here's the log:
ComboFix 12-07-27.02 - User 26/07/2012 22.33.55.2.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.39.1040.18.1916.1386 [GMT 2:00]
Eseguito da: c:\documents and settings\User\Desktop\ComboFix.exe
Opzioni usate :: c:\documents and settings\User\Desktop\CFScript.txt
AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
.
((((((((((((((((((((((((((((((((((((( Altre eliminazioni )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\uTorrentBar_IT
c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ldrtbuTor.dll
c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\tbuTor.dll
c:\documents and settings\NetworkService\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\toolbar.cfg
c:\documents and settings\User\Dati applicazioni\PriceGong
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\1.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\a.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\b.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\c.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\d.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\e.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\f.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\g.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\h.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\i.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\j.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\k.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\l.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\m.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\n.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\o.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\p.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\q.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\r.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\s.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\t.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\u.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\v.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\w.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\wlu.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\x.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\y.txt
c:\documents and settings\User\Dati applicazioni\PriceGong\Data\z.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\AppNotification.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\close.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\close.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Next_hover.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\powered-by.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\Prev_hover.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\dark\settings.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\close.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Next_hover.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\powered-by.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Prev_hover.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\settings.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\light\Thumbs.db
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\like.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Next_hover.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\powered-by.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Prev_hover.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\settings.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\Images\Thumbs.db
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\initialNotification.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\NotificationDialogStyle.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\AppNotificationDialog\sampleNotification.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\DialogsAPI.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\PIE.htc
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\settings.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Dialogs\version.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\DynamicDialogs.zip
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\Feeds\http___alerts_conduit-services_com_root_1243675_1239348_IT.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\Community Alerts\LanguagePacks\en.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Conduit\CT2851640\uTorrentBar_ITAutoUpdateHelper.exe
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_40_285_CT2851640_Images_634215803994037500_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_40_285_CT2851640_Images_634219291587531250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_40_285_CT2851640_Images_634220946896281250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_40_285_CT2851640_Images_634226715423943750_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_40_285_CT2851640_Images_634244832697856250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_40_285_CT2851640_Images_SearchActivationButton-go_but01_gif-General-634220918830656250_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_About_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Browse_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Contact_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Hide_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_bankImages_ConduitEngine_ContextMenu_LikeIcon_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_More_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_MoreFromPublisher_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Options_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Privacy_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Refresh_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_Conduit_com_bankImages_ConduitEngine_ContextMenu_Upgrade_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_about_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_clear_history_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_contact_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_help_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_home_page_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_options_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_privacy_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_refresh_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_shrink_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_main_menu_upgrade_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_SearchEngines_images_search_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_SearchEngines_news_icon_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_searchengines_search_icon_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_searchengines_softonic_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_SearchEngines_tfd_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_images_SearchEngines_video_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_93_ce3_93951332-f9a7-4af7-af02-17ec3d749ce3_Appearance_634159521796627506_24x24_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633826753881225000_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633826758646068750_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633827552376087500_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633827552502181250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633827552614056250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633827552723118750_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633827565870150000_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_633827655684775000_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_634161798257141250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_634161799307581250_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Images_634161801077882500_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___storage_conduit_com_MarketPlace_b9_e6d_b99f575c-76e9-4402-8755-330aaffa3e6d_Appearance_634161804982048752_png.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\CacheIcons\http___weather_conduit_com_images_weather_Default_sunny_gif.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\AddedAppDialog\app-added.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\AddedAppDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\DefualtImages\icon.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\DetectedAppDialog\app-2go.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\DetectedAppDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\DialogsAPI.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\EngineFirstTimeDialog\EngineFirstTimeDialog.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\EngineFirstTimeDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\EngineFirstTimeDialog\right-click.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\excanvas.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\generalDialogStyle.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\NewSearchProtectorDialog\images\ok-button.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\NewSearchProtectorDialog\images\separation-line.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\NewSearchProtectorDialog\images\warning.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\NewSearchProtectorDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\NewSearchProtectorDialog\SearchProtector.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\NewSearchProtectorDialog\SearchProtector.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\PIE.htc
