HKU\S-1-5-21-41113278-582576069-4287591673-1004\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-41113278-582576069-4287591673-1004\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 GroupPolicy: Group Policy on Chrome detected <======= ATTENTION GroupPolicyUsers\S-1-5-21-41113278-582576069-4287591673-1007\User: Group Policy restriction detected <======= ATTENTION GroupPolicyUsers\S-1-5-21-41113278-582576069-4287591673-1004\User: Group Policy restriction detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION CHR HKU\S-1-5-21-41113278-582576069-4287591673-1004\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION URLSearchHook: HKLM-x32 - (No Name) - {ce18769b-c7fa-42d2-860d-17c4662c70ad} - No File HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION SearchScopes: HKLM-x32 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.condui...&ctid=CT2786678 SearchScopes: HKU\S-1-5-21-41113278-582576069-4287591673-1004 -> {6C1A09AB-E43F-4662-B271-5EFD315A2DFA} URL = http://search.condui...&ctid=CT3072253 BHO-x32: No Name -> {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} -> No File BHO-x32: No Name -> {ce18769b-c7fa-42d2-860d-17c4662c70ad} -> No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKLM-x32 - No Name - {ce18769b-c7fa-42d2-860d-17c4662c70ad} - No File Toolbar: HKU\S-1-5-21-41113278-582576069-4287591673-1004 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Winsock: Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [326144] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\bok-NO.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\gulesider-NO.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qxl-NO.xml FF Extension: Website Discovery Pro - C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\xlb0zb1x.default\Extensions\discoverypro@discoverypro.com [2014-05-01] C:\Windows\Installer\{51f86cc0-0eca-8a0e-721a-097fcb8e45bd} C:\Users\Adrian\AppData\Local\{51f86cc0-0eca-8a0e-721a-097fcb8e45bd} Task: {75825693-A73B-42A9-98C0-86277D701717} - System32\Tasks\Yahoo! Search Updater => C:\Users\Adrian\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrsetup.exe <==== ATTENTION Task: {ED99C5EB-B66C-4BE1-B4FD-4DFCCC771BE8} - System32\Tasks\Yahoo! Search => C:\Users\Adrian\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe <==== ATTENTION 2014-11-10 16:00 - 2013-11-22 17:48 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2014-11-10 15:19 - 2012-03-22 18:28 - 00000000 ____D () C:\Users\Adrian\AppData\Roaming\uTorrent 2014-11-10 15:27 - 2014-11-10 15:27 - 16409960 _____ (Safer Networking Limited ) C:\Users\Adrian\Desktop\spybotsd162.exe Reg: Reg Delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder" /F Reg: Reg Add "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder" /F Reg: Reg Delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F Reg: Reg Add "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /F EmptyTemp: