DOMANDA Rkill log

Aaci

Utente Attivo
366
39
Salve!
Qualcuno mi illustra il significato del log di questo programma
non capisco la voce "Checking Windows Service Integrity:" è tutte le voce "[Missing Service]" o "[Incorrect ImagePath]"

Grazie ^^
Post unito automaticamente:

Qualora qualcuno non volesse scaricare il file vi incollo il log.
Post unito automaticamente:

Performing miscellaneous checks:

* Reparse Point/Junctions Found (Most likely legitimate)!

* C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 => C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\INetCache\IE [Dir]

Checking Windows Service Integrity:

* agp440 [Missing Service]
* Browser [Missing Service]
* BthAvrcpTg [Missing Service]
* bthhfhid [Missing Service]
* BthHFSrv [Missing Service]
* DcpSvc [Missing Service]
* gagp30kx [Missing Service]
* iaStorAV [Missing Service]
* IEEtwCollectorService [Missing Service]
* IoQos [Missing Service]
* mrxsmb10 [Missing Service]
* nv_agp [Missing Service]
* srv [Missing Service]
* tiledatamodelsvc [Missing Service]
* TimeBroker [Missing Service]
* uagp35 [Missing Service]
* UI0Detect [Missing Service]
* uliagpkx [Missing Service]
* WcsPlugInService [Missing Service]
* wpcfltr [Missing Service]
* WSService [Missing Service]
* wudfsvc [Missing Service]

* HomeGroupListener [Missing ImagePath]
* HomeGroupProvider [Missing ImagePath]

