• Non sono ammesse registrazioni con indirizzi email temporanei usa e getta

Importante Richiesta controllo Logfile of HijackThis (Versione 2.10.0.31) del 06/05/2023

Ho tolto le prime tre voci R1, R2 e R3 e adesso va... ma se ci fosse altro potete darmi una dritta?
 
Elimina tutti gli 01

Cancella tutto il contenuto della cartella temp

C:Windows/temp

Cancella cookies e cache del browser.

Ora sono da cell non riesco a verificare bene tutto il log.

Visto che il problema é nato dopo aver installato un programma, cosa hai installato?

Fai una scansione totale con l'antivirus
 
Tranquillo... se riesci quando sei a PC con calma mi faresti un grosso piacere.

Ho cancellato la temp e cookies e cache e adesso sembra andare bene

Avevo installato solo acronis poi disinstallato e un altro programmetto che doveva servire per esplorare i file .tib poi risultato inutile e mi sa che è stato quello perchè li l'antivirus mi aveva dato avviso.

L'antivirus ora non mi segnala niente di anomalo dopo scansione completa
 
Stamattina non riesco ad aprire le pagine di google, sia la home del motore di ricerca che quelle annesse... siccome su l'altro pc connesso alla stessa rete, riesco ho pensato di aver beccato qualche virus nelle installazioni che ho fatto ieri.

Ho scansionato con Hijack ma non so leggere bene il log.
Potreste aiutarmi?

Cancella tutti gli R1-R2-R3-01-15

Cancella gli 021 dove c'è scritto Nofile

Poi rimetti il log
 
Ecco qua:
Sai quanti keygen e altre cosette mi rileva l'antivirus :laughing7: si vede m'è scappato qualche "virus"

ma le voci degli update come mai me le hai fatte levare?

