Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

MSN Opzioni
Maggio
Inviato: Saturday, November 30, 2013 8:03:06 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
Da qualche giorno, quando chiudo e ripristino firefox, nonostante i parametri impostati, mi appare sempre la prima pagina "http://it.msn.com/?pc=UP97&ocid=UP97DHP". Non mi riprende la cronologia delle pagine chiuse ma una nuava pagina. Ho cercato di intervenire sul registro di sistema ma evidentemente non so dove mettere le mani.
Potete aiutarmi?
Grazie
Sponsor
Inviato: Saturday, November 30, 2013 8:03:06 PM

 
wolfestein
Inviato: Sunday, December 01, 2013 12:47:36 AM

Rank: AiutAmico

Iscritto dal : 2/15/2009
Posts: 15,948
Scarica ed installa ADWCleaner,clicca su Scansione,finita la scansione clicca su Elimina.
Se non lo hai scarica installa e aggiorna Malwarebytes fai una scansione completa e dopo carica il log che rilascia insieme a quello di ADWCleaner suWikisend metti i link nella sezione Sicurezza virus ponendo il tuo problema.
Maggio
Inviato: Tuesday, December 03, 2013 9:29:35 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
wolfestein ha scritto:
Scarica ed installa ADWCleaner,clicca su Scansione,finita la scansione clicca su Elimina.
Se non lo hai scarica installa e aggiorna Malwarebytes fai una scansione completa e dopo carica il log che rilascia insieme a quello di ADWCleaner suWikisend metti i link nella sezione Sicurezza virus ponendo il tuo problema.


Grazie per la risposta
Non riesco a caricare il prg. ADWCleaner. é come se già lo avessi ma non l'ho mai conosciuto.
Ho provato a fare una scansione con l'antivirus , mi ha rilevato qualcosa ma che cmq non ha nulla a che fare il mio problema.
wolfestein
Inviato: Tuesday, December 03, 2013 10:54:14 PM

Rank: AiutAmico

Iscritto dal : 2/15/2009
Posts: 15,948
Maggio ha scritto:
Ho provato a fare una scansione con l'antivirus , mi ha rilevato qualcosa ma che cmq non ha nulla a che fare il mio problema.

N.B.MSN sono due anni che è stato abbandonato da Microsoft.
Maggio
Inviato: Wednesday, December 04, 2013 12:30:34 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
wolfestein ha scritto:
Maggio ha scritto:
Ho provato a fare una scansione con l'antivirus , mi ha rilevato qualcosa ma che cmq non ha nulla a che fare il mio problema.

N.B.MSN sono due anni che è stato abbandonato da Microsoft.



Visto e considerato che l'ho usato molto di rado e non sono interessato a tenerlo
Lo toglierò dai programmi con la speranza che sparisca anche la sua invasività e rottura di ....
Grazie
cbbusto
Inviato: Wednesday, December 04, 2013 6:11:03 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Intervenire nel registro se non sai dove mettere le mani....operazione da non fare.
Rimuovi MSN poi apri firefox e modifica la pagina iniziale mettendo la tua preferita, vai in Strumenti componenti aggiuntivi ed elimina ciò che riguarda MSN poi in gestione motori di ricerca controlla che non ci sia qualche motore sconosciuto, se trovi anche bing, eliminalo.
Per ADW fai così:
Scarica Adwcleaner sul desktop:
http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner
Avvialo e clicca sul pulsante "Scan” finita la scansione clicca su Clean , conferma con OK le varie finestre che ti compariranno.
Il pc si riavvierà, e uscirà il log col Blocco Note.
Copialo e postalo qui.

Se non risolvi ti conviene ripristinare firefox, clic su Aiuto>Risoluzione dei problemi> clic su Ripristina Firefox.
Non so se già lo hai fatto perchè hai scritto: quando chiudo e ripristino Firefox ??? forse volevi dire RIAPRO ?
Fai sapere, ciao
Maggio
Inviato: Wednesday, December 04, 2013 10:19:03 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
cbbusto ha scritto:
Intervenire nel registro se non sai dove mettere le mani....operazione da non fare.
Rimuovi MSN poi apri firefox e modifica la pagina iniziale mettendo la tua preferita, vai in Strumenti componenti aggiuntivi ed elimina ciò che riguarda MSN poi in gestione motori di ricerca controlla che non ci sia qualche motore sconosciuto, se trovi anche bing, eliminalo.
Per ADW fai così:
Scarica Adwcleaner sul desktop:
http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner
Avvialo e clicca sul pulsante "Scan” finita la scansione clicca su Clean , conferma con OK le varie finestre che ti compariranno.
Il pc si riavvierà, e uscirà il log col Blocco Note.
Copialo e postalo qui.

Se non risolvi ti conviene ripristinare firefox, clic su Aiuto>Risoluzione dei problemi> clic su Ripristina Firefox.
Non so se già lo hai fatto perchè hai scritto: quando chiudo e ripristino Firefox ??? forse volevi dire RIAPRO ?
Fai sapere, ciao


Perfetto
Per il ripristino avdopo che avevo cambiato pagina iniziale e stabilito di riaprire le finetre chiuse
con il sistema che mi hai suggerito ha finzionato e ti posto il log:

# AdwCleaner v3.014 - Report created 04/12/2013 at 22:07:52
# Updated 01/12/2013 by Xplode
# Operating System : Windows 7 Enterprise Service Pack 1 (32 bits)
# Username : Antonio - ANTONIO-PC
# Running from : C:\Users\Antonio\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : BackupStack
[#] Service Deleted : Update BuzzSearch
[#] Service Deleted : Util BuzzSearch
Service Deleted : vToolbarUpdater17.1.2

