Virus PC mi apre continuamente pagine pubblicitarie

Risolto/Chiuso
Gab - 16 giu 2016 alle 14:20
Noureddine Bouzidi
Posti
22674
Data di registrazione
giovedì 19 marzo 2009
Stato
Moderatore
Ultimo intervento
giovedì 7 gennaio 2021
- 27 giu 2016 alle 15:35
Ciao,
sono un po' inesperto ancora con i siti web e i virus ma penso di averne uno che mi apre ogni minuto una pagina pubblicitaria su Google Chrome, non so come toglierlo e avrei bisogno di aiuto.
Ho provato un'estensione che blocca queste pagine, effettivamente le blocca ma si aprono lo stesso e non voglio che ciò accada.
Come posso fare??

Uso Windows XP, non so se ci siano programmi ancora compatibili, spero di sì.
Ringrazio in anticipo.

1 risposta

Noureddine Bouzidi
Posti
22674
Data di registrazione
giovedì 19 marzo 2009
Stato
Moderatore
Ultimo intervento
giovedì 7 gennaio 2021
15.415
16 giu 2016 alle 15:28
ciao,

=AdwCleaner=
  • Scarica e salva sul desktop AdwCleaner di Xplode
  • Chiudi tutti i programmi e browser internet aperti
  • Fai doppio clic su "AdwCleaner.exe" per eseguirlo
  • Fai clic sul pulsante "Scan" e attendi la fine del processo
  • Fai clic sul pulsante "Clean" e segui le istruzioni
  • Il programma chiuderà tutti i programmi aperti, quindi salva i tuoi dati e lavori in corso prima di continuare
  • Se viene chiesto di avviare il PC, accetta
  • Un report verrà aperto automaticamente, Copia/incolla il contenuto del file nella tua risposta
  • Puoi trovare il file log in "C:\AdwCleaner\AdwCleaner[Sn].txt" (nel quale "n" è un numero).

1
# AdwCleaner v5.200 - File registro eventi creato 17/06/2016 a 13:15:26
# Aggiornato 14/06/2016 by ToolsLib
# Database : 2016-06-17.1 [Server]
# Sistema operativo : Microsoft Windows XP Service Pack 3 (X86)
# Nome utente : Gab³ - A-9612E3644E644
# In esecuzione da : C:\Documents and Settings\Gab³\Documenti\Downloads\adwcleaner_5.200.exe
# Opzione : Pulizia
# Supporto : https://toolslib.net/forum
          • [ Servizi ] *****


[-] Servzio Eliminato : ServUpdater
[-] Servzio Eliminato : zigipyro
[!] Servzio No Eliminato : zigipyro
          • [ Cartelle ] *****


[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\AGI
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\apn
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\AVG Secure Search
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\AVG Security Toolbar
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\Babylon
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\QuickSet
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\82492aca-04f3-1
[-] Cartella Eliminato : C:\Documents and Settings\All Users\Dati applicazioni\82492aca-3ec5-0
[-] Cartella Eliminato : C:\Programmi\AGI
[-] Cartella Eliminato : C:\Programmi\Babylon
[-] Cartella Eliminato : C:\Programmi\BearShare Applications
[-] Cartella Eliminato : C:\Programmi\ConduitEngine
[-] Cartella Eliminato : C:\Programmi\Device
[-] Cartella Eliminato : C:\Programmi\DVDVideoSoftTB
[-] Cartella Eliminato : C:\Programmi\Iminent
[-] Cartella Eliminato : C:\Programmi\MPC Cleaner
[-] Cartella Eliminato : C:\Programmi\QuickSearch
[-] Cartella Eliminato : C:\Programmi\RewardsArcade
[-] Cartella Eliminato : C:\Programmi\SpaceSoundPro
[-] Cartella Eliminato : C:\Programmi\SweetIM
[-] Cartella Eliminato : C:\Programmi\Uniblue
[-] Cartella Eliminato : C:\Programmi\CleanBrowser
[-] Cartella Eliminato : C:\Programmi\Caster
[#] Cartella Eliminato : C:\Programmi\RewardsArcade
[-] Cartella Eliminato : C:\Programmi\SmileyCentral_1vEI
[-] Cartella Eliminato : C:\Programmi\Mozilla Firefox\Extensions\***@***
[-] Cartella Eliminato : C:\DOCUME~1\GAB~1\IMPOST~1\Temp\MPC
          • [ File ] *****