* AJRouter => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* AppIDSvc => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* Appinfo => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* AppReadiness => %SystemRoot%\System32\svchost.exe -k AppReadiness -p [Incorrect ImagePath]
* AppXSvc => %systemroot%\system32\svchost.exe -k wsappx -p [Incorrect ImagePath]
* AudioEndpointBuilder => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* Audiosrv => %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* BasicDisplay => \SystemRoot\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys [Incorrect ImagePath]
* BasicRender => \SystemRoot\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys [Incorrect ImagePath]
* BDESVC => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* BFE => %systemroot%\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p [Incorrect ImagePath]
* BITS => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* BrokerInfrastructure => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* bthserv => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* CDPSvc => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* ClipSVC => %SystemRoot%\System32\svchost.exe -k wsappx -p [Incorrect ImagePath]
* CoreMessagingRegistrar => %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork -p [Incorrect ImagePath]
* CryptSvc => %SystemRoot%\system32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* DcomLaunch => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* DeviceAssociationService => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* DeviceInstall => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* DevQueryBroker => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* Dhcp => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* DiagTrack => %SystemRoot%\System32\svchost.exe -k utcsvc -p [Incorrect ImagePath]
* DmEnrollmentSvc => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* dmwappushservice => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* Dnscache => %SystemRoot%\system32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* DoSvc => %SystemRoot%\System32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* dot3svc => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* DPS => %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -p [Incorrect ImagePath]
* DsmSvc => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* DsSvc => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* Eaphost => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* embeddedmode => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* EntAppSvc => %systemroot%\system32\svchost.exe -k appmodel -p [Incorrect ImagePath]
* EventLog => %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* EventSystem => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* fdPHost => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* FDResPub => %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation -p [Incorrect ImagePath]
* fhsvc => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* FontCache => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* gpsvc => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* hidserv => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* icssvc => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* IKEEXT => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* iphlpsvc => %SystemRoot%\System32\svchost.exe -k NetSvcs -p [Incorrect ImagePath]
* KtmRm => %SystemRoot%\System32\svchost.exe -k NetworkServiceAndNoImpersonation -p [Incorrect ImagePath]
* LanmanServer => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* LanmanWorkstation => %SystemRoot%\System32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* lfsvc => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* LicenseManager => %SystemRoot%\System32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* lltdsvc => %SystemRoot%\System32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* lmhosts => %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* LSM => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* MapsBroker => %SystemRoot%\System32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* MpsSvc => %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p [Incorrect ImagePath]
* MSiSCSI => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* NcaSvc => %SystemRoot%\System32\svchost.exe -k NetSvcs -p [Incorrect ImagePath]
* NcbService => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* NcdAutoSetup => %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -p [Incorrect ImagePath]
* Netman => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* netprofm => %SystemRoot%\System32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* NetSetupSvc => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* NgcCtnrSvc => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* NlaSvc => %SystemRoot%\System32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* nsi => %systemroot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* PcaSvc => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* pla => %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -p [Incorrect ImagePath]
* PlugPlay => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* PolicyAgent => %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted -p [Incorrect ImagePath]
* Power => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* ProfSvc => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* QWAVE => %windir%\system32\svchost.exe -k LocalServiceAndNoImpersonation -p [Incorrect ImagePath]
* RasAuto => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* RemoteRegistry => %SystemRoot%\system32\svchost.exe -k localService -p [Incorrect ImagePath]
* RetailDemo => %SystemRoot%\System32\svchost.exe -k rdxgroup [Incorrect ImagePath]
* RpcEptMapper => %SystemRoot%\system32\svchost.exe -k RPCSS -p [Incorrect ImagePath]
* RpcSs => %SystemRoot%\system32\svchost.exe -k rpcss -p [Incorrect ImagePath]
* Schedule => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* seclogon => %windir%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* SENS => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* SensorService => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* SensrSvc => %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation -p [Incorrect ImagePath]
* SessionEnv => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* SharedAccess => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* ShellHWDetection => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* SmsRouter => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* SSDPSRV => %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation -p [Incorrect ImagePath]
* SstpSvc => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* StateRepository => %SystemRoot%\system32\svchost.exe -k appmodel -p [Incorrect ImagePath]
* StorSvc => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* svsvc => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* SysMain => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* SystemEventsBroker => %SystemRoot%\system32\svchost.exe -k DcomLaunch -p [Incorrect ImagePath]
* TabletInputService => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* TapiSrv => %SystemRoot%\System32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* Themes => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* TrkWks => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* UmRdpService => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* upnphost => %SystemRoot%\system32\svchost.exe -k LocalServiceAndNoImpersonation -p [Incorrect ImagePath]
* UserManager => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* UsoSvc => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* vmicguestinterface => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* vmicheartbeat => %systemroot%\system32\svchost.exe -k ICService -p [Incorrect ImagePath]
* vmickvpexchange => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* vmicrdv => %systemroot%\system32\svchost.exe -k ICService -p [Incorrect ImagePath]
* vmicshutdown => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* vmictimesync => %systemroot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* vmicvmsession => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* vmicvss => %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* WalletService => %SystemRoot%\System32\svchost.exe -k appmodel -p [Incorrect ImagePath]
* Wcmsvc => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* wcncsvc => %SystemRoot%\System32\svchost.exe -k LocalServiceAndNoImpersonation -p [Incorrect ImagePath]
* WdBoot => system32\drivers\wd\WdBoot.sys [Incorrect ImagePath]
* WdFilter => system32\drivers\wd\WdFilter.sys [Incorrect ImagePath]
* WdiServiceHost => %SystemRoot%\System32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* WdiSystemHost => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* WdNisDrv => system32\drivers\wd\WdNisDrv.sys [Incorrect ImagePath]
* WdNisSvc => "%ProgramData%\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe" [Incorrect ImagePath]
* WebClient => %SystemRoot%\system32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* Wecsvc => %SystemRoot%\system32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* wercplsupport => %SystemRoot%\System32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* WiaRpc => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* WinDefend => "C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe" [Incorrect ImagePath]
* WinHttpAutoProxySvc => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* Winmgmt => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* WinRM => %SystemRoot%\System32\svchost.exe -k NetworkService -p [Incorrect ImagePath]
* WlanSvc => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* wlidsvc => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* workfolderssvc => %SystemRoot%\System32\svchost.exe -k LocalService -p [Incorrect ImagePath]
* WpnService => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* wscsvc => %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -p [Incorrect ImagePath]
* wuauserv => %systemroot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* WwanSvc => %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* XblAuthManager => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* XblGameSave => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* XboxNetApiSvc => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* AppMgmt => %SystemRoot%\system32\svchost.exe -k netsvcs -p [Incorrect ImagePath]
* CscService => %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -p [Incorrect ImagePath]
* swenum => \SystemRoot\System32\DriverStore\FileRepository\swenum.inf_amd64_31f554b660026323\swenum.sys [Incorrect ImagePath]
 

Allegati

  • Rkill.txt
    30.6 KB · Visualizzazioni: 70
Ultima modifica:

Entra

oppure Accedi utilizzando
Discord Ufficiale Entra ora!