PROBLEMA come eliminare search.snapdo

Ella62

Nuovo Utente
22
0
Buongiorno a tutti. come ho scritto nel titolo, questo motore di ricerca che si è installato nel mio pc mi sta facendo diventare matta. ho fatto di tutto per toglierlo ma senza successo. si chiama search.snapdo , è terribile. ho letto delle cose su internet poco rassicuranti su di lui. andando su chrome l'ho tolto ma per modo di dire perchè rimane. devo portare il pc a far riparare o si può tentare di fare qualcosa? tra l'altro questo mostriciattolo non mi fa neanche trovare le cose che cerco su internet, mi indirizza in altre pagine, mi si aprono popup in continuazione ed essere riuscita a scrivere questo messaggio ha del miracoloso. Help!! Inoltre su impostazioni di chrome ho aggiunto vari utenti (7 in tutto) e su ognuno ovviamente lo stesso problema. ieri ne ho eliminato uno. adesso non se se togliergli tutti e poi rimetterli. Grazie se avete letto tutte queste righe. Antonella :help::help:
 

menatwork

Utente Attivo
1,303
232
CIAO ella62 esegui queste scansioni

scarica adwcleaner

clicca su scan e poi su ''clean'' conferma con OK le varie finestre che ti compariranno.

alla fine clicca su Report e allega il contenuto


Scarica OTL e salvalo sul desktop

Metti la spunta su SCAN ALL USERS.

Sotto output, metti la spunta su minimal output

Clicca sulla freccettina di File Age e seleziona 60 Days

Metti la spunta a LOP Check e Purity Check.

Clicca su RUN SCAN

Lascia fare la scansione senza interferire.

Al termine della scansione trovi due log sul desktop. OTL.txt ed Extras.txt, salvali e caricali su Wikisend,
 
  • Mi piace
Reazioni: Ella62

Ella62

Nuovo Utente
22
0
ehm... un attimo che rileggo con calma che sono un po' imbranata, scusa tanto

- - - Updated - - -

# AdwCleaner v3.022 - Report created 15/03/2014 at 14:18:32
# Updated 13/03/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Antonella - ANTONELLA-HP
# Running from : C:\Users\Antonella\Desktop\adwcleaner.exe
# Option : Clean


***** [ Services ] *****


Service Deleted : Re-markit
[#] Service Deleted : Update FindRight
[#] Service Deleted : Util FindRight


***** [ Files / Folders ] *****


Folder Deleted : C:\ProgramData\WPM
Folder Deleted : C:\Users\Antonella\AppData\Local\Smartbar
Folder Deleted : C:\Users\ANTONE~1\AppData\Local\Temp\boost_interprocess
Folder Deleted : C:\Users\ANTONE~1\AppData\Local\Temp\Smartbar
Folder Deleted : C:\Users\Antonella\AppData\LocalLow\Smartbar
Folder Deleted : C:\Users\Antonella\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Antonella\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcpfhaghaadpjpgocojgnlhjcieeooel
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Windows\Tasks\Re-markit Update.job
File Deleted : C:\Windows\System32\Tasks\Re-markit Update


***** [ Shortcuts ] *****




***** [ Registry ] *****


Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bho
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\smartbarbackup
Key Deleted : HKCU\Software\smartbarlog
Key Deleted : HKCU\Software\systweak
Key Deleted : HKLM\Software\supWPM
Key Deleted : HKLM\Software\sweet-pageSoftware
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Uniblue


***** [ Browsers ] *****


-\\ Internet Explorer v11.0.9600.16521


Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]


-\\ Google Chrome v33.0.1750.146


[ File : C:\Users\Antonella\AppData\Local\Google\Chrome\User Data\Default\preferences ]


Deleted : homepage


*************************


AdwCleaner[R0].txt - [9145 octets] - [15/03/2014 14:17:44]
AdwCleaner[S0].txt - [6607 octets] - [15/03/2014 14:18:32]


