Aiutamici Forum
Benvenuto Ospite Cerca | Topic Attivi | Utenti | | Log In | Registra

Impossibilità di navigare nella mia My ENEL Opzioni
troleo
Inviato: Friday, November 15, 2013 3:58:49 PM

Rank: AiutAmico

Iscritto dal : 11/29/2004
Posts: 137
Potreste spiegarmi perchè da qualche tempo dopo essere entrato nella mia pagina personale di ENEL,quando klicco sul link che mi dovrebbe far accedere alla visione delle mie bollette il sistema inizia a cercare(pagina bianca con clessidra) e cerca fino al termine del tempo ed esce l'avviso che non e stato possibile completare la ricerca per il tempo trascorso.
Questo non succede quando faccio la stessa ricerca su EDISON, quì tutto OK,trovo regolarmente le bollette e le scarico, anche il Wastwueb e tutto OK.
Ho pensato ad una questiona di Plugin,ma sono tutti attivi,questo mi succede sia con Mozzilla Firefox che con Internet Explorer e Google Chrome.
Potete suggerirmi delle soluzioni.
PS. Quanto sopra mi succede con il portatile SO. Windows XP. Con il PC fisso con SO Windows 7 a parte che la bolletta che scarico non e molto leggibile (Adobe Reeader) riesco ad entrare nel sito.
Rimango in attesa di gradita risposta a saluto
Per scrupolo allego LOG
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16.04.02, on 15/11/2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\AVAST Software\Avast\AvastSvc.exe
C:\Programmi\AVAST Software\Avast\afwServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Programmi\Application Updater\ApplicationUpdater.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\EscSvc.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Programmi\RealNetworks\RealDownloader\rndlresolversvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\AVAST Software\Avast\avastUI.exe
C:\Programmi\File comuni\Spigot\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE
C:\Programmi\Mozilla Firefox\firefox.exe
C:\Programmi\Mozilla Firefox\plugin-container.exe
C:\Programmi\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://it.search.yahoo.com?type=902615&fr=spigot-yhp-ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.chatzum.com/?orig=HP&affid=62&cztbid=376579993
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Dati applicazioni\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Speed - {48A789BF-F6D6-4930-9C8B-77855A63EDE1} - C:\PROGRA~1\SECURE~1\IE\SPEEDD~1.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Guida per l'accesso a Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Speed Analysis 3 - {A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} - C:\Programmi\Speed Analysis 3\ScriptHost.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\ADVANC~2\BROWER~1\ASCPLU~1.DLL
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O4 - HKLM\..\Run: [avast] "C:\Programmi\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Programmi\File comuni\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SearchSettings] "C:\Programmi\File comuni\Spigot\Search Settings\SearchSettings.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000002] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000002" /M "WF-2510 Series"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000001" /M "WF-2510 Series"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://tbedits.televisionfanatic.com/one-toolbaredits/menusearch.jhtml?s=100000415&p2=^XP^xdm049^YY^it&si=61531&a=99F46BE1-112C-4DED-A15A-D49CCA3E46F2&n=2013031619&cv=3
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Scarica con Download &Express - C:\Programmi\Download Express\Add_Url.htm
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1341859798656
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programmi\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Programmi\Application Updater\ApplicationUpdater.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Programmi\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Programmi\AVAST Software\Avast\afwServ.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - C:\WINDOWS\system32\EscSvc.exe
O23 - Service: Servizio Google Update (gupdate) (gupdate) - Google Inc. - C:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Servizio Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpSC - SoftwareUpdService - C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\SoftwareUpdater\SoftwareUpdService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Programmi\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Programmi\Secure Speed Dial\IE\SecureUpdate.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Programmi\Skype\Updater\Updater.exe

--
End of file - 9410 bytes
.
Sponsor
Inviato: Friday, November 15, 2013 3:58:49 PM

 
cbbusto
Inviato: Friday, November 15, 2013 4:58:54 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Sei messo maluccio, hai una infezione da spigot e questo può creare problemi con la navigazione.

Fai queste scansioni:
Installa malwarebytes QUI lo aggiorni e poi fai una scansione COMPLETA non veloce, elimina tutto quello che trova, posta il log.

Fai questa scansione:
Scarica Adwcleaner sul desktop:
http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner
Avvialo e clicca sul pulsante "Scan” finita la scansione clicca su Clean , conferma con OK le varie finestre che ti compariranno.
Il pc si riavvierà, e uscirà il log col Blocco Note.
Copialo e postalo qui.

Poi fai una pulizia con Ccleaner compreso il Registro, per il Registro spunta tutte le voci acconsenti al backup quando richiesto, sempre in Ccleaner vai in Strumenti Ripristino Sistema seleziona tutte le voci tranne l'ultima che non è selezionabile e rimane per sicurezza, poi clic su Rimuovi.