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Anti-phishing Domain Advisor
Folder Deleted : C:\ProgramData\AVG Secure Search
Folder Deleted : C:\ProgramData\blekko toolbars
Folder Deleted : C:\ProgramData\IBUpdaterService
Folder Deleted : C:\ProgramData\Systweak
Folder Deleted : C:\ProgramData\Tarma Installer
Folder Deleted : C:\ProgramData\Uniblue\DriverScanner
Folder Deleted : C:\Program Files\Amazon Browser Bar
Folder Deleted : C:\Program Files\Ask.com
Folder Deleted : C:\Program Files\AVG Secure Search
Folder Deleted : C:\Program Files\BrowseToSave
Folder Deleted : C:\Program Files\BuzzSearch
Folder Deleted : C:\Program Files\ChatZum Toolbar
Folder Deleted : C:\Program Files\HomeTab
Folder Deleted : C:\Program Files\IObit Apps Toolbar
[!] Folder Deleted : C:\Program Files\MyPC Backup
Folder Deleted : C:\Program Files\RegClean Pro
Folder Deleted : C:\Program Files\RewardsArcade
Folder Deleted : C:\Program Files\Toolbar Cleaner
Folder Deleted : C:\Program Files\Windows jZip Toolbar
Folder Deleted : C:\Program Files\Pricora 4.1
Folder Deleted : C:\Program Files\MyAshampoo
Folder Deleted : C:\Program Files\WhiteSmoke_US
Folder Deleted : C:\Program Files\Common Files\AVG Secure Search
Folder Deleted : C:\Program Files\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Program Files\Common Files\Spigot
Folder Deleted : C:\Windows\system32\Browser Manager
Folder Deleted : C:\Users\Antonio\Qtrax
Folder Deleted : C:\Users\Antonio\AppData\Local\AVG Secure Search
Folder Deleted : C:\Users\Antonio\AppData\Local\RewardsArcade
Folder Deleted : C:\Users\Antonio\AppData\Local\SoftwareUpdater
Folder Deleted : C:\Users\Antonio\AppData\Local\SwvUpdater
Folder Deleted : C:\Users\Antonio\AppData\Local\toolbarcleaner
Folder Deleted : C:\Users\Antonio\AppData\Local\Wajam
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\AVG Secure Search
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\HomeTab
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\jziptoolbar
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\Search Settings
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\SimplyTech
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\MyAshampoo
Folder Deleted : C:\Users\Antonio\AppData\LocalLow\WhiteSmoke_US
Folder Deleted : C:\Users\Antonio\AppData\Roaming\CheckPoint\ZoneAlarm LTD Toolbar
Folder Deleted : C:\Users\Antonio\AppData\Roaming\dvdvideosoftiehelpers
Folder Deleted : C:\Users\Antonio\AppData\Roaming\eIntaller
Folder Deleted : C:\Users\Antonio\AppData\Roaming\HomeTab
Folder Deleted : C:\Users\Antonio\AppData\Roaming\NCdownloader
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Nosibay
Folder Deleted : C:\Users\Antonio\AppData\Roaming\OfferBox
Folder Deleted : C:\Users\Antonio\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Antonio\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\Antonio\AppData\Roaming\SimplyTech
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Qtrax
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\Extensions\{AD9A41D2-9A49-4FA6-A79E-71A0785364C8}
Folder Deleted : C:\Program Files\Mozilla Firefox\Extensions\ffxtlbr@babylon.com
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\Extensions\plugin@getwebcake.com
Folder Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\Extensions\43229a19-0941-4050-a87a-

29deebc1c867@801440a9-d246-4c46-8820-08d0cec937e1.com
Folder Deleted : C:\Users\Antonio\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
Folder Deleted : C:\Users\Antonio\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdhffggcfjnkigeciffmipblemhphbjl
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\Extensions\wtxpcom@mybrowserbar.com
File Deleted : C:\END
File Deleted : C:\Windows\system32\roboot.exe
File Deleted : C:\Users\Antonio\AppData\Local\mysearchdial-speeddial.crx
File Deleted : C:\Users\Antonio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Qtrax Player.lnk
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\.autoreg
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\bProtector_extensions.rdf
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\invalidprefs.js
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\searchplugins\avg-secure-search.xml
File Deleted : C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\Babylon.xml
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\searchplugins\babylon1.xml
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\searchplugins\delta.xml
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\searchplugins\mngr.xml
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\searchplugins\Mysearchdial.xml
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\searchplugins\Web Search.xml
File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\Web Search.xml
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\user.js
File Deleted : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\user.js
File Deleted : C:\Users\Antonio\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-

extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage
File Deleted : C:\Windows\Tasks\AmiUpdXp.job
File Deleted : C:\Windows\System32\Tasks\AmiUpdXp
File Deleted : C:\Windows\System32\Tasks\Browser Updater
File Deleted : C:\Windows\System32\Tasks\LaunchApp
File Deleted : C:\Windows\Tasks\Pricora 4.1-firefoxinstaller.job
File Deleted : C:\Windows\System32\Tasks\Pricora 4.1-firefoxinstaller
File Deleted : C:\Windows\Tasks\Pricora 4.1-updater.job
File Deleted : C:\Windows\System32\Tasks\Pricora 4.1-updater