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\RoundedCorners.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\RoundedCornersIE9.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\bubble.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\bubble.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\images\information.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\images\x-default-LTR.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\images\x-default-RTL.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-LTR.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\images\x-mouseover-RTL.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorBubbleDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorDialog\Images\info.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorDialog\Images\ok-on.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorDialog\Images\ok.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorDialog\SearchProtector.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorDialog\SearchProtector.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.jpg
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\Images\Icon.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\Images\info.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\Images\ok-on.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\Images\ok.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\SearchProtectorRetakeoverDialog\SearchProtectorRetakeover.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\settings.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\app-store-icon.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\arrow.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\divider.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\emailNotifier.gif
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\facebook.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\radio.GIF
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\Thumbs.db
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\truste_welcome.GIF
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\images\weather.GIF
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.css
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarFirstTimeDialog\ToolbarFirstTimeDialog.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarUntrustedAppsApprovalDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\ToolbarUntrustedAppsApprovalDialog\ToolbarUntrustedAppsApprovalDialog.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\UntrustedAddedAppDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\UntrustedAddedAppDialog\UT-app-dialog-added.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\UntrustedAppApprovalDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\UntrustedAppApprovalDialog\UT-app-dialog-needs-your-approval.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\UntrustedAppPendingDialog\main.html
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\UntrustedAppPendingDialog\UT-app-dialog-is-waiting.js
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Dialogs\version.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\EmailNotifier\AccountTypes.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\EmailNotifier\aol.com.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\EmailNotifier\comcast.net.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\EmailNotifier\google.com.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\EmailNotifier\hotmail.com.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\EmailNotifier\yahoo.com.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=GottenApps&locale=it.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=OtherApps&locale=it.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=SharedApps&locale=it.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ExternalComponent\http___contextmenu_toolbar_conduit-services_com__name=Toolbar&locale=it.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ldrtbuTor.dll
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGong_16.png
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\manifest.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Repository\conduit_CT2851640_CT2851640\AppsMetaData\data.bck.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Repository\conduit_CT2851640_CT2851640\AppsMetaData\data.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Repository\conduit_CT2851640_CT2851640\DynamicDialogs\data.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Repository\conduit_CT2851640_CT2851640\ToolbarLogin\data.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Repository\conduit_CT2851640_CT2851640\ToolbarSettings\data.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Repository\conduit_CT2851640_CT2851640\ToolbarTranslation\data.txt
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___feeds_news_com_au_public_rss_2_0_news_breaking_news_32_xml.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___feeds_news_com_au_public_rss_2_0_news_breaking_news_32_xml_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___feeds_reuters_com_reuters_topNews.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___feeds_reuters_com_reuters_topNews_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___news_google_nl_news_cf=all&ned=fr&hl=fr&topic=h&num=3&output=rss.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___news_google_nl_news_cf=all&ned=fr&hl=fr&topic=h&num=3&output=rss_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___news_google_nl_news_cf=all&ned=us&hl=en&topic=h&num=3&output=rss.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___news_google_nl_news_cf=all&ned=us&hl=en&topic=h&num=3&output=rss_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___news_google_nl_news_pz=1&cf=all&ned=nl_nl&hl=nl&topic=h&num=3&output=rss.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___news_google_nl_news_pz=1&cf=all&ned=nl_nl&hl=nl&topic=h&num=3&output=rss_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___newsrss_bbc_co_uk_rss_newsonline_world_edition_front_page_rss_xml.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___newsrss_bbc_co_uk_rss_newsonline_world_edition_front_page_rss_xml_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___rss_cbc_ca_lineup_latest_xml.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___rss_cbc_ca_lineup_latest_xml_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___rss_cnn_com_rss_cnn_latest_rss.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___rss_cnn_com_rss_cnn_latest_rss_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___rss_news_yahoo_com_rss_world.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___rss_news_yahoo_com_rss_world_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___worldpress_org_feeds_topstories_xml.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___worldpress_org_feeds_topstories_xml_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___www_thesun_co_uk_sol_homepage_feeds_rss_article312900_ece.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\Rss\http___www_thesun_co_uk_sol_homepage_feeds_rss_article312900_ece_structured.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\SearchInNewTab\SearchInNewTabContent.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\tbuTor.dll
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\ThirdPartyComponents.xml
c:\documents and settings\User\Impostazioni locali\Dati applicazioni\uTorrentBar_IT\toolbar.cfg
c:\programmi\Conduit
c:\programmi\Conduit\Community Alerts\Alert.dll
c:\programmi\uTorrentBar_IT
c:\programmi\uTorrentBar_IT\GottenAppsContextMenu.xml
c:\programmi\uTorrentBar_IT\ldrtbuTor.dll
c:\programmi\uTorrentBar_IT\OtherAppsContextMenu.xml
c:\programmi\uTorrentBar_IT\prxtbuTor.dll
c:\programmi\uTorrentBar_IT\SharedAppsContextMenu.xml
c:\programmi\uTorrentBar_IT\tbuTor.dll
c:\programmi\uTorrentBar_IT\toolbar.cfg
c:\programmi\uTorrentBar_IT\ToolbarContextMenu.xml
c:\programmi\uTorrentBar_IT\uninstall.exe
c:\programmi\uTorrentBar_IT\uTorrentBar_ITToolbarHelper.exe
.
