OTL logfile created on: 28/09/2012 2.07.24 - Run 3 OTL by OldTimer - Version 3.2.39.2 Folder = C:\Documents and Settings\Pippo\Documenti\Download\OTL_ Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000410 | Country: Italia | Language: ITA | Date Format: dd/MM/yyyy 2,00 Gb Total Physical Memory | 1,35 Gb Available Physical Memory | 67,33% Memory free 3,85 Gb Paging File | 3,21 Gb Available in Paging File | 83,52% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Programmi Drive C: | 78,13 Gb Total Space | 24,48 Gb Free Space | 31,33% Space Free | Partition Type: NTFS Drive D: | 78,13 Gb Total Space | 44,50 Gb Free Space | 56,96% Space Free | Partition Type: NTFS Drive E: | 76,63 Gb Total Space | 25,94 Gb Free Space | 33,86% Space Free | Partition Type: NTFS Drive G: | 78,13 Gb Total Space | 51,05 Gb Free Space | 65,35% Space Free | Partition Type: NTFS Drive H: | 29,17 Gb Total Space | 27,42 Gb Free Space | 94,00% Space Free | Partition Type: FAT32 Drive K: | 75,26 Gb Total Space | 42,12 Gb Free Space | 55,96% Space Free | Partition Type: NTFS Computer Name: MONASSA-8D991F2 | User Name: Pippo | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012/09/07 11.42.33 | 000,917,984 | ---- | M] (Mozilla Corporation) -- C:\Programmi\Mozilla Firefox\firefox.exe PRC - [2012/08/01 09.28.36 | 000,348,664 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programmi\Avira\AntiVir Desktop\avgnt.exe PRC - [2012/05/02 01.42.31 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programmi\Avira\AntiVir Desktop\sched.exe PRC - [2012/05/02 00.34.37 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programmi\Avira\AntiVir Desktop\avguard.exe PRC - [2012/04/24 02.11.59 | 000,080,336 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programmi\Avira\AntiVir Desktop\avshadow.exe PRC - [2012/04/04 09.22.37 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Pippo\Documenti\Download\OTL_\OTL.exe PRC - [2010/10/10 19.39.50 | 001,273,856 | ---- | M] (Don HO don.h@free.fr) -- C:\Note++\ansi\notepad++.exe PRC - [2008/04/14 04.14.07 | 001,036,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012/09/21 14.28.14 | 009,813,424 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_278.dll MOD - [2012/09/07 11.42.33 | 002,244,064 | ---- | M] () -- C:\Programmi\Mozilla Firefox\mozjs.dll MOD - [2012/04/16 23.11.02 | 000,398,288 | ---- | M] () -- C:\Programmi\Avira\AntiVir Desktop\sqlite3.dll MOD - [2011/12/28 13.33.21 | 000,426,496 | ---- | M] () -- C:\Note++\ansi\plugins\CharM.dll MOD - [2010/08/15 20.39.32 | 000,204,800 | ---- | M] () -- C:\Note++\ansi\plugins\ComparePlugin.dll MOD - [2010/01/26 01.15.58 | 000,172,032 | ---- | M] () -- C:\Note++\ansi\plugins\LightExplorer.dll MOD - [2008/09/06 14.51.18 | 000,013,824 | ---- | M] () -- C:\Note++\ansi\plugins\NppExportA.dll MOD - [2008/05/02 06.15.37 | 000,010,240 | ---- | M] () -- C:\Programmi\Unlocker\UnlockerCOM.dll MOD - [2007/12/05 01.41.00 | 000,466,944 | ---- | M] () -- C:\WINDOWS\system32\nvshell.dll MOD - [2007/09/20 19.34.58 | 000,129,024 | ---- | M] () -- C:\Programmi\WinRAR\RarExt.dll MOD - [2007/08/05 03.10.52 | 000,250,368 | ---- | M] () -- C:\Note++\ansi\plugins\Config\tidy\libTidy.dll MOD - [2006/08/31 19.46.32 | 000,176,235 | ---- | M] () -- C:\WINDOWS\system32\Primomonnt.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2012/09/21 14.28.15 | 000,250,288 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/09/07 11.42.33 | 000,114,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012/07/13 13.28.36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Programmi\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012/05/15 12.18.00 | 001,262,400 | ---- | M] (NVIDIA Corporation) [Disabled | Stopped] -- C:\Programmi\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService) SRV - [2012/05/02 01.42.31 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Programmi\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2012/05/02 00.34.37 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Programmi\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2012/01/04 13.32.36 | 000,718,888 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Programmi\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010/01/22 12.14.00 | 000,073,728 | ---- | M] (Hewlett-Packard Company) [Disabled | Stopped] -- C:\Programmi\File comuni\LightScribe\LSSrvc.exe -- (LightScribeService) SRV - [2007/05/17 23.45.33 | 000,271,720 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Programmi\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc) SRV - [2007/01/11 12.08.29 | 000,072,704 | ---- | M] (Adobe Systems) [On_Demand | Stopped] -- C:\Programmi\File comuni\Adobe Systems Shared\Service\Adobelmsvc.exe -- (Adobe LM Service) SRV - [2005/11/14 02.06.04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Programmi\File comuni\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Pippo\IMPOST~1\Temp\catchme.sys -- (catchme) DRV - [2012/04/27 10.20.04 | 000,137,928 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2012/04/25 00.32.27 | 000,083,392 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2012/04/16 21.18.01 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr) DRV - [2012/01/09 17.28.20 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2012/01/09 17.28.20 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2012/01/09 17.28.20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2012/01/09 17.28.20 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010/07/15 08.44.20 | 000,013,192 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\epmntdrv.sys -- (epmntdrv) DRV - [2010/07/15 08.44.20 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\EuGdiDrv.sys -- (EuGdiDrv) DRV - [2010/06/17 15.14.27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2010/02/18 14.11.32 | 000,023,456 | ---- | M] (Phoenix Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\DrvAgent32.sys -- (DrvAgent32) DRV - [2010/01/27 04.09.02 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2009/12/30 11.20.56 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt) DRV - [2009/02/17 21.14.48 | 000,060,672 | ---- | M] (Roland Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Rdwm1094.sys -- (RDID1094) DRV - [2008/09/12 09.03.34 | 000,540,288 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emBDA.sys -- (USB28xxBGA) DRV - [2008/09/12 09.03.34 | 000,443,520 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emOEM.sys -- (USB28xxOEM) DRV - [2008/09/12 09.03.34 | 000,024,576 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emAudio.sys -- (emAudio) DRV - [2008/08/26 09.26.12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008/04/13 20.53.09 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm) DRV - [2008/04/13 20.46.22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mpe.sys -- (MPE) DRV - [2008/04/13 20.45.29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2007/10/03 23.55.36 | 000,019,240 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SiWinAcc.sys -- (SiFilter) DRV - [2007/10/03 23.55.28 | 000,015,400 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SiRemFil.sys -- (SiRemFil) DRV - [2007/10/03 23.55.08 | 000,080,424 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\SI3132.sys -- (SI3132) DRV - [2007/04/10 23.46.48 | 001,966,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\VX3000.sys -- (VX3000) DRV - [2006/11/23 18.11.40 | 004,025,088 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM) DRV - [2006/09/24 15.28.46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan) DRV - [2006/04/24 18.52.28 | 000,100,736 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvata.sys -- (nvata) DRV - [2006/04/14 21.09.06 | 000,013,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2006/04/14 21.09.04 | 000,034,176 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2005/03/30 09.24.00 | 000,230,400 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp) DRV - [2005/03/09 16.53.00 | 000,043,008 | ---- | M] (Advanced Micro Devices) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2005/02/23 15.58.56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (Afc) DRV - [2005/02/03 02.50.28 | 000,004,224 | ---- | M] () [File_System | System | Unknown] -- C:\windows\System32\StarOpen.sys -- (StarOpen) DRV - [2004/11/26 21.22.08 | 000,012,800 | ---- | M] () [Kernel | Auto | Running] -- C:\windows_Bios\ioperm.sys -- (ioperm) DRV - [2004/09/09 13.24.52 | 000,212,224 | ---- | M] (Echo Digital Audio Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\echogals.sys -- (echogals) DRV - [2004/08/13 12.56.20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2003/09/19 16.45.48 | 000,021,248 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc) DRV - [2002/10/03 