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Deleted : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Key Deleted : HKCU\Software\Google\Chrome\Extensions\bdhffggcfjnkigeciffmipblemhphbjl
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bdhffggcfjnkigeciffmipblemhphbjl
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7D73110B-99E4-4734-A8E0-94604FCFBC63}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7D73110B-99E4-4734-A8E0-94604FCFBC63}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{863C4CAE-6523-4784-8A3C-8E308C3497FE}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F20BBA69-5C88-4D9D-977D-C8D662487267}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F20BBA69-5C88-4D9D-977D-C8D662487267}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D20571BA-3499-453D-BEE2-5914F20B016B}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D20571BA-3499-453D-BEE2-5914F20B016B}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1D43F67F-AAB9-417B-B85A-CE47559AF8AC}
[#] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D43F67F-AAB9-417B-B85A-CE47559AF8AC}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\HomeTab.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\priam_bho.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\PriceGongIE.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\RewardsArcade.BHO
Key Deleted : HKLM\SOFTWARE\Classes\RewardsArcade.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\RewardsArcade.FBApi
Key Deleted : HKLM\SOFTWARE\Classes\RewardsArcade.FBApi.1
Key Deleted : HKLM\SOFTWARE\Classes\RewardsArcade.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\RewardsArcade.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd
Key Deleted : HKLM\SOFTWARE\Classes\Updater.AmiUpd.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\Classes\wtb.Band
Key Deleted : HKLM\SOFTWARE\Classes\wtb.Band.1
Key Deleted : HKLM\SOFTWARE\Classes\wtb.NotificationSource
Key Deleted : HKLM\SOFTWARE\Classes\wtb.NotificationSource.1
Key Deleted : HKLM\SOFTWARE\Classes\wtb.SourceSinkImpl
Key Deleted : HKLM\SOFTWARE\Classes\wtb.SourceSinkImpl.1
Key Deleted : HKLM\SOFTWARE\Classes\wtb.ToolbarInfo
Key Deleted : HKLM\SOFTWARE\Classes\wtb.ToolbarInfo.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SearchSettings
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\jZip_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\jZip_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyAshampooAutoUpdateHelper_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\offerbox_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\offerbox_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\OfferBoxhxxpProxy_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\OfferBoxhxxpProxy_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Softonic_chr_1-8-8-11_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Softonic_chr_1-8-8-11_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Anti-phishing Domain Advisor]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@checkpoint.com/FFApi
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SP_48c708f2
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0037912.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0037912.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0037912.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0037912.Sandbox.1
Value Deleted : HKLM\SOFTWARE\mozilla\Firefox\Extensions [crossriderapp498@crossrider.com]
Key Deleted : HKCU\Software\ae8cdae63dbd17
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_ashampoo-clipfinder(1)_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_ashampoo-clipfinder(1)_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_ashampoo-clipfinder_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_ashampoo-clipfinder_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_blurity_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_blurity_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_bookdb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_bookdb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_booktome_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_booktome_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_browserpassworddecryptor_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_browserpassworddecryptor_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_fileminimizer-pictures[1]_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_fileminimizer-pictures[1]_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_free-youtube-download_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_free-youtube-download_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_funny-photo-maker_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_funny-photo-maker_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_geogebra_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_geogebra_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_gimp[1]_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_gimp[1]_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_manybooks_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_microsoft-silverlight_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_microsoft-silverlight_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_okmap[1]_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_okmap[1]_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_oovoo_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_oovoo_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_pdfzilla(1)_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_pdfzilla(1)_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_pdfzilla_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_pdfzilla_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_speedcrunch_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_speedcrunch_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_topocr_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_topocr_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_unshake_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_unshake_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_vlc-media-player_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_vlc-media-player_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_windows-media-player-plus_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_windows-media-player-plus_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3FC27B34-0C19-49DA-875E-1875DDD4A6B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25514C64-8321-494E-BD3E-3DBAB3F8CEBA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{597A9974-8CB0-4F41-B61F-ED065738A397}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5CF5A690-C8F4-488E-9D20-F21AEF602D41}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCE665DD-F6DD-4808-968E-EAEC971F70EF}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E3CB8E43-F1A0-472F-9663-7D280B3219B2}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110311791112}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322792212}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6427058B-217C-4C7F-A6CE-C7934C0BDCEB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D0EC4142-5808-41D2-A4DC-6081CF1A9693}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FFB96CC1-7EB3-449D-B827-DB661701C6BB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550355795512}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660366796612}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{396ECD31-EDF7-489F-BDA1-83DBA4C36E81}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{60BE6B2E-F2F5-4404-AA1E-4381D4A6EEA2}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440344794412}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{597A9974-8CB0-4F41-B61F-ED065738A397}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CF5A690-C8F4-488E-9D20-F21AEF602D41}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CCE665DD-F6DD-4808-968E-EAEC971F70EF}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311791112}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{597A9974-8CB0-4F41-B61F-ED065738A397}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{67550291-98CD-411B-8413-F3590CAE6864}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CCE665DD-F6DD-4808-968E-EAEC971F70EF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E3CB8E43-F1A0-472F-9663-7D280B3219B2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311791112}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1E48C56F-08CD-43AA-A6EF-C1EC891551AB}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{41C4AA37-1DDD-4345-B8DC-734E4B38414D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{597A9974-8CB0-4F41-B61F-ED065738A397}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{64182481-4F71-486B-A045-B233BD0DA8FC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DB4E9724-F518-4DFD-9C7C-78B52103CAB9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CCE665DD-F6DD-4808-968E-EAEC971F70EF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E3CB8E43-F1A0-472F-9663-7D280B3219B2}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311791112}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{67550291-98CD-411B-8413-F3590CAE6864}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E3CB8E43-F1A0-472F-9663-7D280B3219B2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311791112}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E48C56F-08CD-43AA-A6EF-C1EC891551AB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29b8b0b8-bb54-498d-a498-5a593362f1f1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67bb5ef2-e489-4d06-b8ae-52d344ef1690}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9bd338eb-f8b1-4cd7-854e-138aebb45e02}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ad1619c9-e59f-4a94-8248-34974dd706d8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{c0f080a6-2062-4ee1-b265-9d7f318ef8f2}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ABADAFB0-C572-4740-9390-2C89CBF312D5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6E50B37-D283-4CC1-B8DF-78657DB8468B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8D95C6D-6DA0-435D-BBB1-65DF8223A56E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70F9A50A-3851-43E7-8F8B-9FE17516DE61}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2102}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CCE665DD-F6DD-4808-968E-EAEC971F70EF}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{CCE665DD-F6DD-4808-968E-EAEC971F70EF}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{0BDA0769-FD72-49F4-9266-E1FB004F4D8F}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{A1E75A0E-4397-4BA8-BB50-E19FB66890F4}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{CCE665DD-F6DD-4808-968E-EAEC971F70EF}]
Key Deleted : HKCU\Software\Alexa Internet
Key Deleted : HKCU\Software\AVG Secure Search
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\BuzzSearch
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\delta LTD
Key Deleted : HKCU\Software\distromatic
Key Deleted : HKCU\Software\HomeTab
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\Iminent
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\installedbrowserextensions
Key Deleted : HKCU\Software\mysearchdial.com
Key Deleted : HKCU\Software\Nosibay
Key Deleted : HKCU\Software\Offerbox
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Wajam
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\AppDataLow\SProtector
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKCU\Software\AppDataLow\Software\MyAshampoo\toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\RewardsArcade
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKCU\Software\AppDataLow\Software\simplytech
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\Pricora 4.1
Key Deleted : HKCU\Software\AppDataLow\Software\MyAshampoo
Key Deleted : HKCU\Software\AppDataLow\Software\WhiteSmoke_US
Key Deleted : HKLM\Software\APN
Key Deleted : HKLM\Software\AskToolbar
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\BuzzSearch
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\Software\MyAshampoo\toolbar
Key Deleted : HKLM\Software\Offerbox
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKLM\Software\SoftwareUpdater
Key Deleted : HKLM\Software\SP Global
Key Deleted : HKLM\Software\SProtector
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Tarma Installer
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\Wajam
Key Deleted : HKLM\Software\Pricora 4.1
Key Deleted : HKLM\Software\MyAshampoo
Key Deleted : HKLM\Software\WhiteSmoke_US
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\RewardsArcade
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Anti-phishing Domain Advisor
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BuzzSearch
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Pricora 4.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyAshampoo Toolbar
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00E944CB89111313EAF35A0553F547F9
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F55AF3F4049ED3FA6EA6F88E414E24
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E4BF4B11615E03C97732FD581AB607
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CE3DDAB2D152683FBCEB4866BCD2B0F
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF6CE16AFEA5C9A39B766468A8B35C21
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB1E44269B58F433A8C8E671E37CFDCF

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16736

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [(Default)]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]

-\\ Mozilla Firefox v25.0.1 (it)

[ File : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\111fwcao.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");
Line Deleted : user_pref("browser.search.order.1", "Mysearchdial");
Line Deleted : user_pref("browser.search.selectedEngine", "Mysearchdial");
Line Deleted : user_pref("extensions.BabylonToolbar.admin", false);
Line Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst");
Line Deleted : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
Line Deleted : user_pref("extensions.BabylonToolbar.autoRvrt", "false");
Line Deleted : user_pref("extensions.BabylonToolbar.dfltLng", "en");
Line Deleted : user_pref("extensions.BabylonToolbar.excTlbr", false);
Line Deleted : user_pref("extensions.BabylonToolbar.id", "a8b3b1af00000000000000248c651a9f");
Line Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15679");
Line Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst");
Line Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
Line Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
Line Deleted : user_pref("extensions.BabylonToolbar.rvrt", "false");
Line Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "base");
Line Deleted : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?