O2 - HKLM\..\BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_241\bin\jp2ssv.dll
O2 - HKLM\..\BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_241\bin\ssv.dll
O2 - HKLM\..\BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll
O2 - HKLM\..\BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll
O2-32 - HKLM\..\BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O2-32 - HKLM\..\BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2-32 - HKLM\..\BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O3 - HKLM\..\Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll
O3-32 - HKLM\..\Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O4 - HKCU\..\Run: [Adobe Acrobat Synchronizer] = C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
O4 - HKCU\..\Run: [CCXProcess] = C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKLM\..\Run: [CDAServer] = C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
O4 - HKLM\..\Run: [EvtMgr6] = C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
O4 - HKLM\..\Run: [RTHDVCPL] = C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s
O4 - HKLM\..\Run: [egui] = C:\Program Files\ESET\ESET Security\ecmds.exe /run /hide /proxy
O4 - HKLM\..\StartupApproved\Run32: [Acrobat Assistant 8.0] (2019/02/04) = C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe
O4 - HKLM\..\StartupApproved\Run32: [Adobe Creative Cloud] (2019/02/07) = C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --showwindow=false --onOSstartup=true
O4 - HKLM\..\StartupApproved\Run32: [SunJavaUpdateSched] (2019/05/20) = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\StartupApproved\Run: [AdobeAAMUpdater-1.0] (2019/02/04) = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
O4 - HKLM\..\StartupApproved\Run: [AdobeGCInvoker-1.0] (2019/02/04) = C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe
O4 - HKLM\..\StartupApproved\Run: [SecurityHealth] (1601/01/01) = C:\WINDOWS\system32\SecurityHealthSystray.exe
O4 - User Startup: C:\Users\Filippo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk -> C:\Rainmeter\Rainmeter.exe
O4 - User Startup: C:\Users\Filippo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar824.lnk -> C:\Program Files (x86)\Windows Sidebar\sidebar.exe
O4-32 - HKLM\..\Run: [AllShareAgent] = C:\Program Files (x86)\Samsung\AllShare\AllShareAgent.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{2bb3c7be-ae22-431f-b205-7188e17f490a}: [NameServer] = 1.0.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{2bb3c7be-ae22-431f-b205-7188e17f490a}: [NameServer] = 1.1.1.1
O21 - HKLM\..\ShellIconOverlayIdentifiers: AccExtIco1 Class - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers: AccExtIco2 Class - {853B7E05-C47D-4985-909A-D0DC5C6D7303} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O21 - HKLM\..\ShellIconOverlayIdentifiers: AccExtIco3 Class - {42D38F2E-98E9-4382-B546-E24E4D6D04BB} - C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
O22 - Task: (disabled) (telemetry) \Microsoft\Windows\Application Experience\PcaPatchDbTask - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\PcaSvc.dll,PcaPatchSdbTask
O22 - Task: (disabled) \Agent Activation Runtime\S-1-5-21-1074140562-1853794864-24934786-1000 - C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe
O22 - Task: (disabled) \Microsoft\Windows\InstallService\WakeUpAndContinueUpdates - {0DC331EE-8438-49D5-A721-E10B937CE459} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\InstallService\WakeUpAndScanForUpdates - {D5A04D91-6FE6-4FE4-A98A-FEB4500C5AF7} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup - C:\WINDOWS\system32\MdmDiagnosticsTool.exe /clean (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Management\Provisioning\Retry - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ProvRetryTask (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Management\Provisioning\RunOnReboot - C:\WINDOWS\system32\ProvTool.exe /turn 5 /source ContinueSessionTask (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Shell\UpdateAgentTask_RemoveFOD - C:\WINDOWS\System32\ShellUpdateAgentTask.exe -RemoveFOD (file missing)
O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\WINDOWS\system32\MusNotification.exe /RunOnAC ReadyToReboot (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\WINDOWS\system32\MusNotification.exe /RunOnBattery ReadyToReboot (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work - C:\WINDOWS\system32\usoclient.exe StartMaintenanceWork (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\UpdateOrchestrator\Schedule Work - C:\WINDOWS\system32\usoclient.exe StartWork (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\WaaSMedic\PerformRemediation - {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32},None - C:\WINDOWS\System32\WaaSMedicSvc.dll (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\WindowsUpdate\sihpostreboot - C:\WINDOWS\system32\sihclient.exe /PostReboot (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Workplace Join\Automatic-Device-Join - C:\WINDOWS\System32\dsregcmd.exe $(Arg0) $(Arg1) $(Arg2) (Microsoft)
O22 - Task: (disabled) \Microsoft\Windows\Workplace Join\Device-Sync - {C662D912-E4D6-44A3-89A0-20550514951D},DeviceUpdate - C:\Windows\System32\dsregtask.dll (Microsoft)
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentFallBack2016 - C:\Program Files\Microsoft Office\root\Office16\msoia.exe scan upload mininterval:2880 (Microsoft)
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentLogOn2016 - C:\Program Files\Microsoft Office\root\Office16\msoia.exe scan upload (Microsoft)
O22 - Task: AIDA64 AutoStart - E:\#_ PROGRAMMI _#\#_Microsoft_#\#___ Windows ___#\aida64extreme\aida64.exe
O22 - Task: Adobe Acrobat Update Task - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O22 - Task: AdobeGCInvoker-1.0 - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe -mode=scheduled
O22 - Task: MicrosoftEdgeUpdateTaskMachineCore - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /c
O22 - Task: MicrosoftEdgeUpdateTaskMachineUA - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /ua /installsource scheduler
O22 - Task: Microsoft_Hardware_Launch_ipoint_exe - C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
O22 - Task: Microsoft_Hardware_Launch_itype_exe - C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
O22 - Task: Microsoft_Hardware_Launch_mousekeyboardcenter_exe - C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe
O22 - Task: Microsoft_MKC_Logon_Task_ipoint.exe - C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
O22 - Task: Microsoft_MKC_Logon_Task_itype.exe - C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
O22 - Task: \ASUS\ASUS AISuiteIII - C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
O22 - Task: \ASUS\ASUS DIPAwayMode - C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
O22 - Task: \ASUS\ASUS DigiPowerControl Help - C:\Program Files (x86)\ASUS\AI Suite III\DIGI+ Power Control\PowerControlHelp.exe
O22 - Task: \Microsoft\Office\Office Automatic Updates 2.0 - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /frequentupdate SCHEDULEDTASK displaylevel=False (Microsoft)
O22 - Task: \Microsoft\Office\Office ClickToRun Service Monitor - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe /WatchService (Microsoft)
O22 - Task: \Microsoft\Office\Office Feature Updates - C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe (Microsoft)
O22 - Task: \Microsoft\Office\Office Feature Updates Logon - C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe /onlogon (Microsoft)
O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerLogon - C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft)
O22 - Task: \Microsoft\Office\OfficeBackgroundTaskHandlerRegistration - C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft)
O22 - Task: \Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives - {61BCD1B9-340C-40EC-9D41-D7F1C0632F05},BitLockerEncryptAllDrives - C:\WINDOWS\System32\edptask.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan - {DCFD3EA8-D960-4719-8206-490AE315F94F} - C:\Windows\System32\discan.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Data Integrity Scan\Data Integrity Scan - {DCFD3EA8-D960-4719-8206-490AE315F94F},-Manual - C:\Windows\System32\discan.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Device Information\Device - C:\WINDOWS\system32\devicecensus.exe SystemCxt (Microsoft)
O22 - Task: \Microsoft\Windows\Device Information\Device User - C:\WINDOWS\system32\devicecensus.exe UserCxt (Microsoft)
O22 - Task: \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange - {AE31B729-D5FD-401E-AF42-784074835AFE},-RegisterDevice -SettingChange - C:\WINDOWS\system32\DeviceDirectoryClient.dll (Microsoft)
O22 - Task: \Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange - {AE31B729-D5FD-401E-AF42-784074835AFE},-RegisterDevice -SettingChange - C:\WINDOWS\system32\DeviceDirectoryClient.dll (Microsoft)
O22 - Task: \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged - {AE31B729-D5FD-401E-AF42-784074835AFE},-RegisterDevice -ProtectionStateChanged -FreeNetworkOnly - C:\WINDOWS\system32\DeviceDirectoryClient.dll (Microsoft)