13.52.08 | 000,040,312 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\STTub203.sys -- (STTub203) DRV - [2002/04/17 21.27.02 | 000,011,264 | ---- | M] (VOB Computersysteme GmbH) [Kernel | System | Running] -- C:\windows\System32\drivers\asapi.sys -- (Asapi) DRV - [2001/08/18 00.00.04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401) DRV - [2001/08/17 23.02.50 | 000,002,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HIDSwvd.sys -- (HIDSwvd) DRV - [2001/08/17 23.02.40 | 000,035,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msgame.sys -- (msgame) DRV - [2001/08/17 23.02.32 | 000,008,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hidgame.sys -- (hidgame) DRV - [1996/04/03 21.33.26 | 000,005,248 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\giveio.sys -- (giveio) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32_11_4_402_278.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Programmi\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Programmi\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\windows\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Programmi\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Programmi\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Programmi\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Programmi\Mozilla Firefox\components [2012/09/07 11.42.33 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Programmi\Mozilla Firefox\plugins [2012/07/12 17.39.58 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Programmi\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2011/10/29 14.44.41 | 000,000,000 | ---D | M] [2010/08/12 14.47.05 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Extensions [2010/08/12 14.47.05 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2012/08/17 08.32.46 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Firefox\Profiles\e4rgm794.default\extensions [2011/05/03 02.09.21 | 000,000,000 | ---D | M] (BBCodeXtra) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Firefox\Profiles\e4rgm794.default\extensions\{af79f858-4b25-4ca4-822b-b5db1be628fc} [2010/12/12 00.28.33 | 000,000,000 | ---D | M] (British English Dictionary) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Firefox\Profiles\e4rgm794.default\extensions\en-GB@dictionaries.addons.mozilla.org [2012/05/19 01.32.33 | 000,000,000 | ---D | M] (United States English Spellchecker) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Firefox\Profiles\e4rgm794.default\extensions\en-US@dictionaries.addons.mozilla.org [2011/10/08 01.26.32 | 000,000,000 | ---D | M] (Dictionnaire français «Classique &amp; Réforme 1990») -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Firefox\Profiles\e4rgm794.default\extensions\fr-classique-reforme1990@dictionaries.addons.mozilla.org [2012/03/13 02.25.56 | 000,000,000 | ---D | M] (Dizionario italiano) -- C:\Documents and Settings\Pippo\Dati applicazioni\Mozilla\Firefox\Profiles\e4rgm794.default\extensions\it-IT@dictionaries.addons.mozilla.org [2012/04/25 02.00.06 | 000,000,000 | ---D | M] (No name found) -- C:\Programmi\Mozilla Firefox\extensions [2012/09/07 11.42.33 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Programmi\mozilla firefox\components\browsercomps.dll [2012/06/16 20.12.54 | 000,001,393 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\amazon-it.xml [2012/09/07 11.42.32 | 000,002,465 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\bing.xml [2012/06/16 20.12.54 | 000,000,744 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\eBay-it.xml [2012/06/16 20.12.54 | 000,000,817 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\hoepli.xml [2012/06/16 20.12.54 | 000,001,182 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\wikipedia-it.xml [2012/06/16 20.12.54 | 000,000,953 | ---- | M] () -- C:\Programmi\mozilla firefox\searchplugins\yahoo-it.xml O1 HOSTS File: ([2009/04/23 19.01.01 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Programmi\Orbitdownloader\orbitcth.dll (Orbitdownloader.com) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Guida per l'accesso a Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmi\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (no name) - AutorunsDisabled - No CLSID value found. O4 - HKLM..