Hi
I have some problems with my notebook. it's very very slow since I downloaded and run a crack for a software.
Often when I close a window, everything disapper and reapper after about one minute
My antivirus is not loaded at system startupe, I have to reinstall it every time I boot my machine.
I noticed that I have a strange process in task manager that belongs to a file in c:\windows\temp. If I kill the process the file disappears, but the problems remains. If i delete the file the next time I boot it appears again with a different name.
I don't know if I have some worms. can you help me please?
thanks
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11.26.07, on 13/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
C:\Programmi\Stonesoft\StoneGate VPN Client\gatekeeper.exe
C:\Programmi\Stonesoft\StoneGate VPN Client\stonegate.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Programmi\Trend Micro\OfficeScan Client\ntrtscan.exe
C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
C:\Programmi\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\Trend Micro\OfficeScan Client\tmlisten.exe
C:\Programmi\Trend Micro\OfficeScan Client\CNTAoSMgr.exe
C:\WINDOWS\Explorer.EXE
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\sgagent.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\RTHDCPL.EXE
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\SkyTel.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\igfxpers.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\hkcmd.exe
C:\Programmi\FireTrust\MailWasher Pro\MailWasher.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\TeaTimer.exe
C:\Programmi\CheckPoint\SecuRemote\bin\SR_GUI.exe
C:\Programmi\CheckPoint\SecuRemote\bin\SR_Service.exe
C:\Programmi\Windows Live\Messenger\usnsvc.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Documents and Settings\lucamarantelli\Desktop\Windows Live Installer.exe
C:\Programmi\Windows Live\installer\Dashboard.exe
C:\Programmi\Windows Live\installer\WLSetupSvc.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\File comuni\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://r.office.microsoft.com/r/rlidOfficeUpdate?clid=1040
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O4 - HKLM\..\Run: [StoneGateAgent] "C:\Programmi\Stonesoft\StoneGate VPN Client\sgagent.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\Programmi\Trend Micro\OfficeScan Client\pccntmon.exe" -HideWindow
O4 - HKLM\..\Run: [bc360619] rundll32.exe "C:\WINDOWS\system32\jcgxtsyg.dll",b
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FILECO~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs" (User 'Default user')
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {1B0375B5-1A57-4684-BDF5-4D2E68A7EF4A} (Pivotal ePower Lifecycle Engine (Version 5.9) - Platform Access (rdaclnt.dll)) - http://crmapp/ePower/cab/RDACLNT.CAB
O16 - DPF: {28E4BE08-1C25-4CE4-A9AA-3495A9D08C8E} (Pivotal eRelationship Active Access (version 5.9) - Shortcut Handler (rshortcut.dll)) - http://crmapp/ePower/cab/RSHORTCUT.CAB
O16 - DPF: {2AEC967B-BE2B-4D88-BB4E-C25F26B96CB0} (Pivotal eRelationship Active Access (Version 5.9) - Smart Portal (rdaprtl.dll)) - http://crmapp/ePower/cab/RDAPRTL.CAB
O16 - DPF: {3D7C60CF-3CA3-4EEF-8FDE-F3903709834B} (Pivotal eRelationship Active Access (Version 5.9) - Stealth Report Interface (rdaRprt.dll)) - http://crmapp/ePower/cab/RDARPRT.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/win...ls/en/x86/client/wuweb_site.cab?1191433976426
O16 - DPF: {876DEC9E-28E9-4FE0-8ACD-CE107F9ACD1E} (Pivotal eRelationship Active Access (Version 5.9) - Resources (rdares.dll)) - http://crmapp/ePower/cab/RDARES.CAB
O16 - DPF: {8B777F7B-E3F0-496F-AEAC-EF9169C0A341} (Pivotal eRelationship Active Access (Version 5.9) - Email Connector (rdaemail.dll)) - http://crmapp/ePower/cab/RDAEMAIL.CAB
O16 - DPF: {A4BD9732-328D-11D4-BB89-00A0C9843488} (Pivotal ePower Lifecycle Engine (Version 5.9) - EMail Class (rn1sendx.dll)) - http://crmapp/ePower/cab/RN1SENDX.CAB
O16 - DPF: {A7977C3E-1450-4990-977D-9C5522B1E6DD} (Pivotal ePower Lifecycle Engine (Version 5.9) - Instantiator (rdaobjcreate.dll)) - http://crmapp/ePower/cab/RdaObjCreate.cab
O16 - DPF: {AE4F48D0-6A0A-11D3-9FB0-005004A79108} (Pivotal eRelationship Active Access (Version 5.9) - Plug-in Result Return Collection (dfoutils.dll)) - http://crmapp/ePower/cab/DFOUTILS.CAB
O16 - DPF: {BB89F812-072A-45E9-BEB2-2781D468F4E0} (Pivotal eRelationship Active Access (Version 5.9) - Shared Object Library Interface (rdashare.dll)) - http://crmapp/ePower/cab/RDASHARE.CAB
O16 - DPF: {D2A79F4E-98D9-4B65-9858-A7A1A3DCF872} (Pivotal eRelationship Active Access (Version 5.9) - Portal Control Proxy (rdaui.dll)) - http://crmapp/ePower/cab/RdaUI.cab
