Precedente :: Successivo |
Autore |
Messaggio |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 02 Feb 2008 13:32 Oggetto: Virus mdelk.exe blocca gli antivirus |
|
|
Ciao,ho un virus che mi blocca qualsiasi antivirus o simili.Come posso fare?grazie |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 02 Feb 2008 14:22 Oggetto: |
|
|
E' necessaria la scansione on-line con kaspersky  |
|
Top |
|
 |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 02 Feb 2008 14:54 Oggetto: |
|
|
ho un virus che si chiama mdelk.exe |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 02 Feb 2008 15:18 Oggetto: |
|
|
ste_95 ha scritto: | E' necessaria la scansione on-line con kaspersky |
|
|
Top |
|
 |
ioSOLOio Amministratore


Registrato: 12/09/03 19:01 Messaggi: 16342 Residenza: in un sacco di...acqua
|
Inviato: 02 Feb 2008 18:42 Oggetto: |
|
|
maddog79 ha scritto: | ho un virus che si chiama mdelk.exe |
ste_95 ti ha suggerito l'utilizzo di un antivirus online già nel primo post..non hai dato risposta, non riesci a utilizzare nemmeno quello? Nel caso che errore da? |
|
Top |
|
 |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 02 Feb 2008 18:50 Oggetto: |
|
|
ho installato tutti gli antivirus possibili,ma l'unico che mi fa aprire e' elibagle,che mi dice che ho un bagle che si chiama mdelk.exe.E' questo che mi blocca tutti gli antivirus e non riesco a toglierlo |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 02 Feb 2008 18:51 Oggetto: |
|
|
E quando io avrei parlato di antivirus da installare? Io ho detto scansione on-line  |
|
Top |
|
 |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 02 Feb 2008 19:01 Oggetto: |
|
|
mi fallisce anche la scansione online  |
|
Top |
|
 |
ioSOLOio Amministratore


Registrato: 12/09/03 19:01 Messaggi: 16342 Residenza: in un sacco di...acqua
|
Inviato: 02 Feb 2008 19:13 Oggetto: |
|
|
la bestiolina in effetti è piuttosto abile a fare danni.
Prova a vedere se riesci a utilazzare Gmer visto che il Bagle utilizza tecniche di rootkit |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 02 Feb 2008 19:18 Oggetto: |
|
|
Nelle ultime varianti GMER è inutile poiché il rootkit infetta anche altri file che GMER non vede.
Che errore restituisce kaspersky? |
|
Top |
|
 |
ioSOLOio Amministratore


Registrato: 12/09/03 19:01 Messaggi: 16342 Residenza: in un sacco di...acqua
|
Inviato: 02 Feb 2008 21:32 Oggetto: |
|
|
eh lo so..ma se non riesce a usare nessun antivirus, nemmeno online, pensavo di procedere a vista e a manina sia con Gmer che con i classici Hijackthis e Avenger...facendo cercare a mano le eventuali voci che sono solitamente create. |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 02 Feb 2008 21:34 Oggetto: |
|
|
Infetta dei file appartenenti a applicazioni installate nel computer e che rimangono in memoria nell'utilizzo del computer, GMER magari le vede in autostart, ma come puoi definire se è infetto o meno? |
|
Top |
|
 |
ioSOLOio Amministratore


Registrato: 12/09/03 19:01 Messaggi: 16342 Residenza: in un sacco di...acqua
|
Inviato: 02 Feb 2008 21:46 Oggetto: |
|
|
Da quello che ho letto, pur con le ovvie varianze del caso, dovrebbero esserci alcuni file nascosti in alcune directory (quindi alcuni processi) ed alcune chiavi di registro che sostanzialmente si ripetono, un po' come una firma distintiva del malware.
Poi ovviamente ogni caso si diversificherà nei files infetti a seconda di cosa c'è sul pc...però se proprio non riesce a utilizzare nessuna risorsa antivirus...un tentativo del genere si poteva fare.
Tra l'altro non ha detto -e non abbiamo chiesto- se riesce ad avviare in modalità provvisoria |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 02 Feb 2008 21:49 Oggetto: |
|
|
Allora facciamolo! Riesci ad avviare in modalità provvisoria?
La scansione on-line con kaspersky va necessariamente effettuata con IE.
Ti da errore nell'aggiornamento del databse antivirus?
Ti dice che la licenza è scaduta? |
|
Top |
|
 |
bdoriano Amministratore


