Fix result of Farbar Recovery Scan Tool (x64) Version:03-06-2015
Ran by alex0392 at 2015-06-05 23:15:21 Run:2
Running from C:\Users\alex0392\Desktop
Loaded Profiles: alex0392 (Available Profiles: alex0392)
Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CloseProcesses:
Hosts:
RemoveProxy:
EmptyTemp:
CreateRestorePoint:
HKLM-x32\...\Run: [gmsd_fr_521] => C:\Program Files (x86)\gmsd_fr_521\gmsd_fr_521.exe [3981256 2015-05-12] ()
HKLM-x32\...\Run: [SmartWeb] => C:\Users\alex0392\AppData\Local\SmartWeb\SmartWebHelper.exe [270368 2015-02-17] (SoftBrain Technologies Ltd.)
HKLM-x32\...\Run: [gmsd_fr_539] => C:\Program Files (x86)\gmsd_fr_539\gmsd_fr_539.exe [3979720 2015-05-14] ()
HKLM-x32\...\Run: [Boxore Client] => C:\Program Files (x86)\Boxore\Boxore Client\boxore.exe [1527808 2015-05-07] (Boxore OU)
HKLM-x32\...\Run: [gmsd_fr_579] => C:\Program Files (x86)\gmsd_fr_579\gmsd_fr_579.exe [3980968 2015-05-26] ()
HKLM-x32\...\Run: [gmsd_fr_596] => C:\Program Files (x86)\gmsd_fr_596\gmsd_fr_596.exe [3983528 2015-05-31] ()
HKLM-x32\...\RunOnce: [upgmsd_fr_521.exe] => C:\Users\alex0392\AppData\Local\gmsd_fr_521\upgmsd_fr_521.exe [3288520 2015-05-12] ()
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64Loader.dll [263952 2015-04-28]
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC32Loader.dll [223504 2015-04-28]
Startup: C:\Users\alex0392\AppData\Roaming\Microsoft WINDOWS\Start Menu\Programs\Startup\hqghumeaylnlf.lnk [2015-05-14]
ShortcutTarget: hqghumeaylnlf.lnk -> C:\ProgramData\{61a6765c-7b7d-bbfa-61a6-6765c7b7d971}\hqghumeaylnlf.exe PC UTILITIES Software Limited)
Startup: C:\Users\alex0392\AppData\Roaming\Microsoft WINDOWS\Start Menu\Programs\Startup\SmartWeb.lnk [2015-05-14]
ShortcutTarget: SmartWeb.lnk -> C:\Users\alex0392\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL =
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2498} URL = http://www.default-search.net/
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2498} URL = http://www.default-search.net/
SearchScopes: HKU\S-1-5-21-2239201703-2798331281-184381461-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/
FF Plugin-x32: @tools.Software.com SOFTWARE UPDATE;version=3 -> C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll [2015-05-17] (The Software Group)
FF Plugin-x32: @tools.Software.com SOFTWARE UPDATE;version=9 -> C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll [2015-05-17] (The Software Group)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration REGISTERED\0\NP_wtapp.dll [2013-08-06] ()
CHR HKLM-x32\...\Chrome\Extension: [fpmeembnagmagppkgghhfjfdfajdfcah] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iomphmdalfmaifjccmagmllnicjoghhk] - https://clients2.google.com/service/update2/crx
R2 dixozidy; C:\Users\alex0392\AppData\Roaming\9A1D372B-1431622113-E411-B0BB-F8A963F773D4\nst666C.tmp [420352 2015-05-15] () [File not signed]
S2 Software_update; C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [119408 2015-05-17] (The Software Group)
S3 Software_update_m; C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [119408 2015-05-17] (The Software Group)
R2 Update Edu App; C:\Program Files (x86)\Edu App\updateEduApp.exe [462056 2015-06-04] ()
R2 vekusevo; C:\Users\alex0392\AppData\Roaming\9A1D372B-1431622113-E411-B0BB-F8A963F773D4\hnsi4E05.tmp [418816 2015-05-14] () [File not signed]
