Aiutamici Forum
Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

Inviato: Sunday, March 15, 2020 12:02:11 AM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 318
Come avevo accennato nel mio precedente topic
ho il PC fisso con WS XP .... mooolto lento tanto che
dall'accensione passa non meno di 8 - 10 minuti per
poter accedere a qualsiasi funzione (tipo apertura di un sito
o anche di un semplice documento in PDF o Excel

Per antivirus ho AVAST e sicuramente mi dirai di disinstallarlo
ma quale altro antivirus FREE potre mettere che sia leggero e fidato ?

Oppure ci sono troppi programmi in fase di avvio ... ma non so come fare ...

Posto l ultimo LOG dopo aver fatto le rituali pulizie
N.B. - sostituito AVAST con PANDA

Logfile of HiJackThis Fork by Alex Dragokas v.

Platform: x32 Windows XP (Media Center Edition), 5.1.2600.0, Service Pack: 3
Time: 15.03.2020 - 10:40 (UTC+01:00)
Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)
Ran by: PINO AL (group: Administrator) on PINODESKTOP, FirstRun: yes

Chrome: 49.0.2623.112
Internet Explorer: 8.0.6001.18702
Default: "C:\Programmi\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)

Boot mode: Normal

Running processes:
Number | Path
1 C:\Documents and Settings\PINO AL\Desktop\ANTVIRUS - SPYWARE MALWARE\HiJackThis.exe
1 C:\Programmi\File comuni\EPSON\eEBAPI\SAgent2.exe
1 C:\Programmi\File comuni\EPSON\eEBAPI\eEBSVC.exe
1 C:\Programmi\Google\Update\\GoogleCrashHandler.exe
1 C:\Programmi\Google\Update\GoogleUpdate.exe
1 C:\Programmi\IObit\Advanced SystemCare\ASCService.exe
1 C:\Programmi\IObit\Advanced SystemCare\ASCTray.exe
1 C:\Programmi\IObit\IObit Uninstaller\UninstallMonitor.exe
1 C:\Programmi\Messenger\msmsgs.exe
1 C:\Programmi\Panda Security\Panda Devices Agent\AgentSvc.exe
1 C:\Programmi\Panda Security\Panda Security Protection\PSANHost.exe
1 C:\Programmi\Panda Security\Panda Security Protection\PSUAMain.exe
1 C:\Programmi\Panda Security\Panda Security Protection\PSUAService.exe
1 C:\WINDOWS\Explorer.EXE
1 C:\WINDOWS\System32\smss.exe
1 C:\WINDOWS\eHome\ehRecvr.exe
1 C:\WINDOWS\eHome\ehSched.exe
1 C:\WINDOWS\system32\FsUsbExService.Exe
1 C:\WINDOWS\system32\SecUPDUtilSvc.exe
1 C:\WINDOWS\system32\csrss.exe
1 C:\WINDOWS\system32\ctfmon.exe
1 C:\WINDOWS\system32\dllhost.exe
1 C:\WINDOWS\system32\hasplms.exe
1 C:\WINDOWS\system32\lsass.exe
1 C:\WINDOWS\system32\services.exe
1 C:\WINDOWS\system32\spdsvc.exe
1 C:\WINDOWS\system32\spoolsv.exe
7 C:\WINDOWS\system32\svchost.exe
1 C:\WINDOWS\system32\winlogon.exe
1 C:\WINDOWS\system32\wuauclt.exe

