parole sue:
ciao ancora una vollta il pc andava parrecchio a rilento fino a quando il computer mi avvertiva ke per evitare infiltrazioni di virus e altro doveva chiudere explorer.exe allora ho riusato combofix e ti invio il file di registro , ma tutte queste infezioni potrebbero essere dovute al fatto ke scarico spesso da megaupload e scarico parecchi video con ANT videodownloader di Firefox???
Vincenzo
ComboFix 10-06-28.01 - Amministratore 29/06/2010 20.18.29.2.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.511.258 [GMT 2:00]
Eseguito da: c:\documents and settings\Amministratore\Documenti\Download\ComboFix.exe
AV: ESET NOD32 Antivirus 3.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
ATTENZIONE - QUESTO PC NON HA LA CONSOLE DI RIPRISTINO DI EMERGENZA INSTALLATA !!
.
((((((((((((((((((((((((( Files Creati Da 2010-05-28 al 2010-06-29 )))))))))))))))))))))))))))))))))))
.
2010-06-22 16:15 . 2010-06-22 16:15 -------- d-----w- c:\windows\Sun
2010-06-18 13:47 . 2010-06-18 13:48 -------- d-----w- c:\windows\system32\SupernaturalScreensaver dir
2010-06-18 13:47 . 2010-06-18 13:47 201728 ----a-w- c:\windows\system32\SupernaturalScreensaver.scr
2010-06-17 09:32 . 2010-06-17 09:32 -------- d-----w- c:\programmi\Windows Media Connect 2
2010-06-17 09:29 . 2010-06-29 14:16 -------- d-----w- c:\windows\system32\drivers\UMDF
2010-06-13 14:39 . 2010-06-13 14:39 -------- d-----w- c:\documents and settings\Amministratore\Dati applicazioni\Malwarebytes
2010-06-13 14:39 . 2010-06-13 14:39 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Malwarebytes
2010-06-11 17:35 . 2010-05-06 10:32 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-29 18:12 . 2010-02-11 15:13 0 ----a-w- c:\windows\system32\drivers\lvuvc.hs
2010-06-29 18:12 . 2010-02-11 15:11 0 ----a-w- c:\windows\system32\drivers\logiflt.iad
2010-06-29 17:53 . 2010-03-31 12:53 -------- d-----w- c:\documents and settings\Amministratore\Dati applicazioni\vlc
2010-06-29 14:18 . 2010-06-29 14:18 0 ---ha-w- c:\windows\system32\drivers\Msft_User_PCCSWpdDriver_01_07_00.Wdf
2010-06-29 14:17 . 2010-06-29 14:17 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_user_01_07_00.Wdf
2010-06-29 14:17 . 2004-08-19 12:00 82062 ----a-w- c:\windows\system32\perfc010.dat
2010-06-29 14:17 . 2004-08-19 12:00 487326 ----a-w- c:\windows\system32\perfh010.dat
2010-06-29 14:16 . 2010-02-11 11:41 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\PC Suite
2010-06-21 14:53 . 2010-03-25 17:55 -------- d-----w- c:\programmi\Vampire The Masquerade - Redemption
2010-06-17 10:35 . 2010-02-17 17:40 -------- d-----w- c:\documents and settings\Amministratore\Dati applicazioni\dvdcss
2010-06-14 10:59 . 2010-04-04 19:13 -------- d-----w- c:\programmi\GNU
2010-06-11 18:22 . 2010-02-02 17:24 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Microsoft Help
2010-06-05 11:03 . 2010-02-10 15:52 -------- d-----w- c:\programmi\Microsoft Silverlight
2010-06-02 11:09 . 2010-02-03 17:23 -------- d-----w- c:\programmi\CCleaner
2010-05-25 16:23 . 2010-02-22 15:29 -------- d-----w- c:\programmi\GRETECH
2010-05-25 16:23 . 2010-05-25 16:15 -------- d-----w- c:\programmi\GameShadow
2010-05-25 16:20 . 2010-03-07 14:25 -------- d-----w- c:\programmi\Eidos
2010-05-25 16:20 . 2010-02-02 16:29 -------- d--h--w- c:\programmi\InstallShield Installation Information
2010-05-25 14:13 . 2010-05-25 14:13 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\McAfee
2010-05-24 17:31 . 2010-05-24 17:31 503808 ----a-w- c:\documents and settings\Amministratore\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-6739230c-n\msvcp71.dll
2010-05-24 17:31 . 2010-05-24 17:31 499712 ----a-w- c:\documents and settings\Amministratore\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-6739230c-n\jmc.dll
2010-05-24 17:31 . 2010-05-24 17:31 348160 ----a-w- c:\documents and settings\Amministratore\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\46\f84c6ae-6739230c-n\msvcr71.dll
2010-05-24 17:31 . 2010-05-24 17:31 61440 ----a-w- c:\documents and settings\Amministratore\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\50\5535ab32-69c59220-n\decora-sse.dll