R1 {11944e07-3e46-4956-b8c7-7e52c7a44c1d}Gw64; C:\Windows\System32\drivers\{11944e07-3e46-4956-b8c7-7e52c7a44c1d}Gw64.sys [48776 2015-05-15] (StdLib)
R1 {36ed28a4-ac0a-4653-91ff-10beb4246550}Gw64; C:\Windows\System32\drivers\{36ed28a4-ac0a-4653-91ff-10beb4246550}Gw64.sys [48776 2015-05-31] (StdLib)
R1 {3f1219df-4a4d-40a3-9537-f2a95f4016b3}Gw64; C:\Windows\System32\drivers\{3f1219df-4a4d-40a3-9537-f2a95f4016b3}Gw64.sys [48776 2015-05-19] (StdLib)
R1 {6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64; C:\Windows\System32\drivers\{6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64.sys [48776 2015-05-23] (StdLib)
R1 {848705a5-8a27-403e-9b59-732d0608bcbc}Gw64; C:\Windows\System32\drivers\{848705a5-8a27-403e-9b59-732d0608bcbc}Gw64.sys [48776 2015-05-26] (StdLib)
R1 {e2590817-40ca-4d03-8e1f-67fd8517bae9}Gw64; C:\Windows\System32\drivers\{e2590817-40ca-4d03-8e1f-67fd8517bae9}Gw64.sys [48776 2015-05-17] (StdLib)
R1 {eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64; C:\Windows\System32\drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64.sys [48776 2015-06-01] (StdLib)
2015-06-02 06:53 - 2015-06-02 06:54 - 00000000 ____D C:\Program Files (x86)\gmsd_fr_596
2015-06-02 06:53 - 2015-06-02 06:53 - 00000000 ____D C:\Users\alex0392\AppData\Local\gmsd_fr_596
2015-06-01 18:47 - 2015-06-01 05:39 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64.sys
2015-06-01 06:16 - 2015-05-31 16:45 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{36ed28a4-ac0a-4653-91ff-10beb4246550}Gw64.sys
2015-05-28 06:48 - 2015-05-28 06:48 - 00000000 ____D C:\Users\alex0392\AppData\Local\gmsd_fr_579
2015-05-28 06:48 - 2015-05-28 06:48 - 00000000 ____D C:\Program Files (x86)\gmsd_fr_579
2015-05-27 06:15 - 2015-05-26 19:38 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{848705a5-8a27-403e-9b59-732d0608bcbc}Gw64.sys
2015-05-23 12:54 - 2015-05-23 00:40 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64.sys
2015-05-20 06:18 - 2015-05-19 18:53 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{3f1219df-4a4d-40a3-9537-f2a95f4016b3}Gw64.sys
2015-05-18 12:43 - 2015-05-17 14:38 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{e2590817-40ca-4d03-8e1f-67fd8517bae9}Gw64.sys
2015-05-17 10:02 - 2015-05-17 10:02 - 00000000 ____D C:\Users\alex0392\AppData\Local\Boxore
2015-05-17 10:02 - 2015-05-17 10:02 - 00000000 ____D C:\Program Files (x86)\Boxore
2015-05-17 08:00 - 2015-05-23 12:56 - 00000000 ____D C:\Users\alex0392\AppData\Local\avabvyxvdy
2015-05-17 08:00 - 2015-05-18 19:28 - 00000000 ____D C:\Program Files (x86)\SearchProtect
2015-05-17 08:00 - 2015-05-17 08:00 - 00000000 ____D C:\Users\alex0392\AppData\Local\SearchProtect
2015-05-17 07:55 - 2015-06-05 21:00 - 00000936 _____ C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job
2015-05-17 07:55 - 2015-06-05 20:10 - 00000932 _____ C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job
2015-05-17 07:55 - 2015-05-17 07:55 - 00000000 ____D C:\Program Files (x86)\Software
2015-05-16 11:32 - 2015-05-16 11:32 - 00000000 __SHD C:\Users\alex0392\AppData\Roaming\AnyProtectEx
2015-05-16 11:19 - 2015-05-16 11:19 - 00000000 ____D C:\Users\alex0392\AppData\Local\speed browser
2015-05-16 10:27 - 2015-05-16 10:27 - 01498192 _____ C:\ProgramData\setup_b3beb926d4584838816299f17649ed18.exe
