Here are the logs:
AdwCleaner:# AdwCleaner v2.200 - Logfile creato il 15/04/2013 alle 19:56:17
# Aggiornamento 02/04/2013 by Xplode
# Sistema Operativo : Windows 7 Ultimate Service Pack 1 (64 bits)
# Utente : CIRO - CIRO-PC
# Modalità Avvio : Modalità Normale
# Eseguito da : C:\Users\CIRO\Desktop\adwcleaner.exe
# Opzioni [Elimina]
***** [Servizi] *****
***** [File / Cartelle] *****
Cartella Eliminato : C:\ProgramData\InstallMate
Cartella Eliminato : C:\ProgramData\SoftSafe
***** [Registro] *****
Chiave Eliminata : HKCU\Software\AppDataLow\SProtector
Chiave Eliminata : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{01BD49D7-C76B-4310-8BEB-14D7E5F322C6}
Chiave Eliminata : HKLM\Software\SProtector
Chiave Eliminata : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{01BD49D7-C76B-4310-8BEB-14D7E5F322C6}
Valore Eliminata : HKLM\SOFTWARE\Mozilla\Firefox\extensions [{acaa314b-eeba-48e4-ad47-84e31c44796c}]
***** [Browser Internet] *****
-\\ Internet Explorer v10.0.9200.16537
Sostituito : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main - Start Page] = hxxp://search.easylifeapp.com/?pid=625&src=ie1&r=2013/03/09&hid=1876464388&lg=EN&cc=IT --> hxxp://www.google.com
-\\ Mozilla Firefox v20.0.1 (it)
File : C:\Users\CIRO\AppData\Roaming\Mozilla\Firefox\Profiles\v32npkuf.default\prefs.js
Eliminata : user_pref("aol_toolbar.default.homepage.check", false);
Eliminata : user_pref("aol_toolbar.default.search.check", false);
Eliminata : user_pref("browser.search.defaulturl", "hxxp://search.easylifeapp.com/?pid=625&src=ff2&r=2013/03/09&[...]
Eliminata : user_pref("extensions.BabylonToolbar.prtkDS", 0);
Eliminata : user_pref("extensions.BabylonToolbar.prtkHmpg", 0);
Eliminata : user_pref("sweetim.toolbar.previous.browser.search
.defaultenginename", "");
Eliminata : user_pref("sweetim.toolbar.previous.browser.search
.selectedEngine", "");
Eliminata : user_pref("sweetim.toolbar.previous.browser.startu
p.homepage", "");
Eliminata : user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://www.google.com/search?&q=");
Eliminata : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
Eliminata : user_pref("sweetim.toolbar.searchguard.UserRejecte
dGuard_DS", "");
Eliminata : user_pref("sweetim.toolbar.searchguard.UserRejecte
dGuard_HP", "");
Eliminata : user_pref("sweetim.toolbar.searchguard.enable", "");
-\\ Google Chrome v26.0.1410.64
File : C:\Users\CIRO\AppData\Local\Google\Chrome\User Data\Default\Preferences
[OK] File Pulito.
*************************
AdwCleaner[S1].txt - [2560 octets] - [15/04/2013 19:56:17]
########## EOF - C:\AdwCleaner[S1].txt - [2620 octets] ##########
Malwarebyte's Anti MalwareMalwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.orgDatabase version: v2013.04.15.07
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16540
CIRO :: CIRO-PC [administrator]
Protection: Enabled
15/04/2013 18:36:54
mbam-log-2013-04-15 (18-36-54).txt
Scan type: Full scan (C:\|D:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 452980
Time elapsed: 1 hour(s), 7 minute(s), 9 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 1
C:\Program Files (x86)\Rockstar Games\GTA San Andreas\gta_sa_dll.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
(end)
DDS.txtDDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16537 BrowserJavaVersion: 10.17.2
Run by CIRO at 20:08:11 on 2013-04-15
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.39.1040.18.8191.6107 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\taskhost.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\rundll32.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.it/
mStart Page = hxxp://www.google.com
mWinlogon: Userinit = userinit.exe,
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Guida per l'accesso all'account Microsoft: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: DVDVideoSoft WebPageAdjuster Class: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
BHO: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
uRun: [AdobeBridge] <no file>
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
mRun: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: Aggiungi a PDF esistente - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Aggiungi destinazione link a PDF esistente - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Converti destinazione link in Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Converti in Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: E&sporta in Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
IE: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm
IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{097E228D-B98D-4F92-8A6F-DD808C836028} : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{097E228D-B98D-4F92-8A6F-DD808C836028}\64143545755424D213D2030313448324532353636403 : DHCPNameServer = 62.101.93.101 83.103.25.250
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-BHO: DVDVideoSoft WebPageAdjuster Class: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll
x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-IE: {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
x64-DPF: {CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_17-windows-i586.cab
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
Hosts: 91.216.163.105 linkz.it
Hosts: 91.216.163.105
www.linkz.itHosts: 91.216.163.105 facebook.com
Hosts: 91.216.163.105
www.facebook.comHosts: 91.216.163.105 wikipedia.org
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\CIRO\AppData\Roaming\Mozilla\Firefox\Profiles\v32npkuf.default\
FF - prefs.js: browser.startup.homepage - about:home
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?&q=
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\CIRO\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
FF - ExtSQL: 2013-03-21 21:15; {c36177c0-224a-11da-8cd6-0800200c9a91}; C:\Users\CIRO\AppData\Roaming\Mozilla\Firefox\Profiles\v32npkuf.default\extensions\{c36177c0-224a-11da-8cd6-0800200c9a91}.xpi
FF - ExtSQL: 2013-03-21 22:20; {E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}; C:\Users\CIRO\AppData\Roaming\Mozilla\Firefox\Profiles\v32npkuf.default\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}
FF - ExtSQL: 2013-03-24 12:26;
[email protected]; C:\Users\CIRO\AppData\Roaming\Mozilla\Firefox\Profiles\v32npkuf.default\extensions\
[email protected].
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;C:\Windows\System32\drivers\aswRvrt.sys [2013-3-6 65336]
R0 aswVmm;aswVmm;C:\Windows\System32\drivers\aswVmm.sys [2013-3-6 178624]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2013-1-24 1025808]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2013-1-24 377920]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2012-6-11 239616]
R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2013-1-24 33400]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2013-1-24 80816]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-3-15 45248]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-4-15 418376]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-4-15 701512]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2013-4-10 95760]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-4-15 25928]
R3 netr28x;Ralink 802.11n Extensible Wireless Driver;C:\Windows\System32\drivers\netr28x.sys [2013-1-24 787968]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2013-3-3 251496]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2009-3-2 187392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-28 161384]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-1-26 19456]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-1-26 57856]
S3 WatAdminSvc;Servizio Windows Activation Technologies;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-1-24 1255736]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\Windows\System32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2013-04-15 17:14:00 -------- d-----w- C:\Users\CIRO\AppData\Roaming\Unity
2013-04-15 16:33:41 -------- d-----w- C:\Users\CIRO\AppData\Roaming\Malwarebytes
2013-04-15 16:33:33 -------- d-----w- C:\ProgramData\Malwarebytes
2013-04-15 16:33:32 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2013-04-15 16:33:32 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-04-14 12:29:03 -------- d-----w- C:\Users\CIRO\AppData\Local\ElevatedDiagnostics
2013-04-12 18:46:10 -------- d-----w- C:\Program Files (x86)\In Verbis Virtus
2013-04-12 09:44:08 9311288 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{43A71912-6B80-400F-80A0-187D77C0409D}\mpengine.dll
2013-04-11 19:19:57 -------- d-----w- C:\Users\CIRO\AppData\Local\webkit
2013-04-11 14:37:50 -------- d-----w- C:\Users\CIRO\AppData\Roaming\Need for Speed World
2013-04-11 14:05:02 -------- d-----w- C:\Users\CIRO\AppData\Local\Electronic_Arts_Inc
2013-04-10 19:14:41 -------- d-----w- C:\ProgramData\OUTLAWS
2013-04-10 19:14:28 -------- d-----w- C:\Program Files (x86)\Microsoft XNA
2013-04-10 19:12:52 -------- d-----w- C:\Program Files (x86)\Terraria
2013-04-10 17:29:38 3153408 ----a-w- C:\Windows\System32\win32k.sys
2013-04-10 17:29:35 1655656 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2013-04-10 17:26:12 223752 ----a-w- C:\Windows\System32\drivers\fvevol.sys
2013-04-10 17:26:06 5550424 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-04-10 17:26:04 3913560 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-04-10 17:26:03 3968856 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-04-10 17:26:02 112640 ----a-w- C:\Windows\System32\smss.exe
2013-04-10 17:26:01 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll
2013-04-10 17:26:01 43520 ----a-w- C:\Windows\System32\csrsrv.dll
2013-04-10 10:04:42 -------- d-----w- C:\Users\CIRO\AppData\Local\ATI
2013-04-10 09:27:42 0 ----a-w- C:\Windows\ativpsrm.bin
2013-04-10 09:26:10 -------- d-----w- C:\Program Files (x86)\AMD APP
2013-04-10 09:25:11 95760 ----a-w- C:\Windows\System32\drivers\AtihdW76.sys
2013-04-10 09:24:59 70144 ----a-w- C:\Windows\System32\coinst_8.98.dll
2013-04-10 09:24:58 442368 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2013-04-10 09:24:00 -------- d-----w- C:\Program Files\ATI
2013-04-10 09:23:52 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2013-04-10 09:22:54 -------- d-----w- C:\Program Files\ATI Technologies
2013-04-09 21:07:08 3166720 ----a-w- C:\Windows\SysWow64\DxtoryCodec.dll
2013-04-09 20:32:58 672256 ----a-w- C:\Windows\SysWow64\PackBitCodec.dll
2013-04-09 20:32:58 1174979 ----a-w- C:\Windows\unins000.exe
2013-04-09 20:26:30 -------- d-----w- C:\Users\CIRO\AppData\Local\Dxtory Software
2013-04-09 20:26:26 3673600 ----a-w- C:\Windows\System32\DxtoryCodec64.dll
2013-04-09 20:26:23 -------- d-----w- C:\Program Files (x86)\Dxtory Software
2013-04-07 18:58:28 -------- d-----w- C:\Users\CIRO\.minecraft
2013-04-07 17:25:59 -------- d-----w- C:\Users\CIRO\AppData\Local\Turbine
2013-04-07 17:25:56 -------- d-----w- C:\Users\CIRO\AppData\Local\ApplicationHistory
2013-04-07 13:42:54 -------- d-----w- C:\Users\CIRO\AppData\Roaming\.technic
2013-04-07 12:48:00 -------- d-----w- C:\Users\CIRO\AppData\Roaming\.techniclauncher
2013-03-27 19:14:57 -------- d-----w- C:\Users\CIRO\AppData\Local\fontconfig
2013-03-27 19:14:56 -------- d-----w- C:\Users\CIRO\AppData\Local\gegl-0.2
2013-03-27 19:14:56 -------- d-----w- C:\Users\CIRO\.gimp-2.8
2013-03-27 19:13:19 -------- d-----w- C:\Program Files\GIMP 2
2013-03-24 19:20:31 -------- d-----w- C:\Windows\SysWow64\URTTEMP
2013-03-23 20:55:16 -------- d--h--w- C:\Windows\msdownld.tmp
2013-03-23 20:55:15 -------- d-----w- C:\Windows\SysWow64\directx
2013-03-23 20:54:51 466456 ----a-w- C:\Windows\System32\wrap_oal.dll
2013-03-23 20:54:51 122904 ----a-w- C:\Windows\System32\OpenAL32.dll
2013-03-23 20:54:51 -------- d-----w- C:\Program Files (x86)\OpenAL
2013-03-23 20:54:50 444952 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2013-03-23 20:54:50 109080 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2013-03-22 19:11:37 -------- d-----w- C:\Windows\en
2013-03-22 19:11:05 -------- d-----w- C:\Windows\it
2013-03-22 19:09:58 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-03-22 19:03:09 89944 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e23f34581ce272f04\DSETUP.dll
2013-03-22 19:03:09 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e23f34581ce272f04\DXSETUP.exe
2013-03-22 19:03:09 1801048 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e23f34581ce272f04\dsetup32.dll
2013-03-22 19:02:59 89944 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\de18fabb1ce272f02\DSETUP.dll
2013-03-22 19:02:59 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\de18fabb1ce272f02\DXSETUP.exe
2013-03-22 19:02:59 1801048 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\de18fabb1ce272f02\dsetup32.dll
2013-03-22 19:02:57 94040 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\db8b68791ce272f01\DSETUP.dll
2013-03-22 19:02:57 525656 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\db8b68791ce272f01\DXSETUP.exe
2013-03-22 19:02:57 1691480 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\db8b68791ce272f01\dsetup32.dll
2013-03-21 20:34:53 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-03-20 17:32:50 -------- d-----w- C:\Program Files\Avidemux 2.6
2013-03-19 19:49:37 -------- d-----w- C:\Users\CIRO\AppData\Local\IsolatedStorage
2013-03-19 18:59:22 -------- d-----w- C:\Users\CIRO\AppData\Roaming\BANDISOFT
2013-03-19 17:25:21 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2013-03-17 13:55:24 -------- d-----w- C:\Program Files (x86)\Aura
2013-03-16 22:02:52 -------- d-----w- C:\Program Files (x86)\Skin Pack
2013-03-16 22:02:50 -------- d-----w- C:\Windows\System32\MetroClock
2013-03-16 22:02:34 2755072 ----a-w- C:\Windows\SysWow64\themeui.dll.tmp
2013-03-16 22:02:33 2755072 ----a-w- C:\Windows\SysWow64\themeui.dll.backup
2013-03-16 22:02:33 245760 ----a-w- C:\Windows\SysWow64\uxtheme.dll.tmp
2013-03-16 22:02:33 245760 ----a-w- C:\Windows\SysWow64\uxtheme.dll.backup
2013-03-16 22:02:30 44544 ----a-w- C:\Windows\System32\themeservice.dll.backup
2013-03-16 22:02:30 2851840 ----a-w- C:\Windows\System32\themeui.dll.backup
2013-03-16 22:02:29 332288 ----a-w- C:\Windows\System32\uxtheme.dll.backup
2013-03-16 19:22:41 -------- d-----w- C:\Program Files (x86)\PoRTaL
.
==================== Find3M ====================
.