########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6667 octets] ##########

- - - Updated - - -

# AdwCleaner v3.022 - Report created 15/03/2014 at 14:18:32
# Updated 13/03/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Antonella - ANTONELLA-HP
# Running from : C:\Users\Antonella\Desktop\adwcleaner.exe
# Option : Clean


***** [ Services ] *****


Service Deleted : Re-markit
[#] Service Deleted : Update FindRight
[#] Service Deleted : Util FindRight


***** [ Files / Folders ] *****


Folder Deleted : C:\ProgramData\WPM
Folder Deleted : C:\Users\Antonella\AppData\Local\Smartbar
Folder Deleted : C:\Users\ANTONE~1\AppData\Local\Temp\boost_interprocess
Folder Deleted : C:\Users\ANTONE~1\AppData\Local\Temp\Smartbar
Folder Deleted : C:\Users\Antonella\AppData\LocalLow\Smartbar
Folder Deleted : C:\Users\Antonella\AppData\Roaming\Systweak
Folder Deleted : C:\Users\Antonella\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcpfhaghaadpjpgocojgnlhjcieeooel
File Deleted : C:\Windows\System32\roboot64.exe
File Deleted : C:\Windows\Tasks\Re-markit Update.job
File Deleted : C:\Windows\System32\Tasks\Re-markit Update


***** [ Shortcuts ] *****




***** [ Registry ] *****


Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper]
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.bho
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
Key Deleted : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\speedupmypc_RASMANCS
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\SmartBar
Key Deleted : HKCU\Software\smartbarbackup
Key Deleted : HKCU\Software\smartbarlog
Key Deleted : HKCU\Software\systweak
Key Deleted : HKLM\Software\supWPM
Key Deleted : HKLM\Software\sweet-pageSoftware
Key Deleted : HKLM\Software\systweak
Key Deleted : HKLM\Software\Uniblue


***** [ Browsers ] *****


-\\ Internet Explorer v11.0.9600.16521


Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]


-\\ Google Chrome v33.0.1750.146


[ File : C:\Users\Antonella\AppData\Local\Google\Chrome\User Data\Default\preferences ]


Deleted : homepage


*************************


AdwCleaner[R0].txt - [9145 octets] - [15/03/2014 14:17:44]
AdwCleaner[S0].txt - [6607 octets] - [15/03/2014 14:18:32]


########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6667 octets] ##########

- - - Updated - - -

ora clicco su otl. ma sto facendo bene menatwork???? oddio, lo speroooo :)

- - - Updated - - -

Ti sono arrivati gli OTL.txt e Exstres.txt?

- - - Updated - - -

CIAO ella62 esegui queste scansioni

scarica adwcleaner

clicca su scan e poi su ''clean'' conferma con OK le varie finestre che ti compariranno.

alla fine clicca su Report e allega il contenuto


Scarica OTL e salvalo sul desktop

Metti la spunta su SCAN ALL USERS.

Sotto output, metti la spunta su minimal output

Clicca sulla freccettina di File Age e seleziona 60 Days

Metti la spunta a LOP Check e Purity Check.

Clicca su RUN SCAN

Lascia fare la scansione senza interferire.

Al termine della scansione trovi due log sul desktop. OTL.txt ed Extras.txt, salvali e caricali su Wikisend,
scusami se ti disturbo, ma ho fatto bene quello che mi hai chiesto?
 

