIMP32.FLT	InMem: 0	Det [G]	MD5: A186964EDE2165E145F420936FDDD66E	PX5: 6FB5275F983CC648D72F063F64C51700EF66019A
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\EPS - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\EPSIMP32.FLT]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\PICTIM32.FLT	InMem: 0	Det [G]	MD5: 82A21B613A60FF51973447EEE5373A8D	PX5: 8BC032BE90B0E37CFF77008BEC533C0064CAF5C9
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\PICT - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\PICTIM32.FLT]
C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\WPGIMP32.FLT	InMem: 0	Det [G]	MD5: A4A3A73334B673A744229EDCAECBECFE	PX5: 61FB3A4150D1E8CFB92E02968B03DB008EFABF2A
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Graphics Filters\Import\WPG - Path [C:\PROGRA~1\FILECO~1\MICROS~1\GRPHFLT\WPGIMP32.FLT]
C:\Programmi\File comuni\Microsoft Shared\MSInfo\ieinfo5.ocx	InMem: 0	Det [G]	MD5: 7CFDD7F54C64BFF62F64665A7E567896	PX5: D9CCCE7600AE330472C5014263EDAE006E08A176
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\MSInfo\Templates\ieinfo5 -  [C:\Programmi\File comuni\Microsoft Shared\MSInfo\ieinfo5.ocx]
C:\Programmi\File comuni\Microsoft Shared\MSInfo\OINFO12.OCX	InMem: 0	Det [G]	MD5: 532A16ACFBE3043E0ED03F7FFD34C079	PX5: B45475B3587EA55E8B680852EEE51400718D8FC5
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\MSInfo\Templates\OInfo12 -  [C:\PROGRA~1\FILECO~1\MICROS~1\MSINFO\OINFO12.OCX]
C:\Programmi\File comuni\Microsoft Shared\MSInfo\MSInfo32.exe	InMem: 0	Det [G]	MD5: 12644A48270558AEC35230E476534F48	PX5: DCC20BBB0036A3BB9EFA00953DF8F200E6CDE36A
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\MSInfo - Path [C:\Programmi\File comuni\Microsoft Shared\MSInfo\MSInfo32.exe]
C:\Microsoft Office\Office12\MSQRY32.EXE	InMem: 0	Det [G]	MD5: 45A7ED7271221CEEE72EEFFAD0FBF8BE	PX5: 44E8AA7D68600C3E4B850A26C5850700B9AD2703
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\MSQuery - Path [C:\MICROS~1\Office12\MSQRY32.EXE]
C:\Programmi\File comuni\Microsoft Shared\TextConv\HTML32.CNV	InMem: 0	Det [G]	MD5: 736D25F66058B3829749782FBDC62B6D	PX5: 66466778586DAB96C483047DF729C400CC662630
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\HTML - Path [C:\PROGRA~1\FILECO~1\MICROS~1\TEXTCONV\HTML32.CNV]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\HTML - Path [C:\PROGRA~1\FILECO~1\MICROS~1\TEXTCONV\HTML32.CNV]
C:\Microsoft Office\Office12\Wordcnvpxy.cnv	InMem: 0	Det [G]	MD5: C396093CF40FC44D54390B6DE5B5A975	PX5: 866A893D1893730D69BA00B5F7B862005D0684E8
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MEWord12 - Path [C:\Microsoft Office\Office12\Wordcnvpxy.cnv]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\Word12 - Path [C:\Microsoft Office\Office12\Wordcnvpxy.cnv]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\Word97 - Path [C:\Microsoft Office\Office12\Wordcnvpxy.cnv]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MEWord12 - Path [C:\Microsoft Office\Office12\Wordcnvpxy.cnv]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\Word12 - Path [C:\Microsoft Office\Office12\Wordcnvpxy.cnv]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\Word97 - Path [C:\Microsoft Office\Office12\Wordcnvpxy.cnv]
C:\Microsoft ActiveSync\pwiofcnv.dll	InMem: 0	Det [G]	MD5: 82876D64F8B568C19A9E876E318AB22A	PX5: 80113D9B28F503C07952007E17C037002038B32F
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSInkWriter - Path [C:\Microsoft ActiveSync\pwiofcnv.dll]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSPocketInkWord - Path [C:\Microsoft ActiveSync\pwiofcnv.dll]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSInkWriter - Path [C:\Microsoft ActiveSync\pwiofcnv.dll]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSInkWriterTemplate - Path [C:\Microsoft ActiveSync\pwiofcnv.dll]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSPocketInkWord - Path [C:\Microsoft ActiveSync\pwiofcnv.dll]
C:\Microsoft ActiveSync\pwoffcnv.dll	InMem: 0	Det [G]	MD5: 62E1EC36BB02F6F6B44BEB52DB421FF8	PX5: 7CFE1D7528465A9EA15000CF0EE54200EF7763A7
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSPocketWord - Path [C:\MICROS~2\pwoffcnv.dll]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSPocketWord - Path [C:\MICROS~2\pwoffcnv.dll]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSPocketWordTemplate - Path [C:\MICROS~2\pwoffcnv.dll]
C:\Programmi\File comuni\Microsoft Shared\Textconv\works632.cnv	InMem: 0	Det [G]	MD5: CC9698CB84AC18DF14E70580FC4028F1	PX5: 5B8862FF082FB0E34BA60152692FD400F277144C
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Export\MSWorksWin6 - Path [C:\Programmi\File comuni\Microsoft Shared\Textconv\works632.cnv]
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWorksWin6 - Path [C:\Programmi\File comuni\Microsoft Shared\Textconv\works632.cnv]
C:\Programmi\File comuni\Microsoft Shared\TextConv\write32.wpc	InMem: 0	Det [G]	MD5: AFD63CA25E43793FD7C42C5F74961559	PX5: 71A6A3C449C4AC08B01A01656F55D100B9B2E691
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWinWrite.wpc - Path [C:\Programmi\File comuni\Microsoft Shared\TextConv\write32.wpc]
C:\Programmi\File comuni\Microsoft Shared\TextConv\mswrd632.wpc	InMem: 0	Det [G]	MD5: DA91B90D37135534D061B7E3480FC11C	PX5: 255241CE4A8E0D0D40E903D813E15E00D95525A3
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWord6.wpc - Path [C:\Programmi\File comuni\Microsoft Shared\TextConv\mswrd632.wpc]
C:\Programmi\File comuni\Microsoft Shared\TextConv\MSWRD832.CNV	InMem: 0	Det [G]	MD5: 54EB377C95C64B5A1278F33BD57E6B81	PX5: FFD049CEE8B5A59C5034037431BA7D000D434F86
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\MSWord8 - Path [C:\PROGRA~1\FILECO~1\MICROS~1\TEXTCONV\MSWRD832.CNV]
C:\Programmi\File comuni\Microsoft Shared\TextConv\RECOVR32.CNV	InMem: 0	Det [G]	MD5: 5F4E49DF2A1A4648E9EB116A13B61721	PX5: 2BFA84C39005DA8389BB007F5B705600C551264F
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\Recover - Path [C:\PROGRA~1\FILECO~1\MICROS~1\TEXTCONV\RECOVR32.CNV]
C:\Programmi\File comuni\Microsoft Shared\TextConv\WPFT632.CNV	InMem: 0	Det [G]	MD5: 59D91416E394AC9F74EAC4AEAE68CC39	PX5: 80F67AE5A0DA6D95875B0300FD96CD00A87BDB39
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\WordPerfect6x - Path [C:\PROGRA~1\FILECO~1\MICROS~1\TEXTCONV\WPFT632.CNV]
C:\Programmi\File comuni\Microsoft Shared\TextConv\WPFT532.CNV	InMem: 0	Det [G]	MD5: 51FF14E5BF248C0DACBDFCA354F0C359	PX5: 8C60AC67A067501DCB5902995E744B00131061F7
	REGSHARED - \REGISTRY\Machine\Software\Microsoft\Shared Tools\Text Converters\Import\WrdPrfctDos - Path [C:\PROGRA~1\FILECO~1\MICROS~1\TEXTCONV\WPFT532.CNV]
C:\WINDOWS\system32\mshta.exe	InMem: 0	Det [G]	MD5: 5F39CE997F477A43B4F5B569A4AEE56E	PX5: 444E52CC00F22ED67278001B497EA1001707F225
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\htafile\shell\open\command -  [C:\WINDOWS\system32\mshta.exe "%1" %*]
C:\windows\system32\shscrap.dll	InMem: 0	Det [G]	MD5: 886E25758E76F75B62955E031EAAA7E5	PX5: CEE438A6004ACC126CE400DA76EA3300F6FBD343
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\ShellScrap\shell\open\command -  [rundll32 %SystemRoot%\system32\shscrap.dll,OpenScrap_RunDLL %1]
C:\windows\System32\WScript.exe	InMem: 0	Det [G]	MD5: 58F5AC58D277F1C44E71295AAFD403F8	PX5: 4850A70600D60426C0410166FCF6E000B918B6A5
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\VBSFile\shell\open\command -  [%SystemRoot%\System32\WScript.exe "%1" %*]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\VBEFile\shell\open\command -  [%SystemRoot%\System32\WScript.exe "%1" %*]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\WSHFile\shell\open\command -  [%SystemRoot%\System32\WScript.exe "%1" %*]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\WSFFile\shell\open\command -  [%SystemRoot%\System32\WScript.exe "%1" %*]
