Punto informatico Network
Login Esegui login | Non sei registrato? Iscriviti ora (è gratuito!)
Username: Password:
  • Annuncio Pubblicitario

worm bagle

Un virus si è intromesso nel tuo computer? Vuoi navigare in tutta sicurezza? Sono sicure le transazione online? Come impedire a malintenzionati di intromettersi nel tuo pc? Come proteggere i tuoi dati? Qui trovi le risposte a queste ed altre domande

worm bagle

Messaggioda rotebaron » gio ott 15, 2009 4:13 pm

Salve sono nuovo.
Chiedo scusa se apro una nuova discussione, su un argomento già trattato, ma non mi riesce di ritrovarlo.
Anche io ho il worm bagle. Ho seguito molti forum e consigli prima di approdare qui.
L'ultimo suggerimento letto nel vostro forum era di usare l' Avanger, ma nel mio caso, come quasi tutti gli altri programmi simili, è inibito dal partire. Delle decine di software usati, funzionano solo A-squared e Malawerebytes antimalawere.
Ma al riavvio ritorna tutto come prima.
Se qualcuno può darm idei suggerimenti. Grazie.
Avatar utente
rotebaron
Neo Iscritto
Neo Iscritto
 
Messaggi: 5
Iscritto il: gio ott 15, 2009 4:04 pm

Re: worm bagle

Messaggioda ste_95 » gio ott 15, 2009 4:35 pm

«A volte è meglio tacere e sembrare stupidi che aprir bocca e togliere ogni dubbio.» Oscar Wilde
Avatar utente
ste_95
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 17271
Iscritto il: lun ago 06, 2007 11:19 am

Re: worm bagle

Messaggioda rotebaron » gio ott 15, 2009 5:28 pm

Ti ringrazio per la veloce risposta.
Ho provato, in effetti è partito, uno dei pochi, ma è totalmente inefficace.
Sto warm è molto tosto. I primi due softwares che ho detto, lo rilevano, e cancellano anche dal registro, ma ricompare sempre.
Altri suggerimenti?

Grazie.
Avatar utente
rotebaron
Neo Iscritto
Neo Iscritto
 
Messaggi: 5
Iscritto il: gio ott 15, 2009 4:04 pm


Re: worm bagle

Messaggioda ste_95 » gio ott 15, 2009 7:30 pm

Posta il log di FindyKill e di ComboFix. [^]
«A volte è meglio tacere e sembrare stupidi che aprir bocca e togliere ogni dubbio.» Oscar Wilde
Avatar utente
ste_95
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 17271
Iscritto il: lun ago 06, 2007 11:19 am

Re: worm bagle

Messaggioda rotebaron » ven ott 16, 2009 1:35 pm

Ciao Ste.
Fortunatamente pare che abbia risolto. Ne ho passati talmente tanti di anti virus/malwere etc, che non sono sicuro quale sia servito in via definitiva,Potrebbe essere il findykill suggerito da te.
Comunque grazie per le risposte. Se a qualcun altro può servire, provate i programmi che ho scritto nel primo post ed il findykill.

Riporto i logs di seguito.
Grazie ancora.


ComboFix 09-10-15.01 - Maissel 15/10/2009 21.00.23.1.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.1023.639 [GMT 2:00]
Eseguito da: c:\documents and settings\Maissel\Documenti\ComboFix.exe
AV: AntiVir Desktop *On-access scanning disabled* (Outdated) {00000002-0002-0000-7C25-9E7C08000A00}
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Maissel\Dati applicazioni\inst.exe
c:\windows\Installer\57f15c.msp
c:\windows\Installer\6842e6.msi
c:\windows\Installer\fddd19.msp
c:\windows\system32\bccfdd2_s.dll

.
((((((((((((((((((((((((( Files Creati Da 2009-09-15 al 2009-10-15 )))))))))))))))))))))))))))))))))))
.

2009-10-15 18:10 . 2009-10-15 15:30 14848 -c--a-w- c:\windows\system32\dllcache\register.exe.REN
2009-10-15 16:49 . 2009-10-15 16:49 -------- d-----w- c:\programmi\Uniblue
2009-10-15 16:31 . 2009-10-15 18:11 -------- d-----w- C:\FindyKill
2009-10-15 00:14 . 2009-10-15 00:14 -------- d-----w- c:\documents and settings\Maissel\Dati applicazioni\Malwarebytes
2009-10-15 00:14 . 2009-09-10 12:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-10-15 00:13 . 2009-10-15 00:14 -------- d-----w- c:\programmi\Malwarebytes' Anti-Malware
2009-10-15 00:13 . 2009-10-15 00:13 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Malwarebytes
2009-10-15 00:13 . 2009-09-10 12:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-10-13 16:58 . 2009-10-13 16:58 -------- d-----w- C:\VundoFix Backups
2009-10-13 14:43 . 2009-10-15 18:00 -------- d-----w- c:\programmi\a-squared Free
2009-10-08 13:42 . 2009-10-08 13:42 -------- d-----w- c:\programmi\Jufsoft
2009-10-07 13:45 . 2009-10-14 16:18 -------- d-----w- c:\programmi\DiskInternals
2009-09-29 17:15 . 2009-09-29 17:15 -------- d-----w- c:\documents and settings\Maissel\Dati applicazioni\CDRoller
2009-09-29 17:15 . 2009-10-13 16:28 -------- d-----w- c:\programmi\CDRoller

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-15 18:46 . 2001-08-31 12:00 80182 ----a-w- c:\windows\system32\perfc010.dat
2009-10-15 18:46 . 2001-08-31 12:00 482120 ----a-w- c:\windows\system32\perfh010.dat
2009-10-15 16:49 . 2009-01-28 13:54 -------- d-----w- c:\documents and settings\Maissel\Dati applicazioni\Uniblue
2009-10-15 16:24 . 2009-08-29 20:21 -------- d-----w- c:\programmi\Smart Projects
2009-10-14 18:05 . 2009-09-11 18:02 -------- d-----w- c:\documents and settings\Maissel\Dati applicazioni\vlc
2009-09-25 14:10 . 2008-03-24 19:45 -------- d-----w- c:\documents and settings\Maissel\Dati applicazioni\Vso
2009-09-22 18:35 . 2008-10-24 14:17 -------- d-----w- c:\programmi\DivX
2009-09-22 18:35 . 2009-05-22 14:00 -------- d-----w- c:\programmi\File comuni\DivX Shared
2009-09-17 13:49 . 2007-04-13 21:36 60408 ----a-w- c:\documents and settings\Maissel\Impostazioni locali\Dati applicazioni\GDIPFONTCACHEV1.DAT
2009-09-12 13:11 . 2009-08-17 18:27 -------- d-----w- c:\programmi\Microsoft Silverlight
2009-09-12 13:10 . 2009-03-14 14:16 -------- d-----w- c:\programmi\SpeedFan
2009-09-11 14:17 . 2004-08-19 14:39 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-05 23:41 . 2009-09-05 23:41 -------- d-----w- c:\documents and settings\Maissel\Dati applicazioni\Blitware
2009-09-05 13:41 . 2008-12-31 23:14 -------- d-----w- c:\programmi\SystemRequirementsLab
2009-09-04 21:03 . 2004-08-19 14:39 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-08-31 12:30 . 2009-08-28 14:09 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\PC Drivers HeadQuarters(2)
2009-08-31 12:30 . 2009-08-31 12:30 -------- d-----w- c:\programmi\Analog Devices
2009-08-29 14:49 . 2009-08-29 14:49 -------- d-----w- c:\programmi\Innovative Solutions
2009-08-29 07:56 . 2004-08-19 14:39 916480 ----a-w- c:\windows\system32\wininet.dll
2009-08-28 14:09 . 2009-08-28 14:09 -------- d-----w- c:\programmi\PC Drivers HeadQuarters
2009-08-26 08:00 . 2004-08-19 14:39 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-25 17:08 . 2007-04-13 22:40 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Spybot - Search & Destroy
2009-08-23 13:04 . 2009-05-02 12:40 55656 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-08-22 19:41 . 2009-08-22 19:41 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Office Genuine Advantage
2009-08-06 17:24 . 2007-04-13 21:08 327896 ----a-w- c:\windows\system32\wucltui.dll
2009-08-06 17:24 . 2007-04-13 21:08 209632 ----a-w- c:\windows\system32\wuweb.dll
2009-08-06 17:24 . 2007-04-13 21:34 44768 ----a-w- c:\windows\system32\wups2.dll
2009-08-06 17:24 . 2007-04-13 21:08 35552 ----a-w- c:\windows\system32\wups.dll
2009-08-06 17:24 . 2007-04-13 21:08 53472 ----a-w- c:\windows\system32\wuauclt.exe
2009-08-06 17:24 . 2004-08-19 14:39 96480 ----a-w- c:\windows\system32\cdm.dll
2009-08-06 17:23 . 2007-04-13 21:08 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-08-06 17:23 . 2009-08-18 13:28 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-08-06 17:23 . 2009-08-18 13:28 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-06 17:23 . 2007-04-13 21:08 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-08-05 08:59 . 2004-08-19 14:39 205312 ----a-w- c:\windows\system32\mswebdvd.dll
2009-08-04 20:56 . 2004-08-19 14:34 2192896 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-08-04 17:52 . 2009-08-04 17:52 1193832 ----a-w- c:\windows\system32\FM20.DLL
2009-08-04 17:26 . 2004-08-19 15:34 2069760 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-08-03 13:07 . 2008-12-31 15:04 403816 ----a-w- c:\windows\system32\OGACheckControl.DLL
2009-07-25 03:23 . 2009-01-05 13:10 411368 ----a-w- c:\windows\system32\deploytk.dll
2006-05-03 09:06 . 2009-07-14 17:10 163328 --sh--r- c:\windows\system32\flvDX.dll
2007-02-21 10:47 . 2009-07-14 17:11 31232 --sh--r- c:\windows\system32\msfDX.dll
2008-03-16 12:30 . 2009-07-14 17:11 216064 --sh--r- c:\windows\system32\nbDX.dll
.