2013-04-14 07:55:51 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-04-14 07:55:51 691592 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-03-17 10:06:29 283032 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2013-03-17 10:06:29 283032 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2013-03-16 22:02:31 2851840 ----a-w- C:\Windows\System32\themeui.dll
2013-03-16 22:02:30 44544 ----a-w- C:\Windows\System32\themeservice.dll
2013-03-16 22:02:29 332288 ----a-w- C:\Windows\System32\uxtheme.dll
2013-03-16 20:19:36 283032 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2013-03-15 17:29:18 95648 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2013-03-15 17:29:17 861088 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll
2013-03-15 17:29:17 782240 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2013-03-11 23:10:56 282744 ------w- C:\Windows\System32\MpSigStub.exe
2013-03-07 17:11:30 108448 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll
2013-03-07 17:11:28 963488 ----a-w- C:\Windows\System32\deployJava1.dll
2013-03-07 17:11:28 1085344 ----a-w- C:\Windows\System32\npDeployJava1.dll
2013-03-06 23:33:21 70992 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2013-03-06 23:33:21 65336 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys
2013-03-06 23:33:21 178624 ----a-w- C:\Windows\System32\drivers\aswVmm.sys
2013-03-06 23:33:21 1025808 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2013-03-06 23:33:20 80816 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2013-03-06 23:32:51 41664 ----a-w- C:\Windows\avastSS.scr
2013-03-03 09:43:10 21712 ----a-w- C:\Windows\SysWow64\drivers\DrvAgent64.SYS
2013-02-21 10:30:16 1766912 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-02-21 10:29:39 2877440 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-02-21 10:29:37 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
2013-02-21 10:29:37 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
2013-02-21 10:15:07 2240512 ----a-w- C:\Windows\System32\wininet.dll
2013-02-21 10:14:09 3958784 ----a-w- C:\Windows\System32\jscript9.dll
2013-02-21 10:14:05 67072 ----a-w- C:\Windows\System32\iesetup.dll
2013-02-21 10:14:05 136704 ----a-w- C:\Windows\System32\iesysprep.dll
2013-02-19 18:54:49 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2013-02-19 12:01:03 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2013-02-19 11:42:14 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
2013-02-19 11:10:53 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
2013-02-19 10:51:18 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
2013-02-12 05:45:24 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll
2013-02-12 05:45:22 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll
2013-02-12 05:45:22 308736 ----a-w- C:\Windows\apppatch\AppPatch64\AcGenral.dll
2013-02-12 05:45:22 111104 ----a-w- C:\Windows\apppatch\AppPatch64\acspecfc.dll
2013-02-12 04:48:31 474112 ----a-w- C:\Windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- C:\Windows\apppatch\AcGenral.dll
2013-01-29 18:01:39 3130440 ----a-w- C:\Windows\SysWow64\pbsvc_blr.exe
2013-01-26 11:27:12 14848 ----a-w- C:\Windows\System32\slwga.dll
2013-01-26 11:27:12 13824 ----a-w- C:\Windows\SysWow64\slwga.dll
2013-01-26 11:27:11 419840 ----a-w- C:\Windows\System32\systemcpl.dll
2013-01-26 11:27:11 1008640 ----a-w- C:\Windows\System32\user32.dll
2013-01-26 11:27:10 833024 ----a-w- C:\Windows\SysWow64\user32.dll
2013-01-26 10:49:25 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2013-01-26 10:49:24 175616 ----a-w- C:\Windows\System32\msclmd.dll
.
============= FINISH: 20:08:48,59 ===============
Attach.txt.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume1
Install Date: 22/01/2013 16:56:41
System Uptime: 15/04/2013 19:57:25 (1 hours ago)
.
Motherboard: FOXCONN | | 2A8C
Processor: Pentium(R) Dual-Core CPU E5400 @ 2.70GHz | CPU 1 | 2700/800mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 454 GiB total, 288,632 GiB free.
D: is FIXED (NTFS) - 12 GiB total, 1,8 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP111: 12/04/2013 17:37:44 - Removed Burnout(TM) Paradise The Ultimate Box
RP112: 12/04/2013 17:46:27 - Removed Microsoft Expression Encoder 4 Screen Capture Codec
RP113: 12/04/2013 20:48:00 - DirectX installato
.
==== Hosts File Hijack ======================
.
