salve eccomi scusate il ritardo e doveroso chiedervi il motivo dei ritardi ,( problemi seri di famiglia) comunque vimano il log che ho fatto con combofix ,swe potete dare un occhiata grazie ComboFix 10-06-05.01 - coccola 06/06/2010 12:19:36.2.2 - x86
Microsoft® Windows Vistaâ„¢ Home Basic 6.0.6002.2.1252.39.1040.18.767.365 [GMT 2:00]
Eseguito da: c:\users\coccola\Desktop\ComboFix.exe
AV: Norton AntiVirus *On-access scanning disabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
AV: Panda Internet Security 2008 *On-access scanning disabled* (Outdated) {4570FB70-5C9E-47E9-B16C-A3A6A06C4BF0}
FW: Norton AntiVirus *disabled* {990F9400-4CEE-43EA-A83A-D013ADD8EA6E}
FW: Panda Internet Security 2008 *disabled* {7B090DC0-8905-4BAF-8040-FD98A41C8FB8}
SP: Avira AntiVir PersonalEdition *enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
SP: Norton AntiVirus *disabled* (Updated) {CBB7EE13-8244-4DAB-8B55-D5C7AA91E59A}
SP: Panda Internet Security 2008 *disabled* (Outdated) {FE6602D3-1E71-4EBB-B4E3-D1C9CBDAF0A1}
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Creati Da 2010-05-06 al 2010-06-06 )))))))))))))))))))))))))))))))))))
.
2010-06-06 10:28 . 2010-06-06 10:28 -------- d-----w- c:\users\coccola\AppData\Local\temp
2010-06-06 10:28 . 2010-06-06 10:28 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-06-06 10:28 . 2010-06-06 10:28 -------- d-----w- c:\users\michi\AppData\Local\temp
2010-06-06 10:28 . 2010-06-06 10:28 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-06-04 17:34 . 2010-06-04 17:34 -------- d-----w- c:\program files\Microsoft
2010-06-04 16:30 . 2010-06-04 16:30 -------- d-----w- c:\users\michi\AppData\Local\Apple
2010-06-04 12:13 . 2010-06-04 12:13 -------- d-----w- c:\program files\Microsoft Works
2010-05-28 06:07 . 2010-06-04 16:27 680 ----a-w- c:\users\michi\AppData\Local\d3d9caps.dat
2010-05-28 06:07 . 2010-05-28 06:07 -------- d-----w- c:\users\michi\AppData\Local\VirtualStore
2010-05-26 18:53 . 2010-04-23 14:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-25 18:12 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-05-25 18:12 . 2010-05-25 18:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-05-25 18:12 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-05-25 16:18 . 2010-05-25 16:18 501872 ----a-w- c:\programdata\Google\Google Toolbar\Update\gtbB337.tmp.exe
2010-05-25 15:19 . 2010-05-25 15:19 -------- d-----w- c:\users\coccola\.PhotoBook
2010-05-25 15:19 . 2010-05-25 15:19 -------- d-----w- c:\users\coccola\.digilabs
2010-05-25 15:16 . 2010-05-25 15:17 -------- d-----w- c:\program files\My PhotoBooks
2010-05-25 15:14 . 2010-05-25 16:14 -------- d-----w- c:\users\coccola\AppData\Roaming\Digilabs
2010-05-23 18:01 . 2010-06-05 12:50 1 ----a-w- c:\users\coccola\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-05-23 18:01 . 2010-05-23 18:01 -------- d-----w- c:\users\coccola\AppData\Roaming\OpenOffice.org
2010-05-23 17:25 . 2010-05-23 17:25 -------- d-----w- c:\program files\JRE
2010-05-23 17:24 . 2010-05-23 17:25 -------- d-----w- c:\program files\OpenOffice.org 3
2010-05-20 01:28 . 2010-05-20 01:28 443912 ----a-w- c:\users\coccola\AppData\Roaming\Real\Update\setup3.10\setup.exe
2010-05-19 00:44 . 2010-05-24 08:37 -------- d-----w- c:\users\coccola\AppData\Roaming\Scribus
2010-05-19 00:42 . 2010-05-19 00:44 -------- d-----w- c:\program files\Scribus 1.3.6
