ComboFix 11-11-25.01 - Nicola 25/11/2011 17.07.08.2.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.895.562 [GMT 1:00]
Eseguito da: c:\documents and settings\Nicola\Desktop\ComboFix.exe
Opzioni usate :: c:\documents and settings\Nicola\Desktop\CFScript.txt
.
FILE ::
"c:\docume~1\Nicola\IMPOST~1\Temp\jatmlano.sys"
.
.
((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
d:\programmi\Registry Clean Expert
d:\programmi\Registry Clean Expert\RegDefrg.exe
d:\programmi\Registry Clean Expert\unins000.dat
d:\programmi\Registry Clean Expert\unins000.exe
.
.
((((((((((((((((((((((((((((((((((((((( Driver/Servizi )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_JATMLANO
-------\Legacy_KSANRFQH
-------\Service_jatmlano
-------\Service_ksanrfqh
.
.
((((((((((((((((((((((((( Files Creati Da 2011-10-25 al 2011-11-25 )))))))))))))))))))))))))))))))))))
.
.
2011-11-24 23:58 . 2001-08-17 20:47 6272 -c--a-w- c:\windows\system32\dllcache\apmbatt.sys
2011-11-24 23:58 . 2008-04-13 08:35 36224 -c--a-w- c:\windows\system32\dllcache\an983.sys
2011-11-24 23:58 . 2001-08-17 20:52 12032 -c--a-w- c:\windows\system32\dllcache\amsint.sys
2011-11-24 23:58 . 2001-08-17 19:11 16969 -c--a-w- c:\windows\system32\dllcache\amb8002.sys
2011-11-24 23:58 . 2001-08-17 20:51 5248 -c--a-w- c:\windows\system32\dllcache\aliide.sys
2011-11-24 23:58 . 2001-08-17 20:49 26624 -c--a-w- c:\windows\system32\dllcache\alifir.sys
2011-11-24 23:58 . 2001-08-17 19:11 27678 -c--a-w- c:\windows\system32\dllcache\ali5261.sys
2011-11-24 23:58 . 2001-08-17 21:07 56960 -c--a-w- c:\windows\system32\dllcache\aic78xx.sys
2011-11-24 23:58 . 2001-08-17 21:07 55168 -c--a-w- c:\windows\system32\dllcache\aic78u2.sys
2011-11-24 23:58 . 2001-08-17 20:52 12800 -c--a-w- c:\windows\system32\dllcache\aha154x.sys
2011-11-24 23:55 . 2001-08-30 22:07 66048 -c--a-w- c:\windows\system32\dllcache\s3legacy.dll
2011-11-24 23:14 . 2011-11-24 23:31 -------- d-----w- d:\programmi\MultiProxy
2011-11-22 23:44 . 2011-11-22 23:45 -------- d-----w- d:\programmi\Defraggler
2011-11-22 23:28 . 2011-11-22 23:28 -------- d-----w- c:\windows\$regcmp$
2011-11-21 22:35 . 2011-11-21 22:35 388096 ----a-r- c:\documents and settings\Nicola\Dati applicazioni\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-11-19 12:27 . 2011-11-19 12:27 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\NCH Software
2011-11-19 12:26 . 2011-11-19 12:26 -------- d-----w- c:\documents and settings\Nicola\Dati applicazioni\NCH Software
2011-11-19 10:37 . 2011-11-19 10:37 -------- d-----w- c:\documents and settings\Nicola\Impostazioni locali\Dati applicazioni\HHD Software
2011-11-16 18:28 . 2011-11-16 19:11 -------- d-----w- c:\documents and settings\Nicola\Impostazioni locali\Dati applicazioni\SISContents
2011-11-16 11:44 . 2011-11-16 11:47 -------- d-----w- c:\documents and settings\Nicola\Dati applicazioni\Garmin
2011-11-13 14:19 . 2011-11-13 14:34 2829 ----a-w- c:\windows\War3Unin.pif
2011-11-13 14:19 . 2011-11-13 14:34 139264 ----a-w- c:\windows\War3Unin.exe
2011-11-13 12:47 . 2011-11-13 12:47 -------- d-----w- c:\documents and settings\Nicola\Dati applicazioni\GameRanger
2011-10-28 10:58 . 2011-10-28 10:58 -------- d-----w- C:\gPotato.eu
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-12 19:15 . 2011-09-06 22:24 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-23 20:06 . 2011-10-23 20:06 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-10-23 20:06 . 2010-08-10 08:24 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-13 20:29 . 2011-10-13 20:29 42392 ----a-w- c:\windows\system32\xfcodec.dll
2011-09-09 17:53 . 2010-09-05 10:02 43520 ----a-w- c:\windows\system32\CmdLineExt03.dll
2011-09-02 07:47 . 2011-09-02 07:47 4065 ----a-w- c:\windows\system32\sdbackup.reg
2011-08-31 16:00 . 2010-09-27 14:43 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2007-11-07 01:19 . 2010-12-08 16:31 568832 ----a-w- d:\programmi\opera\program\plugins\msvcp90.dll
2007-11-07 01:19 . 2010-12-08 16:31 655872 ----a-w- d:\programmi\opera\program\plugins\msvcr90.dll
2011-11-10 22:04 . 2011-03-24 17:23 134104 ----a-w- d:\programmi\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-11-23_18.47.15 )))))))))))))))))))))))))))))))))))))))))
.
