Aiutamici Forum
Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

PC lento ... PREGO CONTROLLO LOG Opzioni
reartu46
Inviato: Wednesday, November 18, 2020 1:53:45 AM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 298
Ciao a tutti
da qualche giorno il PC sembra inchiodato
Avevo una quarantina di HOST e li ho fixati
Potete controllarmi il LOG
grazie

Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18

Platform: x64 Windows 10 (Home), 10.0.18363.1198 (ReleaseId: 1909), Service Pack: 0
Time: 18.11.2020 - 01:50 (UTC+01:00)
Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)
Elevated: Yes
Ran by: PINO AL (group: Administrator) on PINOAL-TOSH, FirstRun: no

Chrome: 86.0.4240.198
Firefox: 72.0.2.7321
Edge: 11.0.18362.1171
Internet Explorer: 11.0.18362.1
Default: "C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe" --single-argument %1 (CCleaner Browser)

Boot mode: Normal

Running processes:
Number | Path
1 C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler.exe
1 C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler64.exe
1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
1 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
1 C:\Program Files (x86)\INet\BackgroundService\ServiceManager.exe
1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
1 C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe
1 C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
1 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
1 C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
1 C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
1 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
1 C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
1 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
1 C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20090.1002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
1 C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20101.99.0_x64__8wekyb3d8bbwe\YourPhone.exe
1 C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20082.10421.0_x64__8wekyb3d8bbwe\Video.UI.exe
1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe
1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe
1 C:\Users\PINO AL\Desktop\ANTIVIRUS MALWARE SPYWARE\HiJackThis\HiJackThis.exe
1 C:\Windows\ImmersiveControlPanel\SystemSettings.exe
2 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
1 C:\Windows\SysWOW64\SecUPDUtilSvc.exe
1 C:\Windows\SysWOW64\spdsvc.exe
1 C:\Windows\System32\ApplicationFrameHost.exe
2 C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\DSDFunctionKeyCtlService.exe
1 C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\RMService.exe
8 C:\Windows\System32\RuntimeBroker.exe
1 C:\Windows\System32\SearchIndexer.exe
1 C:\Windows\System32\SecurityHealthService.exe
1 C:\Windows\System32\SecurityHealthSystray.exe
1 C:\Windows\System32\SettingSyncHost.exe
1 C:\Windows\System32\SgrmBroker.exe
1 C:\Windows\System32\TODDSrv.exe
1 C:\Windows\System32\WUDFHost.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\ctfmon.exe
1 C:\Windows\System32\dwm.exe
2 C:\Windows\System32\fontdrvhost.exe
1 C:\Windows\System32\hasplms.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\mqsvc.exe
1 C:\Windows\System32\oobe\UserOOBEBroker.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\sihost.exe
1 C:\Windows\System32\smartscreen.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\snmp.exe
1 C:\Windows\System32\spoolsv.exe
87 C:\Windows\System32\svchost.exe
1 C:\Windows\System32\taskhostw.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
1 C:\Windows\explorer.exe
1 C:\lotus\smartctr\smartctr.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://news.google.it/
O2 - HKLM\..\BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll
O2 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\BHO\ie_to_edge_bho_64.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_241\bin\jp2ssv.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_241\bin\ssv.dll
O2-32 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\BHO\ie_to_edge_bho.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_241\bin\jp2ssv.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_241\bin\ssv.dll
O2-32 - HKLM\..\BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O4 - HKCU\..\RunOnce: [Application Restart #1] = C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --restore-last-session -- https://www.facebook.com/sharer/sharer.php?u=https://quifinanza.it/casa/bonus-ristrutturazioni-detrazione-valida-anche-senza-comunicazione-enea/270591/
O4 - HKCU\..\StartupApproved\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (2020/03/16)
O4 - HKLM\..\Run: [SecurityHealth] = C:\WINDOWS\system32\SecurityHealthSystray.exe
O4 - HKLM\..\StartupApproved\Run: [HotKeysCmds] = C:\WINDOWS\system32\hkcmd.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [IgfxTray] = C:\WINDOWS\system32\igfxtray.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [Persistence] = C:\WINDOWS\system32\igfxpers.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [RtHDVBg] = C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [RtHDVCpl] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s (2020/04/14)
O4 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\RunOnce: [WAB Migrate] = C:\Program Files\Windows Mail\wab.exe /Upgrade (User 'DefaultAppPool')
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Open With JPEGCompress: (default) = C:\Program Files (x86)\JPEGCompress\owjc.dll
O9-32 - Button: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Inserisci blog - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9-32 - Tools menu item: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Inserisci &blog in Windows Live Writer - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [@ivt] protocol is in Unknown Zone, should be Intranet Zone (User: 'DefaultAppPool')
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [file] protocol is in Unknown Zone, should be Internet Zone (User: 'DefaultAppPool')
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [ftp] protocol is in Unknown Zone, should be Internet Zone (User: 'DefaultAppPool')
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [http] protocol is in Unknown Zone, should be Internet Zone (User: 'DefaultAppPool')
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [https] protocol is in Unknown Zone, should be Internet Zone (User: 'DefaultAppPool')
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [knownfolder] protocol is in Unknown Zone, should be My Computer Zone (User: 'DefaultAppPool')
O15 - HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\ProtocolDefaults: - [shell] protocol is in Unknown Zone, should be My Computer Zone (User: 'DefaultAppPool')
O16-32 - DPF: HKLM\..\{8AD9C840-044E-11D1-B3E9-00805F499D93}\DownloadInformation: Java Plug-in 11.241.2 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0055-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_55 [CODEBASE] = http://java.sun.com/update/1.7.0/jinstall-1_7_0_55-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_67 [CODEBASE] = http://java.sun.com/update/1.7.0/jinstall-1_7_0_67-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.8.0_31 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0018-0000-0060-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.8.0_60 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 11.241.2 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O17 - DHCP DNS 1: 192.168.1.254
O18 - HKLM\Software\Classes\Protocols\Handler\HPDCS: [CLSID] = {BA135F49-A12C-4E26-A2C4-6EA945999072} - C:\Program Files (x86)\Common Files\Hewlett-Packard\HP Device Communication Services\APP\hpdcsapp.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppfile: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppsam: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppzip: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\ipp\0x00000001: [CLSID] = {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O18 - HKLM\Software\Classes\Protocols\Handler\msdaipp\0x00000001: [CLSID] = {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O18 - HKLM\Software\Classes\Protocols\Handler\msdaipp\oledb: [CLSID] = {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: (no name) - {472083B0-C522-11CF-8763-00608CC02F24} - (no file)
O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service R2: Alcatel FOLK Modem Device Helper - C:\Program Files (x86)\INet\BackgroundService\ServiceManager.exe Files (x86)\INet\BackgroundService\ServiceManager.exe -start
O23 - Service R2: Intel(R) Management & Security Application User Notification Service - (UNS) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service R2: Intel(R) Management and Security Application Local Management Service - (LMS) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service R2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service R2: Nero BackItUp Scheduler 4.0 - c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service R2: Samsung Cloud Print Service - (SamsungCloudPrintSvc) - C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
O23 - Service R2: Samsung Printer Dianostics Service - C:\WINDOWS\SysWOW64\\spdsvc.exe
O23 - Service R2: Samsung UPD Utility Service - (SamsungUPDUtilSvc) - C:\WINDOWS\SysWoW64\SecUPDUtilSvc.exe
O23 - Service R2: Sentinel LDK License Manager - (hasplms) - C:\Windows\system32\hasplms.exe -run
O23 - Service R2: SynTPEnh Caller Service - (SynTPEnhService) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service R2: TOSHIBA Optical Disc Drive Service - (TODDSrv) - C:\Windows\system32\TODDSrv.exe
O23 - Service R2: TSDWirelessLEDCtlService - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\RMService.exe
O23 - Service R2: Unchecky - C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
O23 - Service R2: dynabook Function Key control service - (DSDFunctionKeyCtlService) - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\DSDFunctionKeyCtlService.exe
O23 - Service S2: IObit Uninstaller Service - (IObitUnSvr) - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service S2: IconMan_R - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service S2: Servizio Aggiornamento Microsoft Edge (edgeupdate) - (edgeupdate) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /svc
O23 - Service S2: Servizio CCleaner Browser Update (ccleaner) - (ccleaner) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /svc
O23 - Service S2: Servizio di Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S2: TSDSettingService - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\dynabookSystemService.exe
O23 - Service S2: TSDTabletControlService - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\TOSTABSYSSVC.exe
O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service S3: CCleaner Browser Elevation Service - (CCleanerBrowserElevationService) - C:\Program Files (x86)\CCleaner Browser\Application\86.1.6937.201\elevation_service.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe
O23 - Service S3: Microsoft Edge Elevation Service - (MicrosoftEdgeElevationService) - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\elevation_service.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Office 64 Source Engine - (ose64) - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service S3: Servizio Aggiornamento Microsoft Edge (edgeupdatem) - (edgeupdatem) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /medsvc
O23 - Service S3: Servizio CCleaner Browser Update (ccleanerm) - (ccleanerm) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /medsvc
O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
O23 - Service S3: TMachInfo - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service S3: TOSHIBA HDD SSD Alert Service - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe


--
End of file - Time spent: 197,9 sec. - 31814 bytes, CRC32: FFFFFFFF. Sign: ꟝
Sponsor
Inviato: Wednesday, November 18, 2020 1:53:45 AM

 
solfami
Inviato: Thursday, November 19, 2020 11:06:47 AM

Rank: AiutAmico

Iscritto dal : 11/14/2003
Posts: 2,013
Salve
Ultima versione del prog HiJack
2.9.0.26
http://software.aiutamici.com/software?ID=11175
Il Pink Phanter latita da qualche giorno,
Riposta la scansione.
P.S. fatto questo?
http://forum.aiutamici.com/yaf_postst96025_ELIMINARE-PAGINE-PUBBLICITARIE-E-PORCHERIE-VARIE-E-PULIRE-SISTEMA.aspx
Saluti
reartu46
Inviato: Thursday, November 19, 2020 10:50:55 PM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 298
solfami ha scritto:
Salve
Ultima versione del prog HiJack
2.9.0.26
http://software.aiutamici.com/software?ID=11175
Il Pink Phanter latita da qualche giorno,
Riposta la scansione.
P.S. fatto questo?
http://forum.aiutamici.com/yaf_postst96025_ELIMINARE-PAGINE-PUBBLICITARIE-E-PORCHERIE-VARIE-E-PULIRE-SISTEMA.aspx
Saluti


Grazie Solfami
Certo ... periodicamente ...
ma vedo che ci sono degli animaletti per non dire delle belve annidate.
Ho scaricato la nuova versione di HJ e rifatto il LOG
lo ripropongo sperando che il nostro Claudio sia sempre presente
e da PINK non sia diventato RED ... (?)


Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.26

Platform: x64 Windows 10 (Home), 10.0.18363.1198 (ReleaseId: 1909), Service Pack: 0
Time: 19.11.2020 - 22:27 (UTC+01:00)
Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)
Elevated: Yes
Ran by: PINO AL (group: Administrator) on PINOAL-TOSH, FirstRun: no

Chrome: 86.0.4240.198
Firefox: 72.0.2.7321
Edge: 11.0.18362.1171
Internet Explorer: 11.0.18362.1
Default: "C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe" --single-argument %1 (CCleaner Browser)

