un saluto a tutti
ho qualche problema di file sospetti , quando potete date un'occhiata a questo Log ? grazie

OTL Extras logfile created on: 02/04/2012 09:58:45 - Run 1
OTL by OldTimer - Version     
 Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000410 | Country: Italia | Language: ITA | Date Format: dd/MM/yyyy
2,50 Gb Paging File | 1,60 Gb Available in Paging File | 64,01% Paging File free
Paging file location(s): c:\pagefile.sys 1534 4851 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,75 Gb Total Space | 302,68 Gb Free Space | 64,99% Space Free | Partition Type: NTFS
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[COLOR=#e56717]========== Extra Registry (All) ==========[/COLOR]
[COLOR=#e56717]========== File Associations ==========[/COLOR]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = ComFile] -- "%1" %*
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\Windows\System32\mshta.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf [@ = inffile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\System32\rundll32.exe (Microsoft Corporation)
.js [@ = jsfile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation)
.html [@ = htmlfile] -- Reg Error: Key error. File not found
[COLOR=#e56717]========== Shell Spawning ==========[/COLOR]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\System32\mshta.exe "%1" %* (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
inffile [open] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- %SystemRoot%\System32\WScript.exe "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5.1\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[COLOR=#e56717]========== Security Center Settings ==========[/COLOR]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[COLOR=#e56717]========== System Restore Settings ==========[/COLOR]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[COLOR=#e56717]========== Firewall Settings ==========[/COLOR]
"EnableFirewall" = 1
"DisableNotifications" = 0
"EnableFirewall" = 1
"DisableNotifications" = 0
"EnableFirewall" = 1
"DisableNotifications" = 0
[COLOR=#e56717]========== Authorized Applications List ==========[/COLOR]
[COLOR=#e56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/COLOR]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0D67FBBE-3F68-4B0B-9647-8F3DE93593AE}" = FMRTE
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1C2A0B7F-0C42-4013-8A05-E46E43304D6A}" = MAGIX Screenshare
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{23767F5D-A80C-4264-B8EA-ED4085FC332A}" = Adobe Illustrator CS5.1
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{2A845A64-3F80-41D7-9F33-6146E56997E6}" = OpenOffice.org 3.3
"{2B7E4354-0492-460A-BDB1-1F59EE141025}" = AirPlus XtremeG DWL-G122
"{2E295B5B-1AD4-4D36-97C2-A316084722CF}" = Python 2.7.2
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{42DAE635-2613-489A-AC0D-68D731873DBF}" = MAGIX Music Maker MX Production Suite Download-Version
"{43888693-9D3C-4CC6-9399-64F926B05E90}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 4)
"{441AC599-200D-4E04-B274-C6B7B50C281D}_is1" = Hamster Free EbookConverter
"{45A66726-69BC-466B-A7A4-12FCBA4883D7}" = HiJackThis
"{4EFC72DA-2314-4E5D-AC8E-1C954CDB8BBF}" = AVG 2012
"{59B6CD4A-C676-4B05-B8D6-73BA3AE159E5}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 2)
"{5CB429E8-A68B-48BB-9681-9CFF6D3C7AA6}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 6)
"{60E2C8C9-6CF3-4B1A-9618-E304946C94E6}" = Python 2.4.4
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{78D8C01E-388C-4623-AF8C-B355411DAC7C}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 5)
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E1CCF20-9E12-4824-BD59-7AD9E0486DD8}" = SWAT 4
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9530AE42-DAE1-4619-9594-B23487285D17}" = NVIDIA PhysX
"{97239DDC-4CB8-4701-B020-305610179C9B}" = MAGIX Speed burnR (MSI)
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A1BE9BF9-6136-479A-967C-C26C2FEA8876}" = BlackBerry Device Software v5.0.0 per lo smartphone BlackBerry 8520
"{A403D88E-ED7D-48E3-91FD-B8C8A720EDA1}" = Microsoft Speech SDK 5.1
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AC76BA86-7AD7-1040-7B44-AA1000000001}" = Adobe Reader X (10.1.1) - Italiano
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Pannello di controllo NVIDIA 285.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Driver grafico 285.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.11.1107