((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\programmi\Spybot - Search & Destroy\TeaTimer.exe" [2009-10-15 2260480]
"MSMSGS"="c:\programmi\Messenger\msmsgs.exe" [2008-04-13 1695232]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"="c:\programmi\File comuni\Ahead\Lib\NeroCheck.exe" [2007-03-09 153136]
"CloneCDTray"="c:\programmi\SlySoft\CloneCD\CloneCDTray.exe" [2006-09-28 57344]
"QuickTime Task"="c:\programmi\QuickTime\qttask.exe" [2008-09-06 413696]
"VIARaidUtl"="c:\programmi\VIA\RAID\raid_tool.exe" [2008-09-24 4918936]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"Ad-Watch"="c:\programmi\Lavasoft\Ad-Aware\AAWTray.exe" [2009-09-27 520024]
"DiscWizardMonitor.exe"="c:\programmi\Seagate\DiscWizard\DiscWizardMonitor.exe" [2008-08-22 1348224]
"AcronisTimounterMonitor"="c:\programmi\Seagate\DiscWizard\TimounterMonitor.exe" [2008-08-22 905248]
"Seagate Scheduler2 Service"="c:\programmi\File comuni\Seagate\Schedule2\schedhlp.exe" [2008-08-22 136472]
"Adobe Reader Speed Launcher"="c:\programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]
"avgnt"="c:\programmi\Avira\AntiVir Desktop\avgnt.exe" [2009-10-15 209153]
"SunJavaUpdateSched"="c:\programmi\Java\jre6\bin\jusched.exe" [2009-07-25 149280]
"Malwarebytes Anti-Malware (reboot)"="c:\programmi\Malwarebytes' Anti-Malware\mbam.exe" [2009-09-10 1312080]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" - c:\windows\KHALMNPR.Exe [2008-02-29 76304]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-10-22 1622016]

c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
Logitech SetPoint.lnk - c:\programmi\Logitech\SetPoint\SetPoint.exe [2009-2-15 450560]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"e:\\emule47c\\eMule\\emule.exe"=
"d:\\Microsoft Games\\Age of Empires\\Empires.exe"=
"c:\\Programmi\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"e:\\Programmi\\EA GAMES\\Battlefield 1942\\BF1942.exe"=
"e:\\EA GAMES\\vietnam\\bfvietnam.exe"=
"e:\\videolan\\VLC\\vlc.exe"=
"c:\\Programmi\\Bonjour\\mDNSResponder.exe"=
"e:\\Programmi\\EMPIRES2.ICD"=

R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [08/02/2009 16.05.37 64160]
R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [12/12/2003 17.49.07 77312]
R2 SgtSch2Svc;Seagate Scheduler2 Service;c:\programmi\File comuni\Seagate\Schedule2\schedul2.exe [22/08/2008 3.34.24 431384]
R2 VRAID Log Service;VRAID Log Service;c:\programmi\VIA\RAID\vialogsv.exe [29/01/2009 22.06.20 52888]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\programmi\Lavasoft\Ad-Aware\AAWService.exe [18/01/2009 23.34.37 1028432]

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contenuto della cartella 'Scheduled Tasks'

2009-10-12 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\programmi\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-01-18 13:05]

2008-10-24 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\programmi\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
uInternet Settings,ProxyOverride = *.local
IE: Download with GetRight Pro - c:\programmi\GetRight\GRdownload.htm
IE: E&sporta in Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Open with GetRight Pro Browser - c:\programmi\GetRight\GRbrowse.htm
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-15 21:03
Windows 5.1.2600 Service Pack 3 NTFS

scansione processi nascosti ...

scansione entrate autostart nascoste ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
VIARaidUtl = c:\programmi\VIA\RAID\raid_tool.exe?IA_HyperionPro

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0

**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

[HKEY_USERS\S-1-5-21-1659004503-261903793-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\CLSID]
@Denied: (Full) (LocalSystem)

[HKEY_USERS\S-1-5-21-1659004503-261903793-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{875F437E-72D6-854F-EF1E-8FFEF9DA07F5}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\€–€|ÿÿÿÿÀ•€|ù•9~*]
"0140110900063D11C8EF10054038389C"="C?\\WINDOWS\\system32\\FM20ENU.DLL"
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------

- - - - - - - > 'lsass.exe'(1020)
c:\windows\system32\relog_ap.dll
.
Ora fine scansione: 2009-10-15 21.04.51
ComboFix-quarantined-files.txt 2009-10-15 19:04

Pre-Run: 99.105.718.272 byte disponibili
Post-Run: 99.165.212.672 byte disponibili

WindowsXP-KB310994-SP2-Pro-BootDisk-ITA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

174 --- E O F --- 2009-10-15 18:46
Avatar utente
rotebaron
Neo Iscritto
Neo Iscritto
 
Messaggi: 5
Iscritto il: gio ott 15, 2009 4:04 pm

Re: worm bagle

Messaggioda ste_95 » ven ott 16, 2009 4:57 pm

Puoi farci vedere anche il log di FindyKill? [:)]
«A volte è meglio tacere e sembrare stupidi che aprir bocca e togliere ogni dubbio.» Oscar Wilde
Avatar utente
ste_95
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 17271
Iscritto il: lun ago 06, 2007 11:19 am

Re: worm bagle

Messaggioda rotebaron » ven ott 16, 2009 5:41 pm

Si volentieri.
Volevo già postarlo, ma è troppo lungo, eccede nei caratteri.
Vedo di dividerlo in 2 tronchi.

Comunque, non è ancora tutto pulitissimo. Ho appena passato l'Avast (finalmente posso) e ha ritrovato il bagle, che però non era attivo.

############################## | FindyKill V5.013 |

# User : Maissel (Administrators) # ASSIOMA
# Update on 08/10/2009 by Chiquitine29
# Start at: 20.06.20 | 15/10/2009
# Website : http://pagesperso-orange.fr/NosTools/index.html

# AMD Athlon(tm) 64 Processor 3000+
# Microsoft Windows XP Professional (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 8.0.6001.18702
# Windows Firewall Status : Enabled

# A:\ # Disco floppy, 3,5 pollici
# C:\ # Disco rigido locale # 107,98 Go (92,54 Go free) # NTFS
# D:\ # Disco rigido locale # 9,77 Go (627,31 Mo free) [QUANTUM_D] # FAT32
# E:\ # Disco rigido locale # 347,6 Go (212,24 Go free) [DSK1_VOL2] # NTFS
# F:\ # Disco rigido locale # 10,18 Go (10,15 Go free) [DSK1_VOL3] # NTFS
# G:\ # Disco rigido locale # 1,77 Go (1,02 Go free) [QUANTUM_E] # FAT32
# H:\ # Disco rigido locale # 7,44 Go (6,96 Go free) [QUANTUM] # FAT32
# I:\ # Disco rigido locale # 298,09 Go (4,5 Go free) [SEAGATE] # NTFS
# K:\ # Disco CD-ROM
# M:\ # Disco CD-ROM

############################## | Active Processes |

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Programmi\File comuni\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Programmi\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Programmi\File comuni\Seagate\Schedule2\schedul2.exe
C:\Programmi\VIA\RAID\vialogsv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

################## | C: |


################## | C:\WINDOWS |

Deleted ! C:\WINDOWS\Prefetch\104109.EXE-2AD5179E.pf
Deleted ! C:\WINDOWS\Prefetch\105656.EXE-30212F26.pf
Deleted ! C:\WINDOWS\Prefetch\110718.EXE-0744FC7E.pf
Deleted ! C:\WINDOWS\Prefetch\112437.EXE-10CE5584.pf
Deleted ! C:\WINDOWS\Prefetch\177843.EXE-181A869F.pf
Deleted ! C:\WINDOWS\Prefetch\62093.EXE-1F182EA0.pf
Deleted ! C:\WINDOWS\Prefetch\72484.EXE-100BEBB4.pf
Deleted ! C:\WINDOWS\Prefetch\73218.EXE-133752E8.pf
Deleted ! C:\WINDOWS\Prefetch\75937.EXE-14A5D072.pf
Deleted ! C:\WINDOWS\Prefetch\76390.EXE-39DA1B8D.pf
Deleted ! C:\WINDOWS\Prefetch\79593.EXE-219B3DCD.pf
Deleted ! C:\WINDOWS\Prefetch\79687.EXE-2AC8AD89.pf
Deleted ! C:\WINDOWS\Prefetch\83156.EXE-159BD2CF.pf
Deleted ! C:\WINDOWS\Prefetch\83265.EXE-26BF9AE4.pf
Deleted ! C:\WINDOWS\Prefetch\83359.EXE-2FED0AA0.pf
Deleted ! C:\WINDOWS\Prefetch\84843.EXE-1C21F9EB.pf
Deleted ! C:\WINDOWS\Prefetch\86187.EXE-0C847F67.pf
Deleted ! C:\WINDOWS\Prefetch\88562.EXE-1FAE8980.pf
Deleted ! C:\WINDOWS\Prefetch\89718.EXE-12566425.pf
Deleted ! C:\WINDOWS\Prefetch\90375.EXE-3A5DFF34.pf
Deleted ! C:\WINDOWS\Prefetch\93031.EXE-3802439E.pf
Deleted ! C:\WINDOWS\Prefetch\93593.EXE-081D7D80.pf
Deleted ! C:\WINDOWS\Prefetch\98031.EXE-07872F92.pf
Deleted ! C:\WINDOWS\Prefetch\98093.EXE-12499901.pf
Deleted ! C:\WINDOWS\Prefetch\FLEC003.EXE-01114D2C.pf
Deleted ! C:\WINDOWS\Prefetch\FLEC006.EXE-2E111976.pf
Deleted ! C:\WINDOWS\Prefetch\MDELK.EXE-1D176F91.pf
Deleted ! C:\WINDOWS\Prefetch\WINTEMS.EXE-2A563F9B.pf

################## | C:\WINDOWS\system32 |

Deleted ! C:\WINDOWS\system32\ban_list.txt
Deleted ! C:\WINDOWS\system32\mdelk.exe
Deleted ! C:\WINDOWS\system32\wintems.exe

