Login Esegui login | Non sei registrato? Iscriviti ora (è gratuito!)
Username: Password:
  • Annuncio Pubblicitario

non riesco più a installare l'antivirus

Un virus si è intromesso nel tuo computer? Vuoi navigare in tutta sicurezza? Sono sicure le transazione online? Come impedire a malintenzionati di intromettersi nel tuo pc? Come proteggere i tuoi dati? Qui trovi le risposte a queste ed altre domande

non riesco più a installare l'antivirus

Messaggioda Delfino81 » lun nov 15, 2010 1:18 am

Ciao a tutti nono riesco a installare più l'antivirus,ho provato con AVG,Panda BitDefender ecc...ma nulla!!! [uhm]
Credo il mio pc ha il worm Bagle anche se sul task Manager non mi risulta comunque..Ho seguito già questo forum e ho provato già
provato a scansionare con Combofix,poi con GMER ma nn ne sono venuto ancora a capo...premetto che la modalità provvisoria non mi funziona +...CHE DEVO FARE...!!!
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda crazy.cat » lun nov 15, 2010 8:28 am

Già se ti funziona combofix e gmer non dovrebbe essere bagle.
Posta il log della scansione di combofix e poi vedremo cosa fare.
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » lun nov 15, 2010 9:52 pm

ok grazie per il tuo intervento... [:D] , per ora sto scansionando il mio HD con un box esterno...e già mi ha trovato due virus. [:)]
Spero si risolva così...in caso contrario inoltro il report di combofix.... [ciao]
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am


Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » lun nov 15, 2010 11:34 pm

Ciao ancora...a seguito della scansione dell 'HD non ho risolto il mio problema... [;)]ho trovato comunque numerosi- trojan back door e un virus di nome exploit.ms04-011, resta sempre che non riesco a installare nessun antivirus...ho rilaciato Combofix ed ecco il suo log report :

ComboFix 10-11-15.03 - Proprietario 15/11/2010 23.05.14.3.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.39.1040.18.1279.834 [GMT 1:00]
Eseguito da: c:\documents and settings\Proprietario\Desktop\ComboFix.exe
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\InfoSat.txt

.
((((((((((((((((((((((((( Files Creati Da 2010-10-15 al 2010-11-15 )))))))))))))))))))))))))))))))))))
.

2010-11-15 21:10 . 2010-11-15 21:10 -------- d-----w- C:\$AVG
2010-11-13 22:10 . 2010-11-13 22:10 -------- d-----w- c:\programmi\CCleaner
2010-11-13 21:40 . 2010-11-13 22:08 -------- d-----w- c:\documents and settings\Proprietario\Impostazioni locali\Dati applicazioni\Temp
2010-11-13 21:39 . 2010-11-13 21:47 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Alwil Software
2010-11-13 21:39 . 2010-11-13 21:39 -------- d-----w- c:\programmi\Alwil Software
2010-11-13 21:25 . 2010-11-13 21:25 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Avg7
2010-11-13 19:29 . 2010-11-13 19:29 -------- d-----w- c:\documents and settings\Proprietario\DoctorWeb
2010-11-13 18:59 . 2009-06-25 08:44 730112 ----a-w- c:\windows\system32\lsasrv.dll
2010-11-13 18:59 . 2009-06-22 11:34 92544 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-11-13 18:07 . 2010-11-14 23:33 -------- d-----w- c:\windows\system32\CatRoot_bak
2010-11-13 18:05 . 2009-10-23 14:27 3555328 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-11-13 18:04 . 2009-06-21 22:05 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-11-13 18:02 . 2008-06-14 17:59 272768 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-11-13 18:01 . 2009-11-21 16:38 470528 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-11-13 18:00 . 2010-06-14 14:30 743936 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-11-11 18:30 . 2008-05-01 14:31 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-11-11 18:29 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-11-11 18:23 . 2009-06-05 07:42 655872 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-11-11 18:20 . 2008-04-21 21:26 219136 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-11-11 18:16 . 2010-11-13 19:02 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\MFAData
2010-11-11 18:11 . 2010-11-11 18:11 -------- d-----w- c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\Google
2010-11-11 18:06 . 2010-11-11 18:06 -------- d-----w- c:\documents and settings\LocalService\Impostazioni locali\Dati applicazioni\Google

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-21 07:38 . 2008-04-21 07:38 38426952 ----a-w- c:\programmi\avg75free_524a1293.exe
.

((((((((((((((((((((((((((((( SnapShot@2010-11-13_22.32.51 )))))))))))))))))))))))))))))))))))))))))
.
+ 2002-09-16 23:47 . 2009-06-25 08:44 59392 c:\windows\system32\wdigest.dll
+ 2002-09-09 12:51 . 2009-06-15 11:32 78336 c:\windows\system32\telnet.exe
+ 2005-05-29 12:29 . 2009-10-21 06:00 75776 c:\windows\system32\strmfilt.dll
- 2005-05-29 12:29 . 2004-08-19 13:39 75776 c:\windows\system32\strmfilt.dll
- 2002-01-01 00:33 . 2008-07-08 13:06 18808 c:\windows\system32\spmsg.dll
+ 2002-01-01 00:33 . 2009-05-26 11:41 18808 c:\windows\system32\spmsg.dll
+ 2003-12-15 10:14 . 2009-06-25 08:44 56320 c:\windows\system32\secur32.dll
+ 2002-09-16 23:47 . 2009-02-06 16:54 35328 c:\windows\system32\sc.exe
+ 2003-12-15 10:14 . 2009-10-12 13:51 69632 c:\windows\system32\raschap.dll
- 2003-12-15 10:14 . 2004-08-19 13:39 69632 c:\windows\system32\raschap.dll
- 2003-12-15 10:14 . 2006-10-23 15:18 39424 c:\windows\system32\pngfilt.dll
+ 2003-12-15 10:14 . 2010-04-16 15:35 39424 c:\windows\system32\pngfilt.dll
- 2002-01-01 09:40 . 2010-11-13 19:06 48308 c:\windows\system32\perfc010.dat
+ 2002-01-01 09:40 . 2010-11-14 19:28 48308 c:\windows\system32\perfc010.dat
- 2002-01-01 09:39 . 2010-11-13 19:06 40664 c:\windows\system32\perfc009.dat
+ 2002-01-01 09:39 . 2010-11-14 19:28 40664 c:\windows\system32\perfc009.dat
+ 2005-05-24 07:59 . 2008-06-12 14:16 91648 c:\windows\system32\mtxoci.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 66560 c:\windows\system32\mtxclu.dll
- 2005-05-24 07:59 . 2006-03-01 19:43 66560 c:\windows\system32\mtxclu.dll
+ 2001-08-31 06:07 . 2009-11-27 17:33 17920 c:\windows\system32\msyuv.dll
+ 2002-09-16 23:46 . 2009-11-27 16:38 28672 c:\windows\system32\msvidc32.dll
- 2003-12-15 10:15 . 2004-08-19 13:39 11264 c:\windows\system32\msrle32.dll
+ 2003-12-15 10:15 . 2009-11-27 16:38 11264 c:\windows\system32\msrle32.dll
- 2002-09-16 23:46 . 2004-08-19 13:39 58880 c:\windows\system32\msdtclog.dll
+ 2002-09-16 23:46 . 2008-06-12 14:16 58880 c:\windows\system32\msdtclog.dll
+ 2003-12-15 10:15 . 2008-06-24 16:23 74240 c:\windows\system32\mscms.dll
- 2003-12-15 10:15 . 2005-06-29 01:49 74240 c:\windows\system32\mscms.dll
+ 2005-05-22 21:09 . 2009-09-04 20:45 58880 c:\windows\system32\msasn1.dll
- 2002-09-16 23:46 . 2006-10-23 15:18 16384 c:\windows\system32\jsproxy.dll
+ 2002-09-16 23:46 . 2010-04-16 15:35 16384 c:\windows\system32\jsproxy.dll
+ 2001-08-31 06:07 . 2009-11-27 16:38 48128 c:\windows\system32\iyuv_32.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 96768 c:\windows\system32\inseng.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 96768 c:\windows\system32\inseng.dll
- 2005-05-29 12:29 . 2004-08-19 13:39 81920 c:\windows\system32\ieencode.dll
+ 2005-05-29 12:29 . 2010-04-16 15:35 81920 c:\windows\system32\ieencode.dll
+ 2005-05-29 12:29 . 2009-10-21 06:00 25088 c:\windows\system32\httpapi.dll
+ 2002-09-16 23:45 . 2009-10-15 17:20 82432 c:\windows\system32\fontsub.dll
+ 2005-05-29 12:29 . 2010-04-16 15:35 55808 c:\windows\system32\extmgr.dll
- 2005-05-29 12:29 . 2006-10-23 15:18 55808 c:\windows\system32\extmgr.dll
+ 2009-06-25 08:44 . 2009-06-25 08:44 59392 c:\windows\system32\dllcache\wdigest.dll
+ 2009-06-15 11:32 . 2009-06-15 11:32 78336 c:\windows\system32\dllcache\telnet.exe
+ 2009-10-21 06:00 . 2009-10-21 06:00 75776 c:\windows\system32\dllcache\strmfilt.dll
+ 2009-06-25 08:44 . 2009-06-25 08:44 56320 c:\windows\system32\dllcache\secur32.dll
+ 2002-09-16 23:47 . 2009-02-06 16:54 35328 c:\windows\system32\dllcache\sc.exe
+ 2009-10-12 13:51 . 2009-10-12 13:51 69632 c:\windows\system32\dllcache\raschap.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 91648 c:\windows\system32\dllcache\mtxoci.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 66560 c:\windows\system32\dllcache\mtxclu.dll
+ 2009-11-27 17:33 . 2009-11-27 17:33 17920 c:\windows\system32\dllcache\msyuv.dll
+ 2002-09-16 23:46 . 2009-11-27 16:38 28672 c:\windows\system32\dllcache\msvidc32.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 11264 c:\windows\system32\dllcache\msrle32.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 58880 c:\windows\system32\dllcache\msdtclog.dll
+ 2008-06-24 16:23 . 2008-06-24 16:23 74240 c:\windows\system32\dllcache\mscms.dll
+ 2009-09-04 20:45 . 2009-09-04 20:45 58880 c:\windows\system32\dllcache\msasn1.dll
+ 2009-06-22 11:34 . 2009-06-22 11:34 92544 c:\windows\system32\dllcache\ksecdd.sys
+ 2006-05-10 05:23 . 2010-04-16 15:35 16384 c:\windows\system32\dllcache\jsproxy.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 16384 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 48128 c:\windows\system32\dllcache\iyuv_32.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 96768 c:\windows\system32\dllcache\inseng.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 96768 c:\windows\system32\dllcache\inseng.dll
+ 2010-04-16 15:35 . 2010-04-16 15:35 81920 c:\windows\system32\dllcache\ieencode.dll
- 2006-05-09 11:00 . 2006-10-23 11:00 18432 c:\windows\system32\dllcache\iedw.exe
+ 2006-05-09 11:00 . 2010-04-16 13:36 18432 c:\windows\system32\dllcache\iedw.exe
+ 2009-10-21 06:00 . 2009-10-21 06:00 25088 c:\windows\system32\dllcache\httpapi.dll
+ 2002-09-16 23:45 . 2009-10-15 17:20 82432 c:\windows\system32\dllcache\fontsub.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 55808 c:\windows\system32\dllcache\extmgr.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 55808 c:\windows\system32\dllcache\extmgr.dll
+ 2009-12-14 07:35 . 2009-12-14 07:35 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2010-11-13 17:59 . 2005-07-26 04:40 60416 c:\windows\system32\dllcache\colbact.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 85504 c:\windows\system32\dllcache\avifil32.dll
+ 2009-07-17 18:56 . 2009-07-17 18:56 58880 c:\windows\system32\dllcache\atl.dll
+ 2010-03-05 14:55 . 2010-03-05 14:55 65536 c:\windows\system32\dllcache\asycfilt.dll
+ 2002-09-16 23:45 . 2009-12-14 07:35 33280 c:\windows\system32\csrsrv.dll
- 2003-12-15 10:16 . 2004-08-19 13:39 85504 c:\windows\system32\avifil32.dll
+ 2003-12-15 10:16 . 2009-11-27 16:38 85504 c:\windows\system32\avifil32.dll
- 2003-12-15 10:16 . 2004-08-19 13:39 58880 c:\windows\system32\atl.dll
+ 2003-12-15 10:16 . 2009-07-17 18:56 58880 c:\windows\system32\atl.dll
+ 2002-09-16 23:44 . 2010-03-05 14:55 65536 c:\windows\system32\asycfilt.dll
+ 2009-11-27 17:33 . 2009-11-27 17:33 17920 c:\windows\Driver Cache\i386\msyuv.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
+ 2001-08-31 06:08 . 2009-11-27 16:38 8704 c:\windows\system32\tsbyuv.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 8704 c:\windows\system32\dllcache\tsbyuv.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
+ 2005-05-17 00:42 . 2010-04-16 13:47 368640 c:\windows\system32\xpsp3res.dll
+ 2005-05-29 12:29 . 2009-04-01 22:02 604160 c:\windows\system32\wmspdmod.dll
- 2002-09-16 23:47 . 2006-08-17 12:29 132096 c:\windows\system32\wkssvc.dll
+ 2002-09-16 23:47 . 2009-06-10 06:30 132096 c:\windows\system32\wkssvc.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 664576 c:\windows\system32\wininet.dll
+ 2005-02-06 09:45 . 2009-08-25 09:46 352256 c:\windows\system32\winhttp.dll
+ 2003-12-15 10:16 . 2009-02-06 16:39 227840 c:\windows\system32\wbem\wmiprvse.exe
+ 2003-12-15 10:16 . 2009-02-09 10:18 453120 c:\windows\system32\wbem\wmiprvsd.dll
+ 2003-12-15 10:16 . 2009-02-09 10:18 473088 c:\windows\system32\wbem\fastprox.dll
+ 2003-12-15 10:13 . 2010-03-10 08:02 417792 c:\windows\system32\vbscript.dll
- 2003-12-15 10:13 . 2004-08-19 13:39 417792 c:\windows\system32\vbscript.dll
+ 2004-12-07 17:18 . 2010-04-16 15:35 625664 c:\windows\system32\urlmon.dll
+ 2002-09-16 23:47 . 2009-10-15 21:50 119808 c:\windows\system32\t2embed.dll
+ 2003-12-15 10:14 . 2009-08-26 08:14 247326 c:\windows\system32\strmdll.dll
- 2004-12-07 17:18 . 2006-10-23 15:18 474624 c:\windows\system32\shlwapi.dll
+ 2004-12-07 17:18 . 2010-04-16 15:35 474624 c:\windows\system32\shlwapi.dll
+ 2002-09-16 23:47 . 2009-02-09 10:05 111104 c:\windows\system32\services.exe
+ 2005-05-22 21:09 . 2009-06-25 08:44 168448 c:\windows\system32\schannel.dll
+ 2005-01-14 05:34 . 2009-02-09 10:19 399360 c:\windows\system32\rpcss.dll
+ 2005-05-24 07:59 . 2009-04-15 15:16 584192 c:\windows\system32\rpcrt4.dll
+ 2003-12-15 10:14 . 2009-10-12 13:51 112640 c:\windows\system32\rastls.dll
- 2003-12-15 10:14 . 2004-08-19 13:39 112640 c:\windows\system32\rastls.dll
+ 2002-01-01 09:40 . 2010-11-14 19:28 346260 c:\windows\system32\perfh010.dat
- 2002-01-01 09:40 . 2010-11-13 19:06 346260 c:\windows\system32\perfh010.dat
- 2002-01-01 09:39 . 2010-11-13 19:06 312946 c:\windows\system32\perfh009.dat
+ 2002-01-01 09:39 . 2010-11-14 19:28 312946 c:\windows\system32\perfh009.dat
- 2003-12-15 10:14 . 2004-08-19 13:39 285696 c:\windows\system32\pdh.dll
+ 2003-12-15 10:14 . 2009-03-06 14:44 285696 c:\windows\system32\pdh.dll
+ 2003-12-15 10:14 . 2009-10-13 10:51 267776 c:\windows\system32\oakley.dll
- 2003-12-15 10:14 . 2004-08-19 13:39 267776 c:\windows\system32\oakley.dll
+ 2002-01-01 09:39 . 2009-02-09 10:18 736256 c:\windows\system32\ntdll.dll
+ 2002-09-16 23:46 . 2008-06-20 17:39 247296 c:\windows\system32\mswsock.dll
- 2002-09-16 23:46 . 2004-08-19 13:39 247296 c:\windows\system32\mswsock.dll
+ 2003-12-15 10:14 . 2009-08-05 09:05 205312 c:\windows\system32\mswebdvd.dll
+ 2002-09-16 23:46 . 2009-09-11 14:34 133632 c:\windows\system32\msv1_0.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 532480 c:\windows\system32\mstime.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 532480 c:\windows\system32\mstime.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 146432 c:\windows\system32\msrating.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 146432 c:\windows\system32\msrating.dll
- 2003-12-15 10:15 . 2004-08-19 13:39 346112 c:\windows\system32\mspaint.exe
+ 2003-12-15 10:15 . 2009-12-17 07:58 346112 c:\windows\system32\mspaint.exe
+ 2003-12-15 10:15 . 2010-04-16 15:35 449024 c:\windows\system32\mshtmled.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 161792 c:\windows\system32\msdtcuiu.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 956928 c:\windows\system32\msdtctm.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 428032 c:\windows\system32\msdtcprx.dll
+ 2002-09-16 23:46 . 2009-05-07 15:41 346112 c:\windows\system32\localspl.dll
+ 2003-12-15 10:15 . 2009-06-25 08:44 298496 c:\windows\system32\kerberos.dll
+ 2003-12-15 10:15 . 2010-01-29 15:06 683520 c:\windows\system32\inetcomm.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 251392 c:\windows\system32\iepeers.dll
- 2005-02-18 15:36 . 2006-10-23 15:18 251392 c:\windows\system32\iepeers.dll
+ 2005-05-22 21:09 . 2008-10-23 12:59 283648 c:\windows\system32\gdi32.dll
+ 2002-01-01 08:43 . 2010-11-14 17:22 246312 c:\windows\system32\FNTCACHE.DAT
- 2002-01-01 08:43 . 2001-12-31 23:46 246312 c:\windows\system32\FNTCACHE.DAT
+ 2005-05-24 07:59 . 2008-07-07 20:31 253952 c:\windows\system32\es.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 205312 c:\windows\system32\dxtrans.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 205312 c:\windows\system32\dxtrans.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 357888 c:\windows\system32\dxtmsft.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 357888 c:\windows\system32\dxtmsft.dll
+ 2002-09-16 23:47 . 2010-02-11 12:01 226880 c:\windows\system32\drivers\tcpip6.sys
+ 2005-05-22 20:46 . 2008-06-20 10:45 360320 c:\windows\system32\drivers\tcpip.sys
+ 2002-09-16 23:47 . 2009-12-31 16:14 352640 c:\windows\system32\drivers\srv.sys
+ 2005-05-22 21:13 . 2010-02-24 12:31 454016 c:\windows\system32\drivers\mrxsmb.sys
+ 2005-05-29 12:30 . 2009-10-20 14:58 263552 c:\windows\system32\drivers\http.sys
+ 2005-05-29 12:30 . 2008-06-14 17:59 272768 c:\windows\system32\drivers\bthport.sys
+ 2002-09-16 23:44 . 2008-08-14 09:51 138368 c:\windows\system32\drivers\afd.sys
+ 2003-12-15 10:15 . 2008-06-20 17:39 148992 c:\windows\system32\dnsapi.dll
+ 2005-05-29 12:29 . 2009-04-01 22:02 604160 c:\windows\system32\dllcache\wmspdmod.dll
+ 2010-11-13 17:59 . 2009-02-06 16:39 227840 c:\windows\system32\dllcache\wmiprvse.exe
+ 2010-11-13 17:59 . 2009-02-09 10:18 453120 c:\windows\system32\dllcache\wmiprvsd.dll
- 2006-08-17 12:29 . 2006-08-17 12:29 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2006-08-17 12:29 . 2009-06-10 06:30 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 664576 c:\windows\system32\dllcache\wininet.dll
+ 2008-12-16 12:47 . 2009-08-25 09:46 352256 c:\windows\system32\dllcache\winhttp.dll
+ 2007-12-18 14:40 . 2010-03-10 08:02 417792 c:\windows\system32\dllcache\vbscript.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 625664 c:\windows\system32\dllcache\urlmon.dll
+ 2006-08-16 09:37 . 2010-02-11 12:01 226880 c:\windows\system32\dllcache\tcpip6.sys
+ 2006-04-20 11:51 . 2008-06-20 10:45 360320 c:\windows\system32\dllcache\tcpip.sys
+ 2009-10-15 21:50 . 2009-10-15 21:50 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2006-08-24 12:19 . 2009-08-26 08:14 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2006-04-21 06:12 . 2009-12-31 16:14 352640 c:\windows\system32\dllcache\srv.sys
- 2006-05-10 05:23 . 2006-10-23 15:18 474624 c:\windows\system32\dllcache\shlwapi.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 474624 c:\windows\system32\dllcache\shlwapi.dll
+ 2010-11-13 17:59 . 2009-02-09 10:05 111104 c:\windows\system32\dllcache\services.exe
+ 2009-06-25 08:44 . 2009-06-25 08:44 168448 c:\windows\system32\dllcache\schannel.dll
+ 2010-11-13 17:59 . 2009-02-09 10:19 399360 c:\windows\system32\dllcache\rpcss.dll
+ 2009-04-15 15:16 . 2009-04-15 15:16 584192 c:\windows\system32\dllcache\rpcrt4.dll
+ 2009-10-12 13:51 . 2009-10-12 13:51 112640 c:\windows\system32\dllcache\rastls.dll
+ 2010-11-13 17:59 . 2009-03-06 14:44 285696 c:\windows\system32\dllcache\pdh.dll
+ 2009-10-13 10:51 . 2009-10-13 10:51 267776 c:\windows\system32\dllcache\oakley.dll
+ 2010-11-13 17:59 . 2009-02-09 10:18 736256 c:\windows\system32\dllcache\ntdll.dll
+ 2008-06-20 17:39 . 2008-06-20 17:39 247296 c:\windows\system32\dllcache\mswsock.dll
+ 2009-08-05 09:05 . 2009-08-05 09:05 205312 c:\windows\system32\dllcache\mswebdvd.dll
+ 2009-06-25 08:44 . 2009-09-11 14:34 133632 c:\windows\system32\dllcache\msv1_0.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 532480 c:\windows\system32\dllcache\mstime.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 532480 c:\windows\system32\dllcache\mstime.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 146432 c:\windows\system32\dllcache\msrating.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 146432 c:\windows\system32\dllcache\msrating.dll
+ 2009-12-17 07:58 . 2009-12-17 07:58 346112 c:\windows\system32\dllcache\mspaint.exe
+ 2006-05-10 05:23 . 2010-04-16 15:35 449024 c:\windows\system32\dllcache\mshtmled.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 161792 c:\windows\system32\dllcache\msdtcuiu.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 956928 c:\windows\system32\dllcache\msdtctm.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 428032 c:\windows\system32\dllcache\msdtcprx.dll
+ 2006-05-05 09:41 . 2010-02-24 12:31 454016 c:\windows\system32\dllcache\mrxsmb.sys
+ 2006-08-17 12:29 . 2009-06-25 08:44 730112 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-05-07 15:41 . 2009-05-07 15:41 346112 c:\windows\system32\dllcache\localspl.dll
+ 2009-06-25 08:44 . 2009-06-25 08:44 298496 c:\windows\system32\dllcache\kerberos.dll
+ 2006-07-27 13:25 . 2010-01-29 15:06 683520 c:\windows\system32\dllcache\inetcomm.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 251392 c:\windows\system32\dllcache\iepeers.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 251392 c:\windows\system32\dllcache\iepeers.dll
+ 2009-10-20 14:58 . 2009-10-20 14:58 263552 c:\windows\system32\dllcache\http.sys
+ 2008-10-23 12:59 . 2008-10-23 12:59 283648 c:\windows\system32\dllcache\gdi32.dll
+ 2010-11-13 17:59 . 2009-02-09 10:18 473088 c:\windows\system32\dllcache\fastprox.dll
+ 2008-07-07 20:31 . 2008-07-07 20:31 253952 c:\windows\system32\dllcache\es.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 205312 c:\windows\system32\dllcache\dxtrans.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 205312 c:\windows\system32\dllcache\dxtrans.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2006-05-19 13:20 . 2008-06-20 17:39 148992 c:\windows\system32\dllcache\dnsapi.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 151552 c:\windows\system32\dllcache\cdfview.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 151552 c:\windows\system32\dllcache\cdfview.dll
+ 2010-04-20 05:46 . 2010-04-20 05:46 285696 c:\windows\system32\dllcache\atmfd.dll
+ 2008-06-20 10:44 . 2008-08-14 09:51 138368 c:\windows\system32\dllcache\afd.sys
+ 2010-11-13 17:59 . 2009-02-09 10:19 683008 c:\windows\system32\dllcache\advapi32.dll
+ 2006-08-16 11:59 . 2010-02-12 04:45 100864 c:\windows\system32\dllcache\6to4svc.dll
+ 2002-09-16 23:44 . 2010-04-16 15:35 151552 c:\windows\system32\cdfview.dll
- 2002-09-16 23:44 . 2006-10-23 15:18 151552 c:\windows\system32\cdfview.dll
+ 2002-09-16 23:44 . 2010-04-20 05:46 285696 c:\windows\system32\atmfd.dll
- 2002-09-16 23:44 . 2004-08-19 13:37 285696 c:\windows\system32\atmfd.dll
+ 2002-09-16 23:44 . 2009-02-09 10:19 683008 c:\windows\system32\advapi32.dll
- 2002-09-16 23:44 . 2004-08-19 13:39 683008 c:\windows\system32\advapi32.dll
+ 2003-12-15 10:16 . 2010-02-12 04:45 100864 c:\windows\system32\6to4svc.dll
- 2003-12-15 10:17 . 2004-08-19 13:39 743936 c:\windows\PCHEALTH\HELPCTR\Binaries\helpsvc.exe
+ 2003-12-15 10:17 . 2010-06-14 14:30 743936 c:\windows\PCHEALTH\HELPCTR\Binaries\helpsvc.exe
+ 2004-10-28 01:14 . 2010-02-24 12:31 454016 c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2004-10-08 23:48 . 2009-10-20 14:58 263552 c:\windows\Driver Cache\i386\http.sys
+ 2010-11-13 18:02 . 2008-06-14 17:59 272768 c:\windows\Driver Cache\i386\bthport.sys
+ 2003-12-15 10:17 . 2009-11-21 16:38 470528 c:\windows\AppPatch\aclayers.dll
+ 2010-11-13 18:01 . 2009-08-13 13:55 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
+ 2005-05-22 20:42 . 2010-05-02 08:24 1850880 c:\windows\system32\win32k.sys
+ 2005-03-12 01:52 . 2008-07-03 13:14 8483840 c:\windows\system32\shell32.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 1506816 c:\windows\system32\shdocvw.dll
- 2003-12-15 10:14 . 2006-06-22 05:06 1439232 c:\windows\system32\query.dll
+ 2003-12-15 10:14 . 2009-07-17 16:26 1439232 c:\windows\system32\query.dll
+ 2003-12-15 10:14 . 2010-02-05 18:39 1296384 c:\windows\system32\quartz.dll
+ 2005-05-22 20:42 . 2010-02-16 19:31 2185088 c:\windows\system32\ntoskrnl.exe
+ 2005-05-22 20:42 . 2010-02-16 19:31 2062080 c:\windows\system32\ntkrnlpa.exe
+ 2005-02-24 12:03 . 2010-04-16 15:35 3086336 c:\windows\system32\mshtml.dll
+ 2002-09-16 23:46 . 2009-03-21 14:18 1030144 c:\windows\system32\kernel32.dll
+ 2010-05-02 08:24 . 2010-05-02 08:24 1850880 c:\windows\system32\dllcache\win32k.sys
+ 2006-07-13 13:34 . 2008-07-03 13:14 8483840 c:\windows\system32\dllcache\shell32.dll
+ 2006-05-29 15:30 . 2010-04-16 15:35 1506816 c:\windows\system32\dllcache\shdocvw.dll
- 2006-06-22 05:06 . 2006-06-22 05:06 1439232 c:\windows\system32\dllcache\query.dll
+ 2006-06-22 05:06 . 2009-07-17 16:26 1439232 c:\windows\system32\dllcache\query.dll
+ 2010-02-05 18:39 . 2010-02-05 18:39 1296384 c:\windows\system32\dllcache\quartz.dll
+ 2010-11-13 17:59 . 2010-02-16 19:31 2185088 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2010-11-13 17:59 . 2010-02-16 19:30 2020352 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2010-11-13 17:59 . 2010-02-16 19:31 2062080 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2010-11-13 17:59 . 2010-02-16 19:30 2140672 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2006-11-08 05:07 . 2010-01-29 15:06 1315840 c:\windows\system32\dllcache\msoe.dll
+ 2006-05-19 15:09 . 2010-04-16 15:35 3086336 c:\windows\system32\dllcache\mshtml.dll
+ 2006-07-05 10:56 . 2009-03-21 14:18 1030144 c:\windows\system32\dllcache\kernel32.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 1056256 c:\windows\system32\dllcache\danim.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 1056256 c:\windows\system32\dllcache\danim.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 1023488 c:\windows\system32\dllcache\browseui.dll
- 2003-12-15 10:16 . 2006-10-23 15:18 1056256 c:\windows\system32\danim.dll
+ 2003-12-15 10:16 . 2010-04-16 15:35 1056256 c:\windows\system32\danim.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 1023488 c:\windows\system32\browseui.dll
+ 2002-01-01 09:00 . 2006-08-21 15:04 1077321 c:\windows\Help\SBSI\Training\orun32.exe
+ 2005-03-02 18:07 . 2010-02-16 19:31 2185088 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2005-03-02 18:07 . 2010-02-16 19:30 2020352 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2005-03-02 18:06 . 2010-02-16 19:31 2062080 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2005-03-02 18:07 . 2010-02-16 19:30 2140672 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2005-05-29 16:30 . 2010-11-02 15:47 35758536 c:\windows\system32\MRT.exe
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Motive SmartBridge"="c:\progra~1\ALICET~1\SMARTB~1\MotiveSB.exe" [2006-04-21 438359]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-19 15360]
"Nokia.PCSync"="c:\programmi\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-11-07 1294336]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Suite"="regedit -s" [X]