R0 - HKCU\Software\Microsoft\Internet Connection Wizard: [ShellNext] = iexplore
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page Redirect Cache] =
R3 - HKCU\..\URLSearchHooks: Panda Safe Web - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - C:\Programmi\pandasecuritytb\pandasecurityDx.dll
R3 - HKU\.DEFAULT\..\URLSearchHooks: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [URL] ={searchTerms}&{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [SuggestionsURL] ={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [URL] ={searchTerms}&{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google
O1 - Hosts: is empty
O2 - HKLM\..\BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Programmi\IObit\IObit Uninstaller\UninstallExplorer.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmi\Java\jre1.8.0_60\bin\jp2ssv.dll
O2 - HKLM\..\BHO: Panda Safe Web - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - C:\Programmi\pandasecuritytb\pandasecurityDx.dll (file missing)
O2 - HKLM\..\BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.8.0_60\bin\ssv.dll
O3 - HKLM\..\Toolbar: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Programmi\IObit\IObit Uninstaller\UninstallExplorer.dll
O3 - HKLM\..\Toolbar: Panda Safe Web - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - C:\Programmi\pandasecuritytb\pandasecurityDx.dll (file missing)
O4 - HKCU\..\Run: [Advanced SystemCare] = C:\Programmi\IObit\Advanced SystemCare\ASCTray.exe /Auto
O4 - HKCU\..\Run: [MSMSGS] = C:\Programmi\Messenger\msmsgs.exe /background
O4 - HKCU\..\Run: [WallpaperHd] = C:\Documents and Settings\PINO AL\Impostazioni locali\Dati applicazioni\WallpaperHd\WallpaperHd.exe /regrun
O4 - HKCU\Control Panel\Desktop: [SCRNSAVE.EXE] = C:\WINDOWS\system32\Acquario.scr
O4 - HKLM\..\Run: [PSUAMain] = C:\Programmi\Panda Security\Panda Security Protection\PSUAMain.exe /LaunchSysTray
O4 - HKLM\..\Run: [Panda Security URL Filtering] = C:\Programmi\Panda Security URL Filtering\Panda_URL_Filtering.exe (file missing)
O4 - MSConfig\startupfolder: C:^Documents and Settings^PINO AL^Menu Avvio^Programmi^Esecuzione automatica^Spamihilator.lnk [backup] => C:\Programmi\Spamihilator\spamihilator.exe (2015/02/12) (file missing)
O4 - MSConfig\startupreg: Adobe ARM [command] = C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe (HKLM) (2014/09/30)
O4 - MSConfig\startupreg: CCleaner Monitoring [command] = C:\Programmi\CCleaner\ccleaner.exe /MONITOR (HKCU) (2017/01/05)
O4 - MSConfig\startupreg: EEDSpeedLauncher [command] = C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\eed_ec.dll,SpeedLauncher (HKCU) (2017/01/05)
O4 - MSConfig\startupreg: MSMSGS [command] = C:\Programmi\Messenger\msmsgs.exe /background (HKCU) (2015/02/12)
O4 - MSConfig\startupreg: QuickTime Task [command] = C:\Programmi\QuickTime\qttask.exe -atboottime (HKLM) (2017/01/05)
O4 - MSConfig\startupreg: SunJavaUpdateSched [command] = C:\Programmi\File comuni\Java\Java Update\jusched.exe (HKLM) (2014/11/26)
O4 - MSConfig\startupreg: ctfmon.exe [command] = C:\WINDOWS\system32\ctfmon.exe (HKCU) (2015/02/12)
O14 - IERESET.INF: [Strings] START_PAGE_URL = file://C:\APPS\IE\offline\it.htm
O15 - Trusted Zone:
O15 - Trusted Zone:
O16 - DPF: HKLM\..\{8AD9C840-044E-11D1-B3E9-00805F499D93}\DownloadInformation: Java Plug-in 11.60.2 [CODEBASE] =
O16 - DPF: HKLM\..\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.5.0_16 [CODEBASE] =
O16 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_67 [CODEBASE] =
O16 - DPF: HKLM\..\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 11.60.2 [CODEBASE] =
O17 - DHCP DNS 1:
O21 - HKLM\..\ShellExecuteHooks: [{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}] - ShellExecuteHook antimalware di Microsoft - C:\Programmi\Windows Defender\MpShHook.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt1: DropboxExt - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt2: DropboxExt - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt3: DropboxExt - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt4: DropboxExt - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O22 - ScheduledTask: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O22 - ScheduledTask: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - Task (.job): (Ready) (update) Notifica di interruzione del servizio per Microsoft Windows XP - Accesso.job - C:\WINDOWS\system32\xp_eos.exe -c
O22 - Task (.job): (Ready) (update) Notifica di interruzione del servizio per Microsoft Windows XP - Mensile.job - C:\WINDOWS\system32\xp_eos.exe
O22 - Task (.job): (Ready) ASC_PerformanceMonitor.job - C:\Programmi\IObit\Advanced SystemCare\Monitor.exe /Task
O22 - Task (.job): (Ready) User_Feed_Synchronization-{ACA043C2-7F69-48FC-AD8A-6F994006E6E9}.job - C:\WINDOWS\system32\msfeedssync.exe sync
O22 - Task (.job): (disabled) (Ready) Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O22 - Task (.job): (disabled) Adobe Flash Player NPAPI Notifier.job - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe -check plugin
O22 - Task (.job): (disabled) GoogleUpdateTaskMachineUA.job - C:\Programmi\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task (.job): AppleSoftwareUpdate.job - C:\Programmi\Apple Software Update\SoftwareUpdate.exe -task
O22 - Task (.job): CCleaner Update.job - C:\CCUpdate.exe
O22 - Task (.job): GoogleUpdateTaskMachineCore.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1cff0ef48e92e48.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0007f4717f686.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0421fa823f9b6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d09163ee4a3598.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0f14230708d44.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d12d068d639f28.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d15e24c783ba2c.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d1ab54d2c771c6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d20f45463c1f0e.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2592212d50078.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2b107d64426e6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2c19e8a429f82.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d35d2b3c84ca3e.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d3edf9c9b7ca42.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d49833c9f14b98.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d4e55155b48996.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d50adac2432028.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d57d534fbe769c.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d593a734a307be.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d5b2024ce4acd2.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d5dc1193da0c4b.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): MP Scheduled Scan.job - C:\Programmi\Windows Defender\MpCmdRun.exe Scan -RestrictPrivileges
O22 - Task (.job): MyDefrag v4.3.1 Daily.job - C:\Programmi\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD
O22 - Task (.job): MyDefrag v4.3.1 Monthly.job - C:\Programmi\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD
O23 - Service R2: Advanced SystemCare Service 13 - (AdvancedSystemCareService13) - C:\Programmi\IObit\Advanced SystemCare\ASCService.exe
O23 - Service R2: EPSON Printer Status Agent2 - (EPSONStatusAgent2) - C:\Programmi\File comuni\EPSON\eEBAPI\SAgent2.exe
O23 - Service R2: EpsonBidirectionalService - C:\Programmi\File comuni\EPSON\eEBAPI\eEBSVC.exe
O23 - Service R2: FsUsbExService - C:\WINDOWS\system32\FsUsbExService.Exe
O23 - Service R2: Panda Devices Agent - (PandaAgent) - C:\Programmi\Panda Security\Panda Devices Agent\AgentSvc.exe
O23 - Service R2: Panda Product Service - (PSUAService) - C:\Programmi\Panda Security\Panda Security Protection\PSUAService.exe
O23 - Service R2: Panda Protection Service - (NanoServiceMain) - C:\Programmi\Panda Security\Panda Security Protection\PSANHost.exe
O23 - Service R2: Samsung Printer Dianostics Service - C:\WINDOWS\system32\\spdsvc.exe
O23 - Service R2: Samsung UPD Utility Service - (SamsungUPDUtilSvc) - C:\WINDOWS\system32\SecUPDUtilSvc.exe
O23 - Service R2: Sentinel LDK License Manager - (hasplms) - C:\WINDOWS\system32\hasplms.exe -run
O23 - Service S2: Google Update Service (gupdate1c9e667abcd1cc0) - (gupdate1c9e667abcd1cc0) - C:\Programmi\Google\Update\GoogleUpdate.exe /svc
O23 - Service S2: IObit Uninstaller Service - (IObitUnSvr) - C:\Programmi\IObit\IObit Uninstaller\IUService.exe
O23 - Service S2: Media Center Extender Service - (McrdSvc) - C:\WINDOWS\ehome\mcrdsvc.exe
O23 - Service S2: NVIDIA Display Driver Service - (NVSvc) - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Office Source Engine - (ose) - C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Programmi\Google\Update\GoogleUpdate.exe /medsvc

