Fix result of Farbar Recovery Scan Tool (x64) Version:17-08-2015 Ran by User (2015-08-19 16:36:12) Run:1 Running from F:\9 Loaded Profiles: User (Available Profiles: User) Boot Mode: Normal ============================================== fixlist content: ***************** HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Classes\.exe: exefile => <===== ATTENTION HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Classes\exefile: <===== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3407648282-1425260306-897566876-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f GroupPolicy: Group Policy on Chrome detected <======= ATTENTION HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn49PYmQ6e1krQXBFZY3cpdwhZoKup-p_BEjzq8N_qxiOSokV5zDPACFAPRvfCJg2wnc9Fwo44M_yKxdsRg-yDhoA1fx-hAY1L56Fp2AmmJIQMgIrhi9tDzLRxSJo3En3qCGoWuWpvr5QQamKkONPk00f-wey-k9qQ,,&q={searchTerms} S0 is3srv; SySWOW64\drivers\is3srv64.sys [X] S0 szkg5; SySWOW64\drivers\szkg64.sys [X] C:\Users\User\Downloads\SpyHunter-Installer.exe C:\Users\User\AppData\Roaming\Solvusoft C:\ProgramData\WWinManProW C:\Users\User\AppData\Roaming\GoldenGate 2015-08-17 12:21 - 2015-08-18 16:10 - 00000000 ____D C:\ProgramData\Tristip 2015-08-17 12:21 - 2015-08-17 12:21 - 00000000 ____D C:\ProgramData\Tristips EmptyTemp: ***************** "HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Classes\exefile" => key removed successfully "HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Classes\.exe" => key removed successfully HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Classes\exefile => key not found. "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully "HKU\S-1-5-21-3407648282-1425260306-897566876-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully. HKU\S-1-5-21-3407648282-1425260306-897566876-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully is3srv => service removed successfully szkg5 => service removed successfully C:\Users\User\Downloads\SpyHunter-Installer.exe => moved successfully. C:\Users\User\AppData\Roaming\Solvusoft => moved successfully. C:\ProgramData\WWinManProW => moved successfully. C:\Users\User\AppData\Roaming\GoldenGate => moved successfully. C:\ProgramData\Tristip => moved successfully. C:\ProgramData\Tristips => moved successfully. EmptyTemp: => 85.7 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 16:36:34 ====