c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
Alice ti aiuta.lnk - c:\programmi\Alice ti aiuta\bin\matcli.exe [2002-1-1 217088]
Avvio veloce di Adobe Reader.lnk - c:\programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
Microsoft Office.lnk - c:\programmi\Microsoft Office\Office\OSA9.EXE [1999-2-18 65588]

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\eMule\\eMule.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1600:TCP"= 1600:TCP:xmxxf

R1 StarPortLite;StarPort Storage Controller (Lite);c:\windows\system32\drivers\StarPortLite.sys [01/01/2002 0.05.50 85760]
S2 epydlcdkv;Universal Windows;c:\windows\system32\svchost.exe -k netsvcs [17/09/2002 0.47.21 14336]
S2 gupdate;Servizio di Google Update (gupdate);c:\programmi\Google\Update\GoogleUpdate.exe [17/09/2003 2.52.17 135664]
S2 PPPoEService;PPPoE Service;c:\progra~1\Alice\ALICEE~1\app\pppoeservice.exe [01/01/2002 0.14.30 49152]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [06/08/2006 18.00.34 717296]
S4 Win32 USB2.0 Driver;Win32 USB2.0 Driver; [x]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
epydlcdkv
.
Contenuto della cartella 'Scheduled Tasks'

2010-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2003-09-17 01:51]

2010-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2003-09-17 01:51]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
mStart Page = hxxp://it6.hpwis.com/
uInternet Settings,ProxyOverride = 127.0.0.1;localhost
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Google Sidewiki... - c:\programmi\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
Trusted Zone: archiviosex.net\www
Trusted Zone: redfunny.com\www
Trusted Zone: skymasters.biz\www
Trusted Zone: whataboutadog.com
Trusted Zone: whataboutarabit.com
Trusted Zone: xbeta69.com\www
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-11-15 23:10
Windows 5.1.2600 Service Pack 2 NTFS

scansione processi nascosti ...

scansione entrate autostart nascoste ...

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0

**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\WBEM\PROVIDERS\Logging]
@DACL=(02 0000)
"Logging"=dword:00000000

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\Secure]
@DACL=(02 0000)