O22 - Task: \Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback - {AE31B729-D5FD-401E-AF42-784074835AFE},-RegisterDevice -Periodic - C:\WINDOWS\system32\DeviceDirectoryClient.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner - {AD08DCC2-4E35-4486-9D49-547CBD30942D} - C:\WINDOWS\System32\MitigationClient.dll (Microsoft)
O22 - Task: \Microsoft\Windows\DirectX\DXGIAdapterCache - C:\WINDOWS\system32\dxgiadaptercache.exe (Microsoft)
O22 - Task: \Microsoft\Windows\DirectX\DirectXDatabaseUpdater - C:\WINDOWS\system32\directxdatabaseupdater.exe (Microsoft)
O22 - Task: \Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures - {59EECBFE-C2F5-4419-9B99-13FE05FF2675} - C:\Windows\System32\fcon.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing - {99EFDAD1-0F11-4A6B-A702-4E1C37D1A3EF} - C:\Windows\System32\fcon.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting - {BBFCD054-8AAC-45DE-A1EB-7B246C9028AF} - C:\Windows\System32\fcon.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Flighting\OneSettings\RefreshCache - {E07647F7-AED2-48D9-9720-939BC24A8A3C} - C:\Windows\System32\wosc.dll (Microsoft)
O22 - Task: \Microsoft\Windows\HelloFace\FODCleanupTask - C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe (Microsoft)
O22 - Task: \Microsoft\Windows\Input\LocalUserSyncDataAvailable - {8E7C2AFB-72B9-415C-9AC2-5037693309B7},LocalUserSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Input\MouseSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},MouseSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Input\PenSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},PenSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Input\TouchpadSyncDataAvailable - {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA},TouchpadSyncDataAvailable - C:\Windows\System32\InputCloudStore.dll (Microsoft)
O22 - Task: \Microsoft\Windows\InstallService\ScanForUpdates - {A558C6A5-B42B-4C98-B610-BF9559143139} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft)
O22 - Task: \Microsoft\Windows\InstallService\ScanForUpdatesAsUser - {DDAFAEA2-8842-4E96-BADE-D44A8D676FDB} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft)
O22 - Task: \Microsoft\Windows\InstallService\SmartRetry - {F3A219C3-2698-4CBF-9C07-037EDB8E72E6} - C:\Windows\System32\InstallServiceTasks.dll (Microsoft)
O22 - Task: \Microsoft\Windows\International\Synchronize Language Settings - {10D62541-90D0-42FE-848C-0DBC1AC42EDA},SyncFromCloud - C:\Windows\System32\CoreGlobConfig.dll (Microsoft)
O22 - Task: \Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources - {D0582E3B-3126-4CAA-9155-AC37C912A489} - C:\WINDOWS\System32\LanguageOverlayServer.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Setup\SnapshotCleanupTask - C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (Microsoft)
O22 - Task: \Microsoft\Windows\ShellLogonTask_SetCBSEndOfLife - C:\WINDOWS\System32\ShellLogonTask.exe -SetCBSEndOfLife (file missing)
O22 - Task: \Microsoft\Windows\Shell\ShellLogonTask_SetCBSEndOfLife - C:\WINDOWS\System32\ShellLogonTask.exe -SetCBSEndOfLife (file missing)
O22 - Task: \Microsoft\Windows\Shell\UpdateAgentTask_AcquireFOD - C:\WINDOWS\System32\ShellUpdateAgentTask.exe -AcquireFOD (file missing)
O22 - Task: \Microsoft\Windows\Shell\UpdateAgentTask_AquireFOD - C:\WINDOWS\System32\ShellUpdateAgentTask.exe -AquireFOD (file missing)
O22 - Task: \Microsoft\Windows\Shell\UpdateAgentTask_SetCBSEndOfLife - C:\WINDOWS\System32\ShellUpdateAgentTask.exe -SetCBSEndOfLife (file missing)
O22 - Task: \Microsoft\Windows\Shell\UpdateUserPictureTask - {09C5DD34-009D-40FA-BCB9-0165AD0C15D4} - C:\Windows\System32\Windows.UI.Immersive.dll (Microsoft)
O22 - Task: \Microsoft\Windows\SoftwareProtectionPlatform\SvcTrigger - {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC},logon - C:\WINDOWS\System32\sppcext.dll (Microsoft)
O22 - Task: \Microsoft\Windows\Speech\HeadsetButtonPress - C:\WINDOWS\system32\speech_onecore\common\SpeechRuntime.exe StartedFromTask (Microsoft)
O22 - Task: \Microsoft\Windows\StateRepository\MaintenanceTasks - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\AC Power Install - C:\WINDOWS\system32\usoclient.exe StartInstall (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Backup Scan - C:\WINDOWS\system32\usoclient.exe StartScan (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Report policies - C:\WINDOWS\system32\usoclient.exe ReportPolicies (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task - C:\WINDOWS\system32\usoclient.exe StartScan (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work - C:\WINDOWS\system32\usoclient.exe StartWork (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\WINDOWS\system32\MusNotification.exe (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\Universal Orchestrator Start - C:\WINDOWS\system32\usoclient.exe StartUWork (Microsoft)
O22 - Task: \Microsoft\Windows\UpdateOrchestrator\UpdateModelTask - C:\WINDOWS\system32\usoclient.exe StartModelUpdates (Microsoft)
O22 - Task: \Microsoft\Windows\WindowsUpdate\sihcommit - C:\WINDOWS\system32\sihclient.exe /Commit (Microsoft)
O22 - Task: \Microsoft\Windows\WlanSvc\CDSSync - {B0D2B535-12E1-439F-86B3-BADA289510F0},$(Arg0) - C:\Windows\System32\WiFiCloudStore.dll (Microsoft)
O22 - Task: \Microsoft\Windows\WwanSvc\OobeDiscovery - {C93CF9D5-031B-4AAA-AB0B-EF802347B381} - C:\Windows\System32\MBMediaManager.dll (Microsoft)
O22 - Task: \Microsoft\Windows\applicationdata\CleanupTemporaryState - C:\WINDOWS\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
O22 - Task: \Microsoft\Windows\applicationdata\DsSvcCleanup - C:\WINDOWS\system32\dstokenclean.exe (Microsoft)
O22 - Task: \Microsoft\Windows\applicationdata\appuriverifierdaily - C:\WINDOWS\system32\AppHostRegistrationVerifier.exe (Microsoft)
O22 - Task: \Microsoft\Windows\applicationdata\appuriverifierinstall - C:\WINDOWS\system32\AppHostRegistrationVerifier.exe (Microsoft)
O22 - Task: \Nero\Nero Info - C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe -shedul
O23 - Service R2: ASUS Com Service - (asComSvc) - C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
O23 - Service R2: ASUS HM Com Service - (asHmComSvc) - C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service R2: Adobe Genuine Monitor Service - (AGMService) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service R2: Adobe Genuine Software Integrity Service - (AGSService) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service R2: AdobeUpdateService - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service R2: AsusFanControlService - C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.25\AsusFanControlService.exe
O23 - Service R2: Bluetooth Driver Management Service - (BcmBtRSupport) - C:\WINDOWS\system32\BtwRSupportService.exe
O23 - Service R2: Crypkey License - C:\WINDOWS\system32\crypserv.exe
O23 - Service R2: DSC MCPH Service - (MCPH) - C:\Program Files\Bentel\BOSS\MCPH\MCPH.exe
O23 - Service R2: ESET Service - (ekrn) - C:\Program Files\ESET\ESET Security\ekrn.exe
O23 - Service R2: Intel(R) HD Graphics Control Panel Service - (igfxCUIService1.0.0.0) - C:\WINDOWS\system32\igfxCUIService.exe
O23 - Service R2: Nero Update - (NAUpdate) - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service R2: SAMSUNG Mobile Connectivity Service - (ss_conn_service) - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service R2: Samsung AllShare PC - (SamsungAllShareV2.0) - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\AllShareDMS.exe
O23 - Service R2: Servizio A portata di clic di Microsoft Office - (ClickToRunSvc) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe /service
O23 - Service R3: ESET Firewall Helper - (ekrnEpfw) - C:\Program Files\ESET\ESET Security\ekrn.exe
O23 - Service R3: Intel(R) Content Protection HECI Service - (cphs) - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service R3: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS - (ICCS) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service S2: Servizio Aggiornamento Microsoft Edge (edgeupdate) - (edgeupdate) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /svc
O23 - Service S3: Logitech Bluetooth Service - (LBTServ) - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service S3: Microsoft Edge Elevation Service - (MicrosoftEdgeElevationService) - C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.57\elevation_service.exe
O23 - Service S3: Office 64 Source Engine - (ose64) - c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service S3: SAMSUNG Mobile USB Connectivity Launcher - (ss_conn_launcher_service) - C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe
O23 - Service S3: Servizio Aggiornamento Microsoft Edge (edgeupdatem) - (edgeupdatem) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /medsvc
O23 - Service S3: Servizio Controllo rete di Microsoft Defender Antivirus - (WdNisSvc) - C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe
O23 - Service S3: Servizio Microsoft Defender Antivirus - (WinDefend) - C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe
O23 - Service S3: Servizio Windows Defender Advanced Threat Protection - (Sense) - C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe
O23 - Service S3: SimpleSlideShowServer - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe
 