O16 - DPF: {FE89A9AA-862D-4D48-81BB-2A1A5590955C} (Pivotal eRelationship Active Access (Version 5.9) - Static list Support (rdauistaticlists.dll)) - http://crmapp/ePower/cab/RDAUISTATICLISTS.CAB
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = nposistemi.it
O17 - HKLM\Software\..\Telephony: DomainName = nposistemi.it
O17 - HKLM\System\CCS\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: Domain = mi.draeger.mt.it; corp.draeger.global
O17 - HKLM\System\CCS\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: NameServer = 10.109.0.149,160.70.15.89
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = nposistemi.it
O17 - HKLM\System\CS1\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: Domain = mi.draeger.mt.it; corp.draeger.global
O17 - HKLM\System\CS1\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: NameServer = 10.109.0.149,160.70.15.89
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = nposistemi.it
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programmi\File comuni\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: OfficeScanNT RealTime Scan (ntrtscan) - Trend Micro Inc. - C:\Programmi\Trend Micro\OfficeScan Client\ntrtscan.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: StoneGate VPN Client (SGClient) - Stonesoft Corp. - C:\Programmi\Stonesoft\StoneGate VPN Client\gatekeeper.exe
O23 - Service: Check Point SecuRemote Service (SR_Service) - Check Point Software Technologies - C:\Programmi\CheckPoint\SecuRemote\bin\SR_Service.exe
O23 - Service: Check Point SecuRemote WatchDog (SR_WatchDog) - Check Point Software Technologies - C:\Programmi\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
O23 - Service: OfficeScan NT Listener (tmlisten) - Trend Micro Inc. - C:\Programmi\Trend Micro\OfficeScan Client\tmlisten.exe
O23 - Service: OfficeScan NT Proxy Service (TmProxy) - Trend Micro Inc. - C:\Programmi\Trend Micro\OfficeScan Client\TmProxy.exe
O23 - Service: Apache Tomcat (Tomcat5) - Apache Software Foundation - C:\Tomcat5.5\bin\tomcat5.exe
--
End of file - 9716 bytes
I have some problems with my notebook. it's very very slow since I downloaded and run a crack for a software.
Often when I close a window, everything disapper and reapper after about one minute
My antivirus is not loaded at system startupe, I have to reinstall it every time I boot my machine.
I noticed that I have a strange process in task manager that belongs to a file in c:\windows\temp. If I kill the process the file disappears, but the problems remains. If i delete the file the next time I boot it appears again with a different name.
I don't know if I have some worms. can you help me please?
thanks
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11.26.07, on 13/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
C:\Programmi\Stonesoft\StoneGate VPN Client\gatekeeper.exe
C:\Programmi\Stonesoft\StoneGate VPN Client\stonegate.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
C:\WINDOWS\system32\inetsrv\inetinfo.exe
C:\Programmi\Trend Micro\OfficeScan Client\ntrtscan.exe
C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
C:\Programmi\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\Trend Micro\OfficeScan Client\tmlisten.exe
C:\Programmi\Trend Micro\OfficeScan Client\CNTAoSMgr.exe
C:\WINDOWS\Explorer.EXE
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\sgagent.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\RTHDCPL.EXE
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\SkyTel.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\igfxpers.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\hkcmd.exe
C:\Programmi\FireTrust\MailWasher Pro\MailWasher.exe
C:\DOCUME~1\LUCAMA~1\IMPOST~1\Temp\TeaTimer.exe
C:\Programmi\CheckPoint\SecuRemote\bin\SR_GUI.exe
C:\Programmi\CheckPoint\SecuRemote\bin\SR_Service.exe
C:\Programmi\Windows Live\Messenger\usnsvc.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Documents and Settings\lucamarantelli\Desktop\Windows Live Installer.exe
C:\Programmi\Windows Live\installer\Dashboard.exe
C:\Programmi\Windows Live\installer\WLSetupSvc.exe
C:\Programmi\Internet Explorer\IEXPLORE.EXE
C:\Programmi\File comuni\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Programmi\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://r.office.microsoft.com/r/rlidOfficeUpdate?clid=1040
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
O4 - HKLM\..\Run: [StoneGateAgent] "C:\Programmi\Stonesoft\StoneGate VPN Client\sgagent.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\Programmi\Trend Micro\OfficeScan Client\pccntmon.exe" -HideWindow