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\0000B11000063D11C8EF00054038389C]
@DACL=(02 0000)
"0140B11900063D11C8EF00054038389C"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\0A777F49BCECBB049BEAE74EC58E16CA]
@DACL=(02 0000)
"19F4AD9090A22324BAC8B67C0490D63E"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\142CF7AB0C28806409E6CB54044BD4A9]
@DACL=(02 0000)
"172A967CC1E79F843B13746400DDC460"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\20204020CBCB0E94FBF413C1ACE4A5F6]
@DACL=(02 0000)
"2020402056D5A5443B4BD3EC27ABC0C6"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\21B0747772942D115BEF0006799C897E]
@DACL=(02 0000)
"014010001E872D116BF00006799C897E"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\482EBB0A8BD7FF44A87DDED1D227F343]
@DACL=(02 0000)
"A0CD2F7FE22CDA94DA739737905AE4B7"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\6BC47400D0E93D110848000CF43A92AA]
@DACL=(02 0000)
"29BE0F9702994D11FAAF000CF4444384"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\CEB9794B854D9284BA787B0A326D941C]
@DACL=(02 0000)
"20CC412817268CD48BDD779933542046"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\172A967CC1E79F843B13746400DDC460\Features]
@DACL=(02 0000)
"_F4381_System"="y''5C`+$g(KD@efDe`c_z''5C`+$g(KD@efDe`c_"
"_F4385_lineservices"="92Cm?6,wf(~&8efDe`c_PXnt@3*vf(r`7efDe`c_\02_F4381_System"
"_F4389_help"="RXnt@3*vf(r`7efDe`c_SXnt@3*vf(r`7efDe`c_,gH.[lmkf(`%(L[U]z)5\02_F4381_System"
"_F12094_Shared"="-fCo)=Lnf(E4*L[xeX)y"
"IE5.5_Dependency"="x$vuPlf0q@2a1_`&]uX]"
"MERGE_MODULES"=""
"SYSTEM_MM"="_'B@&~,wu9`+ID@.clc,\02MERGE_MODULES"
"DEBUG_MM"="\02MERGE_MODULES"
"Minimal_Install"="&6$2g7@^L9`1oPe-?m)Dh20cMsbJV?l9z,cKkVxHhP,d^l)(k@Cb`,O!.5e=r@URMF*n_8hL[wIMa8[LrXse-m=O]8DJ*VcJ1^LHibMU`PO}t@~9aWlizH*f]91WpR=YQ=+p&&2`-[c0ewcC-!pL[=36%CR5$X9D58wyFF~LTAio]paX'{)&^}H^ZnZt5@k?X~3=6SW*k12FXC5$0=0HqncP_mM%iA1Echww^9p(WRTUW+haW(S`*c{o8@GEV%VK6-6ZOXXY,v&,L=+j]U2+)UCk!pqOya%Bp8E{"IE5.5"=""
"Typical_Install"="eOy@[.MtN?8Z~D=skFss+PbRd_Rc`@){sPL.~Ee*3(jEkY}w&@vY]2rOyio`82)n*-hAA==6GjT~,Rr-S`UM(fGYD?CCECz%=!`)1@)XV@3]k8YQ.rY+M=ILe$*I&SdIU?N(V)c_.o]B9Wc?VgG}7A&CBr=6xxPCz0~.&RZLi?O*9^y~!utoY$UA-zj@p927bPeHu@oXvf17{kNtD=j^!D-cB(YQSkeoqD^pQAt?~YuFGOHh)72z%-w(o?fV^Bl=bLYQ{X^oci9TE?kCtxWD=1YJ\02MERGE_MODULES"
"Custom_Install"="\02MERGE_MODULES"
"Custom_Setup_SBS"="\02Custom_Install"
"Custom_Setup_TEMP"="\02Custom_Install"
"Never_Install"="NnJ]1^ovf((6(L[+AFYbF1Op,Btvf(,F(L[+AFYb\02MERGE_MODULES"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\172A967CC1E79F843B13746400DDC460\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="00102-OEM-0000007-00000"
"LocalPackage"="c:\\WINDOWS\\Installer\\19c209.msi"
"AuthorizedCDFPrefix"=""
"Comments"="Microsoft Picture It! Photo 2002"
"Contact"=""
"DisplayVersion"="6.0.0.0000"
"HelpLink"=expand:"http://www.microsoft.com/italy/"
"HelpTelephone"=" "
"InstallDate"="20020101"
"InstallLocation"=""
"ModifyPath"=expand:"MsiExec.exe /I{C769A271-7E1C-48F9-B331-474600DD4C06}"
"Publisher"="Microsoft"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{C769A271-7E1C-48F9-B331-474600DD4C06}"
"URLInfoAbout"="http://www.microsoft.com/italy/ms.htm"
"URLUpdateInfo"="http://go.microsoft.com/fwlink/?linkid=3641&clcid=0x410"
"VersionMajor"=dword:00000006
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:06000000
"Language"=dword:00000410
"DisplayName"="Microsoft Picture It! Photo 2002"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\19F4AD9090A22324BAC8B67C0490D63E\Features]
@DACL=(02 0000)
"SoleFeature"="Ik]?4)TL19(qkzR1y0kI])Ob4dQ3p=9aaeOebj0(&,8ngYRNw?Tio7B1Xtnae^``U+A~[98,pZhJXEZ4K?h+(t3Sl8eX*A^GqqTH2s}OLXZ%y@p*3OM=ZHroE}ND*S@[y8d[rIaw,*[_[A3}&nlfH@OO*3mc8IdlW?gT9,999=wEr%@n-{Q_A@HI]be4*AtT*1z10CME.X_@S^=)R@~W}V^(h}Cx_CK-y8Qil9Ypm1SY}!'o^2+22W!9O=GJg`6~G3EM'jY0(z7qf(fVbqFgkW_BhY,w=mgsf(YJ*L[lj+'(M5KDYSUnf(HA*L[xeX)y=3&5,B^pf(V%eqFgkW_BB3&5,B^pf(V%eqFgkW_B83&5,B^pf(V%eqFgkW_B67k)4s6tf(JR`qF-Q9q.,Nk(@OPzF?URs{=6-.T`G5)*ix!pQ@tkHV5f'^,TdAPug,_!l9jA+v&&CSFaKK=7{a[Kn?9Tg2AMx)wvN]`dh~jPm?hI`wz]1&TP"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\19F4AD9090A22324BAC8B67C0490D63E\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="none"
"LocalPackage"="c:\\WINDOWS\\Installer\\377bd.msi"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="2.70"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20020101"
"InstallLocation"=""
"InstallSource"="c:\\DOCUME~1\\PROPRI~1\\IMPOST~1\\Temp\\VIES5BB5\\UM\\"
"ModifyPath"=expand:"MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3}"
"Publisher"="VERITAS Software"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00000856
"UninstallString"=expand:"MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3}"
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000002
"VersionMinor"=dword:00000046
"WindowsInstaller"=dword:00000001
"Version"=dword:02460000
"Language"=dword:00000410
"DisplayName"="RecordNow Update Manager"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\2020402056D5A5443B4BD3EC27ABC0C6\Features]
@DACL=(02 0000)
"CORE"="'VZP-5y0L?SGHDH*O&'BU,c,nJ(th80MHJC^{^~b[2aqL,2uN9%=.0dv@dGTk@+GNr`fH?&a7cH=I]2ENh(*cu'8&@(0M8t6X=t0}wnrik7gp@[GWagjuU+CZz&?PL}a?AvNDRk?i=joeXYV2K=sG?TJMZk*17bG7gkK*(R4N@`u6c(%d^{_Wci=Y,,HR9EMYs$bd%C^qQX2peihC9etnOHm@0w9@'SxK^p$n=s*-@uJzW1-P{9'g6Tw7?UKyl]0mHLsR'8UxglIC=V0IP)Gi(uIn]Q-*}(pF9i0NFi!!sFxBMLlbl)'8Ao}D%kIOCa``tO'b{](W?qc.-e-E?ZI8HDu!3oOe9RWEGPxHg!Q(cA~s[,V2AkY&Jt0+KVHV_[2Lx8uV9P?JX8sDlI_q&7R`1(AS940risAj[zo(R8cX'=XY?1VkxZq2O]7q},ReXRm4?o5'zYh0Q0e)^GmK%]6a8%[.H+4lqwOk)D1(7LRW9KFaI+@I)y0CFG$0D+!g(3?!!!_GX=bBbxH8x=!g(3?!!!_GX=b83&5,B^pf(V%eqFgkW_BB3&5,B^pf(V%eqFgkW_B=3&5,B^pf(V%eqFgkW_B'jY0(z7qf(fVbqFgkW_BhY,w=mgsf(YJ*L[lj+'(M5KDYSUnf(HA*L[xeX)y7YK?{]tuf(^?eqFgkW_B"
"CORE_HKCU"="\02CORE"
"EIWA"="4tC3GMW8L95HTjm3$+8[i9@4tL5LN9YU04HOe[pU7{{[_MBHEA]y&u]tWA(R0_W6q0b7S?3YB@fC-0U-6M37FDQ9V@2c25J@m2gkugpG*[$&{=?fB`(UokJM5F7R%Vh0J=m7FgEib$dn3?gw]Mm&M=&GQy)C3dRZD2%yUC5XO=DuYJ-VHUJDt,^1PV!&9@29eLj&c%tXmIzCQV,n-A?me0T*Rio]1nzlLypQL9Xf5Fk@=*$Iqy7.qk0`C9K}-SgEtmtFnb-pY.IcFAk!34[?eh2rzpMT_2=Z6!SnU3^_qj=IQVGcEe8t,vIaRF@=*o3j=W~USf@Irt$PNpg-w[!HCBx[h_AoZwvzDiOi2lkP_-WgH79D0zqtB~9%g"
"FEAT_ERO_HKCU"="CMfZN&m4z@'EDHc*M?AQS4pwA!-+P9%U]kUnnuiO\02ERO"
"MSINFO"="@IdG2*4)g([fAef_HaqQ=IdG2*4)g([fAef_HaqQ?IdG2*4)g([fAef_HaqQJ4fEfj]xf(WK30(tw2hay^L0&k7zf(pZ=efDe`c_K4fEfj]xf(WK30(tw2haL4fEfj]xf(WK30(tw2ha"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\2020402056D5A5443B4BD3EC27ABC0C6\InstallProperties]
@DACL=(02 0000)
"LocalPackage"="c:\\WINDOWS\\Installer\\19c20d.msi"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="2001"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20020101"
"InstallLocation"=""
"ModifyPath"=expand:"MsiExec.exe /I{02040202-5D65-445A-B3B4-3DCE72BA0C6C}"
"NoRepair"=dword:00000001
"Publisher"="Microsoft Encarta"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{02040202-5D65-445A-B3B4-3DCE72BA0C6C}"
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:000007d1
"VersionMinor"=dword:000007d1
"WindowsInstaller"=dword:00000001
"Version"=dword:d1000000
"Language"=dword:00000410
"DisplayName"="Atlante mondiale Microsoft Encarta 2001"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\20CC412817268CD48BDD779933542046\Features]
@DACL=(02 0000)
"SoleFeature"="`@mNRvpIK=yTkzRB's)+}P{ZE-6Rt=3K^CU%`2Gwz5}jyuFOUA1S}@W=sU'WvdO*&^=wZ?6yAWjVR$NtvECYIJ9ei9?sh{!S0QaBu@SZO!'T89}D21w(O!&lnHQ2^rs)B@,3M'a}HJ=mz2(X@oJ0j8yE=dpU}a6(%7%XW$S`X=KEnIB%jg9{5&.kaH&r-?.xT`.20kzrs52tyO,Zj@m&1xv?[?hP+tyB%x$3P?O~[O).t*HL8fr].}d^p?LBU9D{o8($C)-''jP8+=vv(z.kC`Do@qL3+QmYt=C[C~nC0M)@12^riv?i`?6'4e=sF?t`.`^Y'sBd(?qKtOV?5nWjV}9U?cklL=TWz^CWgk3bDgo%yB&~z9P]WmI7Y.HY-dI_E_0l7=r-TGM~7pO_[}BD]U7b0?7vy}QlRBQ_C]-[?xd9+@{?0xdE8'^eS]NWK9Dao?PaZ&*&CzL]Cb%p_4a~bA{7UmBpG$p9f7)&RwOb6=MAtsmBbq0N,Nk(@OPzF?URs{=6-.T`&x$&z{At4?u)?[`P+G*s$[}kVo3h`AA^Xni5NnA-v%3Qf'=nf(9K)L[lj+'(=3&5,B^pf(V%eqFgkW_B83&5,B^pf(V%eqFgkW_BB3&5,B^pf(V%eqFgkW_B'jY0(z7qf(fVbqFgkW_BhY,w=mgsf(YJ*L[lj+'(M5KDYSUnf(HA*L[xeX)y67k)4s6tf(JR`qF-Q9q.A7k)4s6tf(JR`qF-Q9q.dbKx-lbmf(Gn,L[[Q~con=-.B]*OwW=j1$R-G-siAc4Ma^pEE'?58NS^)&i,J5E`6Vo6mh8_vNCQF55xIy,XV3_eW[@0?&K'9l!`tvQWp+!UM,ASDJd&*ys@@*HNQrmE@)@veePESwldqR^+CP7u-_8,)cy9FjI+9=kg9!cD1(@,j9kH}}y&9G,o_%P^PR@ZB]JqiSVIOo$JOks)4]@OWm@b,sGUU'W5Dhz3my9wjY'4C@C.^}7g$-6*47AHtBn]B3h_H7ArYV4-(Z96l]OSl~&]E6YpabQ[dw9X(^0I$yr8I3$[?Z==p59(=z3b%c?,ExDyf7g1sI=hJ(OBTf['{0TMVZaM}1=^S=CXceiBCA{El`HoaO@~7[xZ}D[($8Di@UTLcQ@][%hS}cry'_Xj[rAtkX9LeNpQ^CSSyml~!T0x_D=6jwo$`pyx7k]B%rOcMX9@c}m*ykL{5xYf4n47=Z=Hfn-25,{TfIhw'kn.zI?HjnM[ONYbUVEy*vSDbd9@Ad4=+WuwuW?gT9,999=wEr%@n-{Q_"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\29BE0F9702994D11FAAF000CF4444384\Features]
@DACL=(02 0000)
"Help"="2JdG2*4)g([fAef_HaqQ1JdG2*4)g([fAef_HaqQ3JdG2*4)g([fAef_HaqQ7IdG2*4)g([fAef_HaqQC$Qk,HF)g(bxAef_HaqQB$Qk,HF)g(bxAef_HaqQ5IdG2*4)g([fAef_HaqQ6IdG2*4)g([fAef_HaqQ9IdG2*4)g([fAef_HaqQ.IdG2*4)g([fAef_HaqQ-IdG2*4)g([fAef_HaqQ%IdG2*4)g([fAef_HaqQ&IdG2*4)g([fAef_HaqQ'IdG2*4)g([fAef_HaqQ0IdG2*4)g([fAef_HaqQ3IdG2*4)g([fAef_HaqQ2IdG2*4)g([fAef_HaqQ1IdG2*4)g([fAef_HaqQ4IdG2*4)g([fAef_HaqQEJdG2*4)g([fAef_HaqQ"
"Language"="~IdG2*4)g([fAef_HaqQ$JdG2*4)g([fAef_HaqQ}IdG2*4)g([fAef_HaqQ!JdG2*4)g([fAef_HaqQxIdG2*4)g([fAef_HaqQwIdG2*4)g([fAef_HaqQuIdG2*4)g([fAef_HaqQrIdG2*4)g([fAef_HaqQzIdG2*4)g([fAef_HaqQvIdG2*4)g([fAef_HaqQ{IdG2*4)g([fAef_HaqQtIdG2*4)g([fAef_HaqQsIdG2*4)g([fAef_HaqQFJdG2*4)g([fAef_HaqQGJdG2*4)g([fAef_HaqQyIdG2*4)g([fAef_HaqQHJdG2*4)g([fAef_HaqQ"
"WksCore"="0.rxy&Pvf(r`7efDe`c_1.rxy&Pvf(r`7efDe`c_F=PS3b'wf(1R(L[+AFYb?`kGq)Dwf($-8efDe`c_piGhY]yyf(]Z30(tw2habwjyakIzf(tg=efDe`c_[4Rc[Mx~f(~j=efBq{id87X?{i^!g(D*@efDe`c_97X?{i^!g(D*@efDe`c_=7X?{i^!g(D*@efDe`c_5=dsaidGg?]U@EXNPh60GXnt@3*vf(r`7efDe`c_"
"Shell"="AC6eC~xtf(PBDefDe`c_HXnt@3*vf(r`7efDe`c_P@eTvh6xf(P230(tw2ha"
"Database"="&('5C`+$g(KD@efDe`c_'('5C`+$g(KD@efDe`c_)('5C`+$g(KD@efDe`c_"
"SSDB"=",C6eC~xtf(PBDefDe`c_5xRkPm%yf(YQ30(tw2ha6xRkPm%yf(YQ30(tw2ha"
"TaskLauncher"="Gdh_vCdvf(ui7efDe`c_LXqkDADMb9jmUpjT-+kqIdh_vCdvf(ui7efDe`c_}5&Zb{~xf(YQ30(tw2ha4JdG2*4)g([fAef_HaqQ6JdG2*4)g([fAef_HaqQ5JdG2*4)g([fAef_HaqQbXnt@3*vf(r`7efDe`c_b51=0rcQc8'8uWP!CDjj"
"WizardDlls"="YXnt@3*vf(r`7efDe`c_[Xnt@3*vf(r`7efDe`c_]Xnt@3*vf(r`7efDe`c_^Xnt@3*vf(r`7efDe`c_!G+JSXfvf(ui7efDe`c_Q@eTvh6xf(P230(tw2ha37X?{i^!g(D*@efDe`c_X07x$+]%g(b,AefDe`c_"
"WizardsTemplates"="+JdG2*4)g([fAef_HaqQ*JdG2*4)g([fAef_HaqQ-JdG2*4)g([fAef_HaqQ,JdG2*4)g([fAef_HaqQ0JdG2*4)g([fAef_HaqQ.JdG2*4)g([fAef_HaqQ"
"_F4411_Calendar_Migrate"="[yOHx[Rwf(Aw(L[+AFYba%yw@3`zf(d-*L[+AFYb"
"Calendar"="?_@fgerxf(E,9efDe`c_pZnG*MIxf(+G8efDe`c__!ujaPGxf(+G8efDe`c_Hv]P[47wf($-8efDe`c_0qp6JBDvf(r`7efDe`c_-qp6JBDvf(r`7efDe`c_*qp6JBDvf(r`7efDe`c_2,?LHJBwf($-8efDe`c_@JdG2*4)g([fAef_HaqQ?JdG2*4)g([fAef_HaqQNIdG2*4)g([fAef_HaqQ,qp6JBDvf(r`7efDe`c_RIdG2*4)g([fAef_HaqQQIdG2*4)g([fAef_HaqQIIdG2*4)g([fAef_HaqQOIdG2*4)g([fAef_HaqQJIdG2*4)g([fAef_HaqQLIdG2*4)g([fAef_HaqQPIdG2*4)g([fAef_HaqQMIdG2*4)g([fAef_HaqQKIdG2*4)g([fAef_HaqQ"
"CalendarWCD"="eg6*&!lxf(XN30(tw2ha"
"Works_Cal_Shared"="oMAot+Uvf(tf7efDe`c_fg6*&!lxf(XN30(tw2ha@7X?{i^!g(D*@efDe`c_?7X?{i^!g(D*@efDe`c_77X?{i^!g(D*@efDe`c_e^D{xo=!g(?v?efDe`c_W^uL?32B{?!Hfwf?cSS+1C6eC~xtf(PBDefDe`c_'mT]jI{jf(=1&L[-81-]wB^6o*-=w9H%Q`CjbZ)oWIdG2*4)g([fAef_HaqQVIdG2*4)g([fAef_HaqQSIdG2*4)g([fAef_HaqQUIdG2*4)g([fAef_HaqQTIdG2*4)g([fAef_HaqQ]4Rc[Mx~f(~j=efBq{id"
"Scrapbook"="9xE64Io!g(F1@efDe`c_8xE64Io!g(F1@efDe`c_Nm5970c4i@o3pyWB[CG&g.sgh)o$B=SrErN9()go[{x%JM6$g(MJ@efDe`c_[$.m!L6+j8QtBnz[r2KB"
"WP"="jXnt@3*vf(r`7efDe`c_tMAot+Uvf(tf7efDe`c_!n7JcjZzf(yv=efDe`c_%h1}5kkzf(%2?efDe`c_"
"Quill"="lXnt@3*vf(r`7efDe`c_mXnt@3*vf(r`7efDe`c_vMAot+Uvf(tf7efDe`c_\02WP"
"Imaging"="PpgF.6A!g(@y?efDe`c_QpgF.6A!g(@y?efDe`c_"
"Imaging_LeadTools"="c6E.)fi5y82v}%ZJ^@yK_'s_L^yo*@]ih3[ljOc@%Bl%QjPSs=qJgjBO[IK*5f)zW`jKV9y7t'MY(&PENjHTr?PZ(AIHpjtSvh7UVE$4wBE`'@FOMkvGdX`'6%NFq1Rxs?iIKGOwO.My'C`&K4APQ=Bh.HrAm+x?BD$PrPnb2=h&xmjk_U1U5b+BfL6$c=v7}_@)wW'V2T=&70CLX??(xl=P+_*WXh`!v0^k}=Z9U'$yo't4w~54TOkXM9nvqU49w.V]8ZvuYanP}=NolF^1pGXA2HJ=+Xm*.91{%gZ?_ci=c}HEBr8gk?-j=NwATVH%L}[8*H0E==G5NlD[VdhH3TTU`P(Ie?3`Rf%G5T&,"
"Themes"="!j`tIc$!g(9p?efDe`c_&JdG2*4)g([fAef_HaqQ"
"IE55_Install"="`PZF_6T1a8KAil*5s]hY5LC%P&6Zj9(hDnCu8[uz"
"AnswerWizard"="8IdG2*4)g([fAef_HaqQ&h1}5kkzf(%2?efDe`c_,}Yroi5zf(nT=efDe`c_"
"OnlineManual"=")IdG2*4)g([fAef_HaqQ(IdG2*4)g([fAef_HaqQD$Qk,HF)g(bxAef_HaqQ*IdG2*4)g([fAef_HaqQ"
"QuickTours"="AQyq+h{vf(yu7efDe`c_BQyq+h{vf(yu7efDe`c_"
"ReadMe"="!IdG2*4)g([fAef_HaqQ"
"FirstRun"="DJdG2*4)g([fAef_HaqQCJdG2*4)g([fAef_HaqQBJdG2*4)g([fAef_HaqQAJdG2*4)g([fAef_HaqQ[IdG2*4)g([fAef_HaqQ]IdG2*4)g([fAef_HaqQYIdG2*4)g([fAef_HaqQZIdG2*4)g([fAef_HaqQbiRc330wf(!*8efDe`c_XIdG2*4)g([fAef_HaqQ"
"AutoCorrect"="T24fx-z'dAo6TxbWUU`k(R%?txSGn@Ib1s74cD&S_X0Nle[(g(0UBefOyH&$T24fx-z'dAo6TxbWUU`k(R%?txSGn@Ib1s74cD&Sem)ZLfX(g(0UBefOyH&$"
"Grammar"="tstkJ[=wf()qr.QHog{AwstkJ[=wf()qr.QHog{A7rT]jI{jf(=1&L[-81-]9rT]jI{jf(=1&L[-81-]"
"ProofSer"="%JdG2*4)g([fAef_HaqQqWzNuQF!g(C'@efDe`c_"
"Spelling"="KrT]jI{jf(=1&L[-81-],qmp3?,wf(mhq.QrWeLdubos?8awf(mhq.QrWeLdGrT]jI{jf(=1&L[-81-]IrT]jI{jf(=1&L[-81-]"
"Thesaurus"="QrT]jI{jf(=1&L[-81-]'stkJ[=wf()qr.QHog{A(stkJ[=wf()qr.QHog{AO(cRmSikf()p*L[~4q&_OrT]jI{jf(=1&L[-81-]"
"Tasks_Min"="mQ'+Xvp5C=_QCMGzVHkwdIdG2*4)g([fAef_HaqQ{@Vba?G2'=!k3vmslh(2?WXdeL]7^92Zm$z4hAVIMnJ@C?B&m?@T,+xMg0WPNOL(P!Qzf(tg=efDe`c_jV&+khs$g(OP@efDe`c_+BdncKKxf(+G8efDe`c_Po55h$^xf(4`8efDe`c_Do55h$^xf(4`8efDe`c_Co55h$^xf(4`8efDe`c_nIdG2*4)g([fAef_HaqQlIdG2*4)g([fAef_HaqQjIdG2*4)g([fAef_HaqQhIdG2*4)g([fAef_HaqQr-j@O[_*g(%!Cef_HaqQeIdG2*4)g([fAef_HaqQiIdG2*4)g([fAef_HaqQqIdG2*4)g([fAef_HaqQpIdG2*4)g([fAef_HaqQoIdG2*4)g([fAef_HaqQLOL(P!Qzf(tg=efDe`c_mIdG2*4)g([fAef_HaqQkIdG2*4)g([fAef_HaqQgIdG2*4)g([fAef_HaqQEOL(P!Qzf(tg=efDe`c_"
"Tasks_Basic"="^ZOjk!C9eA__[q9e3bCw%t02x1[)[AjF'^QQJCUx%~v6ntj_l?`DR!Y-!GflcIdG2*4)g([fAef_HaqQbIdG2*4)g([fAef_HaqQ`IdG2*4)g([fAef_HaqQ^IdG2*4)g([fAef_HaqQ"
"AddressBook"="gAwnaaAxf(Q530(tw2hahAwnaaAxf(Q530(tw2haBm4tK0qyf(c.=efDe`c_I*^Nk$czf(zy=efDe`c_Rwl7d]izf($.?efDe`c_"
"_F13308_WAB"="~5&Zb{~xf(YQ30(tw2ha!6&Zb{~xf(YQ30(tw2ha"
"System"="IXnt@3*vf(r`7efDe`c__iRc330wf(!*8efDe`c_`iRc330wf(!*8efDe`c_aiRc330wf(!*8efDe`c_y'P37!k!g(E-@efDe`c_y''5C`+$g(KD@efDe`c_z''5C`+$g(KD@efDe`c_Y4,ZYW$$g(H7@efDe`c_XXnt@3*vf(r`7efDe`c_QXnt@3*vf(r`7efDe`c_=3&5,B^pf(V%eqFgkW_BDWlh[]Tvf(sc7efDe`c_B3&5,B^pf(V%eqFgkW_B"
"commoncontrols"="LXnt@3*vf(r`7efDe`c_\02System"
"lineservices"="OXnt@3*vf(r`7efDe`c_92Cm?6,wf(~&8efDe`c_PXnt@3*vf(r`7efDe`c_\02System"
"help_sys"="\02System"
"WebUpdate"="~sPN%2iJOA5,[d2NtDxo'JdG2*4)g([fAef_HaqQB0wGq)Cb79ew8[-Q[p&9(JdG2*4)g([fAef_HaqQIJdG2*4)g([fAef_HaqQ"
"_F6534_CAG_ClipGallery"=""
"_F6536_CAG_Standard"=""
"_F6538_CAG_Works"=""
"ShoeBox"="oumbJ.$zZ@75PHyRNY(K?BL0e'K1d@ia'AF'Yn4Fg=n`VHq2,?Rqh@[gV9z?yit79O-pF?@&}B]AJCubsB{r5!yZD=$eVj0~(Ib)C?G3di8iCA&%i@eOGhq(bn-5t!!Ch=N0G$u~!GBRu.'b9VZqf(g6u.Q(31aRw.'b9VZqf(g6u.Q(31aRNVWz?4H7&=hHi^e3.kT?q~]q3JEut?IpzH)tSFT'S3bTdDY)a@!)]O*nqy_+=Hn1UBHJj=~6gYEl^}(50Os8=b%t7?kA~0i2tj4G.-Q0tzkGZ9~)`CRm6x`We3aV+5Lyf(C5Def%06$%RC,h.~8wf(x7fqF,Y?r2ychI(5Lyf(C5Def%06$%q+jjF4iyf(s&Aef%06$%kwgD19iyf(t)Aef%06$%A3={H4iyf(s&Aef%06$%(=Y8nB{vf(kbq.QrWeLdxchI(5Lyf(C5Def%06$%81-z%Z}tf(Cyn.Q2tAE!"
"Shoebox_Max"="7FnXk`]H6@x.9eWqkA)t\02ShoeBox"
"Converters_Min"="7q@V?zzhbA-G*GwF7uo.S,-z%Z}tf(Cyn.Q2tAE!@Y-z%Z}tf(Cyn.Q2tAE!r&pvh[rxf(D)9efDe`c_q&pvh[rxf(D)9efDe`c_@8[*5Arvf(wo7efDe`c_"
"Converters_Basic"="c!)Q2Y](,9$q!vy)yG?TSr,z%Z}tf(Cyn.Q2tAE!ir,z%Z}tf(Cyn.Q2tAE!9s,z%Z}tf(Cyn.Q2tAE!&Y-z%Z}tf(Cyn.Q2tAE![Ee^AL$tf(Cyn.Q2tAE!7vT]jI{jf(=1&L[-81-]!Y{~Fdj{f(kw,0(EJrk@5vT]jI{jf(=1&L[-81-]+`cM^6[rj@.y0WgKfuHr`I&XGh4NE9op}nJ.'2Ndd9yqm~-O1A4HG]Yhm`NE"
"Converters_Max"="cfbgi6u`t=o]^30@03C_"
"EquationEditor"="buAzs!vtf(Cyn.Q2tAE!FyAzs!vtf(Cyn.Q2tAE!"
"GraphicFilters_Min"="b}i[T1stf(Cyn.Q2tAE!w}i[T1stf(Cyn.Q2tAE!O{i[T1stf(Cyn.Q2tAE!9xi[T1stf(Cyn.Q2tAE!"
"GraphicFilters_Basic"="gyi[T1stf(Cyn.Q2tAE!~HdG2*4)g([fAef_HaqQ]qT]jI{jf(=1&L[-81-]yqT]jI{jf(=1&L[-81-]"
"MSDraw"="4g-cflYxf(3]8efDe`c_{HdG2*4)g([fAef_HaqQ6g-cflYxf(3]8efDe`c_5g-cflYxf(3]8efDe`c_}HdG2*4)g([fAef_HaqQ"
"MSInfo"="@IdG2*4)g([fAef_HaqQ=IdG2*4)g([fAef_HaqQ?IdG2*4)g([fAef_HaqQJ4fEfj]xf(WK30(tw2hay^L0&k7zf(pZ=efDe`c_K4fEfj]xf(WK30(tw2haL4fEfj]xf(WK30(tw2ha"
"NoteIt"="~X{~Fdj{f(kw,0(EJrk@}X{~Fdj{f(kw,0(EJrk@"
"WordArt"="{X{~Fdj{f(kw,0(EJrk@K}PU+=k%g(FfAef^*}-RzX{~Fdj{f(kw,0(EJrk@"
"Shared"="-fCo)=Lnf(E4*L[xeX)y"
"_F14067_CustomAction_MSM"="kfh5BaGzf(c**L[+AFYb"
"FUD"="cA%Ty(UQz9H72WWQE*6-"
"Fonts"="Qa72Y?!lf({jeqFYK{3kva72Y?!lf({jeqFYK{3kbc72Y?!lf({jeqFYK{3kLW!c'ANyf(Yn9efDe`c_KW!c'ANyf(Yn9efDe`c_gb72Y?!lf({jeqFYK{3k[a72Y?!lf({jeqFYK{3kra72Y?!lf({jeqFYK{3kta72Y?!lf({jeqFYK{3kza72Y?!lf({jeqFYK{3kib72Y?!lf({jeqFYK{3k!b72Y?!lf({jeqFYK{3k'b72Y?!lf({jeqFYK{3k)b72Y?!lf({jeqFYK{3k`n]vpzi&g(]x@efOyH&$-b72Y?!lf({jeqFYK{3k2b72Y?!lf({jeqFYK{3k4b72Y?!lf({jeqFYK{3k@b72Y?!lf({jeqFYK{3kBb72Y?!lf({jeqFYK{3k)0~0`xhkf(7)dqFgkW_Bkb72Y?!lf({jeqFYK{3k$c72Y?!lf({jeqFYK{3klFrT`_AWG)i2CefPB7^,7c72Y?!lf({jeqFYK{3k9c72Y?!lf({jeqFYK{3kKc72Y?!lf({jeqFYK{3krrUgDcxYZ8WY-?SRlc(&$ReZR@_kf(1rcqFgkW_B`c72Y?!lf({jeqFYK{3k20~0`xhkf(7)dqFgkW_Bjc72Y?!lf({jeqFYK{3k"
"_F11860_MDAC_Archive"="d(3qxGpxf(XN30(tw2ha\02Calendar"
"IE55"="NnJ]1^ovf((6(L[+AFYbF1Op,Btvf(,F(L[+AFYb\02IE55_Install"
"Shoebox_Never"="8mjF_J75&?z9bvb1NXWU!k$DgrPlp=1]k(jr61G3dOVw5,2fQ9(7S)c8{`m.\02ShoeBox"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\29BE0F9702994D11FAAF000CF4444384\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="00102-OEM-0000007-00000"
"LocalPackage"="c:\\WINDOWS\\Installer\\19c201.msi"
"AuthorizedCDFPrefix"=""
"Comments"="Installazione di Microsoft Works 6.0."
"Contact"=""
"DisplayVersion"="06.00.0000"
"HelpLink"=expand:"http://www.microsoft.com/italy/support/"
"HelpTelephone"=" "
"InstallDate"="20020101"
"InstallLocation"=""
"ModifyPath"=expand:"MsiExec.exe /I{79F0EB92-9920-11D4-AFFA-00C04F443448}"
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{79F0EB92-9920-11D4-AFFA-00C04F443448}"
"URLInfoAbout"="http://www.microsoft.com"
"URLUpdateInfo"="http://www.microsoft.com/italy/ms.htm"
"VersionMajor"=dword:00000006
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:06000000
"Language"=dword:00000410
"DisplayName"="Microsoft Works 6.0"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\A0CD2F7FE22CDA94DA739737905AE4B7\Features]
@DACL=(02 0000)
"Typical"="%UOQhc0&*@vBu!gQnNt61?.LDgP}l9Q(M^%f?_qr_k,PwJuz^=87nWo[kL'Zba~}P(&fc=@bu0MzXhd@%)Ix3!{77?,o*80T4BpsVE5q`cP,o9rEI&nfCotMLZcWP8V!BA)7Gwf]`Scdus0wy6^6o8QmwsO6*&{%jmPX^)%0b=]J{y*An(dwlzOxqCpnAA1%L$R8+y}Gg`'e8(J,k=4(?.ujGG'K*TO'&B-L2@LI_YE4xSJ%RvyQzsNET9}8vivZ82w`0,X2KJH.g(cM!!!FxVSZL@gdis&rWAek+-T(HRpxWP%P.S[pq=.(bbQ9VVEr'.i$2`'85Aw$lt^QmP@z,gH.[lmkf(`%(L[U]z)5"
"ARX"="\02Typical"
"Data_EUR_ARX"="%UOQhc0&*@vBu!gQnNt61cW[7Q(=I@@nH@%9VgxQ=w`mGK8b5?lefn?xY),EVg%Use]Mg9B%]X*8iTVF6te?k~R(@@LdU$]^.bTNFDOOte[AaA2.~sVdd!N2W!L?&taWt=~P-&B24`Nws(+UR-xjo=}`W5dHkKLrvuc~fkV5m9K]`]5JH?]p\02ARX"
"Resource_0809_ARX"="H.wa+5WGu8pXBQkbLh]5OrRiWcB1{9Ce,(?_MK~=NKP4o.TJd9F,NrW+suTX\02Data_EUR_ARX"
"ExeArx_"="fDHF017Ck9fqJL9-26vBD_m}r1*XBAl(.lyf^M`LZflL^!=6X?6@&1zAW+J,^0kFNw,S_=A1a7iiw`IZkj!u1T_VD@g^-x377knGf^YcH9E+_@z[CnJkmM!e)+T{s&8&!@mDOHIRbCf.3Zzd6wH&m8oBN]=+j@5WdFTwqYYSk@z~NL^^Wb{u940=X='LQ?14_)k7u}DIR^tXoU7Wt@i!Z]E.f$T*PZBYkvFW-@_n}24Z!'+2+wbWoRBpM@[f!Z'oYJd*`NN2RToe}8Ke.AgRDetfX,Wmt9Hq!AmF!sq,~yEYxzBIL24%@?0HMR8LK+forJIx[P7Gi9oEa7qvn79+-nd+lj`[q@mvgzYUN5.OHnh?-4]Up8Z{J%*yoESP)(ef!y'`d8Mcx}5=B2)@\02Resource_0809_ARX"
"Complete"=""
"CD_EUR"="8TO7ADTbf?}__ONt'FQ_r7jv!(7rC=K5]]v7j]iVdLN?gX+k^8`^FHJWo9J[O.[m0rBj,9cDNvGg2A!-\02Complete"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\A0CD2F7FE22CDA94DA739737905AE4B7\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="55063-OEM-0000007-00000"
"LocalPackage"="c:\\WINDOWS\\Installer\\19c211.msi"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="9.00.17.0200"
"HelpLink"=expand:"http://www.Microsoft.com/support"
"HelpTelephone"=""
"InstallDate"="20020101"
"InstallLocation"="c:\\Programmi\\Microsoft AutoRoute\\"
"ModifyPath"=expand:"MsiExec.exe /I{F7F2DC0A-C22E-49AD-AD37-797309A54E7B}"
"NoRepair"=dword:00000001
"Publisher"="Microsoft"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{F7F2DC0A-C22E-49AD-AD37-797309A54E7B}"
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000009
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:09000011
"Language"=dword:00000410
"DisplayName"="Microsoft AutoRoute 2002"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\EB79C053C7D38EE4AB9A00CB3B5D2472\Features]
@DACL=(02 0000)
"WebPublFiles"="]aZF&kXsf(lf*L[_GKba}gbvW,Qmf(G'*L[H+8]b_}IuVaZtf(Cyn.Q2tAE!_{@h=i,nf(R8(L[JO9}X_}M^V8Xqf(Rp)L[_GKbahlT]jI{jf(=1&L[-81-][qFvyQP~f(8Hw.QdFt.0)VWe6E%wf(S5YX%43_cm"
.
Ora fine scansione: 2010-11-15 23:13:56
ComboFix-quarantined-files.txt 2010-11-15 22:13

Pre-Run: 17.873.985.536 byte disponibili
Post-Run: 18.173.091.840 byte disponibili

- - End Of File - - ECDE561F2E78FE11FA88D71277A0FC1B


Spero può essere di aiuto... [weponed]
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda The Doctor » mar nov 16, 2010 9:15 am

Ciao Nonno
Avatar utente
The Doctor
MLI Hero
MLI Hero
 
Messaggi: 5553
Iscritto il: mer mar 24, 2010 9:10 am
Località: Fiumicino (Roma)

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » mar nov 16, 2010 7:32 pm

Ciao..inoltro nuovamente il report di combofix.. [std]è molto lungo quindi invio dopo il seguito.