2010-05-24 17:31 . 2010-05-24 17:31 12800 ----a-w- c:\documents and settings\Amministratore\Dati applicazioni\Sun\Java\Deployment\SystemCache\6.0\50\5535ab32-69c59220-n\decora-d3d.dll
2010-05-23 09:41 . 2010-05-23 09:40 -------- d-----w- c:\documents and settings\Amministratore\Dati applicazioni\FreeVideoConverter
2010-05-19 16:50 . 2010-04-20 15:39 -------- d-----w- c:\documents and settings\Amministratore\Dati applicazioni\DAEMON Tools Lite
2010-05-06 10:32 . 2006-03-04 03:34 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-04 19:22 . 2010-02-11 11:38 -------- d-----w- c:\documents and settings\Amministratore\Dati applicazioni\PC Suite
2010-05-03 16:44 . 2010-05-03 16:35 -------- d-----w- c:\programmi\Defraggler
2010-05-02 08:06 . 2004-08-19 12:00 1851264 ----a-w- c:\windows\system32\win32k.sys
2010-04-28 15:12 . 2010-04-28 15:14 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-04-20 15:40 . 2010-04-20 15:40 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-04-20 05:30 . 2004-08-19 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll
.
(((((((((((((((((((((((((((((
SnapShot@2010-06-14_11.24.59 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-06-29 18:12 . 2010-06-29 18:12 16384 c:\windows\Temp\Perflib_Perfdata_5e0.dat
+ 2006-09-28 16:56 . 2008-01-18 22:37 55296 c:\windows\system32\WudfSvc.dll
+ 2006-09-28 18:13 . 2008-01-18 22:37 87552 c:\windows\system32\WUDFCoinstaller.dll
+ 2006-11-02 09:52 . 2006-11-02 09:52 41984 c:\windows\system32\wpdshextres.dll
+ 2006-10-18 18:00 . 2006-10-18 18:00 17408 c:\windows\system32\wpdshextautoplay.exe
+ 2005-01-28 12:44 . 2006-10-18 19:47 63488 c:\windows\system32\wpdmtpus.dll
+ 2005-01-28 12:44 . 2006-10-18 19:47 35840 c:\windows\system32\wpdconns.dll
+ 2004-08-19 12:00 . 2006-11-02 20:56 99840 c:\windows\system32\wmpshell.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 37376 c:\windows\system32\wmdmps.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 33792 c:\windows\system32\wmdmlog.dll
+ 2010-06-18 13:48 . 2010-06-18 13:48 18192 c:\windows\system32\SupernaturalScreensaver dir\saver2.dll
+ 2010-06-18 13:48 . 2010-06-18 13:48 34304 c:\windows\system32\SupernaturalScreensaver dir\saver1.dll
+ 2010-06-17 09:32 . 2007-07-27 08:41 16760 c:\windows\system32\spmsg.dll
+ 2010-03-30 22:16 . 2010-03-30 22:16 99176 c:\windows\system32\PresentationHostProxy.dll
- 2004-08-19 12:00 . 2010-06-12 13:48 69798 c:\windows\system32\perfc009.dat
+ 2004-08-19 12:00 . 2010-06-29 14:17 69798 c:\windows\system32\perfc009.dat
+ 2009-11-06 23:07 . 2009-11-06 23:07 49488 c:\windows\system32\netfxperf.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 11600 c:\windows\system32\mui\0409\mscorees.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 27136 c:\windows\system32\mspmsnsv.dll
+ 2010-06-18 13:47 . 2010-06-18 13:47 48749 c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
+ 2004-08-19 12:00 . 2006-10-18 19:47 11264 c:\windows\system32\LAPRXY.dll
+ 2006-09-28 17:00 . 2008-01-18 20:53 83328 c:\windows\system32\drivers\WudfRd.sys
+ 2006-09-28 16:55 . 2008-01-18 20:52 77696 c:\windows\system32\drivers\WudfPf.sys
+ 2005-01-28 12:44 . 2006-10-18 18:00 38528 c:\windows\system32\drivers\wpdusb.sys
+ 2004-08-19 12:00 . 2006-11-02 20:56 99840 c:\windows\system32\dllcache\wmpshell.dll
+ 2010-02-02 15:57 . 2006-11-02 20:56 64000 c:\windows\system32\dllcache\wmplayer.exe
+ 2010-02-02 15:58 . 2006-11-02 20:56 96256 c:\windows\system32\dllcache\wmpband.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 37376 c:\windows\system32\dllcache\wmdmps.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 33792 c:\windows\system32\dllcache\wmdmlog.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 27136 c:\windows\system32\dllcache\mspmsnsv.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 11264 c:\windows\system32\dllcache\LAPRXY.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13648 c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13648 c:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13648 c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13648 c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13648 c:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13664 c:\windows\Microsoft.NET\Framework\sbs_wminet_utils.