azz lo sapevo che cera qualcosa di strano.
è che in materia sono totalmente ignorante.
per comodo ho letto la guida per mettere il pc in sicurezza su questo forum, ora però l'ho tolto e ho messo quello di windows.
per quanto riguarda java ho scaricato il file che mi hai linkato, ma il risultato non cambia.
eccoti i log richiesti, anche se penso che con di malwarebytes ho fatto una cavolata.
dovrei aver salvato il log degli errori e non quello dopo il cancellamento delle voci selezionate.
però se ti occore rifaccio scansione e ti posto il log.
log malwarebytes:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.orgVersione database: v2013.11.22.05
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
borni :: BORNI-PC [amministratore]
22/11/2013 12:17:20
MBAM-log-2013-11-22 (14-37-04).txt
Tipo di scansione: Scansione completa (C:\|D:\|)
Opzioni di scansione attive: Memoria | Esecuzione automatica | Registro | File di sistema | Euristica/Extra | Euristica/Shuriken | PUP | PUM
Opzioni di scansione disattivate: P2P
Elementi esaminati: 429667
Tempo impiegato: 2 ore, 19 minuti, 18 secondi
Processi rilevati in memoria: 1
C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe (PUP.Optional.Wajam.A) -> 3256 -> Nessuna azione intrapresa.
Moduli di memoria rilevati: 0
(non sono stati rilevati elementi nocivi)
Chiavi di registro rilevate: 38
HKLM\SYSTEM\CurrentControlSet\Services\WajamUpdater (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCR\CLSID\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCR\wajam.WajamBHO.1 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCR\wajam.WajamBHO (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C} (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
HKCR\AppID\{1FAEE6D5-34F4-42AA-8025-3FD8F3EC4634} (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
HKCR\AppID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8} (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
HKCR\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCR\CLSID\{5D64294B-1341-4FE7-B6D8-7C36828D4DD5} (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCR\wajam.WajamDownloader.1 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCR\wajam.WajamDownloader (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCR\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B} (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08} (PUP.Optional.Iminent.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\context2prod (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
HKCR\AppID\priam_bho.DLL (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\DELTA\DELTA (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Nessuna azione intrapresa.
HKCU\Software\delta LTD (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
HKCU\Software\mysearchdial.com (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
HKCU\Software\BabSolution\Redir (PUP.Optional.Babylon.A) -> Nessuna azione intrapresa.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Nessuna azione intrapresa.
HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\IMINENT (PUP.Optional.Iminent.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> Nessuna azione intrapresa.
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings (PUP.Optional.BProtector.A) -> Nessuna azione intrapresa.
HKCU\SOFTWARE\WAJAM (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Delta\delta\Instl (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\WAJAM (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wajam (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
Valori di registro rilevati: 10
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{3004627E-F8E9-4E8B-909D-316753CBA923} (PUP.Optional.MySearchDial.A) -> Dati: -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{3004627E-F8E9-4E8B-909D-316753CBA923} (PUP.Optional.MySearchDial.A) -> Dati: mysearchdial Toolbar -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Delta\Delta|tlbrSrchUrl (PUP.Optional.Delta.A) -> Dati: -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> Dati:
http://www2.delta-search.com/?babsrc=HP_ss&mntrId=0EFC14DAE95ECAA1&affID=122122&tsp=4987 -> Nessuna azione intrapresa.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> Dati: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} -> Nessuna azione intrapresa.
HKCU\Software\Delta\delta|lastB (PUP.Optional.Delta.A) -> Dati:
http://www1.delta-search.com/?babsrc=HP_ss&mntrId=0EFC14DAE95ECAA1&affID=121564&tt=040813_11&tsp=4964 -> Nessuna azione intrapresa.
HKCU\Software\Iminent|SearchEngineOptin (PUP.Optional.Iminent.A) -> Dati: 0 -> Nessuna azione intrapresa.
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Dati: 0R0DtO0U1C1S1U1StR0J1Q2P1J1K1I2R -> Nessuna azione intrapresa.
HKCU\Software\Wajam|affiliate_id (PUP.Optional.Wajam.A) -> Dati: 1401 -> Nessuna azione intrapresa.