ComboFix 10-11-15.03 - Proprietario 15/11/2010 23.05.14.3.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.39.1040.18.1279.834 [GMT 1:00]
Eseguito da: c:\documents and settings\Proprietario\Desktop\ComboFix.exe
.

((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\InfoSat.txt

.
((((((((((((((((((((((((( Files Creati Da 2010-10-15 al 2010-11-15 )))))))))))))))))))))))))))))))))))
.

2010-11-15 21:10 . 2010-11-15 21:10 -------- d-----w- C:\$AVG
2010-11-13 22:10 . 2010-11-13 22:10 -------- d-----w- c:\programmi\CCleaner
2010-11-13 21:40 . 2010-11-13 22:08 -------- d-----w- c:\documents and settings\Proprietario\Impostazioni locali\Dati applicazioni\Temp
2010-11-13 21:39 . 2010-11-13 21:47 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Alwil Software
2010-11-13 21:39 . 2010-11-13 21:39 -------- d-----w- c:\programmi\Alwil Software
2010-11-13 21:25 . 2010-11-13 21:25 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\Avg7
2010-11-13 19:29 . 2010-11-13 19:29 -------- d-----w- c:\documents and settings\Proprietario\DoctorWeb
2010-11-13 18:59 . 2009-06-25 08:44 730112 ----a-w- c:\windows\system32\lsasrv.dll
2010-11-13 18:59 . 2009-06-22 11:34 92544 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-11-13 18:07 . 2010-11-14 23:33 -------- d-----w- c:\windows\system32\CatRoot_bak
2010-11-13 18:05 . 2009-10-23 14:27 3555328 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-11-13 18:04 . 2009-06-21 22:05 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-11-13 18:02 . 2008-06-14 17:59 272768 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-11-13 18:01 . 2009-11-21 16:38 470528 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-11-13 18:00 . 2010-06-14 14:30 743936 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-11-11 18:30 . 2008-05-01 14:31 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-11-11 18:29 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-11-11 18:23 . 2009-06-05 07:42 655872 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-11-11 18:20 . 2008-04-21 21:26 219136 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-11-11 18:16 . 2010-11-13 19:02 -------- d-----w- c:\documents and settings\All Users\Dati applicazioni\MFAData
2010-11-11 18:11 . 2010-11-11 18:11 -------- d-----w- c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\Google
2010-11-11 18:06 . 2010-11-11 18:06 -------- d-----w- c:\documents and settings\LocalService\Impostazioni locali\Dati applicazioni\Google

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-21 07:38 . 2008-04-21 07:38 38426952 ----a-w- c:\programmi\avg75free_524a1293.exe
.

((((((((((((((((((((((((((((( SnapShot@2010-11-13_22.32.51 )))))))))))))))))))))))))))))))))))))))))
.
+ 2002-09-16 23:47 . 2009-06-25 08:44 59392 c:\windows\system32\wdigest.dll
+ 2002-09-09 12:51 . 2009-06-15 11:32 78336 c:\windows\system32\telnet.exe
+ 2005-05-29 12:29 . 2009-10-21 06:00 75776 c:\windows\system32\strmfilt.dll
- 2005-05-29 12:29 . 2004-08-19 13:39 75776 c:\windows\system32\strmfilt.dll
- 2002-01-01 00:33 . 2008-07-08 13:06 18808 c:\windows\system32\spmsg.dll
+ 2002-01-01 00:33 . 2009-05-26 11:41 18808 c:\windows\system32\spmsg.dll
+ 2003-12-15 10:14 . 2009-06-25 08:44 56320 c:\windows\system32\secur32.dll
+ 2002-09-16 23:47 . 2009-02-06 16:54 35328 c:\windows\system32\sc.exe
+ 2003-12-15 10:14 . 2009-10-12 13:51 69632 c:\windows\system32\raschap.dll
- 2003-12-15 10:14 . 2004-08-19 13:39 69632 c:\windows\system32\raschap.dll
- 2003-12-15 10:14 . 2006-10-23 15:18 39424 c:\windows\system32\pngfilt.dll
+ 2003-12-15 10:14 . 2010-04-16 15:35 39424 c:\windows\system32\pngfilt.dll
- 2002-01-01 09:40 . 2010-11-13 19:06 48308 c:\windows\system32\perfc010.dat
+ 2002-01-01 09:40 . 2010-11-14 19:28 48308 c:\windows\system32\perfc010.dat
- 2002-01-01 09:39 . 2010-11-13 19:06 40664 c:\windows\system32\perfc009.dat
+ 2002-01-01 09:39 . 2010-11-14 19:28 40664 c:\windows\system32\perfc009.dat
+ 2005-05-24 07:59 . 2008-06-12 14:16 91648 c:\windows\system32\mtxoci.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 66560 c:\windows\system32\mtxclu.dll
- 2005-05-24 07:59 . 2006-03-01 19:43 66560 c:\windows\system32\mtxclu.dll
+ 2001-08-31 06:07 . 2009-11-27 17:33 17920 c:\windows\system32\msyuv.dll
+ 2002-09-16 23:46 . 2009-11-27 16:38 28672 c:\windows\system32\msvidc32.dll
- 2003-12-15 10:15 . 2004-08-19 13:39 11264 c:\windows\system32\msrle32.dll
+ 2003-12-15 10:15 . 2009-11-27 16:38 11264 c:\windows\system32\msrle32.dll
- 2002-09-16 23:46 . 2004-08-19 13:39 58880 c:\windows\system32\msdtclog.dll
+ 2002-09-16 23:46 . 2008-06-12 14:16 58880 c:\windows\system32\msdtclog.dll
+ 2003-12-15 10:15 . 2008-06-24 16:23 74240 c:\windows\system32\mscms.dll
- 2003-12-15 10:15 . 2005-06-29 01:49 74240 c:\windows\system32\mscms.dll
+ 2005-05-22 21:09 . 2009-09-04 20:45 58880 c:\windows\system32\msasn1.dll
- 2002-09-16 23:46 . 2006-10-23 15:18 16384 c:\windows\system32\jsproxy.dll
+ 2002-09-16 23:46 . 2010-04-16 15:35 16384 c:\windows\system32\jsproxy.dll
+ 2001-08-31 06:07 . 2009-11-27 16:38 48128 c:\windows\system32\iyuv_32.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 96768 c:\windows\system32\inseng.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 96768 c:\windows\system32\inseng.dll
- 2005-05-29 12:29 . 2004-08-19 13:39 81920 c:\windows\system32\ieencode.dll
+ 2005-05-29 12:29 . 2010-04-16 15:35 81920 c:\windows\system32\ieencode.dll
+ 2005-05-29 12:29 . 2009-10-21 06:00 25088 c:\windows\system32\httpapi.dll
+ 2002-09-16 23:45 . 2009-10-15 17:20 82432 c:\windows\system32\fontsub.dll
+ 2005-05-29 12:29 . 2010-04-16 15:35 55808 c:\windows\system32\extmgr.dll
- 2005-05-29 12:29 . 2006-10-23 15:18 55808 c:\windows\system32\extmgr.dll
+ 2009-06-25 08:44 . 2009-06-25 08:44 59392 c:\windows\system32\dllcache\wdigest.dll
+ 2009-06-15 11:32 . 2009-06-15 11:32 78336 c:\windows\system32\dllcache\telnet.exe
+ 2009-10-21 06:00 . 2009-10-21 06:00 75776 c:\windows\system32\dllcache\strmfilt.dll
+ 2009-06-25 08:44 . 2009-06-25 08:44 56320 c:\windows\system32\dllcache\secur32.dll
+ 2002-09-16 23:47 . 2009-02-06 16:54 35328 c:\windows\system32\dllcache\sc.exe
+ 2009-10-12 13:51 . 2009-10-12 13:51 69632 c:\windows\system32\dllcache\raschap.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 91648 c:\windows\system32\dllcache\mtxoci.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 66560 c:\windows\system32\dllcache\mtxclu.dll
+ 2009-11-27 17:33 . 2009-11-27 17:33 17920 c:\windows\system32\dllcache\msyuv.dll
+ 2002-09-16 23:46 . 2009-11-27 16:38 28672 c:\windows\system32\dllcache\msvidc32.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 11264 c:\windows\system32\dllcache\msrle32.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 58880 c:\windows\system32\dllcache\msdtclog.dll
+ 2008-06-24 16:23 . 2008-06-24 16:23 74240 c:\windows\system32\dllcache\mscms.dll
+ 2009-09-04 20:45 . 2009-09-04 20:45 58880 c:\windows\system32\dllcache\msasn1.dll
+ 2009-06-22 11:34 . 2009-06-22 11:34 92544 c:\windows\system32\dllcache\ksecdd.sys
+ 2006-05-10 05:23 . 2010-04-16 15:35 16384 c:\windows\system32\dllcache\jsproxy.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 16384 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 48128 c:\windows\system32\dllcache\iyuv_32.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 96768 c:\windows\system32\dllcache\inseng.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 96768 c:\windows\system32\dllcache\inseng.dll
+ 2010-04-16 15:35 . 2010-04-16 15:35 81920 c:\windows\system32\dllcache\ieencode.dll
- 2006-05-09 11:00 . 2006-10-23 11:00 18432 c:\windows\system32\dllcache\iedw.exe
+ 2006-05-09 11:00 . 2010-04-16 13:36 18432 c:\windows\system32\dllcache\iedw.exe
+ 2009-10-21 06:00 . 2009-10-21 06:00 25088 c:\windows\system32\dllcache\httpapi.dll
+ 2002-09-16 23:45 . 2009-10-15 17:20 82432 c:\windows\system32\dllcache\fontsub.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 55808 c:\windows\system32\dllcache\extmgr.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 55808 c:\windows\system32\dllcache\extmgr.dll
+ 2009-12-14 07:35 . 2009-12-14 07:35 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2010-11-13 17:59 . 2005-07-26 04:40 60416 c:\windows\system32\dllcache\colbact.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 85504 c:\windows\system32\dllcache\avifil32.dll
+ 2009-07-17 18:56 . 2009-07-17 18:56 58880 c:\windows\system32\dllcache\atl.dll
+ 2010-03-05 14:55 . 2010-03-05 14:55 65536 c:\windows\system32\dllcache\asycfilt.dll
+ 2002-09-16 23:45 . 2009-12-14 07:35 33280 c:\windows\system32\csrsrv.dll
- 2003-12-15 10:16 . 2004-08-19 13:39 85504 c:\windows\system32\avifil32.dll
+ 2003-12-15 10:16 . 2009-11-27 16:38 85504 c:\windows\system32\avifil32.dll
- 2003-12-15 10:16 . 2004-08-19 13:39 58880 c:\windows\system32\atl.dll
+ 2003-12-15 10:16 . 2009-07-17 18:56 58880 c:\windows\system32\atl.dll
+ 2002-09-16 23:44 . 2010-03-05 14:55 65536 c:\windows\system32\asycfilt.dll
+ 2009-11-27 17:33 . 2009-11-27 17:33 17920 c:\windows\Driver Cache\i386\msyuv.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
+ 2001-08-31 06:08 . 2009-11-27 16:38 8704 c:\windows\system32\tsbyuv.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 8704 c:\windows\system32\dllcache\tsbyuv.dll
+ 2009-11-27 16:38 . 2009-11-27 16:38 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
+ 2005-05-17 00:42 . 2010-04-16 13:47 368640 c:\windows\system32\xpsp3res.dll
+ 2005-05-29 12:29 . 2009-04-01 22:02 604160 c:\windows\system32\wmspdmod.dll
- 2002-09-16 23:47 . 2006-08-17 12:29 132096 c:\windows\system32\wkssvc.dll
+ 2002-09-16 23:47 . 2009-06-10 06:30 132096 c:\windows\system32\wkssvc.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 664576 c:\windows\system32\wininet.dll
+ 2005-02-06 09:45 . 2009-08-25 09:46 352256 c:\windows\system32\winhttp.dll
+ 2003-12-15 10:16 . 2009-02-06 16:39 227840 c:\windows\system32\wbem\wmiprvse.exe
+ 2003-12-15 10:16 . 2009-02-09 10:18 453120 c:\windows\system32\wbem\wmiprvsd.dll
+ 2003-12-15 10:16 . 2009-02-09 10:18 473088 c:\windows\system32\wbem\fastprox.dll
+ 2003-12-15 10:13 . 2010-03-10 08:02 417792 c:\windows\system32\vbscript.dll
- 2003-12-15 10:13 . 2004-08-19 13:39 417792 c:\windows\system32\vbscript.dll
+ 2004-12-07 17:18 . 2010-04-16 15:35 625664 c:\windows\system32\urlmon.dll
+ 2002-09-16 23:47 . 2009-10-15 21:50 119808 c:\windows\system32\t2embed.dll
+ 2003-12-15 10:14 . 2009-08-26 08:14 247326 c:\windows\system32\strmdll.dll
- 2004-12-07 17:18 . 2006-10-23 15:18 474624 c:\windows\system32\shlwapi.dll
+ 2004-12-07 17:18 . 2010-04-16 15:35 474624 c:\windows\system32\shlwapi.dll
+ 2002-09-16 23:47 . 2009-02-09 10:05 111104 c:\windows\system32\services.exe
+ 2005-05-22 21:09 . 2009-06-25 08:44 168448 c:\windows\system32\schannel.dll
+ 2005-01-14 05:34 . 2009-02-09 10:19 399360 c:\windows\system32\rpcss.dll
+ 2005-05-24 07:59 . 2009-04-15 15:16 584192 c:\windows\system32\rpcrt4.dll
+ 2003-12-15 10:14 . 2009-10-12 13:51 112640 c:\windows\system32\rastls.dll
- 2003-12-15 10:14 . 2004-08-19 13:39 112640 c:\windows\system32\rastls.dll
+ 2002-01-01 09:40 . 2010-11-14 19:28 346260 c:\windows\system32\perfh010.dat
- 2002-01-01 09:40 . 2010-11-13 19:06 346260 c:\windows\system32\perfh010.dat
- 2002-01-01 09:39 . 2010-11-13 19:06 312946 c:\windows\system32\perfh009.dat
+ 2002-01-01 09:39 . 2010-11-14 19:28 312946 c:\windows\system32\perfh009.dat
- 2003-12-15 10:14 . 2004-08-19 13:39 285696 c:\windows\system32\pdh.dll
+ 2003-12-15 10:14 . 2009-03-06 14:44 285696 c:\windows\system32\pdh.dll
+ 2003-12-15 10:14 . 2009-10-13 10:51 267776 c:\windows\system32\oakley.dll
- 2003-12-15 10:14 . 2004-08-19 13:39 267776 c:\windows\system32\oakley.dll
+ 2002-01-01 09:39 . 2009-02-09 10:18 736256 c:\windows\system32\ntdll.dll
+ 2002-09-16 23:46 . 2008-06-20 17:39 247296 c:\windows\system32\mswsock.dll
- 2002-09-16 23:46 . 2004-08-19 13:39 247296 c:\windows\system32\mswsock.dll
+ 2003-12-15 10:14 . 2009-08-05 09:05 205312 c:\windows\system32\mswebdvd.dll
+ 2002-09-16 23:46 . 2009-09-11 14:34 133632 c:\windows\system32\msv1_0.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 532480 c:\windows\system32\mstime.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 532480 c:\windows\system32\mstime.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 146432 c:\windows\system32\msrating.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 146432 c:\windows\system32\msrating.dll
- 2003-12-15 10:15 . 2004-08-19 13:39 346112 c:\windows\system32\mspaint.exe
+ 2003-12-15 10:15 . 2009-12-17 07:58 346112 c:\windows\system32\mspaint.exe
+ 2003-12-15 10:15 . 2010-04-16 15:35 449024 c:\windows\system32\mshtmled.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 161792 c:\windows\system32\msdtcuiu.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 956928 c:\windows\system32\msdtctm.dll
+ 2005-05-24 07:59 . 2008-06-12 14:16 428032 c:\windows\system32\msdtcprx.dll
+ 2002-09-16 23:46 . 2009-05-07 15:41 346112 c:\windows\system32\localspl.dll
+ 2003-12-15 10:15 . 2009-06-25 08:44 298496 c:\windows\system32\kerberos.dll
+ 2003-12-15 10:15 . 2010-01-29 15:06 683520 c:\windows\system32\inetcomm.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 251392 c:\windows\system32\iepeers.dll
- 2005-02-18 15:36 . 2006-10-23 15:18 251392 c:\windows\system32\iepeers.dll
+ 2005-05-22 21:09 . 2008-10-23 12:59 283648 c:\windows\system32\gdi32.dll
+ 2002-01-01 08:43 . 2010-11-14 17:22 246312 c:\windows\system32\FNTCACHE.DAT
- 2002-01-01 08:43 . 2001-12-31 23:46 246312 c:\windows\system32\FNTCACHE.DAT
+ 2005-05-24 07:59 . 2008-07-07 20:31 253952 c:\windows\system32\es.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 205312 c:\windows\system32\dxtrans.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 205312 c:\windows\system32\dxtrans.dll
- 2003-12-15 10:15 . 2006-10-23 15:18 357888 c:\windows\system32\dxtmsft.dll
+ 2003-12-15 10:15 . 2010-04-16 15:35 357888 c:\windows\system32\dxtmsft.dll
+ 2002-09-16 23:47 . 2010-02-11 12:01 226880 c:\windows\system32\drivers\tcpip6.sys
+ 2005-05-22 20:46 . 2008-06-20 10:45 360320 c:\windows\system32\drivers\tcpip.sys
+ 2002-09-16 23:47 . 2009-12-31 16:14 352640 c:\windows\system32\drivers\srv.sys
+ 2005-05-22 21:13 . 2010-02-24 12:31 454016 c:\windows\system32\drivers\mrxsmb.sys
+ 2005-05-29 12:30 . 2009-10-20 14:58 263552 c:\windows\system32\drivers\http.sys
+ 2005-05-29 12:30 . 2008-06-14 17:59 272768 c:\windows\system32\drivers\bthport.sys
+ 2002-09-16 23:44 . 2008-08-14 09:51 138368 c:\windows\system32\drivers\afd.sys
+ 2003-12-15 10:15 . 2008-06-20 17:39 148992 c:\windows\system32\dnsapi.dll
+ 2005-05-29 12:29 . 2009-04-01 22:02 604160 c:\windows\system32\dllcache\wmspdmod.dll
+ 2010-11-13 17:59 . 2009-02-06 16:39 227840 c:\windows\system32\dllcache\wmiprvse.exe
+ 2010-11-13 17:59 . 2009-02-09 10:18 453120 c:\windows\system32\dllcache\wmiprvsd.dll
- 2006-08-17 12:29 . 2006-08-17 12:29 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2006-08-17 12:29 . 2009-06-10 06:30 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 664576 c:\windows\system32\dllcache\wininet.dll
+ 2008-12-16 12:47 . 2009-08-25 09:46 352256 c:\windows\system32\dllcache\winhttp.dll
+ 2007-12-18 14:40 . 2010-03-10 08:02 417792 c:\windows\system32\dllcache\vbscript.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 625664 c:\windows\system32\dllcache\urlmon.dll
+ 2006-08-16 09:37 . 2010-02-11 12:01 226880 c:\windows\system32\dllcache\tcpip6.sys
+ 2006-04-20 11:51 . 2008-06-20 10:45 360320 c:\windows\system32\dllcache\tcpip.sys
+ 2009-10-15 21:50 . 2009-10-15 21:50 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2006-08-24 12:19 . 2009-08-26 08:14 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2006-04-21 06:12 . 2009-12-31 16:14 352640 c:\windows\system32\dllcache\srv.sys
- 2006-05-10 05:23 . 2006-10-23 15:18 474624 c:\windows\system32\dllcache\shlwapi.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 474624 c:\windows\system32\dllcache\shlwapi.dll
+ 2010-11-13 17:59 . 2009-02-09 10:05 111104 c:\windows\system32\dllcache\services.exe
+ 2009-06-25 08:44 . 2009-06-25 08:44 168448 c:\windows\system32\dllcache\schannel.dll
+ 2010-11-13 17:59 . 2009-02-09 10:19 399360 c:\windows\system32\dllcache\rpcss.dll
+ 2009-04-15 15:16 . 2009-04-15 15:16 584192 c:\windows\system32\dllcache\rpcrt4.dll
+ 2009-10-12 13:51 . 2009-10-12 13:51 112640 c:\windows\system32\dllcache\rastls.dll
+ 2010-11-13 17:59 . 2009-03-06 14:44 285696 c:\windows\system32\dllcache\pdh.dll
+ 2009-10-13 10:51 . 2009-10-13 10:51 267776 c:\windows\system32\dllcache\oakley.dll
+ 2010-11-13 17:59 . 2009-02-09 10:18 736256 c:\windows\system32\dllcache\ntdll.dll
+ 2008-06-20 17:39 . 2008-06-20 17:39 247296 c:\windows\system32\dllcache\mswsock.dll
+ 2009-08-05 09:05 . 2009-08-05 09:05 205312 c:\windows\system32\dllcache\mswebdvd.dll
+ 2009-06-25 08:44 . 2009-09-11 14:34 133632 c:\windows\system32\dllcache\msv1_0.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 532480 c:\windows\system32\dllcache\mstime.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 532480 c:\windows\system32\dllcache\mstime.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 146432 c:\windows\system32\dllcache\msrating.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 146432 c:\windows\system32\dllcache\msrating.dll
+ 2009-12-17 07:58 . 2009-12-17 07:58 346112 c:\windows\system32\dllcache\mspaint.exe
+ 2006-05-10 05:23 . 2010-04-16 15:35 449024 c:\windows\system32\dllcache\mshtmled.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 161792 c:\windows\system32\dllcache\msdtcuiu.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 956928 c:\windows\system32\dllcache\msdtctm.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 428032 c:\windows\system32\dllcache\msdtcprx.dll
+ 2006-05-05 09:41 . 2010-02-24 12:31 454016 c:\windows\system32\dllcache\mrxsmb.sys
+ 2006-08-17 12:29 . 2009-06-25 08:44 730112 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-05-07 15:41 . 2009-05-07 15:41 346112 c:\windows\system32\dllcache\localspl.dll
+ 2009-06-25 08:44 . 2009-06-25 08:44 298496 c:\windows\system32\dllcache\kerberos.dll
+ 2006-07-27 13:25 . 2010-01-29 15:06 683520 c:\windows\system32\dllcache\inetcomm.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 251392 c:\windows\system32\dllcache\iepeers.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 251392 c:\windows\system32\dllcache\iepeers.dll
+ 2009-10-20 14:58 . 2009-10-20 14:58 263552 c:\windows\system32\dllcache\http.sys
+ 2008-10-23 12:59 . 2008-10-23 12:59 283648 c:\windows\system32\dllcache\gdi32.dll
+ 2010-11-13 17:59 . 2009-02-09 10:18 473088 c:\windows\system32\dllcache\fastprox.dll
+ 2008-07-07 20:31 . 2008-07-07 20:31 253952 c:\windows\system32\dllcache\es.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 205312 c:\windows\system32\dllcache\dxtrans.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 205312 c:\windows\system32\dllcache\dxtrans.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2006-05-19 13:20 . 2008-06-20 17:39 148992 c:\windows\system32\dllcache\dnsapi.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 151552 c:\windows\system32\dllcache\cdfview.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 151552 c:\windows\system32\dllcache\cdfview.dll
+ 2010-04-20 05:46 . 2010-04-20 05:46 285696 c:\windows\system32\dllcache\atmfd.dll
+ 2008-06-20 10:44 . 2008-08-14 09:51 138368 c:\windows\system32\dllcache\afd.sys
+ 2010-11-13 17:59 . 2009-02-09 10:19 683008 c:\windows\system32\dllcache\advapi32.dll
+ 2006-08-16 11:59 . 2010-02-12 04:45 100864 c:\windows\system32\dllcache\6to4svc.dll
+ 2002-09-16 23:44 . 2010-04-16 15:35 151552 c:\windows\system32\cdfview.dll
- 2002-09-16 23:44 . 2006-10-23 15:18 151552 c:\windows\system32\cdfview.dll
+ 2002-09-16 23:44 . 2010-04-20 05:46 285696 c:\windows\system32\atmfd.dll
- 2002-09-16 23:44 . 2004-08-19 13:37 285696 c:\windows\system32\atmfd.dll
+ 2002-09-16 23:44 . 2009-02-09 10:19 683008 c:\windows\system32\advapi32.dll
- 2002-09-16 23:44 . 2004-08-19 13:39 683008 c:\windows\system32\advapi32.dll
+ 2003-12-15 10:16 . 2010-02-12 04:45 100864 c:\windows\system32\6to4svc.dll
- 2003-12-15 10:17 . 2004-08-19 13:39 743936 c:\windows\PCHEALTH\HELPCTR\Binaries\helpsvc.exe
+ 2003-12-15 10:17 . 2010-06-14 14:30 743936 c:\windows\PCHEALTH\HELPCTR\Binaries\helpsvc.exe
+ 2004-10-28 01:14 . 2010-02-24 12:31 454016 c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2004-10-08 23:48 . 2009-10-20 14:58 263552 c:\windows\Driver Cache\i386\http.sys
+ 2010-11-13 18:02 . 2008-06-14 17:59 272768 c:\windows\Driver Cache\i386\bthport.sys
+ 2003-12-15 10:17 . 2009-11-21 16:38 470528 c:\windows\AppPatch\aclayers.dll
+ 2010-11-13 18:01 . 2009-08-13 13:55 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
+ 2005-05-22 20:42 . 2010-05-02 08:24 1850880 c:\windows\system32\win32k.sys
+ 2005-03-12 01:52 . 2008-07-03 13:14 8483840 c:\windows\system32\shell32.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 1506816 c:\windows\system32\shdocvw.dll
- 2003-12-15 10:14 . 2006-06-22 05:06 1439232 c:\windows\system32\query.dll
+ 2003-12-15 10:14 . 2009-07-17 16:26 1439232 c:\windows\system32\query.dll
+ 2003-12-15 10:14 . 2010-02-05 18:39 1296384 c:\windows\system32\quartz.dll
+ 2005-05-22 20:42 . 2010-02-16 19:31 2185088 c:\windows\system32\ntoskrnl.exe
+ 2005-05-22 20:42 . 2010-02-16 19:31 2062080 c:\windows\system32\ntkrnlpa.exe
+ 2005-02-24 12:03 . 2010-04-16 15:35 3086336 c:\windows\system32\mshtml.dll
+ 2002-09-16 23:46 . 2009-03-21 14:18 1030144 c:\windows\system32\kernel32.dll
+ 2010-05-02 08:24 . 2010-05-02 08:24 1850880 c:\windows\system32\dllcache\win32k.sys
+ 2006-07-13 13:34 . 2008-07-03 13:14 8483840 c:\windows\system32\dllcache\shell32.dll
+ 2006-05-29 15:30 . 2010-04-16 15:35 1506816 c:\windows\system32\dllcache\shdocvw.dll
- 2006-06-22 05:06 . 2006-06-22 05:06 1439232 c:\windows\system32\dllcache\query.dll
+ 2006-06-22 05:06 . 2009-07-17 16:26 1439232 c:\windows\system32\dllcache\query.dll
+ 2010-02-05 18:39 . 2010-02-05 18:39 1296384 c:\windows\system32\dllcache\quartz.dll
+ 2010-11-13 17:59 . 2010-02-16 19:31 2185088 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2010-11-13 17:59 . 2010-02-16 19:30 2020352 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2010-11-13 17:59 . 2010-02-16 19:31 2062080 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2010-11-13 17:59 . 2010-02-16 19:30 2140672 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2006-11-08 05:07 . 2010-01-29 15:06 1315840 c:\windows\system32\dllcache\msoe.dll
+ 2006-05-19 15:09 . 2010-04-16 15:35 3086336 c:\windows\system32\dllcache\mshtml.dll
+ 2006-07-05 10:56 . 2009-03-21 14:18 1030144 c:\windows\system32\dllcache\kernel32.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 1056256 c:\windows\system32\dllcache\danim.dll
- 2006-05-10 05:23 . 2006-10-23 15:18 1056256 c:\windows\system32\dllcache\danim.dll
+ 2006-05-10 05:23 . 2010-04-16 15:35 1023488 c:\windows\system32\dllcache\browseui.dll
- 2003-12-15 10:16 . 2006-10-23 15:18 1056256 c:\windows\system32\danim.dll
+ 2003-12-15 10:16 . 2010-04-16 15:35 1056256 c:\windows\system32\danim.dll
+ 2005-02-18 15:36 . 2010-04-16 15:35 1023488 c:\windows\system32\browseui.dll
+ 2002-01-01 09:00 . 2006-08-21 15:04 1077321 c:\windows\Help\SBSI\Training\orun32.exe
+ 2005-03-02 18:07 . 2010-02-16 19:31 2185088 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2005-03-02 18:07 . 2010-02-16 19:30 2020352 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2005-03-02 18:06 . 2010-02-16 19:31 2062080 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2005-03-02 18:07 . 2010-02-16 19:30 2140672 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2005-05-29 16:30 . 2010-11-02 15:47 35758536 c:\windows\system32\MRT.exe
.
-- Snapshot per reimpostare la data corrente --
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Motive SmartBridge"="c:\progra~1\ALICET~1\SMARTB~1\MotiveSB.exe" [2006-04-21 438359]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2004-08-19 15360]
"Nokia.PCSync"="c:\programmi\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-11-07 1294336]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Suite"="regedit -s" [X]