[-] File Eliminato : C:\Programmi\Mozilla Firefox\searchplugins\Babylon.xml
[-] File Eliminato : C:\Programmi\Mozilla Firefox\searchplugins\Search_Results.xml
[#] File Eliminato : C:\Programmi\Mozilla Firefox\searchplugins\babylon.xml
[-] File Eliminato : C:\WINDOWS\system32\conduitEngine.tmp
[-] File Eliminato : C:\WINDOWS\system32\zdengine.dll
[-] File Eliminato : C:\DOCUME~1\GAB~1\IMPOST~1\Temp\zdengine.log
[-] File Eliminato : C:\DOCUME~1\GAB~1\IMPOST~1\Temp\ziengine.ini.log
[-] File Eliminato : C:\user.js
          • [ DLLs ] *****
          • [ WMI ] *****


[-] Chiave Eliminato : \root\subscription\\ActiveScriptEventConsumer [ASEC]
          • [ Collegamenti ] *****


[-] Collegamento Disinfettato : C:\Documents and Settings\All Users\Menu Avvio\Programmi\Google Chrome.lnk
          • [ Attività pianificate ] *****


[-] Attività pianificata Eliminato : One System CarePeriod
          • [ Registro ] *****


[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\f
[-] Chiave Eliminato : HKLM\SOFTWARE\5be8bdde539ba44
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2056116
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2269050
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2365905
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2499479
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2567691
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2719321
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Toolbar.CT2905319
[-] Chiave Eliminato : HKLM\SOFTWARE\Google\Chrome\Extensions\bjeikeheijdjdfjbmknpefojickbkmom
[-] Chiave Eliminato : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
[-] Chiave Eliminato : HKLM\SOFTWARE\Google\Chrome\Extensions\dcmagccbogebndpoodhhhafmofelpffh
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Conduit.Engine
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\escort.escrtBtn.1
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\InstallerControl.InstallerObject
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\InstallerControl.InstallerObject.1
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Prod.cap
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\speedupmypc
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{0974BA1E-64EC-11DE-B2A5-E43756D89593}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{28387537-E3F9-4ED7-860C-11E69AF4A8A0}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{4260E0CC-0F75-462E-88A3-1E05C248BF4C}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{C430996F-4AA8-4AA8-81DE-F54432CD5786}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\TypeLib\{AD79BAD6-9504-4F09-ACEC-7B319584A4C1}
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Chiave Eliminato : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
[-] Valore Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}]
[-] Valore Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]
[-] Valore Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
[-] Valore Eliminato : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-] Valore Eliminato : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
[-] Chiave Eliminato : HKCU\Software\Wizzlabs
[-] Chiave Eliminato : HKCU\Software\MICROSOFT\IDSC
[-] Chiave Eliminato : HKCU\Software\INSTALLPATH\STATUS
[-] Chiave Eliminato : HKLM\SOFTWARE\Babylon
[-] Chiave Eliminato : HKLM\SOFTWARE\Conduit
[-] Chiave Eliminato : HKLM\SOFTWARE\conduitEngine
[-] Chiave Eliminato : HKLM\SOFTWARE\DataMngr
[-] Chiave Eliminato : HKLM\SOFTWARE\iLividSRTB
[-] Chiave Eliminato : HKLM\SOFTWARE\Iminent
[-] Chiave Eliminato : HKLM\SOFTWARE\Messenger Plus!\OpenCandy
[-] Chiave Eliminato : HKLM\SOFTWARE\MPC
[-] Chiave Eliminato : HKLM\SOFTWARE\Offerbox
[-] Chiave Eliminato : HKLM\SOFTWARE\OpenCandy NSIS SDK
[-] Chiave Eliminato : HKLM\SOFTWARE\QuickSearch
[-] Chiave Eliminato : HKLM\SOFTWARE\SpaceSoundPro
[-] Chiave Eliminato : HKLM\SOFTWARE\SweetIM