HKLM\SOFTWARE\Wajam|red (PUP.Optional.Wajam.A) -> Dati: 4 -> Nessuna azione intrapresa.
Voci rilevate nei dati di registro: 0
(non sono stati rilevati elementi nocivi)
Cartelle rilevate: 35
C:\Users\borni\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\Delta (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8} (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0 (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\bh (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6 (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\bh (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\Firefox (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\IE (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\Updater (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Smartbar (PUP.Optional.SmartBar.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Smartbar\Linkury.exe_StrongName_vuedtbpoockmp1sq45awfxuouevabx0i (PUP.Optional.SmartBar.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Smartbar\Linkury.exe_StrongName_vuedtbpoockmp1sq45awfxuouevabx0i\1.2.0.0 (PUP.Optional.SmartBar.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial\icons_2.2.14.1379 (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial\UpdateProc (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\15E572A59EFB4CABAE664777D1996069 (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\220424A2151842E8B394C413C5304247 (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\5C8E42489F654FD28DD41656E26B4BF3 (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\6966B84996DE41B5BB7712BFCDDBDD53 (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\77439C94DDF94B6987753AAFA8A6224F (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\C680179BEC93401AB9DEF8F6163AD655 (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\DF55513EE7854461B4B9627EA772D2ED (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\E66C99C7A0FA49FAAD6798EE46BBAF5B (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\OpenCandy_15E572A59EFB4CABAE664777D1996069 (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\OpenCandy_E66C99C7A0FA49FAAD6798EE46BBAF5B (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Temp\mt_ffx\Delta (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Temp\mt_ffx\Delta\delta (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.24.6 (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
File rilevati: 108
C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\IE\priam_bho.dll (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaApp.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaEng.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\deltasrv.exe (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\deltaTlbr.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\uninstall.exe (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\bh\delta.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\deltaApp.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\deltaEng.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\deltasrv.exe (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\deltaTlbr.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\bh\delta.dll (PUP.Optional.Delta) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\Updater\update.exe (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Temp\is2010907792\8695109_stp\BuzzSearchSetup.exe (PUP.Optional.BuzzSearch.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Temp\Temporary Internet Files\Content.IE5\6OEM3FT6\OptimizerPro[1].exe (PUP.Optional.OptimizerPro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\DVDVideoSoft\FreeStudio.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\5C8E42489F654FD28DD41656E26B4BF3\DeltaTB.exe (PUP.Optional.Babylon.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\5C8E42489F654FD28DD41656E26B4BF3\LatestDLMgr.exe (PUP.Optional.OpenCandy.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\C680179BEC93401AB9DEF8F6163AD655\OptimizerPro.exe (PUP.Optional.OptimizerPro.A) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\FreeStudio(1).exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\FreeStudio.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\FreeYouTubeDownload.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\installer_microsoft_word_Italian.exe (PUP.Optional.VIT) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\jre-6u37-windows-i586.exe (PUP.Optional.Freemium.A) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\mia_and_me_la_trappola_dell_unicorno_ita_downloader_it_99260.exe (PUP.Optional.GoForFiles.A) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\SoftonicDownloader_per_cdburnerxp.exe (PUP.Optional.Softonic) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\SoftonicDownloader_per_comodo-firewall.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\SoftonicDownloader_per_imgburn.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\SoftonicDownloader_per_memtest.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\Users\borni\Downloads\SoftonicDownloader_per_toolbar-cleaner.exe (PUP.Optional.Softonic.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M\wajam_updateCA3EJS34.exe (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M\wajam_updateCADOS1W4.exe (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_updateCAOR8PDR.exe (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_update[1].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_update[1].005 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_update[1].007 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_update[2].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_update[3].004 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5\wajam_update[4].004 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5\wajam_update[1].