ti ringrazio per l'interessamento.
Ho scaricato crazykill e fatto quello che mi hai scritto:
cliccato e, poi 1 e scansione regolarmente effettuata ti posto il log-
--------------- [ Active Processes ] ----------------
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\igfxtray.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe
C:\Program Files\HiYo\Bin\HiYo.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Windows\WindowsMobile\wmdcBase.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Windows\system32\svchost.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Taskmgr.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conime.exe
--------------- [ Infected files / folders ] ----------------
»»»» Presence Files in C:
Found ! [11/01/2009 15.41] - "C:\Muestras"
Found ! [11/01/2009 15.41] - C:\InfoSat.txt
»»»» Presence Files in C:\Windows
»»»» Presence Files in C:\Windows\Prefetch
»»»» Presence Files in C:\Windows\system32
Found ! [11/01/2009 02.22] - C:\Windows\system32\mdelk.exe
Found ! [11/01/2009 01.18] - C:\Windows\system32\wintems.exe
Found ! [11/01/2009 19.25] - C:\Windows\system32\ban_list.txt
»»»» Presence Files in C:\Windows\system32\drivers
»»»» Presence Files in C:\Users\user\AppData\Roaming
Found ! [09/01/2009 23.46] - "C:\Users\user\AppData\Roaming\m\flec006.exe"
Found ! [11/01/2009 19.23] - "C:\Users\user\AppData\Roaming\m\list.oct"
Found ! [11/01/2009 00.51] - "C:\Users\user\AppData\Roaming\m\data.oct"
Found ! [11/01/2009 00.51] - "C:\Users\user\AppData\Roaming\m\srvlist.oct"
Found ! [11/01/2009 19.24] - "C:\Users\user\AppData\Roaming\m\shared"
Found ! [11/01/2009 19.23] - "C:\Users\user\AppData\Roaming\m"
Found ! [11/01/2009 03.37] - "C:\Users\user\AppData\Roaming\drivers"
Found ! [11/01/2009 02.21] - "C:\Users\user\AppData\Roaming\drivers\srosa.sys"
Found ! [11/01/2009 15.41] - "C:\Users\user\AppData\Roaming\drivers\downld"
»»»» Presence Files in C:\Users\user\AppData\Local\Temp
»»»» Presence Files in C:\Users\user\Local Settings\Temporary Internet Files\Content.IE5
Found ! [27/04/2007 00.35] - C:\Program Files\Hp\QuickPlay\SlingSDK\Remotes\_RemoteDB\SkyPlus.spr\filelisting.txt
Found ! [19/10/2007 05.28] - C:\SwSetup\Drivers\IMSM\Files\32\license.txt
Found ! [30/09/2007 12.06] - C:\SwSetup\Drivers\IMSM\Files\32\readme.txt
Found ! [19/10/2007 05.28] - C:\SwSetup\Drivers\IMSM\Files\64\license.txt
Found ! [30/09/2007 12.06] - C:\SwSetup\Drivers\IMSM\Files\64\readme.txt
Found ! [11/01/2009 19.25] - C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\860O09SF\file[1].txt
--------------- [ Registry / Startup ] ----------------
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
Sidebar=C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
WindowsWelcomeCenter=rundll32.exe oobefldr.dll,ShowWelcomeCenter
HPAdvisor=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
msnmsgr=~"C:\Program Files\MSN Messenger\msnmsgr.exe" /background
WMPNSCFG=C:\Program Files\Windows Media Player\WMPNSCFG.exe
DAEMON Tools Lite="C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
IgfxTray=C:\Windows\system32\igfxtray.exe
HotKeysCmds=C:\Windows\system32\hkcmd.exe
Persistence=C:\Windows\system32\igfxpers.exe
Apoint=C:\Program Files\Apoint2K\Apoint.exe
IAAnotif="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
QPService="C:\Program Files\HP\QuickPlay\QPService.exe"
QlbCtrl=%ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
UCam_Menu="C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
Windows Defender=%ProgramFiles%\Windows Defender\MSASCui.exe -hide
Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
HP Health Check Scheduler=[ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
HP Software Update=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
hpWirelessAssistant=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
Acrobat Assistant 7.0="C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
<NO NAME>=
Hiyo=C:\Program Files\HiYo\bin\HiYo.exe /RunFromStartup