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13688 c:\windows\Microsoft.NET\Framework\sbs_system.enterpriseservices.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13664 c:\windows\Microsoft.NET\Framework\sbs_system.data.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13696 c:\windows\Microsoft.NET\Framework\sbs_system.configuration.install.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13656 c:\windows\Microsoft.NET\Framework\sbs_mscorsec.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13656 c:\windows\Microsoft.NET\Framework\sbs_mscorrc.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13656 c:\windows\Microsoft.NET\Framework\sbs_mscordbi.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13672 c:\windows\Microsoft.NET\Framework\sbs_microsoft.jscript.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 13664 c:\windows\Microsoft.NET\Framework\sbs_diasymreader.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 86864 c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2010-02-11 11:40 . 2010-06-29 14:17 15086 c:\windows\Installer\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\ARPPRODUCTICON.exe
- 2010-02-11 11:40 . 2010-02-11 11:40 15086 c:\windows\Installer\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\ARPPRODUCTICON.exe
+ 2010-06-23 15:32 . 2010-06-23 15:32 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\ea1b4fbde0e772748c6ac42d627cf684\UIAutomationProvider.ni.dll
+ 2010-06-23 15:56 . 2010-06-23 15:56 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\f46915dfc57bc7e49c5402e9b8f7ec18\System.Windows.Presentation.ni.dll
+ 2010-06-23 15:29 . 2010-06-23 15:29 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\18729514178d458aa1225dd068718d4e\PresentationFontCache.ni.exe
+ 2010-06-23 15:27 . 2010-06-23 15:27 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\0375dfa28e2f6ef7e89df9edede4b83d\PresentationCFFRasterizer.ni.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\wmvdmoe2.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\wmvdmod.dll
+ 2005-01-28 12:44 . 2006-10-18 19:47 4096 c:\windows\system32\WMVADVE.DLL
+ 2005-01-28 12:44 . 2006-10-18 19:47 4096 c:\windows\system32\WMVADVD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\wmsdmoe2.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\wmsdmod.dll
+ 2005-01-28 12:44 . 2006-10-18 19:58 8704 c:\windows\system32\wdfmgr.exe
+ 2005-01-28 12:44 . 2006-10-18 19:47 4096 c:\windows\system32\wdfapi.dll
+ 2005-01-28 12:44 . 2006-10-18 19:58 8704 c:\windows\system32\uwdf.exe
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\MPG4DMOD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\MP4SDMOD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\MP43DMOD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\wmvdmoe2.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\wmvdmod.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\wmsdmoe2.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\wmsdmod.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\MPG4DMOD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\MP4SDMOD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 4096 c:\windows\system32\dllcache\MP43DMOD.dll
+ 2004-08-19 12:00 . 2006-11-02 20:54 7680 c:\windows\system32\dllcache\asferror.dll
+ 2004-08-19 12:00 . 2006-11-02 20:54 7680 c:\windows\system32\asferror.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2010-06-11 18:05 . 2010-06-11 18:05 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2006-09-28 16:56 . 2008-01-18 22:37 305152 c:\windows\system32\WUDFx.dll
+ 2006-09-28 16:56 . 2008-01-18 20:52 163840 c:\windows\system32\WudfPlatform.dll
+ 2006-09-28 16:56 . 2008-01-18 22:33 142336 c:\windows\system32\WudfHost.exe
+ 2005-01-28 12:44 . 2006-10-18 19:47 356352 c:\windows\system32\wpdsp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 133632 c:\windows\system32\WPDShServiceObj.dll
+ 2005-01-28 12:44 . 2006-10-18 19:47 154624 c:\windows\system32\wpdmtp.dll
