Hello, here’s the fixlog
[HEADING=1]Fix result of Farbar Recovery Scan Tool (x64) Version: 28.04.2019
Ran by Gallagher (28-04-2019 14:29:01) Run:1
Running from C:\Users\Gallagher\Desktop
Loaded Profiles: Gallagher & Paul’s Ipod & Administrator & Guest (Available Profiles: Gallagher & Paul’s Ipod & Administrator & Guest)
Boot Mode: Normal[/HEADING]
fixlist content:
start
CreateRestorePoint:
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 → C:\Users\Gallagher\AppData\Local\Google\Update\1.3 .33.23\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 → C:\Users\Gallagher\AppData\Local\Google\Update\1.3 .33.17\psuser_64.dll => No File
ShellServiceObjects: No Name → {37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} =>
ShellServiceObjects: No Name → {6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03} =>
ShellServiceObjects: No Name → {7007ACCF-3202-11D1-AAD2-00805FC1270E} =>
ShellServiceObjects: No Name → {A1607060-5D4C-467a-B711-2B59A6F25957} =>
ShellServiceObjects-x32: No Name → {37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} =>
ShellServiceObjects-x32: No Name → {7007ACCF-3202-11D1-AAD2-00805FC1270E} =>
ShellServiceObjects-x32: No Name → {A1607060-5D4C-467a-B711-2B59A6F25957} =>
ShellIconOverlayIdentifiers: [SharingPrivate] → {08244EE6-92F0-47f2-9FC9-929BAA2E7235} => → No File
ShellIconOverlayIdentifiers-x32: [SharingPrivate] → {08244EE6-92F0-47f2-9FC9-929BAA2E7235} => → No File
ContextMenuHandlers5: [igfxcui] → {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => → No File
Shortcut: C:\Users\Gallagher\Favorites\NCH Software Download Site.lnk → hxxp://www.nch.com.au/index.htm
FirewallRules: [{6E9B26BE-A3EE-43B9-8AD9-E2AA9D14ABD7}] => (Allow) LPort=13148
FirewallRules: [{EF809E25-E4B3-4989-8058-879F3EE58EDF}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPD VD14.exe No File
FirewallRules: [{DDB7E469-DE88-430E-BE79-BD7A9ADBF22D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe No File
FirewallRules: [{0F461E8A-A5B0-4BE1-8B54-89748D083890}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe No File
FirewallRules: [TCP Query User{50C07EEF-DC35-4EA0-88EF-DD2D5B11DC8C}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe] => (Block) C:\users\gallagher\appdata\local\amazon music\amazon music helper.exe (Amazon Services LLC → Amazon Services LLC)
FirewallRules: [UDP Query User{132F0907-D320-4B55-9527-30985CE19CAA}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe] => (Block) C:\users\gallagher\appdata\local\amazon music\amazon music helper.exe (Amazon Services LLC → Amazon Services LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
DPF: HKLM-x32 {DE625294-70E6-45ED-B895-CFFA13AEB044} hxxp://85.221.20.19/activex/AMC.cab
DPF: HKLM-x32 {A3D93B25-4601-49D2-B3AF-F447C73D561F} hxxp://85.93.227.36/program/SonySncRz25View.cab
Hosts:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state On
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
EmptyTemp:
reboot:
end
Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD} => removed successfully
HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4} => removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => removed successfully
HKLM\Software\Classes\CLSID{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03} => removed successfully
HKLM\Software\Classes\CLSID{6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{7007ACCF-3202-11D1-AAD2-00805FC1270E} => removed successfully
HKLM\Software\Classes\CLSID{7007ACCF-3202-11D1-AAD2-00805FC1270E} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{A1607060-5D4C-467a-B711-2B59A6F25957} => removed successfully
HKLM\Software\Classes\CLSID{A1607060-5D4C-467a-B711-2B59A6F25957} => not found
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellServiceObjects{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => removed successfully
HKLM\Software\WOW6432Node\Classes\CLSID{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => not found
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellServiceObjects{7007ACCF-3202-11D1-AAD2-00805FC1270E} => removed successfully
HKLM\Software\WOW6432Node\Classes\CLSID{7007ACCF-3202-11D1-AAD2-00805FC1270E} => not found
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellServiceObjects{A1607060-5D4C-467a-B711-2B59A6F25957} => removed successfully
HKLM\Software\WOW6432Node\Classes\CLSID{A1607060-5D4C-467a-B711-2B59A6F25957} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\SharingPrivate => removed successfully
HKLM\Software\Classes\CLSID{08244EE6-92F0-47f2-9FC9-929BAA2E7235} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\Shar ingPrivate => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID{08244EE6-92F0-47f2-9FC9-929BAA2E7235} => not found
HKLM\Software\Classes\Directory\Background\ShellEx \ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
C:\Users\Gallagher\Favorites\NCH Software Download Site.lnk => moved successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{6E9B26 BE-A3EE-43B9-8AD9-E2AA9D14ABD7}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{EF809E 25-E4B3-4989-8058-879F3EE58EDF}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{DDB7E4 69-DE88-430E-BE79-BD7A9ADBF22D}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{0F461E 8A-A5B0-4BE1-8B54-89748D083890}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\TCP Query User{50C07EEF-DC35-4EA0-88EF-DD2D5B11DC8C}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\UDP Query User{132F0907-D320-4B55-9527-30985CE19CAA}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe” => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units{DE625294-70E6-45ED-B895-CFFA13AEB044} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID{DE625294-70E6-45ED-B895-CFFA13AEB044} => not found
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units{A3D93B25-4601-49D2-B3AF-F447C73D561F} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID{A3D93B25-4601-49D2-B3AF-F447C73D561F} => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
========= netsh advfirewall reset =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Ok.