Fai anche questa scansione:
Scarica JunkerRemovalTool da qui: http://thisisudax.org/downloads/JRT.exe
Una volta scaricato chiudere tutti i programmi e il browser, lancialo cliccando sull’eseguibile.
Per Vista win 7 e win 8 clic col destro sull’eseguibile ed Eseguire come Amministratore.
Appare il prompt dei comandi, premere un tasto per continuare e il programma inizia la scansione, può durare diversi minuti, lascia fare senza toccare nulla anche se sembra fermo, alla fine appare il Blocco Note col log, JRT.txt copialo e postalo qui.

Alla fine rifai una scansione con HJT e posta il log aggiornato che eliminiamo altre voci. Ciao
miticoalex
Inviato: Friday, November 15, 2013 7:18:11 PM

Rank: AiutAmico

Iscritto dal : 10/19/2010
Posts: 14,635
troleo ha scritto:
Ho pensato ad una questiona di Plugin,ma sono tutti attivi,questo mi succede sia con Mozzilla Firefox che con Internet Explorer e Google Chrome.


Salve! Se non risolvi con la bonifica, ti consiglio di aggiornare JAVA.





troleo
Inviato: Saturday, November 16, 2013 3:55:56 PM

Rank: AiutAmico

Iscritto dal : 11/29/2004
Posts: 137
I primi 2 suggerimenti non hanno creato problemi iniziata operazione CCleaner e sono iniziati i problemi,in PC si piantava e non andava ne avanti ne indietro,ho dovuto spegnerlo più volte tenendo premuto il tasto di accensione,alla fine sono riuscito a finire,dopo ho cercato di eseguire JRT exe ma non si riusciva a niente, ho dovuto fate il ripristino del sistema e questo ha risolto il tutto,non riuscivo neanche a utilizzare internet perchò si piantava tutto,questi sono i log richiesti;
# AdwCleaner v3.012 - Report created 16/11/2013 at 10:37:33
# Updated 11/11/2013 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Admin - PORTATILE
# Running from : C:\Documents and Settings\Admin\desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : Application Updater

***** [ Files / Folders ] *****

Folder Deleted : C:\Documents and Settings\All Users\Dati applicazioni\IBUpdaterService
Folder Deleted : C:\Documents and Settings\All Users\Dati applicazioni\Tarma Installer
Folder Deleted : C:\Documents and Settings\All Users\Dati applicazioni\WinMaximizer
Folder Deleted : C:\Programmi\Application Updater
Folder Deleted : C:\Programmi\ChatZum Toolbar
Folder Deleted : C:\Programmi\IObit Apps Toolbar
Folder Deleted : C:\Programmi\MyPC Backup
Folder Deleted : C:\Programmi\PC Speed Maximizer
Folder Deleted : C:\Programmi\Speed Analysis 3
Folder Deleted : C:\Programmi\Whilokii
Folder Deleted : C:\Programmi\File comuni\spigot
Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\DVDVideoSoftTB
Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\eSupport.com
Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\iac
Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\PackageAware
Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Productivity_2.2
Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\SoftwareUpdater
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\file scout
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\PerformerSoft
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\Search Settings
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\searchresultstb
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\SpecialSavings
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\SpeedanAlysis
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\SpeedAnalysis3
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\Systweak
Folder Deleted : C:\Documents and Settings\Admin\Dati applicazioni\zulagames
Folder Deleted : C:\Documents and Settings\Admin\Documenti\PC Speed Maximizer
Folder Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Productivity_2.2
Folder Deleted : C:\Documents and Settings\Angelo\Dati applicazioni\Search Settings
[!] Folder Deleted : C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\bfcpnihmbfoaeoakalclfalkdepgiaje
[!] Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\bfcpnihmbfoaeoakalclfalkdepgiaje
[!] Folder Deleted : C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\cfcbmgbfdbijmjgjihagbomfbjfjmgon
[!] Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\cfcbmgbfdbijmjgjihagbomfbjfjmgon
[!] Folder Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\cfcbmgbfdbijmjgjihagbomfbjfjmgon
[!] Folder Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\dnpmlnedpdikbgdghljdepnljfpkhccn
[!] Folder Deleted : C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\gflandjopdloblmlcoiidmncpinmmacn
[!] Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\gflandjopdloblmlcoiidmncpinmmacn
[!] Folder Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\jbpcjmidkkgldeplajgnbpjkfpmpeepb
[!] Folder Deleted : C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\mbmpjbkgemhgalmeiigcdljkccfcafoj
[!] Folder Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Extensions\mbmpjbkgemhgalmeiigcdljkccfcafoj
File Deleted : C:\WINDOWS\system32\roboot.exe
File Deleted : C:\Documents and Settings\Admin\Dati applicazioni\speedanalysis.ico
File Deleted : C:\Programmi\Mozilla Firefox\Components\AskSearch.js
File Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\databases\chrome-extension_dnpmlnedpdikbgdghljdepnljfpkhccn_0
File Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\databases\chrome-extension_dnpmlnedpdikbgdghljdepnljfpkhccn_0
File Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dnpmlnedpdikbgdghljdepnljfpkhccn_0.localstorage
File Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dnpmlnedpdikbgdghljdepnljfpkhccn_0.localstorage
File Deleted : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbpcjmidkkgldeplajgnbpjkfpmpeepb_0.localstorage
File Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbpcjmidkkgldeplajgnbpjkfpmpeepb_0.localstorage
File Deleted : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbpcjmidkkgldeplajgnbpjkfpmpeepb_0.localstorage-journal