c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
Alice ti aiuta.lnk - c:\programmi\Alice ti aiuta\bin\matcli.exe [2002-1-1 217088]
Avvio veloce di Adobe Reader.lnk - c:\programmi\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
Microsoft Office.lnk - c:\programmi\Microsoft Office\Office\OSA9.EXE [1999-2-18 65588]

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\eMule\\eMule.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"1600:TCP"= 1600:TCP:xmxxf

R1 StarPortLite;StarPort Storage Controller (Lite);c:\windows\system32\drivers\StarPortLite.sys [01/01/2002 0.05.50 85760]
S2 epydlcdkv;Universal Windows;c:\windows\system32\svchost.exe -k netsvcs [17/09/2002 0.47.21 14336]
S2 gupdate;Servizio di Google Update (gupdate);c:\programmi\Google\Update\GoogleUpdate.exe [17/09/2003 2.52.17 135664]
S2 PPPoEService;PPPoE Service;c:\progra~1\Alice\ALICEE~1\app\pppoeservice.exe [01/01/2002 0.14.30 49152]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [06/08/2006 18.00.34 717296]
S4 Win32 USB2.0 Driver;Win32 USB2.0 Driver; [x]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
epydlcdkv
.
Contenuto della cartella 'Scheduled Tasks'

2010-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2003-09-17 01:51]

2010-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2003-09-17 01:51]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.google.it/
mStart Page = hxxp://it6.hpwis.com/
uInternet Settings,ProxyOverride = 127.0.0.1;localhost
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Google Sidewiki... - c:\programmi\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
Trusted Zone: archiviosex.net\www
Trusted Zone: redfunny.com\www
Trusted Zone: skymasters.biz\www
Trusted Zone: whataboutadog.com
Trusted Zone: whataboutarabit.com
Trusted Zone: xbeta69.com\www
DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-11-15 23:10
Windows 5.1.2600 Service Pack 2 NTFS

scansione processi nascosti ...

scansione entrate autostart nascoste ...

Scansione files nascosti ...

Scansione completata con successo
Files nascosti: 0
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » mar nov 16, 2010 7:35 pm

**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\WBEM\PROVIDERS\Logging]
@DACL=(02 0000)
"Logging"=dword:00000000

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\Secure]
@DACL=(02 0000)

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\0000B11000063D11C8EF00054038389C]
@DACL=(02 0000)
"0140B11900063D11C8EF00054038389C"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\0A777F49BCECBB049BEAE74EC58E16CA]
@DACL=(02 0000)
"19F4AD9090A22324BAC8B67C0490D63E"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\142CF7AB0C28806409E6CB54044BD4A9]
@DACL=(02 0000)
"172A967CC1E79F843B13746400DDC460"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\20204020CBCB0E94FBF413C1ACE4A5F6]
@DACL=(02 0000)
"2020402056D5A5443B4BD3EC27ABC0C6"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\21B0747772942D115BEF0006799C897E]
@DACL=(02 0000)
"014010001E872D116BF00006799C897E"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\482EBB0A8BD7FF44A87DDED1D227F343]
@DACL=(02 0000)
"A0CD2F7FE22CDA94DA739737905AE4B7"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\6BC47400D0E93D110848000CF43A92AA]
@DACL=(02 0000)
"29BE0F9702994D11FAAF000CF4444384"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\CEB9794B854D9284BA787B0A326D941C]
@DACL=(02 0000)
"20CC412817268CD48BDD779933542046"=""