End of file - Time spent: 47,3 sec. - 28406 bytes, CRC32: FFFFFFFF. Sign: 瀀띉

Inviato: Sunday, March 15, 2020 12:02:11 AM

Inviato: Sunday, March 15, 2020 11:23:22 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Per disattivare i programmi in Avvio Automatico in modo semplice, usa ccleaner, vai in Strumenti/Avvio, seleziona tutte le voci che trovi, tranne l'antivirus, fai doppio clic su ognuna, una alla volta, e viene disattivato, sulla parte sinistra vedrai la voce SI diventare NO.

Intanto fai le seguenti scansioni:

Scarica Adwcleaner sul desktop: Chiudi tutti i browser (è importante IE,Firefox Chrome ecc...)
Clicca sul pulsante "Analisi".
Finita la scansione clicca su "Pulizia"
Conferma con OK le varie finestre che ti compariranno.
Riavvia il pc e uscirà il log con le eliminazioni.
Postalo qui.
ADW crea un backup dei files e delle impostazioni eliminati, si trova in "C:\AdwCleaner\Quarantine" in modo da consentire l'eventuale ripristino di dati erroneamente cancellati.
Per il ripristino, aprire il programma>Strumenti>Gestione quarantena>Ripristino.

Scarica Junkware Removal Tool sul desktop.,1.html
Disattiva temporaneamente l'antivirus per evitare potenziali conflitti.
Doppio click su JRT
Lo strumento si aprirà e avvierà la scansione del sistema.
Devi avere pazienza in quanto questo tool può richiedere del tempo per completare la scansione .
Al termine, un log (JRT.txt) viene salvato sul desktop e si aprirà automaticamente.
Postalo qui.
Poi rifai una scansione con HJT e posta il nuovo log, poi ti dico cosa fare.
Inviato: Sunday, March 15, 2020 12:23:35 PM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 318
cbbusto ha scritto:

Scarica Junkware Removal Tool sul desktop.,1.html
Disattiva temporaneamente l'antivirus per evitare potenziali conflitti.
Doppio click su JRT
Lo strumento si aprirà e avvierà la scansione del sistema.
Devi avere pazienza in quanto questo tool può richiedere del tempo per completare la scansione .
Al termine, un log (JRT.txt) viene salvato sul desktop e si aprirà automaticamente.
Postalo qui.
Poi rifai una scansione con HJT e posta il nuovo log, poi ti dico cosa fare.

Non trovo in rete JRT

trovo questo messaggio
Interruzione della fornitura di Junkware Removal Tool

Malwarebytes ha deciso di interrompere la fornitura di Junkware Removal Tool (JRT), designando il 26 ottobre 2017 come data di fine manutenzione.

Sebbene questa non sia una decisione facile, abbiamo deciso che concentrarsi sulla continua evoluzione degli altri pluripremiati prodotti per la sicurezza è nel migliore interesse sia di Malwarebytes sia dei nostri clienti.

e' stato eseguito ha trovato 28 elementi non nocivi

# AdwCleaner v6.047 - Creato file registro eventi 15/03/2020 in 10:13:07
# Aggiornato su 19/05/2017 da Malwarebytes
# Database : 2017-05-19.1 [Locale]
# Sistema operativo : Microsoft Windows XP Service Pack 3 (X86)
# In esecuzione da : C:\Documents and Settings\PINO AL\Impostazioni locali\Temp\Rar$EX00.469\adwcleaner_6.047.exe
# Modo: analisi
# Supporto :

***** [ Servizi ] *****

Nessun servizio malevolo trovato.

***** [ Cartelle ] *****

Cartella trovata: C:\Documents and Settings\All Users\Dati applicazioni\IObit\ASCDownloader
Cartella trovata: C:\Documents and Settings\All Users\Dati applicazioni\IObit\Advanced SystemCare
Cartella trovata: C:\Documents and Settings\All Users\Menu Avvio\Programmi\Advanced SystemCare
Cartella trovata: C:\Programmi\pandasecuritytb
Cartella trovata: C:\Programmi\Panda Security URL Filtering
Cartella trovata: C:\Programmi\IObit\Advanced SystemCare
Cartella trovata: C:\Programmi\File comuni\IObit\Advanced SystemCare

***** [ File ] *****

Nessun file malevolo trovato.