[-] Chiave Eliminato : HKLM\SOFTWARE\Uniblue
[-] Chiave Eliminato : HKLM\SOFTWARE\Vittalia
[-] Chiave Eliminato : HKLM\SOFTWARE\yuna software
[-] Chiave Eliminato : HKLM\SOFTWARE\SmileyCentral_1vEI
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0B500125-92A7-40BF-ACF0-45A9221ADE21}_is1
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\conduitEngine
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PopupProduct
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Results Toolbar
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpaceSoundPro
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{0B500125-92A7-40BF-ACF0-45A9221ADE21}_is1
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{CD95D125-2992-4858-B3EF-5F6FB52FBAD6}
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1}
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\BabylonToolbar
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\conduitEngine
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DealPly
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\PopupProduct
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{d35e5e88-e5b8-447f-b6f4-66bc7aa638d1}
[-] Chiave Eliminato : HKU\.DEFAULT\Software\AskPartnerNetwork
[-] Chiave Eliminato : HKU\.DEFAULT\Software\IBUpdaterService
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B2468513CA2D6943A1A233CD3F88CE7
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18C9E3869A16248439FE3FF9EB02207A
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C63F7979DCC2154CB9591969A5CB89D
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6207E55EA2FE71A4AA7ABD89AEF31D1B
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Installer\Features\6207E55EA2FE71A4AA7ABD89AEF31D1B
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Installer\Products\6207E55EA2FE71A4AA7ABD89AEF31D1B
[-] Chiave Eliminato : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\20E71B53321C641458DBDAF83979D193
[-] Chiave Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\20E71B53321C641458DBDAF83979D193
[-] Valore Eliminato : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List [C:\Documents and Settings\Miscii\Desktop\iMesh Applications\iMesh\iMesh.exe]
[-] Valore Eliminato : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Programmi\BearShare Applications\BearShare\BearShare.exe]
[-] Valore Eliminato : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Documents and Settings\All Users\Dati applicazioni\SweetIM\Messenger\update\sweetimsetup.exe]
[-] Valore Eliminato : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Documents and Settings\Miscii\Desktop\iMesh Applications\iMesh\iMesh.exe]
[-] Valore Eliminato : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SpaceSoundPro]
[-] Valore Eliminato : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Caster]
[#] Valore Eliminato : HKU\S-1-5-21-1801674531-162531612-1177238915-1086\Software\Microsoft\Windows\CurrentVersion\Run [Caster]
[-] Chiave Eliminato : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\ServUpdater
          • [ Browser web ] *****


:: Chiavi "Tracing" eliminate
:: Impostazioni Winsock ripristinate


C:\AdwCleaner\AdwCleaner[C1].txt - [22659 byte] - [17/06/2016 13:15:26]
C:\AdwCleaner\AdwCleaner[S2].txt - [22397 byte] - [17/06/2016 13:08:49]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [22805 byte] ##########

Eccolo qua. Ma una curiosità, a cosa vi servirebbe il file report? Comunque quel programma è riuscito a togliermi il virus. Vi ringrazio infinitamente.
0
Noureddine Bouzidi
Posti
22674
Data di registrazione
giovedì 19 marzo 2009
Stato
Moderatore
Ultimo intervento
giovedì 7 gennaio 2021
15.415 > Gab
17 giu 2016 alle 17:50
il report ci serve a vedere quali infezioni sono state eliminate, quali persistono e quali ritornano

se vuoi finire la pulizia ti raccomando di far girare anche i programmi MalwareBytes e ZHP CLeaner