2010-05-18 17:40 . 2009-04-11 06:28 800768 ----a-w- c:\windows\system32\_entreelist.dll
2010-05-18 17:40 . 2009-04-11 06:27 1202168 ----a-w- c:\windows\system32\_enviewlist.dll
2010-05-18 17:00 . 2010-05-18 17:00 -------- d-----w- c:\program files\Enigma Software Group
2010-05-18 16:59 . 2010-05-18 17:08 -------- d-----w- c:\windows\61D3AAE1D5214CD7939B37813DE8F955.TMP
2010-05-18 16:59 . 2010-05-28 18:07 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-05-12 01:46 . 2010-01-29 15:40 738816 ----a-w- c:\windows\system32\inetcomm.dll
2010-05-11 10:06 . 2010-05-11 10:08 -------- d-----w- c:\program files\WebSite X5 v8 - Evolution
2010-05-11 10:05 . 1997-01-15 22:00 29696 ----a-w- c:\windows\system32\VB5STKIT.DLL
2010-05-11 10:05 . 2009-03-15 15:35 207872 ----a-w- c:\windows\system32\iwpsetup.exe
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-06 07:35 . 2007-12-22 20:59 1356 ----a-w- c:\users\coccola\AppData\Local\d3d9caps.dat
2010-06-05 12:24 . 2006-11-06 01:45 661860 ----a-w- c:\windows\system32\perfh010.dat
2010-06-05 12:24 . 2006-11-06 01:45 119742 ----a-w- c:\windows\system32\perfc010.dat
2010-06-04 12:13 . 2007-05-06 13:56 -------- d-----w- c:\programdata\Microsoft Help
2010-06-04 11:35 . 2009-04-06 02:59 -------- d-----w- c:\program files\Microsoft Silverlight
2010-05-28 18:08 . 2010-04-19 17:13 -------- d-----w- c:\program files\Panda Security
2010-05-24 16:40 . 2007-12-22 16:13 77336 ----a-w- c:\users\coccola\AppData\Local\GDIPFONTCACHEV1.DAT
2010-05-20 02:38 . 2008-12-13 23:51 -------- d-----w- c:\program files\Common Files\Real
2010-05-18 21:10 . 2010-02-16 18:28 50354 ----a-w- c:\users\coccola\AppData\Roaming\Facebook\uninstall.exe
2010-05-18 21:10 . 2010-02-16 18:28 -------- d-----w- c:\users\coccola\AppData\Roaming\Facebook
2010-05-14 15:09 . 2010-04-13 14:49 -------- d-----w- c:\program files\PCPitstop
2010-05-14 15:06 . 2009-08-23 20:56 -------- d-----w- c:\users\coccola\AppData\Roaming\Uniblue
2010-05-13 13:09 . 2008-03-20 15:56 -------- d-----w- c:\program files\Google
2010-05-12 18:01 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-05-12 09:21 . 2009-10-02 18:10 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-05 19:22 . 2008-09-06 11:15 -------- d-----w- c:\program files\Java
2010-05-05 19:22 . 2008-09-06 11:14 -------- d-----w- c:\program files\Common Files\Java
2010-05-05 08:10 . 2010-04-30 19:07 -------- d-----w- c:\program files\a-squared Anti-Malware
2010-05-02 14:22 . 2010-05-02 14:22 -------- d-----w- c:\program files\Burn4Free
2010-04-23 14:58 . 2007-12-26 16:55 -------- d-----w- c:\program files\ccleaner
2010-04-20 17:13 . 2010-04-20 17:02 -------- d-----w- c:\users\coccola\AppData\Roaming\FreeFixer
2010-04-20 16:19 . 2010-02-06 13:54 -------- d-----w- c:\users\coccola\AppData\Roaming\Spyware Terminator
2010-04-20 16:19 . 2010-02-06 13:54 -------- d-----w- c:\program files\Spyware Terminator
2010-04-20 14:10 . 2010-04-20 08:25 -------- d-----w- c:\users\coccola\AppData\Roaming\SUPERAntiSpyware.com
2010-04-20 14:10 . 2010-04-20 08:25 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-04-20 13:53 . 2010-02-06 13:54 -------- d-----w- c:\programdata\Spyware Terminator
2010-04-20 10:51 . 2008-03-20 16:04 -------- d-----w- c:\program files\Common Files\Adobe
2010-04-20 08:25 . 2010-04-20 08:25 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2010-04-13 14:54 . 2010-04-13 14:49 -------- d-----w- c:\programdata\PCPitstop
.