+ 2005-01-28 12:44 . 2006-10-18 19:47 629760 c:\windows\system32\wpd_ci.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 656896 c:\windows\system32\WMVXENCD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 767488 c:\windows\system32\WMVSENCD.dll
+ 2004-08-19 12:00 . 2009-04-01 21:02 604160 c:\windows\system32\wmspdmod.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 204288 c:\windows\system32\wmpsrcwp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 130048 c:\windows\system32\wmpps.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 613376 c:\windows\system32\wmpmde.dll
+ 2006-10-18 19:47 . 2008-06-24 16:12 295936 c:\windows\system32\wmpeffects.dll
+ 2004-08-19 12:00 . 2009-07-13 21:43 286208 c:\windows\system32\wmpdxm.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 242688 c:\windows\system32\wmpasf.dll
+ 2004-08-19 12:00 . 2008-06-18 03:03 938496 c:\windows\system32\WMNetmgr.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 157184 c:\windows\system32\wmidx.dll
+ 2004-08-19 12:00 . 2006-11-02 20:56 251904 c:\windows\system32\wmerror.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 535040 c:\windows\system32\wmdrmsdk.dll
+ 2005-01-28 12:44 . 2006-10-18 19:47 348672 c:\windows\system32\wmdrmnet.dll
+ 2005-01-28 12:44 . 2006-10-18 19:47 429056 c:\windows\system32\wmdrmdev.dll
+ 2004-08-19 12:00 . 2007-10-25 07:28 222720 c:\windows\system32\wmasf.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 757248 c:\windows\system32\WMADMOD.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 211456 c:\windows\system32\qasf.dll
+ 2010-03-30 22:10 . 2010-03-30 22:10 295264 c:\windows\system32\PresentationHost.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 199168 c:\windows\system32\PortableDeviceWMDRM.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 132096 c:\windows\system32\PortableDeviceWiaCompat.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 166912 c:\windows\system32\PortableDeviceTypes.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 101888 c:\windows\system32\PortableDeviceClassExtension.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 284160 c:\windows\system32\PortableDeviceApi.dll
- 2004-08-19 12:00 . 2010-06-12 13:48 440912 c:\windows\system32\perfh009.dat
+ 2004-08-19 12:00 . 2010-06-29 14:17 440912 c:\windows\system32\perfh009.dat
+ 2004-08-19 12:00 . 2006-10-18 19:47 321536 c:\windows\system32\mswmdm.dll
+ 2004-08-19 12:00 . 2006-12-04 14:21 414720 c:\windows\system32\msscp.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 175616 c:\windows\system32\mspmsp.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 179712 c:\windows\system32\msnetobj.dll
+ 2006-10-02 13:28 . 2006-10-02 13:28 312128 c:\windows\system32\msdelta.dll
+ 2009-11-06 23:07 . 2009-11-06 23:07 297808 c:\windows\system32\mscoree.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 259072 c:\windows\system32\MPG4DECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 317440 c:\windows\system32\MP4SDECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 259072 c:\windows\system32\MP43DECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 212992 c:\windows\system32\MFPLAT.dll
+ 2007-06-11 20:04 . 2007-06-11 20:04 190696 c:\windows\system32\Macromed\Flash\FlashUtil9d.exe
+ 2004-08-19 12:00 . 2008-06-17 23:09 100864 c:\windows\system32\logagent.exe
+ 2004-08-19 12:00 . 2006-10-18 19:47 991744 c:\windows\system32\drmv2clt.dll
+ 2006-10-18 18:00 . 2006-10-18 18:00 249856 c:\windows\system32\drmupgds.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 671232 c:\windows\system32\drivers\UMDF\wpdmtpdr.dll
+ 2009-11-23 13:24 . 2009-11-23 13:24 571904 c:\windows\system32\drivers\UMDF\PCCSWpdDriver.dll
+ 2004-08-19 12:00 . 2009-04-01 21:02 604160 c:\windows\system32\dllcache\wmspdmod.dll
+ 2004-08-19 12:00 . 2009-07-13 21:43 286208 c:\windows\system32\dllcache\wmpdxm.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 242688 c:\windows\system32\dllcache\wmpasf.dll
+ 2004-08-19 12:00 . 2008-06-18 03:03 938496 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 157184 c:\windows\system32\dllcache\wmidx.dll
+ 2004-08-19 12:00 . 2006-11-02 20:56 251904 c:\windows\system32\dllcache\wmerror.dll