+ 2004-08-19 13:39 . 2008-04-13 17:13 30749 c:\windows\system32\dllcache\vbajet32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 37888 c:\windows\system32\dllcache\url.dll
+ 2010-08-07 17:04 . 2008-03-28 07:09 16384 c:\windows\system32\dllcache\tcptsat.dll
- 2010-08-07 17:04 . 2003-04-14 19:04 16384 c:\windows\system32\dllcache\tcptsat.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 32827 c:\windows\system32\dllcache\tcptest.exe
+ 2004-08-19 13:39 . 2008-04-13 17:13 25600 c:\windows\system32\dllcache\slayerxp.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 16437 c:\windows\system32\dllcache\shtml.exe
+ 2008-04-13 17:13 . 2008-04-13 17:13 20536 c:\windows\system32\dllcache\shtml.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 65024 c:\windows\system32\dllcache\shimeng.dll
+ 2004-08-19 13:39 . 2008-04-13 17:14 78336 c:\windows\system32\dllcache\sdbinst.exe
+ 2004-08-19 13:39 . 2008-04-13 17:13 64000 c:\windows\system32\dllcache\samlib.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 84992 c:\windows\system32\dllcache\olepro32.dll
+ 2010-08-07 19:44 . 2008-04-13 17:13 73728 c:\windows\system32\dllcache\oledb32r.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 20511 c:\windows\system32\dllcache\odtext32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 20510 c:\windows\system32\dllcache\odpdx32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 20510 c:\windows\system32\dllcache\odfox32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 20510 c:\windows\system32\dllcache\odexl32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 20511 c:\windows\system32\dllcache\oddbse32.dll
+ 2004-08-19 13:38 . 2008-04-13 17:12 57375 c:\windows\system32\dllcache\odbcji32.dll
+ 2004-08-19 13:38 . 2008-01-23 06:24 98304 c:\windows\system32\dllcache\odbcint.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 65536 c:\windows\system32\dllcache\odbccu32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 65536 c:\windows\system32\dllcache\odbccr32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:14 69632 c:\windows\system32\dllcache\odbcconf.exe
+ 2004-08-19 13:39 . 2008-04-13 17:14 32768 c:\windows\system32\dllcache\odbcad32.exe
+ 2004-08-19 13:39 . 2008-04-13 17:13 16384 c:\windows\system32\dllcache\odbc32gt.dll
+ 2001-12-04 12:00 . 2008-04-13 17:13 68608 c:\windows\system32\dllcache\ocmanage.dll
+ 2001-12-04 12:00 . 2008-04-13 17:13 64000 c:\windows\system32\dllcache\nwapi32.dll
+ 2010-02-23 14:34 . 2008-04-13 18:13 10240 c:\windows\system32\dllcache\npwmsdrm.dll
- 2010-08-07 15:01 . 2008-04-13 17:13 10240 c:\windows\system32\dllcache\npwmsdrm.dll
+ 2004-08-03 21:14 . 2008-04-13 10:20 91520 c:\windows\system32\dllcache\ndiswan.sys
+ 2010-08-07 19:46 . 2008-04-13 17:13 24576 c:\windows\system32\dllcache\msxactps.dll
+ 2004-08-03 20:58 . 2008-04-13 09:30 61440 c:\windows\system32\dllcache\msvcrt40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:49 60192 c:\windows\system32\dllcache\msjter40.dll
+ 2010-08-07 19:57 . 2008-04-13 17:13 36864 c:\windows\system32\dllcache\msdfmap.dll
+ 2010-08-07 19:58 . 2008-04-13 17:13 20480 c:\windows\system32\dllcache\msdatt.dll
+ 2010-08-07 19:57 . 2008-01-23 06:24 16384 c:\windows\system32\dllcache\msdasqlr.dll
+ 2010-08-07 19:45 . 2008-01-23 06:24 16384 c:\windows\system32\dllcache\msdaremr.dll
+ 2010-08-07 19:45 . 2008-01-23 06:24 16384 c:\windows\system32\dllcache\msdaprsr.dll
+ 2010-08-07 19:44 . 2008-04-13 17:13 77824 c:\windows\system32\dllcache\msdaosp.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 36864 c:\windows\system32\dllcache\mscpxl32.dll
+ 2010-08-07 19:53 . 2008-04-13 17:13 57344 c:\windows\system32\dllcache\msadrh15.dll
+ 2010-08-07 19:52 . 2008-04-13 17:13 57344 c:\windows\system32\dllcache\msador15.dll
+ 2010-08-07 19:53 . 2008-01-23 06:24 28672 c:\windows\system32\dllcache\msader15.dll
+ 2010-08-07 19:43 . 2008-01-23 06:24 24576 c:\windows\system32\dllcache\msaddsr.dll
+ 2010-08-07 19:45 . 2008-04-13 17:13 53248 c:\windows\system32\dllcache\msadcs.dll
+ 2010-08-07 19:43 . 2008-01-23 06:24 16384 c:\windows\system32\dllcache\msadcor.dll
+ 2010-08-07 19:57 . 2008-01-23 06:24 16384 c:\windows\system32\dllcache\msadcfr.dll
+ 2010-08-07 19:44 . 2008-04-13 17:13 61440 c:\windows\system32\dllcache\msadcf.dll
+ 2010-08-07 19:51 . 2008-01-23 06:24 20480 c:\windows\system32\dllcache\msadcer.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 22528 c:\windows\system32\dllcache\mfcsubs.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 15872 c:\windows\system32\dllcache\jsproxy.dll
+ 2010-08-07 19:58 . 2008-04-13 17:13 68608 c:\windows\system32\dllcache\isatq.dll
+ 2004-08-03 21:14 . 2008-04-13 10:19 75264 c:\windows\system32\dllcache\ipsec.sys
+ 2010-08-07 19:58 . 2008-04-13 17:13 13312 c:\windows\system32\dllcache\infoadmn.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 36921 c:\windows\system32\dllcache\imeshare.dll
+ 2010-08-07 19:58 . 2008-04-13 17:14 31232 c:\windows\system32\dllcache\iisrstas.exe
+ 2010-08-07 19:58 . 2008-04-13 17:13 65024 c:\windows\system32\dllcache\iismap.dll
+ 2010-08-07 19:59 . 2008-04-13 17:13 68608 c:\windows\system32\dllcache\iisext51.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 20538 c:\windows\system32\dllcache\fpremadm.exe
+ 2008-04-13 17:13 . 2008-04-13 17:13 20541 c:\windows\system32\dllcache\fpexedll.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 15120 c:\windows\system32\dllcache\fp98sadm.exe
