ok fatto. Questo è l'output
# AdwCleaner v6.020 - Creato file registro eventi 16/09/2016 in 12:24:37
# Aggiornato su 14/09/2016 da ToolsLib
# Database : 2016-09-15.2 [Server]
# Sistema operativo : Windows 10 Pro (X64)
# Utente : Tata - TATA-PC
# In esecuzione da : C:\Users\Tata\Desktop\AdwCleaner.exe
# Modo: pulizia
# Supporto :
https://toolslib.net/forum***** [ Servizi ] *****
***** [ Cartelle ] *****
[-] Cartella eliminata: C:\Users\Tata\AppData\LocalLow\AskToolbar
[-] Cartella eliminata: C:\Users\Tata\AppData\Roaming\RPEng
[-] Cartella eliminata: C:\Users\Tata\AppData\Roaming\GameLauncher\Seviler
***** [ File ] *****
[-] File eliminato: C:\Program Files (x86)\Mozilla Firefox\wtsapi32.dll
[-] File eliminato: C:\Program Files (x86)\Google\Chrome\Application\wtsapi32.dll
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Collegamenti ] *****
***** [ Attività pianificate ] *****
***** [ Registro ] *****
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
[#] Chiave eliminata al riavvio: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
[#] Chiave eliminata al riavvio: [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\CLSID\{95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
[-] Chiave eliminata: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}
[-] Chiave eliminata: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
[-] Chiave eliminata: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B}
[-] Chiave eliminata: HKU\S-1-5-21-2499405340-4166306687-3534985506-1001\Software\distromatic
[-] Chiave eliminata: HKU\S-1-5-21-2499405340-4166306687-3534985506-1001\Software\IM
[-] Chiave eliminata: HKU\S-1-5-21-2499405340-4166306687-3534985506-1001\Software\COMMONMSG
[#] Chiave eliminata al riavvio: HKCU\Software\distromatic
[#] Chiave eliminata al riavvio: HKCU\Software\IM
[#] Chiave eliminata al riavvio: HKCU\Software\COMMONMSG
[-] Chiave eliminata: HKLM\SOFTWARE\trotuxSoftware
[#] Chiave eliminata al riavvio: [x64] HKCU\Software\distromatic
[#] Chiave eliminata al riavvio: [x64] HKCU\Software\IM
[#] Chiave eliminata al riavvio: [x64] HKCU\Software\COMMONMSG
[-] Chiave eliminata: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\euask.com
[-] Chiave eliminata: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space
[-] Chiave eliminata: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space
[#] Chiave eliminata al riavvio: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\euask.com
[#] Chiave eliminata al riavvio: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space
[#] Chiave eliminata al riavvio: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space
***** [ Browser ] *****
però il problema persiste.
la dir WSIS32 c'è ancora
:'(