Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 07-09-2014 01 Ran by milenka21 at 2014-09-10 23:09:27 Run:3 Running from D:\ Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-08-18] (globalUpdate) [File not signed] S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-08-18] (globalUpdate) [File not signed] S4 LPTSystemUpdater; C:\Program Files (x86)\LPT\srpts.exe [32888 2014-08-13] () [File not signed] R2 Update findopolis; C:\Program Files (x86)\findopolis\updatefindopolis.exe [323360 2014-09-09] () R2 Util findopolis; C:\Program Files (x86)\findopolis\bin\utilfindopolis.exe [323360 2014-09-09] () R1 {c486bc7a-4f2c-4a8b-ac38-4952f70809b9}Gw64; C:\Windows\System32\drivers\{c486bc7a-4f2c-4a8b-ac38-4952f70809b9}Gw64.sys [61120 2014-08-18] (StdLib) R2 webinstr; C:\Windows\system32\Drivers\webinstr.sys [57528 2014-07-16] (Corsica) Task: {115C1490-59CB-46C5-B06B-170008017D09} - System32\Tasks\5cb7818a-addc-49b2-b2ac-91eafe086181 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-4.exe [2014-08-18] (enter) <==== ATTENTION Task: {1C5DAD2E-2F71-42D6-8D7D-02603A7BE4CD} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-08-18] (globalUpdate) <==== ATTENTION Task: {20DE40E6-92B7-4019-BC67-F80C1B131298} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-5.exe [2014-08-18] (enter) <==== ATTENTION Task: {3D64E427-F1BE-4D17-B9F1-FBFBD4A1B94B} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-11 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-11.exe [2014-08-18] (enter) <==== ATTENTION Task: {5C0F58F5-786C-4E79-9FDA-9D29D205F3EE} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-6 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-6.exe [2014-08-18] (enter) <==== ATTENTION Task: {6A3D1ADE-0D34-4BC2-B27D-60860DA5BD0F} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5_user => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-5.exe [2014-08-18] (enter) <==== ATTENTION Task: {80F96EB9-A441-42EB-819E-CF3590DB57B5} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-7 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-7.exe [2014-08-18] (enter) <==== ATTENTION Task: {9FEF3C04-A593-4E3F-BA91-4922F935B6F1} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-2 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-2.exe [2014-08-18] (enter) <==== ATTENTION Task: {E2430F77-50EB-4A4B-9072-FE492AB0B1C7} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-3 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-3.exe [2014-08-18] (enter) <==== ATTENTION Task: {E4477EA1-6C4A-4383-BED2-4914654B2EC6} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe Task: {EDB06FB0-C9F2-4180-B707-60D1FD076BEB} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-1 => C:\Program Files (x86)\videos MediaPlay-Air\videos MediaPlay-Air-codedownloader.exe [2014-08-18] (enter) <==== ATTENTION Task: {FD09CBDD-A8AE-4ABA-ACBB-BFCBD97889A6} - System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-4 => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-4.exe [2014-08-18] (enter) <==== ATTENTION Task: C:\Windows\Tasks\5cb7818a-addc-49b2-b2ac-91eafe086181.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-4.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-1.job => C:\Program Files (x86)\videos MediaPlay-Air\videos MediaPlay-Air-codedownloader.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-11.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-11.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-2.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-2.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-3.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-3.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-4.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-4.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-5.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5_user.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-5.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-6.