***** [ DLL ] *****

Nessuna DLL malevola trovata.

***** [ WMI ] *****

Nessuna chiave malevola trovata.

***** [ Collegamenti ] *****

Nessun collegamento infettato trovato.

***** [ Attività pianificate ] *****

Nessuna attivita malevola trovata.

***** [ Registro ] *****

Chiave trovata: HKLM\SOFTWARE\Classes\ASCExtMenu.CExtMenu
Chiave trovata: HKLM\SOFTWARE\Classes\ASCExtMenu.CExtMenu.1
Chiave trovata: HKU\S-1-5-21-1927553723-2818758206-392735008-1005\Software\PRODUCTSETUP
Chiave trovata: HKU\S-1-5-21-1927553723-2818758206-392735008-1005\Software\Smart PC Solutions
Chiave trovata: HKU\S-1-5-21-1927553723-2818758206-392735008-1005\Software\csastats
Chiave trovata: HKCU\Software\PRODUCTSETUP
Chiave trovata: HKCU\Software\Smart PC Solutions
Chiave trovata: HKCU\Software\csastats
Chiave trovata: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Eusing Free Registry Cleaner
Chiave trovata: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare_is1
Dato trovato: HKU\S-1-5-21-1927553723-2818758206-392735008-1005\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://
Dato trovato: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://
Chiave trovata: HKU\S-1-5-21-1927553723-2818758206-392735008-1005\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Dato trovato: HKU\S-1-5-21-1927553723-2818758206-392735008-1005\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Chiave trovata: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Dato trovato: HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Chiave trovata: HKLM\SOFTWARE\Google\Chrome\Extensions\fagakgcelolinfnkfgekcnedpaklfcok

***** [ Browser web ] *****

Nessun elemento browser Firefox malevolo trovato.
Nessun elemento browser Chromium malevolo trovato.