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\JSEFile\shell\open\command -  [%SystemRoot%\System32\WScript.exe "%1" %*]
C:\Adobe Dreamweaver CS3\Adobe Dreamweaver CS3\Dreamweaver.exe	InMem: 0	Det [u]	PX5: ED7C1453B84DD298787BF5A52D8E11009D1E0021
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\jsfile\shell\open\command -  ["C:\Adobe Dreamweaver CS3\Adobe Dreamweaver CS3\Dreamweaver.exe"]
C:\windows\system32\mmc.exe	InMem: 0	Det [G]	MD5: B0B93DE885F03974C12B6238D68A6F67	PX5: C6EB514E00915CDD74820CD0EB0CF8007694B8C8
	REGEXTNMAP - \REGISTRY\Machine\Software\Classes\MSCFile\shell\open\command -  [%SystemRoot%\system32\mmc.exe "%1" %*]
C:\AdvaLame Suite\AvLSuite.exe	InMem: 0	Det [u]	MD5: DF52BD577D99CF6ADF3643F45FB70A33	PX5: 61832425007CD28DD2F810071C1039005441A45E
C:\Programmi\Borland\CBuilder4\Bin\bcb.exe	InMem: 0	Det [G]	MD5: E9A67B45FC6E227FD80B6A5F6ACFA704	PX5: 09A2CDE70049B0DBC49D07AC8E3FCC0097843659
C:\CCleaner\ccleaner.exe	InMem: 0	Det [G]	MD5: 39B563AC4FFDDAA4C19FF2F5CF81558F	PX5: E13A829800EBC273F052089C266AA600AAD5993E
C:\DVD Shrink 3.2\DVD Shrink 3.2.exe	InMem: 0	Det [GP]	MD5: 0A87198FACE29466307AEC11AE1AFC6B	PX5: 0279EF5D46DA23902083097CB67763005F054C96
C:\Magic DVD Rip Studio Pro\MDRP.exe	InMem: 0	Det [u]	PX5: CA22CE440008DCBF40E13378C70C2400311987AE
C:\Documents and Settings\Andrea\Desktop\mplayerc.exe	InMem: 0	Det [G]	PX5: 2212740000A0D8D0D06156123B92E1004736B655
C:\Programmi\Nero\Nero8\Nero Burning Rom\nero.exe	InMem: 0	Det [u]	PX5: 4D02477E288B362665336B699C93E4029B002A11
C:\Documents and Settings\Andrea\Desktop\Pocket DivX Encoder v3.60.exe	InMem: 0	Det [G]	PX5: 3DCD26FC00B348465CE96CD0F4B22F00B1C6652E
C:\Super RAM Booster\SuperRamBooster.exe	InMem: 0	Det [u]	MD5: A7BE98D66336FCB93E20867A6FCC90E4	PX5: E345F331006CD9B1A0B201B93DD42700DC7E3AB1
C:\VirtualDub mod 1.5.10.1\VirtualDubMod.exe	InMem: 0	Det [GP]	MD5: 3784C4156F6370E35AC58184B9C1A403	PX5: 0C05D5870041F3740A270E76C6BA8B00E579A7A5
C:\RealVNC\VNC4\vncviewer.exe	InMem: 0	Det [G]	MD5: BE11FB60F58BEBFA8D138D48133DD6D5	PX5: C9CDAC37F01B9EB4427E0B4475BDF0004501D6B5
C:\VoipStunt\VoipStunt.exe	InMem: 0	Det [G]	PX5: BBD49F19308D7322D56B7026A3943200D2B0F17B
C:\Web Page Maker V2.5\WebPageMaker.exe	InMem: 0	Det [u]	PX5: 67CBF3A800F2E10D7E933B9B0C5395005A8B4C68
C:\Ad-Aware 2007\Ad-Aware2007.exe	InMem: 0	Det [G]	MD5: C114B2900C0FC90B19CCD5D62F1C536D	PX5: A67C8B3B502F67059D1D2BE7EB520D00DDC4220A
C:\Ad-Aware 2007\Ad-Watch2007.exe	InMem: 0	Det [G]	MD5: B2658F9E8D0D07B4D346F69CFE223483	PX5: B2AA21757863D395C95D259D11EBA300EBBC35C0
C:\Programmi\Autodesk\3ds Max 2008\3dsmax.exe	InMem: 0	Det [u]	PX5: 13974FC5003D6D1D7661633FE9B978006589D08A
C:\BitTorrent\bittorrent.exe	InMem: 0	Det [UP]	MD5: F2BFBB84A18224BFAC0063DF8DE2678E	PX5: 4CAAEB4C3009D2DDF7B808988E03D600174B3F7B
C:\Easy CD-DA Extractor 10\ezcddax.exe	InMem: 0	Det [G]	PX5: 9EC99F9300837213C2883921346ECE007F720B5F
C:\Programmi\MSN Messenger\msnmsgr.exe	InMem: 0	Det [G]	PX5: 59E438AB70B0D00595F1567CB8966B00A1C6CF9F
C:\WINDOWS\system32\drivers\1394bus.sys	InMem: 0	Det [G]	MD5: 009927DB8019C54477DABF6F9D795053	PX5: A01D29000095FDD3D05B00D74275E7003170E933
C:\WINDOWS\system32\drivers\abp480n5.sys	InMem: 0	Det [G]	MD5: 6ABB91494FE6C59089B9336452AB2EA3	PX5: C1BD84230067F4EA5CEF003B6C801800F0A16602
C:\WINDOWS\system32\drivers\acpiec.sys	InMem: 0	Det [G]	MD5: 49AC5CD87FBDDA62F3E25190019E7627	PX5: F21BE3DC800E8A0A2F3C009238A73C008905B399
C:\WINDOWS\system32\drivers\adpu160m.sys	InMem: 0	Det [G]	MD5: 9A11864873DA202C996558B2106B0BBC	PX5: A646098B00C8A7478EF4012AC693E40053E6B855
C:\WINDOWS\system32\drivers\aha154x.sys	InMem: 0	Det [G]	MD5: C23EA9B5F46C7F7910DB3EAB648FF013	PX5: B5CCD41400024B8C3232007262F16400589648E4
C:\WINDOWS\system32\drivers\aic78u2.sys	InMem: 0	Det [G]	MD5: 19DD0FB48B0C18892F70E2E7D61A1529	PX5: 841F37AC80EF3F36D7BD000A10720200E4552005
C:\WINDOWS\system32\drivers\aic78xx.sys	InMem: 0	Det [G]	MD5: B7FE594A7468AA0132DEB03FB8E34326	PX5: 645E88DA8053B973DE9500E552F9DF00FDCB4867
C:\WINDOWS\system32\drivers\aliide.sys	InMem: 0	Det [G]	MD5: 1140AB9938809700B46BB88E46D72A96	PX5: BC6DDD5E808533E01498005CD48AF0000F761377
C:\WINDOWS\system32\drivers\amdk6.sys	InMem: 0	Det [G]	MD5: 03BBCA770830A6FFC5A57B697D150F2F	PX5: 4242D904806C60F8A08300740C09B400A99A704A
C:\WINDOWS\system32\drivers\amdk7.sys	InMem: 0	Det [G]	MD5: A4FF6CFCD83941B3628779CB32959C2B	PX5: EABF85AE00CF7D2BA2F600B95331A000E92CF98B
C:\WINDOWS\system32\drivers\amsint.sys	InMem: 0	Det [G]	MD5: 79F5ADD8D24BD6893F2903A3E2F3FAD6	PX5: 983BFBAD005D94832FCE00E56154ED006EF2904F
C:\WINDOWS\system32\drivers\asc.sys	InMem: 0	Det [G]	MD5: 62D318E9A0C8FC9B780008E724283707	PX5: 57B586F580FE82A86794006034353E00FFEDC97A
C:\WINDOWS\system32\drivers\asc3350p.sys	InMem: 0	Det [G]	MD5: 69EB0CC7714B32896CCBFD5EDCBEA447	PX5: AD3D9E1A803A53B9579300764BBA6D0023C757B9
C:\WINDOWS\system32\drivers\asc3550.sys	InMem: 0	Det [G]	MD5: 5D8DE112AA0254B907861E9E9C31D597	PX5: F329E1C6001CB2953AAF005BD8D557009377D482
C:\WINDOWS\system32\drivers\ASUSHWIO.SYS	InMem: 0	Det [G]	MD5: DE91D0D73C3E61E6826D98FAC2FAC729	PX5: A73AAFA5C01706ED1657005184698A000DFF3991
C:\WINDOWS\system32\drivers\ati2erec.dll	InMem: 0	Det [G]	MD5: 3EC04437EAB747B384FDC804D8F0C37D	PX5: 87D57816001F42BBC0A800AE8DEF540018854CA5
C:\WINDOWS\system32\drivers\atmepvc.sys	InMem: 0	Det [G]	MD5: 39A0A59180F19946374275745B21AEBA	PX5: 7363E81E80EDA4EC7A0200CE34E22400450A279B
C:\WINDOWS\system32\drivers\atmlane.sys	InMem: 0	Det [G]	MD5: 0128E78FE835F074E469F03DB681CA9E	PX5: 823332B380717184DAFD00B035ED9500F95C0458
C:\WINDOWS\system32\drivers\atmuni.sys	InMem: 0	Det [G]	MD5: E7EF69B38D17BA01F914AE8F66216A38	PX5: 92E7BF650082565E607E05AD216E0900953642D5
C:\WINDOWS\system32\drivers\avgmfx86.sys	InMem: 0	Det [G]	MD5: 0F471F46D155046BB58E4D6869A15382	PX5: 5CEACF26484D8409691D002E31934B00DCCD2A08
C:\WINDOWS\system32\drivers\AWRTPD.sys	InMem: 0	Det [G]	MD5: EC018602809B28520CAA132CD616BB2A	PX5: 9443D85580132C06185A00846D3009009DCB0F0B
C:\WINDOWS\system32\drivers\AWRTRD.sys	InMem: 0	Det [G]	MD5: 10D3F81B955CD10D6464B1B922E5AC68	PX5: 6018459180814B2820FB00C5D1B25900FA03784B
C:\WINDOWS\system32\drivers\battc.sys	InMem: 0	Det [G]	MD5: EA22EDADF90C0ABA8319454B2A07B700	PX5: EB6F1BAC00003DE437C500D2CB8267002617D2AD
C:\WINDOWS\system32\drivers\beep.sys	InMem: 0	Det [G]	MD5: DA1F27D85E0D1525F6621372E7B685E9	PX5: F62FA4F780D77A5110B2005CD7507900637E04C1
C:\WINDOWS\system32\drivers\bridge.sys	InMem: 0	Det [G]	MD5: E4E6A0922E3D983728C9AD4E8D466954	PX5: 69CABDC3803104ED17D001BEA902E2004A7836B0
C:\WINDOWS\system32\drivers\cbidf2k.sys	InMem: 0	Det [G]	MD5: 90A673FC8E12A79AFBED2576F6A7AAF9	PX5: 7B8DA5F780B7DA7536FE00ABA71B6C00B12776D7
C:\WINDOWS\system32\drivers\cd20xrnt.sys	InMem: 0	Det [G]	MD5: F3EC03299634490E97BBCE94CD2954C7	PX5: 585C4579008238981E0B00FA57DBFC004069176C
C:\WINDOWS\system32\drivers\cdaudio.sys	InMem: 0	Det [G]	MD5: C1B486A7658353D33A10CC15211A873B	PX5: 7D0D30B9001A5352491B006D9C79D000079079B1
C:\WINDOWS\system32\drivers\cdfs.sys	InMem: 0	Det [G]	MD5: CD7D5152DF32B47F4E36F710B35AAE02	PX5: 0225C13D004CC9CDF93000922132D000BA57D976
C:\WINDOWS\system32\drivers\cdr4_xp.sys	InMem: 0	Det [G]	MD5: BF79E659C506674C0497CC9C61F1A165	PX5: C8104DA1808A5DEE09FC008AD65C6900B79BCD14
C:\WINDOWS\system32\drivers\cdralw2k.sys	InMem: 0	Det [G]	MD5: 2C41CD49D82D5FD85C72D57B6CA25471	PX5: 9824CFC900F05AAF0AF10058B4C7A500B79BCD14