(((((((((((((((((((((((((((((
SnapShot@2010-06-05_11.07.50 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-05-06 13:48 . 2010-06-06 07:37 69842 c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
- 2006-11-02 13:02 . 2010-06-05 06:34 72356 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2006-11-02 13:02 . 2010-06-06 07:37 72356 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
- 2007-12-22 16:48 . 2010-06-04 11:42 14750 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-386902657-4257126248-1374816572-1000_UserData.bin
+ 2007-12-22 16:48 . 2010-06-06 07:37 14750 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-386902657-4257126248-1374816572-1000_UserData.bin
+ 2007-10-12 00:58 . 2010-06-06 07:43 32768 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2007-10-12 00:58 . 2010-06-05 10:55 32768 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2007-10-12 00:58 . 2010-06-06 07:43 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2007-10-12 00:58 . 2010-06-05 10:55 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-06-19 16:59 . 2010-06-04 22:59 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-06-19 16:59 . 2010-06-05 17:06 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-06-19 16:59 . 2010-06-05 17:06 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-06-19 16:59 . 2010-06-04 22:59 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-06-19 16:59 . 2010-06-05 17:06 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-06-19 16:59 . 2010-06-04 22:59 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2008-02-28 21:08 . 2010-06-04 16:20 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2008-02-28 21:08 . 2010-06-06 07:35 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2008-02-28 21:08 . 2010-06-06 07:35 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2008-02-28 21:08 . 2010-06-04 16:20 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2008-02-28 21:08 . 2010-06-06 07:35 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2008-02-28 21:08 . 2010-06-04 16:20 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2007-12-29 10:14 . 2010-05-27 19:29 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\XviD1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\XviD1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MPEGOLD4_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MPEGOLD4_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MPEGOLD11_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MPEGOLD11_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MPEGOLD1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 92582 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MPEGOLD1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MOVdefaults1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MOVdefaults1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MOVdefaults_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\MOVdefaults_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\HaaliDefaults_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\HaaliDefaults_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 61440 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\Haali_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 61440 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\Haali_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 40960 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowraw_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 40960 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowraw_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowON_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowON_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowOFF_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowOFF_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 53248 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowencoder_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 53248 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowencoder_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 53248 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowdecoder_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 53248 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowdecoder_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 53248 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowaudio_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 53248 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ffdshowaudio_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\enableCAMmov_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\enableCAMmov_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\Donate_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 26694 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\Donate_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2010-06-05 06:32 . 2010-06-05 09:47 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-06-06 07:35 . 2010-06-06 07:35 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2010-06-06 07:35 . 2010-06-06 07:35 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2010-06-05 06:32 . 2010-06-05 09:47 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2007-12-29 10:14 . 2010-06-05 13:41 7406 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\XviD_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 7406 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\XviD_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 7406 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\vobsub238_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 7406 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\vobsub238_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 7406 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\DXvid_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 7406 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\DXvid_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2006-11-02 10:33 . 2010-06-05 12:24 586568 c:\windows\System32\perfh009.dat
- 2006-11-02 10:33 . 2010-05-29 20:33 586568 c:\windows\System32\perfh009.dat
- 2006-11-02 10:33 . 2010-05-29 20:33 100640 c:\windows\System32\perfc009.dat
+ 2006-11-02 10:33 . 2010-06-05 12:24 100640 c:\windows\System32\perfc009.dat
+ 2009-06-18 13:18 . 2010-06-05 17:28 245760 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-06-18 13:18 . 2010-06-02 17:14 245760 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2007-10-12 00:58 . 2010-06-05 10:55 114688 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2007-10-12 00:58 . 2010-06-06 07:43 114688 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-01-08 22:54 . 2010-06-05 16:15 545176 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
- 2007-12-29 10:14 . 2010-05-27 19:29 280054 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\reset.exe1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 280054 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\reset.exe1_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 161862 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\reset.exe_F9FD80CE04484D4F8BCD77FC514C3F99.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 161862 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\reset.exe_F9FD80CE04484D4F8BCD77FC514C3F99.exe
+ 2007-12-29 10:14 . 2010-06-05 13:41 280054 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ARPPRODUCTICON.exe
- 2007-12-29 10:14 . 2010-05-27 19:29 280054 c:\windows\Installer\{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}\ARPPRODUCTICON.exe
+ 2006-10-07 10:18 . 2006-10-07 10:18 185952 c:\windows\Installer\$PatchCache$\Managed\EC08DF9F8440F4D4B8DC77CF15C4F399\4.5.5\rmoc3260.dll
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-05-13 39408]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^Users^coccola^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
path=c:\users\coccola\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk
backup=c:\windows\pss\OpenOffice.org 3.2.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2010-03-24 18:17 952768 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2010-04-02 18:05 40368 ----a-w- c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
2009-03-02 11:08 209153 ----a-w- c:\program files\Avira\AntiVir Desktop\avgnt.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\eDataSecurity Loader]
2007-02-06 22:04 464168 ----a-w- c:\acer\Empowering Technology\eDataSecurity\eDSloader.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
2010-04-29 13:39 437584 ----a-w- c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdate]
2010-02-06 13:54 3037696 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2010-05-13 13:09 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeohPlugin]
2008-11-03 22:45 3522296 ----a-w- c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
2008-01-19 07:38 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"VistaSp2"=hex(b):06,f5,23,f8,37,12,ca,01
R2 gupdate;Servizio di Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-05-13 136176]
S1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2010-02-06 142592]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Contenuto della cartella 'Scheduled Tasks'
2010-06-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-13 13:09]
2010-06-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-13 13:09]
2010-06-06 c:\windows\Tasks\User_Feed_Synchronization-{91DC4126-BAA4-49B0-B20D-EEED6E29E8FC}.job
- c:\windows\system32\msfeedssync.exe [2010-03-31 04:54]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
IE: E&sporta in Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
Trusted Zone: humyo.com\www
DPF: {A27C56D2-3F58-4ABB-AA31-1168EDA6636F} - hxxp://utilities.pcpitstop.com/Nirvana/controls/pcmatic.cab
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2010-06-06 12:28
Windows 6.0.6002 Service Pack 2 NTFS
scansione processi nascosti ...