Registrato: 02/04/07 12:05 Messaggi: 14391 Residenza: 3° pianeta del sistema solare...
|
Inviato: 02 Feb 2008 22:40 Oggetto: |
|
|
Scusate se mi intrometto,
@maddog79
- Scarica VundoFix e VirtumundoBegone e salvali sul desktop.
- Avvia VundoFix
Seleziona Scan for Vundo e a scansione terminata scegli Remove Vundo.
Clicca Yes e alla richiesta di riavviare il Pc rispondi Ok.
Al riavvio dovrebbe comparire il blocco-note con dentro il log, copia e posta sul forum il contenuto.
- Ora avvia in modalità provvisoria
Avvia VirtumundoBeGone e segui le indicazioni a video.
riavvia il Pc in modalità normale e posta il log.
- Segui le istruzioni di questo topic per postare il log di combofix.
- Fai anche un nuovo log di HijackThis e mettilo qui.
|
|
Top |
|
 |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 03 Feb 2008 09:26 Oggetto: |
|
|
ste_95 ha scritto: | Allora facciamolo! Riesci ad avviare in modalità provvisoria?
La scansione on-line con kaspersky va necessariamente effettuata con IE.
Ti da errore nell'aggiornamento del databse antivirus?
Ti dice che la licenza è scaduta? |
Mi diceva prima che la licenza era scaduta,e poi mi dava errore nell'aggiornamento del databse antivirus |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 03 Feb 2008 09:28 Oggetto: |
|
|
L'errore dell'aggiornamento si risolve da solo con il passare del tempo.
Prova invece a installare questo componente aggiuntivo dal sito Microsoft |
|
Top |
|
 |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 03 Feb 2008 09:40 Oggetto: |
|
|
---- System - GMER 1.0.14 ----
SSDT kl1.sys (Kaspersky Unified Driver/Kaspersky Lab) ZwOpenFile [0xBA5F1000]
Code \??\C:\WINDOWS\system32\drivers\srosa.sys ZwOpenProcess [0xB726D31C]
Code \??\C:\WINDOWS\system32\drivers\srosa.sys ZwQuerySystemInformation [0xB7272E50]
Code \??\C:\WINDOWS\system32\drivers\srosa.sys NtOpenProcess
Code \??\C:\WINDOWS\system32\drivers\srosa.sys NtQuerySystemInformation
---- Kernel code sections - GMER 1.0.14 ----
PAGE ntkrnlpa.exe!ZwCancelIoFile + 141 80575AB5 7 Bytes JMP B726D3CE \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!ZwRemoveIoCompletion + 12F1 80577ECD 7 Bytes JMP B7272584 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!NtUnlockFile + 809 80578CAD 7 Bytes JMP B7272CA2 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!NtNotifyChangeDirectoryFile + 2B3 80578FCB 7 Bytes JMP B72726A2 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!NtQueryInformationFile + 5C7 80579E33 7 Bytes JMP B726D41E \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!NtOpenProcess 805C9CFE 5 Bytes JMP B726D320 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!NtQuerySystemInformation 8060F89C 5 Bytes JMP B7272E54 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!ZwSaveMergedKeys + B5 806207BF 7 Bytes JMP B726D546 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!ZwCreateKey + 48B 8062258F 1 Byte [ E9 ]
PAGE ntkrnlpa.exe!ZwCreateKey + 48D 80622591 5 Bytes [ B3, C4, 36, EB, F9 ]
PAGE ntkrnlpa.exe!ZwDeleteKey + 1CB 8062275F 7 Bytes JMP B726D760 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!ZwDeleteValueKey + 1DB 8062293F 7 Bytes JMP B72729FC \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!ZwEnumerateKey + 265 80622BA9 7 Bytes JMP B7272752 \??\C:\WINDOWS\system32\drivers\srosa.sys
PAGE ntkrnlpa.exe!ZwOpenKey + 31F 806237B9 7 Bytes JMP B7273084 \??\C:\WINDOWS\system32\drivers\srosa.sys
---- User code sections - GMER 1.0.14 ----
.text C:\Programmi\Windows Live\Messenger\MsnMsgr.Exe[1376] kernel32.dll!SetUnhandledExceptionFilter 7C84467D 5 Bytes JMP 0056DBBD C:\Programmi\Windows Live\Messenger\MsnMsgr.Exe (Windows Live Messenger/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!DialogBoxParamW 7E3A555F 5 Bytes JMP 435FF2C1 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!DialogBoxIndirectParamW 7E3B2032 5 Bytes JMP 4379166F C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!MessageBoxIndirectA 7E3BA04A 5 Bytes JMP 437915F0 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!DialogBoxParamA 7E3BB10C 5 Bytes JMP 43791634 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!MessageBoxExW 7E3D05D8 5 Bytes JMP 4379157C C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!MessageBoxExA 7E3D05FC 5 Bytes JMP 437915B6 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!DialogBoxIndirectParamA 7E3D6B50 5 Bytes JMP 437916AA C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Programmi\Internet Explorer\iexplore.exe[2708] USER32.dll!MessageBoxIndirectW 7E3E62AB 5 Bytes JMP 43621676 C:\WINDOWS\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
---- Kernel IAT/EAT - GMER 1.0.14 ----
IAT \SystemRoot\system32\DRIVERS\tcpip.sys[TDI.SYS!TdiRegisterDeviceObject] 89A8A7E0
IAT \SystemRoot\system32\DRIVERS\netbt.sys[TDI.SYS!TdiRegisterDeviceObject] 89A8A7E0
---- Devices - GMER 1.0.14 ----
AttachedDevice \Driver\Tcpip \Device\Ip NVTcp.sys (NVIDIA Networking Protocol Driver./NVIDIA Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
AttachedDevice \Driver\Tcpip \Device\Tcp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
AttachedDevice \Driver\Tcpip \Device\Udp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
AttachedDevice \Driver\Tcpip \Device\RawIp kl1.sys (Kaspersky Unified Driver/Kaspersky Lab)
---- Threads - GMER 1.0.14 ----
Thread 4:116 89C26020
Thread 4:120 89B74D00
Thread 4:124 89B6B5D0
Thread 4:128 89B74D00
Thread 4:132 89A95430
Thread 4:136 89A95430
Thread 4:140 89A95430
---- Processes - GMER 1.0.14 ----
Process C:\WINDOWS\system32\wintems.exe (*** hidden *** ) 336
---- Registry - GMER 1.0.14 ----
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\AccessWeb\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\Libreria\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\QUERIES\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\XLSTART\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\GRPHFLT\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Microsoft\OFFICE\DATA\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Microsoft\OFFICE\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\011\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\Valerio\Impostazioni locali\Dati applicazioni\Microsoft\OFFICE\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\Templates\Presentation Designs\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\Templates\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\STARTUP\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Microsoft\MSDAIPP\OFFLINE\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Microsoft\MSDAIPP\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Smart Tag\LISTS\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Smart Tag\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\BITMAPS\DBWIZ\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\BITMAPS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\Templates\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\WINDOWS\SHELLNEW\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\SAMPLES\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Folders\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MODI\11.0\DRIVERS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MODI\11.0\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MODI\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1033\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\OFFICE11\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\OFFICE11\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Smart