\Run: [avgnt] C:\Programmi\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [NvCplDaemon] C:\windows\System32\NvCpl.dll (NVIDIA Corporation) O4 - Startup: C:\Documents and Settings\All Users\Menu Avvio\Programmi\Esecuzione automatica\AutorunsDisabled [2012/06/07 09.43.45 | 000,000,000 | -H-D | M] O4 - Startup: C:\Documents and Settings\Pippo\Menu Avvio\Programmi\Esecuzione automatica\Adobe Gamma.lnk = C:\Programmi\File comuni\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O4 - Startup: C:\Documents and Settings\Pippo\Menu Avvio\Programmi\Esecuzione automatica\AutorunsDisabled [2010/04/06 00.24.45 | 000,000,000 | -H-D | M] O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: &Download by Orbit - C:\Programmi\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: &Grab video by Orbit - C:\Programmi\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: Do&wnload selected by Orbit - C:\Programmi\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: Down&load all by Orbit - C:\Programmi\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O9 - Extra Button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Programmi\WinHTTrack\WinHTTrackIEBar.dll () O9 - Extra 'Tools' menuitem : Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Programmi\WinHTTrack\WinHTTrackIEBar.dll () O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1342166794187 (MUWebControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{464337D6-1787-49A2-80A2-6E96DF58D570}: DhcpNameServer = 192.168.0.1 O18 - Protocol\Handler\ipp\0x00000001 - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found O18 - Protocol\Handler\msdaipp\oledb - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programmi\File comuni\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 () - O27 - HKLM IFEO\taskmgr.exe: Debugger - K:\UTILITA\PROCES_EXPLORER\PROCEXP.EXE (Sysinternals) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006/12/30 16.56.08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O34 - HKLM BootExecute: (u) O34 - HKLM BootExecute: (t) O34 - HKLM BootExecute: (o) O34 - HKLM BootExecute: (c) O34 - HKLM BootExecute: (h) O34 - HKLM BootExecute: (k) O34 - HKLM BootExecute: (*) O34 - HKLM BootExecute: (pgdfgsvc C 1) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/09/27 12.23.06 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Pippo\Recent [2012/09/26 19.18.25 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2012/09/26 16.56.23 | 000,000,000 | ---D | C] -- C:\windows\temp [2012/09/26 16.46.16 | 000,518,144 | ---- | C] (SteelWerX) -- C:\windows\SWREG.exe [2012/09/26 16.46.16 | 000,406,528 | ---- | C] (SteelWerX) -- C:\windows\SWSC.exe [2012/09/26 16.46.16 | 000,212,480 | ---- | C] (SteelWerX) -- C:\windows\SWXCACLS.exe [2012/09/26 16.46.16 | 000,060,416 | ---- | C] (NirSoft) -- C:\windows\NIRCMD.exe [2012/09/26 16.46.05 | 000,000,000 | ---D | C] -- C:\Qoobox [2012/09/26 10.52.10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pippo\Impostazioni locali\Dati applicazioni\Norman Malware Cleaner [2012/09/21 11.30.06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\Skype [2012/09/21 11.30.05 | 000,000,000 | R--D | C] -- C:\Programmi\Skype [2012/09/21 11.30.05 | 000,000,000 | ---D | C] -- C:\Programmi\File comuni\Skype [2012/09/21 11.16.11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pippo\Impostazioni locali\Dati applicazioni\VS Revo Group [2012/09/21 11.16.07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\Revo Uninstaller Pro [2012/09/21 11.16.06 | 000,027,064 | ---- | C] (VS Revo Group) -- C:\windows\System32\drivers\revoflt.sys [2012/09/21 11.16.05 | 000,000,000 | ---D | C] -- C:\Programmi\VS Revo Group [2012/09/21 10.25.02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pippo\Dati applicazioni\ElevatedDiagnostics [2012/09/21 10.23.27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Avvio\Programmi\Windows PowerShell 1.0 [2012/09/21 10.23.17 | 000,000,000 | ---D | C] -- C:\windows\System32\windowspowershell [2012/09/13 11.09.56 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Pippo\IECompatCache [2012/09/06 11.52.25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pippo\Impostazioni locali\Dati applicazioni\MetaGeek,_LLC [4 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] [1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/09/28 01.28.00 | 000,000,978 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job [2012/09/27 19.56.09 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat [2012/09/27 01.42.23 | 000,054,156 | -H-- | M] () -- C:\windows\QTFont.qfn [2012/09/26 02.27.32 | 000,012,598 | ---- | M] () -- C:\windows\System32\wpa.dbl [2012/09/21 11.39.38 | 000,002,241 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk [2012/09/19 09.49.23 | 000,006,350 | ---- | M] () -- C:\Documents and Settings\Pippo\Documenti\cc_20120919_094844.reg [2012/09/08 14.20.40 | 000,104,960 | ---- | M] () -- C:\Documents and Settings\Pippo\Impostazioni locali\Dati applicazioni\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012/09/07 17.09.38 | 000,198,552 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT [4 C:\windows\*.tmp files -> C:\windows\*.tmp -> ] [1 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/09/26 16.46.16 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe [2012/09/26 16.46.16 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe [2012/09/26 16.46.16 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe [2012/09/26 16.46.16 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe [2012/09/26 16.46.16 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe [2012/09/21 11.30.06 | 000,002,241 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk [2012/09/19 09.48.45 | 000,006,350 | ---- | C] () -- C:\Documents and Settings\Pippo\Documenti\cc_20120919_094844.reg [2012/07/13 17.25.36 | 000,003,072 | ---- | C] () -- C:\windows\System32\iacenc.dll [2012/05/23 18.24.48 | 001,074,636 | ---- | C] () -- C:\windows\System32\nvdrsdb1.bin [2012/05/23 18.24.48 | 001,074,636 | ---- | C] () -- C:\windows\System32\nvdrsdb0.bin [2012/05/23 18.24.48 | 000,000,001 | ---- | C] () -- C:\windows\System32\nvdrssel.bin [2012/05/23 18.24.29 | 002,807,708 | ---- | C] () -- C:\windows\System32\nvdata.data [2012/04/02 10.49.00 | 000,000,218 | ---- | C] () -- C:\Documents and Settings\Pippo\Impostazioni locali\Dati applicazioni\recently-used.xbel [2011/07/27 16.33.51 | 000,000,281 | ---- | C] () -- C:\windows\SIERRA.INI [2011/03/28 16.46.41 | 002,217,088 | ---- | C] () -- C:\windows\System32\BootMan.exe [2011/03/28 16.46.41 | 000,086,408 | ---- | C] () -- C:\windows\System32\setupempdrv03.exe [2011/03/28 16.46.41 | 000,014,848 | ---- | C] () -- C:\windows\System32\EuEpmGdi.dll [2011/03/28 16.46.41 | 000,013,192 | ---- | C] () -- C:\windows\System32\epmntdrv.sys [2011/03/28 16.46.41 | 000,008,456 | ---- | C] () -- C:\windows\System32\EuGdiDrv.sys [2011/02/26 03.29.00 | 000,698,970 | ---- | C] () -- C:\windows\unins001.exe [2011/02/26 03.29.00 | 000,026,826 | ---- | C] () -- C:\windows\unins001.dat [2011/02/20 18.12.28 | 000,006,656 | ---- | C] () -- C:\windows\System32\RdCi1094.dll [2011/02/20 18.12.28 | 000,004,088 | ---- | C] () -- C:\windows\System32\Rd3t1094.DAT [2011/01/18 14.31.30 | 000,000,022 | -HS- | C] () -- C:\Documents and Settings\Pippo\Dati applicazioni\Sys6925.Config Collection.sys [2011/01/18 14.31.30 | 000,000,022 | -HS- | C] () -- C:\windows\Sys3390 SettingsCollection.bin [color=#E56717]========== LOP Check ==========[/color] [2011/03/14 03.38.07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Droppix [2012/07/06 16.27.21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Installations [2010/02/11 15.32.48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\LightScribe [2007/02/19 18.29.15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Minnetonka Audio Software [2010/11/24 14.19.29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Nitro PDF [2012/07/06 16.25.22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Nokia [2011/02/16 13.34.22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\NokiaInstallerCache [2010/04/06 17.50.38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\PC Suite [2011/12/16 03.21.52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\PC1Data [2010/01/12 15.33.16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\PCTV Systems [2009/11/23 01.48.46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Pinnacle [2012/06/06 12.51.02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\Seeing Machines [2008/12/26 02.50.55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\SmartSound Software Inc [2010/01/18 03.06.32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\TV DIGITAL [2008/04/28 02.03.01 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dati applicazioni\{A25FEDC1-F6D7-440C-BCE2-B71F595F6646} [2012/03/01 