SweetIM=C:\Program Files\SweetIM\Messenger\SweetIM.exe
Windows Mobile-based device management=%windir%\WindowsMobile\wmdcBase.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
<NO NAME>=
Installed=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
<NO NAME>=
Installed=1
NoChange=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
<NO NAME>=
Installed=1
[HKEY_CURRENT_USER\software\local appwizard-generated applications\run]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\winupgro]
--------------- [ Registry / Infected keys ] ----------------
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\bisoft
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\DateTime4
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\FFC
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\FirtR
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_SROSA
Found ! - HKEY_CURRENT_USER\Software\bisoft
Found ! - HKEY_CURRENT_USER\Software\DateTime4
Found ! - HKEY_CURRENT_USER\Software\FirtR
Found ! - HKEY_CURRENT_USER\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\FFC
/!\ Infection active : HKLM\SYSTEM\...\Services\srosa -> Start = 0x1
--------------- [ States / Services ] ----------------
+- Services : [ Auto=2 / Request=3 / Disable=4 ]
/!\ Ndisuio - Type of startup = 4
EapHost - Type of startup = 3
Wlansvc - Type of startup = 2
/!\ SharedAccess - Type of startup = 4
/!\ wuauserv - Type of startup = 4
/!\ wscsvc - Type of startup = 4
WinDefend - Type of startup = 2
/!\ UAC is Disable
--------------- [ Searching in removable drives ] ----------------
+- Informations :
C: - Unità fissa
+- Presence of files :
--------------- [ Registry / Mountpoint2 ] ----------------
-> Not found !
------------------- ! End of report ! --------------------
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\igfxtray.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hp\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe
C:\Program Files\HiYo\Bin\HiYo.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Windows\WindowsMobile\wmdcBase.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\Windows\system32\svchost.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Taskmgr.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conime.exe
--------------- [ Infected files / folders ] ----------------
»»»» Presence Files in C:
Found ! [11/01/2009 15.41] - "C:\Muestras"
Found ! [11/01/2009 15.41] - C:\InfoSat.txt
»»»» Presence Files in C:\Windows
»»»» Presence Files in C:\Windows\Prefetch
»»»» Presence Files in C:\Windows\system32
Found ! [11/01/2009 02.22] - C:\Windows\system32\mdelk.exe
Found ! [11/01/2009 01.18] - C:\Windows\system32\wintems.exe
Found ! [11/01/2009 19.25] - C:\Windows\system32\ban_list.txt
»»»» Presence Files in C:\Windows\system32\drivers
»»»» Presence Files in C:\Users\user\AppData\Roaming
Found ! [09/01/2009 23.46] - "C:\Users\user\AppData\Roaming\m\flec006.exe"
Found ! [11/01/2009 19.23] - "C:\Users\user\AppData\Roaming\m\list.oct"
Found ! [11/01/2009 00.51] - "C:\Users\user\AppData\Roaming\m\data.oct"
Found ! [11/01/2009 00.51] - "C:\Users\user\AppData\Roaming\m\srvlist.oct"
Found ! [11/01/2009 19.24] - "C:\Users\user\AppData\Roaming\m\shared"
Found ! [11/01/2009 19.23] - "C:\Users\user\AppData\Roaming\m"
Found ! [11/01/2009 03.37] - "C:\Users\user\AppData\Roaming\drivers"
Found ! [11/01/2009 02.21] - "C:\Users\user\AppData\Roaming\drivers\srosa.sys"
Found ! [11/01/2009 15.41] - "C:\Users\user\AppData\Roaming\drivers\downld"
»»»» Presence Files in C:\Users\user\AppData\Local\Temp
»»»» Presence Files in C:\Users\user\Local Settings\Temporary Internet Files\Content.IE5
Found ! [27/04/2007 00.35] - C:\Program Files\Hp\QuickPlay\SlingSDK\Remotes\_RemoteDB\SkyPlus.spr\filelisting.txt
Found ! [19/10/2007 05.28] - C:\SwSetup\Drivers\IMSM\Files\32\license.txt
Found ! [30/09/2007 12.06] - C:\SwSetup\Drivers\IMSM\Files\32\readme.txt