=Malwarebytes=
  • Scarica Malwarebytes ed installalo
  • Disattiva l'antivirus (durante la scansione)
  • Avvia il programma
  • Aspetta che finisca l'aggiornamento del database; se non si fa in automatico, clicca su "Aggiornamento"
  • Clicca su "Opzione"
    • Cambia la lingua in italiano
    • Clicca su "Rilevamento e protezione" (a sinistra), in "Protezione da 'non-malware'" seleziona "Gestisci rilevamenti come malware" in entrambe le voci Rilevamenti "PUP" e "PUM"
  • Clicca su "Scansione"
  • Seleziona la voce "Ricerca elementi nocivi"
  • Una volta finita clicca su "Applica azioni"
  • Se viene chiesto di riavviare "Accetta"
  • Apri il programma e clicca su "Cronologia" poi "Log applicazione"
  • Seleziona l'ultimo log quindi "Vedi"
  • Clicca su "Copia negli appunti" (non succede niente ma il report verrà copiato)
  • Fai incolla nella tua risposta



=ZHPCleaner=
  • Scarica ZHPCleaner
  • Chiudi tutti i browser e programmi aperti
  • Avvia il programma e accetta la licenza
  • Fai clic su Scanner finita la scansione fai clic su Riparazione e mandaci il report generato
0
Gab > Noureddine Bouzidi
Posti
22674
Data di registrazione
giovedì 19 marzo 2009
Stato
Moderatore
Ultimo intervento
giovedì 7 gennaio 2021

18 giu 2016 alle 13:07
Proverò a scaricarli, vi ringrazio infinitamente. :)
0
Gab > Noureddine Bouzidi
Posti
22674
Data di registrazione
giovedì 19 marzo 2009
Stato
Moderatore
Ultimo intervento
giovedì 7 gennaio 2021

18 giu 2016 alle 14:46
Ecco quello di ZHPCleaner

~ ZHPCleaner v2016.6.18.75 by Nicolas Coolman (2016/06/18)
~ Run by Gab³ (Administrator) (18/06/2016 13:59:41)
~ Site : http://www.nicolascoolman.com
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Riparare
~ Report : C:\Documents and Settings\Gab³\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Documents and Settings\Gab³\Dati applicazioni\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)


---\\ Servizi (0)
~ Nessun elemento malevolo o inutili trovato.


---\\ Browser Internet (0)
~ Nessun elemento malevolo o inutili trovato.


---\\ File hosts (1)
~ Il file hosts è legittimo (19)


---\\ Operazioni pianificate automatiche. (0)
~ Nessun elemento malevolo o inutili trovato.


