Fix result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01 Ran by JoséCarlos1057 (2016-01-11 23:35:54) Run:1 Running from C:\Users\JoséCarlos1057\Desktop Loaded Profiles: JoséCarlos1057 (Available Profiles: Utilizador & JoséCarlos1057 & Guest) Boot Mode: Normal ============================================== fixlist content: ***************** start CloseProcesses: HKLM-x32\...\Run: [] => [X] Handler: WSWSVCUchrome - {1CA93FF0-A218-44F1 - No File CHR HomePage: Profile 1 -> hxxp://www.trovi.com/?gd=&ctid=CT3324774&octid=EB_ORIGINAL_CTID&ISID=M732FA440-CB92-41F2-AA55-6797AC1D2373&SearchSource=55&CUI=&UM=5&UP=&SSPV= CHR StartupUrls: Profile 1 -> "hxxp://www.google.pt/","hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRggWdAgMVVtFERgRIVgKTA0QFQQOeF0OVBRHEwcUcQxZVwlHRVEFIk0FA1oDB0VXfV5bFElXTwhwJVhKAlE8TkdGC1dXFg==","hxxp://www.mysites123.com/?type=hp&ts=1449755406&z=859f775ad18e0dec514d3e3g6z5zdt4m6w8w5zce8m&from=amt&uid=WDCXWD3200BPVT-00HXZT3_WD-WXK1CB1F1648F1648","hxxp://www.yessearches.com/?mode=nnnb&ptid=pmr&uid=2009DE037A14590DC2E0111BCA831328&v=20160107&ts=AHEpAXAqAH8mBk.." CHR DefaultSearchKeyword: Profile 1 -> google.pt_ CHR Profile: C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Default CHR Profile: C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (Apresentações Google) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-05] CHR Extension: (Google Docs) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-11-05] CHR Extension: (Google Drive) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-05] CHR Extension: (YouTube) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-05] CHR Extension: (VideoDownloadConverter) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bolanbocidlpdgiihfibmmdbfhplkbbd [2016-01-09] CHR Extension: (Google Search) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-05] CHR Extension: (Tampermonkey) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2015-12-12] CHR Extension: (Tabs Outliner) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eggkanocgddhmamlbiijnphhppkpkmkl [2015-12-02] CHR Extension: (Avast SafePrice) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-11-05] CHR Extension: (Google Folhas de Cálculo) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-05] CHR Extension: (Avira Browser Safety) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-12-28] CHR Extension: (Documentos do Google offline) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18] CHR Extension: (AdBlock) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-01-09] CHR Extension: (Avast Online Security) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-05] CHR Extension: (VideoDownloadConverter) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ikgjglmlehllifdekcggaapkaplbdpje [2016-01-09] CHR Extension: (The Great Suspender) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2015-12-02] CHR Extension: (Skype) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-18] CHR Extension: (Google Play Books) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mmimngoggfoobjdlefbcabngfnmieonb [2015-12-28] CHR Extension: (IDM Integration Module) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-12-30] CHR Extension: (Pagamentos via Chrome Web Store) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-05] CHR Extension: (Drop Zone) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opmfnohodhkciaommnhnnihcnhcnfoeg [2015-12-28] CHR Extension: (Baixe vídeos Vimeo, Premium) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\phpaiffimemgakmakpcehgbophkbllkf [2015-12-28] CHR Extension: (Gmail) - C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-05] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-12-29] CHR HKU\S-1-5-21-3136738229-3321464536-2784466607-1003\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-12-18] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-12-18] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-12-29] 2016-01-10 10:23 - 2016-01-10 10:23 - 00097526 _____ C:\Users\JoséCarlos1057\Desktop\SFTGC10_01.txt 2016-01-10 10:22 - 2016-01-10 10:22 - 00097526 _____ C:\Users\JoséCarlos1057\Desktop\SFTGC.txt 2016-01-10 00:10 - 2016-01-10 00:10 - 00000000 ____D C:\Program Files (x86)\yessearches_bnd 2016-01-09 23:42 - 2016-01-09 23:42 - 00079138 _____ C:\Users\JoséCarlos1057\Desktop\ZHPDiag09_01.txt 2016-01-09 23:41 - 2016-01-09 23:41 - 00079135 _____ C:\Users\JoséCarlos1057\Desktop\ZHPDiag.txt 2016-01-09 23:35 - 2016-01-09 23:35 - 02065920 _____ C:\Users\JoséCarlos1057\ZHPDiag3.exe 2016-01-09 23:33 - 2016-01-09 23:33 - 00001926 _____ C:\Users\JoséCarlos1057\Desktop\ZHPCleaner09_01.txt 2016-01-09 23:33 - 2016-01-09 23:33 - 00001923 _____ C:\Users\JoséCarlos1057\Desktop\ZHPCleaner.txt 2016-01-09 23:20 - 2016-01-09 23:20 - 00001477 _____ C:\Users\JoséCarlos1057\Desktop\AdwCleaner[C7]09_01.txt 2016-01-09 01:33 - 2016-01-09 01:33 - 00000000 ____D