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\172A967CC1E79F843B13746400DDC460\Features]
@DACL=(02 0000)
"_F4381_System"="y''5C`+$g(KD@efDe`c_z''5C`+$g(KD@efDe`c_"
"_F4385_lineservices"="92Cm?6,wf(~&8efDe`c_PXnt@3*vf(r`7efDe`c_\02_F4381_System"
"_F4389_help"="RXnt@3*vf(r`7efDe`c_SXnt@3*vf(r`7efDe`c_,gH.[lmkf(`%(L[U]z)5\02_F4381_System"
"_F12094_Shared"="-fCo)=Lnf(E4*L[xeX)y"
"IE5.5_Dependency"="x$vuPlf0q@2a1_`&]uX]"
"MERGE_MODULES"=""
"SYSTEM_MM"="_'B@&~,wu9`+ID@.clc,\02MERGE_MODULES"
"DEBUG_MM"="\02MERGE_MODULES"
"Minimal_Install"="&6$2g7@^L9`1oPe-?m)Dh20cMsbJV?l9z,cKkVxHhP,d^l)(k@Cb`,O!.5e=r@URMF*n_8hL[wIMa8[LrXse-m=O]8DJ*VcJ1^LHibMU`PO}t@~9aWlizH*f]91WpR=YQ=+p&&2`-[c0ewcC-!pL[=36%CR5$X9D58wyFF~LTAio]paX'{)&^}H^ZnZt5@k?X~3=6SW*k12FXC5$0=0HqncP_mM%iA1Echww^9p(WRTUW+haW(S`*c{o8@GEV%VK6-6ZOXXY,v&,L=+j]U2+)UCk!pqOya%Bp8E{hwB&jdK^@XjP[a-^l=O&j@Va0cCsh'?HLVsH)@F+GDjzT`{xDeMzjK8ez@j8?$h^emAM(`Wu.BN{)=ttfBn7Lqhm4Ex6230&.=3WL'Xdcx+s7W]T9$098=uc0D%68^.w?udPbnZ7i9RfO4VG'zZ`8jRXwe{{89`Pcvm{ceWplAv!&swMa=Dco84^Cb963P2EGaI2CAI(r]6xIZ-w)8_E)oiM-?,{xOa$BP$X6*BY.R3km@L%WJ50M~Kdi^gZwbA-F9]gf{oVvJb?.^,LE06+'?8[ROX-CJ1VBX(7s-$K~@h*B^s%{Yww`Jf?p-9%AAK_X+9S_?2oHXioL2-X39gy254(0G[%*-dB9&e2H@IZ4Q[LF?%Jw'-DVjhul9mF)Kk7y167GZ)b++Ivb8Fv[P(+Nisy[[tSavB3r@y]J32fK4fRPRh7{)@-l9.sM0C_4MoPpuyW?Dv-.?qgq3Y?'gQW'3O6v{7dq8}Gb`0D2~?WJ3_-U2U3z9apN+td6MqABvT~WZY3594HihAf-[WK!{.7U%I5a?RBwSSUXzI(LRG.jOE[a=5CNEl6l2TjW)Y[YeW2)?9u`udIB$9ml9GQrA349?f})8jXy@-'fZXUPRXi+Awi7AVNxpl@$-G$eh&Lz=+NV*0g=~@0$.%y[I=quello?hW=DwAv&80EL39.k%D'@.=O_hRcL'v~{[L0unWn?'y7!$GGrRU$q=5A8e0q9c??8f`_SfXnZfsOZAvI9[$Im2nSo{N.'WmTGCH~?Zt4G)MTT31C+yyK~3Z{@LF5Z%aR@C9rC?x6*=8E=65O6CwaNKg6UCmocPX(9V*Anxr_iUFl@AuAx-Du=X]%jk,MrTK4~66eo5~@?[RK,GkfUXp-W!_!*A@KAp$wGmXkH}`m]4XYo_^g=mj92E*kIWLdq`_NbXf'?OH!6pNs9+]mQVRCk6{v8oFN76b6?EQ6f1G?C46`9?AXdVr{&(NPA6rV,8hb@jej`4ekrJV(V*9[RHuZ9B{joRs`yj'$%@bRqaBf=aCJgopDG(uf0R~q]U{4=Bq2T^TAGW6qEXT`(~NLAUYe(,aTa_8{Mv2!q5O7A~DUp_}f0YSoFyA3hhxq9xb^t7T3aKUkhDt2GNpK9zsMGtO}_Tr4j{wn_`h(@}SL%7`%YeU`ZVysn}h!9moAt,K+Xv(!tSYS).bRAzBfUr2!BP`Ds__JNbrC@+lOnn5W)6JFZ5gwc?Z=@^BB8rmyycnahGy3S]X1Aymq*[p(UlZuJv9@]Mvx8aeTz.zN?n(B3oGkg^96A&_BKM55o%XFw]g.1?H.9y(]zRg9}QNrxchLh-mE9.ygn=9mGl![TimF]5qP@1(k8d7LR@Q(]J2[vdCdA*'J_d3iky*Vd]n7tM&[A@501cXV,{8WqKIZHBnV9OTv-JCRHEQ&oe(&i8e$=9PT{Z[fZ{G6NMBy!QNc=tc9?&gj=GnZ%&S?Bj'+9AHa~nQGEm68Hgt^EYGW?slP+IArkV4hb*mgP?Jx?G]_N-~X+3=EXn$FI_Hr8fWguZ*C-yWcwaI+3chg945KJhT[?@.$0IvPjKf29zCdY8Nrt)^AKeIhbAmo98W2PqC4l[WtD(X-h+4m9(4O,_Zi-ePtE%Tux3JT@)aNS2(z$BPlHR@SOY$g8?lhxHq?'XOP??HNnMk_=!A$=*fvld+0XyVUGiAd?E&nu'}(lKzKWZ)(r0T]='M&jZnQ&&i@s)6.qg_a9Mc%pp4,o2''o,t-%zIA9^NbbAX`Ue9Fkq8FH`(6@HX0mtJ.yV+6No?tH6La=]-A$2EFhRfm2+_,e7Iz9u,-rGY,kt5?3ny={l+c=BJqp(jkf2`pbH'yaPsG@,s~,zM~_k1)8@yIX~eo=(0@,w~tYtDGy0YJ$oIUA`VoRMXS[eK4^{*Pf(b7A]pp?5u`D3bWbW6f.+b{@t*MFBK%@By[?&&SE7.^8Pu&uvvZH1z*}_KJ-TOn9`JiQ?LQ&y0*VaU3TM07?DHL]$Uc.`f{`P{&C%W[8IMd%[^94$y`vY)3tp&Z@`*NQPV3]1aE}bgLE)+Z8=!XpvHv)Nga7q'a]$Z7@,l)^?LowmP7@fw.9(fz9my[ZHT^{ZLtEsqKgP$N?T3C&VbjgIB``@GTMyGVAMvpe+El2s.RdO*mfXp2@K2b.g{'dBHu.'b9VZqf(g6u.Q(31aRw.'b9VZqf(g6u.Q(31aR67k)4s6tf(JR`qF-Q9q.=3&5,B^pf(V%eqFgkW_B7YK?{]tuf(^?eqFgkW_BB3&5,B^pf(V%eqFgkW_Bn^gPBBXtf(Cyn.Q2tAE!&}EZ3m9lf()xcqFJOfBte3aV+5Lyf(C5Def%06$%RC,h.~8wf(x7fqF,Y?r2ychI(5Lyf(C5Def%06$%q+jjF4iyf(s&Aef%06$%kwgD19iyf(t)Aef%06$%A3={H4iyf(s&Aef%06$%(=Y8nB{vf(kbq.QrWeLdxchI(5Lyf(C5Def%06$%81-z%Z}tf(Cyn.Q2tAE!dtsdk^E3Y81WVSO~ly*v',km4SQm,@JVFq'JTKj(O+)klkXH3?]Bj3eG'hGM~61RDGu?WAZ^Ms`W'+paY*ef*pSi)?u4zSpA^dJ%}10Ac}dn0Ako]Al{X%O,s`E+%6sML=9Qfj7U1T+Q`E~KwW_'Y@I!Thi.V09!kP(PT~uc*?^3@2,SI^I[hWi9RHB[4@x25*JGO,p^4zykPX+UWAmUnq95FTJaIxp4^`70S?H,V5.U0iNFF+-8!Gd-x8RaSUu3wlFw57gW&lka`A'2b!fu8!`=sph9`2}_59'KHGNMEV_.&03`pyd-h9[4scLR07q&C?G3di8iCA&%i@eOGhq(Y~!PehLTf9N]HLF^TQ89&S6N^F}C193ey8b+25jo-}Yroi5zf(nT=efDe`c_r.BF^O_P!AJ53i,x(my@DJdG2*4)g([fAef_HaqQCJdG2*4)g([fAef_HaqQBJdG2*4)g([fAef_HaqQAJdG2*4)g([fAef_HaqQ[IdG2*4)g([fAef_HaqQ]IdG2*4)g([fAef_HaqQYIdG2*4)g([fAef_HaqQZIdG2*4)g([fAef_HaqQ9xi[T1stf(Cyn.Q2tAE!b}i[T1stf(Cyn.Q2tAE!~HdG2*4)g([fAef_HaqQ3TTU`P(Ie?3`Rf%G5T&,L}[8*H0E==G5NlD[VdhHc}HEBr8gk?-j=NwATVH%2HJ=+Xm*.91{%gZ?_ci=8ZvuYanP}=NolF^1pGXAw~54TOkXM9nvqU49w.V]Xh`!v0^k}=Z9U'$yo't42T=&70CLX??(xl=P+_*W5b+BfL6$c=v7}_@)wW'VBD$PrPnb2=h&xmjk_U1U'C`&K4APQ=Bh.HrAm+x?6%NFq1Rxs?iIKGOwO.MyVE$4wBE`'@FOMkvGdX`'NjHTr?PZ(AIHpjtSvh7U5f)zW`jKV9y7t'MY(&PE%Bl%QjPSs=qJgjBO[IK*_'s_L^yo*@]ih3[ljOc@c6E.)fi5y82v}%ZJ^@yKklZXrnRMc=SSlz[btNy!KrT]jI{jf(=1&L[-81-]]4Rc[Mx~f(~j=efBq{id6a?LxGCWj=@{}PqDdLC30r4_jvENWAm7F&habMuxmRr8IZU5G9WLi_D=Yx0)9(%-kW*wf(}!8ef6`OP[Aqp6JBDvf(r`7ef6`OP[GXnt@3*vf(r`7efDe`c_@IdG2*4)g([fAef_HaqQ=IdG2*4)g([fAef_HaqQ?IdG2*4)g([fAef_HaqQJ4fEfj]xf(WK30(tw2hay^L0&k7zf(pZ=efDe`c_K4fEfj]xf(WK30(tw2haL4fEfj]xf(WK30(tw2haDWlh[]Tvf(sc7efDe`c_QXnt@3*vf(r`7efDe`c_XXnt@3*vf(r`7efDe`c_vo1!gU0AC=KF?1[,I=%ZTC}EDG}*u9i@iQy![KQha4mW@4+yTADyqO5S7dV*sW2yRiWG!9f=`0Fnuu,mR}TRb]Bw==ub.9(@FzqOz`3FNR[i898hU+s2R-LCfxy1XFv{6=HcY,?}y2I%KNJH4['HK@xqkkW1mg6xy')k'?=S0AW'cai$wXi8ZEUs5]`sl8htOB*NdqPU-GH-Mn$hu=2m^xsC@&eQ0Nt'zAKGw=HweHk?a&FVgvKBH@x8&@BM$h'nv,u.0}$fSP7O_AOXxbpahc%tTQ$GYIW^i=2wr&^}bep!Smz1-.+]5@=Px[Z@vKA41-_EMA{JTA)=ieJHuNxkGdJdhA^+u9l{!x`FKh?0wx6wvMGy%@,e0-FfJLzw2k_$aqoDP9BzTy8+@nI`R@!]%6MY2?*A($,7]v-K.AX45bqt2@hv-K)jd@Oe(X,?sJq_3?zOM9CWR]mKyIdG2*4)g([fAef_HaqQ.reE%tHJQAuP{~`*'n1aE4`gR7}a4?^y~271prnnud$mD{$,G@rk6f?hDg-@FFLw+t)B_9T1gzv'^b`mLDrz*vyqL9L*O,c+I^NS3QVLN^[Dg96n9pUaajyF9&Fj8_Uu.AD[d68ab5+a[+*n_JKz$=$P?oo43a7$GGLqZe1`7A)zHb*u2k9o%T]F&BLTI@ykoQtYUDP%QzJ9u0a}n9.8=Lq.pdAMuJFL@,~Bd9LBzCd)lcu67'=mO)}?H9,$7nU`m~=%sK2US^wx0A`W3$+NPUI2Yjt*9kI+g?P(Z.M6xa@gbymU0gr7v@$2bvUy0)CHt~lVMrRRT?djdz^_!5aIGlZ%(j.{69nth)]Zk*E_ib72Y?!lf({jeqFYK{3k)0~0`xhkf(7)dqFgkW_B$ReZR@_kf(1rcqFgkW_BrrUgDcxYZ8WY-?SRlc(&jc72Y?!lf({jeqFYK{3kpn`_lFGqf(uV(!!eqK50Ya72Y?!lf({jeqFYK{3k+0~0`xhkf(7)dqFgkW_B&O])t}wmf(+?'!!cF5I6ob72Y?!lf({jeqFYK{3khc72Y?!lf({jeqFYK{3klc72Y?!lf({jeqFYK{3kgb72Y?!lf({jeqFYK{3k[a72Y?!lf({jeqFYK{3kra72Y?!lf({jeqFYK{3kza72Y?!lf({jeqFYK{3k`n]vpzi&g(]x@efOyH&$-b72Y?!lf({jeqFYK{3kBb72Y?!lf({jeqFYK{3kkb72Y?!lf({jeqFYK{3klFrT`_AWG)i2CefPB7^,7c72Y?!lf({jeqFYK{3kOr?-!.I7o=qFT9&3+^u+`c72Y?!lf({jeqFYK{3kSIu-GWx2795b!bV^0RzH!0~0`xhkf(7)dqFgkW_BlFrT`exOA+i2CefPB7^,HSlr1~Kyc8*]].9Ro.GF^a72Y?!lf({jeqFYK{3k`a72Y?!lf({jeqFYK{3kla72Y?!lf({jeqFYK{3kpa72Y?!lf({jeqFYK{3kaoT6N%@gp94)1M%5sRc30b72Y?!lf({jeqFYK{3k{N])t}wmf(+?'!!cF5I6(ReZR@_kf(1rcqFgkW_BXb72Y?!lf({jeqFYK{3k*ReZR@_kf(1rcqFgkW_Bcb72Y?!lf({jeqFYK{3k,O])t}wmf(+?'!!cF5I6mb72Y?!lf({jeqFYK{3ksb72Y?!lf({jeqFYK{3k~b72Y?!lf({jeqFYK{3k(c72Y?!lf({jeqFYK{3k%?+]?]b(+A'c]FUV,{ZRgAWBJbnCM?`T8nbcjs7`1c72Y?!lf({jeqFYK{3kVQFSznMek8UH}a.xfss.lFrT`b]SD*i2CefPB7^,?c72Y?!lf({jeqFYK{3ksN]7AVRpM@gh_M[ejWm,Ac72Y?!lf({jeqFYK{3k`P1Ut.C0]=])f{`Ih)nSCc72Y?!lf({jeqFYK{3kEc72Y?!lf({jeqFYK{3kIc72Y?!lf({jeqFYK{3kQc72Y?!lf({jeqFYK{3kLW!c'ANyf(Yn9efDe`c_tjl?w7%Ge8GOCH*`a39-Oa72Y?!lf({jeqFYK{3k}.~0`xhkf(7)dqFgkW_BSa72Y?!lf({jeqFYK{3kUa72Y?!lf({jeqFYK{3k%0~0`xhkf(7)dqFgkW_BD)RfaKH$^A[gOk!$j._!ba72Y?!lf({jeqFYK{3kda72Y?!lf({jeqFYK{3kha72Y?!lf({jeqFYK{3k3)lCy$3i0?t+[I8'aw_W}a72Y?!lf({jeqFYK{3kf16$SuJQ[8~-bYIir}7$Vb72Y?!lf({jeqFYK{3k1?sAjF.zs9-zl{t5EwjCZb72Y?!lf({jeqFYK{3k]b72Y?!lf({jeqFYK{3kfK{YNS^`k@CkYb*CA&${yb72Y?!lf({jeqFYK{3k*c72Y?!lf({jeqFYK{3kkEBHz7{h4=8^rs4b^[cF,c72Y?!lf({jeqFYK{3k-0~0`xhkf(7)dqFgkW_B3c72Y?!lf({jeqFYK{3k5c72Y?!lf({jeqFYK{3k9O])t}wmf(+?'!!cF5I6(MzwNF.c@AOd0vO6sSsgqL=mR~.j*?OZ&N!U]Ul_Oc72Y?!lf({jeqFYK{3kub72Y?!lf({jeqFYK{3kta72Y?!lf({jeqFYK{3kRbB@uxP{YAQ,Fk.`@!mX?yvC*F%bs8HzPH4aHokoWys?gsKp*A~HgYG6Q.gFMY.UrdE8U9yvDxAn5&IuQ@*@hiEJO9kt%Ju@h(}%A{$t!RmD?9w9mbua.^,]=aJObH6oq9WbBcck*ej3Vwdz85YRJ@h,ofv^.dA2,qmp3?,wf(mhq.QrWeLdubos?8awf(mhq.QrWeLd$c72Y?!lf({jeqFYK{3kB=zA*Dj'A9fhx+6+LI8Z+)=G){CPl?9d]$+a!'EB,0ksYmUCh?XDCcuA(4Ye(!.EBlD$A@kTPZ2)ILlA'X^AGsV?@9uD@R?qBInv4..CUDew`@pZh,Qb%`F=}kxRXc~14?-0m`6h%iqgm]%!xd(=u9)VOSV!j{dlNO,Kk~1*2=Yo*wWzVSy^pJ^PHziwWAFn}yOw84M.c]GES92{r?~)zVh8uVl[t.8R'j%Z3?OrQn_!XUPaMI[MPvn{r@,}C0LZhVGxalazUZI{_@AZ.if0yN0g1L$5+`6Xy={S)1@?oA*ySud['q8ED=3L,~L5WXYBq,%Puya&aA51$ret7C@%~.uJwOO-n9ZUCu!7LC6NcJJDhCQ(_9L5@Hqlabg1&D1jEpAl==Z1!+kzex$a3)0?DkF_c@EMRC12puzB{Ec3!dgee=SQ+{cdti6[sYdd*i)%C@zs@SCxb`.CYcUvm~]e^87QZd)GO7e'*'sQXD@28AH[@IC?O.r.=g_-..%zq97VE41{qg*UdL$^u+}=7=xTe!(tPCfW\02MERGE_MODULES"
"TaskLauncher"="1x98Jv22H@0~VD9T1QTr.K20*aG,w8y0b)KsA90PxctE9q2~G=8(BOg.TMWxIL%g['wTi8$14RYI+AXmrO=W,J[X+=)&KyPUahOm.%-d8UZ'5@MnG!Z6yZz.6}dWu?FbD9z5+,J)boNxF)&=G49Uf9&t=fD%(*HT48M9)=R_^@UeB&!u1-'XurzUW3U-q?p{7trSz?kla5vrE$EZz8}d*r$[coy({b+!.O8BJ?tr**7pAj1)wR&2zl~QI=Ewc..'NQ%q5MD?)6-[u@KbLU1A{mH0T^{Z0GjnF=Hy8OQBMuvLV!D$8nYEw9Wk[eJH7N)0!~f+9H2aM?f&D&ef30gS\02Minimal_Install"
"Calendar"="?_@fgerxf(E,9efDe`c_pZnG*MIxf(+G8efDe`c__!ujaPGxf(+G8efDe`c_Hv]P[47wf($-8efDe`c_0qp6JBDvf(r`7efDe`c_-qp6JBDvf(r`7efDe`c_*qp6JBDvf(r`7efDe`c_2,?LHJBwf($-8efDe`c_@JdG2*4)g([fAef_HaqQ?JdG2*4)g([fAef_HaqQNIdG2*4)g([fAef_HaqQ,qp6JBDvf(r`7efDe`c_RIdG2*4)g([fAef_HaqQQIdG2*4)g([fAef_HaqQIIdG2*4)g([fAef_HaqQOIdG2*4)g([fAef_HaqQJIdG2*4)g([fAef_HaqQLIdG2*4)g([fAef_HaqQPIdG2*4)g([fAef_HaqQMIdG2*4)g([fAef_HaqQKIdG2*4)g([fAef_HaqQ\02Minimal_Install"
"CalendarShared"="oMAot+Uvf(tf7efDe`c_fg6*&!lxf(XN30(tw2ha@7X?{i^!g(D*@efDe`c_?7X?{i^!g(D*@efDe`c_77X?{i^!g(D*@efDe`c_e^D{xo=!g(?v?efDe`c_W^uL?32B{?!Hfwf?cSS+1C6eC~xtf(PBDefDe`c_'mT]jI{jf(=1&L[-81-]wB^6o*-=w9H%Q`CjbZ)oWIdG2*4)g([fAef_HaqQVIdG2*4)g([fAef_HaqQSIdG2*4)g([fAef_HaqQUIdG2*4)g([fAef_HaqQTIdG2*4)g([fAef_HaqQ\02Minimal_Install"
"CalendarWCD"="eg6*&!lxf(XN30(tw2ha\02Minimal_Install"
"Claim_Graphic_Extensions"="lta['WiU(9My7rXPi2Gouz=_ap'aA9gLoktAx3Sq+Ryprj[e{9Pg?6U4~H{*5ewe?$'Zf@(eWdaBuZZe4E{'oom-l=lah1VZ+p[A+xn_A=]pR=a7MIvGKgzeTsM~1$n?n9LlE*_8nFHt6Ac,z}!z0AfR)lKw=,aHe)bVk317s?*4o3YAwRrnfTku5UruO=s@n$po]0sd]HbJ^z%i1?UI_&PGmgeo&QGw7J[[P93mk=Ywu(a=zf1t(EW-Y=LML^EicFabRxO}mg6{i8}FP}WsB6{yVLt.?ZHO3?AH?'f[(_kCbX~jz5vG-=^01Fay*--=~J1kgTem^?nkl06--(bF0ace`N3Z4A*@bJu1iL.Z1,5d$4bTg@n$uuq??Nm&k)*5B.=lL?dtE-gtg&1'?pcMAdQh~?WNvR8l_]@p\02Minimal_Install"
"DirectX"=""
"IE5.5"=""
"Typical_Install"="eOy@[.MtN?8Z~D=skFss+PbRd_Rc`@){sPL.~Ee*3(jEkY}w&@vY]2rOyio`82)n*-hAA==6GjT~,Rr-S`UM(fGYD?CCECz%=!`)1@)XV@3]k8YQ.rY+M=ILe$*I&SdIU?N(V)c_.o]B9Wc?VgG}7A&CBr=6xxPCz0~.&RZLi?O*9^y~!utoY$UA-zj@p927bPeHu@oXvf17{kNtD=j^!D-cB(YQSkeoqD^pQAt?~YuFGOHh)72z%-w(o?fV^Bl=bLYQ{X^oci9TE?kCtxWD=1YJ\02MERGE_MODULES"
"Custom_Install"="\02MERGE_MODULES"
"Custom_Setup_SBS"="\02Custom_Install"
"Custom_Setup_TEMP"="\02Custom_Install"
"Never_Install"="NnJ]1^ovf((6(L[+AFYbF1Op,Btvf(,F(L[+AFYb\02MERGE_MODULES"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\172A967CC1E79F843B13746400DDC460\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="00102-OEM-0000007-00000"
"LocalPackage"="c:\\WINDOWS\\Installer\\19c209.msi"
"AuthorizedCDFPrefix"=""
"Comments"="Microsoft Picture It! Photo 2002"
"Contact"=""
"DisplayVersion"="6.0.0.0000"
"HelpLink"=expand:"http://www.microsoft.com/italy/"
"HelpTelephone"=" "
"InstallDate"="20020101"
"InstallLocation"=""
"ModifyPath"=expand:"MsiExec.exe /I{C769A271-7E1C-48F9-B331-474600DD4C06}"
"Publisher"="Microsoft"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{C769A271-7E1C-48F9-B331-474600DD4C06}"
"URLInfoAbout"="http://www.microsoft.com/italy/ms.htm"
"URLUpdateInfo"="http://go.microsoft.com/fwlink/?linkid=3641&clcid=0x410"
"VersionMajor"=dword:00000006
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:06000000
"Language"=dword:00000410
"DisplayName"="Microsoft Picture It! Photo 2002"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\19F4AD9090A22324BAC8B67C0490D63E\Features]
@DACL=(02 0000)
"SoleFeature"="Ik]?4)TL19(qkzR1y0kI])Ob4dQ3p=9aaeOebj0(&,8ngYRNw?Tio7B1Xtnae^``U+A~[98,pZhJXEZ4K?h+(t3Sl8eX*A^GqqTH2s}OLXZ%y@p*3OM=ZHroE}ND*S@[y8d[rIaw,*[_[A3}&nlfH@OO*3mc8IdlW?gT9,999=wEr%@n-{Q_A@HI]be4*AtT*1z10CME.X_@S^=)R@~W}V^(h}Cx_CK-y8Qil9Ypm1SY}!'o^2+22W!9O=GJg`6~G3EM'jY0(z7qf(fVbqFgkW_BhY,w=mgsf(YJ*L[lj+'(M5KDYSUnf(HA*L[xeX)y=3&5,B^pf(V%eqFgkW_BB3&5,B^pf(V%eqFgkW_B83&5,B^pf(V%eqFgkW_B67k)4s6tf(JR`qF-Q9q.,Nk(@OPzF?URs{=6-.T`G5)*ix!pQ@tkHV5f'^,TdAPug,_!l9jA+v&&CSFaKK=7{a[Kn?9Tg2AMx)wvN]`dh~jPm?hI`wz]1&TP"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\19F4AD9090A22324BAC8B67C0490D63E\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="none"
"LocalPackage"="c:\\WINDOWS\\Installer\\377bd.msi"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="2.70"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20020101"
"InstallLocation"=""
"InstallSource"="c:\\DOCUME~1\\PROPRI~1\\IMPOST~1\\Temp\\VIES5BB5\\UM\\"
"ModifyPath"=expand:"MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3}"
"Publisher"="VERITAS Software"
"Readme"=""
"Size"=""
"EstimatedSize"=dword:00000856
"UninstallString"=expand:"MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3}"
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000002
"VersionMinor"=dword:00000046
"WindowsInstaller"=dword:00000001
"Version"=dword:02460000
"Language"=dword:00000410
"DisplayName"="RecordNow Update Manager"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\2020402056D5A5443B4BD3EC27ABC0C6\Features]
@DACL=(02 0000)
"CORE"="'VZP-5y0L?SGHDH*O&'BU,c,nJ(th80MHJC^{^~b[2aqL,2uN9%=.0dv@dGTk@+GNr`fH?&a7cH=I]2ENh(*cu'8&@(0M8t6X=t0}wnrik7gp@[GWagjuU+CZz&?PL}a?AvNDRk?i=joeXYV2K=sG?TJMZk*17bG7gkK*(R4N@`u6c(%d^{_Wci=Y,,HR9EMYs$bd%C^qQX2peihC9etnOHm@0w9@'SxK^p$n=s*-@uJzW1-P{9'g6Tw7?UKyl]0mHLsR'8UxglIC=V0IP)Gi(uIn]Q-*}(pF9i0NFi!!sFxBMLlbl)'8Ao}D%kIOCa``tO'b{](W?qc.-e-E?ZI8HDu!3oOe9RWEGPxHg!Q(cA~s[,V2AkY&Jt0+KVHV_[2Lx8uV9P?JX8sDlI_q&7R`1(AS940risAj[zo(R8cX'=XY?1VkxZq2O]7q},ReXRm4?o5'zYh0Q0e)^GmK%]6a8%[.H+4lqwOk)D1(7LRW9KFaI+@I)y0CFG$0D+!g(3?!!!_GX=bBbxH8x=!g(3?!!!_GX=b83&5,B^pf(V%eqFgkW_BB3&5,B^pf(V%eqFgkW_B=3&5,B^pf(V%eqFgkW_B'jY0(z7qf(fVbqFgkW_BhY,w=mgsf(YJ*L[lj+'(M5KDYSUnf(HA*L[xeX)y7YK?{]tuf(^?eqFgkW_B"
"CORE_HKCU"="\02CORE"
"EIWA"="4tC3GMW8L95HTjm3$+8[i9@4tL5LN9YU04HOe[pU7{{[_MBHEA]y&u]tWA(R0_W6q0b7S?3YB@fC-0U-6M37FDQ9V@2c25J@m2gkugpG*[$&{=?fB`(UokJM5F7R%Vh0J=m7FgEib$dn3?gw]Mm&M=&GQy)C3dRZD2%yUC5XO=DuYJ-VHUJDt,^1PV!&9@29eLj&c%tXmIzCQV,n-A?me0T*Rio]1nzlLypQL9Xf5Fk@=*$Iqy7.qk0`C9K}-SgEtmtFnb-pY.IcFAk!34[?KOTJS6q4L3s~8=XW%YO%'I1Pk`9@wB%U~9bNE65l)NIz=~9YGy$)}9)(?gGBv_,Njr3.NaAgk@88_=(RK6+1p-JTF{P'a=5'ZN-?g~_Hxo-Ehn*`*9f}cmYeVkpi5pdBahteV?w.*?5A9$cyWX*oYgd6P9c@mVxp_A&-ci]6!V?9o?pOt.J_!R3(DUP[.k]*d@B2v7`ENnH'Kqatn_%NW9M6.~0)QuKt3tQ^7y&qp80G}4-Iq2'Wsx96s!zkN=ZuL,qXE1un3B=JP*N$8?8U,p?{)u?IvFz0-SOcR9AW=DfaZJ0Q{5'c!p'zp8i5Bt+$'%!sJyjC*}8t}9{qLp$R$}SMF_]EJW8HE=$-FVR{E3E?)+Q8%Hpxj8Z@eTT9=F&&93Ye1)7ZJ9e0A8N)GCyPM%THB-n7Z@-r17-L_a(+lX6^$yyRz8[j)bdM!kk^.7.IH*w4P@u`3Bx4=C2&YCzmQzHEf=0[u1ZqNJO!eDP&1bc-e@?Y-8MR0Gd2Si*goE'a@9z)-.-kl_'ARI3[`07OEA]NmXi,Zep=`rh7vt'hNA2kujW-=S@G^D!?SkHlo@26),j'a`LB1QFgVD*'k=]Iv0)V.iX-RB%f*OwKT=1nDMK*eIAI-ty}fY'r-9~lj_C^@~0r(7gaNATY.A3-A~BxP..V%i6KpDp)W?aAX_6[Vrg2}(i(HFc)!=[dib8cLASWq't{!8{by=dxsjhF{(~lK=luP@9)S=.IW7xkDFe3'8(?8Zp~~@kM0@UmqgoWK[TPT`Q?(=a2p,ksw-9@I^V}N&0}a@CoWXGl]$j^GX5krmRIW9Qh{q$JkYU,v[4x=9d3(9QW~A&T[F~kl9o@)SIK99()+?+Q7v[d2Sra%`'1s@r0Z8'eh{8M]Yw-]L@j6=9Lwv*4EK9IDdAn0'D?e@Pc7RBGxyRLC?Lo2eTacA=tLkh)Qc[&S2BYx$WCP@-@-li%q~3jZqNDf!qS}9(q!Xi3Wulx2Xj,A5I5QA{6z[By5g%]iA0!XK%`w8D6W%X[Ev=XzSw6R9s9P?`ph9QD9Halytl4*OrvP=SQ4w!u&,J2QiAVhS?Sy9}^,b1~K]4[6F}NN($I5=HO's=Rn!&fxhvdbm~@Q9~(1U7b*Vx9QqGeo'6,j=cDhQzd@J?3jd~LdA*8t8L&WI(1EQvUxOUgkk-'j?Jz(r8V++Hp,f_OOvAD@?]tU!Jv}D+=t*%yi~57Y8vBgKT69XYMP,ylA6.+*=qf9*]?~D56h{S},{.Ci=}@eAdH=*MmZgR[tXgv=@Y]^b@[O3*6Xdh)US]*6Ar'{veTY{gB,Stm$rqgo=FRjE,1%)h_Rx34cBkrD9ePf{$(=gm.(`kQPt4XA?4O3yU[RAMTbz1fcj@zZ90?gIna]=g4"