Ella62

Nuovo Utente
22
0
:help::help: menatwork per favore, mi rispondi? non capisco se ho fatto altri guai o se ho fatto bene. io ho caricato (spero bene) gli otl sotto la tua pagina. ora che dovrei fare per favore? :help:

- - - Updated - - -

devi allegare i log come e' indicato nella mia firma
che sono i log? , gli otl? non ti sono arrivati? li ho caricati sotto la tua firma, dove c'è scritto caricali qui. quindi ho sbagliato :(

- - - Updated - - -

eccoli in allegato. spero di aver fatto bene

- - - Updated - - -

questo è il primo :) speriamo beneee

- - - Updated - - -

ciao menatwork, scusami se ti sto 'tampinando', ma vorrei sapere se i log che ti ho mandato sono quelli richiesti e se devo fare qualche altra cosa. grazie :grat:
 

Allegati

  • Extras.Txt
    50 KB · Visualizzazioni: 71
  • OTL.Txt
    104.6 KB · Visualizzazioni: 44
  • AdwCleaner[S0] report.txt
    6.6 KB · Visualizzazioni: 46

menatwork

Utente Attivo
1,303
232
apri otl e copia questo codice nel box bianco del programma


Codice:
:OTL
IE - HKLM\..\SearchScopes\{F0E7BB52-3A65-465C-A3FE-58C6D3760A0D}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1120&query={searchTerms}&invocationType=tb50hpcnnbie7-it-it
IE - HKU\S-1-5-21-2008176209-2530466717-3309057787-1000\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
IE - HKU\S-1-5-21-2008176209-2530466717-3309057787-1000\..\SearchScopes\{F0E7BB52-3A65-465C-A3FE-58C6D3760A0D}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1120&query={searchTerms}&invocationType=tb50hpcnnbie7-it-it
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{dfefbe51-ca52-484b-adf0-6b158b05262d}: C:\ProgramData\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension
CHR - homepage: [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
CHR - homepage: [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
O33 - MountPoints2\{00b580ca-2827-11e1-9f98-b4e9831da8d2}\Shell - "" = AutoRun
O33 - MountPoints2\{00b580ca-2827-11e1-9f98-b4e9831da8d2}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{00b580e4-2827-11e1-9f98-ccd706c53e0d}\Shell - "" = AutoRun
O33 - MountPoints2\{00b580e4-2827-11e1-9f98-ccd706c53e0d}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{0d535824-bc33-11df-b675-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{0d535824-bc33-11df-b675-00265ec42b10}\Shell\AutoRun\command - "" = E:\Windows/AutoRun.exe
O33 - MountPoints2\{27dadbe6-e5d9-11de-ad8c-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{27dadbe6-e5d9-11de-ad8c-00265ec42b10}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{42458cc9-e318-11e1-99bd-e1ac60aa17c1}\Shell - "" = AutoRun
O33 - MountPoints2\{42458cc9-e318-11e1-99bd-e1ac60aa17c1}\Shell\AutoRun\command - "" = E:\WindowsUI\Install.exe
O33 - MountPoints2\{47b533f6-bc2d-11df-83a5-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{47b533f6-bc2d-11df-83a5-00265ec42b10}\Shell\AutoRun\command - "" = E:\Windows/AutoRun.exe
O33 - MountPoints2\{a1926abc-f3d0-11de-ad21-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{a1926abc-f3d0-11de-ad21-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{a506c962-3c13-11e1-9f96-f6177175d9b2}\Shell - "" = AutoRun
O33 - MountPoints2\{a506c962-3c13-11e1-9f96-f6177175d9b2}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{ad9e2295-e5b6-11de-ad0d-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{ad9e2295-e5b6-11de-ad0d-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{b778df62-bb97-11df-83c3-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{b778df62-bb97-11df-83c3-00269e71b88d}\Shell\AutoRun\command - "" = E:\setup.exe
O33 - MountPoints2\{b778df72-bb97-11df-83c3-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{b778df72-bb97-11df-83c3-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\WindowsUI\Install.exe
[2012/11/06 00:41:27 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2012/11/04 17:53:05 | 000,000,000 | ---D | C] -- C:\Users\Tulio\AppData\Local\Lollipop
[2012/11/04 17:52:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2012/11/04 17:52:10 | 000,000,000 | ---D | C] -- C:\Users\Tulio\AppData\Roaming\Babylon
[2012/11/11 12:43:39 | 000,187,953 | ---- | M] () -- C:\spyhunter.fix
[2012/11/06 21:26:57 | 000,187,953 | ---- | C] () -- C:\spyhunter.fix
[2012/11/04 17:52:10 | 000,000,000 | ---D | M] -- C:\Users\Tulio\AppData\Roaming\Babylon [MENTION=102884]alt[/MENTION]ernate Data Stream - 145 bytes -> C:\ProgramData\Temp:0B4227B4 [MENTION=102884]alt[/MENTION]ernate Data Stream - 133 bytes -> C:\ProgramData\Temp:0B4227B4 [MENTION=102884]alt[/MENTION]ernate Data Stream - 124 bytes -> C:\ProgramData\Temp:CB0AACC9

