CAUTION : This fix is only valid for this specific machine, using it on another may break your computer
Open notepad and copy/paste the text in the quotebox below into it:
CreateRestorePoint:
Winsock: Catalog9 01 C:\windows\system32\iavlsp.dll No File
Winsock: Catalog9 02 C:\windows\system32\iavlsp.dll No File
Winsock: Catalog9 13 C:\windows\system32\iavlsp.dll No File
Winsock: Catalog9-x64 01 C:\windows\system32\iavlsp64.dll [160256 2014-08-13] ()
Winsock: Catalog9-x64 02 C:\windows\system32\iavlsp64.dll [160256 2014-08-13] ()
Winsock: Catalog9-x64 13 C:\windows\system32\iavlsp64.dll [160256 2014-08-13] ()
HKU\S-1-5-21-1149407338-3159320565-896058431-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT3106777
URLSearchHook: HKLM-x32 - WinZipBar Toolbar - {50fafaf0-70a9-419d-a109-fa4b4ffd4e37} - C:\Program Files (x86)\WinZipBar\prxtbWin0.dll No File
URLSearchHook: HKU\S-1-5-21-1149407338-3159320565-896058431-1000 - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
URLSearchHook: HKU\S-1-5-21-1149407338-3159320565-896058431-1000 - WinZipBar Toolbar - {50fafaf0-70a9-419d-a109-fa4b4ffd4e37} - C:\Program Files (x86)\WinZipBar\prxtbWin0.dll No File
SearchScopes: HKU\S-1-5-21-1149407338-3159320565-896058431-1000 -> {CABE6B30-B89D-4E55-8D68-14FAA540EFB0} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3106777
SearchScopes: HKU\S-1-5-21-1149407338-3159320565-896058431-1000 -> {D48FABCE-E8F5-45E0-BA21-341AAAFC0056} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=B888C78C-3915-49D3-B4CB-B51A5643DCE3&apn_sauid=EE3FC45F-48A1-495F-BA05-7686DEB89EEE
Toolbar: HKU\S-1-5-21-1149407338-3159320565-896058431-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKU\S-1-5-21-1149407338-3159320565-896058431-1000 -> No Name - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - No File
FF SearchEngineOrder.1: Ask.com
FF Keyword.URL: hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=ORJ&o=&locale=&apn_uid=B888C78C-3915-49D3-B4CB-B51A5643DCE3&apn_ptnrs=&apn_sauid=EE3FC45F-48A1-495F-BA05-7686DEB89EEE&apn_dtid=OSJ000&&q=
FF NetworkProxy: "no_proxies_on", "localhost,127.0.0.1"
FF NetworkProxy: "type", 0
FF SearchPlugin: C:\Users\staticsting\AppData\Roaming\Mozilla\Firefox\Profiles\uv7kzgn6.default\searchplugins\askcom.xml [2012-08-07]
FF Extension: Ask Toolbar - C:\Users\staticsting\AppData\Roaming\Mozilla\Firefox\Profiles\uv7kzgn6.default\Extensions\[email protected] [2012-08-07] [not signed]
FF Extension: WinZipBar - C:\Users\staticsting\AppData\Roaming\Mozilla\Firefox\Profiles\uv7kzgn6.default\Extensions\{50fafaf0-70a9-419d-a109-fa4b4ffd4e37} [2015-07-15] [not signed]
S3 X6va005; \??\C:\Users\STATIC~1\AppData\Local\Temp\0056897.tmp [X]
Task: {DAA31563-AE6D-4996-8EEC-FF9BC45142B3} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2012-05-04] () <==== ATTENTION
C:\Program Files (x86)\Ask.com
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
RemoveProxy:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
EmptyTemp:
CMD: bitsadmin /reset /allusers
Save this as fixlist.txt, in the same location as FRST.exe
Run FRST and press Fix
On completion a log will be generated please post that
THEN
Please download AdwCleaner by Xplode onto your desktop.
- Close all open programs and internet browsers.
- Double click on AdwCleaner.exe to run the tool.
- Click on Scan.
- After the scan is complete click on "Clean"
- Confirm each time with Ok.
- Your computer will be rebooted automatically. A text file will open after the restart.
- Please post the content of that logfile with your next answer.
- You can find the logfile at C:\AdwCleaner[S0].txt as well.