Ciao.
Scarica Adwcleaner sul desktop:
http://general-changelog-team.fr/fr/...e/2-adwcleaner
N.B:
Hai Avira come antivirus, e detto software utilizza ASK Toolbar come parte della sua sicurezza del web.
Se eliminata, AntiVir WebGuard potrebbe non funzionare pił correttamente.
Quindi:
Apri Adwcleaner e clicca sul ? in alto a sinistra.
Clicca su opzioni .
Metti la spunta su :
DisableAskDetection
Clicca OK.
Clicca sul pulsante "Elimina ".
Conferma con OK le varie finestre che ti compariranno.
Il pc si riavvierą , e uscirą il log con le eliminazioni.
Postalo qui.
Poi:
Avvia OTL.
Sotto "Custom Scans\Fixes " copia-incolla questo codice:
codice:
:OTL
PRC - C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (SweetIM Technologies Ltd.)
PRC - C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.)
MOD - C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe ()
MOD - c:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll ()
SRV - (BrowserProtect) -- C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe ()
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10011&barid={D7A48078-D36B-11E1-9350-14DAE9C81889}
IE - HKU\S-1-5-21-899013248-651797946-869859579-1000\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www2.delta-search.com/?affID=...9C742F6871E8F7
IE - HKU\S-1-5-21-899013248-651797946-869859579-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www2.delta-search.com/?affID=...9C742F6871E8F7
IE - HKU\S-1-5-21-899013248-651797946-869859579-1000\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
IE - HKU\S-1-5-21-899013248-651797946-869859579-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www2.delta-search.com/?q={searchTerms}&affID=119776&babsrc=SP_ss&mntrId=7E9C742F6871E8F7
IE - HKU\S-1-5-21-899013248-651797946-869859579-1000\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10011&barid={D7A48078-D36B-11E1-9350-14DAE9C81889}
IE - HKU\S-1-5-21-899013248-651797946-869859579-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = plimus.com,http://www.plimus.com,regnow.com,<a ...egnow.com</a>,
[2013/04/24 23:21:26 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions\ffxtlbr@babylon.com
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [starter4g] C:\Windows\starter4g.exe (4G Systems GmbH & Co. KG)
O4 - HKLM..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.)
O4 - HKLM..\Run: [Sweetpacks Communicator] C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (SweetIM Technologies Ltd.)
:Files
C:\Program Files\Application Updater
C:\Program Files\Common Files\Spigot\Search Settings
C:\Program Files\Common Files\Spigot
C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BrowserProtect
ipconfig /flushdns /c
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command]
""=""%1" %*"
:commands
[purity]
[emptytemp]
[Emptyjava]
[RESETHOSTS]
[EMPTYFLASH]
[start explorer]
[Reboot]
Clicca sul pulsante RUN FIX .
Lascia fare la scansione senza interferire.
Posta il log.
Ripeti una nuova scansione con OTL seguendo gli stessi parametri che hai eseguito alla prima scansione.
Posta il log.