+ 2008-04-13 17:13 . 2008-04-13 17:13 49212 c:\windows\system32\dllcache\fp4awebs.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 32826 c:\windows\system32\dllcache\fp4avss.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 41020 c:\windows\system32\dllcache\fp4avnb.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 49210 c:\windows\system32\dllcache\fp4areg.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 82035 c:\windows\system32\dllcache\fp4anscp.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 16384 c:\windows\system32\dllcache\ds32gt.dll
+ 2001-12-04 12:00 . 2008-04-13 17:13 32768 c:\windows\system32\dllcache\dispex.dll
+ 2010-08-07 20:00 . 2008-04-13 17:13 39936 c:\windows\system32\dllcache\dimsroam.dll
+ 2010-08-07 20:00 . 2008-04-13 17:13 19456 c:\windows\system32\dllcache\dimsntfy.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 62464 c:\windows\system32\dllcache\cryptsvc.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 64512 c:\windows\system32\dllcache\cryptnet.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 54272 c:\windows\system32\dllcache\cryptext.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 33280 c:\windows\system32\dllcache\cryptdll.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 75264 c:\windows\system32\dllcache\cryptdlg.dll
+ 2010-08-07 19:58 . 2008-04-13 17:13 47104 c:\windows\system32\dllcache\coadmin.dll
+ 2004-08-19 13:37 . 2008-04-13 17:11 16896 c:\windows\system32\dllcache\cfgmgr32.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 16439 c:\windows\system32\dllcache\author.exe
+ 2008-04-13 17:13 . 2008-04-13 17:13 20540 c:\windows\system32\dllcache\author.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 30208 c:\windows\system32\dllcache\atmlib.dll
- 2010-03-05 14:38 . 2010-03-05 14:38 65536 c:\windows\system32\dllcache\asycfilt.dll
+ 2004-08-19 13:39 . 2010-03-05 14:38 65536 c:\windows\system32\dllcache\asycfilt.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 70656 c:\windows\system32\dllcache\amstream.dll
+ 2004-08-19 15:22 . 2008-04-13 16:48 41728 c:\windows\system32\dllcache\amdk7.sys
+ 2004-08-19 15:22 . 2008-04-13 16:48 41344 c:\windows\system32\dllcache\amdk6.sys
+ 2004-08-03 23:07 . 2008-04-13 09:36 43008 c:\windows\system32\dllcache\amdagp.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 17408 c:\windows\system32\dllcache\alrsvc.dll
+ 2004-08-03 23:07 . 2008-04-13 09:36 42752 c:\windows\system32\dllcache\alim1541.sys
+ 2004-08-19 13:39 . 2008-04-13 17:14 44544 c:\windows\system32\dllcache\alg.exe
+ 2004-08-19 13:39 . 2008-04-13 17:14 98304 c:\windows\system32\dllcache\ahui.exe
+ 2004-08-19 13:39 . 2008-04-13 17:13 24064 c:\windows\system32\dllcache\agtintl.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 20480 c:\windows\system32\dllcache\agt0c0a.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 20992 c:\windows\system32\dllcache\agt0816.dll
+ 2010-08-07 19:54 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0804.dll
+ 2010-08-07 16:55 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt041f.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt041d.dll
+ 2010-08-07 16:55 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0419.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 20480 c:\windows\system32\dllcache\agt0416.dll
+ 2010-08-07 16:55 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0415.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0414.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 20992 c:\windows\system32\dllcache\agt0413.dll
+ 2010-08-07 19:50 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0412.dll
+ 2010-08-07 19:57 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0411.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 20992 c:\windows\system32\dllcache\agt0410.dll
+ 2010-08-07 16:55 . 2007-04-02 09:26 19968 c:\windows\system32\dllcache\agt040e.dll
+ 2010-08-07 19:49 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt040d.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 21504 c:\windows\system32\dllcache\agt040c.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt040b.dll
+ 2001-12-04 12:00 . 2008-04-13 08:32 19968 c:\windows\system32\dllcache\agt0409.dll
+ 2010-08-07 16:55 . 2007-04-02 09:26 22016 c:\windows\system32\dllcache\agt0408.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 21504 c:\windows\system32\dllcache\agt0407.dll
+ 2001-12-04 12:00 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0406.dll
+ 2010-08-07 16:55 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0405.dll
+ 2010-08-07 19:57 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0404.dll
+ 2010-08-07 19:51 . 2007-04-02 09:26 19456 c:\windows\system32\dllcache\agt0401.dll
+ 2004-08-03 23:07 . 2008-04-13 09:36 44928 c:\windows\system32\dllcache\agpcpq.sys
+ 2004-08-03 23:07 . 2008-04-13 09:36 42368 c:\windows\system32\dllcache\agp440.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 44032 c:\windows\system32\dllcache\agentsr.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 24064 c:\windows\system32\dllcache\agentpsh.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 49152 c:\windows\system32\dllcache\agentmpx.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 57344 c:\windows\system32\dllcache\agentdpv.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 42496 c:\windows\system32\dllcache\agentdp2.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 24064 c:\windows\system32\dllcache\agentanm.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 68096 c:\windows\system32\dllcache\adsmsext.dll