################## | C:\WINDOWS\system32\drivers |


################## | C:\Documents and Settings\Maissel\Dati applicazioni |

Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10111906.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10116375.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10118875.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10120640.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10133906.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10135203.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10161078.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10196125.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10196328.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10196437.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10213734.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10214687.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10214953.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1022421.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1022828.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1022906.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1023640.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10239875.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10240828.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10241843.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1024250.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1024343.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10271609.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10272218.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10272328.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10272859.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10273000.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10289031.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10289875.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10289921.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10329921.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10330843.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10331000.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10341015.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10342546.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10343328.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10378515.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10383515.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\10384531.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1039375.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1040937.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1041000.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1078343.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1079078.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1086984.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1088937.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1089750.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1123718.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1128140.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\1132390.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\130187.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\131734.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\131750.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\139078.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\144062.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\146921.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\165968.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\166718.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\166859.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\190796.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\192250.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\192343.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\233875.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\235484.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\235578.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\278421.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\280328.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\281156.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\324843.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\326984.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\327203.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\337718.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\341609.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\341765.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\342312.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\343140.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\343218.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\343656.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\343843.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\343937.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\362796.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\364359.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\364468.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\375562.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\376734.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\376781.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\441187.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\442078.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\442171.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\456890.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\459234.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\459890.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\478968.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\483328.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\483609.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\52296.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\525796.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\539140.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\548812.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\55968.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\59937.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\63140.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\67718.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\69656.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\70453.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\708312.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\720031.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\724062.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\747062.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\747390.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\747687.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\769296.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\770203.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\770359.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\858968.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\860078.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld\860843.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\downld
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\srosa2.sys
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\wfsintwq.sys
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers\winupgro.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\drivers
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\downloads.bak
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\downloads.txt
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\AC_BootstrapIPs.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\AC_SearchStrings.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\AC_ServerMetURLs.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\cancelled.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\clients.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\clients.met.bak
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\cryptkey.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\emfriends.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\key_index.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\known.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\known2_64.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\load_index.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\nodes.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\preferences.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\preferences.ini
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\preferencesKad.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\server.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\server_met.old
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\shareddir.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\src_index.dat
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\statistics.ini
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config\StoredSearches.met
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\config
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\file.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\flec003.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\lang
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\names.txt
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\server.txt
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\.Symantec.Norton.Internet.Security.2007.with.key.updated-fixed.09-2006.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\3D Clock Screensaver 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\3D Natural Beauty 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\7Canaries Professional 1.0 build 101 (Patch).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ABC Amber Thunderbird Converter 6.06.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ABC Backup 4.75.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ActMask ALL2PDF PDF Creator 4.12.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\AeternaBackup 1.0.1.115 (Serial).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\AMIB Joiner 0.1.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\AniPaper - Urban Celebration 1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Antispyware 5.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Aplus DVD Copy 8.28 Cracked.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Aplus DVD to iPhone MP4 Converter 8.87.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Apple Printer Utility 2.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Arctic Rush 1.46.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Avast.Antivirus.2007.Crack.Serial.Ita fixed.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Avast.Professional.v4.6.763.GERMAN.Incl.KeyMaker-DVT.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\BackupEXPRO 0.1.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Band Promotion Tracker 0.01.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Batch Picture Protector 1.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Calendar Creator 1.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Chat-Net.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Cheeseburger.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Chiizu Photo Retailer 5.1.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Citrix 1Y0-223 Practice Test Exam Questions.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Convert MP3 3.0.1.64 Patch.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Cool Balls 1.25.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Cool Free All Video to MOV Converter 5.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Crystal Translator 3.20 Key+Serial.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\CuteMap 1.2 KeyGen.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Daily Shifts and 15 Tasks for 25 Employees 3.98.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Dealer Store Locator Map (USA) 1.02.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\DeepSpace 1.1 (Cracked).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\DHTML Menu Extension for GoLive 1.0 (Key).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\DiskInternals Mail Recovery 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\DMControls.Lens .NET control 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\DVD to Apple TV Converter 4.0.84.0802.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Encrypted Button Generator for PayPal 2.3.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\EssentialPIM Portable 1.71.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\EW0-200 - Extreme Networks Associate Practice Exam Questions 1.0 Key.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\EWIDO.(BY.SHOSET).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Expense Recorder for SmartPhone 1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\F-Secure Antivirus 2009 9.00 Build 148.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Fort Jefferson Screensaver.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Foucault Test Analysis 2.0B.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Free WMA MP3 Converter 1.1 Build 20081217.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Game Show Presenter 4.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\GameBoost 1.5.12.2008.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\GIS ObjectLand 2.7.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Global Weather 3D 1.5 Build 015000.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\GTW420-Pro 4.2.1.176.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\HardCopy Pro 3.0.7.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Hex Editor Pro 1.00.0025.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\HexDraw 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\HPGL Import for Rhino 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ICQBack 1.10.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\IE WebDeveloper 2.4.1.110.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\In-Out Board 2.0.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Konfabulator Widget 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\LDTViewer 1.03.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\LinasFTP 0.43 beta.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\LyricsManager 5.0 (Serial).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Math Flash Card Master 2.0 With Crack.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Medi@maze 2.02.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Microsoft Exchange Server 2003 Management Pack 6.0.5000.11.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\miniWEBedit 1.1.9.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Motion-Touch video player 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\MyWeb 1.00.0b.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\NetDrives 1.0.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\NuGenVizDOC 1.6.1.7 [Cracked].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ODF Add-in for PowerPoint 2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Outlook Password Recovery 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\PacketMon 1.02.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Particles 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Password Generator 2.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\PDF Optimizer 2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Personal Menu 4.1.4.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Print Screen Deluxe 6.1 Key.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ProtBlock 3.2.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Q-Widget 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Quick AVI Splitter 2.0.8.79.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Random Cartoons 1.0.0.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\readyBoost Monitor 1.0.6.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\RegFreeze 5.6 (Key+Serial).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Remote Management Kit 1.6.75.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\RoboGuru Guitar Tools 1.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\RoughDraft 3.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SciCalc 2.1.4.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SeInteractiveLogonRight 0.10.00.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Shop'NCook Shopping List & Recipe Manager for Mac 3.4.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Simple Port Forwarding 2.4.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SL-Snap 1.0.3 Build 31.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Smart Media Data Recovery 2.80 With Crack.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Solitaire Studio 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SONY Vegas Pro 9.0 Build 563.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SPINNER 1.34.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Split it 3.2 [Patch].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SplitZilla 3.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SpyXie UnderNetwork 1.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\SRC Corp-Network Security Software 1.21.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Symantec.Norton.Personal.Firewall.2005.ITA.+.KeyGen.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\System Workshop 2.3 Key.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Tele-Cap. Premium 2005.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\The Great Kazoo 1.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\The Sims 2 Crossover Top Dress skin.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\TouchDrive 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\TreeDraw 3.1.4.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\UB-92 Fill & Print 2.6.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Underwater World 3D Screensaver 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Universal Combat patch 2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Unreal Tournament 2003 - Refuge deathmatch map.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Vector Creation Laboratory 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\ViewletAce 1.0.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Weather Stats 1.4.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Web Service Creator 2.5.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\WebCab Probability and Stat for .NET 3.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\WindowOnTop 0.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\WinXP Manager 6.0.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\WordFusion 1.61.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\X2Net LabelMaker 3.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Yasminoku 0.25.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Zoom Player Standard 5.50 Beta 1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\Zorro 1.4.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR\[CRACK.-.SERIAL].Avast.Antivirus.4.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\WDIR
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\webserver
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\Incoming
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\skins
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires\Temp
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\hidires
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\data.oct
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\flec006.exe
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\list.oct
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\1D0-510_CIW_Foundations_for_CIW_Associat_8.06.05.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\360PanoStitcher_1.0_[With_Crack].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\3D_Editor_2s.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\4Videosoft DVD to RM Converter 3.1.10.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\ACA_Capture_5.50.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Adobe Photoshop Lightroom 2.3 Build 539407.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Advanced Localizer 1.6.0.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Advanced Shortcuts Composer 6.6.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Allok Audio Converter 1.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Amazon Shopper 1.0.0.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Ampeg_SVX_1.1_build_6k24.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Angels Of God 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\ArtSee 1.92.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Attachment_Security_for_Microsoft_Outlook_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Azkar_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Battlefield_1942_Star_Wars_Rogue_Squadron_Maps.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\BlackMagic_Pro_Edition_2.84_Key+Serial.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Boston in Four Seasons Screensaver 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\CAD DWG Drawing Encrypter 8.10.12.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\CamAccess_Standard_Edition_2.0.1.284.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Catchysoft Report Generator 1.01 Beta.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Change File Time 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\CheckR 1.2.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Chinese_Character_Stroke_Order_Animator_2.10_With_Crack.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Citation_8.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Color Helper 1.0.100.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Desktop_Atomic_Clock_v2.22.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\DoubleVision 1.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\DriveSitter 1.5.0.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\DVD Copy Express 5.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Easy-Copy 1.0 KeyGen.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\EasyInvoice_4.3.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Elegant Ribbon 2.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\eSearch_for_eBay_2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\EZ Print 4.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\EZ Word to Pdf Converter Free 6.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Fantasy Control - NFL Football Games and Scores 1.21.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\FileMaker_Key_7.9.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\FileScan Tool Pro 6.7.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Fisheye_Player_2.01.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Flash Vista Style Menu Builder 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Folder Lock 5.7.5 Patch.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\GIF2SWF Converter 1.2c.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Give_Me_Too_Network_Sniffer_2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\GLM# 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Gold_Calculator_3.21_[Key+Serial].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Google_Maps_With_GPS_Tracker_5.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\HaroldSearchNetworks for IE 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Hockey_Scoreboard_Standard_1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Home Planet 3.3a.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\HQuote Pro Historical Stock Prices Downloader 6.91.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\IconUtils_4.17.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\iKonic_2.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\InfoStrat.VE Release 1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\InJoy_Firewall_3.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Instant_C#_VB.NET_to_C#_Converter_2.7_[Key+Serial].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Interference_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Internet_Utilities_Pack_2.0_Key+Serial.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\INtex_Faktura_vX_Pro_4.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\IphotoDVD 1.8 b30 [With Crack].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Itookia_Multimedia_Icon_Set.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\JahShaka 2.0 RC1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Jewel_Quest_1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Just In Time 1.0.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\LanFlow Net Diagrammer 6.12 Build 2032.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Layer Pilot 1.00.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\LingvoSoft_Dictionary_2007_English_-_Chinese_Simplified_4.0.22.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\LingvoSoft_Suite_2007_German_-_Turkish_2.0.23.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Love Calculator 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Macro_Magic_4.1t_Crack.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Mass_eMailer_2.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Matrix_ScreenSaver_2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\McAfee.Internet.Security.Suite.2007.+.parche.espaÇñol.updated-fixed.11-2006.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Meditation_Moonlight_Screen_Saver_1.0_[Key].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Moji_0.8.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Motor Bikes Photo Screensaver 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\MXP Lister 1.2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\My Christmas Tree 1.0 [KeyGen].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\MyAuctionMate_v2.2000.0131_Update.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\My_Movie_List_Offline_Viewer_1.0.2485.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Norton AntiBot 1.1.838.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\OakDoc DWG to TIFF Converter 1.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Office Cyber Alert 3.24.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\OnlinePokerNotes_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Papagayo 1.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\ParentalControl Bar 4.0.3.344.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\PartyBux.com_Ip2Country_Suite_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Pathos_Course_Builder_1.06_[Cracked].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Pc Cleaner 3.5.1.617.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\PDF-Recover 4.0.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\PhotoHost_1.1_Crack.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\phpBB_Advanced_Quick_Reply_Quote_Edit_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Physics 101 SE 6.0.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Pierresoft_Adesign_1.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Portable.ewido.anti-spyware.4.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\PQ_DVD_to_Zune_Video_Converter_Suite_1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Protea AntiVirus Tools, ClamAV 2.05.236.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\ProxyChanger_2.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Quote of the Day Plugin 1.0.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\RemoteDeviceExplorer_1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Ripple 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Roster_Management_System_0.25.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\SailTimer_1.0.3_[Serial].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\ScatterLight Lenses 1.2.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\SearchSelected Search Tool 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Seasons Of Yosemite 1.0.6.2634.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\SerialTrace 2.2 build 3399.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Shogun_Total_War_demo.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Shore Scenes Screensaver.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Sleepy_6.2.406_(Cracked).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\SmartBees_Merchant_2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Split_and_Join_3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Star Wars 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Sunset And Sunrise Screen Saver 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\TicketMeister_1.01.0007.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Transym_OCR_2.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\VCW_VicMan's_Database_6.0_Key.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Vector Application Basic Icons 1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Vista_Style_Icons_-_Emoticons_1.0_(Patch).zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\WakeARP.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\wAPI_Monitor_for_Windows_3.1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Web Check 24x7 0.6.2.13.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\WinBackup_Standard_2.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\Wondershare 3GP Slideshow 1.1.0.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\World History Trivia & Exam Prep (Java Phone) 1.5.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\WS Tools 1.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\XDenSer_JAP_1.0.1.3.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\XNA Animation Component Library 1.0.2.0 Beta.zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared\[HGame_XP][AVG][jpn_jpn][Æ'"Æ??Æ?YÆ?ÝÆ'îÆŸðÆŸîÆŸŸÆ'æÆŸü‹«zAutumn.leafÆ?©3†õ%†Ýû‹«z][001].zip
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\shared
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m\srvlist.oct
Deleted ! C:\Documents and Settings\Maissel\Dati applicazioni\m