C:\AdwCleaner\AdwCleaner[C10].txt - [5079 Byte] - [06/05/2019 21:41:20]
C:\AdwCleaner\AdwCleaner[C11].txt - [5298 Byte] - [11/09/2019 23:16:50]
C:\AdwCleaner\AdwCleaner[C17].txt - [6459 Byte] - [24/09/2015 15:30:07]
C:\AdwCleaner\AdwCleaner[C18].txt - [3558 Byte] - [30/09/2015 10:33:52]
C:\AdwCleaner\AdwCleaner[C19].txt - [8495 Byte] - [12/11/2015 14:28:05]
C:\AdwCleaner\AdwCleaner[C1].txt - [8993 Byte] - [13/02/2016 14:31:25]
C:\AdwCleaner\AdwCleaner[C20].txt - [3674 Byte] - [21/11/2015 12:56:01]
C:\AdwCleaner\AdwCleaner[C6].txt - [4443 Byte] - [01/10/2016 23:57:47]
C:\AdwCleaner\AdwCleaner[C7].txt - [4490 Byte] - [17/10/2016 20:33:08]
C:\AdwCleaner\AdwCleaner[C8].txt - [5274 Byte] - [02/01/2017 11:37:13]
C:\AdwCleaner\AdwCleaner[C9].txt - [5234 Byte] - [23/04/2019 23:00:47]
C:\AdwCleaner\AdwCleaner[R0].txt - [5904 Byte] - [16/10/2013 19:19:15]
C:\AdwCleaner\AdwCleaner[R10].txt - [2283 Byte] - [23/11/2014 12:51:31]
C:\AdwCleaner\AdwCleaner[R11].txt - [3167 Byte] - [10/12/2014 12:57:20]
C:\AdwCleaner\AdwCleaner[R12].txt - [2517 Byte] - [15/12/2014 01:11:47]
C:\AdwCleaner\AdwCleaner[R13].txt - [7426 Byte] - [28/01/2015 15:06:48]
C:\AdwCleaner\AdwCleaner[R14].txt - [2904 Byte] - [12/02/2015 11:15:24]
C:\AdwCleaner\AdwCleaner[R15].txt - [3339 Byte] - [25/03/2015 18:22:53]
C:\AdwCleaner\AdwCleaner[R1].txt - [1305 Byte] - [14/12/2013 19:52:15]
C:\AdwCleaner\AdwCleaner[R2].txt - [2529 Byte] - [01/01/2014 11:36:02]
C:\AdwCleaner\AdwCleaner[R3].txt - [1499 Byte] - [15/01/2014 10:03:45]
C:\AdwCleaner\AdwCleaner[R4].txt - [4558 Byte] - [08/02/2014 22:01:06]
C:\AdwCleaner\AdwCleaner[R5].txt - [1619 Byte] - [10/02/2014 12:06:35]
C:\AdwCleaner\AdwCleaner[R6].txt - [3576 Byte] - [15/03/2014 16:20:57]
C:\AdwCleaner\AdwCleaner[R7].txt - [3319 Byte] - [25/10/2014 12:36:29]
C:\AdwCleaner\AdwCleaner[R8].txt - [3803 Byte] - [05/11/2014 09:51:43]
C:\AdwCleaner\AdwCleaner[R9].txt - [2812 Byte] - [22/11/2014 15:34:27]
C:\AdwCleaner\AdwCleaner[S0].txt - [6021 Byte] - [16/10/2013 19:22:15]
C:\AdwCleaner\AdwCleaner[S10].txt - [2353 Byte] - [23/11/2014 12:57:49]
C:\AdwCleaner\AdwCleaner[S11].txt - [2973 Byte] - [10/12/2014 13:08:45]
C:\AdwCleaner\AdwCleaner[S12].txt - [2587 Byte] - [15/12/2014 01:16:52]
C:\AdwCleaner\AdwCleaner[S13].txt - [7541 Byte] - [28/01/2015 15:12:19]
C:\AdwCleaner\AdwCleaner[S14].txt - [3132 Byte] - [12/02/2015 11:20:49]
C:\AdwCleaner\AdwCleaner[S15].txt - [3422 Byte] - [25/03/2015 18:34:15]
C:\AdwCleaner\AdwCleaner[S17].txt - [6208 Byte] - [24/09/2015 15:25:32]
C:\AdwCleaner\AdwCleaner[S18].txt - [3487 Byte] - [30/09/2015 10:28:19]
C:\AdwCleaner\AdwCleaner[S19].txt - [8175 Byte] - [12/11/2015 14:17:56]
C:\AdwCleaner\AdwCleaner[S1].txt - [10161 Byte] - [14/12/2013 19:54:45]
C:\AdwCleaner\AdwCleaner[S20].txt - [8175 Byte] - [12/11/2015 14:25:07]
C:\AdwCleaner\AdwCleaner[S21].txt - [3564 Byte] - [21/11/2015 12:51:31]
C:\AdwCleaner\AdwCleaner[S22].txt - [4460 Byte] - [01/10/2016 23:50:44]
C:\AdwCleaner\AdwCleaner[S23].txt - [4584 Byte] - [01/10/2016 23:54:39]
C:\AdwCleaner\AdwCleaner[S24].txt - [4637 Byte] - [17/10/2016 20:32:40]
C:\AdwCleaner\AdwCleaner[S25].txt - [5244 Byte] - [02/01/2017 11:32:47]
C:\AdwCleaner\AdwCleaner[S26].txt - [5321 Byte] - [02/01/2017 11:36:55]
C:\AdwCleaner\AdwCleaner[S27].txt - [5304 Byte] - [23/04/2019 23:00:27]
C:\AdwCleaner\AdwCleaner[S28].txt - [5073 Byte] - [24/04/2019 23:33:04]
C:\AdwCleaner\AdwCleaner[S29].txt - [5146 Byte] - [28/04/2019 09:09:34]
C:\AdwCleaner\AdwCleaner[S2].txt - [2612 Byte] - [01/01/2014 11:38:43]
C:\AdwCleaner\AdwCleaner[S30].txt - [5219 Byte] - [02/05/2019 11:50:31]
C:\AdwCleaner\AdwCleaner[S31].txt - [5292 Byte] - [06/05/2019 21:41:08]
C:\AdwCleaner\AdwCleaner[S32].txt - [5438 Byte] - [09/05/2019 23:48:04]
C:\AdwCleaner\AdwCleaner[S33].txt - [5511 Byte] - [11/09/2019 23:16:41]
C:\AdwCleaner\AdwCleaner[S34].txt - [7508 Byte] - [15/03/2020 10:13:07]
C:\AdwCleaner\AdwCleaner[S3].txt - [1568 Byte] - [15/01/2014 10:06:03]
C:\AdwCleaner\AdwCleaner[S4].txt - [4703 Byte] - [08/02/2014 22:03:21]
C:\AdwCleaner\AdwCleaner[S5].txt - [1680 Byte] - [10/02/2014 12:09:00]
C:\AdwCleaner\AdwCleaner[S6].txt - [2986 Byte] - [15/03/2014 16:24:24]
C:\AdwCleaner\AdwCleaner[S7].txt - [3392 Byte] - [25/10/2014 12:41:43]
C:\AdwCleaner\AdwCleaner[S8].txt - [3897 Byte] - [05/11/2014 09:54:45]
C:\AdwCleaner\AdwCleaner[S9].txt - [2893 Byte] - [22/11/2014 15:38:31]

########## EOF - C:\AdwCleaner\AdwCleaner[S34].txt - [8085 Byte] ##########

Inviato: Sunday, March 15, 2020 2:36:58 PM

Rank: AiutAmico

Iscritto dal : 10/27/2006
Posts: 9,636
clicca su ultima versione (in verde)
Inviato: Sunday, March 15, 2020 4:05:04 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Per JRT segui l'indicazione di giza, io avevo ancora il vecchio link, quello che ha trovato Adwcleaner devi eliminarlo, clicca su pulizia.
Hai disattivato i programmi in Avvio con Ccleaner?
Fai anche questa pulizia del Registro:

Per una pulizia profonda del registro, usa Eusing Free Registry Cleaner sw da usare saltuariamente, lo scarichi da qui:
clic su Download Site1, una volta lanciato appare una finestra che chiede il codice, clic su ignora e procedi, poi in alto a sinistra clic su Analizza Registro, lascia fare fino alla fine non ti preoccupare se trova molte voci, poi clicca su Ripara Registro, il sw è sicuro comunque crea un punto di ripristino e fa anche il backup dei file eliminati infatti in alto sotto ripara registro si trova la voce Ripristina Registro.
Per fare questa pulizia meglio chiudere tutti i programmi e disconnesso.
Il programma è compatibile con tutti i S.O. windows compreso win 10 e XP.