C:\Users\Public\Documents\Baidu Cleaner 2016-01-09 01:33 - 2016-01-09 01:33 - 00000000 ____D C:\ProgramData\Baidu Cleaner 2016-01-09 01:05 - 2016-01-09 23:21 - 00000884 _____ C:\Users\JoséCarlos1057\Desktop\ZHPCleaner.lnk 2016-01-09 01:05 - 2016-01-09 01:05 - 01992192 _____ C:\Users\JoséCarlos1057\Desktop\ZHPCleaner.exe 2016-01-09 00:51 - 2016-01-09 23:37 - 00000874 _____ C:\Users\JoséCarlos1057\Desktop\ZHPDiag.lnk 2016-01-09 00:50 - 2016-01-09 00:50 - 02064896 _____ C:\Users\JoséCarlos1057\Desktop\ZHPDiag3.exe 2016-01-09 00:27 - 2016-01-09 00:27 - 01749504 _____ C:\Users\JoséCarlos1057\Desktop\AdwCleaner.exe 2015-12-27 00:20 - 2015-12-27 00:20 - 00786819 _____ C:\Users\JoséCarlos1057\Desktop\id694528099.htm 2015-10-18 06:35 - 2015-10-18 06:39 - 00000000 ____D C:\Users\JoséCarlos1057\AppData\LocalLow\IObit 2015-10-17 13:31 - 2015-10-17 13:33 - 00802104 _____ (Baidu Inc.) C:\Users\JoséCarlos1057\Downloads\Baidu_Cleaner_Setup_Mini_B142 (1).exe 2015-10-17 13:27 - 2015-10-17 13:27 - 01388736 _____ (Baidu Inc.) C:\Users\JoséCarlos1057\Downloads\BaiduBrowser_MiniDownloader.exe 2015-10-29 00:24 - 2015-12-11 09:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-10-29 00:23 - 2016-01-11 10:34 - 00001044 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-10-29 00:23 - 2016-01-11 01:06 - 00001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-10-29 00:23 - 2016-01-10 00:29 - 00000000 ____D C:\Users\JoséCarlos1057\AppData\Local\Google 2015-10-29 00:23 - 2016-01-10 00:01 - 00004106 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-10-29 00:23 - 2016-01-10 00:01 - 00003874 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-10-29 00:23 - 2015-10-29 00:23 - 00000000 ____D C:\Program Files (x86)\Google 2015-10-29 00:22 - 2015-10-29 00:23 - 00929872 _____ (Google Inc.) C:\Users\JoséCarlos1057\Downloads\ChromeSetup.exe HKU\S-1-5-21-3136738229-3321464536-2784466607-1003\...\Run: [Google Update] => C:\Users\JoséCarlos1057\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-12-21] (Google Inc.) FirewallRules: [{A3727C6D-17D3-4C8A-AFD9-33CFC3A9CE6E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Task: {51CCB4C5-EFCB-46FF-B7C2-4A84D2EF9168} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-29] (Google Inc.) Task: {58148CF1-1619-4F8F-9B3D-FD2A8289BE83} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003UA => C:\Users\JoséCarlos1057\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-21] (Google Inc.) Task: {9852B2C7-7540-41D9-BAE9-A47F884D40A3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003Core => C:\Users\JoséCarlos1057\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-21] (Google Inc.) Task: {BD0A3C98-F8B8-4B2D-AB3A-B8CD7DA5C831} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-29] (Google Inc.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003Core.job => C:\Users\JoséCarlos1057\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003UA.job => C:\Users\JoséCarlos1057\AppData\Local\Google\Update\GoogleUpdate.exe C:\Users\JoséCarlos1057\ZHPDiag3.exe CreateRestorePoint: RemoveProxy: EmptyTemp: Reboot: Hosts: end ***************** Processes closed successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully "HKCR\PROTOCOLS\Handler\WSWSVCUchrome" => key removed successfully Chrome HomePage => removed successfully Chrome StartupUrls => removed successfully Chrome DefaultSearchKeyword => removed successfully CHR Profile: C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Default => Error: No automatic fix found for this entry. CHR Profile: C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1 => Error: No automatic fix found for this entry. C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bolanbocidlpdgiihfibmmdbfhplkbbd => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eggkanocgddhmamlbiijnphhppkpkmkl => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flliilndjeohchalpbbcdekjklbdgfkk => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ikgjglmlehllifdekcggaapkaplbdpje => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\klbibkeccnjlkjkiokjodocebajanakg => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mmimngoggfoobjdlefbcabngfnmieonb => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngpampappnmepgilojfohadhhmbhlaek => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opmfnohodhkciaommnhnnihcnhcnfoeg => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\phpaiffimemgakmakpcehgbophkbllkf => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia => moved successfully "HKLM\SOFTWARE\Google\Chrome\Extensions\ngpampappnmepgilojfohadhhmbhlaek" => key removed successfully C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx => moved successfully "HKU\S-1-5-21-3136738229-3321464536-2784466607-1003\SOFTWARE\Google\Chrome\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo" => key removed successfully "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck" => key removed successfully Could not move "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx" => Scheduled to move on reboot. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki" => key removed successfully Could not move "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx" => Scheduled to move on reboot. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => key removed successfully C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx => moved successfully "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ngpampappnmepgilojfohadhhmbhlaek" => key removed successfully "C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx" => not found. C:\Users\JoséCarlos1057\Desktop\SFTGC10_01.txt => moved successfully C:\Users\JoséCarlos1057\Desktop\SFTGC.txt => moved successfully C:\Program Files (x86)\yessearches_bnd => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPDiag09_01.txt => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPDiag.txt => moved successfully C:\Users\JoséCarlos1057\ZHPDiag3.exe => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPCleaner09_01.txt => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPCleaner.txt => moved successfully C:\Users\JoséCarlos1057\Desktop\AdwCleaner[C7]09_01.txt => moved successfully C:\Users\Public\Documents\Baidu Cleaner => moved successfully C:\ProgramData\Baidu Cleaner => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPCleaner.lnk => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPCleaner.exe => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPDiag.lnk => moved successfully C:\Users\JoséCarlos1057\Desktop\ZHPDiag3.exe => moved successfully C:\Users\JoséCarlos1057\Desktop\AdwCleaner.exe => moved successfully C:\Users\JoséCarlos1057\Desktop\id694528099.htm => moved successfully C:\Users\JoséCarlos1057\AppData\LocalLow\IObit => moved successfully C:\Users\JoséCarlos1057\Downloads\Baidu_Cleaner_Setup_Mini_B142 (1).exe => moved successfully C:\Users\JoséCarlos1057\Downloads\BaiduBrowser_MiniDownloader.exe => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome => moved successfully C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully C:\Users\JoséCarlos1057\AppData\Local\Google => moved successfully C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully C:\Program Files (x86)\Google => moved successfully C:\Users\JoséCarlos1057\Downloads\ChromeSetup.exe => moved successfully HKU\S-1-5-21-3136738229-3321464536-2784466607-1003\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => value removed successfully HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A3727C6D-17D3-4C8A-AFD9-33CFC3A9CE6E} => value not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{51CCB4C5-EFCB-46FF-B7C2-4A84D2EF9168}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{51CCB4C5-EFCB-46FF-B7C2-4A84D2EF9168}" => key removed successfully C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{58148CF1-1619-4F8F-9B3D-FD2A8289BE83}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58148CF1-1619-4F8F-9B3D-FD2A8289BE83}" => key removed successfully C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003UA => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003UA" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9852B2C7-7540-41D9-BAE9-A47F884D40A3}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9852B2C7-7540-41D9-BAE9-A47F884D40A3}" => key removed successfully C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003Core => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003Core" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BD0A3C98-F8B8-4B2D-AB3A-B8CD7DA5C831}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD0A3C98-F8B8-4B2D-AB3A-B8CD7DA5C831}" => key removed successfully C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => not found. C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => not found. C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003Core.job => moved successfully C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3136738229-3321464536-2784466607-1003UA.job => moved successfully "C:\Users\JoséCarlos1057\ZHPDiag3.exe" => not found. Restore point was successfully created. ========= RemoveProxy: ========= HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully HKU\S-1-5-21-3136738229-3321464536-2784466607-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\S-1-5-21-3136738229-3321464536-2784466607-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully ========= End of RemoveProxy: ========= C:\Windows\System32\Drivers\etc\hosts => moved successfully Hosts restored successfully. EmptyTemp: => 32.5 MB temporary data Removed. Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2016-01-11 23:41:07) "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx" => Could not move "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx" => Could not move ==== End of Fixlog 23:41:08 ====