################## | Reference of comparaison Bagle MD5 : |

File : C:\Documents and Settings\Maissel\Dati applicazioni\drivers\winupgro.exe
-> Crc32 : 9115a37c | Md5 : 1197b71bf9a6d7c118f69def207a1dd9


################## | Other deleting ... |

Deleted ! "C:\Programmi\File comuni\Ahead\Lib\NMBgMonitor.exe"
-> Size : 901120 | Crc32 : 9115a37c | Md5 : 1197b71bf9a6d7c118f69def207a1dd9


################## | Temporary Internet Files |


################## | Registry / Infected keys |

Deleted ! [HKLM\SYSTEM\ControlSet003\Services\srosa]
Deleted ! [HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SK9OU0S]
Deleted ! [HKLM\SYSTEM\ControlSet003\Enum\Root\LEGACY_SK9OU0S]
Deleted ! [HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA]
Deleted ! [HKCU\Software\bisoft]
Deleted ! [HKCU\Software\DateTime4]
Deleted ! [HKCU\Software\MuleAppData]
Deleted ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Deleted ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Deleted ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Deleted ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "flec003.exe"
Deleted ! [HKCU\Software\Local AppWizard-Generated Applications\winupgro]
Deleted ! [HKLM\software\microsoft\security center] "AntiVirusDisableNotify"
Deleted ! [HKLM\software\microsoft\security center] "AntiVirusOverride"
Deleted ! [HKLM\software\microsoft\security center] "FirewallDisableNotify"
Deleted ! [HKLM\software\microsoft\security center] "FirewallOverride"
Deleted ! [HKLM\software\microsoft\security center] "UpdatesDisableNotify"

################## | State / Service / Information |

# Safe boot mode restored restauré !

# Showing of hidden files : OK

# Ndisuio -> Start = 3 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 2 ( Good = 2 | Bad = 4 )
# Ip6Fw -> Start = 2 ( Good = 2 | Bad = 4 )
# SharedAccess -> Start = 2 ( Good = 2 | Bad = 4 )
# wuauserv -> Start = 2 ( Good = 2 | Bad = 4 )
Avatar utente
rotebaron
Neo Iscritto
Neo Iscritto
 
Messaggi: 5
Iscritto il: gio ott 15, 2009 4:04 pm

Re: worm bagle

Messaggioda rotebaron » ven ott 16, 2009 5:43 pm

Ecco la seconda parte.

Dimmi che ne pensi per favore.

################## | PEH ... |

Corrupted : C:\Documents and Settings\All Users\Dati applicazioni\Lavasoft\Ad-Aware\update\AAWService.exe
[Offset = 00000114 - Value = 0x0001]

Corrupted : C:\Downloads\ComboFix.exe
[Offset = 000000EC - Value = 0x0001]

Corrupted : C:\Downloads\HiJackThis\HijackThis.exe
[Offset = 000000C4 - Value = 0x0001]

Corrupted : C:\Programmi\a-squared Free\a2cmd.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\a-squared Free\a2service.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\a-squared Free\a2upd.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\avcenter.exe
[Offset = 0000010C - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\avgnt.exe
[Offset = 0000010C - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\avguard.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\sched.exe
[Offset = 0000010C - Value = 0x0001]

Corrupted : C:\Programmi\Drive Rescue\rescue.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Lavasoft\Ad-Aware\AAWService.exe
[Offset = 00000114 - Value = 0x0001]

Corrupted : C:\Programmi\Spybot - Search & Destroy\blindman.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Spybot - Search & Destroy\Update.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\WINDOWS\$hf_mig$\KB873339\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB885835\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB885836\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB886185\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB887472\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB888302\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB890859\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB891781\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB893756\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB896358\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB896422\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB896423\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB896424\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB896428\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB898461\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB899587\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB899589\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB899591\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB900485\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB900725\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB901017\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB901190\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB901214\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB904706\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB904942\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB905414\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB905749\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB908519\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB908521\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB908531\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB910437\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB911280\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB911562\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB911567\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB911927\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB912919\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB913580\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB914388\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB914389\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB915865\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB916595\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB916846\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB917344\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB917537\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB918118\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB918439\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB919007\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB920214\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB920342\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB920670\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB920683\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB920685\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB920872\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB921398\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB921503\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB922120\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB922582\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB922616\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB922819\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB923414\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB923561\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB923694\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB923980\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB924191\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB924496\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB925486\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB925720\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB925902\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB926436\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB927779\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB927802\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB927891\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB928255\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB928388\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB928843\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB929123\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB930178\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB930916\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB931261\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB931768-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB931836\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB933360\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB933566-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB935840\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB936021\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB937143-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB937894\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB938127-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB938829\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB939653-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB941202\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB941568\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB941693\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB942615-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB942763\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB943055\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB944533-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB944653\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB945553\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB946026\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB946648\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB947864-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB948590\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB948881\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB950749\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB950759-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB950760\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB950762\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB950974\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951066\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951072-v2\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951376\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951376-v2\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951698\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951748\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB951978\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB952004\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB952287\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB952954\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB953838-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB953839\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB954211\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB954459\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB954600\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB955069\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB955839\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956390-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956391\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956572\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956744\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956802\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956803\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956841\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB956844\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB957095\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB957097\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB958215-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB958644\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB958687\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB958690\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB959426\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB960225\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB960714-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB960715\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB960803\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB960859\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB961260-IE7\update\update.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB961371\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB961373\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB961501\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB963027-IE7\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB967715\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB968389\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB968537\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB969897-IE8\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB969898\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB970238\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB971557\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB971633\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB971657\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB971961-IE8\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB972260-IE8\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB973346\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB973354\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB973507\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB973815\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$hf_mig$\KB973869\update\update.exe
[Offset = 000000EC - Value = 0x0001]

Attempt of repair...
Backup : update.exe.REN
[Offset = 000000EC - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\$NtServicePackUninstall$\sysinfo.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : sysinfo.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\ServicePackFiles\i386\sysinfo.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : sysinfo.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : C:\WINDOWS\system32\dllcache\register.exe
[Offset = 000000E4 - Value = 0x0001]

Attempt of repair...
Backup : register.exe.REN
[Offset = 000000E4 - New value = 0x4C01]
File repaired successfully.


Corrupted : D:\avenger.exe
[Offset = 00000084 - Value = 0x0001]


################## | Cracks / Keygens / Serials |


################## | End of Report # FindyKill V5.013 ! |
Avatar utente
rotebaron
Neo Iscritto
Neo Iscritto
 
Messaggi: 5
Iscritto il: gio ott 15, 2009 4:04 pm

Re: worm bagle

Messaggioda Amantide » ven ott 16, 2009 9:04 pm

Questi file sono stati corrotti dal Bagle e quindi i relativi programmi devono essere reinstallati:

Corrupted : C:\Documents and Settings\All Users\Dati applicazioni\Lavasoft\Ad-Aware\update\AAWService.exe
[Offset = 00000114 - Value = 0x0001]

Corrupted : C:\Downloads\ComboFix.exe
[Offset = 000000EC - Value = 0x0001]

Corrupted : C:\Downloads\HiJackThis\HijackThis.exe
[Offset = 000000C4 - Value = 0x0001]

Corrupted : C:\Programmi\a-squared Free\a2cmd.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\a-squared Free\a2service.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\a-squared Free\a2upd.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\avcenter.exe
[Offset = 0000010C - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\avgnt.exe
[Offset = 0000010C - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\avguard.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Avira\AntiVir Desktop\sched.exe
[Offset = 0000010C - Value = 0x0001]

Corrupted : C:\Programmi\Drive Rescue\rescue.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Lavasoft\Ad-Aware\AAWService.exe
[Offset = 00000114 - Value = 0x0001]

Corrupted : C:\Programmi\Spybot - Search & Destroy\blindman.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
[Offset = 00000104 - Value = 0x0001]

Corrupted : C:\Programmi\Spybot - Search & Destroy\Update.exe
[Offset = 00000104 - Value = 0x0001]


************************************

Ora correggi per favore l'inserimento dei file di report nei tuoi post precedenti seguendo queste regole:
*IMPORTANTE* - Come allegare i log alle discussioni
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: worm bagle

Messaggioda scaccia » lun ott 19, 2009 2:17 pm

Salve a tutti,
anche io sto impazzendo e questa è la seconda volta che questo maledetto virus mi infetta [boh]
Stavo aggiornando Google Chrome quando si è automaticamente avviato, e mi ha disabilitato Malwarebytes, Antivir e anche il Commodo.
Ho fatto giusto in tempo ad avviare Combofix, che non è servito.

ComboFix 09-10-17.01 - Nicolò 19/10/2009 14.46.28.2.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.1023.696 [GMT 2:00]
Eseguito da: e:\documents and settings\Nicolò\Documenti\Downloads\ComboFix.exe
AV: AntiVir Desktop *On-access scanning enabled* (Updated) {00000002-0002-0000-6C25-9E7C08000A00}
AV: AntiVir Desktop *On-access scanning enabled* (Updated) {00000002-0002-0000-7C25-9E7C08000A00}
AV: AntiVir Desktop *On-access scanning enabled* (Updated) {001300D4-0000-0000-1000-00007454927C}
FW: COMODO Firewall *enabled* {043803A3-4F86-4ef6-AFC5-F6E02A79969B}
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

e:\documents and settings\Nicolò\Dati applicazioni\drivers\downld
e:\windows\system32\axaltocm.dll

.
((((((((((((((((((((((((( Files Creati Da 2009-09-19 al 2009-10-19 )))))))))))))))))))))))))))))))))))
.

