Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 Ran by stan (2016-03-28 17:31:36) Run:1 Running from C:\Users\stan\Downloads Loaded Profiles: stan (Available Profiles: stan) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\...\Run: [BingSvc] => C:\Users\stan\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-29] (© 2015 Microsoft Corporation) HKLM-x32\...\Run: [] => [X] Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] BootExecute: autocheck autochk * sdnclean64.exe R2 win8gfore; C:\WINDOWS\system32\Drivers\win8gfore64.sys [44152 2015-07-14] (CodeWatch Tech) Task: {1342A886-F29C-4DAF-8723-1DEAB7EE7B9A} - System32\Tasks\GamerForest Updater => C:\Users\stan\AppData\Local\GamerForest\updater.exe [2015-08-25] (GamerForest) Task: {58E48A2C-7A4F-4C9D-A2E8-DEC3BD6E0941} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {5ABD0269-2C73-41F4-AEDB-AA2DA06868D4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {835E0373-83E0-45F0-9D28-80C55ECECF5A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {8DD37686-ED32-4360-90AF-C49DF6902383} - System32\Tasks\GamerForest Support => C:\Users\stan\AppData\Local\GamerForest\gfore_run.exe [2015-08-25] (GamerForest) Task: {905F7E86-77E7-4F9E-9A00-74C37F812B7B} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe Task: {91691E3A-B22B-4968-A324-23AE6068CFF1} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {9A4FE020-29D9-4426-9B59-79578BDB4F3A} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe Task: {A14F99F7-5978-4A94-BE70-0345FFFC97BB} - System32\Tasks\UpdateTask => C:\Users\stan\AppData\Local\{C341F~1\UNINST~1.EXE Task: {C3810534-A781-462D-86EF-8C5540D7FC9F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: C:\WINDOWS\Tasks\GamerForest Support.job => C:\Users\stan\AppData\Local\GAMERF~1\gfore_run.exe Task: C:\WINDOWS\Tasks\GamerForest Updater.job => C:\Users\stan\AppData\Local\GamerForest\updater.exe Task: C:\WINDOWS\Tasks\UpdateTask.job => C:\Users\stan\AppData\Local\{C341F~1\UNINST~1.EXE FirewallRules: [{33914543-F8E0-4BA8-8ECB-8D1DC263F103}] => (Allow) C:\Users\stan\AppData\Local\Chromium\Application\chrome.exe CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=pl-pl CHR DefaultSearchURL: Default -> hxxps://uk.search.yahoo.com/search?fr=mcafee&type=C211GB885D20151111&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://uk.search.yahoo.com/?fr=hp-ddc-bd&type=bl-bir-sw-rhb-36__alt__ddc_dsssyc_bd_com HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=SK2M&ocid=SK2MDHP&osmkt=en-ww SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://uk.search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bl-bir-sw-rhb-36__alt__ddc_dss_bd_com&p={searchTerms} SearchScopes: HKLM -> OldSearch URL = hxxp://uk.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_kmpswt_15_35¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dgb%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuzztBtCzytAyE0DtByD0DtAzyzy0A0E0CtN0D0Tzu0StCtAtAtBtN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SzzzytB0EtBzz0C0DtGyDyB0F0DtGyEyB0DtCtG0AyByCtBtG0E0EyByBzyyC0Fzy0DyEyDyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyByBzy0Azz0E0B0EtG0Czyzz0DtGyEyByEzztGzy0CtAzytGtAzytDtB0CyD0DyC0AyD0DyC2QtN0A0LzuyEtN1B2Z1V1T1S1NzuzyyEyE%26cr%3D632115577%26a%3Dwncy_kmpswt_15_35%26os%3DWindows%2B10%2BHome&p={searchTerms} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://uk.search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bl-bir-sw-rhb-36__alt__ddc_dss_bd_com&p={searchTerms} SearchScopes: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://uk.search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bl-bir-sw-rhb-36__alt__ddc_dss_bd_com&p={searchTerms} SearchScopes: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002 -> OldSearch URL = hxxp://uk.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_kmpswt_15_35¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dgb%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuzztBtCzytAyE0DtByD0DtAzyzy0A0E0CtN0D0Tzu0StCtAtAtBtN1L2XzutAtFtCtBtFyDtFtAtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SzzzytB0EtBzz0C0DtGyDyB0F0DtGyEyB0DtCtG0AyByCtBtG0E0EyByBzyyC0Fzy0DyEyDyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyByBzy0Azz0E0B0EtG0Czyzz0DtGyEyByEzztGzy0CtAzytGtAzytDtB0CyD0DyC0AyD0DyC2QtN0A0LzuyEtN1B2Z1V1T1S1NzuzyyEyE%26cr%3D632115577%26a%3Dwncy_kmpswt_15_35%26os%3DWindows%2B10%2BHome&p={searchTerms} SearchScopes: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002 -> {03CB0EE3-BEF8-4A9E-A33A-B469F11029F5} URL = hxxp://search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bl-bir-dd__alt__ddc_dss_bd_com&p={searchTerms} SearchScopes: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://uk.search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bl-bir-sw-rhb-36__alt__ddc_dss_bd_com&p={searchTerms} SearchScopes: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2831285199-3536826771-1048164271-1002 -> {39367A88-20F2-4007-88EE-4E7C745B4E6A} URL = hxxps://uk.search.yahoo.com/search?fr=mcafee&type=C011GB885D20150825&p={searchTerms} DeleteKey: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains DeleteKey: HKCU\Software\Mozilla DeleteKey: HKCU\Software\MozillaPlugins DeleteKey: HKLM\SOFTWARE\Mozilla DeleteKey: HKLM\SOFTWARE\MozillaPlugins DeleteKey: HKLM\SOFTWARE\Wow6432Node\Mozilla DeleteKey: HKLM\SOFTWARE\Wow6432Node\mozilla.org DeleteKey: HKLM\SOFTWARE\Wow6432Node\MozillaPlugins DeleteKey: HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v BingSvc /f Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v SpybotPostWindows10UpgradeReInstall /f Reg: reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v SDTray /f C:\Program Files (x86)\Mozilla Firefox C:\ProgramData\Mozilla C:\Users\stan\AppData\Local\Chromium C:\Users\stan\AppData\Local\GamerForest C:\Users\stan\AppData\Local\Microsoft\BingSvc C:\Users\stan\AppData\Local\Mozilla C:\Users\stan\AppData\Roaming\Mozilla C:\Users\stan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Chromium.lnk C:\Users\stan\sinister-2-pol-6410081.exe C:\WINDOWS\System32\Drivers\win8gfore64.sys C:\WINDOWS\system32\Drivers\etc\hosts.*.backup Hosts: EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\Software\Microsoft\Windows\CurrentVersion\Run\\BingSvc => value removed successfully HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon => key not found. hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully win8gfore => service not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1342A886-F29C-4DAF-8723-1DEAB7EE7B9A} => key not found. C:\WINDOWS\System32\Tasks\GamerForest Updater => not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GamerForest Updater => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{58E48A2C-7A4F-4C9D-A2E8-DEC3BD6E0941}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58E48A2C-7A4F-4C9D-A2E8-DEC3BD6E0941}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5ABD0269-2C73-41F4-AEDB-AA2DA06868D4}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5ABD0269-2C73-41F4-AEDB-AA2DA06868D4}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{835E0373-83E0-45F0-9D28-80C55ECECF5A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{835E0373-83E0-45F0-9D28-80C55ECECF5A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8DD37686-ED32-4360-90AF-C49DF6902383} => key not found. C:\WINDOWS\System32\Tasks\GamerForest Support => not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GamerForest Support => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{905F7E86-77E7-4F9E-9A00-74C37F812B7B}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{905F7E86-77E7-4F9E-9A00-74C37F812B7B}" => key removed successfully C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS Smart Gesture Launcher" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{91691E3A-B22B-4968-A324-23AE6068CFF1}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91691E3A-B22B-4968-A324-23AE6068CFF1}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{9A4FE020-29D9-4426-9B59-79578BDB4F3A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9A4FE020-29D9-4426-9B59-79578BDB4F3A}" => key removed successfully C:\WINDOWS\System32\Tasks\AutoKMS => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A14F99F7-5978-4A94-BE70-0345FFFC97BB} => key not found. C:\WINDOWS\System32\Tasks\UpdateTask => not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UpdateTask => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C3810534-A781-462D-86EF-8C5540D7FC9F}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C3810534-A781-462D-86EF-8C5540D7FC9F}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully C:\WINDOWS\Tasks\GamerForest Support.job => not found. C:\WINDOWS\Tasks\GamerForest Updater.job => not found. C:\WINDOWS\Tasks\UpdateTask.job => not found. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{33914543-F8E0-4BA8-8ECB-8D1DC263F103} => value removed successfully Chrome HomePage => removed successfully Chrome DefaultSearchURL => removed successfully Chrome DefaultSearchKeyword => removed successfully "HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd" => key removed successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\OldSearch" => key removed successfully HKCR\CLSID\OldSearch => key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully "HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\OldSearch" => key removed successfully HKCR\CLSID\OldSearch => key not found. "HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{03CB0EE3-BEF8-4A9E-A33A-B469F11029F5}" => key removed successfully HKCR\CLSID\{03CB0EE3-BEF8-4A9E-A33A-B469F11029F5} => key not found. "HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. "HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146}" => key removed successfully HKCR\CLSID\{2f23ab71-4ac6-41f2-a955-ea576e553146} => key not found. "HKU\S-1-5-21-2831285199-3536826771-1048164271-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{39367A88-20F2-4007-88EE-4E7C745B4E6A}" => key removed successfully HKCR\CLSID\{39367A88-20F2-4007-88EE-4E7C745B4E6A} => key not found. HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains => could not remove at first attempt (ErrorCode: C0000121), see next line. HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains => key removed successfully HKCU\Software\Mozilla => could not remove at first attempt (ErrorCode: C0000121), see next line. HKCU\Software\Mozilla => key removed successfully HKCU\Software\MozillaPlugins => key removed successfully HKLM\SOFTWARE\Mozilla => could not remove at first attempt (ErrorCode: C0000121), see next line. HKLM\SOFTWARE\Mozilla => key removed successfully HKLM\SOFTWARE\MozillaPlugins => could not remove at first attempt (ErrorCode: C0000121), see next line. HKLM\SOFTWARE\MozillaPlugins => key removed successfully HKLM\SOFTWARE\Wow6432Node\Mozilla => could not remove at first attempt (ErrorCode: C0000121), see next line. HKLM\SOFTWARE\Wow6432Node\Mozilla => key removed successfully HKLM\SOFTWARE\Wow6432Node\mozilla.org => could not remove at first attempt (ErrorCode: C0000121), see next line. HKLM\SOFTWARE\Wow6432Node\mozilla.org => key removed successfully HKLM\SOFTWARE\Wow6432Node\MozillaPlugins => could not remove at first attempt (ErrorCode: C0000121), see next line. HKLM\SOFTWARE\Wow6432Node\MozillaPlugins => key removed successfully HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains => could not remove at first attempt (ErrorCode: C0000121), see next line. HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains => key removed successfully ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v BingSvc /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v SpybotPostWindows10UpgradeReInstall /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v SDTray /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= C:\Program Files (x86)\Mozilla Firefox => moved successfully "C:\ProgramData\Mozilla" => not found. C:\Users\stan\AppData\Local\Chromium => moved successfully "C:\Users\stan\AppData\Local\GamerForest" => not found. C:\Users\stan\AppData\Local\Microsoft\BingSvc => moved successfully C:\Users\stan\AppData\Local\Mozilla => moved successfully C:\Users\stan\AppData\Roaming\Mozilla => moved successfully C:\Users\stan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Chromium.lnk => moved successfully C:\Users\stan\sinister-2-pol-6410081.exe => moved successfully C:\WINDOWS\System32\Drivers\win8gfore64.sys => moved successfully =========== "C:\WINDOWS\system32\Drivers\etc\hosts.*.backup" ========== C:\WINDOWS\system32\Drivers\etc\hosts.20150825-205621.backup => moved successfully C:\WINDOWS\system32\Drivers\etc\hosts.20150904-194416.backup => moved successfully C:\WINDOWS\system32\Drivers\etc\hosts.20150928-182811.backup => moved successfully C:\WINDOWS\system32\Drivers\etc\hosts.20151011-204722.backup => moved successfully C:\WINDOWS\system32\Drivers\etc\hosts.20160221-114024.backup => moved successfully C:\WINDOWS\system32\Drivers\etc\hosts.20160313-075207.backup => moved successfully C:\WINDOWS\system32\Drivers\etc\hosts.20160313-075528.backup => moved successfully ========= End -> "C:\WINDOWS\system32\Drivers\etc\hosts.*.backup" ======== C:\Windows\System32\Drivers\etc\hosts => moved successfully Hosts restored successfully. EmptyTemp: => 858.6 MB temporary data Removed. The system needed a reboot. ==== End of Fixlog 17:34:10 ====