Quando hai finito rifai una scansione con Jht e posta il nuovo log, poi ti dico cosa devi fare.
Inviato: Monday, March 16, 2020 10:11:03 AM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 318
Eseguito regolarmente JRT
ecco LOG

Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Microsoft Windows XP x86
Ran by PINO AL (Administrator) on 16/03/2020 at 9.54.53,59

File System: 3

Successfully deleted: C:\Documents and Settings\PINO AL\Dati applicazioni\Mozilla\Firefox\Profiles\6l3flwwl.default\searchplugins\avast-search.xml (File)
Successfully deleted: C:\Documents and Settings\PINO AL\Start Menu\Programs\browser manager (Folder)
Successfully deleted: C:\WINDOWS\wininit.ini (File)

Deleted the following from C:\Documents and Settings\PINO AL\Dati applicazioni\Mozilla\Firefox\Profiles\6l3flwwl.default\prefs.js
user_pref(browser.uiCustomization.state, {\placements\:{\PanelUI-contents\:[\edit-controls\,\zoom-controls\,\new-window-button\,\privatebrowsing-button\,\save-
user_pref(, Search The Web);
user_pref(browser.startup.homepage, hxxp://

Registry: 3

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value)

Scan was completed on 16/03/2020 at 10.00.39,28
End of JRT log

Rettificato OPZIONI AVVIO con CCleaner

rifatto LOG HJ

Logfile of HiJackThis Fork by Alex Dragokas v.

Platform: x32 Windows XP (Media Center Edition), 5.1.2600.0, Service Pack: 3
Time: 16.03.2020 - 10:04 (UTC+01:00)
Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)
Ran by: PINO AL (group: Administrator) on PINODESKTOP, FirstRun: yes

Chrome: 49.0.2623.112
Internet Explorer: 8.0.6001.18702
Default: "C:\Programmi\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)

Boot mode: Normal

Running processes:
Number | Path
1 C:\Documents and Settings\PINO AL\Desktop\ANTVIRUS - SPYWARE MALWARE\HiJackThis.exe
1 C:\Programmi\File comuni\EPSON\eEBAPI\SAgent2.exe
1 C:\Programmi\File comuni\EPSON\eEBAPI\eEBSVC.exe
5 C:\Programmi\Google\Chrome\Application\chrome.exe
1 C:\Programmi\Google\Update\\GoogleCrashHandler.exe
1 C:\Programmi\Google\Update\GoogleUpdate.exe
1 C:\Programmi\IObit\Advanced SystemCare\ASCService.exe
1 C:\Programmi\IObit\Advanced SystemCare\Monitor.exe
1 C:\Programmi\IObit\IObit Uninstaller\UninstallMonitor.exe
1 C:\Programmi\Panda Security\Panda Devices Agent\AgentSvc.exe
1 C:\Programmi\Panda Security\Panda Security Protection\PSANHost.exe
1 C:\Programmi\Panda Security\Panda Security Protection\PSUAService.exe
1 C:\WINDOWS\Explorer.EXE
1 C:\WINDOWS\System32\smss.exe
1 C:\WINDOWS\eHome\ehRecvr.exe
1 C:\WINDOWS\eHome\ehSched.exe
1 C:\WINDOWS\system32\FsUsbExService.Exe
1 C:\WINDOWS\system32\SecUPDUtilSvc.exe
1 C:\WINDOWS\system32\csrss.exe
1 C:\WINDOWS\system32\dllhost.exe
1 C:\WINDOWS\system32\hasplms.exe
1 C:\WINDOWS\system32\lsass.exe
1 C:\WINDOWS\system32\services.exe
1 C:\WINDOWS\system32\spdsvc.exe
1 C:\WINDOWS\system32\spoolsv.exe
7 C:\WINDOWS\system32\svchost.exe
1 C:\WINDOWS\system32\winlogon.exe
1 C:\WINDOWS\system32\wuauclt.exe