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKCU\Software\Mozilla\Firefox\Extensions [speedanalysis@SpeedAnalysis.com]
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [speedanalysis@SpeedAnalysis.com]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bfcpnihmbfoaeoakalclfalkdepgiaje
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\cfcbmgbfdbijmjgjihagbomfbjfjmgon
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\gflandjopdloblmlcoiidmncpinmmacn
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mbmpjbkgemhgalmeiigcdljkccfcafoj
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Search
Key Deleted : HKCU\Software\Microsoft\Office\Powerpoint\Addins\babylonofficeaddin.officeaddin
Key Deleted : HKCU\Software\Microsoft\Office\Word\Addins\babylonofficeaddin.officeaddin
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 3.BackgroundHostObject
Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 3.BackgroundHostObject.1
Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 3.Navbar
Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 3.Navbar.1
Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 3.Tool
Key Deleted : HKLM\SOFTWARE\Classes\Speed Analysis 3.Tool.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SearchSettings
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{24F3378A-5B52-491F-AD90-88D583C42C77}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{58B849FB-ECBE-4F1B-BEE0-2DC418CF68F7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ACE0D5AB-50C8-4052-BD02-977569E56291}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D6B3AF56-1EAF-43D9-A733-D36AD06F16A2}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{95734BDE-B702-45B9-86E5-27676729F904}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{0771C34F-730F-4535-AD4C-37B74D27188E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{15998F3C-BBA9-476D-8FC2-09BE9E3B8751}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A09B0156-EFCE-46B4-9118-BC270EA654C1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{D88E0FD9-31EB-48EF-BC89-35EBCE0E813C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{04D2B915-19FF-41E9-994D-95DC898BEA43}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1BB22D38-A411-4B13-A746-C2A4F4EC7344}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{201F27D4-3704-41D6-89C1-AA35E39143ED}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{45564571-A21B-48ED-B584-69752EEE9C3D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5D79F641-C168-40DF-A32F-BACEA7509E75}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{938958E8-355C-49FF-92B0-53C1B87ACEA9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C98D5B61-B0EA-4D48-9839-1079D352D880}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CB41FC95-F1B3-4797-8BB6-1012FF62ABBA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD79F359-E577-46DB-AA74-D6E6B8B45BA8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{201F27D4-3704-41D6-89C1-AA35E39143ED}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{45564571-A21B-48ED-B584-69752EEE9C3D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5D79F641-C168-40DF-A32F-BACEA7509E75}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{938958E8-355C-49FF-92B0-53C1B87ACEA9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C98D5B61-B0EA-4D48-9839-1079D352D880}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CB41FC95-F1B3-4797-8BB6-1012FF62ABBA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FD79F359-E577-46DB-AA74-D6E6B8B45BA8}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A5B9C0F5-5616-47CD-A95F-E43B488FACCF}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A5B9C0F5-5616-47CD-A95F-E43B488FACCF}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\ChatZum Toolbar
Key Deleted : HKCU\Software\DVDVideoSoftTB
Key Deleted : HKCU\Software\filescout
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Speed Analysis 3
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\WinMaximizer
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKLM\Software\Application Updater
Key Deleted : HKLM\Software\AskBarDis
Key Deleted : HKLM\Software\ChatZum Toolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Search Settings
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Tarma Installer
Key Deleted : HKLM\Software\Uniblue
Key Deleted : HKLM\Software\WinMaximizer
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Speed Analysis 3
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Speed Analysis 3
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
Key Deleted : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v25.0 (it)

[ File : C:\Documents and Settings\LocalService\Dati applicazioni\Mozilla\Firefox\Profiles\f8icig9s.default\prefs.js ]

Line Deleted : user_pref("browser.startup.homepage", "hxxp://search.chatzum.com/?orig=HP&affid=62&cztbid=376579993");
Line Deleted : user_pref("browser.search.defaultenginename", "ChatZumSearch");
Line Deleted : user_pref("browser.search.order.1", "ChatZumSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "ChatZumSearch");
Line Deleted : user_pref("keyword.URL", "hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=376579993&q=");

[ File : C:\Documents and Settings\Admin\Dati applicazioni\Mozilla\Firefox\Profiles\fmusnpz9.default-1384262659921\prefs.js ]


[ File : C:\Documents and Settings\Angelo\Dati applicazioni\Mozilla\Firefox\Profiles\o0r3ktjc.default\prefs.js ]

Line Deleted : user_pref("browser.startup.homepage", "hxxp://search.chatzum.com/?orig=HP&affid=62&cztbid=376579993");
Line Deleted : user_pref("browser.search.defaultenginename", "ChatZumSearch");
Line Deleted : user_pref("browser.search.order.1", "ChatZumSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "ChatZumSearch");
Line Deleted : user_pref("keyword.URL", "hxxp://search.chatzum.com/?orig=DS&affid=62&cztbid=376579993&q=");

