:OTL
IE - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1:9421;*.local;<local>
O3 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000..\Run: [] C:\Programmi\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Samsung)
O4 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000..\Run: [KiesAirMessage] C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup File not found
O4 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000..\Run: [KiesPreload] C:\Program Files\Samsung\Kies\Kies.exe (Samsung)
O4 - HKU\S-1-5-21-3683626492-2646108147-1796154372-1000..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent Inc.)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501}
http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565}
http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24}
http://messenger.zone.msn.com/MessengerGamesContent/GameContent/it/uno1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072}
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O33 - MountPoints2\{7a5e9f53-22ad-11df-b6d6-001e65963410}\Shell - "" = AutoRun
O33 - MountPoints2\{7a5e9f53-22ad-11df-b6d6-001e65963410}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{d8789c58-8e17-11e1-9c88-001f16c6980f}\Shell - "" = AutoRun
O33 - MountPoints2\{d8789c58-8e17-11e1-9c88-001f16c6980f}\Shell\AutoRun\command - "" = G:\USBAutoRun.exe
[2009/12/18 19.53.09 | 000,000,000 | -HSD | M] -- C:\Users\Marco\AppData\Roaming\.#
[2011/01/23 00.44.36 | 000,000,000 | ---D | M] -- C:\Users\Marco\AppData\Roaming\AVG10
@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:41099CE9
@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:131C0EE9
@Alternate Data Stream - 126 bytes -> C:\ProgramData\Temp:35759C73
@Alternate Data Stream - 123 bytes -> C:\ProgramData\Temp:4F636E25
@Alternate Data Stream - 120 bytes -> C:\ProgramData\Temp:B623B5B8
@Alternate Data Stream - 118 bytes -> C:\ProgramData\Temp:CB0AACC9
@Alternate Data Stream - 110 bytes -> C:\ProgramData\Temp:E1982A23
@Alternate Data Stream - 104 bytes -> C:\ProgramData\Temp:D1B5B4F1
@Alternate Data Stream - 103 bytes -> C:\ProgramData\Temp:798A3728
:Files
ipconfig /flushdns /c
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command]
""=""%1" %*"
:commands
[purity]
[emptytemp]
[Emptyjava]
[RESETHOSTS]
[EMPTYFLASH]
[start explorer]
[Reboot]