C:\WINDOWS\system32\drivers\changer.sys	InMem: 0	Det [G]	MD5: DAF1A8193B6CAF0FB858CADCC5C4AF4A	PX5: FEBC5C5B00A5D832203A00C9150B3C0054623664
C:\WINDOWS\system32\drivers\cinemst2.sys	InMem: 0	Det [G]	MD5: 0CCCBD6EF94910804921BF04A2107EF8	PX5: 7C4B5F6480542F0A010D0467679A3400F24D4424
C:\WINDOWS\system32\drivers\classpnp.sys	InMem: 0	Det [G]	MD5: D86173B401470F06D9810F7962969DDF	PX5: 61280642007AE0BEC20400D8EC4D8200079FF3CE
C:\WINDOWS\system32\drivers\cmdide.sys	InMem: 0	Det [G]	MD5: 03A71B880380D15A0F951612B0F52BE8	PX5: 1090D35F00826C091A0300BA9B616000882568E7
C:\WINDOWS\system32\drivers\cpqarray.sys	InMem: 0	Det [G]	MD5: 3EE529119EED34CD212A215E8C40D4B6	PX5: 83BD9FEC80CF65303A83008B3639D70054F0FDB8
C:\WINDOWS\system32\drivers\cpqdap01.sys	InMem: 0	Det [G]	MD5: 9624293E55AD405415862B504CA95B73	PX5: C60D75F500CE16D02E4100D9B4337E008A228DE3
C:\WINDOWS\system32\drivers\cpuidlep.sys	InMem: 0	Det [G]	MD5: 3A1DC7C08AE1AF450FFD753A0FD82F9D	PX5: 3A909C418461F9F111C100C37599A30010A1C7F9
C:\WINDOWS\system32\drivers\crusoe.sys	InMem: 0	Det [G]	MD5: F8C288D89AD71BF1AFF0F9E4DB5D3A10	PX5: E4FE1A7080AF31429EBC00A2612936006E0D7B97
C:\WINDOWS\system32\drivers\ctdvda2k.sys	InMem: 0	Det [G]	MD5: ACD35A46247CC066E24AD1E97183151B	PX5: 5F7CE200208FBBB2173D053F1D492B0023A9DC53
C:\WINDOWS\system32\drivers\dac2w2k.sys	InMem: 0	Det [G]	MD5: E550E7418984B65A78299D248F0A7F36	PX5: 2988280A8061B19BBDB80278B0C05C0011F9526A
C:\WINDOWS\system32\drivers\dac960nt.sys	InMem: 0	Det [G]	MD5: 683789CAA3864EB46125AE86FF677D34	PX5: 4A76D57C80C85C4939AF009F3428130045C96C9B
C:\WINDOWS\system32\drivers\diskdump.sys	InMem: 0	Det [G]	MD5: D16C81677A9BE399C63CD2EA486472A5	PX5: 6D7A5F848072A37B37EB00C342763700264F9014
C:\WINDOWS\system32\drivers\dpti2o.sys	InMem: 0	Det [G]	MD5: 40F3B93B4E5B0126F2F5C0A7A5E22660	PX5: 1646100FE09545F24E5D003D74376C00785BB51E
C:\WINDOWS\system32\drivers\drmk.sys	InMem: 0	Det [G]	MD5: FF86422268DE771D571E123EB7092C6A	PX5: 73B664558055CFD9EB9800CC44976A00031F37A9
C:\WINDOWS\system32\drivers\dxapi.sys	InMem: 0	Det [G]	MD5: FE97D0343ACFDEBDD578FC67CC91FA87	PX5: D0E069F50027643C29470029619BD400B7B7054A
C:\WINDOWS\system32\drivers\dxg.sys	InMem: 0	Det [G]	MD5: D3DAC8432110AAD0B02A58B4459AB835	PX5: 3F54B7A780F0ED98157C011AE18D4A00EE6485EB
C:\WINDOWS\system32\drivers\dxgthk.sys	InMem: 0	Det [G]	MD5: A73F5D6705B1D820C19B18782E176EFD	PX5: 0164AB8900598A330DE900E4FEF37900B79BCD14
C:\WINDOWS\system32\drivers\Entech.vxd	InMem: 0	Det [G]	MD5: FA733309F4C63BE80C7C9F4D97DAFC0D	PX5: C8B5F2CC1D19529818A5005B416CED0041C1488E
C:\WINDOWS\system32\drivers\Entech64.sys	InMem: 0	Det [G]	MD5: 4FC3498AAB35E5B78993B2AAFBCCFB62	PX5: 4E699B61004E58F216550003236E000005EB6320
C:\WINDOWS\system32\drivers\enum1394.sys	InMem: 0	Det [G]	MD5: 80D1B490B60E74E002DC116EC5D41748	PX5: 4E7FF71200A58CFF197100D1CCE6B600C8D9E0FF
C:\WINDOWS\system32\drivers\fastfat.sys	InMem: 0	Det [G]	MD5: 3117F595E9615E04F05A54FC15A03B20	PX5: 1E68B78D00BA4E2F30E102605EF38B00BED2E67D
C:\WINDOWS\system32\drivers\fips.sys	InMem: 0	Det [G]	MD5: 333FBBC71BDCBB46C58A3B51B3D51184	PX5: 1007D8C50089CEC889D600EFFDE6B800D02A5DA9
C:\WINDOWS\system32\drivers\fsvga.sys	InMem: 0	Det [G]	MD5: 25A7F5539209BE062D4BB3F9CD84BD16	PX5: 78ACD409008333CF30C90046F776F800BAB458CE
C:\WINDOWS\system32\drivers\fs_rec.sys	InMem: 0	Det [G]	MD5: 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A	PX5: 2E3179C900CB71741FBA004F645EEB00865149D3
C:\WINDOWS\system32\drivers\Hdaudio.sys	InMem: 0	Det [G]	MD5: 2A013E7530BEAB6E569FAA83F517E836	PX5: B7BDAA0200E26E383AB10225F4727C00EB8C3B5A
C:\WINDOWS\system32\drivers\hidclass.sys	InMem: 0	Det [G]	MD5: 378055AB8DDA86228683C697C4E11685	PX5: 800EAA28801FAC928DC800F3F0296600134890AF
C:\WINDOWS\system32\drivers\hidparse.sys	InMem: 0	Det [G]	MD5: 5FFF41CD5108E9051D255C37825AF697	PX5: 202AE5AF805FDB4161470039E900C0009EB401B0
C:\WINDOWS\system32\drivers\hpn.sys	InMem: 0	Det [G]	MD5: B028377DEA0546A5FCFBA928A8AEFAE0	PX5: E3E88DDE608451A865E100EA998B2E0037855B2B
C:\WINDOWS\system32\drivers\i2omgmt.sys	InMem: 0	Det [G]	MD5: 8F09F91B5C91363B77BCD15599570F2C	PX5: 510CA09D0048E0B620E4008D21A9D3008D5A0DA2
C:\WINDOWS\system32\drivers\i2omp.sys	InMem: 0	Det [G]	MD5: ED6BF9E441FDEA13292A6D30A64A24C3	PX5: 53DD5A928056D71F48AC00DEF5424100686103FA
C:\WINDOWS\system32\drivers\ini910u.sys	InMem: 0	Det [G]	MD5: 4A40E045FAEE58631FD8D91AFC620719	PX5: C7702821802D11853E090094CBC4E400E259EFF7
C:\WINDOWS\system32\drivers\inport.sys	InMem: 0	Det [G]	MD5: C290ED1483C883F2B305F532B15328C9	PX5: E4210BC7001F01C0359F00D22ED78A00619C2001
C:\WINDOWS\system32\drivers\intelide.sys	InMem: 0	Det [G]	MD5: 7C15B34147134381421D7044479A1D73	PX5: 13577194803FCB8815F90068ABEFAF00861C758E
C:\WINDOWS\system32\drivers\ks.sys	InMem: 0	Det [G]	MD5: B9540E258F952650DE8DEC68719A5C97	PX5: 78D9F49380D52F3B2603022FFE8CE100B4CA1585
C:\WINDOWS\system32\drivers\ksecdd.sys	InMem: 0	Det [G]	MD5: EB7FFE87FD367EA8FCA0506F74A87FBB	PX5: 774C935980F76922670D01959D71E6009D9267E6
C:\WINDOWS\system32\drivers\lbrtfdc.sys	InMem: 0	Det [G]	MD5: CC50A66548C2F285BC8A7B0B8AA578E3	PX5: D3D99067805CCB65878500557D5D27003CEC0276
C:\WINDOWS\system32\drivers\mcd.sys	InMem: 0	Det [G]	MD5: D1F8BE91ED4DDB671D42E473E3FE71AB	PX5: 874B185900D5916B1EF900C2FE181D00136FAB22
C:\WINDOWS\system32\drivers\mf.sys	InMem: 0	Det [G]	MD5: 729D83E56C29C510258A6E9E79FFDDC3	PX5: F49C56310087ADB9F998009652109C00BB35FCB1
C:\WINDOWS\system32\drivers\mnmdd.sys	InMem: 0	Det [G]	MD5: 4AE068242760A1FB6E1A44BF4E16AFA6	PX5: 33A41DEC8064684210700001C4EA1400320E2D4F
C:\WINDOWS\system32\drivers\modem.sys	InMem: 0	Det [G]	MD5: B30D2DB351E3191BD71232036CFE711A	PX5: F22F2ACE0067686F7617004AA04CD400DCD5102E
C:\WINDOWS\system32\drivers\mountmgr.sys	InMem: 0	Det [G]	MD5: 65653F3B4477F3C63E68A9659F85EE2E	PX5: 7309084F00AE944FA5B9001585E15200FF872CDC
C:\WINDOWS\system32\drivers\mqac.sys	InMem: 0	Det [G]	MD5: 157A32DDC6A019A4E31B19D604D2F127	PX5: A4B93ADE00A3CC201DAC01B48E57ED00D6108E71
C:\WINDOWS\system32\drivers\mraid35x.sys	InMem: 0	Det [G]	MD5: 3F4BB95E5A44F3BE34824E8E7CAF0737	PX5: C698A15680F72A6A43410027AE857800E03AD3D3
C:\WINDOWS\system32\drivers\msfs.sys	InMem: 0	Det [G]	MD5: 561B3A4333CA2DBDBA28B5B956822519	PX5: 075BA4B3803111464A9700E6E20263008B5F85A4
C:\WINDOWS\system32\drivers\mup.sys	InMem: 0	Det [G]	MD5: 82035E0F41C2DD05AE41D27FE6CF7DE1	PX5: 488AE40380446D0EA57D014A890CCF00C681450A
C:\WINDOWS\system32\drivers\ndis.sys	InMem: 0	Det [G]	MD5: 558635D3AF1C7546D26067D5D9B6959E	PX5: D3D6286080F2E0F0CA7A02249DEC7F001D734284
C:\WINDOWS\system32\drivers\ndproxy.sys	InMem: 0	Det [G]	MD5: 59FC3FB44D2669BC144FD87826BB571F	PX5: FB8873A080F72F00942D005DFF5068001A60ED1C
C:\WINDOWS\system32\drivers\nikedrv.sys	InMem: 0	Det [G]	MD5: BE984D604D91C217355CDD3737AAD25D	PX5: 31AFD82600B7B0E92F3400332F79D6008B90E2A9
C:\WINDOWS\system32\drivers\nmnt.sys	InMem: 0	Det [G]	MD5: 60CF8C7192B3614F240838DDBAA4A245	PX5: 4F6E51DE803D5E299DD30090E39024009FB3BD94
C:\WINDOWS\system32\drivers\npfs.sys	InMem: 0	Det [G]	MD5: 4F601BCB8F64EA3AC0994F98FED03F8E	PX5: 20DA5FD280719B5A789A008E44C90300CCA72CD2
C:\WINDOWS\system32\drivers\NSDriver.sys	InMem: 0	Det [G]	MD5: 05BDD706A847BBFA9FD5948CD636EB1A	PX5: D7A41BC58062FA0624F6003169CC6600FBF360AB
C:\WINDOWS\system32\drivers\ntfs.sys	InMem: 0	Det [G]	MD5: 19A811EF5F1ED5C926A028CE107FF1AF	PX5: F6D2D4BD008F0B21C44F08EC65529C002F16FA15
C:\WINDOWS\system32\drivers\null.sys	InMem: 0	Det [G]	MD5: 73C1E1F395918BC2C6DD67AF7591A3AD	PX5: 7047032880E19D2B0B4300F23A496700B79BCD14
C:\WINDOWS\system32\drivers\nwlnkipx.sys	InMem: 0	Det [G]	MD5: 79EA3FCDA7067977625B3363A2657C80	PX5: B455E8AE80D2C31959AC01662F7EE7009B9C1B54
