Post by terryc on May 11, 2015 9:45:14 GMT -8
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-05-2015
Ran by home at 2015-05-11 11:21:27 Run:1
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home & LogMeInRemoteUser)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\Run: [GoogleChromeAutoLaunch_5C1FD3B428FF226D1BCB0DD9D605A11B] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [812872 2015-04-27] (Google Inc.)
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {12a6492a-acae-11e1-8d93-2c27d7283457} - G:\TL-Bootstrap.exe
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {12a64a8f-acae-11e1-8d93-2c27d7283457} - G:\TL-Bootstrap.exe
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {33541941-db0e-11e1-b91e-2c27d7283457} - G:\LaunchU3.exe -a
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {95526b41-bfe1-11e3-9fab-2c27d7283457} - G:\TL-Bootstrap.exe
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {f78d2a72-6f39-11e4-873b-2c27d7283457} - G:\VZW_Software_upgrade_assistant.exe
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM -> {522055EF-C496-444D-9574-B78AE8C3575D} URL = www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=http://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {522055EF-C496-444D-9574-B78AE8C3575D} URL = www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=http://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {522055EF-C496-444D-9574-B78AE8C3575D} URL = www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = www.google.com/search?q={sear
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=http://shop.ebay.com/?_nkw={searchTerms}
BHO-x32: &Yahoo! Toolbar Helper -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
BHO-x32: SingleInstance Class -> {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28] (Yahoo! Inc)
Toolbar: HKLM-x32 - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF SearchPlugin: C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\searchplugins\safesearch.xml [2013-03-04]
FF Extension: Super Video Downloader - C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\Extensions\none@allvideodownloader.com [2015-05-04]
S2 NOBU; No ImagePath
S2 PCCUJobMgr; No ImagePath
S4 LMIRfsClientNP; No ImagePath
2013-11-04 13:14 - 2013-11-04 13:14 - 0006172 _____ () C:\Users\home\AppData\Local\Temp1.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004159 _____ () C:\Users\home\AppData\Local\Temp103.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004649 _____ () C:\Users\home\AppData\Local\Temp109.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0003618 _____ () C:\Users\home\AppData\Local\Temp112.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006400 _____ () C:\Users\home\AppData\Local\Temp119.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004764 _____ () C:\Users\home\AppData\Local\Temp125.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0008445 _____ () C:\Users\home\AppData\Local\Temp133.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0008075 _____ () C:\Users\home\AppData\Local\Temp139.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007140 _____ () C:\Users\home\AppData\Local\Temp14.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006685 _____ () C:\Users\home\AppData\Local\Temp141.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006066 _____ () C:\Users\home\AppData\Local\Temp145.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004614 _____ () C:\Users\home\AppData\Local\Temp15.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004772 _____ () C:\Users\home\AppData\Local\Temp151.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007098 _____ () C:\Users\home\AppData\Local\Temp155.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004727 _____ () C:\Users\home\AppData\Local\Temp157.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005091 _____ () C:\Users\home\AppData\Local\Temp16.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006456 _____ () C:\Users\home\AppData\Local\Temp161.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005055 _____ () C:\Users\home\AppData\Local\Temp162.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006442 _____ () C:\Users\home\AppData\Local\Temp168.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004445 _____ () C:\Users\home\AppData\Local\Temp170.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007882 _____ () C:\Users\home\AppData\Local\Temp176.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006822 _____ () C:\Users\home\AppData\Local\Temp181.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006271 _____ () C:\Users\home\AppData\Local\Temp198.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005325 _____ () C:\Users\home\AppData\Local\Temp199.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004726 _____ () C:\Users\home\AppData\Local\Temp206.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005896 _____ () C:\Users\home\AppData\Local\Temp228.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007065 _____ () C:\Users\home\AppData\Local\Temp230.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0002646 _____ () C:\Users\home\AppData\Local\Temp24.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004981 _____ () C:\Users\home\AppData\Local\Temp282.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004864 _____ () C:\Users\home\AppData\Local\Temp39.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0003708 _____ () C:\Users\home\AppData\Local\Temp4.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006432 _____ () C:\Users\home\AppData\Local\Temp43.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005681 _____ () C:\Users\home\AppData\Local\Temp5.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004376 _____ () C:\Users\home\AppData\Local\Temp6.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005346 _____ () C:\Users\home\AppData\Local\Temp60.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0003623 _____ () C:\Users\home\AppData\Local\Temp62.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007893 _____ () C:\Users\home\AppData\Local\Temp7.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005323 _____ () C:\Users\home\AppData\Local\Temp82.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007000 _____ () C:\Users\home\AppData\Local\Temp85.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004987 _____ () C:\Users\home\AppData\Local\Temp93.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005345 _____ () C:\Users\home\AppData\Local\Temp94.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006266 _____ () C:\Users\home\AppData\Local\Temp96.PNG
C:\Users\home\AppData\Local\Temp\_is42EC.exe
C:\Users\home\AppData\Local\Temp\_is879A.exe