R0 - HKCU\Software\Microsoft\Internet Connection Wizard: [ShellNext] = iexplore
R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page Redirect Cache] =
R3 - HKCU\..\URLSearchHooks: (no name) - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - (no file)
R3 - HKU\.DEFAULT\..\URLSearchHooks: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [URL] ={searchTerms}&{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [SuggestionsURL] ={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [URL] ={searchTerms}&{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google
O1 - Hosts: is empty
O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programmi\Java\jre1.8.0_60\bin\jp2ssv.dll
O2 - HKLM\..\BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programmi\Java\jre1.8.0_60\bin\ssv.dll
O4 - HKCU\Control Panel\Desktop: [SCRNSAVE.EXE] = C:\WINDOWS\system32\Acquario.scr
O4 - MSConfig\startupfolder: C:^Documents and Settings^PINO AL^Menu Avvio^Programmi^Esecuzione automatica^Spamihilator.lnk [backup] => C:\Programmi\Spamihilator\spamihilator.exe (2015/02/12) (file missing)
O4 - MSConfig\startupreg: Adobe ARM [command] = C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe (HKLM) (2014/09/30)
O4 - MSConfig\startupreg: Advanced SystemCare [command] = C:\Programmi\IObit\Advanced SystemCare\ASCTray.exe /Auto (HKCU) (2020/03/15)
O4 - MSConfig\startupreg: CCleaner Monitoring [command] = C:\Programmi\CCleaner\ccleaner.exe /MONITOR (HKCU) (2017/01/05)
O4 - MSConfig\startupreg: EEDSpeedLauncher [command] = C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\eed_ec.dll,SpeedLauncher (HKCU) (2017/01/05)
O4 - MSConfig\startupreg: MSMSGS [command] = C:\Programmi\Messenger\msmsgs.exe /background (HKCU) (2015/02/12)
O4 - MSConfig\startupreg: PSUAMain [command] = C:\Programmi\Panda Security\Panda Security Protection\PSUAMain.exe /LaunchSysTray (HKLM) (2020/03/15)
O4 - MSConfig\startupreg: QuickTime Task [command] = C:\Programmi\QuickTime\qttask.exe -atboottime (HKLM) (2017/01/05)
O4 - MSConfig\startupreg: SunJavaUpdateSched [command] = C:\Programmi\File comuni\Java\Java Update\jusched.exe (HKLM) (2014/11/26)
O4 - MSConfig\startupreg: WallpaperHd [command] = C:\Documents and Settings\PINO AL\Impostazioni locali\Dati applicazioni\WallpaperHd\WallpaperHd.exe /regrun (HKCU) (2020/03/15)
O4 - MSConfig\startupreg: ctfmon.exe [command] = C:\WINDOWS\system32\ctfmon.exe (HKCU) (2015/02/12)
O14 - IERESET.INF: [Strings] START_PAGE_URL = file://C:\APPS\IE\offline\it.htm
O15 - Trusted Zone:
O15 - Trusted Zone:
O16 - DPF: HKLM\..\{8AD9C840-044E-11D1-B3E9-00805F499D93}\DownloadInformation: Java Plug-in 11.60.2 [CODEBASE] =
O16 - DPF: HKLM\..\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.5.0_16 [CODEBASE] =
O16 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_67 [CODEBASE] =
O16 - DPF: HKLM\..\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 11.60.2 [CODEBASE] =
O17 - DHCP DNS 1:
O21 - HKLM\..\ShellExecuteHooks: [{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}] - ShellExecuteHook antimalware di Microsoft - C:\Programmi\Windows Defender\MpShHook.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt1: DropboxExt - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt2: DropboxExt - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt3: DropboxExt - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt4: DropboxExt - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - C:\Documents and Settings\PINO AL\Dati applicazioni\Dropbox\bin\DropboxExt.22.dll
O22 - ScheduledTask: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O22 - ScheduledTask: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - Task (.job): (Ready) (update) Notifica di interruzione del servizio per Microsoft Windows XP - Accesso.job - C:\WINDOWS\system32\xp_eos.exe -c
O22 - Task (.job): (Ready) (update) Notifica di interruzione del servizio per Microsoft Windows XP - Mensile.job - C:\WINDOWS\system32\xp_eos.exe
O22 - Task (.job): (Ready) ASC_PerformanceMonitor.job - C:\Programmi\IObit\Advanced SystemCare\Monitor.exe /Task
O22 - Task (.job): (Ready) User_Feed_Synchronization-{ACA043C2-7F69-48FC-AD8A-6F994006E6E9}.job - C:\WINDOWS\system32\msfeedssync.exe sync
O22 - Task (.job): (disabled) (Ready) Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O22 - Task (.job): (disabled) Adobe Flash Player NPAPI Notifier.job - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe -check plugin
O22 - Task (.job): (disabled) GoogleUpdateTaskMachineUA.job - C:\Programmi\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task (.job): AppleSoftwareUpdate.job - C:\Programmi\Apple Software Update\SoftwareUpdate.exe -task
O22 - Task (.job): CCleaner Update.job - C:\CCUpdate.exe
O22 - Task (.job): GoogleUpdateTaskMachineCore.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1cff0ef48e92e48.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0007f4717f686.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0421fa823f9b6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d09163ee4a3598.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0f14230708d44.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d12d068d639f28.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d15e24c783ba2c.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d1ab54d2c771c6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d20f45463c1f0e.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2592212d50078.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2b107d64426e6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2c19e8a429f82.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d35d2b3c84ca3e.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d3edf9c9b7ca42.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d49833c9f14b98.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d4e55155b48996.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d50adac2432028.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d57d534fbe769c.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d593a734a307be.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d5b2024ce4acd2.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d5dc1193da0c4b.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): MP Scheduled Scan.job - C:\Programmi\Windows Defender\MpCmdRun.exe Scan -RestrictPrivileges
O22 - Task (.job): MyDefrag v4.3.1 Daily.job - C:\Programmi\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD
O22 - Task (.job): MyDefrag v4.3.1 Monthly.job - C:\Programmi\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD
O23 - Service R2: Advanced SystemCare Service 13 - (AdvancedSystemCareService13) - C:\Programmi\IObit\Advanced SystemCare\ASCService.exe
O23 - Service R2: EPSON Printer Status Agent2 - (EPSONStatusAgent2) - C:\Programmi\File comuni\EPSON\eEBAPI\SAgent2.exe
O23 - Service R2: EpsonBidirectionalService - C:\Programmi\File comuni\EPSON\eEBAPI\eEBSVC.exe
O23 - Service R2: FsUsbExService - C:\WINDOWS\system32\FsUsbExService.Exe
O23 - Service R2: Panda Devices Agent - (PandaAgent) - C:\Programmi\Panda Security\Panda Devices Agent\AgentSvc.exe
O23 - Service R2: Panda Product Service - (PSUAService) - C:\Programmi\Panda Security\Panda Security Protection\PSUAService.exe
O23 - Service R2: Panda Protection Service - (NanoServiceMain) - C:\Programmi\Panda Security\Panda Security Protection\PSANHost.exe
O23 - Service R2: Samsung Printer Dianostics Service - C:\WINDOWS\system32\\spdsvc.exe
O23 - Service R2: Samsung UPD Utility Service - (SamsungUPDUtilSvc) - C:\WINDOWS\system32\SecUPDUtilSvc.exe
O23 - Service R2: Sentinel LDK License Manager - (hasplms) - C:\WINDOWS\system32\hasplms.exe -run
O23 - Service S2: Google Update Service (gupdate1c9e667abcd1cc0) - (gupdate1c9e667abcd1cc0) - C:\Programmi\Google\Update\GoogleUpdate.exe /svc
O23 - Service S2: IObit Uninstaller Service - (IObitUnSvr) - C:\Programmi\IObit\IObit Uninstaller\IUService.exe
O23 - Service S2: Media Center Extender Service - (McrdSvc) - C:\WINDOWS\ehome\mcrdsvc.exe
O23 - Service S2: NVIDIA Display Driver Service - (NVSvc) - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Office Source Engine - (ose) - C:\Programmi\File comuni\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Programmi\Google\Update\GoogleUpdate.exe /medsvc