2009-10-19 12:24 . 2008-10-16 12:06 268648 ----a-w- e:\windows\system32\mucltui.dll
2009-10-19 12:24 . 2009-10-19 12:28 -------- d-----w- e:\windows\LastGood
2009-10-18 21:10 . 2009-10-18 21:16 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Pinnacle VideoSpin
2009-10-18 21:10 . 2009-10-18 21:10 -------- d-----w- e:\programmi\Pinnacle
2009-10-18 21:10 . 2009-10-18 21:10 -------- d-----w- e:\programmi\File comuni\Yahoo!
2009-10-18 21:08 . 2009-10-18 21:10 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Chit Chat For FaceBook
2009-10-18 21:08 . 2009-10-18 21:09 -------- d-----w- e:\programmi\Chit Chat For FaceBook
2009-10-18 21:07 . 2009-10-18 21:07 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Pinnacle
2009-10-18 18:09 . 2009-08-16 15:08 178176 ----a-w- e:\windows\system32\unrar.dll
2009-10-18 18:09 . 2009-10-18 18:10 -------- d-----w- e:\programmi\K-Lite Codec Pack
2009-10-18 18:00 . 2008-04-13 09:46 51200 -c--a-w- e:\windows\system32\dllcache\msdv.sys
2009-10-18 18:00 . 2008-04-13 09:46 51200 ----a-w- e:\windows\system32\drivers\msdv.sys
2009-10-18 18:00 . 2008-04-13 17:13 54784 -c--a-w- e:\windows\system32\dllcache\vfwwdm32.dll
2009-10-18 18:00 . 2008-04-13 17:13 54784 ----a-w- e:\windows\system32\vfwwdm32.dll
2009-10-18 18:00 . 2008-04-13 09:46 38912 -c--a-w- e:\windows\system32\dllcache\avc.sys
2009-10-18 18:00 . 2008-04-13 09:46 38912 ----a-w- e:\windows\system32\drivers\avc.sys
2009-10-18 18:00 . 2008-04-13 09:46 48128 -c--a-w- e:\windows\system32\dllcache\61883.sys
2009-10-18 18:00 . 2008-04-13 09:46 48128 ----a-w- e:\windows\system32\drivers\61883.sys
2009-10-18 17:41 . 2009-10-19 12:21 -------- d-----w- e:\programmi\Spybot - Search & Destroy
2009-10-18 17:41 . 2009-10-18 17:51 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Spybot - Search & Destroy
2009-10-18 16:30 . 2009-10-18 16:30 -------- d-----w- e:\programmi\MSXML 4.0
2009-10-18 16:30 . 2009-10-18 16:30 -------- d-----w- e:\programmi\Microsoft Silverlight
2009-10-18 16:29 . 2008-04-13 17:13 221184 ----a-w- e:\windows\system32\wmpns.dll
2009-10-18 16:29 . 2009-10-18 16:29 -------- d-----w- e:\programmi\Windows Media Connect 2
2009-10-18 16:26 . 2009-10-18 16:27 -------- d-----w- e:\windows\system32\drivers\UMDF
2009-10-18 16:26 . 2009-10-18 16:26 -------- d-----w- e:\windows\system32\LogFiles
2009-10-18 16:23 . 2009-10-18 16:23 -------- d-----w- e:\programmi\Overland
2009-10-18 16:13 . 2009-10-18 16:18 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Comodo
2009-10-18 16:13 . 2009-10-18 16:13 87104 ----a-w- e:\windows\system32\drivers\inspect.sys
2009-10-18 16:13 . 2009-10-18 16:13 25160 ----a-w- e:\windows\system32\drivers\cmdhlp.sys
2009-10-18 16:13 . 2009-10-18 16:13 179792 ----a-w- e:\windows\system32\guard32.dll
2009-10-18 16:13 . 2009-10-18 16:13 132296 ----a-w- e:\windows\system32\drivers\cmdguard.sys
2009-10-18 16:13 . 2009-10-18 16:13 -------- d-----w- e:\programmi\COMODO
2009-10-18 15:15 . 2003-09-24 07:44 82432 ----a-r- e:\windows\system32\MSXML4r.dll
2009-10-18 15:15 . 2003-09-24 07:44 44544 ----a-r- e:\windows\system32\MSXML4a.dll
2009-10-18 15:15 . 2003-09-24 07:43 626960 ----a-r- e:\windows\system32\hpvaut32.dll
2009-10-18 15:15 . 2003-09-24 07:43 487424 ----a-r- e:\windows\system32\hpvcp70.dll
2009-10-18 15:15 . 2003-09-24 07:43 344064 ----a-r- e:\windows\system32\hpvcr70.dll
2009-10-18 14:40 . 2009-10-18 14:40 -------- d-----w- e:\programmi\Unlocker
2009-10-18 14:37 . 2009-10-18 14:37 -------- d-----w- e:\programmi\HP
2009-10-18 14:37 . 2009-10-18 14:37 -------- d-----w- e:\programmi\Hewlett-Packard
2009-10-18 14:22 . 2009-09-25 16:42 120056 ------w- e:\windows\system32\pxcpyi64.exe
2009-10-18 14:22 . 2009-09-25 16:42 118520 ------w- e:\windows\system32\pxinsi64.exe
2009-10-18 14:21 . 2009-10-18 14:22 -------- d-----w- e:\programmi\DivX
2009-10-18 14:21 . 2009-10-18 14:22 -------- d-----w- e:\programmi\File comuni\DivX Shared
2009-10-18 14:12 . 2009-10-18 14:15 -------- d-----w- e:\programmi\Screamer Radio
2009-10-18 14:10 . 2009-10-18 14:10 -------- d-----w- e:\programmi\FreeCommander

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-19 12:45 . 2001-12-04 11:00 69790 ----a-w- e:\windows\system32\perfc010.dat
2009-10-19 12:45 . 2001-12-04 11:00 437644 ----a-w- e:\windows\system32\perfh010.dat
2009-10-18 22:10 . 2009-10-18 12:53 -------- d-----w- e:\programmi\PeerGuardian2
2009-10-18 18:36 . 2009-10-18 12:13 -------- d-----w- e:\programmi\AVS4YOU
2009-10-18 18:36 . 2009-10-18 12:13 -------- d-----w- e:\programmi\File comuni\AVSMedia
2009-10-18 13:54 . 2009-10-18 13:54 -------- d-----w- e:\programmi\PDFCreator
2009-10-18 13:51 . 2009-10-18 13:50 -------- d-----w- e:\programmi\File comuni\Adobe
2009-10-18 13:48 . 2009-10-18 13:48 -------- d-----w- e:\programmi\Google
2009-10-18 13:46 . 2009-10-18 13:46 411368 ----a-w- e:\windows\system32\deploytk.dll
2009-10-18 13:46 . 2009-10-18 13:46 -------- d-----w- e:\programmi\Java
2009-10-18 13:25 . 2009-10-18 13:24 -------- d-----w- e:\programmi\Messenger Plus! Live
2009-10-18 13:09 . 2009-10-18 13:02 -------- d-----w- e:\programmi\Winamp
2009-10-18 13:04 . 2009-10-18 13:01 -------- d-----w- e:\programmi\Windows Live
2009-10-18 13:03 . 2009-10-18 13:01 -------- dcsh--w- e:\programmi\File comuni\WindowsLiveInstaller
2009-10-18 13:00 . 2009-10-18 13:00 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\WLInstaller
2009-10-18 12:49 . 2009-10-18 12:49 -------- d-----w- e:\programmi\Malwarebytes' Anti-Malware
2009-10-18 12:49 . 2009-10-18 12:49 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Malwarebytes
2009-10-18 12:37 . 2009-10-18 12:37 0 ---ha-w- e:\windows\system32\drivers\Msft_Kernel_NuidFltr_01005.Wdf
2009-10-18 12:37 . 2009-10-18 12:37 0 ---ha-w- e:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2009-10-18 12:31 . 2009-10-18 12:31 -------- d-----w- e:\programmi\eMule
2009-10-18 12:15 . 2009-10-18 12:15 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\AVS4YOU
2009-10-18 11:59 . 2009-10-18 11:59 -------- d-----w- e:\programmi\Avira
2009-10-18 11:59 . 2009-10-18 11:59 -------- d-----w- e:\documents and settings\All Users\Dati applicazioni\Avira
2009-10-18 11:51 . 2009-10-18 11:51 -------- d-----w- e:\programmi\microsoft frontpage
2009-10-18 11:49 . 2009-10-18 11:49 -------- d-----w- e:\programmi\Servizi in linea
2009-10-18 11:47 . 2009-10-18 11:47 21840 ----a-w- e:\windows\system32\emptyregdb.dat
2009-09-25 16:41 . 2009-09-25 16:41 90112 ----a-w- e:\windows\system32\dpl100.dll
2009-09-25 16:41 . 2009-09-25 16:41 856064 ----a-w- e:\windows\system32\divx_xx0c.dll
2009-09-25 16:41 . 2009-09-25 16:41 856064 ----a-w- e:\windows\system32\divx_xx07.dll
2009-09-25 16:41 . 2009-09-25 16:41 847872 ----a-w- e:\windows\system32\divx_xx0a.dll
2009-09-25 16:41 . 2009-09-25 16:41 843776 ----a-w- e:\windows\system32\divx_xx16.dll
2009-09-25 16:41 . 2009-09-25 16:41 839680 ----a-w- e:\windows\system32\divx_xx11.dll
2009-09-25 16:41 . 2009-09-25 16:41 696320 ----a-w- e:\windows\system32\DivX.dll
2009-09-11 14:17 . 2008-04-13 17:13 136192 ----a-w- e:\windows\system32\msv1_0.dll
2009-09-10 12:54 . 2009-10-18 12:49 38224 ----a-w- e:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 12:53 . 2009-10-18 12:49 19160 ----a-w- e:\windows\system32\drivers\mbam.sys
2009-09-04 21:03 . 2008-04-13 17:13 58880 ----a-w- e:\windows\system32\msasn1.dll
2009-08-29 07:56 . 2008-04-13 17:13 916480 ------w- e:\windows\system32\wininet.dll
2009-08-26 08:00 . 2008-04-13 17:13 247326 ----a-w- e:\windows\system32\strmdll.dll
2009-08-05 08:59 . 2008-04-13 17:13 205312 ----a-w- e:\windows\system32\mswebdvd.dll
2009-08-04 20:56 . 2008-04-13 16:55 2192896 ------w- e:\windows\system32\ntoskrnl.exe
2009-08-04 17:26 . 2008-04-13 18:55 2069760 ------w- e:\windows\system32\ntkrnlpa.exe
2009-07-29 04:34 . 2008-04-13 17:13 119808 ----a-w- e:\windows\system32\t2embed.dll
2009-07-29 04:34 . 2008-04-13 17:13 81920 ----a-w- e:\windows\system32\fontsub.dll
2009-07-28 14:34 . 2009-10-18 11:59 55656 ----a-w- e:\windows\system32\drivers\avgntflt.sys
.