C:\Users\home\AppData\Local\Temp\_isAE6C.exe
C:\Users\home\AppData\Local\Temp\_isBE34.exe
C:\Users\home\AppData\Local\Temp\_isBF7C.exe
C:\Users\home\AppData\Local\Temp\_isF0E7.exe
AlternateDataStreams: C:\ProgramData\Temp:D95ACC7D
AlternateDataStreams: C:\Users\home\Downloads\noname.eml:OECustomProperty
RemoveProxy:
Reboot:
end
*****************
Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_5C1FD3B428FF226D1BCB0DD9D605A11B => value deleted successfully.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{12a6492a-acae-11e1-8d93-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{12a6492a-acae-11e1-8d93-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{12a64a8f-acae-11e1-8d93-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{12a64a8f-acae-11e1-8d93-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{33541941-db0e-11e1-b91e-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{33541941-db0e-11e1-b91e-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{95526b41-bfe1-11e3-9fab-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{95526b41-bfe1-11e3-9fab-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f78d2a72-6f39-11e4-873b-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{f78d2a72-6f39-11e4-873b-2c27d7283457} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => Key deleted successfully.
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{522055EF-C496-444D-9574-B78AE8C3575D}" => Key deleted successfully.
HKCR\CLSID\{522055EF-C496-444D-9574-B78AE8C3575D} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => Key deleted successfully.
HKCR\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}" => Key deleted successfully.
HKCR\CLSID\{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}" => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{522055EF-C496-444D-9574-B78AE8C3575D}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{522055EF-C496-444D-9574-B78AE8C3575D} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => Key deleted successfully.
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{522055EF-C496-444D-9574-B78AE8C3575D}" => Key deleted successfully.
HKCR\CLSID\{522055EF-C496-444D-9574-B78AE8C3575D} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key deleted successfully.
HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => Key deleted successfully.
HKCR\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}" => Key deleted successfully.
HKCR\CLSID\{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}" => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}" => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} => value deleted successfully.
"HKCR\Wow6432Node\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}" => Key deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\searchplugins\safesearch.xml => Moved successfully.
C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\Extensions\none@allvideodownloader.com => Moved successfully.
NOBU => Service deleted successfully.
PCCUJobMgr => Service deleted successfully.
LMIRfsClientNP => Service deleted successfully.
C:\Users\home\AppData\Local\Temp1.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp103.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp109.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp112.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp119.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp125.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp133.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp139.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp14.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp141.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp145.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp15.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp151.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp155.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp157.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp16.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp161.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp162.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp168.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp170.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp176.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp181.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp198.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp199.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp206.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp228.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp230.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp24.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp282.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp39.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp4.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp43.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp5.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp6.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp60.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp62.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp7.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp82.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp85.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp93.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp94.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp96.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp\_is42EC.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_is879A.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isAE6C.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isBE34.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isBF7C.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isF0E7.exe => Moved successfully.
C:\ProgramData\Temp => ":D95ACC7D" ADS removed successfully.
C:\Users\home\Downloads\noname.eml => ":OECustomProperty" ADS removed successfully.
========= RemoveProxy: =========
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value deleted successfully.
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value deleted successfully.
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value deleted successfully.
========= End of RemoveProxy: =========
The system needed a reboot.
==== End of Fixlog 11:22:23 ====
Ran by home at 2015-05-11 11:21:27 Run:1
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home & LogMeInRemoteUser)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\Run: [GoogleChromeAutoLaunch_5C1FD3B428FF226D1BCB0DD9D605A11B] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [812872 2015-04-27] (Google Inc.)