2015-05-16 10:24 - 2015-05-16 10:26 - 00000000 ____D C:\ProgramData\Browser
2015-05-15 22:06 - 2015-06-05 20:57 - 00000000 ____D C:\ProgramData\smdmf
2015-05-15 22:03 - 2015-05-15 10:52 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{11944e07-3e46-4956-b8c7-7e52c7a44c1d}Gw64.sys
2015-05-15 21:55 - 2015-05-16 11:30 - 00000000 ____D C:\Users\alex0392\AppData\Local\gmsd_fr_539
2015-05-15 21:55 - 2015-05-16 11:30 - 00000000 ____D C:\Program Files (x86)\gmsd_fr_539
2015-05-15 18:14 - 2015-05-15 18:14 - 00000000 ____D C:\ProgramData\NetEngine
2015-05-14 19:59 - 2015-05-28 06:41 - 00000000 ____D C:\Users\alex0392\AppData\Local\SmartWeb
2015-05-14 19:59 - 2015-05-28 06:40 - 00004042 _____ C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task
2015-05-14 19:57 - 2015-05-14 19:57 - 00000000 ____D C:\BreakingNewsAlert
2015-05-14 19:13 - 2015-05-14 19:13 - 00000000 ____D C:\ProgramData\4b7125d9000019b6
2015-05-14 19:00 - 2015-05-15 21:57 - 00000000 ____D C:\Users\alex0392\AppData\Local\BreakingNewsAlert
2015-05-14 18:59 - 2015-05-24 08:54 - 00000000 ____D C:\Users\alex0392\AppData\Local\9A1D372B-1431629948-E411-B0BB-F8A963F773D4
2015-05-14 18:58 - 2015-05-15 14:11 - 00000000 ____D C:\Users\alex0392\AppData\Local\9A1D372B-1431629924-E411-B0BB-F8A963F773D4
2015-05-14 18:58 - 2015-05-14 18:59 - 00000000 ____D C:\ProgramData\yZtQXrWuX
2015-05-14 18:58 - 2015-05-14 18:58 - 00000000 ____D C:\ProgramData\BreakingNewsAlert
2015-05-14 18:54 - 2015-06-05 20:21 - 00000000 ____D C:\ProgramData\{61a6765c-7b7d-bbfa-61a6-6765c7b7d971}
2015-05-14 18:54 - 2015-06-05 20:13 - 00000000 ____D C:\Users\alex0392\AppData\Local\gmsd_fr_521
2015-05-14 18:54 - 2015-05-14 18:54 - 00000000 ____D C:\ProgramData\LolliScan
2015-05-14 18:54 - 2015-05-14 18:54 - 00000000 ____D C:\Program Files (x86)\gmsd_fr_521
2015-05-14 18:48 - 2015-05-14 18:48 - 00000000 ____D C:\Users\alex0392\AppData\Roaming\VOPackage
2015-05-14 18:48 - 2015-05-14 18:48 - 00000000 ____D C:\Users\alex0392\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-05-16 11:32 - 2015-05-16 11:32 - 0613255 _____ (CMI Limited) C:\Users\alex0392\AppData\Local\nsoBFA3.tmp
2014-05-22 20:02 - 2014-05-22 20:02 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-05-16 10:27 - 2015-05-16 10:27 - 1498192 _____ () C:\ProgramData\setup_b3beb926d4584838816299f17649ed18.exe
Task: {1270BA9E-BD39-43A4-905B-C48AB0572D91} - System32\Tasks\{96CF3D96-ABD9-4575-90F5-9E36BFEA9A22}
Task: {1830A655-50B6-4411-91D5-1AAF3B3640A3} - System32\Tasks\SoftwareUpdateTaskMachineUA
Task: {7BECC3C4-98EE-4F08-9594-4DE0AB4328E9} - System32\Tasks\NetEngine
Task: {CC44A5BA-C3FF-4B25-8A6D-6BBA1DDEAEB0} - System32\Tasks\SoftwareUpdateTaskMachineCore => C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [2015-05-17]
Task: {E0017785-42ED-45E5-97D1-DD186591B441} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\alex0392\AppData\Local\SmartWeb\SmartWebHelper.exe [2015-02-17]
Task: C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job => C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
Task: C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job => C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe
2015-05-15 18:14 - 2015-05-15 18:14 - 00075776 _____ () C:\ProgramData\NetEngine\bin\D10\netengine.exe