C:\WINDOWS\system32\drivers\nwlnknb.sys	InMem: 0	Det [G]	MD5: 56D34A67C05E94E16377C60609741FF8	PX5: 04BB889700AAB944F73D0096D8122400A0912260
C:\WINDOWS\system32\drivers\nwlnkspx.sys	InMem: 0	Det [G]	MD5: C0BB7D1615E1ACBDC99757F6CEAF8CF0	PX5: 38D410228045AB3DDA820098A4E752008EA9780C
C:\WINDOWS\system32\drivers\nwrdr.sys	InMem: 0	Det [G]	MD5: 3F18D9365BE71C7B2E43B7CF4A0C1A10	PX5: 83E10CED0073D0907FCD02CE4498B500A105309E
C:\WINDOWS\system32\drivers\oprghdlr.sys	InMem: 0	Det [G]	MD5: 4BB30DDC53EBC76895E38694580CDFE9	PX5: 691E96B980EF4DD30D2300DD63265E00B79BCD14
C:\WINDOWS\system32\drivers\p3.sys	InMem: 0	Det [G]	MD5: ACF18D9F903B29790B8F8E01535F37D4	PX5: BC6A682380C862C2B56A0022A0FE9B00ED93F9A1
C:\WINDOWS\system32\drivers\partmgr.sys	InMem: 0	Det [G]	MD5: 3334430C29DC338092F79C38EF7B4CD0	PX5: CD5C0D6C00BC0D35496D00DCA66DE800E5B26EF9
C:\WINDOWS\system32\drivers\parvdm.sys	InMem: 0	Det [G]	MD5: 0DABEF655A444CB1E193626FB1D24B9F	PX5: D78233F200E873FD1B40001BF0D2FD00501E1542
C:\WINDOWS\system32\drivers\PciBus.sys	InMem: 0	Det [G]	MD5: D6829ACFA6315DB9A963D3EDE2BCBCFF	PX5: 5416C28E84B92A7A0F1300E6EA197500B79BCD14
C:\WINDOWS\system32\drivers\pciidex.sys	InMem: 0	Det [G]	MD5: 520B91AB011456B940D9B05FC91108FF	PX5: DD4713DB00668128625F00A6F0879B00FA781103
C:\WINDOWS\system32\drivers\pcmcia.sys	InMem: 0	Det [G]	MD5: 28F3538A2091993A03506311A05053E8	PX5: 1E5E2DAE80A234A7D5E1011E8065A7000BABC19F
C:\WINDOWS\system32\drivers\perc2.sys	InMem: 0	Det [G]	MD5: 6C14B9C19BA84F73D3A86DBA11133101	PX5: A43AD585A01480D56AE700F494050400D8326688
C:\WINDOWS\system32\drivers\perc2hib.sys	InMem: 0	Det [G]	MD5: F50F7C27F131AFE7BEBA13E14A3B9416	PX5: 280C41CF809F7F2E153800F3159B7600EC8E5F7E
C:\WINDOWS\system32\drivers\PnkBstrK.sys	InMem: 0	Det [G]	MD5: A719B9EE6116B496F4000C0B1311EA13	PX5: 43BA37D03875B47057AC005A0DA006006CBD8D13
C:\WINDOWS\system32\drivers\portcls.sys	InMem: 0	Det [G]	MD5: BC6B2BC69C1E009443E8B1FE2DB96101	PX5: 4C3FDB6000983D64179702C05212D30014AEE1A4
C:\WINDOWS\system32\drivers\processr.sys	InMem: 0	Det [G]	MD5: 2BE7F01E46970E946AA18CBA3DE019EB	PX5: AF0FBDFA005416189A000040A9FF7600B2B78287
C:\WINDOWS\system32\drivers\ql1080.sys	InMem: 0	Det [G]	MD5: 0A63FB54039EB5662433CABA3B26DBA7	PX5: A82C642380AE2BE59DA700943B27FD00DC447A6B
C:\WINDOWS\system32\drivers\ql10wnt.sys	InMem: 0	Det [G]	MD5: 6503449E1D43A0FF0201AD5CB1B8C706	PX5: 7595631F80DF50C381F200FF279FAF00F5EF7B24
C:\WINDOWS\system32\drivers\ql12160.sys	InMem: 0	Det [G]	MD5: 156ED0EF20C15114CA097A34A30D8A01	PX5: 36C6F79E008C7970B15D0042B56E550063C1516E
C:\WINDOWS\system32\drivers\ql1240.sys	InMem: 0	Det [G]	MD5: 70F016BEBDE6D29E864C1230A07CC5E6	PX5: F2BAC8600017931F9E4B00F553CCA000C43C7732
C:\WINDOWS\system32\drivers\ql1280.sys	InMem: 0	Det [G]	MD5: 907F0AEEA6BC451011611E732BD31FCF	PX5: 0A6F8C92806C6174BFD3001253C5130062859538
C:\WINDOWS\system32\drivers\rawwan.sys	InMem: 0	Det [G]	MD5: 01524CD237223B18ADBB48F70083F101	PX5: 3623B25780ED679386B1006F511AA700A8DBED63
C:\WINDOWS\system32\drivers\rdpwd.sys	InMem: 0	Det [G]	MD5: B54CD38A9EBFBF2B3561426E3FE26F62	PX5: F059F0E3086A11EC2111023C258C8900CFC29C24
C:\WINDOWS\system32\drivers\rio8drv.sys	InMem: 0	Det [G]	MD5: A56FE08EC7473E8580A390BB1081CDD7	PX5: 689BF8B80051228F2F8000540597A5009049C8B5
C:\WINDOWS\system32\drivers\riodrv.sys	InMem: 0	Det [G]	MD5: 0A854DF84C77A0BE205BFEAB2AE4F0EC	PX5: 31AFD82600B7B0E92F3400332F79D600DA0E26E7
C:\WINDOWS\system32\drivers\rmcast.sys	InMem: 0	Det [G]	MD5: 9D54C7C15847B933E03D6E7C9307BAE5	PX5: 51F889B700FC9166166A03256E7AAC00D3C16FD6
C:\WINDOWS\system32\drivers\rndismp.sys	InMem: 0	Det [G]	MD5: 224986203FC34BA21150CC87C4211840	PX5: 120F9F0E8086D832779500950845710097678050
C:\WINDOWS\system32\drivers\rndismpx.sys	InMem: 0	Det [G]	MD5: 443FEBD421787C018D657DF9E6A23EC7	PX5: 120F9F0E8086D83277950095084571009107002E
C:\WINDOWS\system32\drivers\rootmdm.sys	InMem: 0	Det [G]	MD5: D8B0B4ADE32574B2D9C5CC34DC0DBBE7	PX5: F3E7979300A8EEA3177100743639FF0080591A18
C:\WINDOWS\system32\drivers\scsiport.sys	InMem: 0	Det [G]	MD5: D7FD0FF761E28AC0EA35AD71E0CD67E9	PX5: BAEDAB6C00163F8D78C6012DFF6A240038CAB5E8
C:\WINDOWS\system32\drivers\sdbus.sys	InMem: 0	Det [G]	MD5: 02FC71B020EC8700EE8A46C58BC6F276	PX5: BA494C87000D7A4F08B4013D43118E00EBAF0531
C:\WINDOWS\system32\drivers\sffdisk.sys	InMem: 0	Det [G]	MD5: 1D9F1BEC651815741F088A8FB88E17EE	PX5: AF380F15808E7A972B3D001ABF251400652E930D
C:\WINDOWS\system32\drivers\sffp_sd.sys	InMem: 0	Det [G]	MD5: 586499FD312FFD7F78553F408E71682E	PX5: 35A841FC0030CAF028AD002AAB39F600184DF1C4
C:\WINDOWS\system32\drivers\smclib.sys	InMem: 0	Det [G]	MD5: 017DAECF0ED3AA731313433601EC40FA	PX5: 8A9722BD003AC63939580092009AC20088FC78D8
C:\WINDOWS\system32\drivers\snapman.sys	InMem: 0	Det [G]	MD5: B6AA9BBFF890FFEA333FFE81D0B888FF	PX5: 07B5A3CAA0FA14BFD83401FB72936100B5E70BDB
C:\WINDOWS\system32\drivers\sonydcam.sys	InMem: 0	Det [G]	MD5: ADDC9E4757A68AB60562AD3CB9C288D6	PX5: 0B9EAE4180F27A6F636900C11EF4E3002F2E7423
C:\WINDOWS\system32\drivers\sparrow.sys	InMem: 0	Det [G]	MD5: 83C0F71F86D3BDAF915685F3D568B20E	PX5: 34EF085980E9566F4AC800ACA767DA00AD03B518
C:\WINDOWS\system32\drivers\stream.sys	InMem: 0	Det [G]	MD5: C43356072EB3E88CD62958DB10CEAD47	PX5: E9758E5F00F11219BE3300252F112F00F38A6C5B
C:\WINDOWS\system32\drivers\symc810.sys	InMem: 0	Det [G]	MD5: 1FF3217614018630D0A6758630FC698C	PX5: 726B03B580033B4F3FF70050993647004EA53D5F
C:\WINDOWS\system32\drivers\symc8xx.sys	InMem: 0	Det [G]	MD5: 070E001D95CF725186EF8B20335F933C	PX5: A176C643801C41297FB00031AC7E6200A76AF5F8
C:\WINDOWS\system32\drivers\sym_hi.sys	InMem: 0	Det [G]	MD5: 80AC1C4ABBE2DF3B738BF15517A51F2C	PX5: 71BB2597E0A078A96ED200558FFED400800CEC2F
C:\WINDOWS\system32\drivers\sym_u3.sys	InMem: 0	Det [G]	MD5: BF4FAB949A382A8E105F46EBB4937058	PX5: F7063075E0AC6E5A777A00060D477100337B9826
C:\WINDOWS\system32\drivers\tape.sys	InMem: 0	Det [G]	MD5: A2A9CA0D1A9AC1FF54220AA0789FE5CF	PX5: 1278B1EF80B32A683A3F0096934CD200746C2998
C:\WINDOWS\system32\drivers\TCPIP.SYS.ORIGINAL	InMem: 0	Det [G]	MD5: 90CAFF4B094573449A0872A0F919B178	PX5: 9F6EEC1C80D7CCB57E0F0545DD505C004B15302D
C:\WINDOWS\system32\drivers\tcpip6.sys	InMem: 0	Det [G]	MD5: DCCACDD2747ADA221AECE5C9ADA5D551	PX5: 5D79645C800A9DEE710003BFD457ED00F0D2E94E
C:\WINDOWS\system32\drivers\tdi.sys	InMem: 0	Det [G]	MD5: 6891B74AB9A016064E82A419388D0601	PX5: D2E197368059988748C500010EF1F2006AC8B3D9
C:\WINDOWS\system32\drivers\tdpipe.sys	InMem: 0	Det [G]	MD5: 38D437CF2D98965F239B0ABCD66DCB0F	PX5: 3FCBC6C1086354332FFD003DE3512D00CB438F2A
C:\WINDOWS\system32\drivers\tdtcp.sys	InMem: 0	Det [G]	MD5: ED0580AF02502D00AD8C4C066B156BE9	PX5: 8942980688A6EF76558200032BC6D800A375DA91
C:\WINDOWS\system32\drivers\tifsfilt.sys	InMem: 0	Det [G]	MD5: B84B82C0CBEB1B0D7EB7A946BADE5830	PX5: EC50262D004B217680190007CB8DDE00306E002F
C:\WINDOWS\system32\drivers\timntr.sys	InMem: 0	Det [G]	MD5: 74711884439BDF9CCF446C79CB05FAC0	PX5: EEFF190780265492FC2905E96AFF34002D1C815A
C:\WINDOWS\system32\drivers\tosdvd.sys	InMem: 0	Det [G]	MD5: 699450901C5CCFD82357CBC531CEDD23	PX5: 628D18D7002B7E40CAFC00177DE27100B717B0CE
C:\WINDOWS\system32\drivers\toside.sys	InMem: 0	Det [G]	MD5: B5CEE774DA04340C6F4C0FD14286A50E	PX5: 660069178081BD481391002BE0F151008E41C9CB
C:\WINDOWS\system32\drivers\tsbvcap.sys	InMem: 0	Det [G]	MD5: D74A8EC75305F1D3CFDE7C7FC1BD62A9	PX5: 87882BA880A89CF8537500BE0BB03800CD0425CD
C:\WINDOWS\system32\drivers\tunmp.sys	InMem: 0	Det [G]	MD5: 87A0E9E18C10A9E454238E3330E2A26D	PX5: CBD0AEE38035D6A5300B00CF5C419100CB427E52
C:\WINDOWS\system32\drivers\udfs.sys	InMem: 0	Det [G]	MD5: 12F70256F140CD7D52C58C7048FDE657	PX5: 5FD2643980FF4C93024701049FF5A900913F1B6B