:Files
ipconfig /flushdns /c 

:commands
[purity]
[Reboot]

clicca RUN FIX e allega il risultato che trovi in C:\_OTL\MovedFiles
 

Ella62

Nuovo Utente
22
0
apri otl e copia questo codice nel box bianco del programma


Codice:
:OTL
IE - HKLM\..\SearchScopes\{F0E7BB52-3A65-465C-A3FE-58C6D3760A0D}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1120&query={searchTerms}&invocationType=tb50hpcnnbie7-it-it
IE - HKU\S-1-5-21-2008176209-2530466717-3309057787-1000\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
IE - HKU\S-1-5-21-2008176209-2530466717-3309057787-1000\..\SearchScopes\{F0E7BB52-3A65-465C-A3FE-58C6D3760A0D}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1120&query={searchTerms}&invocationType=tb50hpcnnbie7-it-it
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{dfefbe51-ca52-484b-adf0-6b158b05262d}: C:\ProgramData\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension
CHR - homepage: [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
CHR - homepage: [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
O33 - MountPoints2\{00b580ca-2827-11e1-9f98-b4e9831da8d2}\Shell - "" = AutoRun
O33 - MountPoints2\{00b580ca-2827-11e1-9f98-b4e9831da8d2}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{00b580e4-2827-11e1-9f98-ccd706c53e0d}\Shell - "" = AutoRun
O33 - MountPoints2\{00b580e4-2827-11e1-9f98-ccd706c53e0d}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{0d535824-bc33-11df-b675-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{0d535824-bc33-11df-b675-00265ec42b10}\Shell\AutoRun\command - "" = E:\Windows/AutoRun.exe
O33 - MountPoints2\{27dadbe6-e5d9-11de-ad8c-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{27dadbe6-e5d9-11de-ad8c-00265ec42b10}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{42458cc9-e318-11e1-99bd-e1ac60aa17c1}\Shell - "" = AutoRun
O33 - MountPoints2\{42458cc9-e318-11e1-99bd-e1ac60aa17c1}\Shell\AutoRun\command - "" = E:\WindowsUI\Install.exe
O33 - MountPoints2\{47b533f6-bc2d-11df-83a5-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{47b533f6-bc2d-11df-83a5-00265ec42b10}\Shell\AutoRun\command - "" = E:\Windows/AutoRun.exe
O33 - MountPoints2\{a1926abc-f3d0-11de-ad21-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{a1926abc-f3d0-11de-ad21-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{a506c962-3c13-11e1-9f96-f6177175d9b2}\Shell - "" = AutoRun
O33 - MountPoints2\{a506c962-3c13-11e1-9f96-f6177175d9b2}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{ad9e2295-e5b6-11de-ad0d-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{ad9e2295-e5b6-11de-ad0d-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{b778df62-bb97-11df-83c3-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{b778df62-bb97-11df-83c3-00269e71b88d}\Shell\AutoRun\command - "" = E:\setup.exe
O33 - MountPoints2\{b778df72-bb97-11df-83c3-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{b778df72-bb97-11df-83c3-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\WindowsUI\Install.exe
[2012/11/06 00:41:27 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2012/11/04 17:53:05 | 000,000,000 | ---D | C] -- C:\Users\Tulio\AppData\Local\Lollipop
[2012/11/04 17:52:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2012/11/04 17:52:10 | 000,000,000 | ---D | C] -- C:\Users\Tulio\AppData\Roaming\Babylon
[2012/11/11 12:43:39 | 000,187,953 | ---- | M] () -- C:\spyhunter.fix
[2012/11/06 21:26:57 | 000,187,953 | ---- | C] () -- C:\spyhunter.fix
[2012/11/04 17:52:10 | 000,000,000 | ---D | M] -- C:\Users\Tulio\AppData\Roaming\Babylon @[URL="http://www.tomshw.it/forum/member.php?u=102884"]alt[/URL]ernate Data Stream - 145 bytes -> C:\ProgramData\Temp:0B4227B4 @[URL="http://www.tomshw.it/forum/member.php?u=102884"]alt[/URL]ernate Data Stream - 133 bytes -> C:\ProgramData\Temp:0B4227B4 @[URL="http://www.tomshw.it/forum/member.php?u=102884"]alt[/URL]ernate Data Stream - 124 bytes -> C:\ProgramData\Temp:CB0AACC9

