Fix result of Farbar Recovery Scan Tool (x64) Version:23-09-2015 Ran by Cherryckjj (2015-09-27 14:26:38) Run:4 Running from C:\Users\Cherryckjj\Desktop Loaded Profiles: Cherryckjj (Available Profiles: Cherryckjj) Boot Mode: Normal ============================================== fixlist content: ***************** CreateRestorePoint: HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-3730196113-1156908693-4138991567-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Cherryckjj\AppData\Local\Akamai\netsession_win.exe" AppInit_DLLs-x32: C:\PROGRA~3\{0856E~1\1172~1.1\sefe.dll => No File GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION CHR HomePage: Default -> hxxp://search.conduit.com/?gd=&ctid=CT3324862&octid=EB_ORIGINAL_CTID&ISID=ME9E519D6-7ADB-4153-B697-1398B95785B1&SearchSource=55&CUI=&UM=5&UP=SPF204639E-FAB2-4C1D-B260-5B0F7D2AF554&SSPV= CHR StartupUrls: Default -> "hxxp://search.conduit.com/?gd=&ctid=CT3324862&octid=EB_ORIGINAL_CTID&ISID=ME9E519D6-7ADB-4153-B697-1398B95785B1&SearchSource=55&CUI=&UM=5&UP=SPF204639E-FAB2-4C1D-B260-5B0F7D2AF554&SSPV=","hxxp://www.dregol.com/?f=7&a=drg_ir_15_21&cd=2XzuyEtN2Y1L1Qzu0DyEtA0DyB0EyDyDtAtA0E0E0E0DtDyEtN0D0Tzu0StCtBtAyCtN1L2XzutAtFtCtDtFtCtDtFtDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyCtAtAzztA0FyC0AtGzzzzyEzztGtA0FyEyEtGzytDzzyCtGyE0FtAtB0FtDzzzztAzzzy0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtD0C0E0F0CyB0EtGtDyBzzzztGyEtCyEtBtGzytCtCzytGzzyCtDyB0FtC0DyDyEyEtD0F2QtN0A0LzuyE&cr=673646921&ir=" CHR Extension: (EverSave) - C:\Users\Cherryckjj\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddmfogomafbmjkfcpfpnjfgecnjffng [2015-09-26] CHR Extension: (AVG Secure Search) - C:\Users\Cherryckjj\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2015-09-26] Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f RemoveProxy: EmptyTemp: CMD: bitsadmin /reset /allusers ***************** Restore point was successfully created. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully HKU\S-1-5-21-3730196113-1156908693-4138991567-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value removed successfully "C:\PROGRA~3\{0856E~1\1172~1.1\sefe.dll" => Value data removed successfully. C:\Windows\system32\GroupPolicy\Machine => moved successfully C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully "HKLM\SOFTWARE\Policies\Google" => key removed successfully Chrome HomePage removed successfully Chrome StartupUrls removed successfully C:\Users\Cherryckjj\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddmfogomafbmjkfcpfpnjfgecnjffng => moved successfully C:\Users\Cherryckjj\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof => moved successfully ========= reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f ========= The operation completed successfully. ========= End of Reg: ========= ========= reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f ========= The operation completed successfully. ========= End of Reg: ========= ========= RemoveProxy: ========= HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully HKU\S-1-5-21-3730196113-1156908693-4138991567-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\S-1-5-21-3730196113-1156908693-4138991567-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully ========= End of RemoveProxy: ========= ========= bitsadmin /reset /allusers ========= BITSADMIN version 3.0 [ 7.5.7601 ] BITS administration utility. (C) Copyright 2000-2006 Microsoft Corp. BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows. Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets. 0 out of 0 jobs canceled. ========= End of CMD: ========= EmptyTemp: => 129.7 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 14:26:53 ====