Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-01-2015 01
Ran by Owner at 2015-01-24 15:12:57 Run:1
Running from C:\Users\Owner\Desktop
Loaded Profiles: Owner (Available profiles: Owner)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
start
CreateRestorePoint:
CloseProcesses:
HKLM-x32\...\Run: [SearchProtection] => C:\ProgramData\Search Protection\_run.bat [168 2013-03-02] ()
HKLM-x32\...\Run: [DATAMNGR] => C:\PROGRA~2\SETTIN~1\Datamngr\DATAMN~1.EXE
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\...\MountPoints2: {b45a83b0-7c3f-11e4-8842-dc0ea10bf152} - E:\LGAutoRun.exe
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\...\MountPoints2: {b45a83bc-7c3f-11e4-8842-dc0ea10bf152} - E:\windows\AutoRun.exe
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\...\MountPoints2: {c177cc3d-e58c-11e2-8463-dc0ea10bf152} - E:\LGAutoRun.exe
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\...\MountPoints2: {d61f72ac-be1c-11e1-877b-dc0ea10bf152} - E:\TL-Bootstrap.exe
AppInit_DLLs: C:\PROGRA~2\SETTIN~1\Datamngr\x64\datamngr.dll => C:\PROGRA~2\SETTIN~1\Datamngr\x64\datamngr.dll File Not Found
AppInit_DLLs: C:\PROGRA~2\SETTIN~1\Datamngr\x64\IEBHO.dll => C:\PROGRA~2\SETTIN~1\Datamngr\x64\IEBHO.dll File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SETTIN~1\Datamngr\datamngr.dll => "C:\PROGRA~2\SETTIN~1\Datamngr\datamngr.dll" File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SETTIN~1\Datamngr\IEBHO.dll => "C:\PROGRA~2\SETTIN~1\Datamngr\IEBHO.dll" File Not Found
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\Software\Microsoft\Internet Explorer\Main,Start Page = Vosteran.com/?f=1&a=vst_wnzp01_15_01_ch&cd=2XzuyEtN2Y1L1Qzu0D0CtD0E0AtCtD0B0FtCyDtB0AtDzz0BtN0D0Tzu0StCtDzyyCtN1L2XzutAtFyCtFtCyCtFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StBtDtDtCtAyByC0EtG0EtDtC0DtGyC0A0CzztGyB0EtD0FtGtAyCyD0E0CzytCyE0BzzyDzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyByBtAtD0AyDzytG0E0B0ByCtGyEyDzzzytG0BtAyBzytGtByCyDtBzytDyDzyzy0Ezz0B2Q&cr=832639186&ir=
SearchScopes: HKLM -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} URL = isearch.fantastigames.com/web?src=ieb&gct=ds&appid=100&systemid=440&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} URL = isearch.fantastigames.com/web?src=ieb&gct=ds&appid=100&systemid=440&q={searchTerms}
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKLM-x32 -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} URL = isearch.fantastigames.com/web?src=ieb&gct=ds&appid=100&systemid=440&q={searchTerms}