babsrc=TB_def&mntrId=a8b3b1af00000000000000248c651a9f&q=");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.8.4.9");
Line Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.8.4.9");
Line Deleted : user_pref("extensions.BabylonToolbar_i.babExt", "");
Line Deleted : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=111304&tt=4912_5");
Line Deleted : user_pref("extensions.BabylonToolbar_i.excTlbr", false);
Line Deleted : user_pref("extensions.BabylonToolbar_i.newTab", false);
Line Deleted : user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
Line Deleted : user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
Line Deleted : user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.4.918:18:26");
Line Deleted : user_pref("extensions.Softonic.admin", false);
Line Deleted : user_pref("extensions.Softonic.aflt", "SD");
Line Deleted : user_pref("extensions.Softonic.appId", "{7ABBFE1C-E485-44AA-8F36-353751B4124D}");
Line Deleted : user_pref("extensions.Softonic.autoRvrt", "false");
Line Deleted : user_pref("extensions.Softonic.dfltLng", "it");
Line Deleted : user_pref("extensions.Softonic.dfltSrch", true);
Line Deleted : user_pref("extensions.Softonic.excTlbr", false);
Line Deleted : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/MOY00010/tb_v1?SearchSource=13&cc=");
Line Deleted : user_pref("extensions.Softonic.hpOld0", "hxxp://search.chatzum.com/?orig=HP&affid=62&cztbid=779009509");
Line Deleted : user_pref("extensions.Softonic.id", "a8b3b1af00000000000000248c651a9f");
Line Deleted : user_pref("extensions.Softonic.instlDay", "15778");
Line Deleted : user_pref("extensions.Softonic.instlRef", "MOY00010");
Line Deleted : user_pref("extensions.Softonic.kw_url", "hxxp://search.softonic.com/MOY00010/tb_v1?SearchSource=2&cc=&q=");
Line Deleted : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/MOY00010/tb_v1?SearchSource=15&cc=");
Line Deleted : user_pref("extensions.Softonic.prdct", "Softonic");
Line Deleted : user_pref("extensions.Softonic.prtnrId", "softonic");
Line Deleted : user_pref("extensions.Softonic.rvrt", "true");
Line Deleted : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");
Line Deleted : user_pref("extensions.Softonic.tlbrId", "BASEirobinhoodActive");
Line Deleted : user_pref("extensions.Softonic.tlbrSrchUrl", "hxxp://search.softonic.com/MOY00010/tb_v1?SearchSource=1&cc=&q=");
Line Deleted : user_pref("extensions.Softonic.vrsn", "1.8.8.11");
Line Deleted : user_pref("extensions.Softonic.vrsni", "1.8.8.11");
Line Deleted : user_pref("extensions.Softonic_i.dnsErr", true);
Line Deleted : user_pref("extensions.Softonic_i.excTlbr", false);
Line Deleted : user_pref("extensions.Softonic_i.hmpg", true);
Line Deleted : user_pref("extensions.Softonic_i.newTab", true);
Line Deleted : user_pref("extensions.Softonic_i.smplGrp", "none");
Line Deleted : user_pref("extensions.Softonic_i.vrsnTs", "1.8.8.1119:55:11");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.InstallationThankYouPage", false);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.InstallationTime",

1377430710);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.active", true);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.addressbar", "NA");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.addressbarenhanced",

"");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.asyncdb_dbWasSet",

true);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.asyncdb_dbWasSet_FF25_FIX", true);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.asyncinternaldb_dbWasSet", true);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.asyncinternaldb_dbWasSet_FF25_FIX", true);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.backgroundjs", "\n

\n/*****************************************************************************[...]
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.backgroundver", 3);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.can_run_bg_code",

true);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.certdomaininstaller", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.changeprevious", false);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie.InstallationTime.expiration", "Fri Feb 01

2030 00:00:00 GMT+0100 (ora legale Europa occiden[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie.InstallationTime.value", "1377430710");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie._GPL_aoi.expiration", "Fri Feb 01 2030

00:00:00 GMT+0100 (ora solare Europa occidentale)");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie._GPL_aoi.value",

"%221384866810%22");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie._GPL_parent_zoneid.expiration", "Fri

Feb 01 2030 00:00:00 GMT+0100 (ora solare Europa occid[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie._GPL_parent_zoneid.value",

"%22427690%22");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie._GPL_zoneid.expiration", "Fri Feb 01

2030 00:00:00 GMT+0100 (ora solare Europa occidentale)[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie._GPL_zoneid.value",

"%22428730%22");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie.jw_token.expiration", "Fri Feb 01 2030

00:00:00 GMT+0100 (ora solare Europa occidentale)");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.cookie.jw_token.value",

"%221d2af803-8956-9561-81e4-064e407e7ac7%22");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.description", "Plugin

extension");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.domain", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.enablesearch", false);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.homepage", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.iframe", false);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.InstallerIdentifiers.expiration", "Fri Feb

01 2030 00:00:00 GMT+0100 (ora solare Europa[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.InstallerIdentifiers.value", "%7B

%22installer_bic%22%3Anull%2C%22installer_verifier%22%[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.InstallerParamsCache.expiration", "Fri

Feb 01 2030 00:00:00 GMT+0100 (ora solare Europa[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.InstallerParamsCache.value", "%7B

%22source_id%22%3A%22000246%22%2C%22sub_id%22%3A%220%2[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_appVer.expiration", "Fri

Feb 01 2030 00:00:00 GMT+0100 (ora solare Europa occ[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_appVer.value", "78");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_lastVersion.expiration", "Fri

Feb 01 2030 00:00:00 GMT+0100 (ora solare Europ[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_lastVersion.value", "14");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_meta.expiration", "Fri Feb

01 2030 00:00:00 GMT+0100 (ora solare Europa occid[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_meta.value", "%7B

%22cssOffre.css%22%3A%7B%22id%22%3A384227%2C%22ver%22%3A14%2[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_nextCheck.expiration",

"Thu Dec 05 2013 00:29:36 GMT+0100 (ora solare Europa [...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_nextCheck.value", "true");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_queue.expiration", "Fri Feb

01 2030 00:00:00 GMT+0100 (ora solare Europa occi[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_queue.value", "%7B

%7D");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_remote_resources.expirati

on", "Fri Feb 01 2030 00:00:00 GMT+0100 (ora solare [...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_remote_resources.value",

"%7B%22remoteId%22%3A1%7D");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_resource_384227.expirati

on", "Mon Feb 24 2014 15:25:38 GMT+0100 (ora solare E[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.Resources_resource_384227.value",

"%22%5Cr%5Cn%23offre_conteneur%7B%5Cr%5Cn%5Ct-moz-use[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb._country_code_.expiration", "Fri Feb

01 2030 00:00:00 GMT+0100 (ora legale Europa occid[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb._country_code_.value", "%22IT

%22");
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.installer.expiration", "Fri Feb 01 2030

00:00:00 GMT+0100 (ora solare Europa occidental[...]
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.installer.value",