:Files
ipconfig /flushdns /c 

:commands
[purity]
[Reboot]

clicca RUN FIX e allega il risultato che trovi in C:\_OTL\MovedFiles
non ho capito....mi dispiace, ma non tutti siamo in grado di capire (spero) io apro otl e non c'è nessun box bianco dove copiare. sorry aiutami per favore
 

menatwork

Utente Attivo
1,303
232
semplifichiamo

scarica il file in allegato sul desktop, poi apri otl e lo trascini col mouse sotto "Custom Scans\Fixes"

poi clicchi su run fix

il risultato delle eliminazioni lo trovi nella cartella C:\_OTL\MovedFiles
 

Allegati

  • fix.txt
    3.7 KB · Visualizzazioni: 126

Ella62

Nuovo Utente
22
0
apri otl e copia questo codice nel box bianco del programma


Codice:
:OTL
IE - HKLM\..\SearchScopes\{F0E7BB52-3A65-465C-A3FE-58C6D3760A0D}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1120&query={searchTerms}&invocationType=tb50hpcnnbie7-it-it
IE - HKU\S-1-5-21-2008176209-2530466717-3309057787-1000\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
IE - HKU\S-1-5-21-2008176209-2530466717-3309057787-1000\..\SearchScopes\{F0E7BB52-3A65-465C-A3FE-58C6D3760A0D}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1120&query={searchTerms}&invocationType=tb50hpcnnbie7-it-it
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{dfefbe51-ca52-484b-adf0-6b158b05262d}: C:\ProgramData\Browser Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension
CHR - homepage: [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
CHR - homepage: [URL="http://www.claro-search.com/?affID=114508&tt=4412_5&babsrc=HP_clro&mntrId=e4407f4b00000000000000265ec42b10"]Claro Search[/URL]
O33 - MountPoints2\{00b580ca-2827-11e1-9f98-b4e9831da8d2}\Shell - "" = AutoRun
O33 - MountPoints2\{00b580ca-2827-11e1-9f98-b4e9831da8d2}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{00b580e4-2827-11e1-9f98-ccd706c53e0d}\Shell - "" = AutoRun
O33 - MountPoints2\{00b580e4-2827-11e1-9f98-ccd706c53e0d}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{0d535824-bc33-11df-b675-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{0d535824-bc33-11df-b675-00265ec42b10}\Shell\AutoRun\command - "" = E:\Windows/AutoRun.exe
O33 - MountPoints2\{27dadbe6-e5d9-11de-ad8c-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{27dadbe6-e5d9-11de-ad8c-00265ec42b10}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{42458cc9-e318-11e1-99bd-e1ac60aa17c1}\Shell - "" = AutoRun
O33 - MountPoints2\{42458cc9-e318-11e1-99bd-e1ac60aa17c1}\Shell\AutoRun\command - "" = E:\WindowsUI\Install.exe
O33 - MountPoints2\{47b533f6-bc2d-11df-83a5-00265ec42b10}\Shell - "" = AutoRun