O4 - HKLM\..\Run: [bc360619] rundll32.exe "C:\WINDOWS\system32\jcgxtsyg.dll",b
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FILECO~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [TSClientMSIUninstaller] cmd.exe /C "cscript %systemroot%\Installer\TSClientMsiTrans\tscuinst.vbs" (User 'Default user')
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programmi\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Ricerche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programmi\Messenger\msmsgs.exe
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {1B0375B5-1A57-4684-BDF5-4D2E68A7EF4A} (Pivotal ePower Lifecycle Engine (Version 5.9) - Platform Access (rdaclnt.dll)) - http://crmapp/ePower/cab/RDACLNT.CAB
O16 - DPF: {28E4BE08-1C25-4CE4-A9AA-3495A9D08C8E} (Pivotal eRelationship Active Access (version 5.9) - Shortcut Handler (rshortcut.dll)) - http://crmapp/ePower/cab/RSHORTCUT.CAB
O16 - DPF: {2AEC967B-BE2B-4D88-BB4E-C25F26B96CB0} (Pivotal eRelationship Active Access (Version 5.9) - Smart Portal (rdaprtl.dll)) - http://crmapp/ePower/cab/RDAPRTL.CAB
O16 - DPF: {3D7C60CF-3CA3-4EEF-8FDE-F3903709834B} (Pivotal eRelationship Active Access (Version 5.9) - Stealth Report Interface (rdaRprt.dll)) - http://crmapp/ePower/cab/RDARPRT.CAB
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/win...ls/en/x86/client/wuweb_site.cab?1191433976426
O16 - DPF: {876DEC9E-28E9-4FE0-8ACD-CE107F9ACD1E} (Pivotal eRelationship Active Access (Version 5.9) - Resources (rdares.dll)) - http://crmapp/ePower/cab/RDARES.CAB
O16 - DPF: {8B777F7B-E3F0-496F-AEAC-EF9169C0A341} (Pivotal eRelationship Active Access (Version 5.9) - Email Connector (rdaemail.dll)) - http://crmapp/ePower/cab/RDAEMAIL.CAB
O16 - DPF: {A4BD9732-328D-11D4-BB89-00A0C9843488} (Pivotal ePower Lifecycle Engine (Version 5.9) - EMail Class (rn1sendx.dll)) - http://crmapp/ePower/cab/RN1SENDX.CAB
O16 - DPF: {A7977C3E-1450-4990-977D-9C5522B1E6DD} (Pivotal ePower Lifecycle Engine (Version 5.9) - Instantiator (rdaobjcreate.dll)) - http://crmapp/ePower/cab/RdaObjCreate.cab
O16 - DPF: {AE4F48D0-6A0A-11D3-9FB0-005004A79108} (Pivotal eRelationship Active Access (Version 5.9) - Plug-in Result Return Collection (dfoutils.dll)) - http://crmapp/ePower/cab/DFOUTILS.CAB
O16 - DPF: {BB89F812-072A-45E9-BEB2-2781D468F4E0} (Pivotal eRelationship Active Access (Version 5.9) - Shared Object Library Interface (rdashare.dll)) - http://crmapp/ePower/cab/RDASHARE.CAB
O16 - DPF: {D2A79F4E-98D9-4B65-9858-A7A1A3DCF872} (Pivotal eRelationship Active Access (Version 5.9) - Portal Control Proxy (rdaui.dll)) - http://crmapp/ePower/cab/RdaUI.cab
O16 - DPF: {FE89A9AA-862D-4D48-81BB-2A1A5590955C} (Pivotal eRelationship Active Access (Version 5.9) - Static list Support (rdauistaticlists.dll)) - http://crmapp/ePower/cab/RDAUISTATICLISTS.CAB
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = nposistemi.it
O17 - HKLM\Software\..\Telephony: DomainName = nposistemi.it
O17 - HKLM\System\CCS\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: Domain = mi.draeger.mt.it; corp.draeger.global
O17 - HKLM\System\CCS\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: NameServer = 10.109.0.149,160.70.15.89
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = nposistemi.it
O17 - HKLM\System\CS1\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: Domain = mi.draeger.mt.it; corp.draeger.global
O17 - HKLM\System\CS1\Services\Tcpip\..\{2375B5C0-6D2B-4EDC-861F-BB82F2D4C4F1}: NameServer = 10.109.0.149,160.70.15.89
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = nposistemi.it
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programmi\File comuni\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: OfficeScanNT RealTime Scan (ntrtscan) - Trend Micro Inc. - C:\Programmi\Trend Micro\OfficeScan Client\ntrtscan.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Programmi\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: StoneGate VPN Client (SGClient) - Stonesoft Corp. - C:\Programmi\Stonesoft\StoneGate VPN Client\gatekeeper.exe
O23 - Service: Check Point SecuRemote Service (SR_Service) - Check Point Software Technologies - C:\Programmi\CheckPoint\SecuRemote\bin\SR_Service.exe
O23 - Service: Check Point SecuRemote WatchDog (SR_WatchDog) - Check Point Software Technologies - C:\Programmi\CheckPoint\SecuRemote\bin\SR_WatchDog.exe
O23 - Service: OfficeScan NT Listener (tmlisten) - Trend Micro Inc. - C:\Programmi\Trend Micro\OfficeScan Client\tmlisten.exe
O23 - Service: OfficeScan NT Proxy Service (TmProxy) - Trend Micro Inc. - C:\Programmi\Trend Micro\OfficeScan Client\TmProxy.exe
O23 - Service: Apache Tomcat (Tomcat5) - Apache Software Foundation - C:\Tomcat5.5\bin\tomcat5.exe
--
End of file - 9716 bytes