Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 10-09-2014 Ran by Edyta at 2014-09-12 16:45:31 Run:1 Running from C:\Users\Edyta\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [761968 2014-06-12] (Cherished Technololgy LIMITED) R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [425104 2014-02-26] (Taiwan Shui Mu Chih Ching Technology Limited.) R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [540304 2014-06-11] (Cherished Technololgy LIMITED) S2 Util NetCrawl; "C:\Program Files (x86)\NetCrawl\bin\utilNetCrawl.exe" [X] S3 SBIOSIO; \??\C:\Users\Edyta\AppData\Local\Temp\__Samsung_Update\SBIOSIO64.sys [X] S1 {6fcd6092-9615-4f7f-8898-8df53980e5d2}Gw64; system32\drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}Gw64.sys [X] HKLM-x32\...\Run: [fst_se_47] => [X] ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File Task: {A436F287-09BF-4776-A549-7BFF9AF30433} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe <==== ATTENTION Task: {A50069E1-16DE-419A-B3C8-385EEC816DC9} - System32\Tasks\bench-sys => C:\Program Files (x86)\Bench\Updater\updater.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\bench-sys.job => C:\Program Files (x86)\Bench\Updater\updater.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\bench-Updater removing.job => ? <==== ATTENTION ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 ShortcutWithArgument: C:\Users\Edyta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 ShortcutWithArgument: C:\Users\Edyta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 ShortcutWithArgument: C:\Users\Edyta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 ShortcutWithArgument: C:\Users\Edyta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1394637952&from=tugs&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1394637952&from=tugs&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1394637952&from=tugs&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1394637952&from=tugs&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://search.gboxapp.com/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.delta-homes.com/?type=sc&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.sweet-page.com/web/?type=ds&ts=1394637952&from=tugs&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} SearchScopes: HKLM - {11900973-0897-3A41-300B-2AB6974903BD} URL = http://dts.search-results.com/sr?src=ieb&gct=ds&appid=1175&systemid=1&apn_uid=2285406564584649&apn_dtid=IME001&o=APN10653&apn_ptnrs=AGE&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.sweet-page.com/web/?type=ds&ts=1394637952&from=tugs&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2001} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0C0A0FyBtAtAtDzzyBzztC0CyE0E0EyEtN0D0Tzu0CyDtAzztN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1521658066&ir= SearchScopes: HKLM - {A9A9ECA3-DEA4-482B-AD43-46692B227404} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASMJS SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} SearchScopes: HKLM-x32 - {457C042F-E631-FDD4-EDD8-6E4C4EB5538E} URL = http://dts.search-results.com/sr?src=ieb&gct=ds&appid=1175&systemid=1&apn_uid=2285406564584649&apn_dtid=IME001&o=APN10653&apn_ptnrs=AGE&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2001} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0C0A0FyBtAtAtDzzyBzztC0CyE0E0EyEtN0D0Tzu0CyDtAzztN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1521658066&ir= SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&babsrc=SP_ss_din2g&mntrId=F83DCAF73308781C&affID=119357&tsp=4922 SearchScopes: HKCU - {11900973-0897-3A41-300B-2AB6974903BD} URL = http://dts.search-results.com/sr?src=ieb&gct=ds&appid=1175&systemid=1&apn_uid=2285406564584649&apn_dtid=IME001&o=APN10653&apn_ptnrs=AGE&q={searchTerms} SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1402605191&from=wpm0612&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACA05693&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2001} URL = http://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=coolmsd&cd=2XzuyEtN2Y1L1Qzu0C0A0FyBtAtAtDzzyBzztC0CyE0E0EyEtN0D0Tzu0CyDtAzztN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu1R1F1F1I1H1B1Q&cr=1521658066&ir= SearchScopes: HKCU - {A9A9ECA3-DEA4-482B-AD43-46692B227404} URL = FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\sweet-page.xml FF HKLM-x32\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\Edyta\AppData\Roaming\Mozilla\Firefox\Profiles\f3yame1l.default\extensions\quick_start@gmail.com FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\Edyta\AppData\Roaming\Mozilla\Firefox\Profiles\f3yame1l.default\extensions\faststartff@gmail.com FF HKLM-x32\...\Firefox\Extensions: [shortcutff@gmail.com] - C:\Users\Edyta\AppData\Roaming\Mozilla\Firefox\Profiles\f3yame1l.default\extensions\shortcutff@gmail.com CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Edyta\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-06-21] CHR HKCU\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Edyta\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-06-21] CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\Edyta\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-08-24] CHR HKLM-x32\...