end
*****************

Processes closed successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully.
Hosts restored successfully.

========= RemoveProxy: =========

HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully
HKU\S-1-5-21-2239201703-2798331281-184381461-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-2239201703-2798331281-184381461-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully


========= End of RemoveProxy: =========

Restore point was successfully created.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_521 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SmartWeb => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_539 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Boxore Client => value not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_579 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_596 => value removed successfully
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\upgmsd_fr_521.exe => value removed successfully
"C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll" => value data removed successfully.
"C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC32Loader.dll" => value data removed successfully.
C:\Users\alex0392\AppData\Roaming\Microsoft WINDOWS\Start Menu\Programs\Startup\hqghumeaylnlf.lnk not found.
ShortcutTarget: hqghumeaylnlf.lnk -> C:\ProgramData\{61a6765c-7b7d-bbfa-61a6-6765c7b7d971}\hqghumeaylnlf.exe PC UTILITIES Software Limited) not found.
C:\Users\alex0392\AppData\Roaming\Microsoft WINDOWS\Start Menu\Programs\Startup\SmartWeb.lnk not found.
C:\Users\alex0392\AppData\Local\SmartWeb\SmartWebHelper.exe => moved successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146}" => key removed successfully
HKCR\CLSID\{2f23ab71-4ac6-41f2-a955-ea576e553146} => key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}" => key removed successfully
HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}" => key removed successfully
HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498} => key not found.
"HKU\S-1-5-21-2239201703-2798331281-184381461-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => key removed successfully
HKCR\CLSID\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => key not found.
HKLM\Software\Wow6432Node\MozillaPlugins\@tools.Software.com SOFTWARE UPDATE;version=3 => key not found.
C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll => moved successfully.
HKLM\Software\Wow6432Node\MozillaPlugins\@tools.Software.com SOFTWARE UPDATE;version=9 => key not found.
C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0" => key removed successfully
C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration REGISTERED\0\NP_wtapp.dll not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fpmeembnagmagppkgghhfjfdfajdfcah" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\iomphmdalfmaifjccmagmllnicjoghhk" => key removed successfully
dixozidy => Service not found.
Software_update => Service removed successfully
Software_update_m => Service removed successfully
Update Edu App => Unable to stop service.
Update Edu App => Service removed successfully
vekusevo => Service removed successfully
{11944e07-3e46-4956-b8c7-7e52c7a44c1d}Gw64 => Unable to stop service.
{11944e07-3e46-4956-b8c7-7e52c7a44c1d}Gw64 => Service removed successfully
{36ed28a4-ac0a-4653-91ff-10beb4246550}Gw64 => Unable to stop service.
{36ed28a4-ac0a-4653-91ff-10beb4246550}Gw64 => Service removed successfully
{3f1219df-4a4d-40a3-9537-f2a95f4016b3}Gw64 => Unable to stop service.
{3f1219df-4a4d-40a3-9537-f2a95f4016b3}Gw64 => Service removed successfully
{6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64 => Unable to stop service.
{6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64 => Service removed successfully
{848705a5-8a27-403e-9b59-732d0608bcbc}Gw64 => Unable to stop service.
{848705a5-8a27-403e-9b59-732d0608bcbc}Gw64 => Service removed successfully
{e2590817-40ca-4d03-8e1f-67fd8517bae9}Gw64 => Unable to stop service.
{e2590817-40ca-4d03-8e1f-67fd8517bae9}Gw64 => Service removed successfully
{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64 => Unable to stop service.
{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64 => Service removed successfully
C:\Program Files (x86)\gmsd_fr_596 => moved successfully.
C:\Users\alex0392\AppData\Local\gmsd_fr_596 => moved successfully.
C:\Windows\system32\Drivers\{eb01aed1-bba3-4e72-8323-a77bb027b1d4}Gw64.sys => moved successfully.
C:\Windows\system32\Drivers\{36ed28a4-ac0a-4653-91ff-10beb4246550}Gw64.sys => moved successfully.
C:\Users\alex0392\AppData\Local\gmsd_fr_579 => moved successfully.
C:\Program Files (x86)\gmsd_fr_579 => moved successfully.
C:\Windows\system32\Drivers\{848705a5-8a27-403e-9b59-732d0608bcbc}Gw64.sys => moved successfully.
C:\Windows\system32\Drivers\{6dd55e9a-3d06-4d70-b5e7-05fc3e0a3d66}Gw64.sys => moved successfully.
C:\Windows\system32\Drivers\{3f1219df-4a4d-40a3-9537-f2a95f4016b3}Gw64.sys => moved successfully.
C:\Windows\system32\Drivers\{e2590817-40ca-4d03-8e1f-67fd8517bae9}Gw64.sys => moved successfully.
C:\Users\alex0392\AppData\Local\Boxore => moved successfully.
C:\Program Files (x86)\Boxore => moved successfully.
C:\Users\alex0392\AppData\Local\avabvyxvdy => moved successfully.
C:\Program Files (x86)\SearchProtect => moved successfully.
C:\Users\alex0392\AppData\Local\SearchProtect => moved successfully.
C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job => moved successfully.
C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job => moved successfully.
C:\Program Files (x86)\Software => moved successfully.
C:\Users\alex0392\AppData\Roaming\AnyProtectEx => moved successfully.
C:\Users\alex0392\AppData\Local\speed browser => moved successfully.
C:\ProgramData\setup_b3beb926d4584838816299f17649ed18.exe => moved successfully.
C:\ProgramData\Browser => moved successfully.