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} URL = isearch.fantastigames.com/web?src=ieb&gct=ds&appid=100&systemid=440&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> DefaultScope {C8DF3399-DD58-4208-A75D-0F9F36E73FC5} URL = Vosteran.com/results.php?f=4&q={searchTerms}&a=vst_wnzp01_15_01_ch&cd=2XzuyEtN2Y1L1Qzu0D0CtD0E0AtCtD0B0FtCyDtB0AtDzz0BtN0D0Tzu0StCtDzyyCtN1L2XzutAtFyCtFtCyCtFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StBtDtDtCtAyByC0EtG0EtDtC0DtGyC0A0CzztGyB0EtD0FtGtAyCyD0E0CzytCyE0BzzyDzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyByBtAtD0AyDzytG0E0B0ByCtGyEyDzzzytG0BtAyBzytGtByCyDtBzytDyDzyzy0Ezz0B2Q&cr=832639186&ir=
SearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> {0FA204D4-5326-43C7-A4D2-EDFB78E6EA59} URL =
www.ask.com/web?q={searchterms}&l=dis&o=ushplSearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = lavasoft.blekko.com/ws/?source=f439e2c0&tbp=rbox&toolbarid=adawaretb&u=A5BB9B885A3F9DF92FA82B51324B229D&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} URL = isearch.fantastigames.com/web?src=ieb&gct=ds&appid=100&systemid=440&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL =
www.ask.com/web?&o=101881&l=dis&q={SEARCHTERMS}SearchScopes: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000 -> {C8DF3399-DD58-4208-A75D-0F9F36E73FC5} URL = Vosteran.com/results.php?f=4&q={searchTerms}&a=vst_wnzp01_15_01_ch&cd=2XzuyEtN2Y1L1Qzu0D0CtD0E0AtCtD0B0FtCyDtB0AtDzz0BtN0D0Tzu0StCtDzyyCtN1L2XzutAtFyCtFtCyCtFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StBtDtDtCtAyByC0EtG0EtDtC0DtGyC0A0CzztGyB0EtD0FtGtAyCyD0E0CzytCyE0BzzyDzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyByBtAtD0AyDzytG0E0B0ByCtGyEyDzzzytG0BtAyBzytGtByCyDtBzytDyDzyzy0Ezz0B2Q&cr=832639186&ir=
BHO: DataMngr -> {F2D6C718-7E52-428E-8852-365C4B1A6E36} -> C:\PROGRA~2\SETTIN~1\Datamngr\x64\BROWSE~1.DLL No File
BHO-x32: Coupon-Matcher BHO -> {F0B3FA34-C3B2-4B72-B8FE-A4148C2FA663} -> C:\Program Files (x86)\CouponMatcher\1.1\Extension.dll (Coupon-Matcher)
BHO-x32: DataMngr -> {F2D6C718-7E52-428E-8852-365C4B1A6E36} -> C:\PROGRA~2\SETTIN~1\Datamngr\BROWSE~1.DLL No File
Toolbar: HKLM-x32 - Coupon-Matcher - {AC5183D8-28A9-4A36-850D-8C8846855EED} - C:\Program Files (x86)\CouponMatcher\1.1\Extension.dll (Coupon-Matcher)
FF DefaultSearchEngine: Vosteran
FF SearchEngineOrder.1: Secure Search
FF SelectedSearchEngine: Vosteran
FF Homepage: hxxp://Vosteran.com/?f=1&a=vst_wnzp01_15_01_ch&cd=2XzuyEtN2Y1L1Qzu0D0CtD0E0AtCtD0B0FtCyDtB0AtDzz0BtN0D0Tzu0StCtDzyyCtN1L2XzutAtFyCtFtCyCtFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StBtDtDtCtAyByC0EtG0EtDtC0DtGyC0A0CzztGyB0EtD0FtGtAyCyD0E0CzytCyE0BzzyDzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyByBtAtD0AyDzytG0E0B0ByCtGyEyDzzzytG0BtAyBzytGtByCyDtBzytDyDzyzy0Ezz0B2Q&cr=832639186&ir=
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin HKU\S-1-5-21-4059772642-3558261170-1923146660-1000: CouponNetwork.com/CMDUniversalCouponPrintActivator -> C:\Users\Owner\AppData\Roaming\CATALI~2\NPBCSK~1.DLL (Catalina Marketing Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll (Coupons, Inc.)