C:\WINDOWS\system32\drivers\ultra.sys	InMem: 0	Det [G]	MD5: 1B698A51CD528D8DA4FFAED66DFC51B9	PX5: 41CE68A780B045778F98006DDDA3600052A1B522
C:\WINDOWS\system32\drivers\usb8023.sys	InMem: 0	Det [G]	MD5: E8983FC08B64851BBE2D4868D99AE9F7	PX5: 5DE6AA06000719C4324E00BD7F4FBD00DFF516C6
C:\WINDOWS\system32\drivers\usb8023x.sys	InMem: 0	Det [G]	MD5: AE4DF3B7D1DB9373B08DB4ED224E26B6	PX5: 5DE6AA06000719C4324E00BD7F4FBD00ED76E301
C:\WINDOWS\system32\drivers\usbcamd.sys	InMem: 0	Det [G]	MD5: 2654EECC6FB13603EBDDCD5C8EA943D1	PX5: D11C923000C0476E5DDA002FC1E34E00BC32EEBC
C:\WINDOWS\system32\drivers\usbcamd2.sys	InMem: 0	Det [G]	MD5: 61018BA9DF6B63E51D9753C980E73EC2	PX5: D11C923080C0476E5DDA002FC1E34E002B3DC035
C:\WINDOWS\system32\drivers\usbd.sys	InMem: 0	Det [G]	MD5: 596EB39B50D6EBD9B734DC4AE0544693	PX5: F328D8568037A02F12FA00A0B0E095005A1BACA9
C:\WINDOWS\system32\drivers\usbintel.sys	InMem: 0	Det [G]	MD5: 2853FD4C4489E0F8BFCF78EFCDB7E998	PX5: 46A2709480A8B9863E99007B5ED70B000E5AFC3D
C:\WINDOWS\system32\drivers\usbport.sys	InMem: 0	Det [G]	MD5: 2034CA78F9C6E787B4B76D81AC888351	PX5: A1EF174180FC34972E3902AA15903200854523B2
C:\WINDOWS\system32\drivers\usbser.sys	InMem: 0	Det [G]	MD5: 49106EE29074E6A3D3AC9E24C6D791D8	PX5: FAA01DEA00C3822D64C200E9D9D51700173A783C
C:\WINDOWS\system32\drivers\vdmindvd.sys	InMem: 0	Det [G]	MD5: 55E01061C74A8CEFFF58DC36114A8D3F	PX5: 5DFBB3300012B79DE3E300778EC928004FCDB2AF
C:\WINDOWS\system32\drivers\viaide.sys	InMem: 0	Det [G]	MD5: 59CB1338AD3654417BEA49636457F65D	PX5: 763F36E3001A65E115B100F2DCFD2A00D63490D3
C:\WINDOWS\system32\drivers\videoprt.sys	InMem: 0	Det [G]	MD5: D5A9D123F5ED7C9965A481BD20CF66D8	PX5: BBE87C52808D55E2379801ACFA738900C0632DEC
C:\WINDOWS\system32\drivers\volsnap.sys	InMem: 0	Det [G]	MD5: 698869E82C57169F2140C04A272BF12B	PX5: AC3AFD0E80294768D03200EE1153E40098EF3DD1
C:\WINDOWS\system32\drivers\wmilib.sys	InMem: 0	Det [G]	MD5: 2F31B7F954BED437F2C75026C65CAF7B	PX5: 7A1B707D0098974111DB00C8E2E10C00FCC422B3
C:\WINDOWS\system32\drivers\wpdusb.sys	InMem: 0	Det [G]	MD5: C1B3D9D75C3FB735F5FA3A5806ADED57	PX5: A638B0C8000D268C4AED005D86936200CF58B256
C:\WINDOWS\system32\drivers\ws2ifsl.sys	InMem: 0	Det [G]	MD5: 6ABE6E225ADB5A751622A9CC3BC19CE8	PX5: E3FE23AC0026FAFE2FF10052E88519002DA1A545
C:\WINDOWS\system32\drivers\yeahpbrl.sys	InMem: 0	Det [G]	MD5: 4AD5D5229F85F42E873FDA98190B2F19	PX5: FB73D99E00B6F74BEC4C00F1D3345D006BA93111
C:\Documents and Settings\Andrea\Dati applicazioni\PnkBstrK.sys	InMem: 0	Det [G]	MD5: A719B9EE6116B496F4000C0B1311EA13	PX5: 43BA37D03875B47057AC005A0DA006006CBD8D13
C:\WINDOWS\Radeon Omega Drivers v3.8.330 Uninstall.exe	InMem: 0	Det [GP]	MD5: 75CA7FF96BF5A316C3AF2DE6A412BD54	PX5: C18CBFC400CDDA59E20506E569F41100AADC38E3
C:\WINDOWS\Radeon Omega Drivers v3.8.360 Uninstall.exe	InMem: 0	Det [GP]	MD5: 75CA7FF96BF5A316C3AF2DE6A412BD54	PX5: C18CBFC400CDDA59E20506E569F41100AADC38E3
C:\WINDOWS\Radeon Omega Drivers v3.8.413 Uninstall.exe	InMem: 0	Det [GP]	MD5: 75CA7FF96BF5A316C3AF2DE6A412BD54	PX5: C18CBFC400CDDA59E20506E569F41100AADC38E3
C:\WINDOWS\Radeon Omega Drivers v4.8.442 Uninstall.exe	InMem: 0	Det [GP]	MD5: 1C58B6EE4CB9561E81095B76656A2EF9	PX5: 326601A900D7FD4836F0070DD9D24400BAA87D6E
C:\WINDOWS\system32\Ati2mdxx.exe	InMem: 0	Det [G]	MD5: 3D8D6C316A98D181BC46796F3F0BC823	PX5: 6F7ADB0900416B7466C100AE2A6FCC009DE9ACD5
C:\WINDOWS\system32\atiadaxx.exe	InMem: 0	Det [G]	MD5: 0D1C21A6084A9B1783E29E6D09F6FC00	PX5: BBB07B12001DB26CF0511BF32997AA00DABD04DB
C:\WINDOWS\system32\aticds10.dll	InMem: 0	Det [G]	MD5: 8F841B5345AD79441DDC786E033310E0	PX5: A76A660F00F125C450B005F6D3528500B37601A6
C:\WINDOWS\system32\ATIDDC.DLL	InMem: 0	Det [G]	MD5: BF4B1CEF4A875744EA8878766ABBD5B5	PX5: 99560EB500981D8ED0D40054746779009A670641
C:\WINDOWS\system32\ATIDEMGX.dll	InMem: 0	Det [G]	MD5: 87CBF8824323FC90993FBE960D44CF93	PX5: 7AD991B200E3F579A09F055FFA1A010044933455
C:\WINDOWS\system32\atiicdxx.dll	InMem: 0	Det [G]	MD5: 4F5ABCBF205433C9F2F6630CD02B81DA	PX5: 4C3866C70028D22AD08705445015C40092C0415E
C:\WINDOWS\system32\atiicdxx.sys	InMem: 0	Det [G]	MD5: DE886DF1F5ADB5B067D25D977872B99C	PX5: C00FD06E007E066D18ED0069B5D703004EEB8ED5
C:\WINDOWS\system32\atiicdxx.vxd	InMem: 0	Det [G]	MD5: 65A41097C9F932C83C52F027903CA33F	PX5: 9F2694E4A9A7E5211EF200DA40B37F003D70ED22
C:\WINDOWS\system32\atiiiexx.dll	InMem: 0	Det [G]	MD5: 06DE03546C9CEF08D1869FD69FC58B83	PX5: 3B9608DF00B3F799B0E404D24BDFE50029488F13
C:\WINDOWS\system32\atiiprxx.exe	InMem: 0	Det [G]	MD5: 1569578184220072A58C99DA7490C54B	PX5: 184E69A9006760C5906C00C90678FE0066E16996
C:\WINDOWS\system32\atikvmag.dll	InMem: 0	Det [G]	MD5: 3100F9D372658B4764212DE23DB58E09	PX5: F798A9130024E70CE01C05D0CEC58200E8C3907B
C:\WINDOWS\system32\atioglx2.dll	InMem: 0	Det [G]	PX5: D489431A007B70AA80A691F96FC3CF00451C2AAB
C:\WINDOWS\system32\atioglxx.dll	InMem: 0	Det [G]	PX5: 571CFBF6000BFBADF03952A0B225DC002C3D02B2
C:\WINDOWS\system32\atiok3x2.dll	InMem: 0	Det [G]	MD5: F35ED5FD46B2BC6B99DB9CE4CEC08372	PX5: 1E0BA11D0004528DC02D0238D539B300B22715D3
C:\WINDOWS\system32\atipdsxx.dll	InMem: 0	Det [G]	MD5: F68ACEFE2F678AC6D97BE92C8F993C9B	PX5: 5FCF756800A8DA5130E6043529DFD7001A0747BE
C:\WINDOWS\system32\atiphexx.exe	InMem: 0	Det [G]	MD5: 20CED6A7513DA6588334840FE4769C04	PX5: 80C42B5E00EB15C8F09300F50FE6C2009A1E4F17
C:\WINDOWS\system32\atippaxx.dll	InMem: 0	Det [G]	MD5: 9C2BF0EFE865EEBF16EDAC1199B32BFB	PX5: CED25E85004819E6C01901F61651C900C6436315
C:\WINDOWS\system32\atiprbxx.exe	InMem: 0	Det [G]	MD5: C388873A881C1C87D4CD2663F794DCB2	PX5: 6BC62C4400813B7D209A0271D8265C00E626DCC2
C:\WINDOWS\system32\atiptaxx.exe	InMem: 0	Det [G]	MD5: 755750EC06ED1649D83AB6DF7BBA6516	PX5: 8D5754E200DBC10740370581A550C2001BAB2B0D
C:\WINDOWS\system32\atipuixx.dll	InMem: 0	Det [G]	MD5: 2432EEE018F44B7DBA503CDAF2A25E6C	PX5: 6189DBDA0044095470641F43EFF52000D33C47DA
C:\WINDOWS\system32\atitvo32.dll	InMem: 0	Det [G]	MD5: AAD554359AD9320FEA743069431AB6D7	PX5: 477DAEC2001BF4BE4421007662646B006116399F
C:\WINDOWS\system32\ativcoxx.dll	InMem: 0	Det [G]	MD5: 9505C5D2F033614EF8725DCF6DE6013A	PX5: 9E4EBDC60060E8C65E3B0060EFD35D001ADF7785
C:\WINDOWS\system32\ativvaxx.dll	InMem: 0	Det [G]	MD5: 8ABBBEC22C85A624E1DAAC011DC3FDA3	PX5: 405742A5008E00D4078519F46A330200C93E2DB7
C:\WINDOWS\system32\atricdxx.dft	InMem: 0	Det [G]	MD5: 3416E67C110324216B8608166391C4FB	PX5: DBBF2D490012E4C220DA01793B220B00006BDDC8
C:\WINDOWS\system32\atricdxx.enu	InMem: 0	Det [G]	MD5: 3416E67C110324216B8608166391C4FB	PX5: DBBF2D490012E4C220DA01793B220B00006BDDC8
C:\WINDOWS\system32\atrpuixx.ara	InMem: 0	Det [G]	MD5: 7A5192C67449B0CACAD89F17DED788D2	PX5: 6870DC55008EFCA24084023181EF1100E83A542E
C:\WINDOWS\system32\atrpuixx.chs	InMem: 0	Det [G]	MD5: A25A697261BB44B6B422EDFCD008D527	PX5: 86282303002FD25AA0CF01112890F1004B645E2B
C:\WINDOWS\system32\atrpuixx.cht	InMem: 0	Det [G]	MD5: C0994092E8566DAF607AE61C5135F2D3	PX5: 90CF5DCA00E79F58A0A4014EFB029500F484AA6D
C:\WINDOWS\system32\atrpuixx.csy	InMem: 0	Det [G]	MD5: 7F22D8E75FBB4C5E01B9ECF452DFB316	PX5: 3B19F5FC00918C87502502A0FAC43900E8537D17
C:\WINDOWS\system32\atrpuixx.dan	InMem: 0	Det [G]	MD5: 7FAA7182268BC4068FBC6A518A272D0D	PX5: CEF3AA7E0022C3BD50E702CC3550D500C1BA5F5E
C:\WINDOWS\system32\atrpuixx.deu	InMem: 0	Det [G]	MD5: 280F8B83EDCADA053F0228BF451BC4F5	PX5: 057690C8005D8FA970BC02C7A1560000773DAC3F
C:\WINDOWS\system32\atrpuixx.ell	InMem: 0	Det [G]	MD5: E1002FC4215C9ED8C0C9F76B0852C719	PX5: CDAD678400B981F380DD026C435459004EE6CD23
C:\WINDOWS\system32\atrpuixx.enu	InMem: 0	Det [G]	MD5: FE1B27A6CD5DD75CA5F3964733165AEF	PX5: 8CE5A820007870E440F102E8E512BE009EAC401D
