Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

Controllo LOG - Computer lento e... UN MONDO DI PAGINE CHE SI APRONO IN INTERNET Opzioni
effeelle2
Inviato: Sunday, April 19, 2015 10:11:59 PM

Rank: AiutAmico

Iscritto dal : 11/26/2009
Posts: 86
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:10:22, on 19/04/2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\system32\taskhost.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\windows\system32\wuauclt.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Michela\Desktop\Programmi controllo\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {339a0dff-d9af-439b-92bc-636220fb3dae} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe,
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [APLangApp] "C:\Program Files\AnyPC Client\APLangApp.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - ##TOOLBAR_DISABLED_##{0000036b-c524-4050-81a0-243669a86b9f} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - ##TOOLBAR_DISABLED_##{219c3416-8cb2-491a-a3c7-d9fcddc9d600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - ##TOOLBAR_DISABLED_##{219c3416-8cb2-491a-a3c7-d9fcddc9d600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - ##TOOLBAR_DISABLED_##{92780b25-18cc-41c8-b9be-3c9c571a8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{50D6CADF-68D4-48B1-B0E5-9E71E0416AEE}: NameServer = 10.204.57.104
O17 - HKLM\System\CCS\Services\Tcpip\..\{9A1A13DF-D419-4540-9DEB-E20FF6BD7F4D}: NameServer = 10.204.57.104
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe

--
End of file - 5187 bytes
Sponsor
Inviato: Sunday, April 19, 2015 10:11:59 PM

 
maopapof
Inviato: Sunday, April 19, 2015 10:54:24 PM

Rank: AiutAmico

Iscritto dal : 10/31/2004
Posts: 7,185


incomincia ad usare questo

https://toolslib.net/downloads/finish/1/


effeelle2
Inviato: Sunday, April 19, 2015 10:58:52 PM

Rank: AiutAmico

Iscritto dal : 11/26/2009
Posts: 86
..gia usato.....
grazie
maopapof
Inviato: Sunday, April 19, 2015 11:36:26 PM

Rank: AiutAmico

Iscritto dal : 10/31/2004
Posts: 7,185
ok
pulisci la cartella prefect in Windows ( lascia layout.ini )
poi
prova di andare in modalità provvisoria con rete e guarda se c'è sempre il problema :O)

effeelle2
Inviato: Sunday, April 19, 2015 11:50:29 PM

Rank: AiutAmico

Iscritto dal : 11/26/2009
Posts: 86
..o Dio:
in modalità provvisoria con rete (dove sono ancora)
il computer/internet va come un RAZZO...
WOW
effeelle2
Inviato: Sunday, April 19, 2015 11:59:42 PM

Rank: AiutAmico

Iscritto dal : 11/26/2009
Posts: 86
Nuovo log Hijack

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:58:35, on 19/04/2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Safe mode with network support

Running processes:
C:\windows\Explorer.EXE
C:\windows\system32\ctfmon.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Michela\Desktop\Programmi controllo\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {339a0dff-d9af-439b-92bc-636220fb3dae} - (no file)
F2 - REG:system.ini: UserInit=userinit.exe,
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [APLangApp] "C:\Program Files\AnyPC Client\APLangApp.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\windows\system32\Macromed\Flash\FlashUtil10y_Plugin.exe -update plugin
O4 - HKCU\..\RunOnce: [Report] C:\AdwCleaner\AdwCleaner[S3].txt
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIZIO LOCALE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIZIO DI RETE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIZIO DI RETE')
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - ##TOOLBAR_DISABLED_##{0000036b-c524-4050-81a0-243669a86b9f} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - ##TOOLBAR_DISABLED_##{219c3416-8cb2-491a-a3c7-d9fcddc9d600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - ##TOOLBAR_DISABLED_##{219c3416-8cb2-491a-a3c7-d9fcddc9d600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - ##TOOLBAR_DISABLED_##{92780b25-18cc-41c8-b9be-3c9c571a8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{50D6CADF-68D4-48B1-B0E5-9E71E0416AEE}: NameServer = 10.204.57.104
O17 - HKLM\System\CCS\Services\Tcpip\..\{9A1A13DF-D419-4540-9DEB-E20FF6BD7F4D}: NameServer = 10.204.57.104
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Servizio Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Servizio Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe

--
End of file - 5349 bytes

effeelle2
Inviato: Monday, April 20, 2015 12:03:41 AM

Rank: AiutAmico

Iscritto dal : 11/26/2009
Posts: 86
..e questo:

# AdwCleaner v4.201 - Creato file registro eventi 19/04/2015 in 23:47:06
# Aggiornato 08/04/2015 da Xplode
# Database : 2015-04-19.4 [Server]
# Sistema operativo : Windows 7 Home Premium Service Pack 1 (x86)
# Nome utente : Michela - MICHELA-PC
# In esecuzione da : C:\Users\Michela\Desktop\Programmi controllo\adwcleaner_4.201.exe
# Opzione : Pulizia

***** [ Servizi ] *****


***** [ File / Cartelle ] *****

Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\09tg_nm@qhk-eueo.com
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\0@jphQ.net
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\24f4x@jGC.edu
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\8R8g2t@J.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\Bh@ci.com
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\bmGr@8lw.edu
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\byeotmu@cqjqvydd.co.uk
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\c7c@PjzQMsA.edu
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\D5@1wF.edu
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\FP3UgO@jYly.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\FpBxpw5bR@0O.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\I@p5pVW.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\iyoqvjo@gbyiue.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\j@i.co.uk
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\rI8QqB@l.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\sayxoozqi@mnbio-.org
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\Xdhd4H@3.edu
Cartella Eliminato : C:\Users\Michela\AppData\Roaming\Mozilla\Firefox\Profiles\9qnndtmw.default\Extensions\Y@S.co.uk
File Eliminato : C:\Users\Michela\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_hniiadklfgdhjcmmkpggffjngihaaoip_0
File Eliminato : C:\Users\Michela\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\hniiadklfgdhjcmmkpggffjngihaaoip
File Eliminato : C:\Users\Michela\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_hijackthis.softonic.it_0.localstorage
File Eliminato : C:\Users\Michela\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_hijackthis.softonic.it_0.localstorage-journal

