Ciao cbbusto,
si è lo stesso pc con problemi con l'hard disk solo che ora l'hard disk è nuovo. Ho seguito i consigli di wolf usando il programma Macrium riuscendo a conservare la copia installata di default di Photoshop Elements
Ho tolto Avast e fatto tutti i controlli che mi hai suggerito senza antivirus ma non ho navigato, aspettavo i suggerimenti al problema.
Ho lanciato HJT e fixato come mi hai suggerito.
Di seguito i vari log:
Malwarebyteswww.malwarebytes.com-Dettagli log-
Data scansione: 18/05/18
Ora scansione: 23:42
File di log: 6a0bb8e4-5ae4-11e8-94b7-001f16fcc851.json
Amministratore: Sì
-Informazioni software-
Versione: 3.5.1.2522
Versione componenti: 1.0.365
Aggiorna versione pacchetto: 1.0.5164
Licenza: Free
-Informazioni sistema-
SO: Windows 7 Service Pack 1
CPU: x64
File system: NTFS
Utente: Fabio-PC\Fabio
-Riepilogo scansione-
Tipo di scansione: Ricerca elementi nocivi
Scansione avviata da: Manuale
Risultati: Completata
Elementi analizzati: 296356
Minacce rilevate: 0
(Nessun elemento nocivo rilevato)
Minacce messe in quarantena: 0
(Nessun elemento nocivo rilevato)
Tempo impiegato: 7 min, 46 sec
-Opzioni di scansione-
Memoria: Attivata
Esecuzioni automatiche: Attivata
File system: Attivata
Archivi compressi: Attivata
Rootkit: Attivata
Analisi euristica: Attivata
PUP: Rilevare
PUM: Rilevare
-Dettagli scansione-
Processo: 0
(Nessun elemento nocivo rilevato)
Modulo: 0
(Nessun elemento nocivo rilevato)
Chiave di registro: 0
(Nessun elemento nocivo rilevato)
Valore di registro: 0
(Nessun elemento nocivo rilevato)
Dati di registro: 0
(Nessun elemento nocivo rilevato)
Flusso di dati: 0
(Nessun elemento nocivo rilevato)
Cartella: 0
(Nessun elemento nocivo rilevato)
File: 0
(Nessun elemento nocivo rilevato)
Settore fisico: 0
(Nessun elemento nocivo rilevato)
WMI: 0
(Nessun elemento nocivo rilevato)
(end)
AdwCleaner# -------------------------------
# Malwarebytes AdwCleaner 7.1.1.0
# -------------------------------
# Build: 04-27-2018
# Database: 2018-05-18.2
# Support:
https://www.malwarebytes.com/support#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 05-18-2018
# Duration: 00:00:01
# OS: Windows 7 Home Premium
# Cleaned: 23
# Failed: 0
***** [ Services ] *****
Deleted IMFservice
***** [ Folders ] *****
Deleted C:\ProgramData\IObit\Advanced SystemCare V8
Deleted C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare
Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\Fabio\AppData\LocalLow\IObit\Advanced SystemCare
Deleted C:\Users\Fabio\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\ProgramData\IObit\ASCDownloader
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKLM\Software\Wow6432Node\IObit\RealTimeProtector
Deleted HKCU\Software\IObit\Advanced SystemCare
Deleted HKLM\Software\Wow6432Node\IObit\Advanced SystemCare
Deleted HKLM\Software\Wow6432Node\IOBIT\ASC
Deleted HKLM\SOFTWARE\Classes\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\Advanced SystemCare
Deleted HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\Advanced SystemCare
Deleted HKLM\Software\Wow6432Node\Google\Chrome\NativeMessagingHosts\com.ascplugin.protect
Deleted HKLM\SOFTWARE\CLASSES\LNKFILE\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted HKLM\SOFTWARE\CLASSES\DRIVE\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted HKLM\SOFTWARE\CLASSES\DIRECTORY\SHELLEX\CONTEXTMENUHANDLERS\Advanced SystemCare
Deleted HKLM\Software\Classes\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}
Deleted HKLM\Software\Classes\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}
Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\services\IMFservice
Deleted HKLM\Software\Wow6432Node\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Deleted HKLM\SOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\SpyHunter4.exe
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
JRT~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 7 Home Premium x64
Ran by Fabio (Administrator) on 19/05/2018 at 0:09:28,69
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 20
Successfully deleted: C:\ProgramData\productdata (Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\{628DB584-F162-4426-B27E-3379EBA64798} (Empty Folder)
Successfully deleted: C:\Users\Fabio\AppData\Roaming\productdata (Folder)
Successfully deleted: C:\Windows\wininit.ini (File)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\60VYH0WQ (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7U4WXN05 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EGYCCU4M (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F3OWG4TB (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JMVSWAGR (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KTDY3Z10 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OYPHTDXQ (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Fabio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XWZ5H18W (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\60VYH0WQ (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7U4WXN05 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EGYCCU4M (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\F3OWG4TB (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JMVSWAGR (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KTDY3Z10 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OYPHTDXQ (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XWZ5H18W (Temporary Internet Files Folder)
user_pref(extensions.xpiState, {\app-profile\:{\iobitascsurfingprotection@iobit.com\:{\d\:\C:\\\\Users\\\\Fabio\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profil
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 19/05/2018 at 0:12:20,83
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Dopo tutto ciò il problema con Windows Update persiste
Ho reinstallato Avast.