02.14.19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Abcuq [2012/09/01 17.07.51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Audacity [2011/05/07 19.25.05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Blender Foundation [2007/02/19 18.29.11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\DeepBurner [2007/02/19 18.29.11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\DeepBurner Pro [2007/05/03 00.43.27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\DelinvFile [2010/11/24 14.18.56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Downloaded Installations [2012/09/21 10.25.02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\ElevatedDiagnostics [2012/09/12 11.45.36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\FileZilla [2007/10/02 13.04.23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\FLV Extract [2010/11/30 03.13.05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Foxit Software [2011/05/17 17.38.55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Genie-Soft [2007/12/15 12.02.52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\GetRightToGo [2010/03/30 14.44.38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\GrabPro [2011/02/14 04.07.29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\gtk-2.0 [2010/10/17 17.16.33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\ICQ [2007/02/19 18.29.11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\ICQLite [2012/05/06 02.20.01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\inkscape [2011/11/26 17.11.18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\JAM Software [2010/04/15 16.48.04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\KompoZer [2011/05/05 19.20.53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\kompozer.net [2012/03/09 20.37.11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Kye [2012/05/07 02.10.17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\MAXON [2012/06/04 02.10.34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\MetaQuotes [2007/03/26 14.20.01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Mp3tag [2007/04/01 12.49.02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\NetMedia Providers [2010/11/25 12.26.13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Nitro PDF [2010/10/13 11.36.41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Nokia [2010/04/07 01.39.00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Nokia Ovi Suite [2007/02/19 18.29.09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Nvu [2010/04/06 00.21.12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\OpenOffice.org [2011/04/06 10.37.28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Opera [2012/07/12 17.40.01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Oracle [2012/07/11 10.10.43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Orbit [2011/12/16 03.21.56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\PC Cleaners [2011/01/23 13.32.28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\PC Suite [2007/05/17 00.12.56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Pegasys Inc [2009/10/05 17.53.53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\progeSOFT [2010/08/26 10.17.13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Publish Providers [2009/09/08 12.37.49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\REAPER [2009/01/02 04.07.21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\RibbonSoft [2012/06/06 12.51.02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Seeing Machines [2008/05/01 01.50.59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Stellarium [2012/09/27 21.38.23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\TS3Client [2012/03/13 03.05.53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Umviy [2012/07/25 08.49.39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\uTorrent [2010/10/18 13.19.16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\uTorrent_Bck [2009/04/14 19.34.23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\wcpuid [2010/02/21 03.25.02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Windows Live Writer [2009/12/11 20.01.13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\WinFF [2011/05/27 01.29.27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pippo\Dati applicazioni\Wireshark [color=#E56717]========== Purity Check ==========[/color] < End of report >