Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01 Ran by Jarek76 at 2015-06-29 20:49:37 Run:2 Running from C:\Users\Jarek76\Desktop Loaded Profiles: Jarek76 (Available Profiles: Jarek76) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: R2 Ioidasyphobiolaries; C:\Program Files (x86)\Ioidasyphobiolaries\Ioidasyphobiolaries.exe [281088 2015-06-16] () [File not signed] <==== ATTENTION S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-06-27] () R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed] S3 btmaux; system32\DRIVERS\btmaux.sys [X] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X] HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe HKLM-x32\...\Run: [] => [X] HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-09-04] (EasyBits Software Corp.) BootExecute: autocheck autochk * bddel.exe Task: {030BFFE6-7173-459E-8EBB-42918F3F5224} - System32\Tasks\{23C04970-E7A9-4CE7-BEAC-BBFF697125D2} => c:\program files (x86)\maxthon3\bin\maxthon.exe Task: {091003FE-1450-426E-AFE4-428B102F2009} - \SpyHunter4Startup No Task File <==== ATTENTION Task: {0DB37F82-C1DD-4565-B5CC-B374F68BCBCA} - System32\Tasks\Wise Memory Optimizer Task => C:\Users\Jarek76\AppData\Local\Temp\Rar$EXa0.400\Wise Memory Optimizer\WiseMemoryOptimzer.exe <==== ATTENTION Task: {2127B7EE-9239-4052-98F8-DC47FDDEE6F3} - System32\Tasks\{72EDAE04-A376-4983-BA93-49CA71A463FB} => pcalua.exe -a C:\Users\Jarek76\Downloads\sp47552.exe -d C:\Users\Jarek76\Downloads Task: {5E3E714C-4239-4ED9-9E5F-E5DE8B2463E4} - \Chromium No Task File <==== ATTENTION Task: {6B5306A5-C1EA-44EB-9279-AB46E26AA9B7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {7A41B7A8-51E1-4981-BD1D-B3A77DC2D838} - System32\Tasks\e-pity2013_styczen => C:\Program Files (x86)\e-file\e-pity2013\signxml.exe Task: {B67A9373-0F86-436B-8BA1-50A39F61BEC3} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe Task: {DF8E7082-2E6B-4032-A1E5-5C23E7325C21} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {E0B8F87C-009C-4A13-AFE1-8C081F2DDE13} - System32\Tasks\e-pity2013_kwiecien => C:\Program Files (x86)\e-file\e-pity2013\signxml.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Wise Memory Optimizer Task.job => C:\Users\Jarek76\AppData\Local\Temp\Rar$EXa0.400\Wise Memory Optimizer\WiseMemoryOptimzer.exe <==== ATTENTION ShortcutWithArgument: C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://wikibrowser.co/restore.html ShortcutWithArgument: C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://wikibrowser.co/restore.html ShortcutWithArgument: C:\Users\Jarek76\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://wikibrowser.co/restore.html HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} SearchScopes: HKU\S-1-5-21-240840061-2717004978-97619909-1000 -> {AFFC2C80-A706-4A5B-90D8-715E5CB375E0} URL = Toolbar: HKU\S-1-5-21-240840061-2717004978-97619909-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File StartMenuInternet: IEXPLORE.EXE - iexplore.exe FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll No File C:\sh4ldr C:\Program Files (x86)\Google C:\Program Files (x86)\Ioidasyphobiolaries C:\Program Files (x86)\Mozilla Firefox\extensions C:\Users\Jarek76\Start Menu\Programs\SpyHunter C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codecs for Windows 7 Pack C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KalkulatorMB C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Desktop.lnk C:\Users\Jarek76\AppData\Local\Chromium C:\Users\Jarek76\AppData\Local\Google C:\Users\Jarek76\AppData\Local\WorldofTanks C:\Users\Jarek76\AppData\Roaming\privacy.xml C:\Users\Jarek76\AppData\Roaming\WorldofTanks C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks C:\Users\Jarek76\Downloads\*sterownik*.exe C:\Users\Jarek76\Downloads\Setup_FileViewPro_[2015].exe C:\Users\Jarek76\Downloads\sh-remover.exe C:\Users\Jarek76\Downloads\SpyHunter-Installer.exe C:\Users\Jarek76\Downloads\yet_another_cleaner_*.exe C:\Windows\msdownld.tmp C:\Windows\system32\bddel.dat C:\Windows\System32\Drivers\EsgScanner.sys C:\Windows\SysWOW64\ezUPBHook.dll C:\Windows\SysWOW64\ezSharedSvcHost.exe C:\Windows\SysWOW64\C2MP Folder: C:\Spacekace Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Google /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Google /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CMD: netsh advfirewall reset DisableService: PLAY ONLINE. RunOuc RemoveProxy: ***************** Processes closed successfully. Restore point was successfully created. Ioidasyphobiolaries => Unable to stop service. Ioidasyphobiolaries => Service removed successfully EsgScanner => Service removed successfully ezSharedSvc => Service removed successfully btmaux => Service removed successfully cpuz136 => Service removed successfully GPUZ => Service removed successfully HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Easybits Recovery => value removed successfully HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\EnableShellExecuteHooks => value removed successfully HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{E54729E8-BB3D-4270-9D49-7389EA579090} => value removed successfully "HKCR\Wow6432Node\CLSID\{E54729E8-BB3D-4270-9D49-7389EA579090}" => key removed successfully hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{030BFFE6-7173-459E-8EBB-42918F3F5224}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{030BFFE6-7173-459E-8EBB-42918F3F5224}" => key removed successfully C:\Windows\System32\Tasks\{23C04970-E7A9-4CE7-BEAC-BBFF697125D2} => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{23C04970-E7A9-4CE7-BEAC-BBFF697125D2}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{091003FE-1450-426E-AFE4-428B102F2009}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{091003FE-1450-426E-AFE4-428B102F2009}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpyHunter4Startup" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0DB37F82-C1DD-4565-B5CC-B374F68BCBCA}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0DB37F82-C1DD-4565-B5CC-B374F68BCBCA}" => key