"FEAT_EIWA_HKCU"="S4pwA!-+P9%U]kUnnuiO\02EIWA"
"ERO"="XuEaqhwvT9l{RJ0vX*XM4U'x?)]1c==e^!w}(!'uNbB'8MkUBAYaeMca1u}B{bsso)'Y1AYsydQoH(hYr?[c$-%Ko=1R_Z_(UJjzw^3M0w2C?=bsrvf2~SETIVm1tFk9f9f2KM5fIcd^su*lqXSg_?RjZe=TYi[-gbu@BwgI[@NvxyA__@=G'qHXE*%5W?gSGboq*?]eh2rzpMT_2=Z6!SnU3^_qj=IQVGcEe8t,vIaRF@=*o3j=W~USf@Irt$PNpg-w[!HCBx[h_AoZwvzDiOi2lkP_-WgH79D0zqtB~9%g"
"FEAT_ERO_HKCU"="CMfZN&m4z@'EDHc*M?AQS4pwA!-+P9%U]kUnnuiO\02ERO"
"MSINFO"="@IdG2*4)g([fAef_HaqQ=IdG2*4)g([fAef_HaqQ?IdG2*4)g([fAef_HaqQJ4fEfj]xf(WK30(tw2hay^L0&k7zf(pZ=efDe`c_K4fEfj]xf(WK30(tw2haL4fEfj]xf(WK30(tw2ha"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\2020402056D5A5443B4BD3EC27ABC0C6\InstallProperties]
@DACL=(02 0000)
"LocalPackage"="c:\\WINDOWS\\Installer\\19c20d.msi"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="2001"
"HelpLink"=""
"HelpTelephone"=""
"InstallDate"="20020101"
"InstallLocation"=""
"ModifyPath"=expand:"MsiExec.exe /I{02040202-5D65-445A-B3B4-3DCE72BA0C6C}"
"NoRepair"=dword:00000001
"Publisher"="Microsoft Encarta"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{02040202-5D65-445A-B3B4-3DCE72BA0C6C}"
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:000007d1
"VersionMinor"=dword:000007d1
"WindowsInstaller"=dword:00000001
"Version"=dword:d1000000
"Language"=dword:00000410
"DisplayName"="Atlante mondiale Microsoft Encarta 2001"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\20CC412817268CD48BDD779933542046\Features]
@DACL=(02 0000)
"SoleFeature"="`@mNRvpIK=yTkzRB's)+}P{ZE-6Rt=3K^CU%`2Gwz5}jyuFOUA1S}@W=sU'WvdO*&^=wZ?6yAWjVR$NtvECYIJ9ei9?sh{!S0QaBu@SZO!'T89}D21w(O!&lnHQ2^rs)B@,3M'a}HJ=mz2(X@oJ0j8yE=dpU}a6(%7%XW$S`X=KEnIB%jg9{5&.kaH&r-?.xT`.20kzrs52tyO,Zj@m&1xv?[?hP+tyB%x$3P?O~[O).t*HL8fr].}d^p?LBU9D{o8($C)-''jP8+=vv(z.kC`Do@qL3+QmYt=C[C~nC0M)@12^riv?i`?6'4e=sF?t`.`^Y'sBd(?qKtOV?5nWjV}9U?cklL=TWz^CWgk3bDgo%yB&~z9P]WmI7Y.HY-dI_E_0l7=r-TGM~7pO_[}BD]U7b0?7vy}QlRBQ_C]-[?xd9+@{?0xdE8'^eS]NWK9Dao?PaZ&*&CzL]Cb%p_4a~bA{7UmBpG$p9f7)&RwOb6=MAtsmBbq0N,Nk(@OPzF?URs{=6-.T`&x$&z{At4?u)?[`P+G*s$[}kVo3h`AA^Xni5NnA-v%3Qf'=nf(9K)L[lj+'(=3&5,B^pf(V%eqFgkW_B83&5,B^pf(V%eqFgkW_BB3&5,B^pf(V%eqFgkW_B'jY0(z7qf(fVbqFgkW_BhY,w=mgsf(YJ*L[lj+'(M5KDYSUnf(HA*L[xeX)y67k)4s6tf(JR`qF-Q9q.A7k)4s6tf(JR`qF-Q9q.dbKx-lbmf(Gn,L[[Q~con=-.B]*OwW=j1$R-G-siAc4Ma^pEE'?58NS^)&i,J5E`6Vo6mh8_vNCQF55xIy,XV3_eW[@0?&K'9l!`tvQWp+!UM,ASDJd&*ys@@*HNQrmE@)@veePESwldqR^+CP7u-_8,)cy9FjI+9=kg9!cD1(@,j9kH}}y&9G,o_%P^PR@ZB]JqiSVIOo$JOks)4]@OWm@b,sGUU'W5Dhz3my9wjY'4C@C.^}7g$-6*47AHtBn]B3h_H7ArYV4-(Z96l]OSl~&]E6YpabQ[dw9X(^0I$yr8I3$[?Z==p59(=z3b%c?,ExDyf7g1sI=hJ(OBTf['{0TMVZaM}1=^S=CXceiBCA{El`HoaO@~7[xZ}D[($8Di@UTLcQ@][%hS}cry'_Xj[rAtkX9LeNpQ^CSSyml~!T0x_D=6jwo$`pyx7k]B%rOcMX9@c}m*ykL{5xYf4n47=Z=Hfn-25,{TfIhw'kn.zI?HjnM[ONYbUVEy*vSDbd9@Ad4=+WuwuW?gT9,999=wEr%@n-{Q_"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\29BE0F9702994D11FAAF000CF4444384\Features]
@DACL=(02 0000)
"Help"="2JdG2*4)g([fAef_HaqQ1JdG2*4)g([fAef_HaqQ3JdG2*4)g([fAef_HaqQ7IdG2*4)g([fAef_HaqQC$Qk,HF)g(bxAef_HaqQB$Qk,HF)g(bxAef_HaqQ5IdG2*4)g([fAef_HaqQ6IdG2*4)g([fAef_HaqQ9IdG2*4)g([fAef_HaqQ.IdG2*4)g([fAef_HaqQ-IdG2*4)g([fAef_HaqQ%IdG2*4)g([fAef_HaqQ&IdG2*4)g([fAef_HaqQ'IdG2*4)g([fAef_HaqQ0IdG2*4)g([fAef_HaqQ3IdG2*4)g([fAef_HaqQ2IdG2*4)g([fAef_HaqQ1IdG2*4)g([fAef_HaqQ4IdG2*4)g([fAef_HaqQEJdG2*4)g([fAef_HaqQ"
"Language"="~IdG2*4)g([fAef_HaqQ$JdG2*4)g([fAef_HaqQ}IdG2*4)g([fAef_HaqQ!JdG2*4)g([fAef_HaqQxIdG2*4)g([fAef_HaqQwIdG2*4)g([fAef_HaqQuIdG2*4)g([fAef_HaqQrIdG2*4)g([fAef_HaqQzIdG2*4)g([fAef_HaqQvIdG2*4)g([fAef_HaqQ{IdG2*4)g([fAef_HaqQtIdG2*4)g([fAef_HaqQsIdG2*4)g([fAef_HaqQFJdG2*4)g([fAef_HaqQGJdG2*4)g([fAef_HaqQyIdG2*4)g([fAef_HaqQHJdG2*4)g([fAef_HaqQ"
"WksCore"="0.rxy&Pvf(r`7efDe`c_1.rxy&Pvf(r`7efDe`c_F=PS3b'wf(1R(L[+AFYb?`kGq)Dwf($-8efDe`c_piGhY]yyf(]Z30(tw2habwjyakIzf(tg=efDe`c_[4Rc[Mx~f(~j=efBq{id87X?{i^!g(D*@efDe`c_97X?{i^!g(D*@efDe`c_=7X?{i^!g(D*@efDe`c_5=dsaidGg?]U@EXNPh60GXnt@3*vf(r`7efDe`c_"
"Shell"="AC6eC~xtf(PBDefDe`c_HXnt@3*vf(r`7efDe`c_P@eTvh6xf(P230(tw2ha"
"Database"="&('5C`+$g(KD@efDe`c_'('5C`+$g(KD@efDe`c_)('5C`+$g(KD@efDe`c_"
"SSDB"=",C6eC~xtf(PBDefDe`c_5xRkPm%yf(YQ30(tw2ha6xRkPm%yf(YQ30(tw2ha"
"TaskLauncher"="Gdh_vCdvf(ui7efDe`c_LXqkDADMb9jmUpjT-+kqIdh_vCdvf(ui7efDe`c_}5&Zb{~xf(YQ30(tw2ha4JdG2*4)g([fAef_HaqQ6JdG2*4)g([fAef_HaqQ5JdG2*4)g([fAef_HaqQbXnt@3*vf(r`7efDe`c_b51=0rcQc8'8uWP!CDjj"
"WizardDlls"="YXnt@3*vf(r`7efDe`c_[Xnt@3*vf(r`7efDe`c_]Xnt@3*vf(r`7efDe`c_^Xnt@3*vf(r`7efDe`c_!G+JSXfvf(ui7efDe`c_Q@eTvh6xf(P230(tw2ha37X?{i^!g(D*@efDe`c_X07x$+]%g(b,AefDe`c_"
"WizardsTemplates"="+JdG2*4)g([fAef_HaqQ*JdG2*4)g([fAef_HaqQ-JdG2*4)g([fAef_HaqQ,JdG2*4)g([fAef_HaqQ0JdG2*4)g([fAef_HaqQ.JdG2*4)g([fAef_HaqQ"
"_F4411_Calendar_Migrate"="[yOHx[Rwf(Aw(L[+AFYba%yw@3`zf(d-*L[+AFYb"
"Calendar"="?_@fgerxf(E,9efDe`c_pZnG*MIxf(+G8efDe`c__!ujaPGxf(+G8efDe`c_Hv]P[47wf($-8efDe`c_0qp6JBDvf(r`7efDe`c_-qp6JBDvf(r`7efDe`c_*qp6JBDvf(r`7efDe`c_2,?LHJBwf($-8efDe`c_@JdG2*4)g([fAef_HaqQ?JdG2*4)g([fAef_HaqQNIdG2*4)g([fAef_HaqQ,qp6JBDvf(r`7efDe`c_RIdG2*4)g([fAef_HaqQQIdG2*4)g([fAef_HaqQIIdG2*4)g([fAef_HaqQOIdG2*4)g([fAef_HaqQJIdG2*4)g([fAef_HaqQLIdG2*4)g([fAef_HaqQPIdG2*4)g([fAef_HaqQMIdG2*4)g([fAef_HaqQKIdG2*4)g([fAef_HaqQ"
"CalendarWCD"="eg6*&!lxf(XN30(tw2ha"
"Works_Cal_Shared"="oMAot+Uvf(tf7efDe`c_fg6*&!lxf(XN30(tw2ha@7X?{i^!g(D*@efDe`c_?7X?{i^!g(D*@efDe`c_77X?{i^!g(D*@efDe`c_e^D{xo=!g(?v?efDe`c_W^uL?32B{?!Hfwf?cSS+1C6eC~xtf(PBDefDe`c_'mT]jI{jf(=1&L[-81-]wB^6o*-=w9H%Q`CjbZ)oWIdG2*4)g([fAef_HaqQVIdG2*4)g([fAef_HaqQSIdG2*4)g([fAef_HaqQUIdG2*4)g([fAef_HaqQTIdG2*4)g([fAef_HaqQ]4Rc[Mx~f(~j=efBq{id"
"Scrapbook"="9xE64Io!g(F1@efDe`c_8xE64Io!g(F1@efDe`c_Nm5970c4i@o3pyWB[CG&g.sgh)o$B=SrErN9()go[{x%JM6$g(MJ@efDe`c_[$.m!L6+j8QtBnz[r2KB"
"WP"="jXnt@3*vf(r`7efDe`c_tMAot+Uvf(tf7efDe`c_!n7JcjZzf(yv=efDe`c_%h1}5kkzf(%2?efDe`c_"
"Quill"="lXnt@3*vf(r`7efDe`c_mXnt@3*vf(r`7efDe`c_vMAot+Uvf(tf7efDe`c_\02WP"
"Imaging"="PpgF.6A!g(@y?efDe`c_QpgF.6A!g(@y?efDe`c_"
"Imaging_LeadTools"="c6E.)fi5y82v}%ZJ^@yK_'s_L^yo*@]ih3[ljOc@%Bl%QjPSs=qJgjBO[IK*5f)zW`jKV9y7t'MY(&PENjHTr?PZ(AIHpjtSvh7UVE$4wBE`'@FOMkvGdX`'6%NFq1Rxs?iIKGOwO.My'C`&K4APQ=Bh.HrAm+x?BD$PrPnb2=h&xmjk_U1U5b+BfL6$c=v7}_@)wW'V2T=&70CLX??(xl=P+_*WXh`!v0^k}=Z9U'$yo't4w~54TOkXM9nvqU49w.V]8ZvuYanP}=NolF^1pGXA2HJ=+Xm*.91{%gZ?_ci=c}HEBr8gk?-j=NwATVH%L}[8*H0E==G5NlD[VdhH3TTU`P(Ie?3`Rf%G5T&,"
"Themes"="!j`tIc$!g(9p?efDe`c_&JdG2*4)g([fAef_HaqQ"
"IE55_Install"="`PZF_6T1a8KAil*5s]hY5LC%P&6Zj9(hDnCu8[uz"
"AnswerWizard"="8IdG2*4)g([fAef_HaqQ&h1}5kkzf(%2?efDe`c_,}Yroi5zf(nT=efDe`c_"
"OnlineManual"=")IdG2*4)g([fAef_HaqQ(IdG2*4)g([fAef_HaqQD$Qk,HF)g(bxAef_HaqQ*IdG2*4)g([fAef_HaqQ"
"QuickTours"="AQyq+h{vf(yu7efDe`c_BQyq+h{vf(yu7efDe`c_"
"ReadMe"="!IdG2*4)g([fAef_HaqQ"
"FirstRun"="DJdG2*4)g([fAef_HaqQCJdG2*4)g([fAef_HaqQBJdG2*4)g([fAef_HaqQAJdG2*4)g([fAef_HaqQ[IdG2*4)g([fAef_HaqQ]IdG2*4)g([fAef_HaqQYIdG2*4)g([fAef_HaqQZIdG2*4)g([fAef_HaqQbiRc330wf(!*8efDe`c_XIdG2*4)g([fAef_HaqQ"
"AutoCorrect"="T24fx-z'dAo6TxbWUU`k(R%?txSGn@Ib1s74cD&S_X0Nle[(g(0UBefOyH&$T24fx-z'dAo6TxbWUU`k(R%?txSGn@Ib1s74cD&Sem)ZLfX(g(0UBefOyH&$"
"Grammar"="tstkJ[=wf()qr.QHog{AwstkJ[=wf()qr.QHog{A7rT]jI{jf(=1&L[-81-]9rT]jI{jf(=1&L[-81-]"
"ProofSer"="%JdG2*4)g([fAef_HaqQqWzNuQF!g(C'@efDe`c_"
"Spelling"="KrT]jI{jf(=1&L[-81-],qmp3?,wf(mhq.QrWeLdubos?8awf(mhq.QrWeLdGrT]jI{jf(=1&L[-81-]IrT]jI{jf(=1&L[-81-]"
"Thesaurus"="QrT]jI{jf(=1&L[-81-]'stkJ[=wf()qr.QHog{A(stkJ[=wf()qr.QHog{AO(cRmSikf()p*L[~4q&_OrT]jI{jf(=1&L[-81-]"
"Tasks_Min"="mQ'+Xvp5C=_QCMGzVHkwdIdG2*4)g([fAef_HaqQ{@Vba?G2'=!k3vmslh(2?WXdeL]7^92Zm$z4hAVIMnJ@C?B&m?@T,+xMg0WPNOL(P!Qzf(tg=efDe`c_jV&+khs$g(OP@efDe`c_+BdncKKxf(+G8efDe`c_Po55h$^xf(4`8efDe`c_Do55h$^xf(4`8efDe`c_Co55h$^xf(4`8efDe`c_nIdG2*4)g([fAef_HaqQlIdG2*4)g([fAef_HaqQjIdG2*4)g([fAef_HaqQhIdG2*4)g([fAef_HaqQr-j@O[_*g(%!Cef_HaqQeIdG2*4)g([fAef_HaqQiIdG2*4)g([fAef_HaqQqIdG2*4)g([fAef_HaqQpIdG2*4)g([fAef_HaqQoIdG2*4)g([fAef_HaqQLOL(P!Qzf(tg=efDe`c_mIdG2*4)g([fAef_HaqQkIdG2*4)g([fAef_HaqQgIdG2*4)g([fAef_HaqQEOL(P!Qzf(tg=efDe`c_"
"Tasks_Basic"="^ZOjk!C9eA__[q9e3bCw%t02x1[)[AjF'^QQJCUx%~v6ntj_l?`DR!Y-!GflcIdG2*4)g([fAef_HaqQbIdG2*4)g([fAef_HaqQ`IdG2*4)g([fAef_HaqQ^IdG2*4)g([fAef_HaqQ"
"AddressBook"="gAwnaaAxf(Q530(tw2hahAwnaaAxf(Q530(tw2haBm4tK0qyf(c.=efDe`c_I*^Nk$czf(zy=efDe`c_Rwl7d]izf($.?efDe`c_"
"_F13308_WAB"="~5&Zb{~xf(YQ30(tw2ha!6&Zb{~xf(YQ30(tw2ha"
"System"="IXnt@3*vf(r`7efDe`c__iRc330wf(!*8efDe`c_`iRc330wf(!*8efDe`c_aiRc330wf(!*8efDe`c_y'P37!k!g(E-@efDe`c_y''5C`+$g(KD@efDe`c_z''5C`+$g(KD@efDe`c_Y4,ZYW$$g(H7@efDe`c_XXnt@3*vf(r`7efDe`c_QXnt@3*vf(r`7efDe`c_=3&5,B^pf(V%eqFgkW_BDWlh[]Tvf(sc7efDe`c_B3&5,B^pf(V%eqFgkW_B"
"commoncontrols"="LXnt@3*vf(r`7efDe`c_\02System"
"lineservices"="OXnt@3*vf(r`7efDe`c_92Cm?6,wf(~&8efDe`c_PXnt@3*vf(r`7efDe`c_\02System"
"help_sys"="\02System"
"WebUpdate"="~sPN%2iJOA5,[d2NtDxo'JdG2*4)g([fAef_HaqQB0wGq)Cb79ew8[-Q[p&9(JdG2*4)g([fAef_HaqQIJdG2*4)g([fAef_HaqQ"
"_F6534_CAG_ClipGallery"=""
"_F6536_CAG_Standard"=""
"_F6538_CAG_Works"=""
"ShoeBox"="oumbJ.$zZ@75PHyRNY(K?BL0e'K1d@ia'AF'Yn4Fg=n`VHq2,?Rqh@[gV9z?yit79O-pF?@&}B]AJCubsB{r5!yZD=$eVj0~(Ib)C?G3di8iCA&%i@eOGhq(bn-5t!!Ch=N0G$u~!GBRu.'b9VZqf(g6u.Q(31aRw.'b9VZqf(g6u.Q(31aRNVWz?4H7&=hHi^e3.kT?q~]q3JEut?IpzH)tSFT'S3bTdDY)a@!)]O*nqy_+=Hn1UBHJj=~6gYEl^}(50Os8=b%t7?kA~0i2tj4G.-Q0tzkGZ9~)`CRm6x`We3aV+5Lyf(C5Def%06$%RC,h.~8wf(x7fqF,Y?r2ychI(5Lyf(C5Def%06$%q+jjF4iyf(s&Aef%06$%kwgD19iyf(t)Aef%06$%A3={H4iyf(s&Aef%06$%(=Y8nB{vf(kbq.QrWeLdxchI(5Lyf(C5Def%06$%81-z%Z}tf(Cyn.Q2tAE!"
"Shoebox_Max"="7FnXk`]H6@x.9eWqkA)t\02ShoeBox"
"Converters_Min"="7q@V?zzhbA-G*GwF7uo.S,-z%Z}tf(Cyn.Q2tAE!@Y-z%Z}tf(Cyn.Q2tAE!r&pvh[rxf(D)9efDe`c_q&pvh[rxf(D)9efDe`c_@8[*5Arvf(wo7efDe`c_"
"Converters_Basic"="c!)Q2Y](,9$q!vy)yG?TSr,z%Z}tf(Cyn.Q2tAE!ir,z%Z}tf(Cyn.Q2tAE!9s,z%Z}tf(Cyn.Q2tAE!&Y-z%Z}tf(Cyn.Q2tAE![Ee^AL$tf(Cyn.Q2tAE!7vT]jI{jf(=1&L[-81-]!Y{~Fdj{f(kw,0(EJrk@5vT]jI{jf(=1&L[-81-]+`cM^6[rj@.y0WgKfuHr`I&XGh4NE9op}nJ.'2Ndd9yqm~-O1A4HG]Yhm`NE"
"Converters_Max"="cfbgi6u`t=o]^30@03C_"
"EquationEditor"="buAzs!vtf(Cyn.Q2tAE!FyAzs!vtf(Cyn.Q2tAE!"
"GraphicFilters_Min"="b}i[T1stf(Cyn.Q2tAE!w}i[T1stf(Cyn.Q2tAE!O{i[T1stf(Cyn.Q2tAE!9xi[T1stf(Cyn.Q2tAE!"
"GraphicFilters_Basic"="gyi[T1stf(Cyn.Q2tAE!~HdG2*4)g([fAef_HaqQ]qT]jI{jf(=1&L[-81-]yqT]jI{jf(=1&L[-81-]"
"MSDraw"="4g-cflYxf(3]8efDe`c_{HdG2*4)g([fAef_HaqQ6g-cflYxf(3]8efDe`c_5g-cflYxf(3]8efDe`c_}HdG2*4)g([fAef_HaqQ"
"MSInfo"="@IdG2*4)g([fAef_HaqQ=IdG2*4)g([fAef_HaqQ?IdG2*4)g([fAef_HaqQJ4fEfj]xf(WK30(tw2hay^L0&k7zf(pZ=efDe`c_K4fEfj]xf(WK30(tw2haL4fEfj]xf(WK30(tw2ha"
"NoteIt"="~X{~Fdj{f(kw,0(EJrk@}X{~Fdj{f(kw,0(EJrk@"
"WordArt"="{X{~Fdj{f(kw,0(EJrk@K}PU+=k%g(FfAef^*}-RzX{~Fdj{f(kw,0(EJrk@"
"Shared"="-fCo)=Lnf(E4*L[xeX)y"
"_F14067_CustomAction_MSM"="kfh5BaGzf(c**L[+AFYb"
"FUD"="cA%Ty(UQz9H72WWQE*6-"
"Fonts"="Qa72Y?!lf({jeqFYK{3kva72Y?!lf({jeqFYK{3kbc72Y?!lf({jeqFYK{3kLW!c'ANyf(Yn9efDe`c_KW!c'ANyf(Yn9efDe`c_gb72Y?!lf({jeqFYK{3k[a72Y?!lf({jeqFYK{3kra72Y?!lf({jeqFYK{3kta72Y?!lf({jeqFYK{3kza72Y?!lf({jeqFYK{3kib72Y?!lf({jeqFYK{3k!b72Y?!lf({jeqFYK{3k'b72Y?!lf({jeqFYK{3k)b72Y?!lf({jeqFYK{3k`n]vpzi&g(]x@efOyH&$-b72Y?!lf({jeqFYK{3k2b72Y?!lf({jeqFYK{3k4b72Y?!lf({jeqFYK{3k@b72Y?!lf({jeqFYK{3kBb72Y?!lf({jeqFYK{3k)0~0`xhkf(7)dqFgkW_Bkb72Y?!lf({jeqFYK{3k$c72Y?!lf({jeqFYK{3klFrT`_AWG)i2CefPB7^,7c72Y?!lf({jeqFYK{3k9c72Y?!lf({jeqFYK{3kKc72Y?!lf({jeqFYK{3krrUgDcxYZ8WY-?SRlc(&$ReZR@_kf(1rcqFgkW_B`c72Y?!lf({jeqFYK{3k20~0`xhkf(7)dqFgkW_Bjc72Y?!lf({jeqFYK{3k"
"_F11860_MDAC_Archive"="d(3qxGpxf(XN30(tw2ha\02Calendar"
"IE55"="NnJ]1^ovf((6(L[+AFYbF1Op,Btvf(,F(L[+AFYb\02IE55_Install"
"Shoebox_Never"="8mjF_J75&?z9bvb1NXWU!k$DgrPlp=1]k(jr61G3dOVw5,2fQ9(7S)c8{`m.\02ShoeBox"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\29BE0F9702994D11FAAF000CF4444384\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="00102-OEM-0000007-00000"
"LocalPackage"="c:\\WINDOWS\\Installer\\19c201.msi"
"AuthorizedCDFPrefix"=""
"Comments"="Installazione di Microsoft Works 6.0."
"Contact"=""
"DisplayVersion"="06.00.0000"
"HelpLink"=expand:"http://www.microsoft.com/italy/support/"
"HelpTelephone"=" "
"InstallDate"="20020101"
"InstallLocation"=""
"ModifyPath"=expand:"MsiExec.exe /I{79F0EB92-9920-11D4-AFFA-00C04F443448}"
"Publisher"="Microsoft Corporation"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{79F0EB92-9920-11D4-AFFA-00C04F443448}"
"URLInfoAbout"="http://www.microsoft.com"
"URLUpdateInfo"="http://www.microsoft.com/italy/ms.htm"
"VersionMajor"=dword:00000006
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:06000000
"Language"=dword:00000410
"DisplayName"="Microsoft Works 6.0"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\A0CD2F7FE22CDA94DA739737905AE4B7\Features]
@DACL=(02 0000)
"Typical"="%UOQhc0&*@vBu!gQnNt61?.LDgP}l9Q(M^%f?_qr_k,PwJuz^=87nWo[kL'Zba~}P(&fc=@bu0MzXhd@%)Ix3!{77?,o*80T4BpsVE5q`cP,o9rEI&nfCotMLZcWP8V!BA)7Gwf]`Scdus0wy6^6o8QmwsO6*&{%jmPX^)%0b=]J{y*An(dwlzOxqCpnAA1%L$R8+y}Gg`'e8(J,k=4(?.ujGG'K*TO'&B-L2@LI_YE4xSJ%RvyQzsNET9}8vivZ82w`0,X2KJH.g(cM!!!FxVSZL@gdis&rWAek+-T(HRpxWP%P.S[pq=.(bbQ9VVEr'.i$2`'85Aw$lt^QmP@z,gH.[lmkf(`%(L[U]z)5"
"ARX"="\02Typical"
"Data_EUR_ARX"="%UOQhc0&*@vBu!gQnNt61cW[7Q(=I@@nH@%9VgxQ=w`mGK8b5?lefn?xY),EVg%Use]Mg9B%]X*8iTVF6te?k~R(@@LdU$]^.bTNFDOOte[AaA2.~sVdd!N2W!L?&taWt=~P-&B24`Nws(+UR-xjo=}`W5dHkKLrvuc~fkV5m9K]`]5JH?]p\02ARX"
"Resource_0809_ARX"="H.wa+5WGu8pXBQkbLh]5OrRiWcB1{9Ce,(?_MK~=NKP4o.TJd9F,NrW+suTX\02Data_EUR_ARX"
"ExeArx_"="fDHF017Ck9fqJL9-26vBD_m}r1*XBAl(.lyf^M`LZflL^!=6X?6@&1zAW+J,^0kFNw,S_=A1a7iiw`IZkj!u1T_VD@g^-x377knGf^YcH9E+_@z[CnJkmM!e)+T{s&8&!@mDOHIRbCf.3Zzd6wH&m8oBN]=+j@5WdFTwqYYSk@z~NL^^Wb{u940=X='LQ?14_)k7u}DIR^tXoU7Wt@i!Z]E.f$T*PZBYkvFW-@_n}24Z!'+2+wbWoRBpM@[f!Z'oYJd*`NN2RToe}8Ke.AgRDetfX,Wmt9Hq!AmF!sq,~yEYxzBIL24%@?0HMR8LK+forJIx[P7Gi9oEa7qvn79+-nd+lj`[q@mvgzYUN5.OHnh?-4]Up8Z{J%*yoESP)(ef!y'`d8Mcx}5=B2)@\02Resource_0809_ARX"
"Complete"=""
"CD_EUR"="8TO7ADTbf?}__ONt'FQ_r7jv!(7rC=K5]]v7j]iVdLN?gX+k^8`^FHJWo9J[O.[m0rBj,9cDNvGg2A!-\02Complete"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\A0CD2F7FE22CDA94DA739737905AE4B7\InstallProperties]
@DACL=(02 0000)
"RegOwner"="HP registered user"
"RegCompany"="HP"
"ProductID"="55063-OEM-0000007-00000"
"LocalPackage"="c:\\WINDOWS\\Installer\\19c211.msi"
"AuthorizedCDFPrefix"=""
"Comments"=""
"Contact"=""
"DisplayVersion"="9.00.17.0200"
"HelpLink"=expand:"http://www.Microsoft.com/support"
"HelpTelephone"=""
"InstallDate"="20020101"
"InstallLocation"="c:\\Programmi\\Microsoft AutoRoute\\"
"ModifyPath"=expand:"MsiExec.exe /I{F7F2DC0A-C22E-49AD-AD37-797309A54E7B}"
"NoRepair"=dword:00000001
"Publisher"="Microsoft"
"Readme"=""
"Size"=""
"UninstallString"=expand:"MsiExec.exe /I{F7F2DC0A-C22E-49AD-AD37-797309A54E7B}"
"URLInfoAbout"=""
"URLUpdateInfo"=""
"VersionMajor"=dword:00000009
"VersionMinor"=dword:00000000
"WindowsInstaller"=dword:00000001
"Version"=dword:09000011
"Language"=dword:00000410
"DisplayName"="Microsoft AutoRoute 2002"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Products\EB79C053C7D38EE4AB9A00CB3B5D2472\Features]
@DACL=(02 0000)
"WebPublFiles"="]aZF&kXsf(lf*L[_GKba}gbvW,Qmf(G'*L[H+8]b_}IuVaZtf(Cyn.Q2tAE!_{@h=i,nf(R8(L[JO9}X_}M^V8Xqf(Rp)L[_GKbahlT]jI{jf(=1&L[-81-][qFvyQP~f(8Hw.QdFt.0)VWe6E%wf(S5YX%43_cm"
.
Ora fine scansione: 2010-11-15 23:13:56
ComboFix-quarantined-files.txt 2010-11-15 22:13