No no tutto a posto... ma già dopo stamattina si era sistemato.

E' stato Acronis true image a incasinarmi tutto. Uso NOD32

e grazie comunque ;)
 
Strano, Acronis è ottimo per creare le immagini del Pc

Spero che l'hai scaricato dal sito ufficiale, perchè altrimenti il problema è li......:eusa_naughty: :)
 
si il programma era ufficiale, amenochè non fosse stato un altro programmino che ho installato prima di acronis che doveva leggermi i .tib.

grazie comunque dell'aiuto
 
Per @ERCOLINO

Questi sono i Log dei due pc:

1)

ÿþLogfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18



Platform: x64 Windows 10 (Home), 10.0.18362.657 (ReleaseId: 1903), Service Pack: 0

Time: 10.03.2020 - 17:26 (UTC+01:00)

Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)

Elevated: Yes

Chrome: 80.0.3987.132

Firefox: 73.0.0.7342

Edge: 11.0.18362.628

Internet Explorer: 11.0.18362.1

Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)



Boot mode: Normal



Running processes:

Number | Path

1 C:\Program Files (x86)\Brother\BrUtilities\BrLogRx.exe

1 C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe

1 C:\Program Files (x86)\Browny02\BrYNSvc.exe

1 C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe

1 C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

1 C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe

1 C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe

1 C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe

1 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

1 C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe

1 C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe

1 C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe

1 C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

1 C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

1 C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe

1 C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe

1 C:\Program Files (x86)\Nero\Update\NASvc.exe

1 C:\Program Files (x86)\RocketDock\RocketDock.exe

1 C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe

1 C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

1 C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe

1 C:\Program Files\AVAST Software\Avast\AvastSvc.exe

3 C:\Program Files\AVAST Software\Avast\AvastUI.exe

1 C:\Program Files\AVAST Software\Avast\aswEngSrv.exe

1 C:\Program Files\AVAST Software\Avast\aswidsagent.exe

1 C:\Program Files\AVAST Software\Avast\wsc_proxy.exe

1 C:\Program Files\Bonjour\mDNSResponder.exe

1 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

1 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE

1 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE

1 C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe

1 C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

1 C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

1 C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe

1 C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

1 C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

1 C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe

1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe

1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20012.135.0_x64__8wekyb3d8bbwe\YourPhone.exe

1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20012.135.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe

1 C:\Program Files\iPod\bin\iPodService.exe

1 C:\Users\Montagnola\Desktop\HiJackThis.exe

1 C:\Windows\System32\ApplicationFrameHost.exe

1 C:\Windows\System32\MicrosoftEdgeCP.exe

1 C:\Windows\System32\MicrosoftEdgeSH.exe

6 C:\Windows\System32\RuntimeBroker.exe

1 C:\Windows\System32\SearchIndexer.exe

2 C:\Windows\System32\SearchProtocolHost.exe

1 C:\Windows\System32\SecurityHealthService.exe

1 C:\Windows\System32\SecurityHealthSystray.exe

1 C:\Windows\System32\SgrmBroker.exe

1 C:\Windows\System32\SppExtComObj.Exe

1 C:\Windows\System32\browser_broker.exe

1 C:\Windows\System32\conhost.exe

3 C:\Windows\System32\csrss.exe

1 C:\Windows\System32\ctfmon.exe

1 C:\Windows\System32\dasHost.exe

1 C:\Windows\System32\dllhost.exe

1 C:\Windows\System32\dwm.exe

2 C:\Windows\System32\fontdrvhost.exe

1 C:\Windows\System32\lsass.exe

1 C:\Windows\System32\mqsvc.exe

1 C:\Windows\System32\notepad.exe

2 C:\Windows\System32\nvvsvc.exe

1 C:\Windows\System32\services.exe

1 C:\Windows\System32\sihost.exe

1 C:\Windows\System32\smartscreen.exe

1 C:\Windows\System32\smss.exe

1 C:\Windows\System32\spoolsv.exe

1 C:\Windows\System32\sppsvc.exe

79 C:\Windows\System32\svchost.exe

2 C:\Windows\System32\taskhostw.exe

1 C:\Windows\System32\wbem\WMIC.exe

1 C:\Windows\System32\wbem\WmiPrvSE.exe

1 C:\Windows\System32\wbem\unsecapp.exe

1 C:\Windows\System32\wininit.exe

1 C:\Windows\System32\winlogon.exe

1 C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe

1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe

1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe

2 C:\Windows\explorer.exe



R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP

R3 - HKCU\..\URLSearchHooks: (no name) - {55f58bee-3fad-46fe-bf11-887e3bb32a43} - (no file)

O2 - HKLM\..\BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - (no file)

O2-32 - HKLM\..\BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll

O2-32 - HKLM\..\BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O3 - HKLM\..\Toolbar: (no name) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - (no file)

O3 - HKLM\..\Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - (no file)

O3 - HKLM\..\Toolbar: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - (no file)

O4 - HKCU\..\Run: [EPSON BX305 Series] = C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGJE.EXE /FU "C:\WINDOWS\TEMP\E_SC4C8.tmp" /EF "HKCU"

O4 - HKCU\..\Run: [RocketDock] = C:\Program Files (x86)\RocketDock\RocketDock.exe

O4 - HKCU\..\Run: [iCloudPhotos] = C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe

O4 - HKCU\..\Run: [iCloudServices] = C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe

O4 - HKLM\..\Run: [AvastUI.exe] = C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui

O4 - HKLM\..\Run: [NvBackend] = C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe

O4 - HKLM\..\Run: [PC-Doctor for Windows localizer] = C:\Program Files\PC-Doctor for Windows\localizer.exe

O4 - HKLM\..\Run: [RTHDVCPL] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s

O4 - HKLM\..\Run: [SecurityHealth] = C:\WINDOWS\system32\SecurityHealthSystray.exe

O4 - HKLM\..\Run: [ShadowPlay] = C:\Windows\system32\nvspcap64.dll C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart

O4 - HKLM\..\Run: [SmartMenu] = C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background

O4 - HKLM\..\StartupApproved\Run: [iTunesHelper] = C:\Program Files\iTunes\iTunesHelper.exe (2015/11/24)

O4-32 - HKLM\..\Run: [BATINDICATOR] = C:\Program Files (x86)\Hewlett-Packard\HP MAINSTREAM KEYBOARD\BATINDICATOR.exe

O4-32 - HKLM\..\Run: [BrStsMon00] = C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN

O4-32 - HKLM\..\Run: [BrotherSoftwareUpdateNotification] = C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe /Autorun

O4-32 - HKLM\..\Run: [ControlCenter4] = C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun

O4-32 - HKLM\..\Run: [M17A] = C:\WINDOWS\twain_32\Brimm17a\Common\TwDsUiLaunch.exe

O4-32 - HKLM\..\Run: [hpsysdrv] = c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe

O5 - HKCU\Control Panel\don't load: [RTSnMg64.cpl] (Realtek HD Audio Control Panel)

O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\E&xport to Microsoft Excel: (default) = C:\Program Files\Microsoft Office\Office15\EXCEL.EXE (file missing)

O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Scarica con Mipony: (default) = C:\Program Files (x86)\MiPony\Browser\IEContext.htm (file missing)

O8 - Context menu item: HKCU\..\Internet Explorer\MenuExt\Se&nd to OneNote: (default) = C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll (file missing)

O9-32 - Button: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Inserisci blog - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9-32 - Button: HKLM\..\{25510184-5A38-4A99-B273-DCA8EEF6CD08}: Viene lanciato HP Network Check, che aiuta a risolvere i problemi di connessione - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O9-32 - Tools menu item: HKLM\..\{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}: Pubblica su un &blog in Windows Live Writer - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

O9-32 - Tools menu item: HKLM\..\{25510184-5A38-4A99-B273-DCA8EEF6CD08}: HP Network Check (Controllo rete HP) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe

O15 - Trusted Zone: *.localhost

O15 - Trusted Zone: http://webcompanion.com

O17 - DHCP DNS 1: 8.8.8.8 (Well-known DNS: Google)

O17 - DHCP DNS 2: 8.8.4.4 (Well-known DNS: Google)

O17 - HKLM\System\CCS\Services\Tcpip\..\{39c3f0c9-0776-47b6-85ea-9da908353d8a}: [NameServer] = 8.8.4.4 (Well-known DNS: Google)

O17 - HKLM\System\CCS\Services\Tcpip\..\{39c3f0c9-0776-47b6-85ea-9da908353d8a}: [NameServer] = 8.8.8.8 (Well-known DNS: Google)

O18 - HKLM\Software\Classes\Protocols\Handler\wlpg: [CLSID] = {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll

O21 - HKLM\..\ShellIconOverlayIdentifiers\00avast: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll

O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt1: (no name) - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file)

O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt2: (no name) - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file)

O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt3: (no name) - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file)

O21 - HKLM\..\ShellIconOverlayIdentifiers\DropboxExt4: (no name) - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file)

O22 - Task (.job): (disabled) FacebookUpdateTaskUserS-1-5-21-320865183-997639291-364443513-1000Core.job - C:\Users\Montagnola\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver

O22 - Task (.job): (disabled) FacebookUpdateTaskUserS-1-5-21-320865183-997639291-364443513-1000UA.job - C:\Users\Montagnola\AppData\Local\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler

O22 - Task (.job): PCDRScheduledMaintenance.job - C:\Program Files\PC-Doctor for Windows\pcdrcui.exe -fh scripts\monthly.xml -st PCDRScheduledMaintenance

O23 - Service R2: Servizio Bonjour - (Bonjour Service) - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service R2: Adobe Acrobat Update Service - (AdobeARMservice) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service R2: Apple Mobile Device Service - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service R2: Avast Antivirus - (avast! Antivirus) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

O23 - Service R2: AvastWscReporter - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe /runassvc /rpcserver

O23 - Service R2: EPSON V3 Service4(04) - (EPSON_PM_RPCV4_04) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE

O23 - Service R2: EPSON V5 Service4(04) - (EPSON_EB_RPCV4_04) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE

O23 - Service R2: HP Support Solutions Framework Service - (HPSupportSolutionsFrameworkService) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe

O23 - Service R2: LightScribeService Direct Disc Labeling Service - (LightScribeService) - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe

O23 - Service R2: NVIDIA Display Driver Service - (nvsvc) - C:\WINDOWS\system32\nvvsvc.exe

O23 - Service R2: NVIDIA GeForce Experience Service - (GfExperienceService) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe

O23 - Service R2: NVIDIA Network Service - (NvNetworkService) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe

O23 - Service R2: NVIDIA Stereoscopic 3D Driver Service - (Stereo Service) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

O23 - Service R2: NVIDIA Streamer Service - (NvStreamSvc) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe

O23 - Service R2: Nero Update - (NAUpdate) - C:\Program Files (x86)\Nero\Update\NASvc.exe

O23 - Service R2: Realtek Audio Service - (RtkAudioService) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe

O23 - Service R2: SAMSUNG Mobile Connectivity Service - (ss_conn_service) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe

O23 - Service R2: SeaPort - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

O23 - Service R2: TeamViewer 14 - (TeamViewer) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

O23 - Service R2: WD Drive Manager - (WDDriveService) - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe

O23 - Service R3: BrYNSvc - C:\Program Files (x86)\Browny02\BrYNSvc.exe

O23 - Service R3: Servizio iPod - (iPod Service) - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service R3: aswbIDSAgent - C:\Program Files\AVAST Software\Avast\aswidsagent.exe

O23 - Service S2: GamesAppIntegrationService - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe

O23 - Service S2: Servizio Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc

O23 - Service S3: Adobe Flash Player Update Service - (AdobeFlashPlayerUpdateSvc) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service S3: Firebird Guardian - DefaultInstance - (FirebirdGuardianDefaultInstance) - C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe -s DefaultInstance

O23 - Service S3: Firebird Server - DefaultInstance - (FirebirdServerDefaultInstance) - C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe -s DefaultInstance

O23 - Service S3: GamesAppService - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe

O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\elevation_service.exe

O23 - Service S3: HP Software Framework Service - (hpqwmiex) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe

O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe

O23 - Service S3: Office 64 Source Engine - (ose64) - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE

O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc





--

End of file - Time spent: 55,9 sec. - 32454 bytes, CRC32: FFFFFFFF. Sign: ´’„




2)

ÿþLogfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18



Platform: x64 Windows 10 (Home), 10.0.17763.1039 (ReleaseId: 1809), Service Pack: 0

Time: 10.03.2020 - 17:30 (UTC+01:00)

Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)

Elevated: Yes

Chrome: 80.0.3987.132

Edge: 11.0.17763.1039

Internet Explorer: 11.0.17763.771

Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)



Boot mode: Normal

Running processes:

Number | Path

1 C:\Program Files (x86)\Google\Update\1.3.35.442\GoogleCrashHandler.exe

1 C:\Program Files (x86)\Google\Update\1.3.35.442\GoogleCrashHandler64.exe

1 C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

1 C:\Program Files (x86)\MobileBrServ\mbbService.exe

1 C:\Program Files\AVAST Software\Avast\AvastSvc.exe

2 C:\Program Files\AVAST Software\Avast\AvastUI.exe

1 C:\Program Files\AVAST Software\Avast\aswEngSrv.exe

1 C:\Program Files\AVAST Software\Avast\aswidsagent.exe

1 C:\Program Files\AVAST Software\Avast\wsc_proxy.exe

1 C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

2 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe

1 C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.12703.20010\OfficeClickToRun.exe

1 C:\Program Files\Intel\WiFi\bin\EvtEng.exe

1 C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

2 C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe

1 C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe

1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe

1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

1 C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe

1 C:\Program Files\WindowsApps\Microsoft.WindowsStore_12003.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe

1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20012.135.0_x64__8wekyb3d8bbwe\YourPhone.exe

1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20012.135.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe

1 C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20011.13511.0_x64__8wekyb3d8bbwe\Video.UI.exe

1 C:\Users\marti\AppData\Local\Microsoft\OneDrive\OneDrive.exe

1 C:\Windows\ImmersiveControlPanel\SystemSettings.exe

1 C:\Windows\SysWOW64\dllhost.exe

1 C:\Windows\System32\ApplicationFrameHost.exe

1 C:\Windows\System32\CompPkgSrv.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSLinkNear\AsusLinkNear.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSLinkRemote\AsusLinkRemote.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSLinkRemote\AsusLinkRemoteAgent.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSOptimization\AsusOSD.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSOptimization\AsusOptimization.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSOptimization\AsusOptimizationStartupTask.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSoftwareManager\AsusSoftwareManager.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSystemAnalysis\AsusSystemAnalysis.exe

1 C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe

1 C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_a7428663aca90897\igfxCUIService.exe

1 C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_a7428663aca90897\igfxEM.exe

1 C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_5d83605e8696144c\RstMwService.exe

1 C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_bd9dc84d9bbcf154\ICEsoundService64.exe

1 C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9060c624376479b7\IntelCpHDCPSvc.exe

1 C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9060c624376479b7\IntelCpHeciSvc.exe

1 C:\Windows\System32\Intel\DPTF\esif_uf.exe

2 C:\Windows\System32\MicrosoftEdgeCP.exe

1 C:\Windows\System32\MicrosoftEdgeSH.exe

2 C:\Windows\System32\RtkAudUService64.exe

8 C:\Windows\System32\RuntimeBroker.exe

1 C:\Windows\System32\SearchIndexer.exe

1 C:\Windows\System32\SecurityHealthService.exe

1 C:\Windows\System32\SecurityHealthSystray.exe

1 C:\Windows\System32\SettingSyncHost.exe

1 C:\Windows\System32\SgrmBroker.exe

4 C:\Windows\System32\WUDFHost.exe

1 C:\Windows\System32\audiodg.exe

1 C:\Windows\System32\browser_broker.exe

1 C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe

1 C:\Windows\System32\conhost.exe

2 C:\Windows\System32\csrss.exe

1 C:\Windows\System32\ctfmon.exe

2 C:\Windows\System32\dasHost.exe

3 C:\Windows\System32\dllhost.exe

1 C:\Windows\System32\dwm.exe

2 C:\Windows\System32\fontdrvhost.exe

1 C:\Windows\System32\ibtsiva.exe

1 C:\Windows\System32\jhi_service.exe

1 C:\Windows\System32\lsass.exe

1 C:\Windows\System32\rundll32.exe

1 C:\Windows\System32\services.exe

1 C:\Windows\System32\sihost.exe

1 C:\Windows\System32\smartscreen.exe

1 C:\Windows\System32\smss.exe

1 C:\Windows\System32\spoolsv.exe

73 C:\Windows\System32\svchost.exe

1 C:\Windows\System32\taskhostw.exe

1 C:\Windows\System32\wbem\WmiPrvSE.exe

1 C:\Windows\System32\wbem\unsecapp.exe

1 C:\Windows\System32\wininit.exe

1 C:\Windows\System32\winlogon.exe

1 C:\Windows\System32\wlanext.exe

1 C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe

1 C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe

1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe

1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe

1 C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe

2 C:\Windows\explorer.exe

1 D:\HiJackThis.exe



R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Default_Page_URL] = http://asus17win10.msn.com/?pc=ASTE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main: [Start Page] = http://asus17win10.msn.com/?pc=ASTE

O4 - HKCU\..\Run: [OneDrive] = C:\Users\marti\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background (Microsoft)

O4 - HKLM\..\Run: [AvastUI.exe] = C:\Program Files\AVAST Software\Avast\AvLaunch.exe /gui

O4 - HKLM\..\Run: [SecurityHealth] = C:\Windows\system32\SecurityHealthSystray.exe

O17 - DHCP DNS 1: 77.242.128.153

O17 - DHCP DNS 2: 77.242.128.154

O21 - HKLM\..\ShellIconOverlayIdentifiers\00asw: avast - {472083B0-C522-11CF-8763-00608CC02F24} - C:\Program Files\AVAST Software\Avast\ashShell.dll

O23 - Service R2: ASUS Link Near - (ASUSLinkNear) - C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSLinkNear\AsusLinkNear.exe

O23 - Service R2: ASUS Link Remote - (ASUSLinkRemote) - C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSLinkRemote\AsusLinkRemote.exe

O23 - Service R2: ASUS Optimization - (ASUSOptimization) - C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSOptimization\AsusOptimization.exe