C:\WINDOWS\system32\atrpuixx.esp	InMem: 0	Det [G]	MD5: 6C7A955C61A8E86C122DBD9EEF4DB0D1	PX5: 6CF538DD00D8A2677079021434950A0093BFA1A0
C:\WINDOWS\system32\atrpuixx.fin	InMem: 0	Det [G]	MD5: 73DFBA70F58AE99632FBCAEE5FC8A92D	PX5: C61288AE00CA7D5D500A02F1ACE3F900E658336F
C:\WINDOWS\system32\atrpuixx.fra	InMem: 0	Det [G]	MD5: 89FF189D68BA80DF1185206E335F309E	PX5: F8BD0CB400E0E65170120220CC83690007F70BCA
C:\WINDOWS\system32\atrpuixx.heb	InMem: 0	Det [G]	MD5: 7C973E6739E7FA5DA68AA282B63E9E88	PX5: A94FBD3E00C14DE330800247A81E0D00D5074AF7
C:\WINDOWS\system32\atrpuixx.hun	InMem: 0	Det [G]	MD5: 1E53DE83613FD0EF65D14579755DA7CB	PX5: 89F3EEFE000E62706031020AAFCEAA00A2B97AC0
C:\WINDOWS\system32\atrpuixx.ita	InMem: 0	Det [G]	MD5: 96DAC377AAF36B24AF38EE2991FA8009	PX5: 2F2EC5A50005E291703802A928F9DD007764BF67
C:\WINDOWS\system32\atrpuixx.jpn	InMem: 0	Det [G]	MD5: C3F2DFC0B943D4AF0F5BD365A4A8D7C2	PX5: C3BC14E300211263D03301108D3843007DF3B0B7
C:\WINDOWS\system32\atrpuixx.kor	InMem: 0	Det [G]	MD5: B9463DCB856D99BA75920A87FBC51716	PX5: A5BE865500043DBCC0160110A046B00008F0FC88
C:\WINDOWS\system32\atrpuixx.nld	InMem: 0	Det [G]	MD5: 42D98B40541E86DC5440820B04767509	PX5: EA845E1600B8E5B36031024A81E52A00D4CFD79E
C:\WINDOWS\system32\atrpuixx.nor	InMem: 0	Det [G]	MD5: E1D2A77316DC50E16DECE2FB27D1B574	PX5: 7527C9AE00179446509F021BDB933800606EADB4
C:\WINDOWS\system32\atrpuixx.plk	InMem: 0	Det [G]	MD5: 9085C9EE0AF00DD5C793E63C48C427EA	PX5: B6E19731009F8F28608102C9E93C2400F6A8BBFD
C:\WINDOWS\system32\atrpuixx.ptb	InMem: 0	Det [G]	MD5: 98AB2994DA59DB7015E2F4F684D55202	PX5: 9BE1520D00BCF58A60F5029AF812C40032AA3B91
C:\WINDOWS\system32\atrpuixx.rus	InMem: 0	Det [G]	MD5: FE75D975A373FAAFB5475A87E6183EEB	PX5: 59B1B6E900EAD3CD60DE02DE6ED91E0091FB5C76
C:\WINDOWS\system32\atrpuixx.sve	InMem: 0	Det [G]	MD5: 91E661A0D1FE5E1E67A5F440DF45B269	PX5: D48743950012D21750B9029EDB61AE009DCD1A39
C:\WINDOWS\system32\atrpuixx.tha	InMem: 0	Det [G]	MD5: C030F5AE4D5CD04E26444AC329186270	PX5: FE48A3CC00D24FAD50B102BB21060D00DA02187C
C:\WINDOWS\system32\atrpuixx.trk	InMem: 0	Det [G]	MD5: 592ACFF364E48807F1294F173CC8123B	PX5: D4E270D200C540E1501602E4F40BA700D5A83369
C:\WINDOWS\system32\CSCCDVC.DLL	InMem: 0	Det [G]	MD5: 82D96EC9EEE76138E245B1B623F392A9	PX5: 0AF0C2F400BE82566E3D014CE2358D00755EDA92
C:\WINDOWS\system32\CSEDV.DLL	InMem: 0	Det [G]	MD5: A4F92F6A4394D3832F4AC708DA9FE9AD	PX5: EF279C4A000109FF486702D2D4F6AC000C5EFC0D
C:\WINDOWS\system32\D3DCompiler_36.dll	InMem: 0	Det [G]	MD5: FB4299688A0D3A37687C015AC2B9922D	PX5: E36D3BCD18A59691F8CA149E8DB008005075D419
C:\WINDOWS\system32\d3dx10_36.dll	InMem: 0	Det [G]	MD5: D9158E78A368B08D9133043EB3058C12	PX5: 9EFEA5FC684E8C09C9BF066600D9B1007D4FCF5A
C:\WINDOWS\system32\d3dx9_36.dll	InMem: 0	Det [G]	PX5: 5D8D72FB0885F3A1FCC93873B8B9B8001352970A
C:\WINDOWS\system32\DECCDVC.DLL	InMem: 0	Det [G]	MD5: E1F25CC068308DB47F307661F8FC6F52	PX5: B4D0C5EA0090E4AB766300AAF3CA7F0048546C09
C:\WINDOWS\system32\DIRECTX.CPL	InMem: 0	Det [G]	MD5: 62E23ECBBF4176D3A5C2638A4FFDECB0	PX5: DE58C86F003FB04010E802D8FC2C340065B2E314
C:\WINDOWS\system32\dpl100.dll	InMem: 0	Det [G]	MD5: A02A458E8725BB0C21895703FAA92C2B	PX5: 10A25E3B00E4AFDB406001973C459000F4C23553
C:\WINDOWS\system32\giveio.sys	InMem: 0	Det [G]	MD5: 77EBF3E9386DAA51551AF429052D88D0	PX5: 359250D3800F863E142A00AE48D6BA00C542604A
C:\WINDOWS\system32\Iacenc.dll	InMem: 0	Det [G]	MD5: 82D4E842D5EF6B91232C36B2A81AFCEA	PX5: 8192952200EE102F346202600149F00069BB520E
C:\WINDOWS\system32\MRT.exe	InMem: 0	Det [G]	PX5: 36B039A778DB1D79EC0415053973EC012C9E3876
C:\WINDOWS\system32\mucltui.dll.mui	InMem: 0	Det [G]	MD5: 0B4F08D15CAF75A5C75120B1FDE1E1AA	PX5: A5CEE5C07828FA91754700AE8244D0004ACFFC69
C:\WINDOWS\system32\Oemdspif.dll	InMem: 0	Det [G]	MD5: 8BB141D62D7463117CECA82182F142D8	PX5: 6139FA6C00F8F0E0E08F0159820E1100D6238D70
C:\WINDOWS\system32\qt-dx331.dll	InMem: 0	Det [G]	PX5: C9F371530031E58DE000360B1F59620004BE1690
C:\WINDOWS\system32\speedfan.sys	InMem: 0	Det [G]	MD5: 5D6401DB90EC81B71F8E2C5C8F0FEF23	PX5: 1E14190C806324CB14960059B316E9008B4B2B7E
C:\WINDOWS\system32\Startup.cpl	InMem: 0	Det [G]	MD5: 4B0BD8B90074D21695D3A44BCFD94DCA	PX5: E384C6FF00B9EC6140B9011559218C009698F83B
C:\WINDOWS\system32\streamhlp.dll	InMem: 0	Det [G]	MD5: 0A381F8920798BE6838E1BC5819A3326	PX5: A25868DD004A3997E86F00384B5BEF00DAD72249
C:\WINDOWS\system32\unrar.dll	InMem: 0	Det [G]	MD5: BC8123E9966E126FDEB3064EB2FA3302	PX5: 2478C99100133F3A82200284AC266F00A4CE4E84
C:\WINDOWS\system32\uxtheme.dll.bak	InMem: 0	Det [G]	MD5: D5193D474D7BB9CE917B4CF5F3ADA9D4	PX5: D88EDDB7006796175ABD03E85DCCE30039E51CA1
C:\WINDOWS\system32\watchdog.sys	InMem: 0	Det [G]	MD5: C9BF2F12C4E6C12F8A85FBA4B6BC6208	PX5: A5490EC7005C2AF84570001E79455E0011553B7B
C:\WINDOWS\system32\wgalogon.dll.old	InMem: 0	Det [G]	MD5: 147429092C26D18AF550790AC102F32A	PX5: 3E39799B30107989B90C0A732240FA00A1A0156A
C:\WINDOWS\system32\wgatray.exe.old	InMem: 0	Det [G]	MD5: B202D32C55AB828E3364109875F210F0	PX5: 4698E0D7306CA73DA7FB04B889D3010031FCFDE6
C:\WINDOWS\system32\win32k.sys	InMem: 0	Det [G]	MD5: 6AFDE6C2294DB179A558377F9EB5A0F7	PX5: AF40E9838058D78E21CB1CA553259300AEAD9216
C:\WINDOWS\system32\wuapi.dll.mui	InMem: 0	Det [G]	MD5: B7B1EBD53C9E861DB7A8AB7D13D8E1D8	PX5: 92E0CC095853C0C1753300650DDDAD00C0399BC2
C:\WINDOWS\system32\wuaucpl.cpl.mui	InMem: 0	Det [G]	MD5: 5271DCC72118B26619D1F8F4B3372A06	PX5: FD92C06C58084CD4759C00E6600FAC0065A26BA6
C:\WINDOWS\system32\wuaueng.dll.mui	InMem: 0	Det [G]	MD5: A9875E8F8A1852E0E325A02CE421ED36	PX5: 8F87ECF5583D62C253DE00AB7F3D51002C1F4DC0
C:\WINDOWS\system32\wucltui.dll.mui	InMem: 0	Det [G]	MD5: 7A5740C5A55447E88A760322334244D5	PX5: 70241DA158CC4AF1959400D2361A37006066AE07
C:\WINDOWS\system32\xactengine2_10.dll	InMem: 0	Det [G]	MD5: 73E055AF78A64F9B2779D44407CA2AB6	PX5: 73B3E84308A5483214E70449037F1900AF04C4A5
C:\WINDOWS\system32\xactengine2_9.dll	InMem: 0	Det [G]	MD5: 46EE68F04A75A1CCF40235EA6F1CBA05	PX5: 427AED3C6874E093130504A17FD82F0075A8A2D6
C:\WINDOWS\system32\xvidcore.dll	InMem: 0	Det [G]	MD5: F3B02C70170CA8C27DB8E77C7C8F871E	PX5: 232684F7000D1FCECA51174BC10B9E00858A33A3
C:\WINDOWS\system32\yv12vfw.dll	InMem: 0	Det [G]	MD5: DD602C1FBA3A3E962627569C9E10AF7C	PX5: 4BDE05EB00E04C7D50930332D627F80049105AE8
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\30exhmrgas2.exe	InMem: 0	Det [UP]	MD5: CAE7906B520C9A4D5636A2A18793C9F8	PX5: A83E11470068C8E05EC5036C49E6A20010D4BBE4
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\58exhmrgas2.exe	InMem: 0	Det [UP]	MD5: CAE7906B520C9A4D5636A2A18793C9F8	PX5: A83E11470068C8E05EC5036C49E6A20010D4BBE4
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\71exgmrgml18.exe	InMem: 0	Det [UP]	MD5: 8C14F4BB51C1CB69B355374D5156AF95	PX5: C9FC0529004B923EB296039EF9186100B78A0917
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\90exhmrgas2.exe	InMem: 0	Det [UP]	MD5: CAE7906B520C9A4D5636A2A18793C9F8	PX5: A83E11470068C8E05EC5036C49E6A20010D4BBE4
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\93exgmrgml18.exe	InMem: 0	Det [UP]	MD5: 8C14F4BB51C1CB69B355374D5156AF95	PX5: C9FC0529004B923EB296039EF9186100B78A0917
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\95exgmrgml18.exe	InMem: 0	Det [UP]	MD5: 8C14F4BB51C1CB69B355374D5156AF95	PX5: C9FC0529004B923EB296039EF9186100B78A0917
C:\Documents and Settings\Andrea\Impostazioni locali\Temp\97exgmrgml18.exe	InMem: 0	Det [UP]	MD5: 8C14F4BB51C1CB69B355374D5156AF95	PX5: C9FC0529004B923EB296039EF9186100B78A0917
C:\WINDOWS\system32\mobsync.exe	InMem: 0	Det [G]	MD5: 909666D8FD0C1F3925777292904014E0	PX5: C8702EF20049272532860233FE44EC002C04B967