Hosts: 91.216.163.105 linkz.it
Hosts: 91.216.163.105
www.linkz.itHosts: 91.216.163.105 facebook.com
Hosts: 91.216.163.105
www.facebook.comHosts: 91.216.163.105 wikipedia.org
Hosts: 91.216.163.105
www.wikipedia.orgHosts: 91.216.163.105 bing.com
Hosts: 91.216.163.105
www.bing.comHosts: 91.216.163.105 pinterest.com
Hosts: 91.216.163.105
www.pinterest.comHosts: 91.216.163.105 imdb.com
Hosts: 91.216.163.105
www.imdb.comHosts: 91.216.163.105 twitter.com
Hosts: 91.216.163.105
www.twitter.comHosts: 91.216.163.105 youtube.com
Hosts: 91.216.163.105
www.youtube.comHosts: 91.216.163.105 baidu.com
Hosts: 91.216.163.105
www.baidu.comHosts: 91.216.163.105 live.com
Hosts: 91.216.163.105
www.live.comHosts: 91.216.163.105 amazon.com
Hosts: 91.216.163.105
www.amazon.comHosts: 91.216.163.105 linkedin.com
Hosts: 91.216.163.105
www.linkedin.comHosts: 91.216.163.105 paypal.com
Hosts: 91.216.163.105
www.paypal.comHosts: 91.216.163.105 yahoo.com
Hosts: 91.216.163.105
www.yahoo.comHosts: 91.216.163.105 minecraft.com
Hosts: 91.216.163.105
www.minecraft.comHosts: 91.216.163.105 amazon.com
Hosts: 91.216.163.105
www.amazon.comHosts: 91.216.163.105 blogspot.com
Hosts: 91.216.163.105
www.blogspot.comHosts: 91.216.163.105 linkedin.com
Hosts: 91.216.163.105
www.linkedin.comHosts: 91.216.163.105 msn.com
Hosts: 91.216.163.105
www.msn.comHosts: 91.216.163.105 search.msn.com
Hosts: 91.216.163.105
www.search.msn.comHosts: 91.216.163.105 lycos.com
Hosts: 91.216.163.105
www.lycos.comHosts: 91.216.163.105 minecraftforum.net
Hosts: 91.216.163.105
www.minecraftforum.netHosts: 91.216.163.105 mojang.com
Hosts: 91.216.163.105
www.mojang.comHosts: 91.216.163.105 mediafire.com
Hosts: 91.216.163.105
www.mediafire.comHosts: 91.216.163.105 paypal.com
Hosts: 91.216.163.105
www.paypal.comHosts: 91.216.163.105 xvideos.com
Hosts: 91.216.163.105
www.xvideos.comHosts: 91.216.163.105 redtube.com
Hosts: 91.216.163.105
www.redtube.comHosts: 91.216.163.105 youporn.com
Hosts: 91.216.163.105
www.youporn.comHosts: 91.216.163.105 pornhub.com
Hosts: 91.216.163.105
www.pornhub.comHosts: 91.216.163.105 ebay.com
Hosts: 91.216.163.105
www.ebay.comHosts: 91.216.163.105 wordpress.com
Hosts: 91.216.163.105
www.wordpress.comHosts: 91.216.163.105 tumblr.com
Hosts: 91.216.163.105
www.tumblr.comHosts: 91.216.163.105 reddit.com
Hosts: 91.216.163.105
www.reddit.comHosts: 91.216.163.105 google.com
Hosts: 91.216.163.105
www.google.comHosts: 91.216.163.105 google.ae
Hosts: 91.216.163.105
www.google.aeHosts: 91.216.163.105 google.com.af
Hosts: 91.216.163.105
www.google.com.afHosts: 91.216.163.105 google.com.ag
Hosts: 91.216.163.105
www.google.com.agHosts: 91.216.163.105 google.off.ai
Hosts: 91.216.163.105
www.google.off.aiHosts: 91.216.163.105 google.am
Hosts: 91.216.163.105
www.google.amHosts: 91.216.163.105 google.com.ar
Hosts: 91.216.163.105
www.google.com.arHosts: 91.216.163.105 google.as
Hosts: 91.216.163.105
www.google.asHosts: 91.216.163.105 google.at
Hosts: 91.216.163.105
www.google.atHosts: 91.216.163.105 google.com.au
Hosts: 91.216.163.105
www.google.com.auHosts: 91.216.163.105 google.az
Hosts: 91.216.163.105
www.google.azHosts: 91.216.163.105 google.ba
Hosts: 91.216.163.105
www.google.baHosts: 91.216.163.105 google.com.bd
Hosts: 91.216.163.105
www.google.com.bdHosts: 91.216.163.105 google.be
Hosts: 91.216.163.105
www.google.beHosts: 91.216.163.105 google.bg
Hosts: 91.216.163.105
www.google.bgHosts: 91.216.163.105 google.bi
Hosts: 91.216.163.105
www.google.biHosts: 91.216.163.105 google.com.bo
Hosts: 91.216.163.105
www.google.com.boHosts: 91.216.163.105 google.com.br
Hosts: 91.216.163.105
www.google.com.brHosts: 91.216.163.105 google.bs
Hosts: 91.216.163.105
www.google.bsHosts: 91.216.163.105 google.co.bw
Hosts: 91.216.163.105
www.google.co.bwHosts: 91.216.163.105 google.com.bz
Hosts: 91.216.163.105
www.google.com.bzHosts: 91.216.163.105 google.ca
Hosts: 91.216.163.105
www.google.caHosts: 91.216.163.105 google.cd
Hosts: 91.216.163.105
www.google.cdHosts: 91.216.163.105 google.cg