+ 2011-11-24 23:57 . 2001-08-17 19:11 46112 c:\windows\system32\dllcache\adptsf50.sys
+ 2010-08-07 19:58 . 2008-04-13 17:13 43520 c:\windows\system32\dllcache\admwprox.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 61440 c:\windows\system32\dllcache\admparse.dll
+ 2011-11-24 23:57 . 2008-04-13 08:36 10880 c:\windows\system32\dllcache\admjoy.sys
+ 2008-04-13 17:14 . 2008-04-13 17:14 16439 c:\windows\system32\dllcache\admin.exe
+ 2008-04-13 17:13 . 2008-04-13 17:13 20540 c:\windows\system32\dllcache\admin.dll
+ 2010-08-07 19:58 . 2008-04-13 17:13 29696 c:\windows\system32\dllcache\admexs.dll
+ 2011-11-24 23:57 . 2001-08-17 19:11 20160 c:\windows\system32\dllcache\adm8511.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 98304 c:\windows\system32\dllcache\actxprxy.dll
+ 2001-12-04 12:00 . 2001-12-04 12:00 12160 c:\windows\system32\dllcache\acpiec.sys
+ 2011-11-24 23:57 . 2001-08-30 22:07 61952 c:\windows\system32\dllcache\acerscad.dll
+ 2010-08-07 16:56 . 2004-08-03 20:32 84480 c:\windows\system32\dllcache\ac97via.sys
+ 2011-11-24 23:57 . 2001-08-17 19:20 96256 c:\windows\system32\dllcache\ac97intc.sys
+ 2011-11-24 23:57 . 2001-08-17 20:52 23552 c:\windows\system32\dllcache\abp480n5.sys
+ 2011-11-24 23:57 . 2001-08-30 22:07 98304 c:\windows\system32\dllcache\a3d.dll
+ 2011-11-24 23:57 . 2001-08-30 22:07 38400 c:\windows\system32\dllcache\8514a.dll
+ 2011-11-24 23:57 . 2008-04-13 10:46 48128 c:\windows\system32\dllcache\61883.sys
+ 2011-11-24 23:57 . 2008-04-13 10:40 12288 c:\windows\system32\dllcache\4mmdat.sys
+ 2011-11-24 23:57 . 2001-08-17 21:06 11264 c:\windows\system32\dllcache\1394vdbg.sys
+ 2011-11-24 23:57 . 2008-04-13 10:46 53376 c:\windows\system32\dllcache\1394bus.sys
+ 2010-08-07 19:58 . 2008-04-13 17:13 8192 c:\windows\system32\dllcache\staxmem.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 5120 c:\windows\system32\dllcache\sfc.dll
+ 2010-08-07 19:42 . 2008-04-13 17:13 4096 c:\windows\system32\dllcache\msdaurl.dll
+ 2010-08-07 19:52 . 2008-04-13 17:13 4096 c:\windows\system32\dllcache\msdasc.dll
+ 2010-08-07 19:44 . 2008-04-13 17:13 4096 c:\windows\system32\dllcache\msdaer.dll
+ 2010-08-07 19:48 . 2008-04-13 17:13 4096 c:\windows\system32\dllcache\msdaenum.dll
+ 2010-08-07 19:53 . 2008-04-13 17:13 4096 c:\windows\system32\dllcache\msdadc.dll
+ 2010-02-23 14:34 . 2008-04-13 18:14 4639 c:\windows\system32\dllcache\mplayer2.exe
- 2010-08-07 15:01 . 2008-04-13 17:14 4639 c:\windows\system32\dllcache\mplayer2.exe
+ 2010-08-07 20:00 . 2008-04-13 17:12 6144 c:\windows\system32\dllcache\kbdpash.dll
+ 2010-08-07 20:00 . 2008-04-13 17:12 6144 c:\windows\system32\dllcache\kbdnepr.dll
+ 2010-08-07 20:00 . 2008-04-13 17:12 6144 c:\windows\system32\dllcache\kbdiultn.dll
+ 2010-08-07 20:00 . 2008-04-13 17:12 6144 c:\windows\system32\dllcache\kbdbhc.dll
+ 2010-08-07 20:00 . 2008-04-13 17:13 7168 c:\windows\system32\dllcache\bitsprx4.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 3775 c:\windows\system32\dllcache\adv11nt5.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 3711 c:\windows\system32\dllcache\adv09nt5.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 3135 c:\windows\system32\dllcache\adv08nt5.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 3647 c:\windows\system32\dllcache\adv07nt5.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 3615 c:\windows\system32\dllcache\adv05nt5.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 3967 c:\windows\system32\dllcache\adv02nt5.dll
+ 2010-08-07 15:32 . 2008-04-13 17:13 4255 c:\windows\system32\dllcache\adv01nt5.dll
+ 2011-11-24 23:57 . 2001-08-17 20:53 7424 c:\windows\system32\dllcache\adicvls.sys
+ 2004-08-19 13:39 . 2008-04-13 17:14 4096 c:\windows\system32\dllcache\actmovie.exe
+ 2004-08-19 13:39 . 2009-12-24 06:59 177664 c:\windows\system32\dllcache\wintrust.dll
- 2009-12-24 06:59 . 2009-12-24 06:59 177664 c:\windows\system32\dllcache\wintrust.dll
+ 2004-08-19 13:39 . 2008-04-13 17:14 510464 c:\windows\system32\dllcache\winlogon.exe
+ 2004-08-19 13:39 . 2008-04-13 17:13 668672 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-19 13:39 . 2010-03-10 06:15 420352 c:\windows\system32\dllcache\vbscript.dll
- 2010-12-16 22:30 . 2010-03-10 06:15 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 620544 c:\windows\system32\dllcache\urlmon.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 124928 c:\windows\system32\dllcache\umpnpmgr.dll
+ 2004-08-19 13:39 . 2008-04-13 17:14 107008 c:\windows\system32\dllcache\sysocmgr.exe
+ 2010-08-07 20:01 . 2008-04-13 17:13 189952 c:\windows\system32\dllcache\smtpadm.dll
+ 2004-08-19 13:39 . 2008-05-09 10:53 172032 c:\windows\system32\dllcache\scrrun.dll
- 2008-05-09 10:53 . 2008-05-09 10:53 172032 c:\windows\system32\dllcache\scrrun.dll
+ 2004-08-19 13:39 . 2008-05-09 10:53 180224 c:\windows\system32\dllcache\scrobj.dll
- 2008-05-09 10:53 . 2008-05-09 10:53 180224 c:\windows\system32\dllcache\scrobj.dll
+ 2004-08-19 13:39 . 2010-06-30 12:31 149504 c:\windows\system32\dllcache\schannel.dll
- 2009-06-25 08:25 . 2010-06-30 12:31 149504 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 429568 c:\windows\system32\dllcache\samsrv.dll
+ 2004-08-03 20:31 . 2008-04-13 08:37 208384 c:\windows\system32\dllcache\rsaenh.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 433664 c:\windows\system32\dllcache\riched20.dll
