Ho eseguito una scansione con Malwarebytes, mi ha rilevato questi problemi:
Malwarebytes Anti-Malware
www.malwarebytes.org
Data scansione: 03/10/2015
Ora scansione: 13:11
File di log: Log Malware.txt
Amministratore: Sì
Versione: 2.1.8.1057
Database malware: v2015.10.03.02
Database rootkit: v2015.10.02.01
Licenza: Gratuito
Protezione da malware: Disattivata
Protezione da siti web nocivi: Disattivata
Auto-protezione: Disattivata
SO: Windows 7 Service Pack 1
CPU: x64
File system: NTFS
Utente: Win
Tipo di scansione: Ricerca elementi nocivi
Risultati: Completata
Elementi analizzati: 367889
Tempo impiegato: 7 min, 50 sec
Memoria: Attivata
Esecuzioni automatiche: Attivata
File system: Attivata
Archivi compressi: Attivata
Rootkit: Disattivata
Euristiche: Attivata
PUP: Attivata
PUM: Attivata
Processi: 0
(Nessun elemento nocivo rilevato)
Moduli: 0
(Nessun elemento nocivo rilevato)
Chiavi di registro: 19
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{1112F282-7099-4624-A439-DB29D6551552}, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\OCComSDK.ComSDK.1, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\OCComSDK.ComSDK, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\OCComSDK.ComSDK, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\OCComSDK.ComSDK, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\WOW6432NODE\CLASSES\OCComSDK.ComSDK.1, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\OCComSDK.ComSDK.1, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}, In quarantena, [6826cf835239290d662e06ae45bdca36],
Valori di registro: 0
(Nessun elemento nocivo rilevato)
Dati di registro: 0
(Nessun elemento nocivo rilevato)
Cartelle: 0
(Nessun elemento nocivo rilevato)
File: 3
PUP.Optional.OpenCandy, C:\Users\Win\AppData\Local\Temp\HYD96C5.tmp.1443869806\HTA\install.1443869806.zip, In quarantena, [523c4012f992fa3c563e4470d62c6898],
PUP.Optional.OpenCandy, C:\Users\Win\AppData\Local\Temp\HYD96C5.tmp.1443869806\HTA\3rdparty\OCComSDK.dll, In quarantena, [6826cf835239290d662e06ae45bdca36],
PUP.Optional.OpenCandy, C:\Users\Win\AppData\Local\Temp\HYD96C5.tmp.1443869806\HTA\3rdparty\OCSetupHlp.dll, In quarantena, [cfbf322055362610bef5a901768f6898],
Settori fisici: 0
(Nessun elemento nocivo rilevato)
(end).