+ 2004-08-19 12:00 . 2007-10-25 07:28 222720 c:\windows\system32\dllcache\wmasf.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 757248 c:\windows\system32\dllcache\WMADMOD.dll
+ 2004-08-19 12:00 . 2007-06-27 13:48 318464 c:\windows\system32\dllcache\unregmp2.exe
+ 2004-08-19 12:00 . 2006-10-18 19:47 211456 c:\windows\system32\dllcache\qasf.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 321536 c:\windows\system32\dllcache\mswmdm.dll
+ 2004-08-19 12:00 . 2006-12-04 14:21 414720 c:\windows\system32\dllcache\msscp.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 175616 c:\windows\system32\dllcache\mspmsp.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 179712 c:\windows\system32\dllcache\msnetobj.dll
+ 2010-02-02 15:57 . 2006-11-02 20:54 244224 c:\windows\system32\dllcache\mpvis.dll
+ 2004-08-19 12:00 . 2008-06-17 23:09 100864 c:\windows\system32\dllcache\logagent.exe
+ 2004-08-19 12:00 . 2006-10-18 19:47 991744 c:\windows\system32\dllcache\drmv2clt.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 229376 c:\windows\system32\dllcache\cewmdm.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 542720 c:\windows\system32\dllcache\blackbox.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 229376 c:\windows\system32\cewmdm.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 542720 c:\windows\system32\blackbox.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 276992 c:\windows\system32\audiodev.dll
+ 2010-03-30 22:16 . 2010-03-30 22:16 130408 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2010-02-11 11:40 . 2010-06-29 14:17 216358 c:\windows\Installer\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\EXTUI_UninstallPCSui_0F854AC05AF149EFBE65492233B7B5AD.exe
- 2010-02-11 11:40 . 2010-02-11 11:40 216358 c:\windows\Installer\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\EXTUI_UninstallPCSui_0F854AC05AF149EFBE65492233B7B5AD.exe
- 2010-02-11 15:14 . 2010-02-25 18:18 151552 c:\windows\Installer\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}\VidIcon.BA73B1B0_EF22_43B4_9B31_1EC3736CBBD6.exe
+ 2010-02-11 15:14 . 2010-06-17 10:31 151552 c:\windows\Installer\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}\VidIcon.BA73B1B0_EF22_43B4_9B31_1EC3736CBBD6.exe
- 2010-02-11 15:14 . 2010-02-25 18:18 184320 c:\windows\Installer\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}\ARPPRODUCTICON.exe
+ 2010-02-11 15:14 . 2010-06-17 10:31 184320 c:\windows\Installer\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}\ARPPRODUCTICON.exe
+ 2004-08-19 12:00 . 2007-06-27 13:48 318464 c:\windows\inf\unregmp2.exe
+ 2010-06-23 15:32 . 2010-06-23 15:32 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\b3a9fac9aea3ad913781fafbdcbb0cae\WindowsFormsIntegration.ni.dll
+ 2010-06-23 15:32 . 2010-06-23 15:32 447488 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\4131a3627fec69291dbaed236f30dc65\UIAutomationClient.ni.dll
+ 2010-06-23 15:31 . 2010-06-23 15:31 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a10c2c7e38291c3ada631ad13e762818\PresentationFramework.Aero.ni.dll
+ 2010-06-23 15:31 . 2010-06-23 15:31 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7579c76fa81eb309d3170b62467be58d\PresentationFramework.Luna.ni.dll
+ 2010-06-23 15:31 . 2010-06-23 15:31 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\3bef0992fb684e71dbfab5c0a99316af\PresentationFramework.Classic.ni.dll
+ 2010-06-23 15:31 . 2010-06-23 15:31 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\2f6687d394813d760496f60acf046384\PresentationFramework.Royale.ni.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2009-11-23 12:50 . 2009-11-23 12:50 1302600 c:\windows\system32\WUDFUpdate_01007.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 2603008 c:\windows\system32\WpdShext.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1382912 c:\windows\system32\WMVSDECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1574912 c:\windows\system32\WMVENCOD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1543680 c:\windows\system32\WMVDECOD.dll
+ 2004-08-19 12:00 . 2010-04-06 02:52 2462720 c:\windows\system32\WMVCore.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 1329152 c:\windows\system32\WMSPDMOE.dll