removed successfully C:\Windows\System32\Tasks\Wise Memory Optimizer Task => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Wise Memory Optimizer Task" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2127B7EE-9239-4052-98F8-DC47FDDEE6F3}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2127B7EE-9239-4052-98F8-DC47FDDEE6F3}" => key removed successfully C:\Windows\System32\Tasks\{72EDAE04-A376-4983-BA93-49CA71A463FB} => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{72EDAE04-A376-4983-BA93-49CA71A463FB}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5E3E714C-4239-4ED9-9E5F-E5DE8B2463E4}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5E3E714C-4239-4ED9-9E5F-E5DE8B2463E4}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Chromium" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6B5306A5-C1EA-44EB-9279-AB46E26AA9B7}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B5306A5-C1EA-44EB-9279-AB46E26AA9B7}" => key removed successfully C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A41B7A8-51E1-4981-BD1D-B3A77DC2D838}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A41B7A8-51E1-4981-BD1D-B3A77DC2D838}" => key removed successfully C:\Windows\System32\Tasks\e-pity2013_styczen => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2013_styczen" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B67A9373-0F86-436B-8BA1-50A39F61BEC3}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B67A9373-0F86-436B-8BA1-50A39F61BEC3}" => key removed successfully C:\Windows\System32\Tasks\Game_Booster_AutoUpdate => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Game_Booster_AutoUpdate" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DF8E7082-2E6B-4032-A1E5-5C23E7325C21}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DF8E7082-2E6B-4032-A1E5-5C23E7325C21}" => key removed successfully C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0B8F87C-009C-4A13-AFE1-8C081F2DDE13}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0B8F87C-009C-4A13-AFE1-8C081F2DDE13}" => key removed successfully C:\Windows\System32\Tasks\e-pity2013_kwiecien => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2013_kwiecien" => key removed successfully C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully. C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully. C:\Windows\Tasks\Wise Memory Optimizer Task.job => moved successfully. C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Shortcut argument removed successfully. C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk => Shortcut argument restored successfully C:\Users\Jarek76\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk => Shortcut argument removed successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value removed successfully "HKU\S-1-5-21-240840061-2717004978-97619909-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFFC2C80-A706-4A5B-90D8-715E5CB375E0}" => key removed successfully HKCR\CLSID\{AFFC2C80-A706-4A5B-90D8-715E5CB375E0} => key not found. HKU\S-1-5-21-240840061-2717004978-97619909-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => value restored successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer" => key removed successfully "C:\sh4ldr" => File/Folder not found. "C:\Program Files (x86)\Google" => File/Folder not found. C:\Program Files (x86)\Ioidasyphobiolaries => moved successfully. C:\Program Files (x86)\Mozilla Firefox\extensions => moved successfully. C:\Users\Jarek76\Start Menu\Programs\SpyHunter => moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codecs for Windows 7 Pack => moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KalkulatorMB => moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Desktop.lnk => moved successfully. C:\Users\Jarek76\AppData\Local\Chromium => moved successfully. C:\Users\Jarek76\AppData\Local\Google => moved successfully. "C:\Users\Jarek76\AppData\Local\WorldofTanks" => File/Folder not found. "C:\Users\Jarek76\AppData\Roaming\privacy.xml" => File/Folder not found. C:\Users\Jarek76\AppData\Roaming\WorldofTanks => moved successfully. C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium => moved successfully. C:\Users\Jarek76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks => moved successfully. "C:\Users\Jarek76\Downloads\*sterownik*.exe" => File/Folder not found. "C:\Users\Jarek76\Downloads\Setup_FileViewPro_[2015].exe" => File/Folder not found. "C:\Users\Jarek76\Downloads\sh-remover.exe" => File/Folder not found. "C:\Users\Jarek76\Downloads\SpyHunter-Installer.exe" => File/Folder not found. "C:\Users\Jarek76\Downloads\yet_another_cleaner_*.exe" => File/Folder not found. "C:\Windows\msdownld.tmp" => File/Folder not found. C:\Windows\system32\bddel.dat => moved successfully. C:\Windows\System32\Drivers\EsgScanner.sys => moved successfully. C:\Windows\SysWOW64\ezUPBHook.dll => moved successfully. C:\Windows\SysWOW64\ezSharedSvcHost.exe => moved successfully. C:\Windows\SysWOW64\C2MP => moved successfully. ========================= Folder: C:\Spacekace ======================== 2015-06-26 15:37 - 2015-06-26 15:40 - 0030275 _____ () C:\Spacekace\deliverysystem-log.log ====== End of Folder: ====== ========= reg delete HKCU\Software\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= PLAY ONLINE. RunOuc service was disabled ========= RemoveProxy: ========= HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => value removed successfully HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully HKU\S-1-5-21-240840061-2717004978-97619909-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value removed successfully HKU\S-1-5-21-240840061-2717004978-97619909-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully HKU\S-1-5-21-240840061-2717004978-97619909-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\S-1-5-21-240840061-2717004978-97619909-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully ========= End of RemoveProxy: ========= The system needed a reboot.. ==== End of Fixlog 20:50:15 ====