FF SearchPlugin: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\Vosteran.xml
FF SearchPlugin: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\WebSearch.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Coupon-Matcher - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\Extensions\{71988F2A-67DE-4A7F-B20F-B6D0CF8469AF}.xpi [2013-07-28]
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Extension: (Always Smile) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpaapignoneonaghhkoddkghglbppdmg [2014-04-26]
CHR Extension: (AmazonSmile 1Button for Chrome) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdgenjhkjihnmigcommchefpajjhdmba [2014-05-23]
CHR Extension: (Smile Always) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgpmhnmjbhgkhpbgelalfpplebgfjmbf [2014-07-23]
CHR Extension: (SecureSearch) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfffjahnfbocnaooecgijfnbpcfekoik [2013-03-02]
CHR Extension: (SecureSearch) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfffjahnfbocnaooecgijfnbpcfekoik [2013-03-02]
CHR HKLM\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - No Path
CHR HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - No Path
CHR HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - No Path
CHR HKLM-x32\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - No Path
CustomCLSID: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Owner\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Owner\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Owner\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Owner\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
Task: {051CEA54-8D24-4946-A226-F9D21C6D560A} - System32\Tasks\{BE04F1BF-4444-4EDD-9C22-484D8F606CB2} => pcalua.exe -a "C:\Users\Owner\Downloads\ActiveSetupN (1).exe" -d C:\Users\Owner\Downloads
Task: {9D75A068-5838-49B7-BECC-52ABF24BA89D} - System32\Tasks\WSE_Vosteran => C:\Users\Owner\AppData\Roaming\WSE_Vosteran\UpdateProc\UpdateTask.exe [2015-01-01] () <==== ATTENTION
Task: C:\Windows\Tasks\WSE_Vosteran.job => C:\Users\Owner\AppData\Roaming\WSE_VO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
C:\ProgramData\Search Protection
C:\PROGRA~2\SETTIN~1\Datamngr
C:\Program Files (x86)\CouponMatcher
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\user.js
C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\Vosteran.xml
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\WebSearch.xml
C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\Extensions\{71988F2A-67DE-4A7F-B20F-B6D0CF8469AF}.xpi
C:\Users\Owner\AppData\Roaming\WSE_Vosteran
2015-01-01 20:49 - 2015-01-01 20:49 - 00000000 ____D () C:\Program Files\20130918085301786
2015-01-01 20:47 - 2015-01-01 20:49 - 02602967 _____ () C:\Users\Owner\Downloads\20130918085301786 (1).rar
2015-01-01 20:46 - 2015-01-01 20:46 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\IHlpr
2015-01-01 20:45 - 2015-01-01 20:59 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\Philipp Winterberg
2015-01-01 20:45 - 2015-01-01 20:45 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\OpenCandy
2015-01-01 20:44 - 2015-01-01 20:44 - 01450496 _____ (Philipp Winterberg) C:\Users\Owner\Downloads\InstallFreeRARExtractFrog (1).exe
2015-01-01 20:41 - 2015-01-01 20:41 - 01450496 _____ (Philipp Winterberg) C:\Users\Owner\Downloads\InstallFreeRARExtractFrog.exe
2015-01-01 20:40 - 2015-01-23 07:40 - 00000292 _____ () C:\Windows\Tasks\WSE_Vosteran.job
2015-01-01 20:40 - 2015-01-01 20:40 - 00003232 _____ () C:\Windows\System32\Tasks\WSE_Vosteran
2015-01-01 20:40 - 2015-01-01 20:40 - 00000000 ____D () C:\Users\Owner\AppData\Roaming\WSE_Vosteran
2015-01-01 20:40 - 2015-01-01 20:40 - 00000000 ____D () C:\Program Files (x86)\WSE_Vosteran
2015-01-01 13:13 - 2015-01-01 13:14 - 02602967 _____ () C:\Users\Owner\Downloads\20130918085301786.rar
2013-11-18 13:20 - 2013-11-18 13:20 - 0893239 _____ () C:\Users\Owner\AppData\Local\a.zip
2013-11-18 13:20 - 2013-11-18 13:20 - 2162416 _____ (Catalina Marketing Corp) C:\Users\Owner\AppData\Local\BcsKtYcHW.dll
C:\Users\Owner\AppData\Local\Temp\2aa3848c-c8c9-4bb6-b697-b1e0fea1633b.exe
C:\Users\Owner\AppData\Local\Temp\BundleSweetIMSetup.exe
C:\Users\Owner\AppData\Local\Temp\contentDATs.exe
C:\Users\Owner\AppData\Local\Temp\CouponMatcher.exe
C:\Users\Owner\AppData\Local\Temp\EasyTorrent.exe
C:\Users\Owner\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\Owner\AppData\Local\Temp\GUR46F3.exe
C:\Users\Owner\AppData\Local\Temp\installhelper.dll
C:\Users\Owner\AppData\Local\Temp\install_flashplayer11x32au_mssa_aaa_aih.exe
C:\Users\Owner\AppData\Local\Temp\install_flashplayer11x32ax_mssd_au_aih.exe
C:\Users\Owner\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe
C:\Users\Owner\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\Owner\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe
C:\Users\Owner\AppData\Local\Temp\mssinstaller.exe
C:\Users\Owner\AppData\Local\Temp\MybabylonTB.exe
C:\Users\Owner\AppData\Local\Temp\propsys.dll
C:\Users\Owner\AppData\Local\Temp\SecurityScan_Release.exe
C:\Users\Owner\AppData\Local\Temp\setup_3.2.20.exe
C:\Users\Owner\AppData\Local\Temp\SRAssetsHelper.dll
Reboot:
end
*****************
Restore point was successfully created.
Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SearchProtection => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DATAMNGR => Value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b45a83b0-7c3f-11e4-8842-dc0ea10bf152}" => Key deleted successfully.
HKCR\CLSID\{b45a83b0-7c3f-11e4-8842-dc0ea10bf152} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b45a83bc-7c3f-11e4-8842-dc0ea10bf152}" => Key deleted successfully.
HKCR\CLSID\{b45a83bc-7c3f-11e4-8842-dc0ea10bf152} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c177cc3d-e58c-11e2-8463-dc0ea10bf152}" => Key deleted successfully.
HKCR\CLSID\{c177cc3d-e58c-11e2-8463-dc0ea10bf152} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d61f72ac-be1c-11e1-877b-dc0ea10bf152}" => Key deleted successfully.
HKCR\CLSID\{d61f72ac-be1c-11e1-877b-dc0ea10bf152} => Key not found.
"C:\PROGRA~2\SETTIN~1\Datamngr\x64\datamngr.dll" => Value Data not found.
"C:\PROGRA~2\SETTIN~1\Datamngr\x64\IEBHO.dll" => Value Data not found.
"C:\PROGRA~2\SETTIN~1\Datamngr\datamngr.dll" => Value Data not found.
"C:\PROGRA~2\SETTIN~1\Datamngr\IEBHO.dll" => Value Data not found.
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2440}" => Key deleted successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}" => Key deleted successfully.
HKCR\CLSID\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2440}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} => Key not found.
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0FA204D4-5326-43C7-A4D2-EDFB78E6EA59}" => Key deleted successfully.
HKCR\CLSID\{0FA204D4-5326-43C7-A4D2-EDFB78E6EA59} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}" => Key deleted successfully.
HKCR\CLSID\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2440}" => Key deleted successfully.
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2440} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}" => Key deleted successfully.
HKCR\CLSID\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} => Key not found.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C8DF3399-DD58-4208-A75D-0F9F36E73FC5}" => Key deleted successfully.
HKCR\CLSID\{C8DF3399-DD58-4208-A75D-0F9F36E73FC5} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2D6C718-7E52-428E-8852-365C4B1A6E36}" => Key deleted successfully.
"HKCR\CLSID\{F2D6C718-7E52-428E-8852-365C4B1A6E36}" => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0B3FA34-C3B2-4B72-B8FE-A4148C2FA663} => Key not found.
HKCR\Wow6432Node\CLSID\{F0B3FA34-C3B2-4B72-B8FE-A4148C2FA663} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2D6C718-7E52-428E-8852-365C4B1A6E36}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{F2D6C718-7E52-428E-8852-365C4B1A6E36}" => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{AC5183D8-28A9-4A36-850D-8C8846855EED} => Value not found.
HKCR\Wow6432Node\CLSID\{AC5183D8-28A9-4A36-850D-8C8846855EED} => Key not found.
Firefox DefaultSearchEngine deleted successfully.
Firefox SearchEngineOrder.1 deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
Firefox homepage deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\Software\MozillaPlugins\CouponNetwork.com/CMDUniversalCouponPrintActivator => Key not found.
C:\Users\Owner\AppData\Roaming\CATALI~2\NPBCSK~1.DLL not found.
"C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll" => not found.
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\Vosteran.xml => Moved successfully.
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\WebSearch.xml => Moved successfully.
C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml => Moved successfully.