O23 - Service R2: ASUS Software Manager - (ASUSSoftwareManager) - C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSoftwareManager\AsusSoftwareManager.exe

O23 - Service R2: ASUS System Analysis - (ASUSSystemAnalysis) - C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSystemAnalysis\AsusSystemAnalysis.exe

O23 - Service R2: ASUS System Diagnosis - (ASUSSystemDiagnosis) - C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_610b7c1b6fee074c\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe

O23 - Service R2: Avast Antivirus - (avast! Antivirus) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe

O23 - Service R2: AvastWscReporter - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe /runassvc /rpcserver

O23 - Service R2: ICEsoundService - C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_bd9dc84d9bbcf154\ICEsoundService64.exe

O23 - Service R2: Intel Bluetooth Service - (ibtsiva) - C:\Windows\System32\ibtsiva.exe

O23 - Service R2: Intel(R) Audio Service - (IntelAudioService) - C:\Windows\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe

O23 - Service R2: Intel(R) Content Protection HDCP Service - (cplspcon) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9060c624376479b7\IntelCpHDCPSvc.exe

O23 - Service R2: Intel(R) Dynamic Application Loader Host Interface Service - (jhi_service) - C:\Windows\System32\jhi_service.exe

O23 - Service R2: Intel(R) Dynamic Platform and Thermal Framework service - (esifsvc) - C:\Windows\System32\Intel\DPTF\esif_uf.exe

O23 - Service R2: Intel(R) HD Graphics Control Panel Service - (igfxCUIService2.0.0.0) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_a7428663aca90897\igfxCUIService.exe

O23 - Service R2: Intel(R) PROSet/Wireless Event Log - (EvtEng) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe

O23 - Service R2: Intel(R) PROSet/Wireless Registry Service - (RegSrvc) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

O23 - Service R2: Intel(R) PROSet/Wireless Zero Configuration Service - (ZeroConfigService) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

O23 - Service R2: Mobile Broadband HL Service - C:\Program Files (x86)\MobileBrServ\mbbservice.exe -service

O23 - Service R2: NVIDIA Display Container LS - (NVDisplay.ContainerLocalSystem) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

O23 - Service R2: NVIDIA Telemetry Container - (NvTelemetryContainer) - C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

O23 - Service R2: Realtek Audio Universal Service - (RtkAudioUniversalService) - C:\Windows\System32\RtkAudUService64.exe

O23 - Service R2: RstMwService - C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_5d83605e8696144c\RstMwService.exe

O23 - Service R2: Servizio A portata di clic di Microsoft Office - (ClickToRunSvc) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe /service

O23 - Service R3: Intel(R) Content Protection HECI Service - (cphs) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9060c624376479b7\IntelCpHeciSvc.exe

O23 - Service R3: aswbIDSAgent - C:\Program Files\AVAST Software\Avast\aswidsagent.exe

O23 - Service S2: Intel(R) TPM Provisioning Service - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_34687bf44d0a152a\lib\TPMProvisioningService.exe

O23 - Service S2: Servizio Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc

O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\elevation_service.exe

O23 - Service S3: Intel(R) Capability Licensing Service TCP IP Interface - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_34687bf44d0a152a\lib\SocketHeciServer.exe

O23 - Service S3: Intel(R) Optane(TM) Memory Service - (iaStorAfsService) - C:\Windows\System32\iaStorAfsService.exe

O23 - Service S3: SAMSUNG Mobile USB Connectivity Launcher - (ss_conn_launcher_service) - C:\Windows\System32\Samsung\EasySetup\ss_conn_launcher.exe

O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc

O23 - Service S3: Wireless PAN DHCP Server - (MyWiFiDHCPDNS) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe





--

End of file - Time spent: 17 sec. - 25802 bytes, CRC32: FFFFFFFF. Sign: RF¦P
 
Dal 1 Pc, aggiorna Firefox alla 74.0 e assicurati di avere aggiornato all'ultima versione sw TeamViewer

Seleziona ed elimina premendo Fix

R0
R2
02
015

Vedo che su quel Pc usi i DNS di google.


Sul secondo Pc vedo che invece usi i DNS del tuo provider, il resto mi sembra ok


Su entrambi i Pc, cancella tutto il contenuto della cartella Temp

C:Windows/temp

Assicurati che entrambi i Pc abbiano l'ultima versione di Win 10 con tutte le Patch.

Il secondo attenzione che non è aggiornato (1809), il supporto termina il 12 Maggio 2020
Il Primo ha la 1903 termine supporto 8 Dicembre 2020

Ultima versione disponibile di Win 10 è la build 1909
 
Dal 1 Pc, aggiorna Firefox alla 74.0 e assicurati di avere aggiornato all'ultima versione sw TeamViewer

Seleziona ed elimina premendo Fix

R0
R2
02
015

Vedo che su quel Pc usi i DNS di google.


Sul secondo Pc vedo che invece usi i DNS del tuo provider, il resto mi sembra ok


Su entrambi i Pc, cancella tutto il contenuto della cartella Temp

C:Windows/temp

Assicurati che entrambi i Pc abbiano l'ultima versione di Win 10 con tutte le Patch.

Il secondo attenzione che non è aggiornato (1809), il supporto termina il 12 Maggio 2020
Il Primo ha la 1903 termine supporto 8 Dicembre 2020

Ultima versione disponibile di Win 10 è la build 1909

Quindi, sembra quasi tutto a posto?
 
Sembrerebbe di Si.

Fai una scansione con l'antivurus su tutti i dispositivi, il router va aggiornato assolutamente
 
Sembrerebbe di Si.

Fai una scansione con l'antivurus su tutti i dispositivi, il router va aggiornato assolutamente

Ok, un'altra cosa: qualche anno fa, con una guida trovata su google avevo aperto qualche porta per poter passare facilmente i file tra il pc e il mac sotto la stessa rete, ma non ricordo come ho fatto. Questa può essere una vulnerabilità?
 
È bene chiudere le porte che non servono, più porte aperte ci sono più soifferi ci sono.
Meglio continuare nell'altro 3d ;)
 
Ok, un'altra cosa: qualche anno fa, con una guida trovata su google avevo aperto qualche porta per poter passare facilmente i file tra il pc e il mac sotto la stessa rete, ma non ricordo come ho fatto. Questa può essere una vulnerabilità?