Boot mode: Normal

Running processes:
Number | Path
1 C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler.exe
1 C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler64.exe
1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
1 C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
1 C:\Program Files (x86)\INet\BackgroundService\ServiceManager.exe
1 C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
1 C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
1 C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe
1 C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
1 C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
1 C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
1 C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
1 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
1 C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
1 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
1 C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20090.1002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20101.99.0_x64__8wekyb3d8bbwe\YourPhone.exe
1 C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20092.14511.0_x64__8wekyb3d8bbwe\Video.UI.exe
1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\MsMpEng.exe
1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2010.7-0\NisSrv.exe
1 C:\Users\PINO AL\Desktop\ANTIVIRUS MALWARE SPYWARE\HiJackThis\HiJackThis.exe
1 C:\Windows\ImmersiveControlPanel\SystemSettings.exe
2 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
1 C:\Windows\SysWOW64\SecUPDUtilSvc.exe
1 C:\Windows\SysWOW64\spdsvc.exe
1 C:\Windows\System32\ApplicationFrameHost.exe
2 C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\DSDFunctionKeyCtlService.exe
1 C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\RMService.exe
1 C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\dynabookSystemService.exe
8 C:\Windows\System32\RuntimeBroker.exe
1 C:\Windows\System32\SearchFilterHost.exe
1 C:\Windows\System32\SearchIndexer.exe
1 C:\Windows\System32\SearchProtocolHost.exe
1 C:\Windows\System32\SecurityHealthHost.exe
1 C:\Windows\System32\SecurityHealthService.exe
1 C:\Windows\System32\SecurityHealthSystray.exe
1 C:\Windows\System32\SettingSyncHost.exe
1 C:\Windows\System32\SgrmBroker.exe
1 C:\Windows\System32\TODDSrv.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\ctfmon.exe
1 C:\Windows\System32\dwm.exe
2 C:\Windows\System32\fontdrvhost.exe
1 C:\Windows\System32\hasplms.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\mqsvc.exe
1 C:\Windows\System32\notepad.exe
1 C:\Windows\System32\oobe\UserOOBEBroker.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\sihost.exe
1 C:\Windows\System32\smartscreen.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\snmp.exe
1 C:\Windows\System32\spoolsv.exe
82 C:\Windows\System32\svchost.exe
1 C:\Windows\System32\taskhostw.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
2 C:\Windows\explorer.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://news.google.it/
O2 - HKLM\..\BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll
O2 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\BHO\ie_to_edge_bho_64.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_241\bin\jp2ssv.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_241\bin\ssv.dll
O2-32 - HKLM\..\BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\86.0.622.69\BHO\ie_to_edge_bho.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_241\bin\jp2ssv.dll
O2-32 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_241\bin\ssv.dll
O2-32 - HKLM\..\BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O4 - HKCU\..\RunOnce: [Application Restart #1] = C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --restore-last-session -- https://www.facebook.com/sharer/sharer.php?u=https://quifinanza.it/casa/bonus-ristrutturazioni-detrazione-valida-anche-senza-comunicazione-enea/270591/
O4 - HKCU\..\StartupApproved\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (2020/03/16)
O4 - HKLM\..\StartupApproved\Run: [HotKeysCmds] = C:\WINDOWS\system32\hkcmd.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [IgfxTray] = C:\WINDOWS\system32\igfxtray.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [Persistence] = C:\WINDOWS\system32\igfxpers.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [RtHDVBg] = C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [RtHDVCpl] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s (2020/04/14)
O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Open With JPEGCompress: (default) = C:\Program Files (x86)\JPEGCompress\owjc.dll
O9-32 - Button: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Inserisci blog - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9-32 - Tools menu item: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Inserisci &blog in Windows Live Writer - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O16-32 - DPF: HKLM\..\{8AD9C840-044E-11D1-B3E9-00805F499D93}\DownloadInformation: Java Plug-in 11.241.2 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0055-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_55 [CODEBASE] = http://java.sun.com/update/1.7.0/jinstall-1_7_0_55-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_67 [CODEBASE] = http://java.sun.com/update/1.7.0/jinstall-1_7_0_67-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.8.0_31 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0018-0000-0060-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.8.0_60 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 11.241.2 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O17 - DHCP DNS 1: 192.168.1.254
O18 - HKLM\Software\Classes\Protocols\Handler\HPDCS: [CLSID] = {BA135F49-A12C-4E26-A2C4-6EA945999072} - C:\Program Files (x86)\Common Files\Hewlett-Packard\HP Device Communication Services\APP\hpdcsapp.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppfile: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppsam: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppzip: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\ipp\0x00000001: [CLSID] = {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O18 - HKLM\Software\Classes\Protocols\Handler\msdaipp\0x00000001: [CLSID] = {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O18 - HKLM\Software\Classes\Protocols\Handler\msdaipp\oledb: [CLSID] = {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: (no name) - {472083B0-C522-11CF-8763-00608CC02F24} - (no file)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (Microsoft)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Media Center\PeriodicScanRetry - C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (file missing)
O22 - Task: (disabled) \Microsoft\Windows\Media Center\RecordingRestart - C:\WINDOWS\ehome\ehrec /RestartRecording (file missing)
O22 - Task: (disabled) \Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor - {EA9155A3-8A39-40B4-8963-D3C761B18371} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask - {D2CBF5F7-5702-440B-8D8F-8203034A6B82},$(Arg0) - (no file)
O22 - Task: (disabled) \Microsoft\Windows\Shell\WindowsParentalControls - {DFA14C43-F385-4170-99CC-1B7765FA0E4A} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\Shell\WindowsParentalControlsMigration - {343D770D-7788-47C2-B62A-B7C4CED925CB} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\SideShow\AutoWake - {E51DFD48-AA36-4B45-BB52-E831F02E8316} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\SideShow\SessionAgent - {45F26E9E-6199-477F-85DA-AF1EDFE067B1} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\SideShow\SystemDataProviders - {7CCA6768-8373-4D28-8876-83E8B4E3A969} - (no file)
O22 - Task: (update) \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (Microsoft)
O22 - Task: ASC_PerformanceMonitor - C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe /Task (file missing)
O22 - Task: ASC_SkipUac_PINO AL - C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe /SkipUac (file missing)
O22 - Task: Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O22 - Task: Adobe Flash Player NPAPI Notifier - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe -check plugin
O22 - Task: Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O22 - Task: AdwCleaner_onReboot - C:/Users/PINO AL/Desktop/ANTIVIRUS MALWARE SPYWARE/adwcleaner_8.0.8.exe /r
O22 - Task: CCleaner Browser Heartbeat Task (Hourly) - C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --type=heartbeat --hourly