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-6.exe¼/agentregpath='videos MediaPlay-Air-nv' /appid=61799 /srcid='001673' /subid='verticals-ads,intext,pops,shopping' /zdata='0' /bic=8CA2DE43D94D49189C1A4DF470B31AD8IE /verifier=c7bcdbc4eef78df6d9eaaecb44474f4f /installerversion=1_34_08_12 /installerfullversion=1.34.8.12 /installationtime=1408371506 /statsdomain=http://stats.inputdatacloud.com /errorsdomain=http://errors.inputdatacloud.com /codedownloaddomain=http://js.inputdatacloud.com /defbro=ch /DllName32ToInjectToChrome='3d5c382a-d0f7-4612-a315-79328f81fd70.dll' /DllName64ToInjectToChrome='bacf4676-8944-4c72-957c-c45715a1f249.dll' /nova64bitexe='6d581fee-66a6-4ea4-a87e-d36565ead186-64.exe Task: C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-7.job => C:\Program Files (x86)\videos MediaPlay-Air\6d581fee-66a6-4ea4-a87e-d36565ead186-7.exeÖ/updateapp /agentregpath='videos MediaPlay-Air-nv' /appid=61799 /srcid='001673' /subid='verticals-ads,intext,pops,shopping' /zdata='0' /bic=8CA2DE43D94D49189C1A4DF470B31AD8IE /verifier=c7bcdbc4eef78df6d9eaaecb44474f4f /installerversion=1_34_08_12 /installerfullversion=1.34.8.12 /installationtime=1408371506 /statsdomain=http://stats.inputdatacloud.com /errorsdomain=http://errors.inputdatacloud.com /codedownloaddomain=http://js.inputdatacloud.com /defbro=ch /DllName32ToInjectToChrome='3d5c382a-d0f7-4612-a315-79328f81fd70.dll' /DllName64ToInjectToChrome='bacf4676-8944-4c72-957c-c45715a1f249.dll' /nova64bitexe='6d581fee-66a6-4ea4-a87e-d36565ead186-64.exe Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION HKLM-x32\...\Run: [BlockAndSurf] => C:\Program Files (x86)\ver3BlockAndSurf\BlockAndSurf.exe [121856 2014-08-18] () HKLM-x32\...\Run: [AnyProtect Scanner] => "C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe" Winlogon\Notify\klogon: %SystemRoot%\System32\klogon.dll [X] Startup: C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DesktopWeatherAlerts.lnk Startup: C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Weather Alerts.lnk GroupPolicy: Group Policy on Chrome detected <======= ATTENTION HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://feed.safefinder.com/?p=mKO_AwFzXIpYRak5VLd2-qQdkN5729vVFWxou9hoxpME1_IVPTybtgShexzpRr66pOJWG6fRkD4bmtni_Hc9jp42b43noJKIRct2AfQeyZyBqmXO1SUERdQC-m5NdR0yHyQtTstQE5qkLX4373Ryqd0rtwtsCNNn3KiIf0O9D1FDOYDRy3amj71xE78zNuVJZ26Or5ZM8A,,&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://groovorio.com/?f=1&a=grv_tuto1_14_30&cd=2XzuyEtN2Y1L1Qzuzzzz0A0EtC0DtA0FtDyEzytCtA0B0CtBtN0D0Tzu0SzyyCtBtN1L2XzutBtFtBtCtFtCzztFtAtN1L1Czu1N1C2X1V2Z2Y2Z1FtC1VtCyE1VtAtDtN1L1G1B1V1N2Y1L1Qzu2StD0AtBtDtB0EtCyDtG0C0EtC0FtGtDzy0A0FtGtAyDyEtCtGtBzytDyD0AyC0C0BzytB0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCyByByByD0ByCzytGyE0FzzyCtG0CyBtByBtGyC0DyB0CtGtByDtDtAzytD0D0FtByDzztC2Q&cr=784297013&ir= HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istart123.com/?type=hp&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://feed.safefinder.com/?p=mKO_AwFzXIpYRak5VLd2-qQdkN5729vVFWxou9hoxpME1_IVPTybtgShexzpRr66pOJWG6fRkD4bmtni_Hc9jp42b43noJKIRct2AfQeyZyBqmXO1SUERdQC-m5NdR0yHyQtTstQE5qkLX4373Ryqd0rtwtsCNNn3KiIf0O9D1FDOYDRy3amj71xE78zNuVJZ26Or5ZM8A,,&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istart123.com/?type=hp&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istart123.com/?type=hp&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istart123.com/?type=hp&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.istart123.com/?type=hp&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} SearchScopes: HKLM - {CC865B26-C31D-4D23-B17B-96548EEF03F6} URL = SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://feed.safefinder.com/?p=mKO_AwFzXIpYRak5VLd2-qQdkN5729vVFWxou9hoxpME1_IVPTybtgShexzpRr66pOJWG6fRkD4bmtni_Hc9jp42b43noJKIRct2AfQeyZyBqmXO1SUERdQC-m5NdR0yHyQtTstQE5qkLX4373Ryqd0rtwtsCNNn3KiIf0O9D1FDOYDRy3amj71xE78zNuVJZ26Or5ZM8A,,&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://feed.safefinder.com/?p=mKO_AwFzXIpYRak5VLd2-qQdkN5729vVFWxou9hoxpME1_IVPTybtgShexzpRr66pOJWG6fRkD4bmtni_Hc9jp42b43noJKIRct2AfQeyZyBqmXO1SUERdQC-m5NdR0yHyQtTstQE5qkLX4373Ryqd0rtwtsCNNn3KiIf0O9D1FDOYDRy3amj71xE78zNuVJZ26Or5ZM8A,,&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} SearchScopes: HKCU - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://groovorio.com/results.php?f=4&q={searchTerms}&a=grv_tuto1_14_30&cd=2XzuyEtN2Y1L1Qzuzzzz0A0EtC0DtA0FtDyEzytCtA0B0CtBtN0D0Tzu0SzyyCtBtN1L2XzutBtFtBtCtFtCzztFtAtN1L1Czu1N1C2X1V2Z2Y2Z1FtC1VtCyE1VtAtDtN1L1G1B1V1N2Y1L1Qzu2StD0AtBtDtB0EtCyDtG0C0EtC0FtGtDzy0A0FtGtAyDyEtCtGtBzytDyD0AyC0C0BzytB0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCyByByByD0ByCzytGyE0FzzyCtG0CyBtByBtGyC0DyB0CtGtByDtDtAzytD0D0FtByDzztC2Q&cr=784297013&ir= SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = http://groovorio.com/results.php?f=4&q={searchTerms}&a=grv_tuto1_14_30&cd=2XzuyEtN2Y1L1Qzuzzzz0A0EtC0DtA0FtDyEzytCtA0B0CtBtN0D0Tzu0SzyyCtBtN1L2XzutBtFtBtCtFtCzztFtAtN1L1Czu1N1C2X1V2Z2Y2Z1FtC1VtCyE1VtAtDtN1L1G1B1V1N2Y1L1Qzu2StD0AtBtDtB0EtCyDtG0C0EtC0FtGtDzy0A0FtGtAyDyEtCtGtBzytDyD0AyC0C0BzytB0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCyByByByD0ByCzytGyE0FzzyCtG0CyBtByBtGyC0DyB0CtGtByDtDtAzytD0D0FtByDzztC2Q&cr=784297013&ir= SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istart123.com/web/?type=ds&ts=1408371514&from=tugs&uid=TOSHIBAXMK3265GSX_30SFF102SXX30SFF102S&q={searchTerms} SearchScopes: HKCU - {E39CB8DF-F421-4950-A3E7-D000FA76C164} URL = http://feed.safefinder.com/?p=mKO_AwFzXIpYRak5VLd2-qQdkN5729vVFWxou9hoxpME1_IVPTybtgShexzpRr66pOJWG6fRkD4bmtni_Hc9jp42b43noJKIRct2AfQeyZyBqmXO1SUERdQC-m5NdR0yHyQtTstQE5qkLX4373Ryqd0rtwtsCNNn3KiIf0O9D1FDOYDRy3amj71xE78zNuVJZ26Or5ZM8A,,&q={searchTerms} BHO: videos MediaPlay-Air -> {11111111-1111-1111-1111-110611171199} -> C:\Program Files (x86)\videos MediaPlay-Air\videos MediaPlay-Air-bho64.dll (enter) BHO: SafeFinder SmartbarEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: BlockAndSurf -> {C22E1917-A32D-DCC8-4EC4-919BA8DF9D8A} -> C:\Program Files (x86)\ver3BlockAndSurf\177_x64.dll () BHO-x32: videos MediaPlay-Air -> {11111111-1111-1111-1111-110611171199} -> C:\Program Files (x86)\videos MediaPlay-Air\videos MediaPlay-Air-bho.dll (enter) BHO-x32: SafeFinder SmartbarEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited) BHO-x32: BlockAndSurf -> {C22E1917-A32D-DCC8-4EC4-919BA8DF9D8A} -> C:\Program Files (x86)\ver3BlockAndSurf\177.dll () BHO-x32: findopolis -> {ccfd8427-0c44-4b91-abbb-d6aa65f7d2a1} -> C:\Program Files (x86)\findopolis\findopolisbho.dll (findopolis) Toolbar: HKLM - SafeFinder Smartbar - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - SafeFinder Smartbar - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF HKCU\...\Firefox\Extensions: [{6AB830C7-31B7-EBDB-1936-993285547942}] - C:\Program Files (x86)\ver3BlockAndSurf\177.xpi CHR StartupUrls: Default -> "hxxp://groovorio.com/?f=7&a=grv_tuto1_14_30&cd=2XzuyEtN2Y1L1Qzuzzzz0A0EtC0DtA0FtDyEzytCtA0B0CtBtN0D0Tzu0SzyyCtBtN1L2XzutBtFtBtCtFtCzztFtAtN1L1Czu1N1C2X1V2Z2Y2Z1FtC1VtCyE1VtAtDtN1L1G1B1V1N2Y1L1Qzu2StD0AtBtDtB0EtCyDtG0C0EtC0FtGtDzy0A0FtGtAyDyEtCtGtBzytDyD0AyC0C0BzytB0FtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCyByByByD0ByCzytGyE0FzzyCtG0CyBtByBtGyC0DyB0CtGtByDtDtAzytD0D0FtByDzztC2Q&cr=784297013&ir=", "hxxp://uk.msn.com/?pc=UP97&ocid=UP97DHP", "hxxp://feed.safefinder.com/?p=mKO_AwFzXIpYRak5VLd2-qQdkN5729vVFWxou9hoxpME1_IVPTybtgShexzpRr66pOJWG6fRkD4bmtni_Hc9jp42b43noJKIRct2AfQeyZyBqmXO1SUERdgGzpt1s-fLIyiaJWdtI7XMpBcswGzwvxvWnFnlje5hSMRC2cNRI37wFX0qfQcToDImR7N39ecmrXPJQfh-Cg," CHR HKLM-x32\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\milenka21\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-08-18] C:\END C:\Program Files (x86)\AskPartnerNetwork C:\Program Files (x86)\globalUpdate C:\Program Files (x86)\Optimizer Pro C:\Program Files (x86)\ver3BlockAndSurf C:\ProgramData\374311380 C:\ProgramData\APN C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FREESOFTTODAY