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {12a6492a-acae-11e1-8d93-2c27d7283457} - G:\TL-Bootstrap.exe
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {12a64a8f-acae-11e1-8d93-2c27d7283457} - G:\TL-Bootstrap.exe
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {33541941-db0e-11e1-b91e-2c27d7283457} - G:\LaunchU3.exe -a
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {95526b41-bfe1-11e3-9fab-2c27d7283457} - G:\TL-Bootstrap.exe
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\...\MountPoints2: {f78d2a72-6f39-11e4-873b-2c27d7283457} - G:\VZW_Software_upgrade_assistant.exe
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM -> {522055EF-C496-444D-9574-B78AE8C3575D} URL = www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=http://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM-x32 -> {522055EF-C496-444D-9574-B78AE8C3575D} URL = www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=http://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = www.bing.com/search?q={searchTerms}&form=HPDTDF&pc=HPDTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = search.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {522055EF-C496-444D-9574-B78AE8C3575D} URL = www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us1-vsb-20&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = www.google.com/search?q={sear
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = en.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKU\S-1-5-21-2435640776-2516259060-3705996352-1000 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = rover.ebay.com/rover/1/711-30572-11896-1/4?mpre=http://shop.ebay.com/?_nkw={searchTerms}
BHO-x32: &Yahoo! Toolbar Helper -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
BHO-x32: SingleInstance Class -> {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28] (Yahoo! Inc)
Toolbar: HKLM-x32 - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF SearchPlugin: C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\searchplugins\safesearch.xml [2013-03-04]
FF Extension: Super Video Downloader - C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\Extensions\none@allvideodownloader.com [2015-05-04]
S2 NOBU; No ImagePath
S2 PCCUJobMgr; No ImagePath
S4 LMIRfsClientNP; No ImagePath
2013-11-04 13:14 - 2013-11-04 13:14 - 0006172 _____ () C:\Users\home\AppData\Local\Temp1.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004159 _____ () C:\Users\home\AppData\Local\Temp103.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004649 _____ () C:\Users\home\AppData\Local\Temp109.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0003618 _____ () C:\Users\home\AppData\Local\Temp112.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006400 _____ () C:\Users\home\AppData\Local\Temp119.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004764 _____ () C:\Users\home\AppData\Local\Temp125.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0008445 _____ () C:\Users\home\AppData\Local\Temp133.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0008075 _____ () C:\Users\home\AppData\Local\Temp139.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007140 _____ () C:\Users\home\AppData\Local\Temp14.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006685 _____ () C:\Users\home\AppData\Local\Temp141.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006066 _____ () C:\Users\home\AppData\Local\Temp145.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004614 _____ () C:\Users\home\AppData\Local\Temp15.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004772 _____ () C:\Users\home\AppData\Local\Temp151.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007098 _____ () C:\Users\home\AppData\Local\Temp155.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004727 _____ () C:\Users\home\AppData\Local\Temp157.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005091 _____ () C:\Users\home\AppData\Local\Temp16.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006456 _____ () C:\Users\home\AppData\Local\Temp161.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005055 _____ () C:\Users\home\AppData\Local\Temp162.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006442 _____ () C:\Users\home\AppData\Local\Temp168.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004445 _____ () C:\Users\home\AppData\Local\Temp170.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007882 _____ () C:\Users\home\AppData\Local\Temp176.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006822 _____ () C:\Users\home\AppData\Local\Temp181.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006271 _____ () C:\Users\home\AppData\Local\Temp198.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005325 _____ () C:\Users\home\AppData\Local\Temp199.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004726 _____ () C:\Users\home\AppData\Local\Temp206.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005896 _____ () C:\Users\home\AppData\Local\Temp228.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007065 _____ () C:\Users\home\AppData\Local\Temp230.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0002646 _____ () C:\Users\home\AppData\Local\Temp24.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004981 _____ () C:\Users\home\AppData\Local\Temp282.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004864 _____ () C:\Users\home\AppData\Local\Temp39.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0003708 _____ () C:\Users\home\AppData\Local\Temp4.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006432 _____ () C:\Users\home\AppData\Local\Temp43.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005681 _____ () C:\Users\home\AppData\Local\Temp5.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004376 _____ () C:\Users\home\AppData\Local\Temp6.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005346 _____ () C:\Users\home\AppData\Local\Temp60.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0003623 _____ () C:\Users\home\AppData\Local\Temp62.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007893 _____ () C:\Users\home\AppData\Local\Temp7.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005323 _____ () C:\Users\home\AppData\Local\Temp82.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0007000 _____ () C:\Users\home\AppData\Local\Temp85.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0004987 _____ () C:\Users\home\AppData\Local\Temp93.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0005345 _____ () C:\Users\home\AppData\Local\Temp94.PNG
2013-11-04 13:14 - 2013-11-04 13:14 - 0006266 _____ () C:\Users\home\AppData\Local\Temp96.PNG
C:\Users\home\AppData\Local\Temp\_is42EC.exe
C:\Users\home\AppData\Local\Temp\_is879A.exe
