Fixa:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.rcwgytbnivjskqgmeqqn.us/F...udW_ekD6w.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.dczkldetbyygxtbejm.us/FBi...t1_xND/3w.html
O2 - BHO: (no name) - {290EA197-AD20-3E1A-4D9D-51828D7D4599} - D:\DOCUME~1\AURAMA~1\DATIAP~1\exitjump\Htmplus.exe
O4 - HKLM\..\Run: [BendBindProgramLove] D:\Documents and Settings\All Users\Dati applicazioni\Dead draw bend bind\balm bore.exe
O4 - HKCU\..\Run: [Atomfile] D:\DOCUME~1\AURAMA~1\DATIAP~1\16DATA~1\hope cake fast.exe
ps: non ti farebbe male una scansioncina con ewido security suite:
http://www.ewido.net/en/