========= End of CMD: =========
========= netsh advfirewall set allprofiles state On =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Ok.
========= End of CMD: =========
========= RemoveProxy: =========
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\S-1-5-21-2034169645-2416740140-1732510107-1001\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\S-1-5-21-2034169645-2416740140-1732510107-500\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
“HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer sion\Internet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer sion\Internet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Inter net Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Inter net Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-501\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-501\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\SavedLegacySettings” => removed successfully
========= End of RemoveProxy: =========
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
========= netsh winsock reset catalog =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
========= End of CMD: =========
========= netsh int ip reset c:\resetlog.txt =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= ipconfig /release =========
Windows IP Configuration
No operation can be performed on Ethernet while it has its media disconnected.
No operation can be performed on Local Area Connection* 1 while it has its media disconnected.
No operation can be performed on Local Area Connection* 2 while it has its media disconnected.
No operation can be performed on Bluetooth Network Connection while it has its media disconnected.
Ethernet adapter Ethernet:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter WiFi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::d903:7c0e:516d:139%9
Default Gateway . . . . . . . . . :
Ethernet adapter Bluetooth Network Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
========= End of CMD: =========
========= ipconfig /renew =========
Windows IP Configuration
No operation can be performed on Ethernet while it has its media disconnected.
No operation can be performed on Local Area Connection* 1 while it has its media disconnected.
No operation can be performed on Local Area Connection* 2 while it has its media disconnected.
No operation can be performed on Bluetooth Network Connection while it has its media disconnected.
Ethernet adapter Ethernet:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter WiFi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::d903:7c0e:516d:139%9
IPv4 Address. . . . . . . . . . . : 192.168.0.48
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.0.1
Ethernet adapter Bluetooth Network Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
========= End of CMD: =========
========= netsh int ipv4 reset =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= netsh int ipv6 reset =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
=========== EmptyTemp: ==========
BITS transfer queue => 11034624 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 143911120 B
Java, Flash, Steam htmlcache => 58159986 B
Windows/system/drivers => 4620938 B
Edge => 5633297 B
Chrome => 337541357 B
Firefox => 15462775 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 5429567 B
systemprofile32 => 0 B
LocalService => 121740 B
LocalService => 0 B
NetworkService => 101800 B
NetworkService => 0 B
Gallagher => 41992247 B
Paul’s Ipod => 80969825 B
Administrator => 0 B
Guest => 0 B
RecycleBin => 17376183 B
EmptyTemp: => 688.9 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 14:33:28 ====
[HEADING=1]Fix result of Farbar Recovery Scan Tool (x64) Version: 28.04.2019
Ran by Gallagher (28-04-2019 14:29:01) Run:1
Running from C:\Users\Gallagher\Desktop
Loaded Profiles: Gallagher & Paul’s Ipod & Administrator & Guest (Available Profiles: Gallagher & Paul’s Ipod & Administrator & Guest)
Boot Mode: Normal[/HEADING]
fixlist content:
start
CreateRestorePoint:
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD}\InprocServer32 → C:\Users\Gallagher\AppData\Local\Google\Update\1.3 .33.23\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 → C:\Users\Gallagher\AppData\Local\Google\Update\1.3 .33.17\psuser_64.dll => No File
ShellServiceObjects: No Name → {37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} =>
ShellServiceObjects: No Name → {6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03} =>
ShellServiceObjects: No Name → {7007ACCF-3202-11D1-AAD2-00805FC1270E} =>
ShellServiceObjects: No Name → {A1607060-5D4C-467a-B711-2B59A6F25957} =>
ShellServiceObjects-x32: No Name → {37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} =>
ShellServiceObjects-x32: No Name → {7007ACCF-3202-11D1-AAD2-00805FC1270E} =>
ShellServiceObjects-x32: No Name → {A1607060-5D4C-467a-B711-2B59A6F25957} =>
ShellIconOverlayIdentifiers: [SharingPrivate] → {08244EE6-92F0-47f2-9FC9-929BAA2E7235} => → No File
ShellIconOverlayIdentifiers-x32: [SharingPrivate] → {08244EE6-92F0-47f2-9FC9-929BAA2E7235} => → No File
ContextMenuHandlers5: [igfxcui] → {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => → No File
Shortcut: C:\Users\Gallagher\Favorites\NCH Software Download Site.lnk → hxxp://www.nch.com.au/index.htm
FirewallRules: [{6E9B26BE-A3EE-43B9-8AD9-E2AA9D14ABD7}] => (Allow) LPort=13148
FirewallRules: [{EF809E25-E4B3-4989-8058-879F3EE58EDF}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPD VD14.exe No File
FirewallRules: [{DDB7E469-DE88-430E-BE79-BD7A9ADBF22D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe No File
FirewallRules: [{0F461E8A-A5B0-4BE1-8B54-89748D083890}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe No File
FirewallRules: [TCP Query User{50C07EEF-DC35-4EA0-88EF-DD2D5B11DC8C}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe] => (Block) C:\users\gallagher\appdata\local\amazon music\amazon music helper.exe (Amazon Services LLC → Amazon Services LLC)
FirewallRules: [UDP Query User{132F0907-D320-4B55-9527-30985CE19CAA}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe] => (Block) C:\users\gallagher\appdata\local\amazon music\amazon music helper.exe (Amazon Services LLC → Amazon Services LLC)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
DPF: HKLM-x32 {DE625294-70E6-45ED-B895-CFFA13AEB044} hxxp://85.221.20.19/activex/AMC.cab
DPF: HKLM-x32 {A3D93B25-4601-49D2-B3AF-F447C73D561F} hxxp://85.93.227.36/program/SonySncRz25View.cab
Hosts:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state On
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
EmptyTemp:
reboot:
end
Restore point was successfully created.