O22 - Task: CCleaner Browser Heartbeat Task (Logon) - C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --type=heartbeat --logon
O22 - Task: CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
O22 - Task: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0)
O22 - Task: CCleanerUpdateTaskMachineCore - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /c
O22 - Task: CCleanerUpdateTaskMachineUA - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /ua /installsource scheduler
O22 - Task: CreateChoiceProcessTask - C:\Windows\System32\browserchoice.exe /launch (file missing)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: SidebarExecute - C:\Program Files\Windows Sidebar\sidebar.exe /addGadget (file missing)
O22 - Task: Uninstaller_SkipUac_PINO_AL - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
O22 - Task: \Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan - c:\Program Files\Microsoft Security Client\MpCmdRun.exe Scan -ScheduleJob -RestrictPrivileges (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ActivateWindowsSearch - C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ConfigureInternetTimeService - C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (file missing)
O22 - Task: \Microsoft\Windows\Media Center\DispatchRecoveryTasks - C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\InstallPlayReady - C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\MediaCenterRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\OCURActivate - C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (file missing)
O22 - Task: \Microsoft\Windows\Media Center\OCURDiscovery - C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PBDADiscovery - C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PBDADiscoveryW1 - C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PBDADiscoveryW2 - C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PvrRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PvrScheduleTask - C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (file missing)
O22 - Task: \Microsoft\Windows\Media Center\RegisterSearch - C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ReindexSearchRoot - C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (file missing)
O22 - Task: \Microsoft\Windows\Media Center\SqlLiteRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\StartRecording - C:\WINDOWS\ehome\ehrec /StartRecording (file missing)
O22 - Task: \Microsoft\Windows\Media Center\UpdateRecordPath - C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ehDRMInit - C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (file missing)
O22 - Task: \Microsoft\Windows\Media Center\mcupdate - C:\WINDOWS\ehome\mcupdate $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\mcupdate_scheduled - C:\WINDOWS\ehome\mcupdate -crl -hms -pscn 15 (file missing)
O22 - Task: \Microsoft\Windows\MobilePC\HotStart - {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} - (no file)
O22 - Task: \Microsoft\Windows\SideShow\GadgetManager - {FF87090D-4A9A-4F47-879B-29A80C355D61},$(Arg0) - (no file)
O22 - Task: \Microsoft\Windows\Tcpip\IpAddressConflict1 - C:\WINDOWS\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem (Microsoft)
O22 - Task: \Microsoft\Windows\Tcpip\IpAddressConflict2 - C:\WINDOWS\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem (Microsoft)
O22 - Task: \Microsoft\Windows\WindowsBackup\AutomaticBackup - C:\WINDOWS\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup (Microsoft)
O22 - Task: \Microsoft\Windows\rempl\shell-usoscan - C:\Program Files\rempl\remsh.exe /RunUsoScanOnly (file missing)
O22 - Task: {049D53E7-BAED-487E-AD74-155FA09BF7DE} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl\Live_Message_.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl"
O22 - Task: {0A614501-A4F2-4335-A1FF-D48226D51106} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO\inst_ger2011_beta_005.sfx.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO"
O22 - Task: {0E378BA1-E31B-419E-B117-23B97CC9C027} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\PRN7302008_Agg15_all.EXE -d H:\2008\DOWNLOAD
O22 - Task: {1111CAFC-B96B-4984-851A-6E7BAA4ACBE3} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2010 redditi 2009\UTILITY 730-10\PdfViewer20.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2010 redditi 2009\UTILITY 730-10"
O22 - Task: {11E81C87-FA87-4CD8-8D1E-FE32205D22E4} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\53UEY9ZO\inst_ger2011_beta_004.sfx[1].exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {14812B0D-1A3A-411F-92EA-D37A64B48FAB} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\FileInternet249_ALL.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {17330195-EFD5-4E3A-A7AA-198D9D127DFA} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BJLMWUGL\FileInternet251_ALL[1].exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {18BAAC3B-8561-49EF-BCFF-F649C0133A1C} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\UNICO PGM\UNICO 2010\UNI2010_100.exe" -d "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\UNICO PGM\UNICO 2010"
O22 - Task: {192FB7EE-8C18-4E07-93A2-14A56A874DA4} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\FileInternet249_ALL.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC"
O22 - Task: {1A2ADCB7-6678-4AD5-AF60-2F1B410DD6AC} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\GEO NETWORK\trial imu2012.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {1AA2034D-9D95-4BBE-9F5C-B6CE2AE417B8} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PERSONALI\FISCO\jre-6u25-windows-i586-iftw.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {2018B9F6-F847-45E2-9301-3CA130513C42} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\BKG730.EXE" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {38E83073-BFCE-477C-819B-AF1878F0BB86} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\PdfViewer20.EXE" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {49454647-1E8D-4DCB-9F84-41C01C13CFC5} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\ModuliControlloStudi2011_101_All.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC"
O22 - Task: {4E3C6BD8-9C39-496E-B54B-7E01DBCF475A} - C:\Windows\system32\pcalua.exe -a C:\Gerico2011\Gerico2011.exe -d C:\Gerico2011\
O22 - Task: {4E4AECB2-2E35-4EA1-A778-F4174F9AD8E3} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO vers.BETA\inst_ger2011_beta_005.sfx.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO vers.BETA"
O22 - Task: {50816749-385C-41D7-84F0-3C4A6B39E1AF} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.4.4\Contratti di Locazione 9.4.4.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.4.4\"
O22 - Task: {5DAA054C-C097-4DD6-8BB1-53B24AE0F425} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\SecureFolderSetup1.0b.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {63DC6AE0-274E-47EC-8B66-7FB8E10D8B66} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.3.1\Contratti di Locazione 9.3.1.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.3.1\"
O22 - Task: {6C2DB950-7A90-4F9A-BE32-D052836E9BD6} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl\7302013_v11_INTERNET.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl"
O22 - Task: {6E6C21FB-501B-4AA6-8D44-652A9A9EE6D7} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\Stampe730.exe" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {7548CF48-BBA5-43E7-BCAC-6B00DAB39F91} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\Beneficiari730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {75B02690-DFCD-405A-BB1E-F15E25BD1031} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.4.6\Contratti di Locazione 9.4.6.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.4.6\"
O22 - Task: {76C137B0-E9C1-46D3-B0F0-B540168CAD1D} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015\7302015_v16_INTERNET.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015"
O22 - Task: {7F347D9A-8977-4674-BB15-5492B17A2245} - C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\ModelliFiscali\2008\730_2008\DOWNLOAD\7302008_AGG13_ALL.EXE" -d "C:\Program Files (x86)\ModelliFiscali\2008\730_2008\DOWNLOAD"
O22 - Task: {823D2A56-E6D3-44E4-969F-E04B63FF1C75} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GII6MU5K\FileInternet278_ALL.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {853EAE69-F410-4D7B-83A7-392F827AC0AE} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\7302008_AGG13_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {890D04A4-5E07-4A1C-911D-39C3935E1AFF} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Downloads\7302012_v11__INTERNET_(10).EXE" -d "C:\Program Files (x86)\Mozilla Firefox"