.
((((((((((((((((((((((((( Files Creati Da 2012-06-26 al 2012-07-26 )))))))))))))))))))))))))))))))))))
.
.
2012-07-18 20:51 . 2012-07-18 20:51 -------- d-----w- c:\documents and settings\User\Nuova cartella
2012-07-15 20:27 . 2012-07-15 20:29 -------- d-----w- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Dreambelievers
2012-07-11 08:50 . 2012-07-11 08:50 -------- d-----w- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\CRE
2012-07-10 09:46 . 2012-07-10 09:46 -------- d-----w- c:\documents and settings\User\Dati applicazioni\Scilab
2012-07-10 09:42 . 2012-07-23 18:21 -------- d-----w- c:\programmi\scilab-5.3.3
2012-07-10 09:34 . 2012-07-10 09:34 -------- d-----w- c:\programmi\Elaborate Bytes
2012-07-09 11:00 . 2009-05-18 11:17 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2012-07-09 11:00 . 2008-04-17 10:12 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2012-07-09 10:59 . 2012-07-09 10:59 -------- d-----w- c:\programmi\iPod
2012-07-09 10:59 . 2012-07-09 11:00 -------- d-----w- c:\programmi\iTunes
2012-07-08 12:12 . 2012-07-08 12:12 -------- d-----w- c:\documents and settings\LocalService\Dati applicazioni\Apple Computer
2012-07-08 12:11 . 2012-07-08 12:11 -------- d-----w- c:\programmi\Bonjour
2012-07-06 16:37 . 2012-07-06 16:37 -------- d--h--w- c:\documents and settings\All Users\Common Files
2012-07-06 13:39 . 2012-07-06 13:39 421200 ----a-w- c:\programmi\Mozilla Firefox\msvcp100.dll
2012-07-06 13:39 . 2012-07-06 13:39 770384 ----a-w- c:\programmi\Mozilla Firefox\msvcr100.dll
2012-07-05 20:37 . 2012-07-05 20:37 -------- d-----w- c:\programmi\SDA
2012-07-05 20:36 . 2012-07-05 20:36 -------- d-----w- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Downloaded Installations
2012-06-30 10:31 . 2012-06-30 10:31 -------- d-----w- c:\documents and settings\User\Documents
2012-06-28 17:36 . 2012-05-17 15:36 2468520 ----a-w- c:\windows\system32\BootMan.exe
2012-06-28 17:36 . 2011-07-29 11:54 19840 ----a-w- c:\windows\system32\EuEpmGdi.dll
2012-06-28 17:36 . 2011-07-29 11:54 86408 ----a-w- c:\windows\system32\setupempdrv03.exe
2012-06-28 17:36 . 2011-07-29 11:54 8456 ----a-w- c:\windows\system32\EuGdiDrv.sys
2012-06-28 17:36 . 2011-07-29 11:54 13192 ----a-w- c:\windows\system32\epmntdrv.sys
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-06-13 13:55 . 2008-07-21 09:04 1866112 ------w- c:\windows\system32\win32k.sys
2012-06-05 15:49 . 2008-07-21 09:04 1372672 ------w- c:\windows\system32\msxml6.dll
2012-06-05 15:49 . 2008-07-21 09:04 1172480 ----a-w- c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2008-07-21 09:04 152576 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 13:19 . 2008-07-21 11:10 329240 ----a-w- c:\windows\system32\wucltui.dll
2012-06-02 13:19 . 2008-07-21 11:10 219160 ----a-w- c:\windows\system32\wuaucpl.cpl
2012-06-02 13:19 . 2008-07-21 11:10 210968 ----a-w- c:\windows\system32\wuweb.dll
2012-06-02 13:19 . 2009-08-06 18:24 45080 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 13:19 . 2008-07-21 11:10 53784 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 13:19 . 2008-07-21 11:10 35864 ----a-w- c:\windows\system32\wups.dll
2012-06-02 13:19 . 2008-07-21 09:03 97304 ----a-w- c:\windows\system32\cdm.dll
2012-06-02 13:19 . 2009-08-06 18:23 15896 ----a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 13:19 . 2009-08-06 18:23 24088 ----a-w- c:\windows\system32\wucltui.dll.mui
2012-06-02 13:19 . 2009-08-06 18:23 18968 ----a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 13:19 . 2009-08-06 18:23 15896 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 13:19 . 2008-07-21 11:10 577048 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 13:19 . 2008-07-21 11:10 1933848 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 13:18 . 2010-01-14 13:17 275696 ----a-w- c:\windows\system32\mucltui.dll
2012-06-02 13:18 . 2010-01-14 13:17 214256 ----a-w- c:\windows\system32\muweb.dll