C:\ProgramData\TEMP C:\Users\Administrator\Downloads\New_Player.exe C:\Users\Administrator\Downloads\Setup.exe C:\Users\milenka21\AppData\Local\*.tmp C:\Users\milenka21\AppData\Local\globalUpdate C:\Users\milenka21\AppData\Roaming\aps.uninstall.scan.results C:\Users\milenka21\AppData\Roaming\Mozilla C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Weather Alerts C:\Users\milenka21\Documents\Optimizer Pro C:\Users\milenka21\Downloads\Java*.exe C:\Users\milenka21\Downloads\jxpiinstall*.exe C:\Users\milenka21\Downloads\PCHealthBoost-Setup.exe C:\Users\milenka21\Downloads\tamsp_180806290435012771.exe C:\Users\milenka21\Downloads\TorpedoSetup.exe C:\Users\milenka21\Downloads\videoperformerSetup.exe C:\Windows\system32\Drivers\{c486bc7a-4f2c-4a8b-ac38-4952f70809b9}Gw64.sys C:\Windows\system32\Drivers\webinstr.sys C:\Windows\SysWOW64\GroupPolicy\GPT.INI Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\AboutURLs" /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\Search" /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\SearchURI" /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\SearchUrl" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchURI" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl" /f Reg: reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\AboutURLs" /f Reg: reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search" /f Reg: reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI" /f Reg: reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl" /f Reg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchURI" /f Reg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchUrl" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\My Web Search Bar Search Scope Monitor" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyWebSearch Email Plugin" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ROC_roc_ssl_v12" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SiteRanker" /f ***************** Processes closed successfully. globalUpdate => Service deleted successfully. globalUpdatem => Service deleted successfully. LPTSystemUpdater => Service deleted successfully. Update findopolis => Service deleted successfully. Util findopolis => Service deleted successfully. {c486bc7a-4f2c-4a8b-ac38-4952f70809b9}Gw64 => Service stopped successfully. {c486bc7a-4f2c-4a8b-ac38-4952f70809b9}Gw64 => Service deleted successfully. webinstr => Service stopped successfully. webinstr => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{115C1490-59CB-46C5-B06B-170008017D09}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{115C1490-59CB-46C5-B06B-170008017D09}" => Key deleted successfully. C:\Windows\System32\Tasks\5cb7818a-addc-49b2-b2ac-91eafe086181 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\5cb7818a-addc-49b2-b2ac-91eafe086181" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1C5DAD2E-2F71-42D6-8D7D-02603A7BE4CD}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C5DAD2E-2F71-42D6-8D7D-02603A7BE4CD}" => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{20DE40E6-92B7-4019-BC67-F80C1B131298}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{20DE40E6-92B7-4019-BC67-F80C1B131298}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3D64E427-F1BE-4D17-B9F1-FBFBD4A1B94B}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3D64E427-F1BE-4D17-B9F1-FBFBD4A1B94B}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-11 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-11" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5C0F58F5-786C-4E79-9FDA-9D29D205F3EE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C0F58F5-786C-4E79-9FDA-9D29D205F3EE}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-6 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6A3D1ADE-0D34-4BC2-B27D-60860DA5BD0F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A3D1ADE-0D34-4BC2-B27D-60860DA5BD0F}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5_user => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-5_user" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{80F96EB9-A441-42EB-819E-CF3590DB57B5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{80F96EB9-A441-42EB-819E-CF3590DB57B5}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-7 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9FEF3C04-A593-4E3F-BA91-4922F935B6F1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9FEF3C04-A593-4E3F-BA91-4922F935B6F1}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-2 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E2430F77-50EB-4A4B-9072-FE492AB0B1C7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2430F77-50EB-4A4B-9072-FE492AB0B1C7}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-3 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-3" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E4477EA1-6C4A-4383-BED2-4914654B2EC6}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4477EA1-6C4A-4383-BED2-4914654B2EC6}" => Key deleted successfully. C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Run RoboForm TaskBar Icon" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EDB06FB0-C9F2-4180-B707-60D1FD076BEB}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EDB06FB0-C9F2-4180-B707-60D1FD076BEB}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-1 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FD09CBDD-A8AE-4ABA-ACBB-BFCBD97889A6}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD09CBDD-A8AE-4ABA-ACBB-BFCBD97889A6}" => Key deleted successfully. C:\Windows\System32\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-4 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6d581fee-66a6-4ea4-a87e-d36565ead186-4" => Key deleted successfully. C:\Windows\Tasks\5cb7818a-addc-49b2-b2ac-91eafe086181.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-1.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-11.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-2.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-3.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-4.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-5_user.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-6.job => Moved successfully. C:\Windows\Tasks\6d581fee-66a6-4ea4-a87e-d36565ead186-7.job => Moved successfully. C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\BlockAndSurf => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AnyProtect Scanner => value deleted successfully. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon" => Key deleted successfully. C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DesktopWeatherAlerts.lnk => Moved successfully. C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Weather Alerts.lnk => Moved successfully. C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CC865B26-C31D-4D23-B17B-96548EEF03F6}" => Key deleted successfully. "HKCR\CLSID\{CC865B26-C31D-4D23-B17B-96548EEF03F6}" => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{006ee092-9658-4fd6-bd8e-a21a348e59f5}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}" => Key deleted successfully. "HKCR\CLSID\{006ee092-9658-4fd6-bd8e-a21a348e59f5}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E39CB8DF-F421-4950-A3E7-D000FA76C164}" => Key deleted successfully. "HKCR\CLSID\{E39CB8DF-F421-4950-A3E7-D000FA76C164}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171199}" => Key deleted successfully. "HKCR\CLSID\{11111111-1111-1111-1111-110611171199}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}" => Key deleted successfully. "HKCR\CLSID\{31ad400d-1b06-4e33-a59a-90c2c140cba0}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C22E1917-A32D-DCC8-4EC4-919BA8DF9D8A}" => Key deleted