O22 - Task: {8AF27970-C075-4B4C-8821-9E69690E968B} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\PdfViewer20.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {8B525797-70DC-4805-AE23-CD136D9BA98D} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015\LIVEMESSAGE.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015"
O22 - Task: {8EDCD508-25E1-4F68-9BFA-E17132EBC342} - C:\Windows\system32\pcalua.exe -a F:\UNI2009_100.exe -d F:\
O22 - Task: {8F362C12-334A-4B86-AF80-C4F86946B899} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\Manuale730.exe" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {9014972A-48A0-4E34-84E8-862AEF922B58} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO\ModuliControlloStudi2011_101_All.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO"
O22 - Task: {91E25251-A622-41A6-8086-052F1C695866} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\Manuale730.exe" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {936BA40E-770E-4CCC-9732-88ADEE5E89F4} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2012 UNICO ICI IMU ECC\7302012\730installazione\7302012_v11__INTERNET_.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2012 UNICO ICI IMU ECC\7302012\730installazione"
O22 - Task: {982ECCFC-8E71-4553-B9B5-A03014B3A1F6} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Downloads\ContrattiDiLocazione954.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {98AC40F5-1898-46D7-ADA5-60018398F37E} - c:\program files\internet explorer\iexplore.exe http://www.skype.com/go/downloading?source=lightinstaller&ver=5.1.0.112&LastError=404
O22 - Task: {A2C8D185-11D6-4068-9BC8-5C09B221F042} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\TAXONLINE 2011 redditi 2010\LiveUpgrade.EXE" -d "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\TAXONLINE 2011 redditi 2010"
O22 - Task: {A4A0FC02-BC43-4E67-A10F-6C3DAAEF1865} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\HelpPDF.exe" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {A4FDE1A2-98A9-4437-A98C-E3AFA798B9C3} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\BKG730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {AB271D0C-0611-43C4-95FD-C773C3233764} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl\730_2013_v11_INT.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl"
O22 - Task: {ACD80F88-7540-4D26-B8BE-72577470DDF2} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.5.4\Contratti di Locazione 9.5.4.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.5.4\"
O22 - Task: {B6166800-189E-4320-ADB9-2B5DDD470552} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO\ModuliControllo2011_143.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {B7B60204-00A6-4BCF-AA18-2F9E7131E55D} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\HelpPDF.exe" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {CDD79427-C33E-403C-A4AF-E1017217C0BE} - C:\Windows\system32\pcalua.exe -a C:\UnicoOnLine\MainWinUNI10.exe -d C:/UnicoOnLine\
O22 - Task: {CDE8461F-751F-4D38-96B9-E661633F2765} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\AC7302008_AGG14_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {CEA12B4A-F27E-4BDC-86A4-17517A63D2DB} - C:\Windows\system32\pcalua.exe -a C:\UnicoOnLine\F24OnLine.exe -d C:\UnicoOnLine\
O22 - Task: {CEAD4669-8513-4098-B781-083A1A4D754F} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\AC7302008_AGG15_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {D9BACCC1-352A-48D7-93EF-57C2AB7DF3B5} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione\Stampe730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione"
O22 - Task: {DC72069F-3D37-45F2-BE72-99C96E195216} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\installazione08\7302008_v12_INTERNET.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\installazione08"
O22 - Task: {DDDBD2E3-3E89-4FD8-ADFC-FED9C4BA891C} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\Stampe730.exe" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {E3B047F2-40C4-4D1A-AA69-C08B09F333F8} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4A8LBC2\ContrattiDiLocazione954.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {E7E84BF2-445A-4307-A327-8BF26108669D} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\AC7302008_AGG13_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {E8B53D66-8046-45DD-A063-BD76CC436D00} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\FileInternet253_ALL.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {EB77B3FE-A020-4180-9CC2-2B1528B48A95} - C:\Windows\system32\pcalua.exe -a C:\UnicoOnLine\prog\FileInternet.exe -d C:/UnicoOnLine\prog\
O22 - Task: {F3925EDB-0B5F-4683-B9DA-D4AE1BE2530A} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione\Stampe730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione"
O22 - Task: {F945DCF1-1DF1-43AB-9FE8-BE2718449E14} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WDF6IVYT\ContrattiDiLocazione954 (1).exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {FFC3DEBA-DFFC-4C54-B7B4-4129DF5D9B15} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\SPE00100.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC"
O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service R2: Alcatel FOLK Modem Device Helper - C:\Program Files (x86)\INet\BackgroundService\ServiceManager.exe Files (x86)\INet\BackgroundService\ServiceManager.exe -start
O23 - Service R2: IconMan_R - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service R2: Intel(R) Management & Security Application User Notification Service - (UNS) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service R2: Intel(R) Management and Security Application Local Management Service - (LMS) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service R2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service R2: Nero BackItUp Scheduler 4.0 - c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service R2: Samsung Cloud Print Service - (SamsungCloudPrintSvc) - C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
O23 - Service R2: Samsung Printer Dianostics Service - C:\WINDOWS\SysWOW64\\spdsvc.exe
O23 - Service R2: Samsung UPD Utility Service - (SamsungUPDUtilSvc) - C:\WINDOWS\SysWoW64\SecUPDUtilSvc.exe
O23 - Service R2: Sentinel LDK License Manager - (hasplms) - C:\Windows\system32\hasplms.exe -run
O23 - Service R2: SynTPEnh Caller Service - (SynTPEnhService) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service R2: TOSHIBA Optical Disc Drive Service - (TODDSrv) - C:\Windows\system32\TODDSrv.exe
O23 - Service R2: TSDSettingService - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\dynabookSystemService.exe
O23 - Service R2: TSDWirelessLEDCtlService - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\RMService.exe
O23 - Service R2: Unchecky - C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe
O23 - Service R2: dynabook Function Key control service - (DSDFunctionKeyCtlService) - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\DSDFunctionKeyCtlService.exe
O23 - Service S2: IObit Uninstaller Service - (IObitUnSvr) - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service S2: Servizio CCleaner Browser Update (ccleaner) - (ccleaner) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /svc
O23 - Service S2: Servizio di Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S2: TSDTabletControlService - C:\WINDOWS\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_b172549968baa801\TOSTABSYSSVC.exe
O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service S3: CCleaner Browser Elevation Service - (CCleanerBrowserElevationService) - C:\Program Files (x86)\CCleaner Browser\Application\86.1.6937.201\elevation_service.exe
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\elevation_service.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Office 64 Source Engine - (ose64) - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service S3: Servizio CCleaner Browser Update (ccleanerm) - (ccleanerm) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /medsvc
O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
O23 - Service S3: TMachInfo - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service S3: TOSHIBA HDD SSD Alert Service - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe


--
End of file - Time spent: 122,1 sec. - 69406 bytes, CRC32: FFFFFFFF. Sign: 䕶ꤤ
cbbusto
Inviato: Wednesday, November 25, 2020 12:39:07 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,709
Ci sono ci sono, in questi giorni ero impegnato in altre faccende ho acceso poco il pc.
Domani controllo meglio e ti dico cosa fare. Ci sono diverse voci da eliminare.
Ciao
cbbusto
Inviato: Wednesday, November 25, 2020 10:58:01 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,709
Intanto inizia a fare queste 2 scansioni, vedo che malwarebytes già lo conosci. Dopo postato i log ci risentiamo.

Scarica Adwcleaner sul desktop:
http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner
Chiudi tutti i browser (è importante IE,Firefox Chrome ecc...)
Clicca sul pulsante "Scan".
Finita la scansione clicca su "Clean"
Conferma con OK le varie finestre che ti compariranno.
Il pc si riavvierà, e uscirà il log con le eliminazioni.
Postalo qui.

Scarica Junkware Removal Tool sul desktop.
http://www.majorgeeks.com/mg/get/junkware_removal_tool,1.html
Disattiva temporaneamente l'antivirus per evitare potenziali conflitti.
Doppio click su JRT
Lo strumento si aprirà e avvierà la scansione del sistema.
Devi avere pazienza in quanto questo tool può richiedere del tempo per completare la scansione .
Al termine, un log (JRT.txt) viene salvato sul desktop e si aprirà automaticamente.
Postalo qui.
Tutte le scansioni vanno fatte in modalità NORMALE.
cbbusto
Inviato: Wednesday, November 25, 2020 11:39:15 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,709
Fixa ed elimina le seguenti righe:
O4 - HKCU\..\RunOnce: [Application Restart #1] = C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --restore-last-session -- https://www.facebook.com/sharer/sharer.php?u=https://quifinanza.it/casa/bonus-ristrutturazioni-detrazione-valida-anche-senza-comunicazione-enea/270591/
O4 - HKCU\..\StartupApproved\Run: [CCleaner Smart Cleaning] = C:\Program Files\CCleaner\CCleaner64.exe /MONITOR (2020/03/16)
O4 - HKLM\..\StartupApproved\Run: [HotKeysCmds] = C:\WINDOWS\system32\hkcmd.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [IgfxTray] = C:\WINDOWS\system32\igfxtray.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [Persistence] = C:\WINDOWS\system32\igfxpers.exe (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [RtHDVBg] = C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3 (2020/04/14)
O4 - HKLM\..\StartupApproved\Run: [RtHDVCpl] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s (2020/04/14)
Tutti file in avvio automatico che non servono a niente, rallentano e basta.

O16-32 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0055-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_55 [CODEBASE] = http://java.sun.com/update/1.7.0/jinstall-1_7_0_55-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0017-0000-0067-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.7.0_67 [CODEBASE] = http://java.sun.com/update/1.7.0/jinstall-1_7_0_67-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.8.0_31 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-0018-0000-0060-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 1.8.0_60 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab
O16-32 - DPF: HKLM\..\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\DownloadInformation: Java Plug-in 11.241.2 [CODEBASE] = http://java.sun.com/update/1.8.0/jinstall-1_8_0_60-windows-i586.cab

O18 - HKLM\Software\Classes\Protocols\Handler\HPDCS: [CLSID] = {BA135F49-A12C-4E26-A2C4-6EA945999072} - C:\Program Files (x86)\Common Files\Hewlett-Packard\HP Device Communication Services\APP\hpdcsapp.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppfile: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppsam: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\hppzip: [CLSID] = {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files (x86)\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - HKLM\Software\Classes\Protocols\Handler\ipp\0x00000001: [CLSID] = {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O18 - HKLM\Software\Classes\Protocols\Handler\msdaipp\0x00000001: [CLSID] = {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL
O18 - HKLM\Software\Classes\Protocols\Handler\msdaipp\oledb: [CLSID] = {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\system\ole db\MSDAIPP.DLL

Quì hai un vero caos, mai visto una marea di file 022 come hai tu, ma dove sei andato a pescarli? non ne serve nessuno, se qualche programma ti interessa, in particolare quelli fiscali, tieni il programma e basta.