-\\ Google Chrome v30.0.1599.101

[ File : C:\Documents and Settings\LocalService\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\preferences ]


[ File : C:\Documents and Settings\Angelo\Impostazioni locali\Dati applicazioni\Google\Chrome\User Data\Default\preferences ]

Deleted : icon_url

*************************

AdwCleaner[R0].txt - [17344 octets] - [16/11/2013 10:35:39]
AdwCleaner[S0].txt - [17180 octets] - [16/11/2013 10:37:33]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [17241 octets] ##########
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Microsoft Windows XP x86
Ran by Admin on 16/11/2013 at 15.33.44,53
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] application updater
Successfully deleted: [Service] application updater



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\searchsettings
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{18B9B16E-716F-43DF-A6AD-512C7D2EB983}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\secman.dll
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}
Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{9AFB8248-617F-460D-9366-D71CDEDA3179}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\filescout
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\systweak
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yahoopartnertoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\search settings
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&search
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD79F359-E577-46DB-AA74-D6E6B8B45BA8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\application updater
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\tarma installer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{a5b9c0f5-5616-47cd-a95f-e43b488faccf}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{a5b9c0f5-5616-47cd-a95f-e43b488faccf}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{48A789BF-F6D6-4930-9C8B-77855A63EDE1}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"



~~~ Files

Successfully deleted: [File] "C:\Programmi\adobe\reader 10.0\reader\plug_ins\babylon\babylonrpi.api"
Successfully deleted: [File] "C:\WINDOWS\system32\roboot.exe"