End of PrevxCSI Log - http://www.prevx.com
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 16:54   #22
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
gentilmente, i prossimi log postali in questa maniera:
1)la funzione allegati, rinominando i log in formato txt
2)caricare il log su FileUp, copiando qui i link x il download

riguardo eset, nn importa che posti qui il log, è importante che premi clean e fai la pulizia degli ads ( nn ti preoccupare dei nomi che compaiono, nn cancelli nessun file)
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 17:00   #23
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Quote:
Originariamente inviato da murack83pa Guarda i messaggi
gentilmente, i prossimi log postali in questa maniera:
1)la funzione allegati, rinominando i log in formato txt
2)caricare il log su FileUp, copiando qui i link x il download

riguardo eset, nn importa che posti qui il log, è importante che premi clean e fai la pulizia degli ads ( nn ti preoccupare dei nomi che compaiono, nn cancelli nessun file)
Ok grazie.
Passo a A-SQUARED FREE 3.X allora?
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 17:02   #24
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
Quote:
Originariamente inviato da <^MORFEO^> Guarda i messaggi
Ok grazie.
Passo a A-SQUARED FREE 3.X allora?
nn ho detto che nn devi fare la scansione con eset: la devi fare

nn è necessario che posti il log

ciao
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 17:08   #25
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Quote:
Originariamente inviato da murack83pa Guarda i messaggi
nn ho detto che nn devi fare la scansione con eset: la devi fare

nn è necessario che posti il log

ciao
Ma si ho capito. Infatti la sta finendo...
E appena finisce parto con il clean!
Uffa, è di nuovo attivo il 45exgmrgml18.exe
Installo intanto A-SQUARED FREE 3.X...
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 17:13   #26
Nuz
Senior Member
 
L'Avatar di Nuz
 
Iscritto dal: Feb 2007
Città: Roma
Messaggi: 2155
Quote:
Originariamente inviato da <^MORFEO^> Guarda i messaggi
Uffa, è di nuovo attivo il 45exgmrgml18.exe
Prima si chiamava 87exgmrgml18.exe, poi è diventato 72exgmrgml18.exe, ora 45exgmrgml18.exe.
Sarebbe utile se lo facessi analizzare su www.virustotal.com
__________________
La tua prossima affermazione sarà un No? Rispondi con un Si o un No.
Nuz è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 17:32   #27
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Ho effettuato la pulizia con ESET ADS Revealer.
Ora sto finendo di scansionare con il secondo programma!

Quote:
Originariamente inviato da Nuz Guarda i messaggi
Prima si chiamava 87exgmrgml18.exe, poi è diventato 72exgmrgml18.exe, ora 45exgmrgml18.exe.
Sarebbe utile se lo facessi analizzare su www.virustotal.com
Non posso farlo su quel sito poichè non so dove trovarlo quel maledetto...
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 18:06   #28
Nuz
Senior Member
 
L'Avatar di Nuz
 
Iscritto dal: Feb 2007
Città: Roma
Messaggi: 2155
C:\DOCUME~1\Andrea\IMPOST~1\Temp\
__________________
La tua prossima affermazione sarà un No? Rispondi con un Si o un No.
Nuz è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 18:59   #29
brucewillis71
Senior Member
 
L'Avatar di brucewillis71
 
Iscritto dal: Feb 2002
Città: Bologna
Messaggi: 533
Argomento già trattato, se può interessare ecco la discussione: http://www.hwupgrade.it/forum/showthread.php?t=1591573
__________________
Packard Bell X1052 - Processore Intel Core 2 Quad Q6600 (2400 Mhz) - Ram 3072 Mb - Hard Disk 500 GB - Scheda video NVidia GEF 8600GS
Portatile Fujitsu Siemens M1439G
brucewillis71 è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:23   #30
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Quote:
Originariamente inviato da brucewillis71 Guarda i messaggi
Argomento già trattato, se può interessare ecco la discussione: http://www.hwupgrade.it/forum/showthread.php?t=1591573
Vedo che non sono il solo ad avere questo problema...
E alla fine come hai risolto?
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:26   #31
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
Quote:
Originariamente inviato da <^MORFEO^> Guarda i messaggi
Vedo che non sono il solo ad avere questo problema...
E alla fine come hai risolto?
ha risolto con un bel po di scansioni di programmi differenti da quello che ho visto....


attendiamo i log.....
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:30   #32
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Quote:
Originariamente inviato da murack83pa Guarda i messaggi
ha risolto con un bel po di scansioni di programmi differenti da quello che ho visto....


attendiamo i log.....
Sto ancora scansionando con A-squared Free 3.1...
Per adesso ha rilevato 22 oggetti:



E siamo praticamente alla fine della scansione...
PS: Ora ho il 51exgmrgml18.exe
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:33   #33
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
a fine scansione, metti tutto in quarantena x il momento

dopo che finisci con Asquared, non proseguire con gli altri programmi della guida al momento e scaricati questo tool e fai una scansione: FINDAWF
DOWNLOAD

una volta scaricato, avvialo, premi invio e lo lasci lavorare

al termine spunterà il report: postalo qui
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:35   #34
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Quote:
Originariamente inviato da murack83pa Guarda i messaggi
a fine scansione, metti tutto in quarantena x il momento

dopo che finisci con Asquared, non proseguire con gli altri programmi della guida al momento e scaricati questo tool e fai una scansione: FINDAWF
DOWNLOAD

una volta scaricato, avvialo, premi invio e lo lasci lavorare

al termine spunterà il report: postalo qui
OK!
Comunque certe cose di quella lista so di cosa sono e sono di programmi che mi servono... Devo mettere in quarantena anche quelli? Perchè poi penso che non mi funzionerà più quel programma...
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:39   #35
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Finita la scansione!
Non ha trovato niente altro in aggiunta all'immagine già postata...
Allora, devo postare qualcosa in particolare?
Li metto in quarantena tutti o posso escludere quelli del programma che conosco e uso?
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:42   #36
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
Quote:
Originariamente inviato da <^MORFEO^> Guarda i messaggi
OK!
Comunque certe cose di quella lista so di cosa sono e sono di programmi che mi servono... Devo mettere in quarantena anche quelli? Perchè poi penso che non mi funzionerà più quel programma...

al momento mettile in quarantena.....

il problema è che hai, tra le altre cose, un particolare trojan che si nasconde nelle cartelle dei programmi che hai in esecuzione in avvio, sostituento gli exe dei programmi con exe infetti...x questo asquared rileva questi programmi come infetti.....