------- Sigcheck -------

[-] 2009-01-05 . 0CF0382F318E5349DC94DB9120D34A6D . 1571840 . . [5.1.2600.5512] . . e:\windows\system32\sfcfiles.dll
.
((((((((((((((((((((((((((((( SnapShot@2009-10-18_15.45.07 )))))))))))))))))))))))))))))))))))))))))
Avatar utente
scaccia
Neo Iscritto
Neo Iscritto
 
Messaggi: 10
Iscritto il: dom ott 18, 2009 2:47 pm

Re: worm bagle

Messaggioda scaccia » lun ott 19, 2009 2:18 pm

Seconda parte:

.
+ 2008-09-30 14:45 . 2008-09-30 14:45 91656 e:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb\msxml4r.dll
+ 2009-10-18 21:10 . 2009-10-18 21:10 82432 e:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a\msxml4r.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 55808 e:\windows\system32\WudfSvc.dll
+ 2006-09-28 18:13 . 2006-09-28 18:13 95344 e:\windows\system32\WUDFCoinstaller.dll
+ 2006-11-02 09:52 . 2006-11-02 09:52 41984 e:\windows\system32\wpdshextres.dll
+ 2006-10-18 18:00 . 2006-10-18 18:00 17408 e:\windows\system32\wpdshextautoplay.exe
+ 2005-01-28 11:44 . 2006-10-18 19:47 63488 e:\windows\system32\wpdmtpus.dll
+ 2005-01-28 11:44 . 2006-10-18 19:47 35840 e:\windows\system32\wpdconns.dll
+ 2008-04-13 17:13 . 2006-11-02 20:56 99840 e:\windows\system32\wmpshell.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 37376 e:\windows\system32\wmdmps.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 33792 e:\windows\system32\wmdmlog.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 73728 e:\windows\system32\spool\drivers\w32x86\3\hpztbi09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 49152 e:\windows\system32\spool\drivers\w32x86\3\hpzrer09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 81920 e:\windows\system32\spool\drivers\w32x86\3\hpzflt09.dll
+ 2009-10-18 16:29 . 2007-07-27 08:41 16760 e:\windows\system32\spmsg.dll
+ 2001-12-04 11:00 . 2009-10-19 12:45 58732 e:\windows\system32\perfc009.dat
+ 2009-02-05 22:33 . 2009-02-05 22:33 54544 e:\windows\system32\PCLEGetGuid.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 32768 e:\windows\system32\netfxperf.dll
+ 2002-01-05 01:38 . 2002-01-05 01:38 54784 e:\windows\system32\msvci70.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 27136 e:\windows\system32\mspmsnsv.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 74240 e:\windows\system32\mscories.dll
+ 2009-02-05 22:35 . 2009-02-05 22:35 38160 e:\windows\system32\MLPagAx.dll
+ 2007-01-25 23:04 . 2007-01-25 23:04 27648 e:\windows\system32\ma32.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 11264 e:\windows\system32\LAPRXY.dll
+ 2006-09-28 17:00 . 2006-09-28 17:00 82944 e:\windows\system32\drivers\WudfRd.sys
+ 2006-09-28 16:55 . 2006-09-28 16:55 77568 e:\windows\system32\drivers\WudfPf.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 19200 e:\windows\system32\drivers\WSTCODEC.SYS
+ 2005-01-28 11:44 . 2006-10-18 18:00 38528 e:\windows\system32\drivers\wpdusb.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 15232 e:\windows\system32\drivers\StreamIP.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 11136 e:\windows\system32\drivers\SLIP.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 10880 e:\windows\system32\drivers\NdisIP.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 85248 e:\windows\system32\drivers\NABTSFEC.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 17024 e:\windows\system32\drivers\CCDECODE.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 19200 e:\windows\system32\dllcache\wstcodec.sys
+ 2008-04-13 17:13 . 2006-11-02 20:56 99840 e:\windows\system32\dllcache\wmpshell.dll
+ 2009-10-18 11:48 . 2006-11-02 20:56 64000 e:\windows\system32\dllcache\wmplayer.exe
+ 2009-10-18 11:48 . 2006-11-02 20:56 96256 e:\windows\system32\dllcache\wmpband.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 37376 e:\windows\system32\dllcache\wmdmps.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 33792 e:\windows\system32\dllcache\wmdmlog.dll
+ 2009-10-18 18:01 . 2008-04-13 09:46 15232 e:\windows\system32\dllcache\streamip.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 11136 e:\windows\system32\dllcache\slip.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 10880 e:\windows\system32\dllcache\ndisip.sys
+ 2009-10-18 18:01 . 2008-04-13 09:46 85248 e:\windows\system32\dllcache\nabtsfec.sys
+ 2008-04-13 17:13 . 2006-10-18 19:47 27136 e:\windows\system32\dllcache\mspmsnsv.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 11264 e:\windows\system32\dllcache\LAPRXY.dll
+ 2009-10-18 18:01 . 2008-04-13 09:46 17024 e:\windows\system32\dllcache\ccdecode.sys
+ 2005-09-23 05:28 . 2005-09-23 05:28 83456 e:\windows\system32\dfshim.dll
+ 2003-03-18 17:05 . 2003-03-18 17:05 89088 e:\windows\system32\atl71.dll
+ 2002-01-05 00:18 . 2002-01-05 00:18 84992 e:\windows\system32\atl70.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 28160 e:\windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 71680 e:\windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
+ 2005-09-23 05:28 . 2005-09-23 05:28 86016 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 47616 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 81920 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 81920 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 85504 e:\windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 59072 e:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 32768 e:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 53248 e:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 78336 e:\windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 14848 e:\windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 96440 e:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2005-09-23 05:29 . 2005-09-23 05:29 22528 e:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 10240 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 66240 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 67072 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 81408 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 36864 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 73216 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 69632 e:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 87552 e:\windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 12800 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 32768 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 28672 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 73728 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 36864 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
+ 2005-09-23 04:36 . 2005-09-23 04:36 85504 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.3082.dll
+ 2005-09-23 04:29 . 2005-09-23 04:29 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.3076.dll
+ 2005-09-23 04:47 . 2005-09-23 04:47 84480 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.2070.dll
+ 2005-09-23 04:30 . 2005-09-23 04:30 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.2052.dll
+ 2005-09-23 04:47 . 2005-09-23 04:47 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1055.dll
+ 2005-09-23 04:47 . 2005-09-23 04:47 81920 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1053.dll
+ 2005-09-23 04:47 . 2005-09-23 04:47 82432 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1049.dll
+ 2005-09-23 04:47 . 2005-09-23 04:47 82432 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1046.dll
+ 2005-09-23 04:46 . 2005-09-23 04:46 83456 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1045.dll
+ 2005-09-23 04:46 . 2005-09-23 04:46 81920 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1044.dll
+ 2005-09-23 04:46 . 2005-09-23 04:46 83456 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1043.dll
+ 2005-09-23 04:44 . 2005-09-23 04:44 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1042.dll
+ 2005-09-23 04:42 . 2005-09-23 04:42 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1041.dll
+ 2005-09-23 04:40 . 2005-09-23 04:40 84480 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1040.dll
+ 2005-09-23 04:40 . 2005-09-23 04:40 83968 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1038.dll
+ 2005-09-23 04:40 . 2005-09-23 04:40 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1037.dll
+ 2005-09-23 04:38 . 2005-09-23 04:38 86016 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1036.dll
+ 2005-09-23 04:38 . 2005-09-23 04:38 81408 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1035.dll
+ 2005-09-23 01:46 . 2005-09-23 01:46 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1033.dll
+ 2005-09-23 04:36 . 2005-09-23 04:36 87552 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1032.dll
+ 2005-09-23 04:34 . 2005-09-23 04:34 85504 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1031.dll
+ 2005-09-23 04:34 . 2005-09-23 04:34 81920 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1030.dll
+ 2005-09-23 04:34 . 2005-09-23 04:34 82944 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1029.dll
+ 2005-09-23 04:32 . 2005-09-23 04:32 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1028.dll
+ 2005-09-23 04:29 . 2005-09-23 04:29 80896 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.res.1025.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 40960 e:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 72192 e:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 55296 e:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 28672 e:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 36864 e:\windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 52736 e:\windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 31936 e:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 68608 e:\windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 17920 e:\windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 13312 e:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 76984 e:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 88576 e:\windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 29888 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 29896 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 26824 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 13824 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 70656 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 23552 e:\windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 10752 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 36864 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 55488 e:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 87552 e:\windows\Microsoft.NET\Framework\v2.0.50727\alink.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 10752 e:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 18944 e:\windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 86528 e:\windows\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 72704 e:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2009-10-18 16:29 . 2009-10-18 16:29 49664 e:\windows\Installer\57744.msi
+ 2009-10-18 21:11 . 2009-10-18 21:11 69632 e:\windows\Installer\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}\VideoSpin.exe
+ 2009-10-18 21:11 . 2009-10-18 21:11 65536 e:\windows\Installer\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}\SC_ReadMe.exe
+ 2009-10-18 21:11 . 2009-10-18 21:11 97527 e:\windows\Installer\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}\SC_HelpTopic_20C7EA5E50C045AE852E20F89C45899E.exe
+ 2009-10-18 16:30 . 2009-10-18 16:30 32768 e:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
+ 2009-10-18 21:28 . 2009-10-18 21:28 81920 e:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\1de941a06c99b84780ee3092db0b9f0c\Microsoft.Build.Framework.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 15360 e:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\ce0fd669cec8484d8e01d8af8acdc7e2\dfsvc.ni.exe
+ 2009-10-18 21:27 . 2009-10-18 21:27 26624 e:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\7a523d01c8d26c4fb22e5b36b2537f57\Accessibility.ni.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 86016 e:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 81920 e:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 81920 e:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 32768 e:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 12800 e:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 28672 e:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 73728 e:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 36864 e:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 36864 e:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 13312 e:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 10752 e:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 72192 e:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 68608 e:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\wmvdmoe2.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\wmvdmod.dll
+ 2005-01-28 11:44 . 2006-10-18 19:47 4096 e:\windows\system32\WMVADVE.DLL
+ 2005-01-28 11:44 . 2006-10-18 19:47 4096 e:\windows\system32\WMVADVD.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\wmsdmoe2.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\wmsdmod.dll
+ 2005-01-28 11:44 . 2006-10-18 19:58 8704 e:\windows\system32\wdfmgr.exe
+ 2005-01-28 11:44 . 2006-10-18 19:47 4096 e:\windows\system32\wdfapi.dll
+ 2005-01-28 11:44 . 2006-10-18 19:58 8704 e:\windows\system32\uwdf.exe
+ 2005-09-23 05:29 . 2005-09-23 05:29 6144 e:\windows\system32\mui\0409\mscorees.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\MPG4DMOD.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\MP4SDMOD.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\MP43DMOD.dll
+ 2009-10-18 18:01 . 2008-04-13 09:39 5504 e:\windows\system32\drivers\MSTEE.sys
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\wmvdmoe2.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\wmvdmod.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\wmsdmoe2.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\wmsdmod.dll
+ 2009-10-18 18:01 . 2008-04-13 09:39 5504 e:\windows\system32\dllcache\mstee.sys
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\MPG4DMOD.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\MP4SDMOD.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 4096 e:\windows\system32\dllcache\MP43DMOD.dll
+ 2008-04-13 16:48 . 2006-11-02 20:54 7680 e:\windows\system32\dllcache\asferror.dll
+ 2008-04-13 16:48 . 2006-11-02 20:54 7680 e:\windows\system32\asferror.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 7680 e:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 9216 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 7168 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5632 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 5632 e:\windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 8192 e:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 9728 e:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 9216 e:\windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 4608 e:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 8192 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 4608 e:\windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 7680 e:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 7680 e:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 7680 e:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 7680 e:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_wminet_utils.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_VsaVb7rt.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_system.enterpriseservices.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_system.data.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_system.configuration.install.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_mscorsec.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_mscorrc.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_mscordbi.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5632 e:\windows\Microsoft.NET\Framework\sbs_microsoft.vsa.vb.codedomprocessor.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_microsoft.jscript.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_iehost.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 5120 e:\windows\Microsoft.NET\Framework\sbs_diasymreader.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 7168 e:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 5632 e:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 5632 e:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 8192 e:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 114176 e:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 258048 e:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 626688 e:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcr80.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 548864 e:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcp80.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 479232 e:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\msvcm80.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 316416 e:\windows\system32\WUDFx.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 165376 e:\windows\system32\WudfPlatform.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 146432 e:\windows\system32\WudfHost.exe
+ 2005-01-28 11:44 . 2006-10-18 19:47 356352 e:\windows\system32\wpdsp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 133632 e:\windows\system32\WPDShServiceObj.dll
+ 2005-01-28 11:44 . 2006-10-18 19:47 154624 e:\windows\system32\wpdmtp.dll
+ 2005-01-28 11:44 . 2006-10-18 19:47 629760 e:\windows\system32\wpd_ci.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 656896 e:\windows\system32\WMVXENCD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 767488 e:\windows\system32\WMVSENCD.dll
+ 2008-04-13 17:13 . 2009-04-01 21:02 604160 e:\windows\system32\wmspdmod.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 204288 e:\windows\system32\wmpsrcwp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 130048 e:\windows\system32\wmpps.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 613376 e:\windows\system32\wmpmde.dll
+ 2006-10-18 19:47 . 2008-06-24 16:12 295936 e:\windows\system32\wmpeffects.dll
+ 2008-04-13 17:13 . 2009-07-13 21:43 286208 e:\windows\system32\wmpdxm.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 242688 e:\windows\system32\wmpasf.dll
+ 2008-04-13 17:13 . 2008-06-18 03:03 938496 e:\windows\system32\WMNetmgr.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 157184 e:\windows\system32\wmidx.dll
+ 2008-04-13 16:51 . 2006-11-02 20:56 251904 e:\windows\system32\wmerror.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 535040 e:\windows\system32\wmdrmsdk.dll
+ 2005-01-28 11:44 . 2006-10-18 19:47 348672 e:\windows\system32\wmdrmnet.dll
+ 2005-01-28 11:44 . 2006-10-18 19:47 429056 e:\windows\system32\wmdrmdev.dll