O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: (no name) - {472083B0-C522-11CF-8763-00608CC02F24} - (no file)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\WINDOWS\system32\MusNotification.exe /RunOnAC RebootDialog (Microsoft)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\WINDOWS\system32\MusNotification.exe /RunOnBattery RebootDialog (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Media Center\PeriodicScanRetry - C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (file missing)
O22 - Task: (disabled) \Microsoft\Windows\Media Center\RecordingRestart - C:\WINDOWS\ehome\ehrec /RestartRecording (file missing)
O22 - Task: (disabled) \Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor - {EA9155A3-8A39-40B4-8963-D3C761B18371} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask - {D2CBF5F7-5702-440B-8D8F-8203034A6B82},$(Arg0) - (no file)
O22 - Task: (disabled) \Microsoft\Windows\Shell\WindowsParentalControls - {DFA14C43-F385-4170-99CC-1B7765FA0E4A} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\Shell\WindowsParentalControlsMigration - {343D770D-7788-47C2-B62A-B7C4CED925CB} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\SideShow\AutoWake - {E51DFD48-AA36-4B45-BB52-E831F02E8316} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\SideShow\SessionAgent - {45F26E9E-6199-477F-85DA-AF1EDFE067B1} - (no file)
O22 - Task: (disabled) \Microsoft\Windows\SideShow\SystemDataProviders - {7CCA6768-8373-4D28-8876-83E8B4E3A969} - (no file)
O22 - Task: (update) \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (Microsoft)
O22 - Task: ASC_PerformanceMonitor - C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe /Task (file missing)
O22 - Task: ASC_SkipUac_PINO AL - C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe /SkipUac (file missing)
O22 - Task: Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O22 - Task: Adobe Flash Player NPAPI Notifier - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe -check plugin
O22 - Task: Adobe Flash Player Updater - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O22 - Task: AdwCleaner_onReboot - C:/Users/PINO AL/Desktop/ANTIVIRUS MALWARE SPYWARE/adwcleaner_8.0.8.exe /r
O22 - Task: CCleaner Browser Heartbeat Task (Hourly) - C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --type=heartbeat --hourly
O22 - Task: CCleaner Browser Heartbeat Task (Logon) - C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --type=heartbeat --logon
O22 - Task: CCleaner Update - C:\Program Files\CCleaner\CCUpdate.exe
O22 - Task: CCleanerSkipUAC - C:\Program Files\CCleaner\CCleaner.exe $(Arg0)
O22 - Task: CCleanerUpdateTaskMachineCore - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /c
O22 - Task: CCleanerUpdateTaskMachineUA - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /ua /installsource scheduler
O22 - Task: CreateChoiceProcessTask - C:\Windows\System32\browserchoice.exe /launch (file missing)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: SidebarExecute - C:\Program Files\Windows Sidebar\sidebar.exe /addGadget (file missing)
O22 - Task: Uninstaller_SkipUac_PINO_AL - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
O22 - Task: \Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan - c:\Program Files\Microsoft Security Client\MpCmdRun.exe Scan -ScheduleJob -RestrictPrivileges (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ActivateWindowsSearch - C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ConfigureInternetTimeService - C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (file missing)
O22 - Task: \Microsoft\Windows\Media Center\DispatchRecoveryTasks - C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\InstallPlayReady - C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\MediaCenterRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\OCURActivate - C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (file missing)
O22 - Task: \Microsoft\Windows\Media Center\OCURDiscovery - C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PBDADiscovery - C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PBDADiscoveryW1 - C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PBDADiscoveryW2 - C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PvrRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\PvrScheduleTask - C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (file missing)
O22 - Task: \Microsoft\Windows\Media Center\RegisterSearch - C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ReindexSearchRoot - C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (file missing)
O22 - Task: \Microsoft\Windows\Media Center\SqlLiteRecoveryTask - C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (file missing)
O22 - Task: \Microsoft\Windows\Media Center\StartRecording - C:\WINDOWS\ehome\ehrec /StartRecording (file missing)
O22 - Task: \Microsoft\Windows\Media Center\UpdateRecordPath - C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\ehDRMInit - C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (file missing)
O22 - Task: \Microsoft\Windows\Media Center\mcupdate - C:\WINDOWS\ehome\mcupdate $(Arg0) (file missing)
O22 - Task: \Microsoft\Windows\Media Center\mcupdate_scheduled - C:\WINDOWS\ehome\mcupdate -crl -hms -pscn 15 (file missing)
O22 - Task: \Microsoft\Windows\MobilePC\HotStart - {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} - (no file)
O22 - Task: \Microsoft\Windows\SideShow\GadgetManager - {FF87090D-4A9A-4F47-879B-29A80C355D61},$(Arg0) - (no file)
O22 - Task: \Microsoft\Windows\Tcpip\IpAddressConflict1 - C:\WINDOWS\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem (Microsoft)
O22 - Task: \Microsoft\Windows\Tcpip\IpAddressConflict2 - C:\WINDOWS\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem (Microsoft)
O22 - Task: \Microsoft\Windows\WindowsBackup\AutomaticBackup - C:\WINDOWS\system32\rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup (Microsoft)
O22 - Task: \Microsoft\Windows\rempl\shell-usoscan - C:\Program Files\rempl\remsh.exe /RunUsoScanOnly (file missing)
O22 - Task: {049D53E7-BAED-487E-AD74-155FA09BF7DE} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl\Live_Message_.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl"
O22 - Task: {0A614501-A4F2-4335-A1FF-D48226D51106} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO\inst_ger2011_beta_005.sfx.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO"
O22 - Task: {0E378BA1-E31B-419E-B117-23B97CC9C027} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\PRN7302008_Agg15_all.EXE -d H:\2008\DOWNLOAD
O22 - Task: {1111CAFC-B96B-4984-851A-6E7BAA4ACBE3} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2010 redditi 2009\UTILITY 730-10\PdfViewer20.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2010 redditi 2009\UTILITY 730-10"
O22 - Task: {11E81C87-FA87-4CD8-8D1E-FE32205D22E4} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\53UEY9ZO\inst_ger2011_beta_004.sfx[1].exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {14812B0D-1A3A-411F-92EA-D37A64B48FAB} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\FileInternet249_ALL.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {17330195-EFD5-4E3A-A7AA-198D9D127DFA} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BJLMWUGL\FileInternet251_ALL[1].exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {18BAAC3B-8561-49EF-BCFF-F649C0133A1C} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\UNICO PGM\UNICO 2010\UNI2010_100.exe" -d "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\UNICO PGM\UNICO 2010"
O22 - Task: {192FB7EE-8C18-4E07-93A2-14A56A874DA4} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\FileInternet249_ALL.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC"
O22 - Task: {1A2ADCB7-6678-4AD5-AF60-2F1B410DD6AC} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\GEO NETWORK\trial imu2012.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {1AA2034D-9D95-4BBE-9F5C-B6CE2AE417B8} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PERSONALI\FISCO\jre-6u25-windows-i586-iftw.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {2018B9F6-F847-45E2-9301-3CA130513C42} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\BKG730.EXE" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {38E83073-BFCE-477C-819B-AF1878F0BB86} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\PdfViewer20.EXE" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {49454647-1E8D-4DCB-9F84-41C01C13CFC5} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\ModuliControlloStudi2011_101_All.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC"
O22 - Task: {4E3C6BD8-9C39-496E-B54B-7E01DBCF475A} - C:\Windows\system32\pcalua.exe -a C:\Gerico2011\Gerico2011.exe -d C:\Gerico2011\
O22 - Task: {4E4AECB2-2E35-4EA1-A778-F4174F9AD8E3} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO vers.BETA\inst_ger2011_beta_005.sfx.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO vers.BETA"
O22 - Task: {50816749-385C-41D7-84F0-3C4A6B39E1AF} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.4.4\Contratti di Locazione 9.4.4.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.4.4\"
O22 - Task: {5DAA054C-C097-4DD6-8BB1-53B24AE0F425} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\SecureFolderSetup1.0b.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {63DC6AE0-274E-47EC-8B66-7FB8E10D8B66} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.3.1\Contratti di Locazione 9.3.1.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.3.1\"
O22 - Task: {6C2DB950-7A90-4F9A-BE32-D052836E9BD6} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl\7302013_v11_INTERNET.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl"
O22 - Task: {6E6C21FB-501B-4AA6-8D44-652A9A9EE6D7} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\Stampe730.exe" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {7548CF48-BBA5-43E7-BCAC-6B00DAB39F91} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\Beneficiari730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {75B02690-DFCD-405A-BB1E-F15E25BD1031} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.4.6\Contratti di Locazione 9.4.6.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.4.6\"
O22 - Task: {76C137B0-E9C1-46D3-B0F0-B540168CAD1D} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015\7302015_v16_INTERNET.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015"
O22 - Task: {7F347D9A-8977-4674-BB15-5492B17A2245} - C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\ModelliFiscali\2008\730_2008\DOWNLOAD\7302008_AGG13_ALL.EXE" -d "C:\Program Files (x86)\ModelliFiscali\2008\730_2008\DOWNLOAD"
O22 - Task: {823D2A56-E6D3-44E4-969F-E04B63FF1C75} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GII6MU5K\FileInternet278_ALL.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {853EAE69-F410-4D7B-83A7-392F827AC0AE} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\7302008_AGG13_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {890D04A4-5E07-4A1C-911D-39C3935E1AFF} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Downloads\7302012_v11__INTERNET_(10).EXE" -d "C:\Program Files (x86)\Mozilla Firefox"
O22 - Task: {8AF27970-C075-4B4C-8821-9E69690E968B} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\PdfViewer20.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {8B525797-70DC-4805-AE23-CD136D9BA98D} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015\LIVEMESSAGE.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\zzz MODELLI FISCALI (TAXONLINE)\2015"
O22 - Task: {8EDCD508-25E1-4F68-9BFA-E17132EBC342} - C:\Windows\system32\pcalua.exe -a F:\UNI2009_100.exe -d F:\
O22 - Task: {8F362C12-334A-4B86-AF80-C4F86946B899} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\Manuale730.exe" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {9014972A-48A0-4E34-84E8-862AEF922B58} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO\ModuliControlloStudi2011_101_All.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO"
O22 - Task: {91E25251-A622-41A6-8086-052F1C695866} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\Manuale730.exe" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {936BA40E-770E-4CCC-9732-88ADEE5E89F4} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2012 UNICO ICI IMU ECC\7302012\730installazione\7302012_v11__INTERNET_.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2012 UNICO ICI IMU ECC\7302012\730installazione"
O22 - Task: {982ECCFC-8E71-4553-B9B5-A03014B3A1F6} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Downloads\ContrattiDiLocazione954.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {98AC40F5-1898-46D7-ADA5-60018398F37E} - c:\program files\internet explorer\iexplore.exe http://www.skype.com/go/downloading?source=lightinstaller&ver=5.1.0.112&LastError=404
O22 - Task: {A2C8D185-11D6-4068-9BC8-5C09B221F042} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\TAXONLINE 2011 redditi 2010\LiveUpgrade.EXE" -d "C:\Users\PINO AL\Desktop\PGM Fisco Vecchio PC\TAXONLINE 2011 redditi 2010"
O22 - Task: {A4A0FC02-BC43-4E67-A10F-6C3DAAEF1865} - C:\Windows\system32\pcalua.exe -a "F:\TAX ONLINE 2008 redditi 07\Utility08\HelpPDF.exe" -d "F:\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {A4FDE1A2-98A9-4437-A98C-E3AFA798B9C3} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\BKG730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {AB271D0C-0611-43C4-95FD-C773C3233764} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl\730_2013_v11_INT.EXE" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2013 UNICO IRPEF IMU\TAXONLINE PGM\PGM obbl"
O22 - Task: {ACD80F88-7540-4D26-B8BE-72577470DDF2} - C:\Windows\system32\pcalua.exe -a "C:\AgenziaEntrate\Contratti di Locazione 9.5.4\Contratti di Locazione 9.5.4.exe" -d "C:\AgenziaEntrate\Contratti di Locazione 9.5.4\"
O22 - Task: {B6166800-189E-4320-ADB9-2B5DDD470552} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\GERICO\ModuliControllo2011_143.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {B7B60204-00A6-4BCF-AA18-2F9E7131E55D} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\HelpPDF.exe" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {CDD79427-C33E-403C-A4AF-E1017217C0BE} - C:\Windows\system32\pcalua.exe -a C:\UnicoOnLine\MainWinUNI10.exe -d C:/UnicoOnLine\
O22 - Task: {CDE8461F-751F-4D38-96B9-E661633F2765} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\AC7302008_AGG14_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {CEA12B4A-F27E-4BDC-86A4-17517A63D2DB} - C:\Windows\system32\pcalua.exe -a C:\UnicoOnLine\F24OnLine.exe -d C:\UnicoOnLine\
O22 - Task: {CEAD4669-8513-4098-B781-083A1A4D754F} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\AC7302008_AGG15_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {D9BACCC1-352A-48D7-93EF-57C2AB7DF3B5} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione\Stampe730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione"
O22 - Task: {DC72069F-3D37-45F2-BE72-99C96E195216} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\installazione08\7302008_v12_INTERNET.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\installazione08"
O22 - Task: {DDDBD2E3-3E89-4FD8-ADFC-FED9C4BA891C} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08\Stampe730.exe" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAX ONLINE 2008 redditi 07\Utility08"
O22 - Task: {E3B047F2-40C4-4D1A-AA69-C08B09F333F8} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L4A8LBC2\ContrattiDiLocazione954.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {E7E84BF2-445A-4307-A327-8BF26108669D} - C:\Windows\system32\pcalua.exe -a H:\2008\DOWNLOAD\AC7302008_AGG13_ALL.EXE -d H:\2008\DOWNLOAD
O22 - Task: {E8B53D66-8046-45DD-A063-BD76CC436D00} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\FileInternet253_ALL.exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {EB77B3FE-A020-4180-9CC2-2B1528B48A95} - C:\Windows\system32\pcalua.exe -a C:\UnicoOnLine\prog\FileInternet.exe -d C:/UnicoOnLine\prog\
O22 - Task: {F3925EDB-0B5F-4683-B9DA-D4AE1BE2530A} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione\Stampe730.EXE" -d "C:\Users\PINO AL\Desktop\PGM vecchioPC\TAXONLINE 2009 redditi 08\tax installazione"
O22 - Task: {F945DCF1-1DF1-43AB-9FE8-BE2718449E14} - C:\Windows\system32\pcalua.exe -a "C:\Users\PINO AL\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WDF6IVYT\ContrattiDiLocazione954 (1).exe" -d "C:\Users\PINO AL\Desktop"
O22 - Task: {FFC3DEBA-DFFC-4C54-B7B4-4129DF5D9B15} - C:\Windows\system32\pcalua.exe -a "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC\SPE00100.exe" -d "D:\PGM FISCALI- annali ICI e cartelle\ANNALI DEN.REDD.ICI\2011 UNICO ICI ECC"

Una volta finito fai una pulizia con ccleaner compreso il registro.
Dopo posta un nuovo log di HJT aggiornato e vedo sos'è rimasto, fai sapere se il pc è migliorato. Ciao



cbbusto
Inviato: Friday, November 27, 2020 10:56:54 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,709
Ti ho risposto subito ma non ti ho più sentito. Hai fatto quanto detto ? Ciao
reartu46
Inviato: Friday, November 27, 2020 5:41:41 PM

Rank: AiutAmico

Iscritto dal : 12/19/2005
Posts: 298
cbbusto ha scritto:
Ti ho risposto subito ma non ti ho più sentito. Hai fatto quanto detto ? Ciao


grazie
ora sono io che sono un po' fuori uso .... appena mi riprendo vedro di fare quanto consigliatomi
a presto
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.