***** [ Attività pianificate ] *****


***** [ Collegamenti ] *****


***** [ Registry ] *****


***** [ Browser web ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v9.0.1 (it)


-\\ Google Chrome v42.0.2311.90

[C:\Users\Michela\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Eliminato [Search Provider] : hxxp://www.softonic.it/s/{searchTerms}

-\\ Comodo Dragon v


-\\ Chrome Canary v


*************************

AdwCleaner[R0].txt - [31598 byte] - [11/01/2014 10:47:47]
AdwCleaner[R1].txt - [20410 byte] - [19/04/2015 21:03:28]
AdwCleaner[R2].txt - [1952 byte] - [19/04/2015 21:12:16]
AdwCleaner[R3].txt - [4122 byte] - [19/04/2015 23:41:31]
AdwCleaner[R4].txt - [4180 byte] - [19/04/2015 23:46:10]
AdwCleaner[S0].txt - [31154 byte] - [11/01/2014 10:52:44]
AdwCleaner[S1].txt - [20424 byte] - [19/04/2015 21:05:29]
AdwCleaner[S2].txt - [2023 byte] - [19/04/2015 21:13:57]
AdwCleaner[S3].txt - [4148 byte] - [19/04/2015 23:47:06]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [4206 byte] ##########
effeelle2
Inviato: Monday, April 20, 2015 12:05:15 AM

Rank: AiutAmico

Iscritto dal : 11/26/2009
Posts: 86
Comunque da quando ho cancellato la cartella PREFECT
va già meglio!!!
maopapof
Inviato: Monday, April 20, 2015 12:33:29 AM

Rank: AiutAmico

Iscritto dal : 10/31/2004
Posts: 7,185
hai cancellato solo quello che c'era dentro la cartella meno layout.ini ....... NON TUTTA LA CARTELLA !

ALTRIMENTI VAI NEL CESTINO ... E FAI .... RIPRISTINA .... :o)


PS A PROPOSITO NON SCARICARE DA SOFTONIC


cbbusto
Inviato: Monday, April 20, 2015 10:28:48 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Ciao, il log di HJT non presenta grossi problemi, ci sarebbero alcune voci da eliminare specie in Avvio perchè inutili.
A tua discrezione io elminerei quelle sotto elencate:

Chiudi tutti i programmi e disconnesso da internet,
Lancia HijackThis e clicca sul secondo pulsante Do a system scan only
inserisci il segno di spunta nel quadratino davanti alle righe sotto indicate, una volta seleziona clicca il tasto Fix checked per procedere all'eliminazione, comparirà una finestra clicca su SI per accettare e l'operazione è conclusa.

Ti preciso che eliminando le voci 04, i programmi non vengono toccati ma viene solo disattivato l'Avvio automatico, inutile......basterebbe solo l'antivirus, che da te non si vede, probabile che sia disattivato.

R3 - URLSearchHook: (no name) - {339a0dff-d9af-439b-92bc-636220fb3dae} - (no file)
O4 - HKLM\..\Run: [IgfxTray] C:\windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [Persistence] C:\windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [APLangApp] "C:\Program Files\AnyPC Client\APLangApp.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\windows\system32\Macromed\Flash\FlashUtil10y_Plugin.exe -update plugin
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIZIO DI RETE')

Adw lo hai già usato e ha fatto un po' di pulizia, io farei anche queste scansioni alla ricerca di altra spazzatura:
Scarica ed installa MalwareBytes: clicca qui per il download: http://it.malwarebytes.org/
Clicca su: scarica la versione Gratuita alla sinistra, nella finestra che appare clic su Salva file,
poi per installarlo clic su: mbam-setup.exe
Alla fine dell'installazione nell’ultima schermata deseleziona la voce Attiva la prova gratuita di Malwarebytes Anti-Malware Pro.
Se il sw è in inglese, vai nella scheda Settings e seleziona la voce Italian dal menu a tendina Language per tradurre il programma in italiano.
Prima di fare la scansione AGGIORNALO. (è molto importante)
Poi clic su SCANSIONE seleziona la voce scansione di minaccia
Elimina gli eventuali file infetti trovati. (li devi selezionare, e poi cliccare su "Rimuovi selezionati")
Posta il log.
Malwarebytes lo dovresti già conoscere perchè lo vedo nei servizi.

Scarica Junkware Removal Tool sul desktop.
http://download.html.it/software/junkware-removal-tool/?utm_source%20651
Il download dovrebbe partire entro 5 secondi
Disattiva temporaneamente l'antivirus per evitare potenziali conflitti.
Doppio click su JRT
Lo strumento si aprirà e avvierà la scansione del sistema.
Devi avere pazienza in quanto questo tool può richiedere del tempo per completare la scansione .
Al termine, un log (JRT.txt) viene salvato sul desktop e si aprirà automaticamente.
Postalo qui.

Alla fine pulizia con Ccleaner compreso il Registro.
Come già consigliato, evita di fare download da Softonic, molto facile imbarcare Adware e dirottatori

Speak to the hand




Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.