files to delete:
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache24593.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache24594.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache33855.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache33854.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache33852.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache33853.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache37473.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache37474.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache64392.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache64391.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\97.tmp
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache6653.tmp
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache6652.tmp
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache6651.tmp
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache57553.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache57552.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache57551.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache57549.tm p
C:\DOCUME~1\OFFICE\IMPOST~1\Temp\jar_cache57550.tm p
C:\WINDOWS\system32\drivers\TDSSmqlt.sys
C:\Programmi\File comuni\Microsoft Shared\lpt6.exe
C:\Documents and Settings\OFFICE\Impostazioni locali\Dati applicazioni\soose_navps.dat
C:\Documents and Settings\OFFICE\Impostazioni locali\Dati applicazioni\soose.dat
C:\Documents and Settings\OFFICE\Impostazioni locali\Dati applicazioni\soose_nav.dat
C:\Documents and Settings\OFFICE\Impostazioni locali\Dati applicazioni\soose.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spool\drivers\w32x86\E_S4I0R2. EXE
C:\WINDOWS\system32\kaboom.dll
files to move:
C:\Programmi\Adobe\Photoshop Album Starter Edition\3.0\Apps\bak\apdproxy.exe | C:\Programmi\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Programmi\Java\jre1.6.0_01\bin\bak\jusched.exe | C:\Programmi\Java\jre1.6.0_01\bin\jusched.exe
C:\Programmi\File comuni\Real\Update_OB\bak\realsched.exe | C:\Programmi\File comuni\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\bak\ctfmon.exe | C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\E_S 4I0R2.EXE | C:\WINDOWS\system32\spool\drivers\w32x86\E_S4I0R2. EXE
registry keys to delete:
HKLM\system\currentcontrolset\services\TDSSserv.sy s
HKLM\system\controlset001\services\TDSSserv.sys
HKLM\system\controlset002\services\TDSSserv.sys
HKLM\system\currentcontrolset\emun\root\legacy_TDS Sserv.sys
HKLM\system\controlset001\emun\root\legacy_TDSSser v.sys
HKLM\system\controlset002\emun\root\legacy_TDSSser v.sys
HKLM\system\currentcontrolset\services\UpdWlw
HKLM\system\controlset001\services\UpdWlw
HKLM\system\controlset002\services\UpdWlw
HKLM\system\currentcontrolset\emun\root\legacy_Upd Wlw
HKLM\system\controlset001\emun\root\legacy_UpdWlw
HKLM\system\controlset002\emun\root\legacy_UpdWlw
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{4D64DAE1-DF1E-45E8-9372-84CA698335FA}
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\Browser Helper Objects\{EB870508-E2B7-4169-8120-760F69703776}