Hosts: 91.216.163.105
www.google.cgHosts: 91.216.163.105 google.ch
Hosts: 91.216.163.105
www.google.chHosts: 91.216.163.105 google.ci
Hosts: 91.216.163.105
www.google.ciHosts: 91.216.163.105 google.co.ck
Hosts: 91.216.163.105
www.google.co.ckHosts: 91.216.163.105 google.cl
Hosts: 91.216.163.105
www.google.clHosts: 91.216.163.105 google.com.co
Hosts: 91.216.163.105
www.google.com.coHosts: 91.216.163.105 google.co.cr
Hosts: 91.216.163.105
www.google.co.crHosts: 91.216.163.105 google.com.cu
Hosts: 91.216.163.105
www.google.com.cuHosts: 91.216.163.105 google.de
Hosts: 91.216.163.105
www.google.deHosts: 91.216.163.105 google.dj
Hosts: 91.216.163.105
www.google.djHosts: 91.216.163.105 google.dk
Hosts: 91.216.163.105
www.google.dkHosts: 91.216.163.105 google.dm
Hosts: 91.216.163.105
www.google.dmHosts: 91.216.163.105 google.com.do
Hosts: 91.216.163.105
www.google.com.doHosts: 91.216.163.105 google.com.ec
Hosts: 91.216.163.105
www.google.com.ecHosts: 91.216.163.105 google.es
Hosts: 91.216.163.105
www.google.esHosts: 91.216.163.105 google.com.et
Hosts: 91.216.163.105
www.google.com.etHosts: 91.216.163.105 google.fi
Hosts: 91.216.163.105
www.google.fiHosts: 91.216.163.105 google.com.fj
Hosts: 91.216.163.105
www.google.com.fjHosts: 91.216.163.105 google.fm
Hosts: 91.216.163.105
www.google.fmHosts: 91.216.163.105 google.fr
Hosts: 91.216.163.105
www.google.frHosts: 91.216.163.105 google.gg
Hosts: 91.216.163.105
www.google.ggHosts: 91.216.163.105 google.comgi
Hosts: 91.216.163.105
www.google.comgiHosts: 91.216.163.105 google.gl
Hosts: 91.216.163.105
www.google.glHosts: 91.216.163.105 google.gm
Hosts: 91.216.163.105
www.google.gmHosts: 91.216.163.105 google.gr
Hosts: 91.216.163.105
www.google.grHosts: 91.216.163.105 google.com.gt
Hosts: 91.216.163.105
www.google.com.gtHosts: 91.216.163.105 google.com.hk
Hosts: 91.216.163.105
www.google.com.hkHosts: 91.216.163.105 google.hn
Hosts: 91.216.163.105
www.google.hnHosts: 91.216.163.105 google.hr
Hosts: 91.216.163.105
www.google.hrHosts: 91.216.163.105 google.co.hu
Hosts: 91.216.163.105
www.google.co.huHosts: 91.216.163.105 google.co.id
Hosts: 91.216.163.105
www.google.co.idHosts: 91.216.163.105 google.ie
Hosts: 91.216.163.105
www.google.ieHosts: 91.216.163.105 google.co.il
Hosts: 91.216.163.105
www.google.co.ilHosts: 91.216.163.105 google.co.im
Hosts: 91.216.163.105
www.google.co.imHosts: 91.216.163.105 google.co.in
Hosts: 91.216.163.105
www.google.co.inHosts: 91.216.163.105 google.is
Hosts: 91.216.163.105
www.google.isHosts: 91.216.163.105 google.it
Hosts: 91.216.163.105
www.google.itHosts: 91.216.163.105 google.co.je
Hosts: 91.216.163.105
www.google.co.jeHosts: 91.216.163.105 google.com.jm
Hosts: 91.216.163.105
www.google.com.jmHosts: 91.216.163.105 google.jo
Hosts: 91.216.163.105
www.google.joHosts: 91.216.163.105 google.co.jp
Hosts: 91.216.163.105
www.google.co.jpHosts: 91.216.163.105 google.co.ke
Hosts: 91.216.163.105
www.google.co.keHosts: 91.216.163.105 google.kg
Hosts: 91.216.163.105
www.google.kgHosts: 91.216.163.105 google.co.kr
Hosts: 91.216.163.105
www.google.co.krHosts: 91.216.163.105 google.kz
Hosts: 91.216.163.105
www.google.kzHosts: 91.216.163.105 google.li
Hosts: 91.216.163.105
www.google.liHosts: 91.216.163.105 google.lk
Hosts: 91.216.163.105
www.google.lkHosts: 91.216.163.105 google.co.ls
Hosts: 91.216.163.105
www.google.co.lsHosts: 91.216.163.105 google.lt
Hosts: 91.216.163.105
www.google.ltHosts: 91.216.163.105 google.lu
Hosts: 91.216.163.105
www.google.luHosts: 91.216.163.105 google.lv
Hosts: 91.216.163.105
www.google.lvHosts: 91.216.163.105 google.com.ly
Hosts: 91.216.163.105
www.google.com.lyHosts: 91.216.163.105 google.mn
Hosts: 91.216.163.105
www.google.mnHosts: 91.216.163.105 google.ms
Hosts: 91.216.163.105
www.google.msHosts: 91.216.163.105 google.com.mt
Hosts: 91.216.163.105
www.google.com.mtHosts: 91.216.163.105 google.mu
Hosts: 91.216.163.105
www.google.muHosts: 91.216.163.105 google.mw
Hosts: 91.216.163.105
www.google.mwHosts: 91.216.163.105 google.com.mx