O33 - MountPoints2\{47b533f6-bc2d-11df-83a5-00265ec42b10}\Shell\AutoRun\command - "" = E:\Windows/AutoRun.exe
O33 - MountPoints2\{a1926abc-f3d0-11de-ad21-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{a1926abc-f3d0-11de-ad21-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{a506c962-3c13-11e1-9f96-f6177175d9b2}\Shell - "" = AutoRun
O33 - MountPoints2\{a506c962-3c13-11e1-9f96-f6177175d9b2}\Shell\AutoRun\command - "" = E:\AutoRun.exe
O33 - MountPoints2\{ad9e2295-e5b6-11de-ad0d-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{ad9e2295-e5b6-11de-ad0d-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\{b778df62-bb97-11df-83c3-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{b778df62-bb97-11df-83c3-00269e71b88d}\Shell\AutoRun\command - "" = E:\setup.exe
O33 - MountPoints2\{b778df72-bb97-11df-83c3-00269e71b88d}\Shell - "" = AutoRun
O33 - MountPoints2\{b778df72-bb97-11df-83c3-00269e71b88d}\Shell\AutoRun\command - "" = E:\QsSetup.exe
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\WindowsUI\Install.exe
[2012/11/06 00:41:27 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2012/11/04 17:53:05 | 000,000,000 | ---D | C] -- C:\Users\Tulio\AppData\Local\Lollipop
[2012/11/04 17:52:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2012/11/04 17:52:10 | 000,000,000 | ---D | C] -- C:\Users\Tulio\AppData\Roaming\Babylon
[2012/11/11 12:43:39 | 000,187,953 | ---- | M] () -- C:\spyhunter.fix
[2012/11/06 21:26:57 | 000,187,953 | ---- | C] () -- C:\spyhunter.fix
[2012/11/04 17:52:10 | 000,000,000 | ---D | M] -- C:\Users\Tulio\AppData\Roaming\Babylon @[URL="http://www.tomshw.it/forum/member.php?u=102884"]alt[/URL]ernate Data Stream - 145 bytes -> C:\ProgramData\Temp:0B4227B4 @[URL="http://www.tomshw.it/forum/member.php?u=102884"]alt[/URL]ernate Data Stream - 133 bytes -> C:\ProgramData\Temp:0B4227B4 @[URL="http://www.tomshw.it/forum/member.php?u=102884"]alt[/URL]ernate Data Stream - 124 bytes -> C:\ProgramData\Temp:CB0AACC9

:Files
ipconfig /flushdns /c 

:commands
[purity]
[Reboot]
clicca RUN FIX e allega il risultato che trovi in C:\_OTL\MovedFiles[/QUOTE]
MA dove lo trovo questo C:\_OTL\MovedFiles? aiutami per favore.... :( sono una frana e nessun altro può aiutarmi

- - - Updated - - -

ops non avevo letto....cerco di 'decifrare' :(

- - - Updated - - -

e poi??? perchè ho diversi risultati ........:muro:

- - - Updated - - -

spero li prenda. no, non riesco ad allegarli. forse perchè sono .log? :muro:

- - - Updated - - -

o mamma e perchè ti inviato vecchi allegati?? sarà il sonno...... :annoiato:
 

Allegati

  • OTL.Txt
    104.6 KB · Visualizzazioni: 63
  • AdwCleaner[S0] report.txt
    6.6 KB · Visualizzazioni: 76