+ 2008-04-13 17:13 . 2007-10-25 07:28 222720 e:\windows\system32\wmasf.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 757248 e:\windows\system32\WMADMOD.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 163891 e:\windows\system32\spool\drivers\w32x86\3\hpzvip09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 442368 e:\windows\system32\spool\drivers\w32x86\3\hpztbx09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 188416 e:\windows\system32\spool\drivers\w32x86\3\hpztbu09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 172032 e:\windows\system32\spool\drivers\w32x86\3\hpzstw09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 376832 e:\windows\system32\spool\drivers\w32x86\3\hpzstc09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 327680 e:\windows\system32\spool\drivers\w32x86\3\hpzrm309.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 380928 e:\windows\system32\spool\drivers\w32x86\3\hpzres09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 335872 e:\windows\system32\spool\drivers\w32x86\3\hpzpre09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 479232 e:\windows\system32\spool\drivers\w32x86\3\hpzpm309.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 147512 e:\windows\system32\spool\drivers\w32x86\3\hpzlnt09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 200704 e:\windows\system32\spool\drivers\w32x86\3\hpzjui09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 221184 e:\windows\system32\spool\drivers\w32x86\3\hpzime09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 643072 e:\windows\system32\spool\drivers\w32x86\3\hpzeng09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 270336 e:\windows\system32\spool\drivers\w32x86\3\hpzcon09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 208896 e:\windows\system32\spool\drivers\w32x86\3\hpzcoi09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 245760 e:\windows\system32\spool\drivers\w32x86\3\hpzcfg09.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 204800 e:\windows\system32\spool\drivers\w32x86\3\hpz2ku09.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 120521 e:\windows\system32\spool\drivers\w32x86\3\hpf4bk09.dat
+ 2009-02-05 22:35 . 2009-02-05 22:35 189712 e:\windows\system32\RALMain.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 211456 e:\windows\system32\qasf.dll
+ 2007-06-21 19:55 . 2007-06-21 19:55 401408 e:\windows\system32\pvmjpg30.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 199168 e:\windows\system32\PortableDeviceWMDRM.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 132096 e:\windows\system32\PortableDeviceWiaCompat.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 166912 e:\windows\system32\PortableDeviceTypes.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 101888 e:\windows\system32\PortableDeviceClassExtension.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 284160 e:\windows\system32\PortableDeviceApi.dll
+ 2001-12-04 11:00 . 2009-10-19 12:45 392432 e:\windows\system32\perfh009.dat
+ 2008-04-13 17:13 . 2006-10-18 19:47 321536 e:\windows\system32\mswmdm.dll
+ 2003-03-18 18:14 . 2003-03-18 18:14 499712 e:\windows\system32\msvcp71.dll
+ 2008-04-13 17:14 . 2006-12-04 14:21 414720 e:\windows\system32\msscp.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 175616 e:\windows\system32\mspmsp.dll
+ 2008-04-13 17:14 . 2006-10-18 19:47 179712 e:\windows\system32\msnetobj.dll
+ 2006-10-02 13:28 . 2006-10-02 13:28 312128 e:\windows\system32\msdelta.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 150016 e:\windows\system32\mscorier.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 270848 e:\windows\system32\mscoree.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 259072 e:\windows\system32\MPG4DECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 317440 e:\windows\system32\MP4SDECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 259072 e:\windows\system32\MP43DECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 212992 e:\windows\system32\MFPLAT.dll
+ 2002-01-05 02:36 . 2002-01-05 02:36 964608 e:\windows\system32\mfc70u.dll
+ 2007-01-25 23:04 . 2007-01-25 23:04 138752 e:\windows\system32\mase32.dll
+ 2008-04-13 17:14 . 2008-06-17 23:09 100864 e:\windows\system32\logagent.exe
+ 2003-11-10 23:21 . 2003-11-10 23:21 147512 e:\windows\system32\hpzlnt09.dll
+ 2009-10-18 13:39 . 2009-10-19 12:21 104624 e:\windows\system32\FNTCACHE.DAT
+ 2008-04-13 17:14 . 2006-10-18 19:47 991744 e:\windows\system32\drmv2clt.dll
+ 2006-10-18 18:00 . 2006-10-18 18:00 249856 e:\windows\system32\drmupgds.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 671232 e:\windows\system32\drivers\UMDF\wpdmtpdr.dll
+ 2008-04-13 17:13 . 2009-04-01 21:02 604160 e:\windows\system32\dllcache\wmspdmod.dll
+ 2008-04-13 17:13 . 2009-07-13 21:43 286208 e:\windows\system32\dllcache\wmpdxm.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 242688 e:\windows\system32\dllcache\wmpasf.dll
+ 2008-04-13 17:13 . 2008-06-18 03:03 938496 e:\windows\system32\dllcache\WMNetmgr.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 157184 e:\windows\system32\dllcache\wmidx.dll
+ 2008-04-13 16:51 . 2006-11-02 20:56 251904 e:\windows\system32\dllcache\wmerror.dll
+ 2008-04-13 17:13 . 2007-10-25 07:28 222720 e:\windows\system32\dllcache\wmasf.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 757248 e:\windows\system32\dllcache\WMADMOD.dll
+ 2008-04-13 17:14 . 2007-06-27 13:48 318464 e:\windows\system32\dllcache\unregmp2.exe
+ 2008-04-13 17:13 . 2006-10-18 19:47 211456 e:\windows\system32\dllcache\qasf.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 321536 e:\windows\system32\dllcache\mswmdm.dll
+ 2008-04-13 17:14 . 2006-12-04 14:21 414720 e:\windows\system32\dllcache\msscp.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 175616 e:\windows\system32\dllcache\mspmsp.dll
+ 2008-04-13 17:14 . 2006-10-18 19:47 179712 e:\windows\system32\dllcache\msnetobj.dll
+ 2009-10-18 11:48 . 2006-11-02 20:54 244224 e:\windows\system32\dllcache\mpvis.dll
+ 2008-04-13 17:14 . 2008-06-17 23:09 100864 e:\windows\system32\dllcache\logagent.exe
+ 2008-04-13 17:14 . 2006-10-18 19:47 991744 e:\windows\system32\dllcache\drmv2clt.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 229376 e:\windows\system32\dllcache\cewmdm.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 542720 e:\windows\system32\dllcache\blackbox.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 229376 e:\windows\system32\cewmdm.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 542720 e:\windows\system32\blackbox.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 276992 e:\windows\system32\audiodev.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 298496 e:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 823296 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 835584 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 260096 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 114688 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 258048 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 131072 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 299008 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 258048 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 368640 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 114176 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 258048 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 700416 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 188416 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 397312 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 884736 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 716800 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 482304 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 389120 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 110592 e:\windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 377344 e:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 107520 e:\windows\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 136192 e:\windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 226816 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 330752 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 102400 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 326144 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 288768 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 800768 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 667648 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 372736 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 110592 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 745472 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 647168 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 413696 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll
+ 2005-09-23 05:57 . 2005-09-23 05:57 245408 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\unicows.dll
+ 2005-09-23 05:01 . 2005-09-23 05:01 609472 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 224952 e:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 788992 e:\windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 547840 e:\windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 106496 e:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 503808 e:\windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 106496 e:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 138240 e:\windows\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 208896 e:\windows\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 183808 e:\windows\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 136192 e:\windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
+ 2009-10-18 16:30 . 2009-10-18 16:30 432640 e:\windows\Installer\5775c.msi
+ 2009-10-18 16:23 . 2009-10-18 16:23 509952 e:\windows\Installer\57739.msi
+ 2008-04-13 17:14 . 2007-06-27 13:48 318464 e:\windows\inf\unregmp2.exe
+ 2009-10-18 21:29 . 2009-10-18 21:29 237568 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\5292431a2506f3498f7ac961f744b3fe\System.Web.RegularExpressions.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 684032 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\f916fd779db5e740ba4530118cfb6dc3\System.Transactions.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 729088 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\0cafa4ab59db134db0863aeee4b276a2\System.Security.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 294912 e:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\ea768e73dc95f94fb0848dd00b8c85dc\System.EnterpriseServices.Wrapper.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 659456 e:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\ea768e73dc95f94fb0848dd00b8c85dc\System.EnterpriseServices.ni.dll
+ 2009-10-18 21:02 . 2009-10-18 21:02 229376 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\9bd7b195df4e0c479a00a39ddf32aa16\System.Drawing.Design.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 512000 e:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\ad6495bce498e94eb5d63a1a36c3b42e\System.DirectoryServices.Protocols.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 962560 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\c26726d916e2b14294a888cb1f0d817c\System.Configuration.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 163840 e:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4c46b39b2b936644ba27cb040fe2567a\Microsoft.Build.Utilities.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 880640 e:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\876780ab17efd44798febd4b22752917\Microsoft.Build.Engine.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 237568 e:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\06e546844b8cde439d23b345a3d4b640\CustomMarshalers.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 860160 e:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\7468a8c80c95734db095425b5bbcc775\AspNetMMCExt.ni.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 823296 e:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 835584 e:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 114688 e:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 258048 e:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 131072 e:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 299008 e:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 258048 e:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 368640 e:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 700416 e:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 397312 e:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 188416 e:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 884736 e:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 716800 e:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 389120 e:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 110592 e:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 667648 e:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 372736 e:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 110592 e:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 745472 e:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 647168 e:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 413696 e:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 503808 e:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 260096 e:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 114176 e:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 258048 e:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 482304 e:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-09-30 14:42 . 2008-09-30 14:42 1286152 e:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf\msxml4.dll
+ 2009-10-18 21:10 . 2009-10-18 21:10 1233920 e:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9818.0_x-ww_8ff50c5d\msxml4.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 2603008 e:\windows\system32\WpdShext.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1382912 e:\windows\system32\WMVSDECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1574912 e:\windows\system32\WMVENCOD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1543680 e:\windows\system32\WMVDECOD.dll
+ 2008-04-13 17:14 . 2009-05-20 02:56 2458112 e:\windows\system32\WMVCore.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 1329152 e:\windows\system32\WMSPDMOE.dll
+ 2008-04-13 16:52 . 2006-11-02 21:36 8284672 e:\windows\system32\wmploc.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1661440 e:\windows\system32\wmpencen.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 1117696 e:\windows\system32\WMADMOE.dll
+ 2003-11-10 23:21 . 2003-11-10 23:21 9748480 e:\windows\system32\spool\drivers\w32x86\3\hpzr3209.dll
+ 2008-09-30 14:43 . 2008-09-30 14:43 1286152 e:\windows\system32\msxml4.dll
+ 2003-03-18 19:12 . 2003-03-18 19:12 1047552 e:\windows\system32\mfc71u.dll
+ 2003-03-18 19:20 . 2003-03-18 19:20 1060864 e:\windows\system32\mfc71.dll
+ 2008-04-13 17:14 . 2009-05-20 02:56 2458112 e:\windows\system32\dllcache\WMVCore.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 1329152 e:\windows\system32\dllcache\WMSPDMOE.dll
+ 2008-04-13 16:52 . 2006-11-02 21:36 8284672 e:\windows\system32\dllcache\wmploc.dll
+ 2008-04-13 17:13 . 2006-10-18 19:47 1117696 e:\windows\system32\dllcache\WMADMOE.dll
+ 2009-10-18 11:48 . 2006-11-02 21:33 1678336 e:\windows\system32\dllcache\setup_wm.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 1306624 e:\windows\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
+ 2005-09-23 05:29 . 2005-09-23 05:29 1140920 e:\windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe
+ 2005-09-23 05:28 . 2005-09-23 05:28 2035712 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 5316608 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 5025792 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 3018752 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 5050368 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 2878976 e:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 5615616 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 4308992 e:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2005-09-23 05:28 . 2005-09-23 05:28 1144832 e:\windows\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
+ 2009-10-18 21:01 . 2009-10-18 21:01 2109440 e:\windows\Installer\100f3b4.msi
+ 2009-10-18 21:02 . 2009-10-18 21:02 8093696 e:\windows\assembly\NativeImages_v2.0.50727_32\System\2c72212b9c84bf4abd458c999c946641\System.ni.dll
+ 2009-10-18 21:04 . 2009-10-18 21:04 5640192 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\beabe6ca9e6fc94b8235da9e4bbcd96e\System.Xml.ni.dll
+ 2009-10-18 21:29 . 2009-10-18 21:29 1945600 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\f8ef8bc40272594bba4bc1fc2a16d3f2\System.Web.Services.ni.dll
+ 2009-10-18 21:29 . 2009-10-18 21:29 2310144 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\344e1b8a6eee6b40a1d938015d8d36c9\System.Web.Mobile.ni.dll
+ 2009-10-18 21:03 . 2009-10-18 21:03 1626112 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\e40a6c586513174883f745f485475ce4\System.Drawing.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 1220608 e:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\55d28a20d093044cad344c89bf593606\System.DirectoryServices.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 1712128 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\19c3ddd3bd493c4fa610419995551cbc\System.Deployment.ni.dll
+ 2009-10-18 21:04 . 2009-10-18 21:04 6688768 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\e803a9d2ef4daf4eaa58d67f440b9114\System.Data.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 1724416 e:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\107501b92c575543bf68f89a1b3562f4\Microsoft.VisualBasic.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:28 1691648 e:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\1703df59f1e9b04db7dc8187889e2d17\Microsoft.Build.Tasks.ni.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 3018752 e:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 2035712 e:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 5316608 e:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 5050368 e:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 5025792 e:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 2878976 e:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2009-10-18 21:00 . 2009-10-18 21:00 4308992 e:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2008-04-13 17:13 . 2009-07-13 21:43 10841088 e:\windows\system32\wmp.dll
+ 2008-04-13 17:13 . 2009-07-13 21:43 10841088 e:\windows\system32\dllcache\wmp.dll
+ 2005-09-23 05:48 . 2005-09-23 05:48 24863744 e:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\netfx.msi
+ 2009-10-18 16:30 . 2009-10-18 16:30 15709696 e:\windows\Installer\57750.msp
+ 2009-10-18 21:11 . 2009-10-18 21:11 21257728 e:\windows\Installer\10b686b.msi
+ 2009-10-18 21:03 . 2009-10-18 21:03 13107200 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\e20e97f368ce7a46ac5ff13eecc88c4a\System.Windows.Forms.ni.dll
+ 2009-10-18 21:28 . 2009-10-18 21:29 11808768 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\8043f983cf8a5247adb369163a20bbda\System.Web.ni.dll
+ 2009-10-18 21:05 . 2009-10-18 21:05 10723328 e:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\5d565e9a46fd6b4db1e6dba116de0c73\System.Design.ni.dll
+ 2009-10-18 21:02 . 2009-10-18 21:02 11411456 e:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\31437b4751194340af593a881fd67dbe\mscorlib.ni.dll
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="e:\programmi\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="e:\programmi\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 209153]
"Malwarebytes' Anti-Malware"="e:\programmi\Malwarebytes' Anti-Malware\mbamgui.exe" [2004-02-03 901120]
"COMODO Internet Security"="e:\programmi\COMODO\COMODO Internet Security\cfp.exe" [2009-10-18 1799952]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="e:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=e:\windows\system32\guard32.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"e:\\Programmi\\eMule\\eMule.exe"=
"e:\\Programmi\\Windows Live\\Messenger\\msnmsgr.exe"=
"e:\\Programmi\\Windows Live\\Messenger\\livecall.exe"=
"e:\\Programmi\\Pinnacle\\VideoSpin\\Programs\\RM.exe"=
"e:\\Programmi\\Pinnacle\\VideoSpin\\Programs\\umi.exe"=
"e:\\Programmi\\Pinnacle\\VideoSpin\\Programs\\VideoSpin.exe"=