+ 2010-08-07 19:56 . 2008-04-13 17:13 487424 c:\windows\system32\dllcache\oledb32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 551936 c:\windows\system32\dllcache\oleaut32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 147456 c:\windows\system32\dllcache\odbctrac.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 278559 c:\windows\system32\dllcache\odbcjt32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 106496 c:\windows\system32\dllcache\odbccp32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 135168 c:\windows\system32\dllcache\odbcconf.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 249856 c:\windows\system32\dllcache\odbc32.dll
+ 2004-08-03 21:15 . 2008-04-13 10:15 574976 c:\windows\system32\dllcache\ntfs.sys
- 2010-08-07 18:54 . 2009-02-09 10:51 736256 c:\windows\system32\dllcache\ntdll.dll
+ 2004-08-19 13:38 . 2009-02-09 10:51 736256 c:\windows\system32\dllcache\ntdll.dll
- 2010-08-07 15:01 . 2008-04-13 17:13 364544 c:\windows\system32\dllcache\npdsplay.dll
+ 2010-02-23 14:34 . 2008-04-13 18:13 364544 c:\windows\system32\dllcache\npdsplay.dll
+ 2004-08-19 13:39 . 2008-10-15 16:36 337408 c:\windows\system32\dllcache\netapi32.dll
- 2010-08-07 18:52 . 2008-10-15 16:36 337408 c:\windows\system32\dllcache\netapi32.dll
+ 2004-08-19 13:39 . 2007-04-02 03:52 355104 c:\windows\system32\dllcache\msxbde40.dll
+ 2004-08-19 13:39 . 2008-01-23 06:24 621344 c:\windows\system32\dllcache\mswstr10.dll
+ 2004-08-19 13:39 . 2007-04-02 03:51 838432 c:\windows\system32\dllcache\mswdat10.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 343040 c:\windows\system32\dllcache\msvcrt.dll
+ 2004-08-19 13:39 . 2007-04-02 03:51 264992 c:\windows\system32\dllcache\mstext40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:51 559904 c:\windows\system32\dllcache\msrepl40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:50 322336 c:\windows\system32\dllcache\msrd3x40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:50 432928 c:\windows\system32\dllcache\msrd2x40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:50 355104 c:\windows\system32\dllcache\mspbde40.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 143360 c:\windows\system32\dllcache\msorcl32.dll
+ 2004-08-19 13:39 . 2007-04-02 03:49 219936 c:\windows\system32\dllcache\msltus40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:49 248608 c:\windows\system32\dllcache\msjtes40.dll
+ 2010-08-07 19:43 . 2008-04-13 17:13 102400 c:\windows\system32\dllcache\msjro.dll
+ 2004-08-19 13:39 . 2008-01-23 06:24 183072 c:\windows\system32\dllcache\msjint40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:48 326432 c:\windows\system32\dllcache\msexcl40.dll
+ 2004-08-19 13:39 . 2007-04-02 03:47 518944 c:\windows\system32\dllcache\msexch40.dll
+ 2010-08-07 19:44 . 2008-04-13 17:13 315392 c:\windows\system32\dllcache\msdasql.dll
+ 2010-08-07 19:56 . 2008-04-13 17:13 118784 c:\windows\system32\dllcache\msdarem.dll
+ 2010-08-07 19:53 . 2008-04-13 17:13 204800 c:\windows\system32\dllcache\msdaps.dll
+ 2010-08-07 19:44 . 2008-04-13 17:13 200704 c:\windows\system32\dllcache\msdaprst.dll
+ 2010-08-07 19:53 . 2008-04-13 17:13 233472 c:\windows\system32\dllcache\msdaora.dll
+ 2010-08-07 19:43 . 2008-04-13 17:13 200704 c:\windows\system32\dllcache\msadox.dll
+ 2010-08-07 19:42 . 2008-04-13 17:13 180224 c:\windows\system32\dllcache\msadomd.dll
+ 2010-08-07 19:48 . 2008-04-13 17:13 536576 c:\windows\system32\dllcache\msado15.dll
+ 2010-08-07 19:53 . 2008-04-13 17:13 155648 c:\windows\system32\dllcache\msadds.dll
+ 2010-08-07 19:47 . 2008-04-13 17:13 143360 c:\windows\system32\dllcache\msadco.dll
+ 2010-08-07 19:53 . 2008-04-13 17:13 331776 c:\windows\system32\dllcache\msadce.dll
- 2010-09-18 11:23 . 2010-09-18 11:23 974848 c:\windows\system32\dllcache\mfc42u.dll
+ 2004-08-19 13:39 . 2010-09-18 11:23 974848 c:\windows\system32\dllcache\mfc42u.dll
- 2010-12-16 22:39 . 2010-09-18 06:53 974848 c:\windows\system32\dllcache\mfc42.dll
+ 2004-08-19 13:39 . 2010-09-18 06:53 974848 c:\windows\system32\dllcache\mfc42.dll
+ 2001-12-04 12:00 . 2010-09-18 06:53 953856 c:\windows\system32\dllcache\mfc40u.dll
- 2010-12-16 22:39 . 2010-09-18 06:53 953856 c:\windows\system32\dllcache\mfc40u.dll
+ 2004-08-19 13:39 . 2009-06-25 08:25 735744 c:\windows\system32\dllcache\lsasrv.dll
- 2009-06-25 08:25 . 2009-06-25 08:25 735744 c:\windows\system32\dllcache\lsasrv.dll
- 2010-12-16 22:17 . 2009-08-13 15:15 512000 c:\windows\system32\dllcache\jscript.dll
+ 2004-08-19 13:39 . 2009-08-13 15:15 512000 c:\windows\system32\dllcache\jscript.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 138240 c:\windows\system32\dllcache\itss.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 155136 c:\windows\system32\dllcache\itircl.dll
+ 2010-08-07 20:00 . 2008-04-13 17:13 839168 c:\windows\system32\dllcache\inetmgr.dll
+ 2010-08-07 19:58 . 2008-04-13 17:13 133632 c:\windows\system32\dllcache\iisrtl.dll
+ 2010-08-07 17:04 . 2008-03-28 07:09 217088 c:\windows\system32\dllcache\fpmmcsat.dll
- 2010-08-07 17:04 . 2003-04-14 19:04 217088 c:\windows\system32\dllcache\fpmmcsat.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 598071 c:\windows\system32\dllcache\fpmmc.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 188494 c:\windows\system32\dllcache\fpcount.exe
+ 2008-04-13 17:14 . 2008-04-13 17:14 109840 c:\windows\system32\dllcache\fp98swin.exe
+ 2008-04-13 17:13 . 2008-04-13 17:13 876653 c:\windows\system32\dllcache\fp4awel.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 102509 c:\windows\system32\dllcache\fp4atxt.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 147513 c:\windows\system32\dllcache\fp4apws.dll