"%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic%22%3Anull%2C%22i[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.monetization_plugin_last_executable_r

equest.expiration", "Thu Dec 05 2013 03:29:35 GMT+[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.internaldb.monetization_plugin_last_executable_r

equest.value", "%22hxxp%3A//www.techportal.it/dl/a[...]
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.js", "\n\nappAPI.ready

(function($) {\n\n\n$(document).ready(function(){\n\n$('body').append (''\n\[...]
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.lastDailyReport",

"1386176329215");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.lastUpdate",

"1386178176076");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.manifesturl", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.name", "Pricora 4.1");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.newtab", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.opensearch", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_1.code",

"appAPI._cr_config={appID:function(){var a=appAPI.appInfo;if(a){return app[...]
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_1.name",

"base");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_1.ver", 7);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_101.code", "if (typeof

appAPI.internal.monetization === \"undefined\") {\n appAP[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_101.name", "cortica_m");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_101.ver",

3);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_102.code", "if (typeof

appAPI.internal.monetization === \"undefined\") {\n appAP[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_102.name", "dealply_m");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_102.ver",

4);
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_103.code", "if (typeof

appAPI.internal.monetization === \"undefined\") {\n appAP[...]
Line Deleted : user_pref

("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_103.name", "intext_5_m");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.plugins.plugin_103.ver",

4);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.pluginsurl",

"hxxps://w9u6a2p6.ssl.hwcdn.net/plugin/apps/37912/plugins/093/ff/plugins.json");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.pluginsversion", 61);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.publisher", "Corporate

Inc");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.searchstatus", 0);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.setnewtab", false);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.thankyou", "");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.updateinterval", 360);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.37912.ver", 78);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.apps", "37912");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.bic",

"1425b756bea2ef42dd6f69cbdd45287b");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.cid", 37912);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.firstrun", false);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.hadappinstalled", true);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.installationdate", 1384513891);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.modetype", "production");
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.reportInstall", true);
Line Deleted : user_pref("extensions.a43229a1909414050a87a29deebc1c867801440a9d2464c46882008d0cec937e1com37912.statsDailyCounter", 34);
Line Deleted : user_pref("extensions.crossrider.bic", "1425b756bea2ef42dd6f69cbdd45287b");
Line Deleted : user_pref("extensions.delta.admin", false);
Line Deleted : user_pref("extensions.delta.aflt", "babsst");
Line Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Line Deleted : user_pref("extensions.delta.autoRvrt", "false");
Line Deleted : user_pref("extensions.delta.dfltLng", "it");
Line Deleted : user_pref("extensions.delta.excTlbr", false);
Line Deleted : user_pref("extensions.delta.ffxUnstlRst", true);
Line Deleted : user_pref("extensions.delta.id", "a8b3b1af00000000000000248c651a9f");
Line Deleted : user_pref("extensions.delta.instlDay", "15939");
Line Deleted : user_pref("extensions.delta.instlRef", "sst");
Line Deleted : user_pref("extensions.delta.newTab", false);
Line Deleted : user_pref("extensions.delta.prdct", "delta");
Line Deleted : user_pref("extensions.delta.prtnrId", "delta");
Line Deleted : user_pref("extensions.delta.rvrt", "false");
Line Deleted : user_pref("extensions.delta.smplGrp", "none");
Line Deleted : user_pref("extensions.delta.tlbrId", "base");
Line Deleted : user_pref("extensions.delta.tlbrSrchUrl", "");
Line Deleted : user_pref("extensions.delta.vrsn", "1.8.24.6");
Line Deleted : user_pref("extensions.delta.vrsnTs", "1.8.24.623:12:52");
Line Deleted : user_pref("extensions.delta.vrsni", "1.8.24.6");
Line Deleted : user_pref("extensions.delta_i.babExt", "");
Line Deleted : user_pref("extensions.delta_i.babTrack", "affID=123925&tsp=4982");
Line Deleted : user_pref("extensions.delta_i.srcExt", "ss");
Line Deleted : user_pref("extensions.mysearchdial.aflt", "irmsd1103");
Line Deleted : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Line Deleted : user_pref("extensions.mysearchdial.cd",

"2XzuyEtN2Y1L1QzutDtDtByEzz0CyCyDtC0Azy0F0BtC0A0FtN0D0Tzu0SyBtDtCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R");
Line Deleted : user_pref("extensions.mysearchdial.cntry", "IT");
Line Deleted : user_pref("extensions.mysearchdial.cr", "1772338060");
Line Deleted : user_pref("extensions.mysearchdial.dfltLng", "");
Line Deleted : user_pref("extensions.mysearchdial.dfltSrch", true);
Line Deleted : user_pref("extensions.mysearchdial.dnsErr", true);
Line Deleted : user_pref("extensions.mysearchdial.dpkLst",

"3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3

224935090,2597085128,18285[...]
Line Deleted : user_pref("extensions.mysearchdial.excTlbr", false);
Line Deleted : user_pref("extensions.mysearchdial.hdrMd5", "E08F57C155B7D050CD1B61DA80AB3663");
Line Deleted : user_pref("extensions.mysearchdial.hmpg", true);
Line Deleted : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?

f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1QzutDtDtByEzz0CyCyDtC0Azy0F0BtC0A0FtN0D0Tzu0SyBtDtCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutC

[...]
Line Deleted : user_pref("extensions.mysearchdial.hpFFXOld", "hxxp://it.msn.com/?pc=UP97&ocid=UP97DHP");
Line Deleted : user_pref("extensions.mysearchdial.id", "00248C651A9FB1AF");
Line Deleted : user_pref("extensions.mysearchdial.instlDay", "16040");
Line Deleted : user_pref("extensions.mysearchdial.instlRef", "");
Line Deleted : user_pref("extensions.mysearchdial.lastB", "hxxp://it.msn.com/?pc=UP97&ocid=UP97DHP");
Line Deleted : user_pref("extensions.mysearchdial.lastVrsnTs", "1.8.21.019:0:54");
Line Deleted : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?

f=2&a=irmsd1103&cd=2XzuyEtN2Y1L1QzutDtDtByEzz0CyCyDtC0Azy0F0BtC0A0FtN0D0Tzu0SyBtDtCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1Czu[...]
Line Deleted : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"89\",\"lastVrsn\":\"89\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",

\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Line Deleted : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.sg", "none");
Line Deleted : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.tlbrId", "base");
Line Deleted : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?

f=3&a=irmsd1103&cd=2XzuyEtN2Y1L1QzutDtDtByEzz0CyCyDtC0Azy0F0BtC0A0FtN0D0Tzu0SyBtDtCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1C[...]
Line Deleted : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
Line Deleted : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
Line Deleted : user_pref("extensions.mysearchdial_i.hmpg", true);
Line Deleted : user_pref("extensions.mysearchdial_i.newTab", false);
Line Deleted : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Line Deleted : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.019:0:54");
Line Deleted : user_pref("extentions.webcake.defaultEnableAppsList", "layers,brain/features,newOffers/wc");
Line Deleted : user_pref("extentions.webcake.installId", "5fa0dfd6-f9c9-4690-9d8c-355b91248434");