End of file - Time spent: 49,3 sec. - 26782 bytes, CRC32: FFFFFFFF. Sign: ᛿诅

Inviato: Monday, March 16, 2020 1:54:26 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
In avvio ci sono ancora delle voci, ma non è un problema.
Come pagina iniziale non usare msn meglio mettere Google.

Ora apri HJT clic sulla seconda voce fixa ed elimina le seguenti voci:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page Redirect Cache] =
R3 - HKCU\..\URLSearchHooks: (no name) - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - (no file)
R3 - HKU\.DEFAULT\..\URLSearchHooks: (no name) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - (no file)
R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [SuggestionsURL] ={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google

R4 - SearchScopes: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{E91284D3-4CE8-4AB4-8679-57737269AD33}: [URL] ={searchTerms}&{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 - Google

O1 - Hosts: is empty
O14 - IERESET.INF: [Strings] START_PAGE_URL = file://C:\APPS\IE\offline\it.htm
O16 - DPF: HKLM\..\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.5.0_16 [CODEBASE] =

O16 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_67 [CODEBASE] =

O16 - DPF: HKLM\..\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 11.60.2 [CODEBASE] =

O22 - ScheduledTask: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O22 - ScheduledTask: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - Task (.job): (Ready) (update) Notifica di interruzione del servizio per Microsoft Windows XP - Accesso.job - C:\WINDOWS\system32\xp_eos.exe -c
O22 - Task (.job): (Ready) (update) Notifica di interruzione del servizio per Microsoft Windows XP - Mensile.job - C:\WINDOWS\system32\xp_eos.exe
O22 - Task (.job): (Ready) ASC_PerformanceMonitor.job - C:\Programmi\IObit\Advanced SystemCare\Monitor.exe /Task
O22 - Task (.job): (Ready) User_Feed_Synchronization-{ACA043C2-7F69-48FC-AD8A-6F994006E6E9}.job - C:\WINDOWS\system32\msfeedssync.exe sync
O22 - Task (.job): (disabled) (Ready) Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O22 - Task (.job): (disabled) Adobe Flash Player NPAPI Notifier.job - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe -check plugin
O22 - Task (.job): (disabled) GoogleUpdateTaskMachineUA.job - C:\Programmi\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task (.job): AppleSoftwareUpdate.job - C:\Programmi\Apple Software Update\SoftwareUpdate.exe -task
O22 - Task (.job): CCleaner Update.job - C:\CCUpdate.exe
O22 - Task (.job): GoogleUpdateTaskMachineCore.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1cff0ef48e92e48.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0007f4717f686.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0421fa823f9b6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d09163ee4a3598.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d0f14230708d44.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d12d068d639f28.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d15e24c783ba2c.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d1ab54d2c771c6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d20f45463c1f0e.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2592212d50078.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2b107d64426e6.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d2c19e8a429f82.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d35d2b3c84ca3e.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d3edf9c9b7ca42.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d49833c9f14b98.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d4e55155b48996.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d50adac2432028.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d57d534fbe769c.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d593a734a307be.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d5b2024ce4acd2.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): GoogleUpdateTaskMachineCore1d5dc1193da0c4b.job - C:\Programmi\Google\Update\GoogleUpdate.exe /c
O22 - Task (.job): MP Scheduled Scan.job - C:\Programmi\Windows Defender\MpCmdRun.exe Scan -RestrictPrivileges
O22 - Task (.job): MyDefrag v4.3.1 Daily.job - C:\Programmi\MyDefrag v4.3.1\Scripts\AutomaticDaily.MyD
O22 - Task (.job): MyDefrag v4.3.1 Monthly.job - C:\Programmi\MyDefrag v4.3.1\Scripts\AutomaticMonthly.MyD
Tutte voci inutili e alle volte pericolose.
Nientaltro, fatto questo derei che sei a posto. dimmi se va tutto bene. Ciao
Inviato: Monday, March 16, 2020 5:10:07 PM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 318
Inviato: Monday, March 16, 2020 5:34:41 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
reartu46 ha scritto:

sono contento di essere stato d'aiuto.
Utenti presenti in questo topic

Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another versione (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another All rights reserved.