+ 2008-04-13 17:13 . 2008-04-13 17:13 184435 c:\windows\system32\dllcache\fp4amsft.dll
+ 2004-08-03 21:14 . 2008-04-13 10:14 143744 c:\windows\system32\dllcache\fastfat.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 380445 c:\windows\system32\dllcache\expsrv.dll
+ 2004-08-03 20:31 . 2008-04-13 08:37 138752 c:\windows\system32\dllcache\dssenh.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 523776 c:\windows\system32\dllcache\cryptui.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 603136 c:\windows\system32\dllcache\crypt32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 253440 c:\windows\system32\dllcache\compatui.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 281088 c:\windows\system32\dllcache\comdlg32.dll
+ 2004-08-19 13:39 . 2010-08-23 16:12 617472 c:\windows\system32\dllcache\comctl32.dll
- 2010-12-16 22:39 . 2010-08-23 16:12 617472 c:\windows\system32\dllcache\comctl32.dll
+ 2008-04-13 17:14 . 2008-04-13 17:14 188480 c:\windows\system32\dllcache\cfgwiz.exe
+ 2010-08-07 20:00 . 2008-04-13 17:13 233472 c:\windows\system32\dllcache\azroles.dll
+ 2010-08-07 19:42 . 2008-04-13 17:13 333824 c:\windows\system32\dllcache\aqueue.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 300544 c:\windows\system32\dllcache\appmgr.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 175104 c:\windows\system32\dllcache\appmgmts.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 125952 c:\windows\system32\dllcache\apphelp.dll
+ 2010-08-07 19:59 . 2008-04-13 17:13 109568 c:\windows\system32\dllcache\appconf.dll
+ 2004-08-19 13:39 . 2008-04-13 17:14 256512 c:\windows\system32\dllcache\agentsvr.exe
+ 2004-08-19 13:39 . 2008-04-13 17:13 214016 c:\windows\system32\dllcache\agentctl.dll
+ 2004-08-03 21:14 . 2008-08-14 10:04 138496 c:\windows\system32\dllcache\afd.sys
- 2008-06-20 11:40 . 2008-08-14 10:04 138496 c:\windows\system32\dllcache\afd.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 101888 c:\windows\system32\dllcache\advpack.dll
+ 2004-08-19 13:39 . 2009-02-09 10:51 683520 c:\windows\system32\dllcache\advapi32.dll
- 2010-08-07 18:54 . 2009-02-09 10:51 683520 c:\windows\system32\dllcache\advapi32.dll
+ 2001-12-04 12:00 . 2008-04-13 17:13 123392 c:\windows\system32\dllcache\adsnw.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 263680 c:\windows\system32\dllcache\adsnt.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 143360 c:\windows\system32\dllcache\adsldpc.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 175616 c:\windows\system32\dllcache\adsldp.dll
+ 2010-08-07 20:00 . 2008-04-13 17:13 290816 c:\windows\system32\dllcache\adsiis51.dll
+ 2011-11-24 23:57 . 2001-08-17 21:07 101888 c:\windows\system32\dllcache\adpu160m.sys
+ 2011-11-24 23:57 . 2001-08-17 19:19 747392 c:\windows\system32\dllcache\adm8830.sys
+ 2011-11-24 23:57 . 2001-08-17 19:19 553984 c:\windows\system32\dllcache\adm8820.sys
+ 2011-11-24 23:57 . 2001-08-17 19:19 584448 c:\windows\system32\dllcache\adm8810.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 116224 c:\windows\system32\dllcache\acxtrnal.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 193536 c:\windows\system32\dllcache\activeds.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 245248 c:\windows\system32\dllcache\acspecfc.dll
+ 2004-08-19 13:21 . 2008-04-13 16:47 188416 c:\windows\system32\dllcache\acpi.sys
+ 2004-08-19 13:39 . 2008-04-13 17:13 120832 c:\windows\system32\dllcache\aclui.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 141312 c:\windows\system32\dllcache\aclua.dll
- 2010-08-07 18:55 . 2009-11-21 15:54 471552 c:\windows\system32\dllcache\aclayers.dll
+ 2004-08-19 13:39 . 2009-11-21 15:54 471552 c:\windows\system32\dllcache\aclayers.dll
+ 2010-08-07 15:00 . 2008-04-13 17:14 189952 c:\windows\system32\dllcache\accwiz.exe
+ 2011-11-24 23:57 . 2001-08-17 19:20 297728 c:\windows\system32\dllcache\ac97sis.sys
+ 2011-11-24 23:57 . 2008-04-13 08:36 231552 c:\windows\system32\dllcache\ac97ali.sys
+ 2010-08-07 20:00 . 2008-04-13 17:13 136192 c:\windows\system32\dllcache\aaclient.dll
+ 2011-11-24 23:57 . 2001-08-30 22:07 462848 c:\windows\system32\dllcache\a3dapi.dll
+ 2004-08-19 13:39 . 2010-02-12 04:33 100864 c:\windows\system32\dllcache\6to4svc.dll
- 2010-02-12 04:33 . 2010-02-12 04:33 100864 c:\windows\system32\dllcache\6to4svc.dll
+ 2011-11-24 23:57 . 2001-08-17 19:48 148352 c:\windows\system32\dllcache\3dfxvsm.sys
+ 2011-11-24 23:57 . 2001-08-30 22:07 689216 c:\windows\system32\dllcache\3dfxvs.dll
+ 2011-11-24 23:57 . 2001-08-17 20:28 762780 c:\windows\system32\dllcache\3cwmcru.sys
+ 2010-08-07 20:00 . 2008-04-13 17:13 2134528 c:\windows\system32\dllcache\smtpsnap.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 1571840 c:\windows\system32\dllcache\sfcfiles.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 1001472 c:\windows\system32\dllcache\setupapi.dll
- 2010-07-16 12:05 . 2010-07-16 12:05 1287680 c:\windows\system32\dllcache\ole32.dll
+ 2004-08-19 13:39 . 2010-07-16 12:05 1287680 c:\windows\system32\dllcache\ole32.dll
- 2010-12-16 22:33 . 2010-04-28 18:11 2193664 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2004-08-19 13:34 . 2010-04-28 18:11 2193664 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2004-08-19 13:39 . 2007-10-22 00:30 1516568 c:\windows\system32\dllcache\msjet40.dll
- 2009-03-21 14:06 . 2009-03-21 14:06 1033728 c:\windows\system32\dllcache\kernel32.dll
+ 2004-08-19 13:39 . 2009-03-21 14:06 1033728 c:\windows\system32\dllcache\kernel32.dll