~~~ Folders

Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\file scout"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\performersoft"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\search settings"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\searchresultstb"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\software informer"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\specialsavings"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\systweak"
Successfully deleted: [Folder] "C:\Documents and Settings\Admin\Dati applicazioni\zulagames"
Successfully deleted: [Folder] "C:\Programmi\application updater"
Successfully deleted: [Folder] "C:\Programmi\chatzum toolbar"
Successfully deleted: [Folder] "C:\Programmi\mypc backup"
Successfully deleted: [Folder] "C:\Programmi\pc speed maximizer"
Successfully deleted: [Folder] "C:\Programmi\secure speed dial"
Successfully deleted: [Folder] "C:\Programmi\whilokii"
Successfully deleted: [Folder] "C:\Programmi\zula games"
Failed to delete: [Folder] "C:\Programmi\File comuni\spigot"



~~~ FireFox

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions\\speedanalysis@speedanalysis.com
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\speedanalysis@speedanalysis.com



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Google [Blacklisted Policy]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 16/11/2013 at 15.40.13,78
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15.42.42, on 16/11/2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\AVAST Software\Avast\AvastSvc.exe
C:\Programmi\AVAST Software\Avast\afwServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\EscSvc.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Programmi\RealNetworks\RealDownloader\rndlresolversvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE
C:\WINDOWS\explorer.exe
C:\Programmi\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://it.search.yahoo.com?type=902615&fr=spigot-yhp-ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Dati applicazioni\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Guida per l'accesso a Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\ADVANC~2\BROWER~1\ASCPLU~1.DLL
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O4 - HKLM\..\Run: [avast] "C:\Programmi\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Programmi\File comuni\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000002] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000002" /M "WF-2510 Series"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000001" /M "WF-2510 Series"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Scarica con Download &Express - C:\Programmi\Download Express\Add_Url.htm
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1341859798656
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programmi\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Programmi\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Programmi\AVAST Software\Avast\afwServ.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - C:\WINDOWS\system32\EscSvc.exe
O23 - Service: Servizio Google Update (gupdate) (gupdate) - Google Inc. - C:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Servizio Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpSC - SoftwareUpdService - C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\SoftwareUpdater\SoftwareUpdService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Programmi\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Programmi\Secure Speed Dial\IE\SecureUpdate.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Programmi\Skype\Updater\Updater.exe

--
End of file - 8443 bytes
troleo
Inviato: Saturday, November 16, 2013 10:33:31 PM

Rank: AiutAmico

Iscritto dal : 11/29/2004
Posts: 137
Avevo dimenticato questo:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Versione database: v2013.11.15.11

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Admin :: PORTATILE [amministratore]

15/11/2013 23.34.26
mbam-log-2013-11-15 (23-34-26).txt

Tipo di scansione: Scansione completa (C:\|)
Opzioni di scansione attive: Memoria | Esecuzione automatica | Registro | File di sistema | Euristica/Extra | Euristica/Shuriken | PUP | PUM
Opzioni di scansione disattivate: P2P
Elementi esaminati: 338966
Tempo impiegato: 1 ore, 26 minuti, 41 secondi

Processi rilevati in memoria: 0
(non sono stati rilevati elementi nocivi)

Moduli di memoria rilevati: 0
(non sono stati rilevati elementi nocivi)

Chiavi di registro rilevate: 25
HKCR\CLSID\{24F3378A-5B52-491F-AD90-88D583C42C77} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\TypeLib\{A09B0156-EFCE-46B4-9118-BC270EA654C1} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\CLSID\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.ScriptHostObject.1 (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.ScriptHostObject (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.Tool.1 (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.Tool (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\CLSID\{58B849FB-ECBE-4F1B-BEE0-2DC418CF68F7} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\TypeLib\{15998F3C-BBA9-476D-8FC2-09BE9E3B8751} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.Navbar.1 (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.Navbar (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\CLSID\{ACE0D5AB-50C8-4052-BD02-977569E56291} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\TypeLib\{0771C34F-730F-4535-AD4C-37B74D27188E} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.BackgroundHostObject.1 (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Speed Analysis 3.BackgroundHostObject (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKCR\Typelib\{D88E0FD9-31EB-48EF-BC89-35EBCE0E813C} (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Speed Analysis 3 (PUP.Optional.7Go.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\SPEED ANALYSIS 3 (PUP.Optional.SpeedAnalysis.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Google\Chrome\Extensions\gflandjopdloblmlcoiidmncpinmmacn (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Google\Chrome\Extensions\mbmpjbkgemhgalmeiigcdljkccfcafoj (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Nessuna azione intrapresa.

Valori di registro rilevati: 3
HKCU\Software\Speed Analysis 3|elevationPolicyGuid (PUP.Optional.SpeedAnalysis.A) -> Dati: {2939F334-7540-4867-906D-ECBDCEE2D9DF} -> Nessuna azione intrapresa.
HKCU\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Dati: {BBFFADD3-4446-11E2-A610-0017C41BBA0B} -> Nessuna azione intrapresa.
HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Dati: {BBFFADD3-4446-11E2-A610-0017C41BBA0B} -> Nessuna azione intrapresa.

Voci rilevate nei dati di registro: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Cattivo: (1) Buono: (0) -> Spostato in quarantena e riparato con successo.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Cattivo: (1) Buono: (0) -> Spostato in quarantena e riparato con successo.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Cattivo: (1) Buono: (0) -> Spostato in quarantena e riparato con successo.

Cartelle rilevate: 8