+ 2004-08-19 12:00 . 2006-11-02 21:36 8284672 c:\windows\system32\wmploc.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1661440 c:\windows\system32\wmpencen.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 1117696 c:\windows\system32\WMADMOE.dll
+ 2004-08-19 12:00 . 2010-04-06 02:52 2462720 c:\windows\system32\dllcache\WMVCore.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 1329152 c:\windows\system32\dllcache\WMSPDMOE.dll
+ 2004-08-19 12:00 . 2006-11-02 21:36 8284672 c:\windows\system32\dllcache\wmploc.dll
+ 2004-08-19 12:00 . 2006-10-18 19:47 1117696 c:\windows\system32\dllcache\WMADMOE.dll
+ 2010-02-02 15:58 . 2006-11-02 21:33 1678336 c:\windows\system32\dllcache\setup_wm.exe
+ 2009-11-06 23:06 . 2009-11-06 23:06 1130824 c:\windows\system32\dfshim.dll
+ 2010-06-17 10:31 . 2010-06-17 10:31 3474944 c:\windows\Installer\2fdb6c.msi
+ 2009-11-08 22:25 . 2009-11-08 22:25 1935360 c:\windows\Installer\12b9e10.msp
+ 2010-06-23 15:27 . 2010-06-23 15:27 3325440 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d63164ac4ed5adabc6a1b0fdf07eee05\WindowsBase.ni.dll
+ 2010-06-23 15:32 . 2010-06-23 15:32 1049600 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\d8549ce90b26cdc3071224ab6f020189\UIAutomationClientsideProviders.ni.dll
+ 2010-06-23 15:32 . 2010-06-23 15:32 1035264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\af217ef58e5558991f331d482c2bdba6\System.Printing.ni.dll
+ 2010-06-23 15:32 . 2010-06-23 15:32 2128896 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\57abb757c1f38586390dcc63bf056322\ReachFramework.ni.dll
+ 2010-06-23 15:31 . 2010-06-23 15:31 1657856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\0095ba60255d4addaf5b8ebee697a027\PresentationUI.ni.dll
+ 2010-06-23 15:24 . 2010-06-23 15:24 1249280 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 3182592 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2010-06-23 15:24 . 2010-06-23 15:24 5279744 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2010-06-23 15:14 . 2010-06-23 15:14 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2010-06-23 15:16 . 2010-06-23 15:16 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2010-06-11 18:06 . 2010-06-11 18:06 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2010-02-12 09:48 . 2010-02-12 09:48 4210688 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2010-06-23 15:23 . 2010-06-23 15:23 4210688 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2010-06-23 15:15 . 2010-06-23 15:15 4546560 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2010-06-11 18:05 . 2010-06-11 18:05 4546560 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2004-08-19 12:00 . 2009-07-13 21:43 10841088 c:\windows\system32\wmp.dll
+ 2004-08-19 12:00 . 2009-07-13 21:43 10841088 c:\windows\system32\dllcache\wmp.dll
+ 2010-03-30 23:23 . 2010-03-30 23:23 15638528 c:\windows\Installer\12b9e1d.msp
+ 2010-06-23 15:31 . 2010-06-23 15:31 14328320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\560662ada034afb6ec78a152bd9a47b5\PresentationFramework.ni.dll
+ 2010-06-23 15:29 . 2010-06-23 15:29 12215808 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\9f5dff344ac6ac923b5ade8ba1ab9382\PresentationCore.ni.dll
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Speaking Clock Deluxe"="c:\programmi\Speaking Clock Deluxe\SpClDlx.exe" [2003-09-24 1907200]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\programmi\File comuni\Ahead\Lib\NMBgMonitor.exe" [2006-04-21 94208]
"Logitech Vid"="c:\programmi\Logitech\Logitech Vid\Vid.exe" [2010-05-11 6061400]
"DAEMON Tools Lite"="c:\programmi\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"="c:\programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-04-04 36272]
"Adobe ARM"="c:\programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
"NeroFilterCheck"="c:\programmi\File comuni\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"PCSuiteTrayApplication"="c:\programmi\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [2007-03-23 227328]
"LogitechQuickCamRibbon"="c:\programmi\Logitech\Logitech WebCam Software\LWS.exe" [2009-10-14 2793304]
"egui"="c:\programmi\ESET\ESET NOD32 Antivirus\egui.exe" [2008-10-08 1451264]