"C:\ProgramData\smdmf" folder move:

Could not move "C:\ProgramData\smdmf" folder => Scheduled to move on reboot.

C:\Windows\system32\Drivers\{11944e07-3e46-4956-b8c7-7e52c7a44c1d}Gw64.sys => moved successfully.
C:\Users\alex0392\AppData\Local\gmsd_fr_539 => moved successfully.
C:\Program Files (x86)\gmsd_fr_539 => moved successfully.
C:\ProgramData\NetEngine => moved successfully.
C:\Users\alex0392\AppData\Local\SmartWeb => moved successfully.
C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task => moved successfully.
C:\BreakingNewsAlert => moved successfully.
C:\ProgramData\4b7125d9000019b6 => moved successfully.
C:\Users\alex0392\AppData\Local\BreakingNewsAlert => moved successfully.
C:\Users\alex0392\AppData\Local\9A1D372B-1431629948-E411-B0BB-F8A963F773D4 => moved successfully.
C:\Users\alex0392\AppData\Local\9A1D372B-1431629924-E411-B0BB-F8A963F773D4 => moved successfully.

"C:\ProgramData\yZtQXrWuX" folder move:

Could not move "C:\ProgramData\yZtQXrWuX" folder => Scheduled to move on reboot.

C:\ProgramData\BreakingNewsAlert => moved successfully.
C:\ProgramData\{61a6765c-7b7d-bbfa-61a6-6765c7b7d971} => moved successfully.
C:\Users\alex0392\AppData\Local\gmsd_fr_521 => moved successfully.
C:\ProgramData\LolliScan => moved successfully.
C:\Program Files (x86)\gmsd_fr_521 => moved successfully.
C:\Users\alex0392\AppData\Roaming\VOPackage => moved successfully.
C:\Users\alex0392\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage => moved successfully.
C:\Users\alex0392\AppData\Local\nsoBFA3.tmp => moved successfully.
C:\ProgramData\DP45977C.lfl => moved successfully.
"C:\ProgramData\setup_b3beb926d4584838816299f17649ed18.exe" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1270BA9E-BD39-43A4-905B-C48AB0572D91}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1270BA9E-BD39-43A4-905B-C48AB0572D91}" => key removed successfully
C:\Windows\System32\Tasks\{96CF3D96-ABD9-4575-90F5-9E36BFEA9A22} => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{96CF3D96-ABD9-4575-90F5-9E36BFEA9A22}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1830A655-50B6-4411-91D5-1AAF3B3640A3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1830A655-50B6-4411-91D5-1AAF3B3640A3}" => key removed successfully
C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SoftwareUpdateTaskMachineUA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{7BECC3C4-98EE-4F08-9594-4DE0AB4328E9}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7BECC3C4-98EE-4F08-9594-4DE0AB4328E9}" => key removed successfully
C:\Windows\System32\Tasks\NetEngine => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\NetEngine" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CC44A5BA-C3FF-4B25-8A6D-6BBA1DDEAEB0}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC44A5BA-C3FF-4B25-8A6D-6BBA1DDEAEB0}" => key removed successfully
C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineCore => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SoftwareUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0017785-42ED-45E5-97D1-DD186591B441}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0017785-42ED-45E5-97D1-DD186591B441}" => key removed successfully
C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartWeb Upgrade Trigger Task" => key removed successfully
C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job not found.
C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job not found.
"C:\ProgramData\NetEngine\bin\D10\netengine.exe" => File/Folder not found.
EmptyTemp: => 336 MB temporary data Removed.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-06-05 23:22:44)<=

"C:\ProgramData\smdmf" => Could not move
C:\ProgramData\yZtQXrWuX => Is moved successfully

==== End of Fixlog 23:22:45 ====