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5\wajam_update[1].007 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5\wajam_update[2].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5\wajam_update[3].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5\wajam_update[4].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5\wajam_update[5].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA\wajam_update[1].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA\wajam_update[1].006 (PUP.Optional.Wajam) -> Nessuna azione intrapresa.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA\wajam_update[2].004 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\Delta\sqlite3.dll (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Google\Chrome\User Data\Default\bProtectorPreferences (PUP.Optional.BProtector.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\notifications.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\conadvanced.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\Context2pro_Uninstaller.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\contextfr.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\contextnav.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\contextprod.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Context2pro\libwindoc.exe (PUP.Optional.Context2Pro.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstorage (PUP.Optional.FunMoods.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\bl (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.settings (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\dm (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension\bprotector.js (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\00 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\01 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\02 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\03 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\10 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\11 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\12 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\13 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\20 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\21 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\22 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\ProgramData\BrowserDefender\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\traking_settings\23 (PUP.Optional.BrowserDefender.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.22.0\GUninstaller.exe (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\GUninstaller.exe (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\Loading.html (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Delta\delta\1.8.24.6\uninstall.exe (PUP.Optional.Delta.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\uninstall.exe (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\Firefox\firefox_trigger_extension.htm (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\IE\0 (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\IE\favicon.ico (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Program Files (x86)\Wajam\Updater\wajamLogo.bmp (PUP.Optional.Wajam.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Local\Smartbar\Linkury.exe_StrongName_vuedtbpoockmp1sq45awfxuouevabx0i\1.2.0.0\user.config (PUP.Optional.SmartBar.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial\icons_2.2.14.1379\62.ico (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial\icons_2.2.14.1379\80.ico (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial\UpdateProc\config.dat (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\mysearchdial\UpdateProc\UpdateTask.exe (PUP.Optional.MySearchDial.A) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\15E572A59EFB4CABAE664777D1996069\2885.ico (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\15E572A59EFB4CABAE664777D1996069\AVG923_p1v2.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\15E572A59EFB4CABAE664777D1996069\AVGToolbarv923.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\15E572A59EFB4CABAE664777D1996069\EBB77268-338F-4C6A-8590-AD88FED26F4A (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\15E572A59EFB4CABAE664777D1996069\OCBrowserHelper_1.0.3.85.dll (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\220424A2151842E8B394C413C5304247\saSetup.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\5C8E42489F654FD28DD41656E26B4BF3\5478.ico (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\6966B84996DE41B5BB7712BFCDDBDD53\TuneUpUtilities2013-2200346_it-IT.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\77439C94DDF94B6987753AAFA8A6224F\TuneUpUtilities2013-2200346_it-IT.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\DF55513EE7854461B4B9627EA772D2ED\5478.ico (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\DF55513EE7854461B4B9627EA772D2ED\EBB77268-338F-4C6A-8590-AD88FED26F4A (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\DF55513EE7854461B4B9627EA772D2ED\OCBrowserHelper_1.0.6.125.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\E66C99C7A0FA49FAAD6798EE46BBAF5B\2788.ico (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\E66C99C7A0FA49FAAD6798EE46BBAF5B\EBB77268-338F-4C6A-8590-AD88FED26F4A (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\E66C99C7A0FA49FAAD6798EE46BBAF5B\LinkuryInstaller.msi (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\E66C99C7A0FA49FAAD6798EE46BBAF5B\LinkuryInstaller_p1v12.exe (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
C:\Users\borni\AppData\Roaming\OpenCandy\E66C99C7A0FA49FAAD6798EE46BBAF5B\OCBrowserHelper_1.0.3.85.dll (PUP.Optional.OpenCandy) -> Nessuna azione intrapresa.