Pre-Run: 17.873.985.536 byte disponibili
Post-Run: 18.173.091.840 byte disponibili

- - End Of File - - ECDE561F2E78FE11FA88D71277A0FC1B
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » gio nov 18, 2010 10:53 pm

C è qualcuno qui..?? [boh]
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » gio nov 18, 2010 11:31 pm

Inoltro il report emsisoft anti-malware..

Emsisoft Anti-Malware - Versione 5.0
Ultimo aggiornamento: 18/11/2010 20.18.13

Impostazioni scansione:

Tipo scansione: N/A
Oggetti: Memoria, Tracce, Cookies, C:\, D:\
Archivio scansioni: Off
Euristica: Off
Scansione ADS: On

Scansione avviata: 18/11/2010 20.18.31

c:\programmi\eDonkey2000 rilevati: Trace.Directory.eDonkey!A2
c:\programmi\kazaa rilevati: Trace.Directory.KaZaA!A2
c:\programmi\kazaa\my shared folder rilevati: Trace.Directory.KaZaA!A2
Value: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Emule --> Order rilevati: Trace.Registry.Emule 5.0!A2
c:\programmi\kazaa\my shared folder\kazaa300_en.exe rilevati: Trace.File.KaZaA!A2
Value: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\Software\Kazaa\InstantMessaging --> IgnoreAll rilevati: Trace.Registry.Kazaa!A2
Value: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\Software\Kazaa\Settings --> AutoUpdateSkype rilevati: Trace.Registry.Kazaa!A2
Key: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\software\kazaa rilevati: Trace.Registry.KaZaA!A2
Value: HKEY_LOCAL_MACHINE\software\kazaa\cloudload --> sharedir rilevati: Trace.Registry.KaZaA!A2
Key: HKEY_LOCAL_MACHINE\software\kazaa rilevati: Trace.Registry.KaZaA!A2
Value: HKEY_CLASSES_ROOT\wuse.1 --> wuse_id rilevati: Trace.Registry.PurityScan!A2
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WUSE.1 --> WUSE_Id rilevati: Trace.Registry.WhenU-DesktopBar!A2
Key: HKEY_CLASSES_ROOT\wuse.1 rilevati: Trace.Registry.WhenUSearch!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@2o7[1].txt rilevati: Trace.TrackingCookie.2o7!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@adtech[1].txt rilevati: Trace.TrackingCookie.adtech!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@com[1].txt rilevati: Trace.TrackingCookie.com!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@doubleclick[1].txt rilevati: Trace.TrackingCookie.doubleclick!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@statcounter[2].txt rilevati: Trace.TrackingCookie.statcounter!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@statse.webtrendslive[2].txt rilevati: Trace.TrackingCookie.statse.webtrendslive!A2
C:\hp\bin\KillIt.exe rilevati: Riskware.Win32.KillApp!A2
C:\hp\bin\KillWind.exe rilevati: Riskware.Win32.KillApplicat.A!A2
C:\hp\bin\ProcessLogger.exe rilevati: Win32.SuspectCrc!IK
C:\Programmi\File comuni\Microsoft Shared\Works Shared\WksInetn.dll rilevati: Gen.Trojan!IK
C:\Qoobox\Quarantine\C\WINDOWS\system32\gbdck.dll.vir rilevati: Trojan.Trash!IK
C:\System Volume Information\_restore{78B2DF97-A14A-44C4-8A75-ED37BFF56FA4}\RP424\A0044034.exe rilevati: Riskware.Win32.KillApplicat.A!A2
C:\WINDOWS\Downloaded Program Files\Free Internet.exe rilevati: Trojan.Win32.Dialer.fl!IK

Scansionati

File: 66589
Tracce: 689690
Cookies: 63
Processi: 23

Rilevato

File: 7
Tracce: 13
Cookies: 6
Processi: 0
Chiavi di Registro: 0

Fine scansione: 18/11/2010 22.23.03
Tempo scansione: 2:04:32

C:\WINDOWS\Downloaded Program Files\Free Internet.exe In quarantena Trojan.Win32.Dialer.fl!IK
C:\Qoobox\Quarantine\C\WINDOWS\system32\gbdck.dll.vir In quarantena Trojan.Trash!IK
C:\Programmi\File comuni\Microsoft Shared\Works Shared\WksInetn.dll In quarantena Gen.Trojan!IK
C:\hp\bin\ProcessLogger.exe In quarantena Win32.SuspectCrc!IK
C:\hp\bin\KillWind.exe In quarantena Riskware.Win32.KillApplicat.A!A2
C:\System Volume Information\_restore{78B2DF97-A14A-44C4-8A75-ED37BFF56FA4}\RP424\A0044034.exe In quarantena Riskware.Win32.KillApplicat.A!A2
C:\hp\bin\KillIt.exe In quarantena Riskware.Win32.KillApp!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@statse.webtrendslive[2].txt In quarantena Trace.TrackingCookie.statse.webtrendslive!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@doubleclick[1].txt In quarantena Trace.TrackingCookie.doubleclick!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@com[1].txt In quarantena Trace.TrackingCookie.com!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@adtech[1].txt In quarantena Trace.TrackingCookie.adtech!A2
C:\Documents and Settings\Proprietario\Cookies\proprietario@2o7[1].txt In quarantena Trace.TrackingCookie.2o7!A2
Key: HKEY_CLASSES_ROOT\wuse.1 In quarantena Trace.Registry.WhenUSearch!A2
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WUSE.1 --> WUSE_Id In quarantena Trace.Registry.WhenU-DesktopBar!A2
Value: HKEY_CLASSES_ROOT\wuse.1 --> wuse_id In quarantena Trace.Registry.PurityScan!A2
Value: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\Software\Kazaa\InstantMessaging --> IgnoreAll In quarantena Trace.Registry.Kazaa!A2
Value: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\Software\Kazaa\Settings --> AutoUpdateSkype In quarantena Trace.Registry.Kazaa!A2
Key: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\software\kazaa In quarantena Trace.Registry.Kazaa!A2
Value: HKEY_LOCAL_MACHINE\software\kazaa\cloudload --> sharedir In quarantena Trace.Registry.Kazaa!A2
Key: HKEY_LOCAL_MACHINE\software\kazaa In quarantena Trace.Registry.Kazaa!A2
c:\programmi\kazaa\my shared folder\kazaa300_en.exe In quarantena Trace.File.KaZaA!A2
Value: HKEY_USERS\S-1-5-21-2541319435-439199626-132077093-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Emule --> Order In quarantena Trace.Registry.Emule 5.0!A2
c:\programmi\kazaa In quarantena Trace.Directory.KaZaA!A2
c:\programmi\kazaa\my shared folder In quarantena Trace.Directory.KaZaA!A2
c:\programmi\eDonkey2000 In quarantena Trace.Directory.eDonkey!A2

In quarantena

File: 7
Tracce: 13
Cookies: 15
grazie in anticipo per chi mi puo aiutare..!!!!!! [weponed]
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda Uomo_Senza_Sonno » ven nov 19, 2010 12:55 pm

Una scansione in modalità provvisoria e completa con malwarebyte's potrebbe servire a qualcosa... ovviamente poi posti il log generato. In più, esegui una scansione completa anche con Hitman Pro. Se rileva e deve eliminare qualcosa, attivi la licenza gratuita per 30 giorni.
Grazie per tutto Zane

conosciamo l'1% delle leggi che governano l'universo, le altre non le abbiamo ancora comprese a fondo o addirittura nemmeno intuite
Avatar utente
Uomo_Senza_Sonno
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 3255
Iscritto il: gio feb 07, 2008 9:00 am
Località: http://turbolab.it

Re: non riesco più a installare l'antivirus

Messaggioda hashcat » ven nov 19, 2010 2:27 pm

Uomo_Senza_Sonno ha scritto:Una scansione in modalità provvisoria e completa con malwarebyte's potrebbe servire a qualcosa... ovviamente poi posti il log generato. In più, esegui una scansione completa anche con Hitman Pro. Se rileva e deve eliminare qualcosa, attivi la licenza gratuita per 30 giorni.

Tra le schifezze più evidenti che noto nel log di Emsisoft sono l'adware Purity Scan, l'altro adware WhenU, qualche dialer e qualche trojan. Strano queste minacce non sono molto recenti, possiedi qualche software di sicurezza nel computer?
<<Intelligence is the ability to avoid doing work, yet getting the work done.>>
Linus Torvalds

EX [MLI] Power User.
Avatar utente
hashcat
Membro Ufficiale (Gold)
Membro Ufficiale (Gold)
 
Messaggi: 2285
Iscritto il: lun ott 25, 2010 1:26 pm

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » ven nov 19, 2010 7:38 pm

Ciao,infatti questo computer l ho acceso da qualche giorno e non lo usavo più da circa 3 anni,in modalità provvisoria non riesco più a entrarci e con messaggi di errore vari mi nega l'istallazione di antivirus chiaramente tutti con licenza free tipo Panda,AVG,Avira.....mentre prima avevo installato AVG, presumo di essere ora in questa situazione perché tutti i virus vecchi in quarantena sono tornati attivi..Nel frattempo ho scansionato il mio pc con GMER ,Stinger,Emisoft trovando molti virus e applicazioni che già ho cancellato dalle chiavi di registro e da windows(circa 15 in tutto)........ [...]ma il problema persiste ancora... [B)]
Quindi ho scollegato il mio HD e l ho scansionato con il box ext usando AVG e Avast togliendo così altri malware...ma nulla di buono ancora...e quando cerco d'installare AVG 2011 mi esce l'errore "Impossibile accedere al servizio di Win Installer il probl può verificarsi se si esegue Windows in modalità provvisoria o se Windows installer nn è stato installato correttamente..."INCOMPRESIBILE.... !! Ma una domanda,scansionando l'intero HD con un altro antivirus non avrei già dovuto risolvere il problema..avendo anche il pc infetto da virus di vecchia data....?
Comunque seguo il tuo consiglio di scaricare Hitmanpro e tra poco avrai risposta....
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » ven nov 19, 2010 8:24 pm

Sono ancora io...e a seguito della scansione con Hitmanpro pur avendo eliminato ancora malware non riesco ancora a risolvere il problema comunque qui sotto inoltro il log

Log computer="NOME-WERDNYK7HC" scan="Normal" version="3.5.7.117" date="2010-11-19T19:49:01" timeSpentInSecs="338" filesProcessed="13550">
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@ad.adc-serv[2].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@ad.zanox[2].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@adtech[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@atdmt[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@avgtechnologies.112.2o7[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@collective-media[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@doubleclick[2].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@kaspersky.122.2o7[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@kontera[2].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@msnportal.112.2o7[2].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@msnservices.112.2o7[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@revsci[2].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@statcounter[1].txt" />
</Item>
- <Item type="Repair" score="0.0" status="Deleted">
<File path="C:\Documents and Settings\Proprietario\Cookies\proprietario@statse.webtrendslive[2].txt" />
</Item>
- <Item type="Suspicious" score="37.0" status="None">
<File path="C:\Documents and Settings\Proprietario\Desktop\MSCW02_I_01 (F)\Internet Explorer\msie30.exe" hash="CBEBD28620AE276FA2AAA8C7856B778AAE8A001C97639CA7E35B67369D679E25" />
</Item>
- <Item type="Suspicious" score="42.0" status="None">
<File path="C:\Documents and Settings\Proprietario\Desktop\MSCW02_I_01 (F)\Shared\WebPost\Webpost.Exe" hash="711ABB3F773D1F434A4F68AAABB8218188A563B72C5610BAA99AC6C0146C9B18" />
</Item>
- <Item type="Malware" malwareName="Malware" score="96.0" status="None">
- <Scanners>
<Scanner id="Prevx" name="Medium Risk Malware" />
</Scanners>
<File path="C:\WINDOWS\system32\pctspk.exe" hash="53D5A74BD6F52564C102EC898E20A028F01DC83A622FA77A395FC2B65F261604" />
</Item>
</Log>

Cos altro posso fare...?
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda crazy.cat » sab nov 27, 2010 5:27 pm

Delfino81 ha scritto:"Impossibile accedere al servizio di Win Installer il probl può verificarsi se si esegue Windows in modalità provvisoria o se Windows installer non è stato installato correttamente...

Prova ad installare il windows installer
http://www.microsoft.com/downloads/deta ... layLang=it
poi riavvia il pc e vediamo cosa succede.
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » sab nov 27, 2010 6:35 pm

ok proverò installarlo...ma una domanda,siccome è già installato dovrei disinstallare quello che già ho..?
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda crazy.cat » sab nov 27, 2010 7:33 pm

Prova ad installarlo sopra a quello esistente.
E' la stessa versione?
Quando i molti governano, pensano solo a contentar sé stessi, si ha allora la tirannia più balorda e più odiosa: la tirannia mascherata da libertà.
Avatar utente
crazy.cat
MLI Hero
MLI Hero
 
Messaggi: 30959
Iscritto il: lun gen 12, 2004 1:38 pm
Località: Mestre

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » sab nov 27, 2010 8:04 pm

Ciao,nn credo era la stessa versione ma precedente,visto che era da parecchio tempo che il pc non faceva aggiornamenti....mi scocerta il fatto che dal pannello di controllo non mi risulta installato quindi non rintracciabile la versione attuale,ho cercato anche con Ccleaner e RegSeeker ma nulla...cosa vuol dire,è grave..?comunque ho installato l'aggiornamento che ho trovato nel sito del tuo link con riferimento per S.O xp (cioè il mio) .. e una volta accetata la licenza e l'analisi configurazione del sistema esce l'errore -KB942288-v3 installazione non completata,... 'accesso negato'- scegliere ok per annullare le modifiche apportate..può essere che non lo dovevo scaricare per la versione 4.5? intanto grazie per la tua disponibilità..!! [:)]
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda FDAC » sab nov 27, 2010 8:39 pm

Scarica Findykill: http://it.kioskea.net/download/scaricare-420-findykill
installa FindyKill
chiudi tutte le eventuali applicazioni aperte (antivirus, firewall e tutti gli altri programmi)
disconnettiti da Internet
sconnetti, fisicamente, il modem dal computer
avvia il tool e digita F per impostare la lingua;
clicca su 2 - Suppression des fichiers infectieux (Eliminazione dei file infetti)
al termine dell'operazione verrà rilasciato un log: salvalo sul Desktop, e postalo qui con il tag memo del forum.(se non lo trovi sul desktop, lo trovi in C:\FindyKill.txt)
P.S:
Potranno esserci dei riavvii, non preoccuparti, è il programma che sta lavorando.

Poi:

Scarica EliBaglA: http://www.zonavirus.com/descargas/desc ... ibagla.asp
● ti sposti in fondo alla pagina e clicca sul bottone blu Descargar
● aspetta 10 secondi e il download del tool partirà non appena cliccherai sul pulsante clic aquí
Nota: prima di eseguire il download, rinomina il file in pippo.exe

posiziona pippo.exe sul Desktop ed esegui queste operazioni preliminari:
● disconnettiti da Internet
● sconnetti, fisicamente, il modem/router dal Computer

è assolutamente necessario, se attivo:
disattivare l'Antivirus in uso, dall'icona presente sulla traybar (accanto all'orologio di Windows)
disattivare il Firewall eventualmente installato, dall'icona presente sulla traybar (accanto all'orologio di Windows)

Eseguiti i passaggi indicati sopra:
● doppio click sull'icona EliBaglA per avviare il programma
● metti il segno di spunta a Eliminar Ficheros Automaticamente e clicca sul bottone Explorar
● attendi pazientemente la fine della scansione

Quando EliBaglA avrà concluso l'operazione di scansione:
● il sistema verrà riavviato automaticamente (in caso contrario, riavvialo tu)
● ricollega, fisicamente, il modem/router al Computer
● connettiti a Internet
● vai in Disco Locale C:, cerca il log dal nome InfoSat.txt ed allegalo

Nota: nel caso non funzionasse in modalità normale, procedi con EliBaglA in modalità provvisoria.

Per allegare il log utilizza il tag MEMO del forum
Scarica ed installa Malwarebytes' Anti-Malware Free Version: http://www.malwarebytes.org
● alla richiesta di aggiornamento delle definizioni consenti l'aggiornamento
● clicca sul tasto scansiona ed esegui una scansione completa
● se vengono rilevate infezioni, eliminale
● al termine della scansione verrà rilasciato un log: salvalo sul Desktop perché lo dovrai allegare

Per allegare il log utilizza questo il tag MEMO del forum
Avatar utente
FDAC
Rompiballe
Rompiballe
 
Messaggi: 750
Iscritto il: dom set 05, 2010 1:00 pm

Re: non riesco più a installare l'antivirus

Messaggioda Delfino81 » dom nov 28, 2010 2:20 pm

Ciao e grazie per il tuo intervento [sh] , ho seguito passo passo le struzioni che mi hai dato...quindi..:
- Ho scaricato FindyKill ma appena inizia l'installazione mi esce un errore
in una schermata molto veloce "programma troppo grande per"..e non mi permette di installarlo
- Ho scansionato il pc con elibagle dove qui sotto inltro il file generato..:

(27-11-2010 20:31:12 (GMT))
EliBagle v14.12 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 26 de Octubre del 2010)
----------------------------------------------
Lista de Acciones (por Acción Directa):

(27-11-2010 20:33:04 (GMT))
EliBagle v14.12 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 26 de Octubre del 2010)
----------------------------------------------
Lista de Acciones (por Acción Directa):

(27-11-2010 20:33:35 (GMT))
EliBagle v14.12 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 26 de Octubre del 2010)
----------------------------------------------
Lista de Acciones (por Acción Directa):

(27-11-2010 20:41:18 (GMT))
EliBagle v14.12 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 26 de Octubre del 2010)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando "C:\"

Nº Total de Directorios: 4256
Nº Total de Ficheros: 56090
Nº de Ficheros Analizados: 14935
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0

(27-11-2010 20:42:39 (GMT))
EliBagle v14.12 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 26 de Octubre del 2010)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando "C:\"

Nº Total de Directorios: 1071
Nº Total de Ficheros: 12490
Nº de Ficheros Analizados: 710
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0
Exploración Detenida por el Usuario.




Per precisione comunque mi ha dato un errore : 'accesso denegado'..,per questa cartella..
c:\documents and setting\alluser\datiapplicazioni\symantec\quarantine(16)

Poi...come avevo già risposto precedentemente la modalità provvisoria non mi funziona +..
accidenti [B)] ....quindi mi rimbalza e non permette alcuna operazione...mentre per quanto riguarda
precedenti antivirus installati all'inizio c'era Norton Internet Security...poi AVG 7.5 ..
fino a oggi che ho riacceso il mio pc e non riesco + a proteggerlo con nessun antivirus...
mio malgrado ho già eseguito parecchi tentativi di rimozione virus,spyware e applicazioni fasulle..

Comunque andando avanti ho scansionato il pc con MalwareByte , non mi ha trovato malware da
rimuovere ,post qui sotto il log generato:

Malwarebytes' Anti-Malware 1.46
http://www.malwarebytes.org

Versione database: 5201

Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180

27/11/2010 23.04.01
mbam-log-2010-11-27 (23-04-01).txt

Tipo di scansione: Scansione completa (C:\|D:\|)
Elementi esaminati: 222684
Tempo trascorso: 59 minuti, 53 secondi

Processi infetti in memoria: 0
Moduli di memoria infetti: 0
Chiavi di registro infette: 0
Valori di registro infetti: 0
Voci infette nei dati di registro: 0
Cartelle infette: 0
File infetti: 0

Processi infetti in memoria:
(Non sono stati rilevati elementi nocivi)

Moduli di memoria infetti:
(Non sono stati rilevati elementi nocivi)

Chiavi di registro infette:
(Non sono stati rilevati elementi nocivi)

Valori di registro infetti:
(Non sono stati rilevati elementi nocivi)

Voci infette nei dati di registro:
(Non sono stati rilevati elementi nocivi)

Cartelle infette:
(Non sono stati rilevati elementi nocivi)

File infetti:
(Non sono stati rilevati elementi nocivi)

Può essere che c'entri qualcosa Windows Installer,forse danneggiato dalle ultime rimozioni di antivirus
oppure che debba essere semplicemente aggiornato..??
Avatar utente
Delfino81
Aficionado
Aficionado
 
Messaggi: 82
Iscritto il: lun nov 15, 2010 12:58 am

Re: non riesco più a installare l'antivirus

Messaggioda FDAC » dom nov 28, 2010 2:36 pm

Ci sono delle chiavi di registro bloccate, dal log di Combofix.
Aspetta che qualcuno ti compili uno script, o prova questa utility:
http://www.suspectfile.com/download/utility.zip
Avatar utente
FDAC
Rompiballe
Rompiballe
 
Messaggi: 750
Iscritto il: dom set 05, 2010 1:00 pm

Prossimo

Torna a Sicurezza

Chi c’è in linea

Visitano il forum: Nessuno e 2 ospiti

Powered by phpBB © 2002, 2005, 2007, 2008 phpBB Group
Traduzione Italiana phpBB.it

megalab.it: testata telematica quotidiana registrata al Tribunale di Cosenza n. 22/09 del 13.08.2009, editore Master New Media S.r.l.; © Copyright 2008 Master New Media S.r.l. a socio unico - P.I. 02947530784. GRUPPO EDIZIONI MASTER Spa Tutti i diritti sono riservati. Per la pubblicità: Master Advertising