Dipende da che porte

Discutiamone nell'altro 3d ;)
 
Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.18


Platform: x64 Windows 10 (Home), 10.0.18363.778 (ReleaseId: 1909), Service Pack: 0
Time: 16.04.2020 - 18:22 (UTC+02:00)
Language: OS: Italian (0x410). Display: Italian (0x410). Non-Unicode: Italian (0x410)
Elevated: No



Chrome: 81.0.4044.113
Firefox: 29.0.0.5224
Edge: 11.0.18362.752
Internet Explorer: 11.0.18362.1
Default: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Chrome)


Boot mode: Normal


Running processes:
Number | Path
1 C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
1 C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
1 C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
1 C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe
1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
1 C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20032.104.0_x64__8wekyb3d8bbwe\YourPhone.exe
1 C:\Users\Lavoro\Desktop\HiJackThis.exe
1 C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxEM.exe
5 C:\Windows\System32\RuntimeBroker.exe
1 C:\Windows\System32\SecurityHealthSystray.exe
1 C:\Windows\System32\Wbem\WmiApSrv.exe
2 C:\Windows\System32\Wbem\WmiPrvSE.exe
1 C:\Windows\System32\audiodg.exe
2 C:\Windows\System32\backgroundTaskHost.exe
1 C:\Windows\System32\ctfmon.exe
1 C:\Windows\System32\sihost.exe
1 C:\Windows\System32\smartscreen.exe
1 C:\Windows\System32\taskhostw.exe
1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
1 C:\Windows\explorer.exe
1 C:\Windows\system32\SearchFilterHost.exe
1 C:\Windows\system32\SearchIndexer.exe
1 C:\Windows\system32\SearchProtocolHost.exe
1 C:\Windows\system32\SecurityHealthService.exe
1 C:\Windows\system32\SgrmBroker.exe
2 C:\Windows\system32\csrss.exe
1 C:\Windows\system32\dwm.exe
2 C:\Windows\system32\fontdrvhost.exe
1 C:\Windows\system32\lsass.exe
1 C:\Windows\system32\services.exe
1 C:\Windows\system32\smss.exe
1 C:\Windows\system32\spoolsv.exe
76 C:\Windows\system32\svchost.exe
1 C:\Windows\system32\wininit.exe
1 C:\Windows\system32\winlogon.exe
1 FreemakeUtilsService.exe
1 GoogleCrashHandler.exe
1 GoogleCrashHandler64.exe
1 IntelCpHDCPSvc.exe
1 IntelCpHeciSvc.exe
1 MBAMService.exe
1 Memory Compression
1 MsMpEng.exe
1 NisSrv.exe
1 PrivateVpnDaemon.exe
1 Registry
1 igfxCUIService.exe


R3 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001: Default URLSearchHook is missing
O2 - HKLM\..\BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll
O4 - HKCU\..\Run: [Opera Browser Assistant] = C:\Users\Lavoro\AppData\Local\Programs\Opera\assistant\browser_assistant.exe
O4 - HKCU\..\Run: [Skype for Desktop] = C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
O4 - HKLM\..\Run: [SecurityHealth] = C:\Windows\system32\SecurityHealthSystray.exe
O7 - TroubleShooting: (EV) HKU\S-1-5-19\..\Environment: [TEMP] = (not exist)
O7 - TroubleShooting: (EV) HKU\S-1-5-19\..\Environment: [TMP] = (not exist)
O7 - TroubleShooting: (EV) HKU\S-1-5-20\..\Environment: [TEMP] = (not exist)
O7 - TroubleShooting: (EV) HKU\S-1-5-20\..\Environment: [TMP] = (not exist)
O7 - TroubleShooting: (EV) HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\Environment: [TEMP] = (not exist)
O7 - TroubleShooting: (EV) HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\Environment: [TMP] = (not exist)
O10 - Broken Internet access because of LSP chain gap (#1 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#1 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#10 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#11 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#12 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#13 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#14 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#2 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#2 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#3 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#3 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#4 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#4 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#5 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#5 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#6 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#6 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#7 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#7 in chain of 7 missing)
O10 - Broken Internet access because of LSP chain gap (#8 in chain of 14 missing)
O10 - Broken Internet access because of LSP chain gap (#9 in chain of 14 missing)
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [@ivt] protocol is in Unknown Zone, should be Intranet Zone (User: 'sitema adm')
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [file] protocol is in Unknown Zone, should be Internet Zone (User: 'sitema adm')
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [ftp] protocol is in Unknown Zone, should be Internet Zone (User: 'sitema adm')
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [http] protocol is in Unknown Zone, should be Internet Zone (User: 'sitema adm')
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [https] protocol is in Unknown Zone, should be Internet Zone (User: 'sitema adm')
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [knownfolder] protocol is in Unknown Zone, should be My Computer Zone (User: 'sitema adm')
O15 - HKU\S-1-5-21-3953893595-2682882255-3653888222-1001\..\ProtocolDefaults: - [shell] protocol is in Unknown Zone, should be My Computer Zone (User: 'sitema adm')
O17 - DHCP DNS 1: 192.168.178.1
O23 - Service R2: Freemake Improver - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
O23 - Service R2: Intel(R) Content Protection HDCP Service - (cplspcon) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\IntelCpHDCPSvc.exe
O23 - Service R2: Intel(R) HD Graphics Control Panel Service - (igfxCUIService2.0.0.0) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxCUIService.exe
O23 - Service R2: Malwarebytes Service - (MBAMService) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service R2: PrivateVPN Daemon - C:\Program Files (x86)\PrivateVPN Client\PrivateVpnDaemon.exe
O23 - Service R3: Intel(R) Content Protection HECI Service - (cphs) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_38bfcb542ef4272e\IntelCpHeciSvc.exe
O23 - Service S2: IObit Uninstaller Service - (IObitUnSvr) - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
O23 - Service S2: Servizio Google Update (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S3: Google Chrome Elevation Service - (GoogleChromeElevationService) - C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.113\elevation_service.exe
O23 - Service S3: Mozilla Maintenance Service - (MozillaMaintenance) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service S3: Servizio Google Update (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc




--
End of file - Time spent: 3 sec. - 17310 bytes, CRC32: FFFFFFFF. Sign: 濴葸
 
Ultima modifica:
Si bisquo quello ci sta lo uso per fare delle operazioni sul lavoro che con gli aggiornamenti non mi fa piu fare (copia incolla da un portale) ma lo uso solo per quello
 
Indietro
Alto Basso