"SunJavaUpdateSched"="c:\programmi\File comuni\Java\Java Update\jusched.exe" [2010-02-18 248040]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
"Nokia.PCSync"="c:\programmi\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]
c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
Ralink Wireless Utility.lnk - c:\programmi\RALINK\Common\RaUI.exe [2010-2-4 1531904]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
2009-12-21 05:45 39424 ----a-w- c:\programmi\Winamp\winampa.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Programmi\\RALINK\\Common\\ApUI.exe"=
"c:\\Programmi\\Nero\\Nero 7\\Nero Home\\NeroHome.exe"=
"c:\\Programmi\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"=
"c:\\Programmi\\File comuni\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"c:\\Programmi\\VideoLAN\\VLC\\vlc.exe"=
"c:\\Programmi\\Logitech\\Logitech Vid\\Vid.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [08/10/2008 09.50.14 34312]
R2 ekrn;Eset Service;c:\programmi\ESET\ESET NOD32 Antivirus\ekrn.exe [08/10/2008 09.47.58 468224]
R3 Msikbd2k;DellTouch;c:\windows\system32\drivers\Msikbd2k.sys [02/02/2010 18.33.46 6942]
S2 EsetNod32Fix;Nod32 AV;c:\windows\regedit.exe [19/08/2004 14.00.00 151552]
S3 hamachi_oem;PlayLinc Adapter;c:\windows\system32\drivers\gan_adapter.sys [29/08/2006 00.54.56 10664]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [03/03/2010 18.23.19 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [03/03/2010 18.23.21 8320]
S3 RTLWUSB;Realtek RTL8187 Wireless 802.11g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187.sys [02/02/2010 18.45.14 235648]
S4 gupdate;Servizio di Google Update (gupdate);c:\programmi\Google\Update\GoogleUpdate.exe [02/02/2010 19.11.20 135664]
S4 Nhksrv;Netropa NHK Server;c:\windows\Nhksrv.exe [02/02/2010 18.33.46 28672]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [20/04/2010 17.40.04 691696]
.
Contenuto della cartella 'Scheduled Tasks'
2010-02-03 c:\windows\Tasks\User_Feed_Synchronization-{EFE49C5A-EB2F-40A5-A381-36BDE41D68A4}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 03:31]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
uInternet Connection Wizard,ShellNext = iexplore
IE: E&sporta in Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: {3F73510C-DDAD-4966-A76E-C167D7444B26} = 151.99.125.1,151.99.0.100
TCP: {4C42339B-763C-42BF-B9F5-1D6F6AA025E2} = 151.99.125.1,151.99.0.100
FF - ProfilePath - c:\documents and settings\Amministratore\Dati applicazioni\Mozilla\Firefox\Profiles\n9tsdnqf.default\
FF - prefs.js: browser.search.selectedEngine - DAEMON Search
FF - plugin: c:\programmi\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\programmi\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\programmi\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX POLICIES ----
FF - user.js: yahoo.homepage.dontask - truec:\programmi\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\programmi\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\programmi\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\programmi\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2010-06-29 20:24
Windows 5.1.2600 Service Pack 3 NTFS
scansione processi nascosti ...
scansione entrate autostart nascoste ...
Scansione files nascosti ...
Scansione completata con successo
Files nascosti: 0
**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
[HKEY_USERS\S-1-5-21-602162358-484061587-725345543-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:ae,22,26,76,1f,e7,7f,c0,1e,56,54,c2,cc,28,a1,61,ee,70,c9,27,e5,4e,c1,
cb,e5,2b,50,86,37,0c,9c,12,5d,21,7e,7e,8f,ed,17,81,82,0b,9d,e0,19,81,b8,3a,\
"??"=hex:57,73,e3,fc,65,3f,e0,1f,f0,01,b7,86,31,1b,0e,d6
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
- - - - - - - > 'explorer.exe'(1300)
c:\windows\system32\WININET.dll
c:\programmi\ESET\ESET NOD32 Antivirus\eplgHooks.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Ora fine scansione: 2010-06-29 20:28:49
ComboFix-quarantined-files.txt 2010-06-29 18:28
ComboFix2.txt 2010-06-14 11:28
Pre-Run: 11.872.600.064 byte disponibili
Post-Run: 11.860.856.832 byte disponibili
- - End Of File - - 62195511D61AAD300698B948AC8450B9