Tag\LISTS\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Smart Tag\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\CAGCAT10\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\CAGCAT10\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\OFFICE11\AUTOSHAP\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\OFFICE11\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\OFFICE11\BULLETS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\OFFICE11\LINES\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\MEDIA\OFFICE11\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\AFTRNOON\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\ARCTIC\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\AXIS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\BLENDS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\BLUECALM\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\BREEZE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\CANYON\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\CAPSULES\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\CASCADE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\COMPASS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\CONCRETE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\DEEPBLUE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\EDGE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\EVRGREEN\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\EXPEDITN\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\ICE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\IRIS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\JOURNAL\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\NETWORK\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\PAPYRUS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\PIXEL\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\PROFILE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\REFINED\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\RIPPLE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\SATIN\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\SKY\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\SLATE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\SONORA\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\SPRING\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\SUMIPNTG\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\WATER\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\THEMES11\WATERMAR\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MODI\11.0\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\VBA\VBA6\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\VBA\VBA6\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\VBA\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Server Extensions\60\BIN\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Server Extensions\60\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\DataServices\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\PROOF\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\DESIGNER\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Folders\1033\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Portal\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\CLIPART\PUB60COR\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\CLIPART\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\CLIPART\Publisher\Backgrounds\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\CLIPART\Publisher\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\PUBBRD\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\PUBFTSCM\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\PUBWIZ\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\PROOF\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\XLATORS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\HTML\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\Templates\1040\FAX\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\SAMPLES\INFOPATH\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\INFFORMS\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\INFFORMS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\BITMAPS\STYLES\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Components\10\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Components\10\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Components\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft.NET\Primary Interop Assemblies\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft.NET\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MSDesigners7\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MSDesigners7\Resources\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\MSDesigners7\Resources\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Visual Database Tools\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Visual Database Tools\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Components\11\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Web Components\11\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\INK\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\ADDINS\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\SYSTEM\OLE DB\resources\1033\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\SYSTEM\OLE DB\resources\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\SYSTEM\OLE DB\resources\1040\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1033\BOTSTYLE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Microsoft Office\OFFICE11\1040\BOTSTYLE\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Microsoft Shared\Source Engine\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Menu Avvio\Programmi\Microsoft Office\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Menu Avvio\Programmi\Microsoft Office\Strumenti di Office\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\WINDOWS\Installer\{90110410-6000-11D3-8CFE-0150048383C9}\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\demo\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\cics\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\demo\dif\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\guam\dif\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\guam\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\linklib\dif\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\linklib\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\soa\dif\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\soa\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Automated Software Tools\z390\mac\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\Valerio\Menu Avvio\Programmi\Automated