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Driver audio HD
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86
"{BA24C9CA-7806-4556-959C-E242BF813449}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto sound)
"{C79312BD-3E76-4474-A10C-1435D1856A4B}" = Adobe Dreamweaver CS5
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D8E3A26A-E06B-43BA-A841-0A93A3E9E770}" = MAGIX Music Maker MX Production Suite Download-Version (Sintetizzatore ed effetti)
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E511636F-C3AA-46C4-9832-D1BE79D907EC}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 1)
"{E7C6D565-2E48-4303-A114-AFE7B2E561AF}_is1" = FotoSketcher 2.20
"{E7E84E23-C5C0-4B15-B13A-C63149E59C98}" = AVG 2012
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FBDB34D6-9D27-4EC9-969E-FDAAA367F888}" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 3)
"{FE23D063-934D-4829-A0D8-00634CE79B4A}" = Adobe AIR
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"AVG" = AVG 2012
"Call of Duty: Modern Warfare 3_is1" = Call of Duty: Modern Warfare 3
"CCleaner" = CCleaner
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DAEMON Tools Lite" = DAEMON Tools Lite
"eSpeakEdit_is1" = eSpeakEdit version 1.46.02
"Football Manager 2012_is1" = Football Manager 2012
"HideIPEasy" = Hide IP Easy
"InstallShield_{8E1CCF20-9E12-4824-BD59-7AD9E0486DD8}" = SWAT 4
"MAGIX_MSI_mm18pro" = MAGIX Music Maker MX Production Suite Download-Version (Pacchetto strumenti 6)
"MAGIX_MSI_PCVisit" = MAGIX Screenshare
"MAGIX_MSI_Speed3_burnR_mxcdr_MSI" = MAGIX Speed burnR (MSI)
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English)
"Photo To Sketch_is1" = Photo To Sketch 3.51
"QuickTime" = QuickTime
"RemoveIT Pro v4 - SE" = RemoveIT Pro v4 - SE
"Sniper - Ghost Warrior_is1" = Sniper - Ghost Warrior
"TabletDriver" = Trust Tablet Driver
"TMACv6.0" = Technitium MAC Address Changer v6.0.3
"WinRAR archiver" = WinRAR 4.10 beta 4 (32-bit)
[COLOR=#e56717]========== HKEY_USERS Uninstall List ==========[/COLOR]
"CamStudio 2.5 IT - Ennio Campitelli" = CamStudio 2.5 IT - Ennio CampitelliCF}
"FileZilla Client" = FileZilla Client 3.5.3
"py2exe-py2.7" = Python 2.7 py2exe-0.6.10dev
[COLOR=#e56717]========== Last 10 Event Log Errors ==========[/COLOR]
[ Application Events ]
Error - 01/04/2012 20:48:34 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 9000
Description = 
Error - 01/04/2012 20:48:34 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 7040
Description = 
Error - 01/04/2012 20:48:34 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 7042
Description = 
Error - 01/04/2012 20:48:34 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 9002
Description = 
Error - 01/04/2012 20:48:34 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 3029
Description = 
Error - 01/04/2012 20:48:35 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 3029
Description = 
Error - 01/04/2012 20:48:35 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 3028
Description = 
Error - 01/04/2012 20:48:35 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 3058
Description = 
Error - 01/04/2012 20:48:35 | Computer Name = LUCA-PC | Source = Windows Search Service | ID = 7010
Description = 
Error - 01/04/2012 20:49:49 | Computer Name = LUCA-PC | Source = WinMgmt | ID = 10
Description = 
[ System Events ]
Error - 05/03/2012 12:23:36 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 12:44:11 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 13:02:20 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 13:17:13 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 13:17:39 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 13:18:11 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 13:34:15 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 16:46:37 | Computer Name = LUCA-PC | Source = atapi | ID = 262155
Description = Il driver ha rilevato un errore del controller su \Device\Ide\IdePort2.
Error - 05/03/2012 17:15:04 | Computer Name = LUCA-PC | Source = EventLog | ID = 6008
Description = Precedente arresto del sistema inatteso a 22:11:01 su ?05/?03/?2012.
Error - 05/03/2012 17:15:09 | Computer Name = LUCA-PC | Source = Service Control Manager | ID = 7026
Description = All'avvio non è stato possibile caricare i seguenti driver:   Avgldx86
< End of report >