Found ! [19/10/2007 05.28] - C:\SwSetup\Drivers\IMSM\Files\64\license.txt
Found ! [30/09/2007 12.06] - C:\SwSetup\Drivers\IMSM\Files\64\readme.txt
Found ! [11/01/2009 19.25] - C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\860O09SF\file[1].txt
--------------- [ Registry / Startup ] ----------------
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
Sidebar=C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
WindowsWelcomeCenter=rundll32.exe oobefldr.dll,ShowWelcomeCenter
HPAdvisor=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
msnmsgr=~"C:\Program Files\MSN Messenger\msnmsgr.exe" /background
WMPNSCFG=C:\Program Files\Windows Media Player\WMPNSCFG.exe
DAEMON Tools Lite="C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
IgfxTray=C:\Windows\system32\igfxtray.exe
HotKeysCmds=C:\Windows\system32\hkcmd.exe
Persistence=C:\Windows\system32\igfxpers.exe
Apoint=C:\Program Files\Apoint2K\Apoint.exe
IAAnotif="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
QPService="C:\Program Files\HP\QuickPlay\QPService.exe"
QlbCtrl=%ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
UCam_Menu="C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
Windows Defender=%ProgramFiles%\Windows Defender\MSASCui.exe -hide
Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
HP Health Check Scheduler=[ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
HP Software Update=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
hpWirelessAssistant=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
Acrobat Assistant 7.0="C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
<NO NAME>=
Hiyo=C:\Program Files\HiYo\bin\HiYo.exe /RunFromStartup
SweetIM=C:\Program Files\SweetIM\Messenger\SweetIM.exe
Windows Mobile-based device management=%windir%\WindowsMobile\wmdcBase.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
<NO NAME>=
Installed=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
<NO NAME>=
Installed=1
NoChange=1
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
<NO NAME>=
Installed=1
[HKEY_CURRENT_USER\software\local appwizard-generated applications\run]
[HKEY_CURRENT_USER\software\local appwizard-generated applications\winupgro]
--------------- [ Registry / Infected keys ] ----------------
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\bisoft
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\DateTime4
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\FFC
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\FirtR
Found ! - HKEY_USERS\S-1-5-21-2154095226-3952560167-2009753171-1000\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\Local AppWizard-Generated Applications\winupgro
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_SROSA
Found ! - HKEY_CURRENT_USER\Software\bisoft
Found ! - HKEY_CURRENT_USER\Software\DateTime4
Found ! - HKEY_CURRENT_USER\Software\FirtR
Found ! - HKEY_CURRENT_USER\Software\MuleAppData
Found ! - HKEY_CURRENT_USER\Software\FFC
/!\ Infection active : HKLM\SYSTEM\...\Services\srosa -> Start = 0x1
--------------- [ States / Services ] ----------------
+- Services : [ Auto=2 / Request=3 / Disable=4 ]
/!\ Ndisuio - Type of startup = 4
EapHost - Type of startup = 3
Wlansvc - Type of startup = 2
/!\ SharedAccess - Type of startup = 4
/!\ wuauserv - Type of startup = 4
/!\ wscsvc - Type of startup = 4
WinDefend - Type of startup = 2
/!\ UAC is Disable
--------------- [ Searching in removable drives ] ----------------
+- Informations :
C: - Unità fissa
+- Presence of files :
--------------- [ Registry / Mountpoint2 ] ----------------
-> Not found !
------------------- ! End of report ! --------------------
Ho successivamente fatto l'operazione cliccando 2, il pc si è riavviato e al riavvio mi da una finestra con scritto:
IS-J9Q31.EXE Impossibile individuare un componente
Impossibile avviare l'applicazione specificata prremote.dll non è stato trovato.
Una nuova installazione potrebbe risolvere il problema
il file è keygen.exe
come procedo??[sadbye]