Hosts: 91.216.163.105
www.google.com.mxHosts: 91.216.163.105 google.com.my
Hosts: 91.216.163.105
www.google.com.myHosts: 91.216.163.105 google.com.na
Hosts: 91.216.163.105
www.google.com.naHosts: 91.216.163.105 google.com.nf
Hosts: 91.216.163.105
www.google.com.nfHosts: 91.216.163.105 google.com.ni
Hosts: 91.216.163.105
www.google.com.niHosts: 91.216.163.105 google.nl
Hosts: 91.216.163.105
www.google.nlHosts: 91.216.163.105 google.no
Hosts: 91.216.163.105
www.google.noHosts: 91.216.163.105 google.com.np
Hosts: 91.216.163.105
www.google.com.npHosts: 91.216.163.105 google.nr
Hosts: 91.216.163.105
www.google.nrHosts: 91.216.163.105 google.nu
Hosts: 91.216.163.105
www.google.nuHosts: 91.216.163.105 google.co.nz
Hosts: 91.216.163.105
www.google.co.nzHosts: 91.216.163.105 google.com.om
Hosts: 91.216.163.105
www.google.com.omHosts: 91.216.163.105 google.com.pa
Hosts: 91.216.163.105
www.google.com.paHosts: 91.216.163.105 google.com.pe
Hosts: 91.216.163.105
www.google.com.peHosts: 91.216.163.105 google.com.ph
Hosts: 91.216.163.105
www.google.com.phHosts: 91.216.163.105 google.com.pk
Hosts: 91.216.163.105
www.google.com.pkHosts: 91.216.163.105 google.pl
Hosts: 91.216.163.105
www.google.plHosts: 91.216.163.105 google.pn
Hosts: 91.216.163.105
www.google.pnHosts: 91.216.163.105 google.com.pr
Hosts: 91.216.163.105
www.google.com.prHosts: 91.216.163.105 google.pt
Hosts: 91.216.163.105
www.google.ptHosts: 91.216.163.105 google.com.py
Hosts: 91.216.163.105
www.google.com.pyHosts: 91.216.163.105 google.ro
Hosts: 91.216.163.105
www.google.roHosts: 91.216.163.105 *Blocked Russian URL*
Hosts: 91.216.163.105 *Blocked Russian URL*
Hosts: 91.216.163.105 google.rw
Hosts: 91.216.163.105
www.google.rwHosts: 91.216.163.105 google.com.sa
Hosts: 91.216.163.105
www.google.com.saHosts: 91.216.163.105 google.com.sb
Hosts: 91.216.163.105
www.google.com.sbHosts: 91.216.163.105 google.sc
Hosts: 91.216.163.105
www.google.scHosts: 91.216.163.105 google.se
Hosts: 91.216.163.105
www.google.seHosts: 91.216.163.105 google.com.sg
Hosts: 91.216.163.105
www.google.com.sgHosts: 91.216.163.105 google.sh
Hosts: 91.216.163.105
www.google.shHosts: 91.216.163.105 google.sk
Hosts: 91.216.163.105
www.google.skHosts: 91.216.163.105 google.sn
Hosts: 91.216.163.105
www.google.snHosts: 91.216.163.105 google.sm
Hosts: 91.216.163.105
www.google.smHosts: 91.216.163.105 google.com.sv
Hosts: 91.216.163.105
www.google.com.svHosts: 91.216.163.105 google.co.th
Hosts: 91.216.163.105
www.google.co.thHosts: 91.216.163.105 google.com.tj
Hosts: 91.216.163.105
www.google.com.tjHosts: 91.216.163.105 google.tm
Hosts: 91.216.163.105
www.google.tmHosts: 91.216.163.105 google.to
Hosts: 91.216.163.105
www.google.toHosts: 91.216.163.105 google.tp
Hosts: 91.216.163.105
www.google.tpHosts: 91.216.163.105 google.com.tr
Hosts: 91.216.163.105
www.google.com.trHosts: 91.216.163.105 google.tt
Hosts: 91.216.163.105
www.google.ttHosts: 91.216.163.105 google.com.tw
Hosts: 91.216.163.105
www.google.com.twHosts: 91.216.163.105 google.com.ua
Hosts: 91.216.163.105
www.google.com.uaHosts: 91.216.163.105 google.co.ug
Hosts: 91.216.163.105
www.google.co.ugHosts: 91.216.163.105 google.co.uk
Hosts: 91.216.163.105
www.google.co.ukHosts: 91.216.163.105 google.com.uy
Hosts: 91.216.163.105
www.google.com.uyHosts: 91.216.163.105 google.uz
Hosts: 91.216.163.105
www.google.uzHosts: 91.216.163.105 google.com.vc
Hosts: 91.216.163.105
www.google.com.vcHosts: 91.216.163.105 google.co.ve
Hosts: 91.216.163.105
www.google.co.veHosts: 91.216.163.105 google.vg
Hosts: 91.216.163.105
www.google.vgHosts: 91.216.163.105 google.co.vi
Hosts: 91.216.163.105
www.google.co.viHosts: 91.216.163.105 google.com.vn
Hosts: 91.216.163.105
www.google.com.vnHosts: 91.216.163.105 google.vu
Hosts: 91.216.163.105
www.google.vuHosts: 91.216.163.105 google.ws
Hosts: 91.216.163.105
www.google.wsHosts: 91.216.163.105 google.co.za
Hosts: 91.216.163.105
www.google.co.zaHosts: 91.216.163.105 google.co.zm
Hosts: 91.216.163.105
www.google.co.zm.