Software Tools\z390\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\Valerio\Menu Avvio\Programmi\Automated Software Tools\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\Valerio\Dati applicazioni\Microsoft\Installer\{185CA361-D08D-425A-A2B5-24EF86A0E8B9}\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\ANIMBIN\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\APPBIN2\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\APPBIN\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\BG_H\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\BG_N\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\BG_S\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\BG_U\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\BG_V\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\BIN\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Challeng\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Collect\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Edit\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\ENDBIN2\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\ENDBIN\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Ending\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Menu\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Opening\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Puzzle\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Select\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\SND\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Tokoton\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\VSBIN\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\VSMAPBIN\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\Font\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\CYBERFRONT\BUST-A-MOVE3_DX\DirectX\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Menu Avvio\Programmi\CYBERFRONT\BUST-A-MOVE3 DX\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Menu Avvio\Programmi\CYBERFRONT\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\WINDOWS\Installer\{FA73BD80-9B58-4545-BBD4-080B94AB3EF0}\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Java\Update\Base Images\jre1.6.0.b105\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Java\Update\Base Images\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Java\Update\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Java\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_01.b06\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Java\jre1.6.0_01\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Java\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Java\jre1.6.0_01\bin\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\Linda\Impostazioni locali\Dati applicazioni\Microsoft\OFFICE\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Acrobat\ActiveX\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Acrobat\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Adobe Help Viewer\1.0\Resources\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Adobe Help Viewer\1.0\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Adobe Help Viewer\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\AMT\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Browser\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Setup Files\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1040-7B44-A81000000003}\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\HowTo\ITA\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\HowTo\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\HowTo\ITA\Images\ 1
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\en_US\Adobe Reader\8.0\images\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\en_US\Adobe Reader\8.0\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\en_US\Adobe Reader\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\en_US\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\it_IT\Adobe Reader\8.0\images\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\it_IT\Adobe Reader\8.0\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\it_IT\Adobe Reader\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\File comuni\Adobe\Help\it_IT\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\VDKHome\ENU\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\VDKHome\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\VDKHome\ITA\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\AcroForm\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\AcroForm\PMP\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\Multimedia\MPP\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\Multimedia\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Resource\CMap\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Resource\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Resource\Font\PFM\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Resource\Font\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Optional\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\Annotations\Stamps\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\Annotations\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\Annotations\Stamps\ITA\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\plug_ins\Annotations\Stamps\ENU\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\HowTo\ENU\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\HowTo\ENU\Images\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\SPPlugins\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Esl\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Javascripts\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Legal\en_US\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Legal\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Legal\it_IT\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Adobe\Acrobat\8.0\Replicate\Security\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Adobe\Acrobat\8.0\Replicate\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Adobe\Acrobat\8.0\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Adobe\Acrobat\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Documents and Settings\All Users\Dati applicazioni\Adobe\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\adobe_epic\eula\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\adobe_epic\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\adobe_epic\eula\it_IT\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\Tracker\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\AIR\
Reg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@C:\Programmi\Adobe\Reader 8.0\Reader\adobe_epic\eula\en_US\
Reg |
|
Top |
|
 |
maddog79 Eroe in grazia degli dei

Registrato: 02/02/08 13:22 Messaggi: 159
|
Inviato: 03 Feb 2008 09:43 Oggetto: |
|
|
la scansione con gmer mi dice che ci sono dei rookie che infettano il sistema |
|
Top |
|
 |
ste_95 Dio maturo


Registrato: 03/08/07 14:41 Messaggi: 1920 Residenza: Italy
|
Inviato: 03 Feb 2008 09:44 Oggetto: |
|
|
Leggi il topic e capirai perché è necessaria la scansione on-line con kaspersky. |
|
Top |
|
 |
|