successfully. "HKCR\CLSID\{C22E1917-A32D-DCC8-4EC4-919BA8DF9D8A}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110611171199}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{11111111-1111-1111-1111-110611171199}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{31ad400d-1b06-4e33-a59a-90c2c140cba0}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C22E1917-A32D-DCC8-4EC4-919BA8DF9D8A}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{C22E1917-A32D-DCC8-4EC4-919BA8DF9D8A}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ccfd8427-0c44-4b91-abbb-d6aa65f7d2a1}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{ccfd8427-0c44-4b91-abbb-d6aa65f7d2a1}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => value deleted successfully. "HKCR\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => value deleted successfully. "HKCR\Wow6432Node\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10" => Key deleted successfully. C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll => Moved successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4" => Key deleted successfully. C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll not found. HKCU\Software\Mozilla\Firefox\Extensions\\{6AB830C7-31B7-EBDB-1936-993285547942} => value deleted successfully. Chrome StartupUrls deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma" => Key deleted successfully. C:\Users\milenka21\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx => Moved successfully. C:\END => Moved successfully. C:\Program Files (x86)\AskPartnerNetwork => Moved successfully. C:\Program Files (x86)\globalUpdate => Moved successfully. C:\Program Files (x86)\Optimizer Pro => Moved successfully. C:\Program Files (x86)\ver3BlockAndSurf => Moved successfully. C:\ProgramData\374311380 => Moved successfully. C:\ProgramData\APN => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FREESOFTTODAY => Moved successfully. C:\ProgramData\TEMP => Moved successfully. C:\Users\Administrator\Downloads\New_Player.exe => Moved successfully. C:\Users\Administrator\Downloads\Setup.exe => Moved successfully. C:\Users\milenka21\AppData\Local\*.tmp => Moved successfully. C:\Users\milenka21\AppData\Local\globalUpdate => Moved successfully. C:\Users\milenka21\AppData\Roaming\aps.uninstall.scan.results => Moved successfully. C:\Users\milenka21\AppData\Roaming\Mozilla => Moved successfully. C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk => Moved successfully. C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage => Moved successfully. C:\Users\milenka21\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Weather Alerts => Moved successfully. C:\Users\milenka21\Documents\Optimizer Pro => Moved successfully. C:\Users\milenka21\Downloads\Java*.exe => Moved successfully. C:\Users\milenka21\Downloads\jxpiinstall*.exe => Moved successfully. C:\Users\milenka21\Downloads\PCHealthBoost-Setup.exe => Moved successfully. C:\Users\milenka21\Downloads\tamsp_180806290435012771.exe => Moved successfully. C:\Users\milenka21\Downloads\TorpedoSetup.exe => Moved successfully. C:\Users\milenka21\Downloads\videoperformerSetup.exe => Moved successfully. C:\Windows\system32\Drivers\{c486bc7a-4f2c-4a8b-ac38-4952f70809b9}Gw64.sys => Moved successfully. C:\Windows\system32\Drivers\webinstr.sys => Moved successfully. C:\Windows\SysWOW64\GroupPolicy\GPT.INI => Moved successfully. ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\AboutURLs" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\Search" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\SearchURI" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\SearchUrl" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchURI" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\AboutURLs" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchURI" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchUrl" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\My Web Search Bar Search Scope Monitor" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MyWebSearch Email Plugin" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ROC_roc_ssl_v12" /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SiteRanker" /f ========= The operation completed successfully. ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====