==== Installed Programs ======================
.
Adobe Acrobat X Pro - Italiano, Español, Nederlands, Português
Adobe After Effects CS6
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader XI (11.0.02) - Italiano
AirMech
AMD APP SDK Runtime
AMD Catalyst Install Manager
Arctic Combat
µTorrent
Audacity 2.0.3
avast! Free Antivirus
Avidemux 2.6
Blacklight: Retribution
Camtasia Studio 8
Catalyst Control Center
Catalyst Control Center - Branding
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
Catalyst Control Center Profiles Desktop
ccc-utility64
CCC Help Italian
CCleaner
D3DX10
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
Dropbox
Dxtory version 2.0.120
Euro Truck Simulator 2
Fraps (remove only)
Free Studio version 2013
GIMP 2.8.4
Google Chrome
Google Update Helper
GTA: San Andreas RIP PT-BR by TemDono - #GTABrasil - BrasNET
HydraVision
In Verbis Virtus
Intel(R) Graphics Media Accelerator Driver
IZArc 4.1.7
Java 7 Update 17
Java 7 Update 17 (64-bit)
Java Auto Updater
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft .NET Framework 1.1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Application Error Reporting
Microsoft Office 2010 Language Pack Service Pack 1 (SP1)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010
Microsoft Office Access MUI (Italian) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Excel MUI (Italian) 2010
Microsoft Office Groove MUI (Italian) 2010
Microsoft Office InfoPath MUI (Italian) 2010
Microsoft Office Language Pack 2010 - Italian/Italiano
Microsoft Office O MUI (Italian) 2010
Microsoft Office Office 32-bit Components 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office OneNote MUI (Italian) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office Outlook MUI (Italian) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office PowerPoint MUI (Italian) 2010
Microsoft Office Professional 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (German) 2010
Microsoft Office Proof (Italian) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Proofing (Italian) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Publisher MUI (Italian) 2010
Microsoft Office ScreenTip Language 2010 - Italiano
Microsoft Office Shared 32-bit MUI (English) 2010
Microsoft Office Shared 32-bit MUI (Italian) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared MUI (Italian) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office SharePoint Designer MUI (Italian) 2010
Microsoft Office Single Image 2010
Microsoft Office Word MUI (English) 2010
Microsoft Office Word MUI (Italian) 2010
Microsoft Office X MUI (Italian) 2010
Microsoft SharePoint Designer 2010 Service Pack 1 (SP1)
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft XNA Framework Redistributable 4.0
Movie Maker
Mozilla Firefox 20.0.1 (x86 it)
Mozilla Maintenance Service
MSVCRT
MSVCRT Redists
MSVCRT110
MSVCRT110_amd64
Notepad++
NVIDIA PhysX
OpenAL
PackBit Codec version 1.0.0.1Beta
Photo Common
Photo Gallery
PunkBuster Services
Raccolta foto
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft Excel 2010 (KB2597126) 64-Bit Edition
Security Update for Microsoft Filter Pack 2.0 (KB2553501) 64-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2760406) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553091)
Security Update for Microsoft Office 2010 (KB2553096)
Security Update for Microsoft Office 2010 (KB2553371) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553447) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2589320) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2598243) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2687501) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2687510) 64-Bit Edition
Security Update for Microsoft OneNote 2010 (KB2760600) 64-Bit Edition
Security Update for Microsoft Visio Viewer 2010 (KB2687505) 64-Bit Edition
Security Update for Microsoft Word 2010 (KB2760410) 64-Bit Edition
Skype™ 6.3
Spiral Knights
Star Conflict
Steam
Team Fortress 2
Tenda Wireless LAN Card
Terraria v1.1.2
Unity Web Player
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553378) 64-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2598242) 64-Bit Edition
Update for Microsoft Office 2010 (KB2687509) 64-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition
Update for Microsoft Office 2010 (KB2767886) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2597090) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 64-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2598240) 64-Bit Edition
Update for Microsoft SharePoint Designer 2010 (KB2553459) 64-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 64-Bit Edition
VC80CRTRedist - 8.0.50727.6195
Vegas Pro 12.0 (64-bit)
VLC media player 2.0.5
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
WinDS PRO 2013.4.5
.
==== End Of File ===========================