Script personalizzato con OTL :apri il programmino , copia incolla queste righe in grassetto nel box vuoto custom scans/fixed
:OTL
[2012/10/04 07:20:11 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.DA4D7AC3039A387E
[2012/10/04 07:15:14 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.C4D8375D1FE21395
[2012/10/03 01:27:32 | 000,049,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\lggbdewb.sys
[2012/10/03 01:03:10 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.5F5A13A055074D7B
[2012/10/03 00:40:49 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.215AA0FD2DB15EFC
[2012/10/03 00:40:49 | 000,049,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dprggspk.sys
[2012/10/03 00:37:08 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.60650934B1DB173D
[2012/10/04 19:52:57 | 000,015,600 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/10/04 19:52:57 | 000,015,600 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/10/03 01:27:32 | 000,049,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\lggbdewb.sys
[2012/10/03 01:03:10 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.5F5A13A055074D7B
[2012/10/03 00:40:49 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.215AA0FD2DB15EFC
[2012/10/03 00:40:49 | 000,049,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dprggspk.sys
[2012/10/03 00:37:08 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.60650934B1DB173D
[2012/10/04 07:20:11 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.DA4D7AC3039A387E
[2012/10/04 07:15:14 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.C4D8375D1FE21395
[2012/10/04 19:45:52 | 000,208,216 | ---- | C] (Kaspersky Lab, GERT) -- C:\Windows\SysNative\drivers\10059390.sys
[2012/10/04 19:21:46 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.7558100ED2C00B29
[2012/10/04 19:21:46 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\services.exe.7558100ED2C00B29
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O33 - MountPoints2\{f0d0fbc1-e480-11e1-8aca-c80aa9c16b46}\Shell - "" = AutoRun
O33 - MountPoints2\{f0d0fbc1-e480-11e1-8aca-c80aa9c16b46}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{f0d0fbce-e480-11e1-8aca-c80aa9c16b46}\Shell - "" = AutoRun
O33 - MountPoints2\{f0d0fbce-e480-11e1-8aca-c80aa9c16b46}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{feb400ea-c467-11e0-8c38-9e55cff7a264}\Shell - "" = AutoRun
O33 - MountPoints2\{feb400ea-c467-11e0-8c38-9e55cff7a264}\Shell\AutoRun\command - "" = G:\autorun.exe
@Alternate Data Stream - 1212 bytes -> C:\ProgramData\Microsoft:6jP4lGR8NpnBvalbgLtDlFL03ca
@Alternate Data Stream - 1093 bytes -> C:\Program Files\Common Files\System:QVqxsF2B2VARYmRRl9FKQzU
@Alternate Data Stream - 1046 bytes -> C:\ProgramData\Microsoft:BF8gnLinzO7BK8B7uUfKjQOdh
:Files
C:\Users\Alessio\AppData\Local\{5B78C904-BE6E-48C0-9327-7A6EE3E2707F}
ipconfig /flushdns /c
:Commands
[purity]
[resethosts]
[emptytemp]
[CREATERESTOREPOINT]
[Reboot]
Clicca sul pulsante RUN FIX.
Attendi il riavvio del pc ed allega il log post-operazione.