(fine)
log adwcleaner:
# AdwCleaner v3.012 - Report created 22/11/2013 at 14:50:57
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : borni - BORNI-PC
# Running from : C:\Users\borni\Downloads\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
Folder Deleted : C:\ProgramData\BrowserDefender
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\Program Files (x86)\ChatZum Toolbar
Folder Deleted : C:\Program Files (x86)\Delta
Folder Deleted : C:\Program Files (x86)\NCH Software
Folder Deleted : C:\Program Files (x86)\Wajam
Folder Deleted : C:\Users\borni\AppData\Local\Linkury
Folder Deleted : C:\Users\borni\AppData\Local\SoftwareUpdater
Folder Deleted : C:\Users\borni\AppData\Local\Wajam
Folder Deleted : C:\Users\borni\AppData\Local\Temp\Softonic
Folder Deleted : C:\Users\borni\AppData\Roaming\Softonic
Folder Deleted : C:\Users\borni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserDefender
Folder Deleted : C:\Users\borni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
Folder Deleted : C:\Users\borni\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Folder Deleted : C:\Users\borni\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
File Deleted : C:\chatzum_nt.exe
File Deleted : C:\END
File Deleted : C:\Users\borni\AppData\Local\mysearchdial-speeddial.crx
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\bprotector_extensions.sqlite
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\bprotector_prefs.js
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\invalidprefs.js
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\searchplugins\Askcom.xml
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\searchplugins\Babylon.xml
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\searchplugins\Mysearchdial.xml
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\searchplugins\search-safer.xml
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\searchplugins\softonic.xml
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\searchplugins\zonealarm.xml
File Deleted : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\user.js
File Deleted : C:\Windows\System32\Tasks\BrowserDefendert
File Deleted : C:\Windows\Tasks\MySearchDial.job
File Deleted : C:\Windows\System32\Tasks\MySearchDial
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane
Key Deleted : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Key Deleted : HKLM\SOFTWARE\Classes\LinkurySmartBar.BHO
Key Deleted : HKLM\SOFTWARE\Classes\LinkurySmartBar.DockingPanel
Key Deleted : HKLM\SOFTWARE\Classes\LinkurySmartBar.LinkuryMenuForm
Key Deleted : HKLM\SOFTWARE\Classes\LinkurySmartBar.LinkurySmartBar
Key Deleted : HKLM\SOFTWARE\Classes\LinkurySmartBar.LinkurySmartBarBandObject
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore.1
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd.1
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr
Key Deleted : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\chatzum_nt_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\chatzum_nt_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasmancs
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WajamUpdater
Key Deleted : HKCU\Software\5b53888ab43aeb17
Key Deleted : HKLM\SOFTWARE\5b53888ab43aeb17
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_comodo-firewall_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_comodo-firewall_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_dvd-shrink_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_dvd-shrink_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_dvdfab-hd-decrypter_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_dvdfab-hd-decrypter_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_imgburn_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_imgburn_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_memtest_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_memtest_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_tipcam_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_tipcam_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_toolbar-cleaner_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_per_toolbar-cleaner_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{63E471BB-23F1-3A92-8D43-4079E7B7FA8E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B397BC55-576C-39E6-BF64-9E2A96317447}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B973AB12-952F-31C4-A321-E8FA6FE4421E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EC5983DF-8DE2-31B5-989F-850F265E7F3C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{63E471BB-23F1-3A92-8D43-4079E7B7FA8E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{B397BC55-576C-39E6-BF64-9E2A96317447}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{B973AB12-952F-31C4-A321-E8FA6FE4421E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{EC5983DF-8DE2-31B5-989F-850F265E7F3C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\ChatZum Toolbar
Key Deleted : HKCU\Software\Delta
Key Deleted : HKCU\Software\NCH Software
Key Deleted : HKCU\Software\Optimizer Pro