---\\ Esploratore ( File, Cartelle) (12)
SPOSTATO file: C:\Programmi\Skillbrains\lightshot\Lightshot.exe [Copyright 2009 - Starter Module] =>PUP.Optional.Skillbrains
SPOSTATO file: C:\WINDOWS\Temp\Dskspace.exe =>Heuristic.Suspect
SPOSTATO file: C:\WINDOWS\Temp\~GLBS914.EXE =>Heuristic.Suspect
SPOSTATO file: C:\WINDOWS\Temp\~GLBS915.EXE =>Heuristic.Suspect
SPOSTATO file: C:\Documents and Settings\All Users\Dati applicazioni\InstallMate\{FFC19A18-38E7-4387-A16C-70C52422B8EE}\Setup.exe [Tarma Software Research Pty Ltd - InstallMate® Setup] =>.Superfluous.Tarma
SPOSTATO file: C:\Documents and Settings\All Users\Dati applicazioni\InstallMate\{FFC19A18-38E7-4387-A16C-70C52422B8EE}\TsuDll.dll [Tarma Software Research Pty Ltd - InstallMate® Setup Library] =>.Superfluous.Tarma
SPOSTATO file^: C:\Documents and Settings\All Users\Dati applicazioni\InstallMate\{D2A3D0BB-DB51-4D0F-AFE4-93730940F24D}\Setup.exe [Tarma Software Research Pty Ltd - InstallMate® Setup] =>.Superfluous.Tarma
SPOSTATO file^: C:\Documents and Settings\All Users\Dati applicazioni\InstallMate\{D2A3D0BB-DB51-4D0F-AFE4-93730940F24D}\TsuDll.dll [Tarma Software Research Pty Ltd - InstallMate® Setup Library] =>.Superfluous.Tarma
SPOSTATO file: C:\Documents and Settings\Gab³\Impostazioni locali\Temp\43SSR2063U.exe [mobilepcstarterkit - mpck Setup] =>PUP.Optional.MobilePCStarterKit
SPOSTATO file: C:\Documents and Settings\Gab³\Impostazioni locali\Temp\C9.tmp [DotC United Inc - MPC Setup Application] =>.Superfluous.MPCCleaner
SPOSTATO cartelle^: C:\Programmi\Skillbrains =>PUP.Optional.Skillbrains
SPOSTATO cartelle: C:\Documents and Settings\All Users\Dati applicazioni\InstallMate =>.Superfluous.Tarma


---\\ Registro ( Chiavi, Valori, Dati ) (32)
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\icreymhc [Favorit] =>Adware.Favorit
ELIMINATO chiave*: HKEY_USERS\S-1-5-21-1801674531-162531612-1177238915-1086\SOFTWARE\SkillBrains [] =>PUP.Optional.Skillbrains
ELIMINATO chiave*: HKEY_USERS\.DEFAULT\Software\AVG SafeGuard toolbar [] =>PUP.Optional.SafeGuard
ELIMINATO chiave: HKCU\Software\SkillBrains [] =>PUP.Optional.Skillbrains
ELIMINATO chiave*: HKLM\SOFTWARE\Secure [] =>.Superfluous.SecurePCCleaner
ELIMINATO chiave*: HKLM\SOFTWARE\Classes\GRABCOM.AMV.1 [Grabcom Control] =>PUP.Optional.Rabio
ELIMINATO chiave*: HKLM\SOFTWARE\SkillBrains [] =>PUP.Optional.Skillbrains
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Conduit Engine [] =>.Superfluous.Conduit
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1 [Skillbrains] =>PUP.Optional.Skillbrains
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Google Inc.] =>Heuristic.Suspect
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\241c89ef-2b97-4f57-9700-483dd5a679ca [C:\Programmi\Messenger_Plus_Live_Italy (Not File)] =>.Superfluous.Conduit
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\3700b531-d86b-4d5c-9f03-6bb27d109294 [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\3770d6bc-e9b9-4cac-8ae8-098f0ff1c001 [C:\Programmi\IncrediMail_MediaBar (Not File)] =>PUP.Optional.IncrediMediaBar
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\55d4ba2e-324c-4819-929a-2fcf0fab17c9 [C:\Programmi\IncrediMail_MediaBar (Not File)] =>PUP.Optional.IncrediMediaBar
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\5bd4b0e4-a462-4cc8-be7f-a290a087e928 [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\6c99cafe-3bb0-497b-ae03-a64022da128f [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\6d1ba150-dded-49bf-a016-953fdf7b4070 [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\6df97636-0471-4719-bb54-77e26f375f02 [C:\Programmi\MessengerPlusLive_Italy_TB (Not File)] =>.Superfluous.Conduit
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\794dec7d-4939-4099-8191-7cb6f46e5b4b [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\c35fd955-df48-408e-8a99-dce80d46e442 [C:\Programmi\MessengerPlusLive_Italy_TB (Not File)] =>.Superfluous.Conduit
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\d631c1eb-9ee8-4004-b9cd-3b6c3a347f12 [C:\Programmi\Messenger_Plus_Live_Italy (Not File)] =>.Superfluous.Conduit
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\dd1ff115-ce7f-457c-ab93-640020b1a2cf [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\e7c5b2d5-4dd3-450c-b9dc-7d9cd4a280bc [C:\Programmi\IncrediMail_MediaBar (Not File)] =>PUP.Optional.IncrediMediaBar
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\eac7e758-2752-4369-9608-0eebadc95021 [C:\Programmi\Messenger_Plus_Live_Italy (Not File)] =>.Superfluous.Conduit
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\ee6b8350-40c3-48d9-a03f-10996d93823d [C:\Programmi\myBabylon_English4 (Not File)] =>PUP.Optional.Babylon
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0af350d9-3916-454b-ac53-0b0b65f41301} [C:\Programmi\Iminent (Not File)] =>PUP.Optional.IMBooster
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} [C:\Programmi\Iminent\ (Not File)] =>PUP.Optional.IMBooster
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08} [C:\Programmi\Iminent\ (Not File)] =>PUP.Optional.IMBooster
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f34c9277-6577-4dff-b2d7-7d58092f272f} [C:\PROGRA~1\SEARCH~1\Datamngr\SRTOOL~1 (Not File)] =>PUP.Optional.Datamngr
ELIMINATO chiave*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\123E150F2641868CD9B4E3B86CBE426E [C?\Programmi\Enlight\Marine Park Empire\model\animal\Alligator#2.AM1] =>PUP.Optional.StarterTV
ELIMINATO valore: HKLM\SOFTWARE\Mozilla\Firefox\Extensions\\***@*** [C:\Documents and Settings\-Misci-\Impostazioni locali\Dati applicazioni\RewardsArcade\498\Firefox] =>PUP.Optional.RewardsArcade
ELIMINATO valore: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Lightshot [C:\Programmi\Skillbrains\lightshot\Lightshot.exe] =>PUP.Optional.Skillbrains