[ File : C:\Users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\3bzqjvjh.default\prefs.js ]

Line Deleted : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?

f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1QzutDtDtByEzz0CyCyDtC0Azy0F0BtC0A0FtN0D0Tzu0SyBtDtCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD

1B1P1[...]
Line Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");
Line Deleted : user_pref("browser.search.selectedEngine", "Mysearchdial");
Line Deleted : user_pref("browser.search.defaultengine", "Web Search");
Line Deleted : user_pref("browser.search.order.1", "Web Search");

-\\ Google Chrome v31.0.1650.57

[ File : C:\Users\Antonio\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : homepage

*************************

AdwCleaner[R0].txt - [67346 octets] - [04/12/2013 22:02:44]
AdwCleaner[S0].txt - [65457 octets] - [04/12/2013 22:07:52]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [65518 octets] ##########
magopenguin
Inviato: Wednesday, December 04, 2013 10:46:58 PM
Rank: AiutAmico

Iscritto dal : 11/29/2013
Posts: 411
Maggio ha scritto:
Da qualche giorno, quando chiudo e ripristino firefox, nonostante i parametri impostati, mi appare sempre la prima pagina "http://it.msn.com/?pc=UP97&ocid=UP97DHP". Non mi riprende la cronologia delle pagine chiuse
dalla barra degli indirizzi,devi digitare

about:config


Poi (vado a naso)

Cercare la voce Browser Quit Warning,e impostare da false a true .

Da ora in avanti,al posto di chiuderti le schede, avrai invece la possibilità di:esci ,oppure salva ed esci (al prossimo riavvio di Firefox se hai cliccato su salva ed esci ,ti ritroverai le schede chiuse di recente...Sempre se nel frattempo non usi CCleaner e simili)

(se ho capito bene cosa intendevi)
cbbusto
Inviato: Thursday, December 05, 2013 12:00:16 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Accidenti ne avevi di porcherie, adware e dirottatori vari, hai notato quanta roba ha eliminato ADW.
Se riesci fai anche la scansione con Malwarebytes come ti aveva già suggerito wolfe, QUI una volta aperto lo devi aggiornare e poi fai una scansione COMPLETA non veloce, elimina tutto quello che trova.
Poi fai una pulizia con Ccleaner compreso il Registro.
Dimmi come va il pc. Ciao
Maggio
Inviato: Thursday, December 05, 2013 12:19:27 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
cbbusto ha scritto:
Accidenti ne avevi di porcherie, adware e dirottatori vari, hai notato quanta roba ha eliminato ADW.
Se riesci fai anche la scansione con Malwarebytes come ti aveva già suggerito wolfe, QUI una volta aperto lo devi aggiornare e poi fai una scansione COMPLETA non veloce, elimina tutto quello che trova.
Poi fai una pulizia con Ccleaner compreso il Registro.
Dimmi come va il pc. Ciao


Ok
ti ringrazio.
Proverò L'altro prg. che mi hai consigliato visto che questo ha funzionato bene.
In merito a Ccleaner lo uso regolarmente ma non ha prodotto gli effetti desiderati.
Alla riaccensione mi è apparsa la pagina di Firefox (Eureka) è finalmente sparita quella m.... di intruso (msn).
Vero che di immondizia ce ne era molta ma è altrettanto vero che questo programma ha funzionato per la prima volta dopo molto temto di utilizzo dopo la formattazione.
Lo eseguirò periodicamente
Arigrazie
cbbusto
Inviato: Thursday, December 05, 2013 3:15:38 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Certi programmi non funzionavano perchè venivano bloccati da spyware.Se riesci, fai anche la scansione con JRT:

Scarica Junkware Removal Tool sul desktop.
http://www.majorgeeks.com/mg/get/junkware_removal_tool,1.html
Disattiva temporaneamente l'antivirus per evitare potenziali conflitti.
Doppio click su JRT
Lo strumento si aprirà e avvierà la scansione del sistema.
Devi avere pazienza in quanto questo tool può richiedere del tempo per completare la scansione .
Al termine, un log (JRT.txt) viene salvato sul desktop e si aprirà automaticamente.
Postalo qui.
Tutte le scansioni vanno fatte in modalità NORMALE.


Riguardo a Ccleaner è solo un sw di pulizie e non risolve i problemi.
Visto le infezioni che avevi io rimuoverei i punti di ripristino perchè le infezioni si annidano anche li.
Per fare questo usa Ccleaner, vai in Strumenti>Ripristino Sistema, seleziona tutte le voci, l'ultima non è selezionabile e rimane per sicurezza, poi clic su rimuovi.
Controlla anche in Avvio di non avere troppe voci inutili, causa di rallentamenti e conflitti, quelle necessarie sono pochissime.
Tutte le infezioni trovate si installano scaricando dei programmi, in particolare quelli free, quindi prima dei download controlla sempre bene che non siano spuntate delle caselle che installano sw non richiesti, non installare mai le toolbar e se puoi evita di scaricare da Softonic, o almeno non usare il loro downloader. Ciao
Maggio
Inviato: Thursday, December 05, 2013 3:40:33 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
Ho installato e fatto una scansione approfondita con Malwarebytes (3 ore) ma ne è valsa la pena. Trovati ed eliminati altri 52 intoppi
Maggio
Inviato: Thursday, December 05, 2013 8:27:53 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
cbbusto ha scritto:
Certi programmi non funzionavano perchè venivano bloccati da spyware.Se riesci, fai anche la scansione con JRT:

Scarica Junkware Removal Tool sul desktop.
http://www.majorgeeks.com/mg/get/junkware_removal_tool,1.html
Disattiva temporaneamente l'antivirus per evitare potenziali conflitti.
Doppio click su JRT
Lo strumento si aprirà e avvierà la scansione del sistema.
Devi avere pazienza in quanto questo tool può richiedere del tempo per completare la scansione .
Al termine, un log (JRT.txt) viene salvato sul desktop e si aprirà automaticamente.
Postalo qui.
Tutte le scansioni vanno fatte in modalità NORMALE.


