Premesso che non si è più spento da un paio di giorni, cioè prima che cominciassi a seguire le tue istruzioni che ho eseguito sino alla fine, come ti ho scritto più avanti l'unico problema l'ho trovato con i log da postare in wikisend.
Provo a postarteli qui:
Malwarebytes
www.malwarebytes.com-Dettagli log-
Data scansione: 09/11/17
Ora scansione: 17:19
File di log: cbe5fa40-c569-11e7-8ba7-e0cb4e5760e4.json
Amministratore: Sì
-Informazioni software-
Versione: 3.3.1.2183
Versione componenti: 1.0.236
Aggiorna versione pacchetto: 1.0.3214
Licenza: Trial
-Informazioni sistema-
SO: Windows 10 (Build 15063.674)
CPU: x64
File system: NTFS
Utente: AD\Admin
-Riepilogo scansione-
Tipo di scansione: Ricerca elementi nocivi
Risultati: Completata
Elementi analizzati: 450414
Minacce rilevate: 0
(Nessun elemento nocivo rilevato)
Minacce messe in quarantena: 0
(Nessun elemento nocivo rilevato)
Tempo impiegato: 10 min, 48 sec
-Opzioni di scansione-
Memoria: Attivata
Esecuzioni automatiche: Attivata
File system: Attivata
Archivi compressi: Attivata
Rootkit: Disattivata
Analisi euristica: Attivata
PUP: Rilevare
PUM: Rilevare
-Dettagli scansione-
Processo: 0
(Nessun elemento nocivo rilevato)
Modulo: 0
(Nessun elemento nocivo rilevato)
Chiave di registro: 0
(Nessun elemento nocivo rilevato)
Valore di registro: 0
(Nessun elemento nocivo rilevato)
Dati di registro: 0
(Nessun elemento nocivo rilevato)
Flusso di dati: 0
(Nessun elemento nocivo rilevato)
Cartella: 0
(Nessun elemento nocivo rilevato)
File: 0
(Nessun elemento nocivo rilevato)
Settore fisico: 0
(Nessun elemento nocivo rilevato)
(end)
#
AdwCleaner 7.0.4.0 - Logfile created on Thu Nov 09 16:42:26 2017
# Updated on 2017/27/10 by Malwarebytes
# Running on Windows 10 Home (X64)
# Mode: clean
# Support:
https://www.malwarebytes.com/support***** [ Services ] *****
No malicious services deleted.
***** [ Folders ] *****
Deleted: C:\Users\Public\Documents\MyPlayCity
Deleted: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Ride Games
Deleted: C:\Users\Public\Documents\iWin
Deleted: C:\Program Files (x86)\Common Files\freemake shared
***** [ Files ] *****
No malicious files deleted.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks deleted.
***** [ Registry ] *****
Deleted: [Key] - HKCU\Software\Classes\TypeLib\{103DFC4E-147A-5606-9B4E-1C216DF227A1}
Deleted: [Key] - HKU\S-1-5-21-153998972-1196376448-1051498180-1000\Software\Classes\TypeLib\{103DFC4E-147A-5606-9B4E-1C216DF227A1}
Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{44D07CAA-4FC4-5A84-9951-A485AD808D0E}
Deleted: [Key] - HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{44D07CAA-4FC4-5A84-9951-A485AD808D0E}
Deleted: [Key] - HKLM\SOFTWARE\Conduit
Deleted: [Key] - HKU\S-1-5-21-153998972-1196376448-1051498180-1000\Software\Conduit
Deleted: [Key] - HKU\S-1-5-21-153998972-1196376448-1051498180-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11092017172042635\Software\Conduit
Deleted: [Key] - HKCU\Software\Conduit
Deleted: [Key] - HKLM\SOFTWARE\Trymedia Systems
Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ProductUpdater
Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\FMUpdater.dll
Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\Newtonsoft.Json.dll
Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\GAnalytics.dll
Deleted: [Value] - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\GoCartMonad.dll
***** [ Firefox (and derivatives) ] *****
Plugin deleted: Avira SafeSearch Plus - Avira
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries deleted.
*************************
::Tracing keys deleted
::Winsock settings cleared
::Additional Actions: 0
*************************
C:/AdwCleaner/AdwCleaner[C1].txt - [2321 B] - [2016/5/4 13:34:51]
C:/AdwCleaner/AdwCleaner[S1].txt - [3293 B] - [2016/5/4 13:23:40]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt ##########
Junkware Removal Tool (JRT) by MalwarebytesVersion: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64
Ran by Admin (Administrator) on 09/11/2017 at 17:56:49,10
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 7
Successfully deleted: C:\ProgramData\trymedia (Folder)
Successfully deleted: C:\Users\Admin\AppData\Local\alawarwrapper (Folder)
Successfully deleted: C:\Users\Admin\AppData\Roaming\alawar (Folder)
Successfully deleted: C:\Users\Admin\AppData\Roaming\alawarentertainment (Folder)
Successfully deleted: C:\users\Public\Documents\alawarwrapper (Folder)
Successfully deleted: C:\WINDOWS\SysWOW64\REN3A03.tmp (File)
Successfully deleted: C:\WINDOWS\SysWOW64\REN689A.tmp (File)
Registry: 2
Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{095A8667-F957-45D3-A40D-829390AB7E83} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{095A8667-F957-45D3-A40D-829390AB7E83} (Registry Key)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09/11/2017 at 17:59:45,69
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Rkill 2.9.1 by Lawrence Abrams (Grinler)http://www.bleepingcomputer.com/Copyright 2008-2017 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.htmlProgram started at: 11/09/2017 06:04:05 PM in x64 mode.
Windows Version: Windows 10 Home
Checking for Windows services to stop:
* No malware services found to stop.
Checking for processes to terminate:
* No malware processes found to kill.
Checking Registry for malware related settings:
* No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
Performing miscellaneous checks:
* Windows Defender Disabled
[HKLM\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware" = dword:00000001
Searching for Missing Digital Signatures:
* No issues found.
Checking HOSTS File:
* No issues found.
Program finished at: 11/09/2017 06:06:09 PM
Execution time: 0 hours(s), 2 minute(s), and 3 seconds(s)