Author Topic: url:mal  (Read 1947 times)

0 Members and 1 Guest are viewing this topic.

Offline Giglio

  • Newbie
  • *
  • Posts: 2
url:mal
« on: July 26, 2015, 05:08:48 PM »
Salve a tutti, ho anche io questo problema su un pc. si presenta solo con google chrome, in più quando apro una pagina o un link me ne apre una nuova di pubblicità/giochi e similari. allego i file di farbar. Ps ho già eseguito diverse scansioni con vari programmi senza risultati (malwareantibytes, adware, fsceure online)
Windows 7 Home Premium Service Pack 1 (X64)

Offline giogio

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 4113
Re: url:mal
« Reply #1 on: July 26, 2015, 05:29:49 PM »
Ciao
ho chiesto ad Essexboy di controllare i tuoi log. Spero ti risponda oggi
Prima di scrivere sul forum per favore leggi le istruzioni qui https://forum.avast.com/index.php?topic=144453.0
Non inviatemi MP per supporto,grazie-No support PM please
Home: E8400-4GB RAM-500GB HDD-Win10.0.15063x64-Avast! Free 17.3.2291-CryptoPrevent-MBAM 2.2free-Chrome 57(uBlock origin)-TB52
Work: i5-2400-4GB RAM-500GB HDD-Win 7sp1x64-Avast!Business Security 12.3.2515,     
Cloud Console 2.18
-FF52-TB52

Offline Giglio

  • Newbie
  • *
  • Posts: 2
Re: url:mal
« Reply #2 on: July 26, 2015, 05:30:48 PM »
grazie mille. :)

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40627
  • Dragons by Sasha
    • Malware fixes
Re: url:mal
« Reply #3 on: July 26, 2015, 06:13:17 PM »
If this does not stop the alerts could you see if using Chrome in incognito mode stops them

Se questo non ferma gli avvisi potrebbe vedere se usando Chrome in modalità in incognito li ferma

CAUTION :  This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:
 
Quote
CreateRestorePoint:
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1857465858-3646374652-3847007989-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Toolbar: HKU\S-1-5-21-1857465858-3646374652-3847007989-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
RemoveProxy:
EmptyTemp:
CMD: bitsadmin /reset /allusers

 
Save this as fixlist.txt, in the same location as FRST.exe

Run FRST and press Fix
On completion a log will be generated please post that

THEN

Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[S0].txt as well.