Riguardo a Ccleaner è solo un sw di pulizie e non risolve i problemi.
Visto le infezioni che avevi io rimuoverei i punti di ripristino perchè le infezioni si annidano anche li.
Per fare questo usa Ccleaner, vai in Strumenti>Ripristino Sistema, seleziona tutte le voci, l'ultima non è selezionabile e rimane per sicurezza, poi clic su rimuovi.
Controlla anche in Avvio di non avere troppe voci inutili, causa di rallentamenti e conflitti, quelle necessarie sono pochissime.
Tutte le infezioni trovate si installano scaricando dei programmi, in particolare quelli free, quindi prima dei download controlla sempre bene che non siano spuntate delle caselle che installano sw non richiesti, non installare mai le toolbar e se puoi evita di scaricare da Softonic, o almeno non usare il loro downloader. Ciao



Seguirò i tuoi ulteriori e preziosi consigli domani e ti farò sapere.
I prg che scarico sono quasi sempre quelli gratuiti e ti posso garantire che applico la massima attenzione. Non scarico mai le toolbar anche perchè mi rubano spazio e sono sempre insidiose. Non sapevo cmq che alcune cose sono mensionate nella licenza (Starò attento anche a quella). Alcune volte mi è capitato infatti di aver tolto il flag a qualche toolbar e alla fine me la sono ritrovata installata.
Per quanto concerne l'avvio ho cercato di mettere l'essenziale anche se prima il sistema era lento in caricamento e funzionamento. Già ora è più veloce
Ciao
Maggio
Inviato: Friday, December 06, 2013 4:54:50 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Enterprise x86
Ran by Antonio on 06/12/2013 at 12:03:11,83
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2418080742-555337523-2100006002-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2418080742-555337523-2100006002-1000\Software\wajam
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\backupstack_rasmancs
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311791112}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\taskhost_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\taskhost_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\chatzum_softonic_yahoo_62_v5_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\chatzum_softonic_yahoo_62_v5_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311791112}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{77726784-F2F3-461C-B249-D29F9786CFFA}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CCE665DD-F6DD-4808-968E-EAEC971F70EF}
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"



~~~ Files

Successfully deleted: [File] "C:\Users\Antonio\appdata\locallow\microsoft\silverlight\outofbrowser\index\portal.qtrax.com"



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Antonio\AppData\Roaming\ietoolbar"
Successfully deleted: [Folder] "C:\Users\Antonio\AppData\Roaming\software informer"
Successfully deleted: [Folder] "C:\Users\Antonio\appdata\local\blekkotb_031"
Successfully deleted: [Folder] "C:\Users\Antonio\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\Antonio\appdata\locallow\datamngr"
Successfully deleted: [Folder] "C:\Program Files\eusing free registry cleaner"
Successfully deleted: [Folder] "C:\Program Files\mypc backup"
Successfully deleted: [Folder] "C:\Program Files\software informer"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\free registry cleaner"
Successfully deleted: [Folder] "C:\Users\Antonio\AppData\Roaming\microsoft\windows\start menu\programs\free registry cleaner"
Successfully deleted: [Folder] "C:\Users\Antonio\music\qtrax media library"
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{008C1683-C04B-4D75-BBAD-7CCF02C013DE}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{029DBB78-EA05-4330-9333-937D01C0488C}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{116028CA-4363-409D-A043-E0CB931DDA54}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{14A58350-F485-412B-A62E-39EA0E6C1E04}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{152A1311-FB8E-4AD7-8E9F-50A1183002BF}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{17F7379C-F94F-4195-9AD2-8DC14C301ADD}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{1B9C1699-3B3E-40D4-A318-A6FDA8BA60ED}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{2107706D-4D3A-4393-BB6A-9C2360297915}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{239241A3-8C14-4D12-A944-C7D55A315EB5}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{27D8357C-548F-48BE-B2A1-B6DB01F66647}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{30EC22C2-B261-4F5F-8B4A-F0F1B1E04A5C}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{34BC4CC6-0C34-4E8B-AB4D-16D74D283024}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{38DB6902-22FB-4FCC-97DE-9CC289AC46D9}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{3CC65C4B-C0E4-43E2-8386-F9EB5B042E13}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{43C67B99-CB82-4234-8D6C-27917591DBC8}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{476557CD-E14D-4B71-97F0-15531F72C1B1}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{4B27DB88-2362-4B88-8ECE-5E004B317F8B}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{4E5D3D20-1411-40B0-A24B-8C026C63726E}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{5353B509-22C1-45DB-B451-0354C1AF3FA0}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{5476918B-E6AE-4CD3-AAEA-31014DFF5E83}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{560DDC3A-F6E7-482C-B6F0-35B5045BDE63}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{5BB58CC6-A6E1-4B06-B3DF-8B6FEBC2DCA6}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{5EB15EC5-CD4A-44F0-84FE-93ECE7EF0DEA}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{60F1A6C8-AB08-46A1-89C6-32CC1ED7C585}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{62989E4D-F25C-41F5-8EF6-15EEC03A22E4}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{63E57B81-9A3F-4D06-81C5-078631563723}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{6498E0CE-E3B3-4466-B993-F8F13A59AD4B}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{674D0F5E-0A8C-4009-A90C-E0C045146353}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{6A0736E7-B293-498C-A169-B9C32EAC76EB}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{6DCF7EDB-64EB-4916-92F6-660DE8B2E287}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{6EBEB579-A960-4574-8FB7-CB8790D63761}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{7451C11E-6FC5-49FD-B3B0-7207A678BCE6}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{75210289-AA80-45DB-8CA2-008124BFECC3}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{7E1BE3EE-CAC0-4DF8-9F74-60AE84DF9236}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{7FD1F458-D5E1-4B96-A395-2317410A88C7}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{8A5C15A0-56D5-4ACF-B105-C6F3D3CF5F8A}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{8CC19136-D3EB-4462-B490-40275323C012}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{8D8EE83F-F643-45EC-B79C-DDE3DED69E8A}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{8DE1CCE7-0876-4A9E-A526-F6E2CC243FB2}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{9559F843-14F3-4D2C-BD3C-FCCD8AC4F383}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{962B2CDE-ECBA-461E-B9F5-6DF606B9411A}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{96442D9E-C34C-456E-B479-1E87CFEE1040}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{972946CE-A92B-40D4-B848-6B0A69A34867}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{972A353B-98CF-48AE-B6AF-D76536CA2D99}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{997BCD6F-8558-4E16-832F-4984F26BA126}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{9B722481-3E8F-4B0B-801D-B19184773C8F}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{A1317834-958B-4349-ABBB-C928F0CF319A}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{A8EC0A32-16A8-4C82-BEFE-F98B799116EF}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{AA34DCC3-D4F5-4523-9A21-CC861ADC3DC0}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{AB8B7E52-B5FB-4A02-B51B-E51739B54989}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{ABA360D1-F58B-40C5-A798-34C471C7EB9D}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{AE11F4C8-DE22-436B-B144-789E5E1E0528}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{AEC0C62E-54F1-47B0-8047-CC88E0288427}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{AFC7311A-D06B-489B-B6A9-14FCB5F06814}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{B1C4D493-F221-4934-BC3C-A57291148DAB}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{B22C6302-7757-43FE-AF7B-F56C8523FF1D}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{B7A98B04-CB6F-472A-BDDE-B331FC30B5C4}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{B7FFF7EB-649E-4CAD-9BF1-265862ABEB2F}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{C05FD67F-32AF-4EFE-98B3-7686119B7220}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{C2A23A33-6137-4A27-8149-441C213AF4DA}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{C46115E3-74AC-46F9-9D03-37FB86057BE9}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{C6305FD9-4244-4C6D-BE68-EDD69C312BD7}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{C8089EA7-43EF-400D-8D91-A3E4D8686CBE}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{D4C94714-1913-4537-ACB3-016731C88656}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{D4DB13CD-A638-432D-9646-93D195832000}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{DF24F872-4C83-4F64-827F-8DDB13DF8EBE}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{E1CFAE47-BF70-4CED-A394-CE34CDEBDA50}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{EB500704-B8DB-4170-AC8F-7A2DADF713FB}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{ECD53C6E-11F8-413E-B26D-661C8336EE09}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{EF037A80-F7EE-4687-AB19-88069C4DD42F}
Successfully deleted: [Empty Folder] C:\Users\Antonio\appdata\local\{FAAFFE8E-A730-4637-8502-D8F2C3D27241}