2012-06-02 13:18 . 2010-01-14 13:17 18672 ----a-w- c:\windows\system32\mucltui.dll.mui
2012-05-31 13:21 . 2008-07-21 09:03 603136 ----a-w- c:\windows\system32\crypt32.dll
2012-05-22 16:28 . 2012-05-22 16:28 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-05-22 16:28 . 2011-05-27 09:23 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-05-16 15:06 . 2008-07-21 09:04 916992 ----a-w- c:\windows\system32\wininet.dll
2012-05-11 14:40 . 2008-07-21 09:04 43520 ------w- c:\windows\system32\licmgr10.dll
2012-05-11 14:40 . 2008-07-21 09:04 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-05-11 11:38 . 2008-07-21 09:04 385024 ------w- c:\windows\system32\html.iec
2012-05-05 03:14 . 2008-04-13 18:55 2030080 ------w- c:\windows\system32\ntkrnlpa.exe
2012-05-05 03:14 . 2008-04-13 18:54 2151936 ------w- c:\windows\system32\ntoskrnl.exe
2012-05-02 13:46 . 2008-07-21 11:10 139656 ------w- c:\windows\system32\drivers\rdpwd.sys
2012-07-20 15:50 . 2011-06-24 17:07 136672 ----a-w- c:\programmi\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Punti Reg Caricati ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Nota* i valori vuoti & legittimi/default non sono visualizzati.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TOSCDSPD"="c:\programmi\TOSHIBA\TOSCDSPD\toscdspd.exe" [2005-04-12 65536]
"swg"="c:\programmi\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-02-06 39408]
"uTorrent"="c:\programmi\uTorrent\uTorrent.exe" [2012-07-11 1022352]
"Facebook Update"="c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Facebook\Update\FacebookUpdate.exe" [2012-07-12 138096]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ITSecMng"="c:\programmi\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2007-09-28 75136]
"TPSMain"="TPSMain.exe" [2007-10-15 266240]
"SmoothView"="c:\programmi\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe" [2007-05-11 143360]
"DDWMon"="c:\programmi\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe" [2007-04-26 495616]
"topi"="c:\programmi\TOSHIBA\Toshiba Online Product Information\topi.exe" [2007-07-10 581632]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-07-03 150040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-07-03 170520]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-07-03 141848]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2008-04-29 417792]
"ACU"="c:\programmi\Atheros\ACU.exe" [2008-04-14 450648]
"CanonMyPrinter"="c:\programmi\Canon\MyPrinter\BJMyPrt.exe" [2009-10-19 1983816]
"ContentTransferWMDetector.exe"="c:\programmi\Sony\Content Transfer\ContentTransferWMDetector.exe" [2009-07-30 497000]
"RTHDCPL"="RTHDCPL.EXE" [2008-04-07 16860672]
"AVG_TRAY"="c:\programmi\AVG\AVG2012\avgtray.exe" [2012-04-05 2587008]
"Adobe Reader Speed Launcher"="c:\programmi\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]
"Adobe ARM"="c:\programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"SunJavaUpdateSched"="c:\programmi\File comuni\Java\Java Update\jusched.exe" [2012-01-17 252296]
"ArcSoft Connection Service"="c:\programmi\File comuni\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"APSDaemon"="c:\programmi\File comuni\Apple\Apple Application Support\APSDaemon.exe" [2012-05-30 59280]
"iTunesHelper"="c:\programmi\iTunes\iTunesHelper.exe" [2012-06-07 421776]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\
WinZip Quick Pick.lnk - c:\programmi\WinZip\WZQKPICK.EXE [2010-6-6 118784]
Xacti Screen Capture 1.1.lnk - c:\windows\Installer\{37327654-EBF7-410C-9161-C24D68E02753}\_E47B9B72500055712D025F.exe [2012-5-18 128198]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0c:\progra~1\AVG\AVG2012\avgrsx.exe /sync /restart
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
[HKLM\~\startupfolder\C:^Documents and Settings^User^Menu Avvio^Programmi^Esecuzione automatica^LimeWire On Startup.lnk]
path=c:\documents and settings\User\Menu Avvio\Programmi\Esecuzione automatica\LimeWire On Startup.lnk
backup=c:\windows\pss\LimeWire On Startup.lnkStartup
.