C:\Users\home\AppData\Local\Temp\_isAE6C.exe
C:\Users\home\AppData\Local\Temp\_isBE34.exe
C:\Users\home\AppData\Local\Temp\_isBF7C.exe
C:\Users\home\AppData\Local\Temp\_isF0E7.exe
AlternateDataStreams: C:\ProgramData\Temp:D95ACC7D
AlternateDataStreams: C:\Users\home\Downloads\noname.eml:OECustomProperty
RemoveProxy:
Reboot:
end
*****************
Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_5C1FD3B428FF226D1BCB0DD9D605A11B => value deleted successfully.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{12a6492a-acae-11e1-8d93-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{12a6492a-acae-11e1-8d93-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{12a64a8f-acae-11e1-8d93-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{12a64a8f-acae-11e1-8d93-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{33541941-db0e-11e1-b91e-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{33541941-db0e-11e1-b91e-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{95526b41-bfe1-11e3-9fab-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{95526b41-bfe1-11e3-9fab-2c27d7283457} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f78d2a72-6f39-11e4-873b-2c27d7283457}" => Key deleted successfully.
HKCR\CLSID\{f78d2a72-6f39-11e4-873b-2c27d7283457} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => Key deleted successfully.
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{522055EF-C496-444D-9574-B78AE8C3575D}" => Key deleted successfully.
HKCR\CLSID\{522055EF-C496-444D-9574-B78AE8C3575D} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => Key deleted successfully.
HKCR\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}" => Key deleted successfully.
HKCR\CLSID\{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}" => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{522055EF-C496-444D-9574-B78AE8C3575D}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{522055EF-C496-444D-9574-B78AE8C3575D} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}" => Key deleted successfully.
HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{522055EF-C496-444D-9574-B78AE8C3575D}" => Key deleted successfully.
HKCR\CLSID\{522055EF-C496-444D-9574-B78AE8C3575D} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key deleted successfully.
HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{b7fca997-d0fb-4fe0-8afd-255e89cf9671}" => Key deleted successfully.
HKCR\CLSID\{b7fca997-d0fb-4fe0-8afd-255e89cf9671} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d43b3890-80c7-4010-a95d-1e77b5924dc3}" => Key deleted successfully.
HKCR\CLSID\{d43b3890-80c7-4010-a95d-1e77b5924dc3} => Key not found.
"HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}" => Key deleted successfully.
HKCR\CLSID\{D944BB61-2E34-4DBF-A683-47E505C587DC} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}" => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} => value deleted successfully.
"HKCR\Wow6432Node\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}" => Key deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\searchplugins\safesearch.xml => Moved successfully.
C:\Users\home\AppData\Roaming\Mozilla\Firefox\Profiles\phepkpx7.default\Extensions\none@allvideodownloader.com => Moved successfully.
NOBU => Service deleted successfully.
PCCUJobMgr => Service deleted successfully.
LMIRfsClientNP => Service deleted successfully.
C:\Users\home\AppData\Local\Temp1.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp103.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp109.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp112.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp119.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp125.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp133.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp139.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp14.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp141.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp145.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp15.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp151.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp155.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp157.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp16.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp161.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp162.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp168.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp170.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp176.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp181.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp198.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp199.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp206.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp228.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp230.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp24.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp282.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp39.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp4.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp43.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp5.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp6.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp60.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp62.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp7.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp82.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp85.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp93.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp94.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp96.PNG => Moved successfully.
C:\Users\home\AppData\Local\Temp\_is42EC.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_is879A.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isAE6C.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isBE34.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isBF7C.exe => Moved successfully.
C:\Users\home\AppData\Local\Temp\_isF0E7.exe => Moved successfully.
C:\ProgramData\Temp => ":D95ACC7D" ADS removed successfully.
C:\Users\home\Downloads\noname.eml => ":OECustomProperty" ADS removed successfully.
========= RemoveProxy: =========
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value deleted successfully.
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value deleted successfully.
HKU\S-1-5-21-2435640776-2516259060-3705996352-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value deleted successfully.
========= End of RemoveProxy: =========
The system needed a reboot.
==== End of Fixlog 11:22:23 ====