C:\Documents and Settings\All Users\Dati applicazioni\IBUpdaterService (Adware.InstallBrain) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3 (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\mz (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\zulagames (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\mz (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\SpeedAnalysis3 (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\File Scout (PUP.Optional.FileScout.A) -> Nessuna azione intrapresa.

File rilevati: 84
C:\Programmi\Speed Analysis 3\ScriptHost.dll (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\ButtonSite.dll (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\BackgroundHost.exe (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\AddonsFramework.Typelib.dll (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\File Scout\filescout.exe (PUP.Optional.FileScout.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Documenti\Download\Babylon9_setup.exe (PUP.Optional.Babylon.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Angelo\Documenti\Downloads\RemoveWGA.exe (PUP.RemoveWGA) -> Nessuna azione intrapresa.
C:\Installer\SoftonicDownloader_per_windows-live-messenger-2009.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\Installer\SoftonicDownloader_per_windows-live-messenger-2011.exe (PUP.OfferBundler.ST) -> Nessuna azione intrapresa.
C:\Installer\winamp561_full_emusic-7plus_it-it.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\uninst.exe (PUP.Optional.7Go.A) -> Nessuna azione intrapresa.
C:\Programmi\Trend Micro\HiJackThis\backups\backup-20130113-152542-437.dll (PUP.DealPly) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP203\A0113660.exe (PUP.Optional.7Go.A) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114079.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114080.exe (PUP.Optional.Bandoo) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114086.exe (PUP.Optional.Softonic) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114098.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114109.exe (PUP.Optional.Bandoo) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114143.exe (PUP.Optional.7Go.A) -> Nessuna azione intrapresa.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114440.exe (PUP.Optional.UpdateStar.A) -> Nessuna azione intrapresa.
C:\WINDOWS\system32\roboot.exe (PUP.Optional.PCPerformer.A) -> Nessuna azione intrapresa.
C:\WINDOWS\Installer\16c85b.msi (PUP.Optional.SweetIM) -> Nessuna azione intrapresa.
C:\WINDOWS\Installer\16c861.msi (PUP.Optional.SweetIM) -> Nessuna azione intrapresa.
C:\WINDOWS\Installer\16c862.msi (PUP.Optional.SweetIM) -> Nessuna azione intrapresa.
C:\WINDOWS\Installer\MSI6C.tmp (PUP.Optional.SweetIM) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\Mozilla\EXTENSIONS\{1FD91A9C-410C-4090-BBCC-55D3450EF433} (PUP.Optional.Searchqu.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\speedanalysis.ico (PUP.Optional.SpeedAnalysis2.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\background.html (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon128.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\AddonsFramework.Typelib64.dll (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\BackgroundHost64.exe (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\bg.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\ButtonSite64.dll (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\config.xml (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\content.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon128.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon16.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon16.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon18.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon18.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon24.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon24.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon32.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon32.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon48.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon48.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon64.ico (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\icon64.png (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\jquery-1.9.1.min.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\json2.min.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\options.htm (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\ScriptHost64.dll (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\uninstall.exe (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\updater.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\updaterWrapper.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\mz\background.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Programmi\Speed Analysis 3\mz\content.js (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\zulagames\zulagames.crx (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\zulagames\DeskTopIcon.ico (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\zulagames\install_helper.exe (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\background.html (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\content.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\bg.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\config.xml (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\icon128.png (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\icon16.png (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\icon18.png (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\icon24.png (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\icon32.png (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\icon48.png (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\jquery-1.9.1.min.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\json2.min.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\options.htm (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\updater.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\updaterWrapper.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\mz\background.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Programmi\Zula Games\mz\content.js (PUP.Optional.Zulagames.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\SpeedAnalysis3\speedanalysis03.crx (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\SpeedAnalysis3\install_helper.exe (PUP.Optional.SpeedAnalysis3.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Admin\Dati applicazioni\File Scout\uninst.exe (PUP.Optional.FileScout.A) -> Nessuna azione intrapresa.
C:\Documents and Settings\Angelo\Documenti\Downloads\EvID4226Patch223d-en.zip (Malware.Tool) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114102.exe (Adware.InstallBrain) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114104.exe (Adware.InstallBrain) -> Spostato in quarantena ed eliminato con successo.
C:\Documents and Settings\All Users\Dati applicazioni\IBUpdaterService\repository.xml (Adware.InstallBrain) -> Spostato in quarantena ed eliminato con successo.

(fine)
cbbusto