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKLM\Software\AVG Nation toolbar
Key Deleted : HKLM\Software\AVG Secure Search
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\ChatZum Toolbar
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\Delta
Key Deleted : HKLM\Software\Iminent
Key Deleted : HKLM\Software\NCH Software
Key Deleted : HKLM\Software\Vittalia
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16448
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
-\\ Mozilla Firefox v25.0.1 (it)
[ File : C:\Users\borni\AppData\Roaming\Mozilla\Firefox\Profiles\kop9q3zn.default\prefs.js ]
Line Deleted : user_pref("browser.newtab.url", "hxxp://www1.delta-search.com/?babsrc=NT_ss&mntrId=0EFC14DAE95ECAA1&affID=121564&tt=040813_11&tsp=4964");
Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.defaultenginename", "Mysearchdial");
Line Deleted : user_pref("browser.search.order.1", "Mysearchdial");
Line Deleted : user_pref("browser.search.selectedEngine", "Mysearchdial");
Line Deleted : user_pref("extensions.Softonic.autoRvrt", "false");
Line Deleted : user_pref("extensions.Softonic.dfltSrch", true);
Line Deleted : user_pref("extensions.Softonic.dnsErr", true);
Line Deleted : user_pref("extensions.Softonic.hmpg", true);
Line Deleted : user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/MOY00010/tb_v1?SearchSource=13&cc=&mi=0efc067f00000000000014dae95ecaa1&toi=16030");
Line Deleted : user_pref("extensions.Softonic.newTab", true);
Line Deleted : user_pref("extensions.Softonic.newTabUrl", "hxxp://search.softonic.com/MOY00010/tb_v1/?SearchSource=15&cc=&mi=0efc067f00000000000014dae95ecaa1&toi=16030");
Line Deleted : user_pref("extensions.Softonic.rvrt", "false");
Line Deleted : user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");
Line Deleted : user_pref("extensions.delta.admin", false);
Line Deleted : user_pref("extensions.delta.aflt", "babsst");
Line Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Line Deleted : user_pref("extensions.delta.autoRvrt", "false");
Line Deleted : user_pref("extensions.delta.bbDpng", "10");
Line Deleted : user_pref("extensions.delta.cntry", "IT");
Line Deleted : user_pref("extensions.delta.dfltLng", "it");
Line Deleted : user_pref("extensions.delta.excTlbr", false);
Line Deleted : user_pref("extensions.delta.ffxUnstlRst", true);
Line Deleted : user_pref("extensions.delta.hdrMd5", "D2240BF8833BA503D58C86F931F92F42");
Line Deleted : user_pref("extensions.delta.id", "0efc067f00000000000014dae95ecaa1");
Line Deleted : user_pref("extensions.delta.instlDay", "15944");
Line Deleted : user_pref("extensions.delta.instlRef", "sst");
Line Deleted : user_pref("extensions.delta.lastVrsnTs", "1.8.22.016:16:15");
Line Deleted : user_pref("extensions.delta.newTab", false);
Line Deleted : user_pref("extensions.delta.prdct", "delta");
Line Deleted : user_pref("extensions.delta.prtnrId", "delta");
Line Deleted : user_pref("extensions.delta.rvrt", "false");
Line Deleted : user_pref("extensions.delta.sg", "azb");
Line Deleted : user_pref("extensions.delta.smplGrp", "none");
Line Deleted : user_pref("extensions.delta.tlbrId", "base");
Line Deleted : user_pref("extensions.delta.tlbrSrchUrl", "");
Line Deleted : user_pref("extensions.delta.vrsn", "1.8.24.6");
Line Deleted : user_pref("extensions.delta.vrsnTs", "1.8.24.621:38:09");
Line Deleted : user_pref("extensions.delta.vrsni", "1.8.24.6");
Line Deleted : user_pref("extensions.delta_i.babExt", "");
Line Deleted : user_pref("extensions.delta_i.babTrack", "affID=122122&tsp=4987");
Line Deleted : user_pref("extensions.delta_i.srcExt", "ss");
Line Deleted : user_pref("extensions.mysearchdial.aflt", "irmsd1103");
Line Deleted : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Line Deleted : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyC0A0Azz0EtDyCyB0FtN0D0Tzu0CyCzytCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R");
Line Deleted : user_pref("extensions.mysearchdial.cntry", "IT");
Line Deleted : user_pref("extensions.mysearchdial.cr", "792980189");
Line Deleted : user_pref("extensions.mysearchdial.dfltLng", "");
Line Deleted : user_pref("extensions.mysearchdial.dfltSrch", true);
Line Deleted : user_pref("extensions.mysearchdial.dnsErr", true);
Line Deleted : user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,18285[...]
Line Deleted : user_pref("extensions.mysearchdial.excTlbr", false);
Line Deleted : user_pref("extensions.mysearchdial.hdrMd5", "CB2753F58DE7BA390BE7FF162D31F36A");
Line Deleted : user_pref("extensions.mysearchdial.hmpg", true);
Line Deleted : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyC0A0Azz0EtDyCyB0FtN0D0Tzu0CyCzytCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutC[...]
Line Deleted : user_pref("extensions.mysearchdial.id", "742F6886AA8E067F");
Line Deleted : user_pref("extensions.mysearchdial.instlDay", "16030");
Line Deleted : user_pref("extensions.mysearchdial.instlRef", "");
Line Deleted : user_pref("extensions.mysearchdial.lastB", "hxxp://start.mysearchdial.com/?f=1&a=irmsd1103&cd=2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyC0A0Azz0EtDyCyB0FtN0D0Tzu0CyCzytCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD[...]