---\\ Riepilogo dei elementi trovato sulla workstation (16)
https://www.nicolascoolman.info/2016/04/30/pup-optional-skillbrains/ =>PUP.Optional.Skillbrains
https://www.nicolascoolman.info/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect
http://www.nicolascoolman.fr/?p=259 =>.Superfluous.Tarma
http://www.nicolascoolman.fr/pup-mobilepcstarterkit/ =>PUP.Optional.MobilePCStarterKit
http://www.nicolascoolman.fr/superfluous-mpccleaner/ =>.Superfluous.MPCCleaner
http://www.nicolascoolman.fr/?p=4664 =>Adware.Favorit
http://www.nicolascoolman.fr/pup-safeguard/ =>PUP.Optional.SafeGuard
https://www.nicolascoolman.info/2016/06/08/superfluous-securepccleaner/ =>.Superfluous.SecurePCCleaner
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Rabio
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.IncrediMediaBar
http://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster
http://www.nicolascoolman.fr/?p=270 =>PUP.Optional.Datamngr
http://www.nicolascoolman.fr/?p=1218 =>PUP.Optional.StarterTV
http://www.nicolascoolman.fr/?p=610 =>PUP.Optional.RewardsArcade


---\\ Borrar otro. (22)
~ Chiave di registro Tracing éliminati (22)
~ Rimuovi vecchi report ZHPCleaner. (0)


---\\ Risultato di riparazione
~ Riparazione effettuata con successo
~ Browser non trovato (Mozilla Firefox)
~ Browser non trovato (Opera Software)
~ Il sistema è stato riavviato.


---\\ Statistiche
~ Elementi analizzati : 311
~ Elementi trovati : 0
~ Elementi cancellati : 0
~ Elementi riparati : 44


~ End of clean in 00h01mn00s
~====================
ZHPCleaner-[R]-18062016-14_00_41.txt
ZHPCleaner-[S]-18062016-13_56_58.txt
0
Per Malwarebytes vi devo mandare il log di protezione, registrazione o entrambi?
0