Inviato: Sunday, November 17, 2013 12:36:31 AM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Certo che ne avevi di porcherie ci credo che il pc si piantava, devi rimuovere tutto quello che ha trovato malwarebytes, te lo avevo anche scritto, vedo che sono state eliminate solo 4 voci, devi selezionarle tutte.
Dopo la rimozione rifai una scansione con HJT e posta il log aggiornato poi ti dico quali voci eliminare. Ciao
troleo
Inviato: Sunday, November 17, 2013 11:09:29 PM

Rank: AiutAmico

Iscritto dal : 11/29/2004
Posts: 137
Scusa ma avevo letto male,ecco i log:

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Versione database: v2013.11.17.02

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Admin :: PORTATILE [amministratore]

17/11/2013 11.39.24
mbam-log-2013-11-17 (11-39-24).txt

Tipo di scansione: Scansione completa (C:\|)
Opzioni di scansione attive: Memoria | Esecuzione automatica | Registro | File di sistema | Euristica/Extra | Euristica/Shuriken | PUP | PUM
Opzioni di scansione disattivate: P2P
Elementi esaminati: 335771
Tempo impiegato: 1 ore, 9 minuti, 17 secondi

Processi rilevati in memoria: 0
(non sono stati rilevati elementi nocivi)

Moduli di memoria rilevati: 0
(non sono stati rilevati elementi nocivi)

Chiavi di registro rilevate: 19
HKCR\CLSID\{24F3378A-5B52-491F-AD90-88D583C42C77} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\TypeLib\{A09B0156-EFCE-46B4-9118-BC270EA654C1} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Speed Analysis 3.Tool.1 (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Speed Analysis 3.Tool (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\CLSID\{58B849FB-ECBE-4F1B-BEE0-2DC418CF68F7} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\TypeLib\{15998F3C-BBA9-476D-8FC2-09BE9E3B8751} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Speed Analysis 3.Navbar.1 (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Speed Analysis 3.Navbar (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\CLSID\{ACE0D5AB-50C8-4052-BD02-977569E56291} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\TypeLib\{0771C34F-730F-4535-AD4C-37B74D27188E} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Speed Analysis 3.BackgroundHostObject.1 (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Speed Analysis 3.BackgroundHostObject (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCR\Typelib\{D88E0FD9-31EB-48EF-BC89-35EBCE0E813C} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A66261FC-B82E-4EC7-9F6D-C2F36B871DF0} (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Speed Analysis 3 (PUP.Optional.7Go.A) -> Spostato in quarantena ed eliminato con successo.
HKCU\SOFTWARE\SPEED ANALYSIS 3 (PUP.Optional.SpeedAnalysis.A) -> Spostato in quarantena ed eliminato con successo.
HKLM\SOFTWARE\Google\Chrome\Extensions\gflandjopdloblmlcoiidmncpinmmacn (PUP.Optional.Zulagames.A) -> Spostato in quarantena ed eliminato con successo.
HKLM\SOFTWARE\Google\Chrome\Extensions\mbmpjbkgemhgalmeiigcdljkccfcafoj (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.

Valori di registro rilevati: 1
HKCU\Software\Speed Analysis 3|elevationPolicyGuid (PUP.Optional.SpeedAnalysis.A) -> Dati: {2939F334-7540-4867-906D-ECBDCEE2D9DF} -> Spostato in quarantena ed eliminato con successo.

Voci rilevate nei dati di registro: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Cattivo: (1) Buono: (0) -> Spostato in quarantena e riparato con successo.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Cattivo: (1) Buono: (0) -> Spostato in quarantena e riparato con successo.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Cattivo: (1) Buono: (0) -> Spostato in quarantena e riparato con successo.

Cartelle rilevate: 0
(non sono stati rilevati elementi nocivi)

File rilevati: 33
C:\Programmi\Speed Analysis 3\ScriptHost.dll (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
C:\Programmi\Speed Analysis 3\ButtonSite.dll (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
C:\Programmi\Speed Analysis 3\BackgroundHost.exe (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
C:\Programmi\Speed Analysis 3\AddonsFramework.Typelib.dll (PUP.Optional.SpeedAnalysis3.A) -> Spostato in quarantena ed eliminato con successo.
C:\AdwCleaner\Quarantine\C\Documents and Settings\Admin\Dati applicazioni\file scout\filescout.exe.vir (PUP.Optional.FileScout.A) -> Spostato in quarantena ed eliminato con successo.
C:\AdwCleaner\Quarantine\C\Programmi\Speed Analysis 3\uninst.exe.vir (PUP.Optional.7Go.A) -> Spostato in quarantena ed eliminato con successo.
C:\AdwCleaner\Quarantine\C\WINDOWS\system32\roboot.exe.vir (PUP.Optional.PCPerformer.A) -> Spostato in quarantena ed eliminato con successo.
C:\Documents and Settings\Admin\Documenti\Download\Babylon9_setup.exe (PUP.Optional.Babylon.A) -> Spostato in quarantena ed eliminato con successo.
C:\Documents and Settings\Angelo\Documenti\Downloads\RemoveWGA.exe (PUP.RemoveWGA) -> Spostato in quarantena ed eliminato con successo.
C:\Installer\SoftonicDownloader_per_windows-live-messenger-2009.exe (PUP.Optional.Softonic.A) -> Spostato in quarantena ed eliminato con successo.
C:\Installer\SoftonicDownloader_per_windows-live-messenger-2011.exe (PUP.OfferBundler.ST) -> Spostato in quarantena ed eliminato con successo.
C:\Installer\winamp561_full_emusic-7plus_it-it.exe (PUP.Optional.OpenCandy) -> Spostato in quarantena ed eliminato con successo.
C:\Programmi\Speed Analysis 3\uninst.exe (PUP.Optional.7Go.A) -> Spostato in quarantena ed eliminato con successo.
C:\Programmi\Trend Micro\HiJackThis\backups\backup-20130113-152542-437.dll (PUP.DealPly) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP203\A0113660.exe (PUP.Optional.7Go.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114079.exe (PUP.Optional.Softonic.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114080.exe (PUP.Optional.Bandoo) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114086.exe (PUP.Optional.Softonic) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114098.exe (PUP.Optional.Softonic.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114109.exe (PUP.Optional.Bandoo) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114143.exe (PUP.Optional.7Go.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP206\A0114440.exe (PUP.Optional.UpdateStar.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP217\A0120300.exe (PUP.Optional.7Go.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP217\A0120329.exe (PUP.Optional.FileScout.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP217\A0120374.exe (PUP.Optional.PCPerformer.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP218\A0126694.exe (PUP.Optional.PCPerformer.A) -> Spostato in quarantena ed eliminato con successo.
C:\System Volume Information\_restore{E519BC6B-991B-4DB0-B9A5-157D636E18D6}\RP218\A0126695.exe (PUP.Optional.FileScout.A) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\16c85b.msi (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\16c861.msi (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\16c862.msi (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
C:\WINDOWS\Installer\MSI6C.tmp (PUP.Optional.SweetIM) -> Spostato in quarantena ed eliminato con successo.