è piu facile a farsi che a dirsi: a fine scansione, scansione con findawf e posta qui il report
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:42   #37
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
Quote:
Originariamente inviato da <^MORFEO^> Guarda i messaggi
Finita la scansione!
Non ha trovato niente altro in aggiunta all'immagine già postata...
Allora, devo postare qualcosa in particolare?
Li metto in quarantena tutti o posso escludere quelli del programma che conosco e uso?
utilizza FINDAWF e posta qui il log
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:44   #38
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Ho lasciato aperto a-squared e sto scansionando con l'altro programma... Appena finisce posto il log
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:46   #39
murack83pa
Bannato
 
Iscritto dal: Oct 2007
Città: Palermo
Messaggi: 4623
Quote:
Originariamente inviato da <^MORFEO^> Guarda i messaggi
Ho lasciato aperto a-squared e sto scansionando con l'altro programma... Appena finisce posto il log
gli exe che ha rilevato asquared sono quelli infetti, quindi puoi mettere tutto in quarantena,poi li cancelliamo

oltra al log di findawf, c serve il log di asquared...grazie
murack83pa è offline   Rispondi citando il messaggio o parte di esso
Old 13-02-2008, 20:48   #40
<^MORFEO^>
Senior Member
 
L'Avatar di <^MORFEO^>
 
Iscritto dal: Apr 2006
Città: Trieste
Messaggi: 3401
Log di Asquared:

Codice:
a-squared Free - Version 3.1
Last update: 13/02/2008 18.14.35

Impostazioni scansione:

Oggetti: Memoria, Tracce, Cookies, C:\
Archivio scansioni: On
Scientifico: On
ADS Scan: On

Scansione avviata:	13/02/2008 18.17.25

c:\programmi\myglobalsearch 	rilevati: Trace.Directory.MyGlobalSearchToolbar
c:\documents and settings\andrea\desktop\vnc viewer 4.lnk 	rilevati: Trace.File.VNC
Key: HKEY_CLASSES_ROOT\.vnc 	rilevati: Trace.Registry.VNC.CommonComponents
Key: HKEY_CLASSES_ROOT\vnc.connectioninfo 	rilevati: Trace.Registry.VNC.CommonComponents
Key: HKEY_CLASSES_ROOT\.vnc 	rilevati: Trace.Registry.VNC
Key: HKEY_CLASSES_ROOT\vnc.connectioninfo 	rilevati: Trace.Registry.VNC
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\realvnc_is1 	rilevati: Trace.Registry.VNC
Key: HKEY_LOCAL_MACHINE\software\realvnc 	rilevati: Trace.Registry.VNC
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\realvnc_is1 	rilevati: Trace.Registry.VNCServer
Key: HKEY_LOCAL_MACHINE\software\realvnc\winvnc4 	rilevati: Trace.Registry.VNCServer
Key: HKEY_USERS\S-1-5-21-1078081533-839522115-1801674531-1003\software\realvnc\vncviewer4 	rilevati: Trace.Registry.VNCViewer
c:\programmi\boonty 	rilevati: Trace.Directory.BoontyBox
c:\programmi\myglobalsearch\bar 	rilevati: Trace.Directory.My Global Search Bar
c:\documents and settings\andrea\dati applicazioni\shareaza 	rilevati: Trace.Directory.Shareaza Lite
c:\documents and settings\andrea\dati applicazioni\shareaza\torrents 	rilevati: Trace.Directory.Shareaza Lite
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Astro Gemini Software\Screensaver Manager --> InstallPath 	rilevati: Trace.Registry.Screensaver Manager
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Astro Gemini Software\Screensaver Manager --> IsAskActivate 	rilevati: Trace.Registry.Screensaver Manager
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Astro Gemini Software\Screensaver Manager --> IsAskWebUpdate 	rilevati: Trace.Registry.Screensaver Manager
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Astro Gemini Software\Screensaver Manager --> IsLockedPreview 	rilevati: Trace.Registry.Screensaver Manager
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Astro Gemini Software\Screensaver Manager --> WasFirstConfigure 	rilevati: Trace.Registry.Screensaver Manager
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Astro Gemini Software\Screensaver Manager --> WasFirstWebUpdate 	rilevati: Trace.Registry.Screensaver Manager
C:\Andrea\Installazioni\RAR & Zip\Archive Repair AIO v1.0.0.rar/Archive Repair AIO v1.0.0.exe 	rilevati: Trojan.Win32.Obfuscated.fk

Scansionati

Files: 	462937
Tracce: 	364744
Cookies: 	19
Processi: 	37

Rilevato

Files: 	1
Tracce: 	21
Cookies: 	0
Processi: 	0
Chiavi registro: 	0

Fine scansione:	13/02/2008 21.37.42
Tempo scansione:	3:20:17
Log di FindAWF:

Codice:
 Find AWF report by noahdfear ©2006


  bak folders found
  ~~~~~~~~~~~

 Il volume nell'unit… C non ha etichetta.
 Numero di serie del volume: 2CDD-21C6

 Directory di C:\ANDREA\PROGET~1\FONDAM~2\PRCD65~1\BAK

20/10/2005  18.52               576 untitled.cpp~10~
20/10/2005  18.52               576 untitled.cpp~11~
20/10/2005  18.54               615 untitled.cpp~12~
20/10/2005  18.44               284 untitled.cpp~3~
20/10/2005  18.46               459 untitled.cpp~4~
20/10/2005  18.47               461 untitled.cpp~5~
20/10/2005  18.47               451 untitled.cpp~6~
20/10/2005  18.48               455 untitled.cpp~7~
20/10/2005  18.48               455 untitled.cpp~8~
20/10/2005  18.48               451 untitled.cpp~9~
              10 File          4.783 byte
               2 Directory  25.361.616.896 byte disponibili
 Il volume nell'unit… C non ha etichetta.
 Numero di serie del volume: 2CDD-21C6

 Directory di C:\ANDREA\PROGET~1\FONDAM~2\PRCD75~1\BAK

21/10/2005  16.04             1.258 untitled.cpp~46~
21/10/2005  16.05             1.260 untitled.cpp~47~
21/10/2005  16.05             1.258 untitled.cpp~48~
21/10/2005  16.08             1.253 untitled.cpp~49~
21/10/2005  16.10             1.258 untitled.cpp~50~
23/10/2005  17.08             1.269 untitled.cpp~51~
23/10/2005  17.08             1.269 untitled.cpp~52~
23/10/2005  17.09             1.281 untitled.cpp~53~
23/10/2005  17.13             1.307 untitled.cpp~54~
23/10/2005  17.14             1.296 untitled.cpp~55~
              10 File         12.709 byte
               2 Directory  25.361.616.896 byte disponibili
 Il volume nell'unit… C non ha etichetta.
 Numero di serie del volume: 2CDD-21C6

 Directory di C:\ANDREA\PROGET~1\FONDAM~2\PRCDB5~1\BAK

06/11/2005  19.52             3.398 untitled.cpp~27~
06/11/2005  19.52             3.397 untitled.cpp~28~
06/11/2005  19.53             3.391 untitled.cpp~29~
06/11/2005  19.53             3.371 untitled.cpp~30~
06/11/2005  19.55             3.426 untitled.cpp~31~
06/11/2005  19.55             3.427 untitled.cpp~32~
06/11/2005  19.56             3.430 untitled.cpp~33~
06/11/2005  19.57             3.436 untitled.cpp~34~
06/11/2005  19.58             3.444 untitled.cpp~35~
06/11/2005  20.00             3.455 untitled.cpp~36~
              10 File         34.175 byte
               2 Directory  25.361.616.896 byte disponibili


  Duplicate files of bak directory contents
  ~~~~~~~~~~~~~~~~~~~~~~~

       459 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~4~"
       451 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~6~"
       461 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~5~"
       455 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~8~"
       455 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~7~"
       451 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~9~"
       576 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~10~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~46~"
      3398  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~27~"
       576 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~11~"
      1260 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~47~"
      3397  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~28~"
       615 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~12~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~48~"
      3391  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~29~"
       284 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~3~"
      1253 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~49~"
      3371  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~30~"
      1269 23 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~52~"
      1281 23 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~53~"
      1307 23 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~54~"
      1296 23 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~55~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~50~"
      1269 23 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~51~"
       576 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~10~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~46~"
      3398  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~27~"
       576 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~11~"
      1260 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~47~"
      3397  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~28~"
       615 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~12~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~48~"
      3391  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~29~"
       284 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~3~"
      1253 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~49~"
      3371  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~30~"
      3427  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~32~"
      3430  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~33~"
      3436  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~34~"
      3444  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~35~"
      3455  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~36~"
      3426  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~31~"
       576 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~10~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~46~"
      3398  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~27~"
       576 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~11~"
      1260 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~47~"
      3397  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~28~"
       615 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~12~"
      1258 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~48~"
      3391  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~29~"
       284 20 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_04\bak\untitled.cpp~3~"
      1253 21 Oct 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_05\bak\untitled.cpp~49~"
      3371  6 Nov 2005 "C:\Andrea\Progetti C++\Fondamenti Informatica I\Progetto_09\bak\untitled.cpp~30~"


  end of report
__________________
ASUS PB278Q - Corsair Carbide 500R Black - Thermaltake ToughPower 750W - Intel i7-4790 (Cooled by Corsair Liquid H80i) - ASRock Z97 Extreme 4 - MSI GTX 950 Gaming 2G - 16GB Corsair Vengeance Pro 1600MHz - Samsung SSD 840 Pro 256GB

Ultima modifica di <^MORFEO^> : 13-02-2008 alle 20:50.
<^MORFEO^> è offline   Rispondi citando il messaggio o parte di esso
 Rispondi


Recensione HUAWEI MatePad 11.5''S, con il display PaperMatte si scrive come sulla carta Recensione HUAWEI MatePad 11.5''S, con il displa...
Recensione HONOR 200 Pro: potrete fare ritratti da fotografo professionista!  Recensione HONOR 200 Pro: potrete fare ritratti ...
I robot tagliaerba che nascono in Italia: visita nella sede (e nella fabbrica) di Stiga I robot tagliaerba che nascono in Italia: visita...
Nutanix .NEXT 2024: oltre l'iperconvergenza per rimpiazzare VMware Nutanix .NEXT 2024: oltre l'iperconvergenza per ...
OMEN Transcend Gaming Laptop 14: compatto, leggero e una potenza con compromessi OMEN Transcend Gaming Laptop 14: compatto, legge...
ASUS ROG Strix XG27ACS e XG27UCS: prezzo...
Ulanzi ora fa anche ottiche autofocus: e...
Philips Evnia 34M2C6500: performance e q...
Tesla aumenterà i prezzi della Model 3 i...
Factorial, nuovo passo in avanti nell'in...
Intel ribadisce: Gaudi 2 è la ver...
Insta360 GO 3S: la videocamera indossabi...
Le migliori offerte sui Robot rasaerba s...
Ecco Galaxy Watch 6 a 189€ e le altre of...
Litografia Hyper-NA EUV, ASML ci sta lav...
Google Pixel Buds A-Series: super calo d...
Amazon non vuole concorrenza: giù ancora...
Friggitrici ad aria: uno dei marchi TOP ...
MagNex, il magnete permanente senza terr...
I notebook Snapdragon X Elite stanno arr...
Chromium
GPU-Z
OCCT
LibreOffice Portable
Opera One Portable
Opera One 106
CCleaner Portable
CCleaner Standard
Cpu-Z
Driver NVIDIA GeForce 546.65 WHQL
SmartFTP
Trillian
Google Chrome Portable
Google Chrome 120
VirtualBox
Tutti gli articoli Tutte le news Tutti i download

Strumenti

Regole
Non Puoi aprire nuove discussioni
Non Puoi rispondere ai messaggi
Non Puoi allegare file
Non Puoi modificare i tuoi messaggi

Il codice vB è On
Le Faccine sono On
Il codice [IMG] è On
Il codice HTML è Off
Vai al Forum


Tutti gli orari sono GMT +1. Ora sono le: 17:46.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Served by www2v