\Chrome\Extension: [kpkbnefaikfaeadgidhpoanckoiaheli] - C:\Program Files (x86)\HDvidCodec.com\HDvidCodec10.crx [2013-08-24] CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Edyta\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-06-21] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION GroupPolicy: Group Policy on Chrome detected <======= ATTENTION C:\Program Files (x86)\HDvidCodec.com C:\Program Files (x86)\topBuyyer C:\ProgramData\cf1097e963a07555 C:\ProgramData\IePluginServices C:\ProgramData\topBuyyer C:\ProgramData\WPM C:\Users\Edyta\AppData\Roaming\0D1F1S1C1P0P1C1F1N1C1T1H2UtF1E1I C:\Users\Edyta\AppData\Roaming\337Games C:\Users\Edyta\AppData\Roaming\Babylon C:\Users\Edyta\AppData\Roaming\Desk 365 C:\Users\Edyta\AppData\Roaming\eDownload C:\Users\Edyta\AppData\Roaming\eIntaller C:\Users\Edyta\AppData\Roaming\eUpdate C:\Users\Edyta\AppData\Roaming\mysearchdial C:\Users\Edyta\AppData\Roaming\SimilarAddon C:\Users\Edyta\AppData\Roaming\sweet-page C:\Users\Edyta\AppData\Roaming\Systweak DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\sptd ***************** Processes closed successfully. IePluginServices => Service stopped successfully. IePluginServices => Service deleted successfully. winzipersvc => Service deleted successfully. Wpm => Service deleted successfully. Util NetCrawl => Service deleted successfully. SBIOSIO => Service deleted successfully. {6fcd6092-9615-4f7f-8898-8df53980e5d2}Gw64 => Service deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\fst_se_47 => value deleted successfully. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Key deleted successfully. "HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A436F287-09BF-4776-A549-7BFF9AF30433}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A436F287-09BF-4776-A549-7BFF9AF30433}" => Key deleted successfully. C:\Windows\System32\Tasks\Desk 365 RunAsStdUser => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A50069E1-16DE-419A-B3C8-385EEC816DC9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A50069E1-16DE-419A-B3C8-385EEC816DC9}" => Key deleted successfully. C:\Windows\System32\Tasks\bench-sys => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bench-sys" => Key deleted successfully. C:\WINDOWS\Tasks\bench-sys.job => Moved successfully. C:\WINDOWS\Tasks\bench-Updater removing.job => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk => Shortcut argument was removed successfully. C:\Users\Edyta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Shortcut argument was removed successfully. C:\Users\Edyta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Shortcut argument was removed successfully. C:\Users\Edyta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk => Shortcut argument was removed successfully. C:\Users\Edyta\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk => Shortcut argument was removed successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{11900973-0897-3A41-300B-2AB6974903BD}" => Key deleted successfully. "HKCR\CLSID\{11900973-0897-3A41-300B-2AB6974903BD}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A9A9ECA3-DEA4-482B-AD43-46692B227404}" => Key deleted successfully. "HKCR\CLSID\{A9A9ECA3-DEA4-482B-AD43-46692B227404}" => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{457C042F-E631-FDD4-EDD8-6E4C4EB5538E}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{457C042F-E631-FDD4-EDD8-6E4C4EB5538E}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}" => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key deleted successfully. "HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{11900973-0897-3A41-300B-2AB6974903BD}" => Key deleted successfully. "HKCR\CLSID\{11900973-0897-3A41-300B-2AB6974903BD}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2001}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A9A9ECA3-DEA4-482B-AD43-46692B227404}" => Key deleted successfully. "HKCR\CLSID\{A9A9ECA3-DEA4-482B-AD43-46692B227404}" => Key not found. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml => Moved successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\sweet-page.xml => Moved successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\quick_start@gmail.com => value deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\faststartff@gmail.com => value deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\shortcutff@gmail.com => value deleted successfully. "HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff" => Key deleted successfully. C:\Users\Edyta\AppData\Local\mysearchdial_speedial_v9.0.2.crx => Moved successfully. "HKCU\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff" => Key deleted successfully. "C:\Users\Edyta\AppData\Local\mysearchdial_speedial_v9.0.2.crx" => File/Directory not found. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo" => Key deleted successfully. C:\Users\Edyta\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx => Moved successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kpkbnefaikfaeadgidhpoanckoiaheli" => Key deleted successfully. "C:\Program Files (x86)\HDvidCodec.com\HDvidCodec10.crx" => File/Directory not found. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff" => Key deleted successfully. "C:\Users\Edyta\AppData\Local\mysearchdial_speedial_v9.0.2.crx" => File/Directory not found. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. C:\Program Files (x86)\HDvidCodec.com => Moved successfully. C:\Program Files (x86)\topBuyyer => Moved successfully. C:\ProgramData\cf1097e963a07555 => Moved successfully. C:\ProgramData\IePluginServices => Moved successfully. C:\ProgramData\topBuyyer => Moved successfully. C:\ProgramData\WPM => Moved successfully. C:\Users\Edyta\AppData\Roaming\0D1F1S1C1P0P1C1F1N1C1T1H2UtF1E1I => Moved successfully. C:\Users\Edyta\AppData\Roaming\337Games => Moved successfully. C:\Users\Edyta\AppData\Roaming\Babylon => Moved successfully. C:\Users\Edyta\AppData\Roaming\Desk 365 => Moved successfully. C:\Users\Edyta\AppData\Roaming\eDownload => Moved successfully. C:\Users\Edyta\AppData\Roaming\eIntaller => Moved successfully. C:\Users\Edyta\AppData\Roaming\eUpdate => Moved successfully. C:\Users\Edyta\AppData\Roaming\mysearchdial => Moved successfully. C:\Users\Edyta\AppData\Roaming\SimilarAddon => Moved successfully. C:\Users\Edyta\AppData\Roaming\sweet-page => Moved successfully. C:\Users\Edyta\AppData\Roaming\Systweak => Moved successfully. HKLM\SYSTEM\CurrentControlSet\Services\sptd => Failed to delete key at first attempt (Error: C0000121), see next line. HKLM\SYSTEM\CurrentControlSet\Services\sptd => Key Deleted Successfully. The system needed a reboot. ==== End of Fixlog ====