[HKLM\~\startupfolder\C:^Documents and Settings^User^Menu Avvio^Programmi^Esecuzione automatica^OpenOffice.org 3.1.lnk]
path=c:\documents and settings\User\Menu Avvio\Programmi\Esecuzione automatica\OpenOffice.org 3.1.lnk
backup=c:\windows\pss\OpenOffice.org 3.1.lnkStartup
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Programmi\\Messenger\\msmsgs.exe"=
"c:\\Programmi\\uTorrent\\uTorrent.exe"=
"c:\\Documents and Settings\\User\\Impostazioni locali\\Dati applicazioni\\Facebook\\Video\\Skype\\FacebookVideoCalling.exe"=
"c:\\Programmi\\AVG\\AVG2012\\avgmfapx.exe"=
"c:\\Programmi\\File comuni\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"=
"c:\\Programmi\\Bonjour\\mDNSResponder.exe"=
"c:\\Programmi\\iTunes\\iTunes.exe"=
"c:\\Programmi\\AVG\\AVG2012\\avgnsx.exe"=
"c:\\Programmi\\AVG\\AVG2012\\avgdiagex.exe"=
"c:\\Programmi\\AVG\\AVG2012\\avgemcx.exe"=
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [19/04/2012 4.50.26 24896]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [07/09/2010 4.48.50 31952]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [07/09/2010 4.48.54 235216]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [07/09/2010 4.49.00 301248]
R2 avgwd;AVG WatchDog;c:\programmi\AVG\AVG2012\avgwdsvc.exe [14/02/2012 4.53.38 193288]
R2 tdudf;TOSHIBA UDF File System Driver;c:\windows\system32\drivers\tdudf.sys [26/03/2007 12.22.18 105856]
R2 trudf;TOSHIBA DVD-RAM UDF File System Driver;c:\windows\system32\drivers\trudf.sys [19/02/2007 12.15.32 134016]
R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [23/12/2011 13.32.00 139856]
R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\avgidsfilterx.sys [23/12/2011 13.32.06 24144]
R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [23/12/2011 13.32.08 17232]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [28/03/2012 0.08.25 239168]
R3 FwLnk;FwLnk Driver;c:\windows\system32\drivers\FwLnk.sys [21/07/2008 13.51.07 5888]
S1 archlp;archlp;c:\windows\system32\drivers\archlp.sys --> c:\windows\system32\drivers\archlp.sys [?]
S2 AVGIDSAgent;AVGIDSAgent;c:\programmi\AVG\AVG2012\avgidsagent.exe [04/07/2012 17.25.54 5160568]
S2 gupdate;Servizio di Google Update (gupdate);c:\programmi\Google\Update\GoogleUpdate.exe [09/02/2010 22.30.21 135664]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [22/05/2012 18.28.00 257696]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;c:\programmi\AVG\AVG10\Toolbar\ToolbarBroker.exe --> c:\programmi\AVG\AVG10\Toolbar\ToolbarBroker.exe [?]
S3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [28/06/2012 19.36.56 13192]
S3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [28/06/2012 19.36.56 8456]
S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [13/03/2010 19.35.21 36608]
S3 gupdatem;Servizio Google Update (gupdatem);c:\programmi\Google\Update\GoogleUpdate.exe [09/02/2010 22.30.21 135664]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\programmi\Mozilla Maintenance Service\maintenanceservice.exe [13/05/2012 17.28.47 113120]
S4 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
.