R1 cmdGuard;COMODO Internet Security Sandbox Driver;e:\windows\system32\drivers\cmdguard.sys [18/10/2009 18.13.56 132296]
R1 cmdHlp;COMODO Internet Security Helper Driver;e:\windows\system32\drivers\cmdhlp.sys [18/10/2009 18.13.56 25160]
R2 MBAMService;MBAMService;e:\programmi\Malwarebytes' Anti-Malware\mbamservice.exe [18/10/2009 14.49.33 269648]
R3 MBAMProtector;MBAMProtector;e:\windows\system32\drivers\mbam.sys [18/10/2009 14.49.27 19160]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-19 14:53
Windows 5.1.2600 Service Pack 3 NTFS

detected NTDLL code modification:
ZwClose, ZwOpenFile

scansione processi nascosti ...

scansione entrate autostart nascoste ...

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0

**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

[HKEY_USERS\S-1-5-21-2000478354-152049171-1343024091-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,52,be,98,46,3c,fb,a1,41,9c,21,1f,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,52,be,98,46,3c,fb,a1,41,9c,21,1f,\
.
--------------------- Dlls caricate dai processi in esecuzione ---------------------

- - - - - - - > 'winlogon.exe'(624)
e:\windows\system32\guard32.dll

- - - - - - - > 'lsass.exe'(680)
e:\windows\system32\guard32.dll
.
Ora fine scansione: 2009-10-19 14.56.37
ComboFix-quarantined-files.txt 2009-10-19 12:56
ComboFix2.txt 2009-10-18 15:47

Pre-Run: 32.072.564.736 byte disponibili
Post-Run: 32.075.456.512 byte disponibili

634 --- E O F --- 2009-10-19 12:30
Avatar utente
scaccia
Neo Iscritto
Neo Iscritto
 
Messaggi: 10
Iscritto il: dom ott 18, 2009 2:47 pm

Re: worm bagle

Messaggioda scaccia » lun ott 19, 2009 2:19 pm

Ora sto in una partizione separata dell'Hard Disk ed è inutile dire che quella infetta è inutilizzabile, lentissima, non si apre nulla e aumenta a dismisura il file di ibernazione e il pagefile. Help [B)]
Avatar utente
scaccia
Neo Iscritto
Neo Iscritto
 
Messaggi: 10
Iscritto il: dom ott 18, 2009 2:47 pm

Re: worm bagle

Messaggioda Amantide » mar ott 20, 2009 10:47 am

Scarica FindyKill (by Chiquitine29)ed installalo (è in francese però è di facile comprensione).
Una volta installato chiudi tutte le applicazioni attive e disconnettiti dal internet, poi clicca sull'icona di FindyKill e nella finestra dos che si aprirà scrivi 2 e premi Invio. Attendi il termine della scansione e posta qui il log che trovi in C:\FindyKill.txt
...per volare alto, bisogna saper cadere...
Avatar utente
Amantide
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 8126
Iscritto il: lun feb 06, 2006 4:13 pm
Località: Abruzzo

Re: worm bagle

Messaggioda scaccia » mar ott 20, 2009 10:20 pm

Avevo gia usato il FindyKill ma niente, anzi al riavvio successivo il sistema operativo non si è più avviato [V] Grazie comunque! :)
Alla fine ho tolto tutto e messo openSuse [...]
Avatar utente
scaccia
Neo Iscritto
Neo Iscritto
 
Messaggi: 10
Iscritto il: dom ott 18, 2009 2:47 pm


Torna a Sicurezza

Chi c’è in linea

Visitano il forum: Nessuno e 15 ospiti

Powered by phpBB © 2002, 2005, 2007, 2008 phpBB Group
Traduzione Italiana phpBB.it

megalab.it: testata telematica quotidiana registrata al Tribunale di Cosenza n. 22/09 del 13.08.2009, editore Master New Media S.r.l.; © Copyright 2008 Master New Media S.r.l. a socio unico - P.I. 02947530784. GRUPPO EDIZIONI MASTER Spa Tutti i diritti sono riservati. Per la pubblicità: Master Advertising