Line Deleted : user_pref("extensions.mysearchdial.lastVrsnTs", "");
Line Deleted : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=irmsd1103&cd=2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyC0A0Azz0EtDyCyB0FtN0D0Tzu0CyCzytCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1Czu[...]
Line Deleted : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"85\",\"lastVrsn\":\"85\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Line Deleted : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.sg", "{smplGrp}");
Line Deleted : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Line Deleted : user_pref("extensions.mysearchdial.tlbrId", "base");
Line Deleted : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=irmsd1103&cd=2XzuyEtN2Y1L1QzuyByEtB0FyCzzzzyC0A0Azz0EtDyCyB0FtN0D0Tzu0CyCzytCtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1C[...]
Line Deleted : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
Line Deleted : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
Line Deleted : user_pref("extensions.mysearchdial_i.hmpg", true);
Line Deleted : user_pref("extensions.mysearchdial_i.newTab", false);
Line Deleted : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Line Deleted : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.013:57:53");
Line Deleted : user_pref("id_chatzum.firstlaunch", "0");
Line Deleted : user_pref("id_chatzum.guid", "%7B807E490C-3F67-5DE1-DC71-16F8167D3589%7D");
Line Deleted : user_pref("id_chatzum.hiddenvisual", 0);
Line Deleted : user_pref("id_chatzum.openSearchEngineName", "Google");
Line Deleted : user_pref("id_chatzum.searchengine", "Google");
Line Deleted : user_pref("id_chatzum.variables.SVar1", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar10", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar2", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar3", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar4", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar5", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar6", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar7", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar8", "%13");
Line Deleted : user_pref("id_chatzum.variables.SVar9", "%13");
Line Deleted : user_pref("id_chatzum.variables.Var1", "0");
Line Deleted : user_pref("id_chatzum.variables.Var10", "0");
Line Deleted : user_pref("id_chatzum.variables.Var2", "0");
Line Deleted : user_pref("id_chatzum.variables.Var3", "0");
Line Deleted : user_pref("id_chatzum.variables.Var4", "0");
Line Deleted : user_pref("id_chatzum.variables.Var5", "0");
Line Deleted : user_pref("id_chatzum.variables.Var6", "0");
Line Deleted : user_pref("id_chatzum.variables.Var7", "0");
Line Deleted : user_pref("id_chatzum.variables.Var8", "0");
Line Deleted : user_pref("id_chatzum.variables.Var9", "0");
Line Deleted : user_pref("id_chatzum_installed_version", "1.0.17");
Line Deleted : user_pref("id_chatzum_tabpage", "hxxp%3A//searchsafer.com/");
-\\ Google Chrome v
[ File : C:\Users\borni\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [21929 octets] - [22/11/2013 14:49:44]
AdwCleaner[S0].txt - [20747 octets] - [22/11/2013 14:50:57]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [20808 octets] ##########
log jrt:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by borni on 22/11/2013 at 14:59:40,90
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1666706445-4238253143-1674265975-1001\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1666706445-4238253143-1674265975-1001\Software\wajam
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\linkurysmartbar.bandobjectattribute
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-codedownloader_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-codedownloader_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-updater_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-updater_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-codedownloader_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-codedownloader_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-updater_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-updater_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{95A35015-3947-4102-A997-5F7AA6BF58B1}
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\borni\AppData\Roaming\mozilla\firefox\profiles\kop9q3zn.default\minidumps [329 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 22/11/2013 at 15:11:53,76
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
log hijackthis:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by borni on 22/11/2013 at 14:59:40,90
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1666706445-4238253143-1674265975-1001\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1666706445-4238253143-1674265975-1001\Software\wajam
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\linkurysmartbar.bandobjectattribute
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-codedownloader_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-codedownloader_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-updater_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\LyricsFinder-updater_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-codedownloader_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-codedownloader_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-updater_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\LyricsFinder-updater_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{95A35015-3947-4102-A997-5F7AA6BF58B1}
~~~ Files
~~~ Folders
~~~ FireFox
Emptied folder: C:\Users\borni\AppData\Roaming\mozilla\firefox\profiles\kop9q3zn.default\minidumps [329 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 22/11/2013 at 15:11:53,76
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
grazie