Ella62

Nuovo Utente
22
0
semplifichiamo

scarica il file in allegato sul desktop, poi apri otl e lo trascini col mouse sotto "Custom Scans\Fixes"

poi clicchi su run fix

il risultato delle eliminazioni lo trovi nella cartella C:\_OTL\MovedFiles
Io ho fatto come mi hai suggerito, anche con la prima risposta (prima di semplificare), ma non riesco a caricare nulla, probabilmente per l'estensione del file? che è . log se non erro e non riesco o non sono capace a modificarla. se potessi aiutarmi per favore. io ho scritto vari messaggi ma non leggo risposte....quindi sono rimasta bloccata così. a questo passaggio.
 

menatwork

Utente Attivo
1,303
232
Ella non e' difficile, cerca di seguirmi

scarichi il file in allegato sul desktop, poi apri otl e trascini il file scaricato col mouse dentro otl, sotto dove vedi scritto "Custom Scans\Fixes" poi clicchi su run fix
una volta fatto questo vai nel disco locale e dentro la cartella di otl ne troverai un'altra col nome MovedFiles
dentro vedrai il log con la data odierna che dovrai allegare

se non riesci a farlo fatti aiutare da qualcuno
 
  • Mi piace
Reazioni: Ella62

Ella62

Nuovo Utente
22
0
Grazie per la pazienza. ho fatto come mi hai detto ed il file ce l'ho. ma non so come caricarlo perchè è .log e non me lo accetta, mi da errore quando provo a caricarlo, mi dice file non valido perchè è .log. Allora, se lo copiassi qui sotto? :)

- - - Updated - - -

forse ci sono riuscita???? :) :) mi stavo impiccando con l'estensione!! allora ho provato a modificarla, non ti spiego come perchè non lo so nemmeno io. spero vada bene.
 

Allegati

  • 03162014_032804 (1).log prova.txt
    16.2 KB · Visualizzazioni: 67

menatwork

Utente Attivo
1,303
232
forse hai sbagliato qualche cosa, nel log ci sono solo not found (non trovato)

fai una nuova scansione con otl vediamo se e' tutto a posto

[h=2][/h][h=2][/h]
 

Ansuel

L'elettricista Pazzo
Utente Èlite
5,588
2,348
CPU
I5-4690k
Scheda Madre
Z97pro (Wi-Fi AC)
HDD
Segate 1tb 64mb cache; 120 GB Samsung Evo
RAM
Corsair vegenacce 2*4GB (o come diavolo si scrivono)
GPU
Asus Direct CUII GTX 770
Audio
SOUND BLASTER Z
Monitor
Mx239H IPS
PSU
XFX XTR 750w Modulare 80+ Gold
Case
Nzxt H440 Nero/Rosso
OS
Windows 10 Professional
menatwork hai un firma troppo lunga, mettila più corta
 

Ella62

Nuovo Utente
22
0
CIAO ella62 esegui queste scansioni


Scarica OTL e salvalo sul desktop

Metti la spunta su SCAN ALL USERS.

Sotto output, metti la spunta su minimal output

Clicca sulla freccettina di File Age e seleziona 60 Days

Metti la spunta a LOP Check e Purity Check.

Clicca su RUN SCAN

Lascia fare la scansione senza interferire.

Al termine della scansione trovi due log sul desktop. OTL.txt ed Extras.txt, salvali e caricali su Wikisend,
cioè devo rifare tutto questo?

- - - Updated - - -

fatto. la scansione con OTL. una cosa strana però. questa volta non ho trovato i 2 log sul desk, ma mi si è aperto il blocco note e tutto era riportato lì dentro. sul desk non avevo nulla, se non i precedenti.
anche quei cosi (non mi viene in mente il nome, scusa) .log , si aprono sul blocco note. è normale così?
ora ti invio in allegato il risultato della scansione con otl.
 

Allegati

  • OTL.Txt secondo.txt
    141.5 KB · Visualizzazioni: 112

Entra

oppure Accedi utilizzando
Discord Ufficiale Entra ora!