+ 2004-08-19 13:39 . 2008-04-13 17:13 1852928 c:\windows\system32\dllcache\acgenral.dll
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Lightscreen"="d:\programmi\Lightscreen\lightscreen.exe" [2010-03-17 563200]
"AlcoholAutomount"="d:\programmi\Alcohol Soft\Alcohol 120\axcmd.exe" [2009-04-24 203928]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"nwiz"="nwiz.exe" [2006-11-17 1622016]
"UnlockerAssistant"="d:\programmi\Unlocker\UnlockerAssistant.exe" [2010-03-09 15872]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-11-17 7700480]
"LogMeIn Hamachi Ui"="d:\programmi\LogMeIn Hamachi\hamachi-2-ui.exe" [2011-08-15 1955208]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Avvio^Programmi^Esecuzione automatica^DynDNS Updater Tray Icon.lnk]
path=c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\DynDNS Updater Tray Icon.lnk
backup=c:\windows\pss\DynDNS Updater Tray Icon.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2011-03-30 04:59 937920 ----a-r- d:\programmi\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-09-07 22:58 37296 ----a-w- d:\programmi\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update]
2011-09-07 16:58 137536 ----atw- c:\documents and settings\Nicola\Impostazioni locali\Dati applicazioni\Facebook\Update\FacebookUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\H2O]
2007-12-11 02:59 307200 ----a-w- d:\programmi\Syncrosoft\POS\H2O\cledx.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
2005-02-16 14:15 221184 ----a-w- d:\progra~1\INSTAL~2\UPDATE~1\ISUSPM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
2006-05-16 08:58 86960 ----a-w- d:\programmi\InstallShield\UpdateService\issch.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
2011-08-15 14:18 1955208 ----a-w- d:\programmi\LogMeIn Hamachi\hamachi-2-ui.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
2011-08-31 16:00 449608 ----a-w- d:\programmi\Malwarebytes' Anti-Malware\mbamgui.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2006-11-17 15:29 7700480 ------w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2006-11-17 15:29 86016 ------w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando Media Booster]
2011-09-21 22:15 3077528 ----a-w- d:\programmi\Pando Networks\Media Booster\PMB.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlusService]
2011-09-20 10:39 801792 ----a-w- d:\programmi\Yuna Software\Messenger Plus!\PlusService.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2011-07-05 16:36 421888 ----a-w- d:\programmi\QuickTime\QTTask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSBkgdUpdate]
2006-10-25 07:03 210472 ----a-w- d:\programmi\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"StarWindServiceAE"=2 (0x2)
"ServiceLayer"=3 (0x3)
"ose"=3 (0x3)
"odserv"=3 (0x3)
"Microsoft Office Groove Audit Service"=3 (0x3)
"JavaQuickStarterService"=2 (0x2)
"idsvc"=3 (0x3)
"FirebirdServerDefaultInstance"=3 (0x3)
"FirebirdGuardianDefaultInstance"=2 (0x2)
"rpcapd"=3 (0x3)
"NMap"=3 (0x3)
"Hamachi2Svc"=2 (0x2)
"FLEXnet Licensing Service"=3 (0x3)
"FileZilla Server"=3 (0x3)
"BlueSoleil Hid Service"=3 (0x3)
"gupdate"=2 (0x2)
"TunngleService"=3 (0x3)
"PnkBstrA"=3 (0x3)
"pgsql-8.0"=3 (0x3)
"NIHardwareService"=2 (0x2)
"IDriverT"=3 (0x3)
"ICQ Service"=2 (0x2)
"MBAMService"=2 (0x2)
"DynDNS Updater"=2 (0x2)
"Bonjour Service"=2 (0x2)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"d:\\Programmi\\Opera\\opera.exe"=
"d:\\Programmi\\Windows Live\\Messenger\\wlcsdk.exe"=
"d:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\Programmi\\Xfire\\Xfire.exe"=
"d:\\Programmi\\Orbitdownloader\\orbitnet.exe"=
"d:\\Programmi\\Orbitdownloader\\orbitdm.exe"=
"d:\\GIOCHI\\Call of Duty\\CoDMP.exe"=
"d:\\Programmi\\LogMeIn Hamachi\\hamachi-2-ui.exe"=
"d:\\Programmi\\Sitecom\\IVT BlueSoleil\\BlueSoleil.exe"=
"c:\\WINDOWS\\pchealth\\helpctr\\binaries\\helpctr.exe"=
"d:\\Programmi\\Bonjour\\mDNSResponder.exe"=
"d:\\Programmi\\Steam\\Steam.exe"=
"d:\\Programmi\\Tunngle\\TnglCtrl.exe"=
"d:\\Programmi\\Tunngle\\Tunngle.exe"=
"d:\\Programmi\\uTorrent\\uTorrent.exe"=
"d:\\GIOCHI\\Football Manager 2011\\fm.exe"=
"c:\\Documents and Settings\\Nicola\\Impostazioni locali\\Dati applicazioni\\Google\\Google Talk Plugin\\googletalkplugin.exe"=
"d:\\Programmi\\Google\\Google Talk\\googletalk.exe"=
"d:\\GIOCHI\\Zoo Tycoon 2\\zt.exe"=
"d:\\Programmi\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"d:\\Programmi\\Steam\\steamapps\\common\\simcity 4 deluxe\\Apps\\SimCity 4.exe"=
"d:\\Programmi\\Steam\\steamapps\\common\\simcity 4 deluxe\\Support\\EA Help\\Electronic_Arts_Technical_Support.htm"=
"d:\\Programmi\\Steam\\steamapps\\common\\red orchestra\\System\\RedOrchestra.exe"=
"d:\\Programmi\\Pando Networks\\Media Booster\\PMB.exe"=
"d:\\Programmi\\Pinnacle\\VideoSpin\\Programs\\RM.exe"=
"d:\\Programmi\\Pinnacle\\VideoSpin\\Programs\\umi.exe"=
"d:\\Programmi\\Pinnacle\\VideoSpin\\Programs\\VideoSpin.exe"=
"d:\\Programmi\\Skype\\Phone\\Skype.exe"=
"d:\\Programmi\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"d:\\Programmi\\Microsoft Office\\Office12\\GROOVE.EXE"=
"d:\\Programmi\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Documents and Settings\\Nicola\\Impostazioni locali\\Dati applicazioni\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"28960:TCP"= 28960:TCP:CODMPTCP
"28960:UDP"= 28960:UDP:CODMPUDP
"7777:TCP"= 7777:TCP:samp
"7777:UDP"= 7777:UDP:samp udp
"57942:TCP"= 57942:TCP:Pando Media Booster
"57942:UDP"= 57942:UDP:Pando Media Booster
.