scansione entrate autostart nascoste ...
Scansione files nascosti ...
Scansione completata con successo
Files nascosti: 0
**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\ACD Systems\ACDSee\90\BurnBasket\Columns]
@DACL=(02 0000)
"ColCount"=dword:00000007
"SortFieldTag"=dword:00000004
"Sort00"=dword:7c22002f
"Column00Tag"=dword:00000004
"Column00Group"=dword:00000001
"Column00Width"=dword:00000064
"Sort01"=dword:0000000b
"Column01Tag"=dword:00000009
"Column01Group"=dword:00000001
"Column01Width"=dword:00000064
"Sort02"=dword:0000000b
"Column02Tag"=dword:00000028
"Column02Group"=dword:00000003
"Column02Width"=dword:00000064
"Sort03"=dword:00000000
"Column03Tag"=dword:0000000a
"Column03Group"=dword:00000001
"Column03Width"=dword:00000064
"Sort04"=dword:7275425c
"Column04Tag"=dword:0000002b
"Column04Group"=dword:00000003
"Column04Width"=dword:00000064
"Sort05"=dword:7361426e
"Column05Tag"=dword:00000013
"Column05Group"=dword:00000002
"Column05Width"=dword:00000064
"Sort06"=dword:0074656b
"Column06Tag"=dword:00000015
"Column06Group"=dword:00000002
"Column06Width"=dword:00000064
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\ACD Systems\ACDSee\90\BurnBasket\TPColumns]
@DACL=(02 0000)
"Column00Width"=dword:00000064
"Column01Width"=dword:00000064
"Column02Width"=dword:00000064
"Column03Width"=dword:00000064
"Column04Width"=dword:00000064
"Column05Width"=dword:00000064
"Column06Width"=dword:00000064
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\ALWIL Software\Avast]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\F-Secure\GKH]
@DACL=(02 0000)
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.032"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ani"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bay"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bmp"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bw"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cr2"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.crw"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cs1"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cur"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dcr"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dcx"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dib"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.djv"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.djvu"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dng"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.emf"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.eps"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.erf"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.fff"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.fpx"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.gif"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.icl"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.icn"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ico"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.iff"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ilbm"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.int"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.inta"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.iw4"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.j2c"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.j2k"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jfif"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jif"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jp2"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpc"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpe"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpeg"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpg"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpk"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpx"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.lbm"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.mos"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.mrw"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.nef"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.orf"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pbm"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pcd"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pct"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pcx"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pef"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pgm"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pic"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pict"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pix"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.png"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ppm"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.psd"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.psp"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.raf"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ras"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.raw"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rgb"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rgba"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rle"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rsb"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.sgi"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.sr2"
[HKEY_USERS\S-1-5-21-386902657-4257126248-1374816572-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.srf"
[HKEY_LOCAL_MACHINE\SOFTWARE\ESET\Setup]
@DACL=(02 0000)
[HKEY_LOCAL_MACHINE\SOFTWARE\LaSchedina.com\Zeta lotto DEMO]
@DACL=(02 0000)
[HKEY_LOCAL_MACHINE\SOFTWARE\Lottobit.com\Banco lotto]
@DACL=(02 0000)
[HKEY_LOCAL_MACHINE\SOFTWARE\Poikosoft\Easy CD-DA Extractor 11]
@DACL=(02 0000)
[HKEY_LOCAL_MACHINE\SOFTWARE\SmartDraw.com\SmartDraw]
@DACL=(02 0000)
[HKEY_LOCAL_MACHINE\SOFTWARE\TRUST\TRUST 120 SPACEC@M]
@DACL=(02 0000)
.
Ora fine scansione: 2010-06-06 12:32:30
ComboFix-quarantined-files.txt 2010-06-06 10:32
ComboFix2.txt 2010-06-05 11:11
Pre-Run: 4.861.984.768 byte disponibili
Post-Run: 4.836.208.640 byte disponibili
- - End Of File - - 348D11283410240909A8BE9AA6347D3B