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\Extensions\{71988F2A-67DE-4A7F-B20F-B6D0CF8469AF}.xpi => Moved successfully.
Chrome DefaultSuggestURL deleted successfully.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpaapignoneonaghhkoddkghglbppdmg => Moved successfully.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdgenjhkjihnmigcommchefpajjhdmba => Moved successfully.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgpmhnmjbhgkhpbgelalfpplebgfjmbf => Moved successfully.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfffjahnfbocnaooecgijfnbpcfekoik directory not found.
C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lfffjahnfbocnaooecgijfnbpcfekoik directory not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce" => Key deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh" => Key deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000\SOFTWARE\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\oilkkkefbalmbfppgjmgjoefbclebkce" => Key deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}" => Key deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}" => Key deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}" => Key deleted successfully.
"HKU\S-1-5-21-4059772642-3558261170-1923146660-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{051CEA54-8D24-4946-A226-F9D21C6D560A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{051CEA54-8D24-4946-A226-F9D21C6D560A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{BE04F1BF-4444-4EDD-9C22-484D8F606CB2} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BE04F1BF-4444-4EDD-9C22-484D8F606CB2}" => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D75A068-5838-49B7-BECC-52ABF24BA89D} => Key not found.
C:\Windows\System32\Tasks\WSE_Vosteran not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WSE_Vosteran => Key not found.
C:\Windows\Tasks\WSE_Vosteran.job not found.
"C:\ProgramData\Search Protection" => File/Directory not found.
"C:\PROGRA~2\SETTIN~1\Datamngr" => File/Directory not found.
C:\Program Files (x86)\CouponMatcher => Moved successfully.
C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\user.js => Moved successfully.
"C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll" => File/Directory not found.
"C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\Vosteran.xml" => File/Directory not found.
"C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\searchplugins\WebSearch.xml" => File/Directory not found.
"C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml" => File/Directory not found.
"C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\sjp3f2y6.default\Extensions\{71988F2A-67DE-4A7F-B20F-B6D0CF8469AF}.xpi" => File/Directory not found.
C:\Users\Owner\AppData\Roaming\WSE_Vosteran => Moved successfully.
C:\Program Files\20130918085301786 => Moved successfully.
C:\Users\Owner\Downloads\20130918085301786 (1).rar => Moved successfully.
C:\Users\Owner\AppData\Roaming\IHlpr => Moved successfully.
C:\Users\Owner\AppData\Roaming\Philipp Winterberg => Moved successfully.
C:\Users\Owner\AppData\Roaming\OpenCandy => Moved successfully.
C:\Users\Owner\Downloads\InstallFreeRARExtractFrog (1).exe => Moved successfully.
C:\Users\Owner\Downloads\InstallFreeRARExtractFrog.exe => Moved successfully.
"C:\Windows\Tasks\WSE_Vosteran.job" => File/Directory not found.
"C:\Windows\System32\Tasks\WSE_Vosteran" => File/Directory not found.
"C:\Users\Owner\AppData\Roaming\WSE_Vosteran" => File/Directory not found.
"C:\Program Files (x86)\WSE_Vosteran" => File/Directory not found.
C:\Users\Owner\Downloads\20130918085301786.rar => Moved successfully.
"C:\Users\Owner\AppData\Local\a.zip" => File/Directory not found.
"C:\Users\Owner\AppData\Local\BcsKtYcHW.dll" => File/Directory not found.
C:\Users\Owner\AppData\Local\Temp\2aa3848c-c8c9-4bb6-b697-b1e0fea1633b.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\BundleSweetIMSetup.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\contentDATs.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\CouponMatcher.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\EasyTorrent.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\fp_pl_pfs_installer.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\GUR46F3.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\installhelper.dll => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\install_flashplayer11x32au_mssa_aaa_aih.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\install_flashplayer11x32ax_mssd_au_aih.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\mssinstaller.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\MybabylonTB.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\propsys.dll => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\SecurityScan_Release.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\setup_3.2.20.exe => Moved successfully.
C:\Users\Owner\AppData\Local\Temp\SRAssetsHelper.dll => Moved successfully.
The system needed a reboot.
==== End of Fixlog 15:14:03 ====