--- Altri Servizi/Drivers In Memoria ---
.
*NewlyCreated* - 15877025
*NewlyCreated* - ASWMBR
*NewlyCreated* - WS2IFSL
*Deregistered* - 15877025
*Deregistered* - aswMBR
.
Contenuto della cartella 'Scheduled Tasks'
.
2012-07-26 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-22 16:28]
.
2012-07-23 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\programmi\Apple Software Update\SoftwareUpdate.exe [2011-06-01 15:57]
.
2012-07-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-124289920-654397252-735426368-1005Core.job
- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Facebook\Update\FacebookUpdate.exe [2011-09-13 09:16]
.
2012-07-26 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-124289920-654397252-735426368-1005UA.job
- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Facebook\Update\FacebookUpdate.exe [2011-09-13 09:16]
.
2012-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2010-02-09 20:30]
.
2012-07-26 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\programmi\Google\Update\GoogleUpdate.exe [2010-02-09 20:30]
.
2012-07-23 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-124289920-654397252-735426368-1005Core.job
- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2011-08-29 20:10]
.
2012-07-26 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-124289920-654397252-735426368-1005UA.job
- c:\documents and settings\User\Impostazioni locali\Dati applicazioni\Google\Update\GoogleUpdate.exe [2011-08-29 20:10]
.
2010-01-14 c:\windows\Tasks\Promemoria registrazione 1.job
- c:\windows\system32\OOBE\oobebaln.exe [2008-07-21 12:00]
.
2012-07-26 c:\windows\Tasks\User_Feed_Synchronization-{BF69D039-7F68-4880-9D6C-CF25384F112B}.job
- c:\windows\system32\msfeedssync.exe [2009-03-08 03:31]
.
.
------- Scansione supplementare -------
.
uStart Page = hxxp://www.repubblica.it/
uInternet Settings,ProxyOverride = *.local
IE: Google Sidewiki... - c:\programmi\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll/cmsidewiki.html
TCP: DhcpNameServer = 78.46.86.74 212.117.175.185
Handler: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} -
FF - ProfilePath - c:\documents and settings\User\Dati applicazioni\Mozilla\Firefox\Profiles\suooa33m.default\
FF - prefs.js: browser.startup.homepage - www.google.it
.
- - - - CHIAVI ORFANE RIMOSSE - - - -
.
URLSearchHooks-{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1} - c:\programmi\uTorrentBar_IT\prxtbuTor.dll
BHO-{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1} - c:\programmi\uTorrentBar_IT\prxtbuTor.dll
Toolbar-{4ae0c3d6-f713-4eed-bc65-25dc3ffdaac1} - c:\programmi\uTorrentBar_IT\prxtbuTor.dll
WebBrowser-{4AE0C3D6-F713-4EED-BC65-25DC3FFDAAC1} - c:\programmi\uTorrentBar_IT\prxtbuTor.dll
AddRemove-uTorrentBar_IT Toolbar - c:\programmi\uTorrentBar_IT\uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2012-07-26 22:41
Windows 5.1.2600 Service Pack 3 NTFS
.
scansione processi nascosti ...
.
scansione entrate autostart nascoste ...
.
Scansione files nascosti ...
.
Scansione completata con successo
Files nascosti: 0
.
**************************************************************************
.
--------------------- CHIAVI DI REGISTRO BLOCCATE ---------------------
.
[HKEY_USERS\S-1-5-21-124289920-654397252-735426368-1005\Software\SecuROM\License information*]
"datasecu"=hex:a4,e8,e4,e5,ac,12,f6,d1,1f,ad,07,7c,fa,ba,24,bb,19,c1,2b,1e,8d,
d3,8a,c1,4e,85,a6,2c,e0,48,61,85,f1,3a,bc,43,47,15,d2,7f,c4,7e,70,c2,ad,96,\
"rkeysecu"=hex:29,23,be,84,e1,6c,d6,ae,52,90,49,f1,f1,bb,e9,eb
.
Ora fine scansione: 2012-07-26 22:43:21
ComboFix-quarantined-files.txt 2012-07-26 20:43
ComboFix2.txt 2012-07-26 09:22
.
Pre-Run: 100.260.679.680 byte disponibili
Post-Run: 100.361.289.728 byte disponibili
.
- - End Of File - - 4A0AB15A124AC88F3DB02A72567D665B
The computer is running good as before