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [07/08/2010 20.22.03 721904]
R3 CCCP106;TRUST 120
SPACEC@M;c:\windows\system32\drivers\cccp106.sys [18/08/2010 0.01.12 227200]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [26/07/2011 17.16.56 33792]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [29/01/2011 0.32.58 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18/03/2010 13.16.28 130384]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [27/09/2010 15.43.47 22216]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [28/04/2011 18.28.05 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [28/04/2011 18.28.06 8576]
S3 PORTMON;PORTMON;\??\d:\programmi\Sys Internals Suite\PORTMSYS.SYS --> d:\programmi\Sys Internals Suite\PORTMSYS.SYS [?]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18/03/2010 13.16.28 753504]
S4 DynDNS Updater;DynDNS Updater;d:\programmi\DynDNS Updater\DynUpSvc.exe [15/04/2011 20.14.18 93048]
S4 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance;d:\programmi\Firebird\Firebird_1_5\bin\fbguard.exe -s --> d:\programmi\Firebird\Firebird_1_5\bin\fbguard.exe -s [?]
S4 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance;d:\programmi\Firebird\Firebird_1_5\bin\fbserver.exe -s --> d:\programmi\Firebird\Firebird_1_5\bin\fbserver.exe -s [?]
S4 gupdate;Servizio di Google Update (gupdate);"d:\programmi\Google\Update\GoogleUpdate.exe" /svc --> d:\programmi\Google\Update\GoogleUpdate.exe [?]
S4 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;d:\programmi\LogMeIn Hamachi\hamachi-2.exe [15/08/2011 15.18.10 1361288]
S4 MBAMService;MBAMService;d:\programmi\Malwarebytes' Anti-Malware\mbamservice.exe [27/09/2010 15.43.59 366152]
S4 NIHardwareService;NIHardwareService;d:\programmi\Native Instruments\Hardware\NIHardwareService.exe [08/12/2009 19.26.15 3616768]
S4 TunngleService;TunngleService;d:\programmi\Tunngle\TnglCtrl.exe [29/01/2011 0.32.48 718072]
.
Contenuto della cartella 'Scheduled Tasks'
.
2011-11-19 c:\windows\Tasks\expressburnShakeIcon.job
- d:\programmi\NCH Software\ExpressBurn\expressburn.exe [2011-11-19 12:26]
.
2011-11-24 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1547161642-2139871995-1801674531-1003Core.job
- c:\documents and settings\Nicola\Impostazioni locali\Dati applicazioni\Facebook\Update\FacebookUpdate.exe [2011-09-07 16:58]
.
2011-11-25 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1547161642-2139871995-1801674531-1003UA.job
- c:\documents and settings\Nicola\Impostazioni locali\Dati applicazioni\Facebook\Update\FacebookUpdate.exe [2011-09-07 16:58]
.
2011-03-03 c:\windows\Tasks\mixpadShakeIcon.job
- d:\programmi\NCH Swift Sound\MixPad\mixpad.exe [2010-09-09 21:37]
.
2011-08-08 c:\windows\Tasks\switchShakeIcon.job
- d:\programmi\NCH Swift Sound\Switch\switch.exe [2011-07-07 12:41]
.
2011-06-13 c:\windows\Tasks\wavepadDowngrade.job
- d:\programmi\NCH Swift Sound\WavePad\wavepad.exe [2010-09-09 12:39]
.
2011-11-19 c:\windows\Tasks\wavepadShakeIcon.job
- d:\programmi\NCH Swift Sound\WavePad\wavepad.exe [2010-09-09 12:39]
.
.
------- Scansione supplementare -------
.
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = 127.0.0.1:8088
uInternet Settings,ProxyOverride = *.local
IE: &Download by Orbit - d:\programmi\Orbitdownloader\orbitmxt.dll/201
IE: &Grab video by Orbit - d:\programmi\Orbitdownloader\orbitmxt.dll/204
IE: Do&wnload selected by Orbit - d:\programmi\Orbitdownloader\orbitmxt.dll/203
IE: Down&load all by Orbit - d:\programmi\Orbitdownloader\orbitmxt.dll/202
IE: E&sporta in Microsoft Excel - d:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
FF - ProfilePath - c:\documents and settings\Nicola\Dati applicazioni\Mozilla\Firefox\Profiles\eas8fgnv.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.it
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.3.3&q=
.
- - - - CHIAVI ORFANE RIMOSSE - - - -
.
AddRemove-Free Registry Defrag_is1 - d:\programmi\Registry Clean Expert\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2011-11-25 17:35
Windows 5.1.2600 Service Pack 3 NTFS
.
scansione processi nascosti ...
.
scansione entrate autostart nascoste ...
.
Scansione files nascosti ...
.
Scansione completata con successo
Files nascosti: 0
.
**************************************************************************
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------
.
- - - - - - - > 'explorer.exe'(3364)
c:\windows\system32\msi.dll
c:\windows\system32\WPDShServiceObj.dll
d:\programmi\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
d:\programmi\Nokia\Nokia PC Suite 7\NGSCM.DLL
d:\programmi\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_ita.nlr
d:\programmi\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Altri processi in esecuzione ------------------------
.
c:\windows\System32\wudfhost.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Ora fine scansione: 2011-11-25 17:42:18 - Il pc è stato riavviato
ComboFix-quarantined-files.txt 2011-11-25 16:42
ComboFix2.txt 2011-11-23 18:54
.
Pre-Run: 4.746.014.720 byte disponibili
Post-Run: 4.723.179.520 byte disponibili
.
- - End Of File - - D84076EA77FBF852F5DBCCE887F172B1