~~~ FireFox

Successfully deleted: [File] C:\user.js
Emptied folder: C:\Users\Antonio\AppData\Roaming\mozilla\firefox\profiles\111fwcao.default\minidumps [68 files]



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Antonio\appdata\local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 06/12/2013 at 12:22:13,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
mi sa che devo ripetere il tutto perchè allìapertura di Firefox mi è apparsa un'altra pagina mai conosciuta
cbbusto
Inviato: Saturday, December 07, 2013 12:26:06 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Anche JRT ha trovato parecchia spazzatura compreso chatzum, ma le vai a cercare tutte.
Dimmi che pagina ti appare in Firefox, intanto controlla fra i componenti aggiuntivi se c'è qualche voce nuova o sconosciuta ed elimina tutto, controlla anche in gestione motori di ricerca se c'è qualche motore che non conosci, ti consiglio di lasciare google e rimuovere tutti gli altri.
Postami un log di Hijack This che vediamo cos'hai nel pc. Ciao
Maggio
Inviato: Saturday, December 07, 2013 6:56:18 PM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
cbbusto ha scritto:
Anche JRT ha trovato parecchia spazzatura compreso chatzum, ma le vai a cercare tutte.
Dimmi che pagina ti appare in Firefox, intanto controlla fra i componenti aggiuntivi se c'è qualche voce nuova o sconosciuta ed elimina tutto, controlla anche in gestione motori di ricerca se c'è qualche motore che non conosci, ti consiglio di lasciare google e rimuovere tutti gli altri.
Postami un log di Hijack This che vediamo cos'hai nel pc. Ciao


Certo che ti sto facendo penare molto hahaha :)
Cmq grazie per la tua competenza e disponibilità

Stranamente oggi Firefox mi ha aperto le pagine che avevo programmato (le ultime schede aperte quando ho spento il pc) se dovesse cambiare qualcosa ti avverto
Motori di ricerca li ho sempre eliminati tutti quando mi accorgevo che si erano installati per cui ho solo google (Almeno credo)

Ti posto il log di Hijack

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:40:10, on 07/12/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16736)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\WindowsMobile\wmdcBase.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Program Files\Microsoft Office\Office12\EXCEL.EXE
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Windows\system32\DllHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://it.msn.com/?pc=UP97&ocid=UP97DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll
O2 - BHO: (no name) - {2669f03e-8a48-420a-b015-3aa19dce9c7e} - (no file)
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SearchToolbar.ShowToolbarBHO - {86a3cdaa-9b25-480e-b73f-c2d359b87966} - mscoree.dll (file missing)
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - (no file)
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL
O2 - BHO: PDF-XChange Viewer IE-Plugin - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - C:\Program Files\Tracker Software\PDF-XChange Viewer\pdf-viewer\PDFXCviewIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: SearchToolbar - {691ca8ec-7205-4aa9-bdd6-15493d16f835} - mscoree.dll (file missing)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - (no file)
O3 - Toolbar: (no name) - {2669f03e-8a48-420a-b015-3aa19dce9c7e} - (no file)
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdcBase.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [IObit Malware Fighter] "C:\Program Files\IObit\IObit Malware Fighter\IMF.exe" /autostart
O4 - HKLM\..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\5f069017-5a93-4795-acf4-f021ad67b65f.exe /check
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Antonio\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Advanced SystemCare 7] "C:\Program Files\IObit\Advanced SystemCare 7\ASCTray.exe" /Auto
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 6] "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 6] "C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe" /AutoStart (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Startup: ~$scad.xlsx
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - C:\Users\Antonio\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {3f20b8e1-f256-4db1-a1e4-d0b1dc2ad3bb} - (no file)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{e29ac6c2-7037-11de-816d-806e6f6e6963}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 7 (AdvancedSystemCareService7) - IObit - C:\Program Files\IObit\Advanced SystemCare 7\ASCService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Servizio Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Servizio Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: IMF Service (IMFservice) - IObit - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.0.285\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - VIA Technologies, Inc. - C:\Windows\system32\viakaraokesrv.exe

--
End of file - 10096 bytes

Per il momento ti auguro una buona serata e una felice domenica
cbbusto
Inviato: Saturday, December 07, 2013 11:16:20 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Ti faccio lavorare ancora un po', ci sono delle voci da fixare ed eliminare.
Chiudi tutti i programmi e disconnesso lanci HJT e clicca sul secondo pulsante: Do a system scan only poi metti la spunta alle voci che ti indico e alla fine clic su Fix checked:

O2 - BHO: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)

O2 - BHO: (no name) - {2669f03e-8a48-420a-b015-3aa19dce9c7e} - (no file)

O2 - BHO: SearchToolbar.ShowToolbarBHO - {86a3cdaa-9b25-480e-b73f-c2d359b87966} - mscoree.dll (file missing)

O2 - BHO: (no name) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - (no file)

O3 - Toolbar: SearchToolbar - {691ca8ec-7205-4aa9-bdd6-15493d16f835} - mscoree.dll (file missing)

O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O3 - Toolbar: (no name) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - (no file)

O3 - Toolbar: (no name) - {2669f03e-8a48-420a-b015-3aa19dce9c7e} - (no file)

O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Antonio\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver

O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')

O4 - Startup: ~$scad.xlsx

O9 - Extra button: (no name) - {3f20b8e1-f256-4db1-a1e4-d0b1dc2ad3bb} - (no file)

O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Alla fine fai una pulizia con Ccleaner compreso il Registro, per il registro spunta tutte le voci, acconsenti al backup quando richiesto.
Ora dovresti essere a posto. Ciao e buona domenica anche a te.
Maggio
Inviato: Monday, December 09, 2013 10:16:28 AM
Rank: AiutAmico

Iscritto dal : 12/30/2000
Posts: 40
Ok Tutto fatto e sembra funzionare meglio.
La scansione con Ccleaner non ha evidenziato nulla.
Dovrebbe essere a posto. Per sicurezza ripeterò la procedura che mi hai indicato dall'inizio per maggior sicurezza.
Ti ringrazio per lo sforzo che hai fatto e del tempo che mi hai dedicato
Buon inizio settimana e Tanti cari auguri a te e famiglia per le prossime Festività
cbbusto
Inviato: Monday, December 09, 2013 6:38:04 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Grazie per gli auguri che ricambio. Ciao
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.