C:\Documents and Settings\Admin\Dati applicazioni\Mozilla\EXTENSIONS\{1FD91A9C-410C-4090-BBCC-55D3450EF433} (PUP.Optional.Searchqu.A) -> Spostato in quarantena ed eliminato con successo.
C:\Documents and Settings\Admin\Dati applicazioni\speedanalysis.ico (PUP.Optional.SpeedAnalysis2.A) -> Spostato in quarantena ed eliminato con successo.

(fine)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22.54.40, on 17/11/2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Programmi\AVAST Software\Avast\AvastSvc.exe
C:\Programmi\AVAST Software\Avast\afwServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\EscSvc.exe
C:\Programmi\File comuni\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Programmi\RealNetworks\RealDownloader\rndlresolversvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\Explorer.EXE
C:\Programmi\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmi\AVAST Software\Avast\setup\avast.setup
C:\Programmi\Trend Micro\HiJackThis\HiJackThis.exe
\?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://it.search.yahoo.com?type=902615&fr=spigot-yhp-ie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti
R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Dati applicazioni\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programmi\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Guida per l'accesso a Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programmi\File comuni\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~1\IObit\ADVANC~2\BROWER~1\ASCPLU~1.DLL
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll
O4 - HKLM\..\Run: [avast] "C:\Programmi\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Programmi\File comuni\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000002] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000002" /M "WF-2510 Series"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000001" /M "WF-2510 Series"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Scarica con Download &Express - C:\Programmi\Download Express\Add_Url.htm
O9 - Extra button: Invia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1341859798656
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programmi\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FILECO~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Precaricatore Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Daemon di cache delle categorie di componenti - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Programmi\File comuni\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Programmi\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Programmi\AVAST Software\Avast\afwServ.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Seiko Epson Corporation - C:\WINDOWS\system32\EscSvc.exe
O23 - Service: Servizio Google Update (gupdate) (gupdate) - Google Inc. - C:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Servizio Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Programmi\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Programmi\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programmi\File comuni\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpSC - SoftwareUpdService - C:\Documents and Settings\Admin\Impostazioni locali\Dati applicazioni\SoftwareUpdater\SoftwareUpdService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Programmi\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: RealNetworks Downloader Resolver Service - Unknown owner - C:\Programmi\RealNetworks\RealDownloader\rndlresolversvc.exe
O23 - Service: SecureUpdate (SecureUpdateSvc) - Unknown owner - C:\Programmi\Secure Speed Dial\IE\SecureUpdate.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Programmi\Skype\Updater\Updater.exe
End of file - 8454 bytes

Spero di risolvere con il Vs. gradito aiuto,per il momento ringrazio per la pazienza,saluti.
cbbusto
Inviato: Sunday, November 17, 2013 11:33:32 PM

Rank: AiutAmico

Iscritto dal : 11/8/2008
Posts: 13,964
Chiudi tutti i programmi e disconnesso lanci HJT e clicca sul secondo pulsante: Do a system scan only poi metti la spunta alle voci che ti indico e alla fine clic su Fix checked:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://it.search.yahoo.com?type=902615&fr=spigot-yhp-ie

R3 - URLSearchHook: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll

O2 - BHO: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll

O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Programmi\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programmi\AVAST Software\Avast\aswWebRepIE.dll

O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Programmi\Epson Software\E-Web Print\ewps_tb.dll

O3 - Toolbar: IObit Apps Toolbar - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - C:\Programmi\IObit Apps Toolbar\IE\8.2\iobitappsToolbarIE.dll

O4 - HKLM\..\Run: [Adobe ARM] "C:\Programmi\File comuni\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [APSDaemon] "C:\Programmi\File comuni\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\QTTask.exe" -atboottime

O4 - HKCU\..\Run: [EPLTarget\P0000000000000002] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000002" /M "WF-2510 Series"

O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_TATIIXE.EXE /EPT "EPLTarget\P0000000000000001" /M "WF-2510 Series"

Adesso bisogna disabilitare un servizio.
vai nel Pannello di controllo - Strumenti amministrazione - Servizi e cerca questa voce:
LiveUpSC - SoftwareUpdService, fai doppio clic su di essa e nella finestra che appare modifica il suo Tipo di avvio in Disabilitato.

Poi fai una pulizia con Ccleaner compreso il Registro, per il Registro spunta tutte le voci acconsenti al backup quando richiesto, sempre in Ccleaner vai in Strumenti Ripristino Sistema seleziona tutte le voci tranne l'ultima che non è selezionabile e rimane per sicurezza, poi clic su Rimuovi.

Poi vai in C:\windows cerca la cartella Prefetch aprila e cancella tutto il contenuto.
Controlla nel browser se la pagina iniziale è stata modificata ed eventualmente la sostituisci con la tua preferita
Stai attento ai programmi che scarichi controlla sempre che non sia spuntata qualche casella che installa altre cose, non installare mai le toolbar.
Il pc dovrebbe essere a posto, fai sapere: Ciao
troleo
Inviato: Sunday, November 17, 2013 11:53:47 PM

Rank: AiutAmico

Iscritto dal : 11/29/2004
Posts: 137
Purtroppo la cosa penso sia diventata difficile,dopo avere effettuato le 2 operazioni sopracitate regolarmente e con fatica sono riuscito ad inviare i log,il portatile continua a bloccarsi sia in internet che dal passaggio da una pagina all'altra,devo continuamente forzare la chiusura col pulsante di accensione,ora sto utilizzando il fisso,riprovo a fare come suggerito ma sono pessimista,mi sà che dovrò formattare,saluti e spero a presto.
Utenti presenti in questo topic
Guest


Salta al Forum
Aggiunta nuovi Topic disabilitata in questo forum.
Risposte disabilitate in questo forum.
Eliminazione tuoi Post disabilitata in questo forum.
Modifica dei tuoi post disabilitata in questo forum.
Creazione Sondaggi disabilitata in questo forum.
Voto ai sondaggi disabilitato in questo forum.

Main Forum RSS : RSS

Aiutamici Theme
Powered by Yet Another Forum.net versione 1.9.1.8 (NET v2.0) - 3/29/2008
Copyright © 2003-2008 Yet Another Forum.net. All rights reserved.