Processes closed successfully.
HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{A804CF1A-91E5-4F0C-9E8C-DB39E74056DD} => removed successfully
HKU\S-1-5-21-2034169645-2416740140-1732510107-1001_Classes\CLSID{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4} => removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => removed successfully
HKLM\Software\Classes\CLSID{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03} => removed successfully
HKLM\Software\Classes\CLSID{6FDEDD65-AC51-43CA-B2D0-9EB5D1155D03} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{7007ACCF-3202-11D1-AAD2-00805FC1270E} => removed successfully
HKLM\Software\Classes\CLSID{7007ACCF-3202-11D1-AAD2-00805FC1270E} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer\ShellServiceObjects{A1607060-5D4C-467a-B711-2B59A6F25957} => removed successfully
HKLM\Software\Classes\CLSID{A1607060-5D4C-467a-B711-2B59A6F25957} => not found
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellServiceObjects{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => removed successfully
HKLM\Software\WOW6432Node\Classes\CLSID{37F63FBF-F39D-4E28-867D-0B3D9ED30FBB} => not found
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellServiceObjects{7007ACCF-3202-11D1-AAD2-00805FC1270E} => removed successfully
HKLM\Software\WOW6432Node\Classes\CLSID{7007ACCF-3202-11D1-AAD2-00805FC1270E} => not found
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellServiceObjects{A1607060-5D4C-467a-B711-2B59A6F25957} => removed successfully
HKLM\Software\WOW6432Node\Classes\CLSID{A1607060-5D4C-467a-B711-2B59A6F25957} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Exp lorer\ShellIconOverlayIdentifiers\SharingPrivate => removed successfully
HKLM\Software\Classes\CLSID{08244EE6-92F0-47f2-9FC9-929BAA2E7235} => not found
HKLM\Software\Wow6432Node\Microsoft\Windows\Curren tVersion\Explorer\ShellIconOverlayIdentifiers\Shar ingPrivate => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID{08244EE6-92F0-47f2-9FC9-929BAA2E7235} => not found
HKLM\Software\Classes\Directory\Background\ShellEx \ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
C:\Users\Gallagher\Favorites\NCH Software Download Site.lnk => moved successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{6E9B26 BE-A3EE-43B9-8AD9-E2AA9D14ABD7}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{EF809E 25-E4B3-4989-8058-879F3EE58EDF}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{DDB7E4 69-DE88-430E-BE79-BD7A9ADBF22D}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\{0F461E 8A-A5B0-4BE1-8B54-89748D083890}” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\TCP Query User{50C07EEF-DC35-4EA0-88EF-DD2D5B11DC8C}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe” => removed successfully
“HKLM\SYSTEM\CurrentControlSet\services\SharedAcce ss\Parameters\FirewallPolicy\FirewallRules\UDP Query User{132F0907-D320-4B55-9527-30985CE19CAA}C:\users\gallagher\appdata\local\amaz on music\amazon music helper.exe” => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units{DE625294-70E6-45ED-B895-CFFA13AEB044} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID{DE625294-70E6-45ED-B895-CFFA13AEB044} => not found
HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units{A3D93B25-4601-49D2-B3AF-F447C73D561F} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID{A3D93B25-4601-49D2-B3AF-F447C73D561F} => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
========= netsh advfirewall reset =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Ok.
========= End of CMD: =========
========= netsh advfirewall set allprofiles state On =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Ok.
========= End of CMD: =========
========= RemoveProxy: =========
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\S-1-5-21-2034169645-2416740140-1732510107-1001\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
HKU\S-1-5-21-2034169645-2416740140-1732510107-500\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
“HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer sion\Internet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer sion\Internet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Inter net Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Inter net Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Int ernet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\SavedLegacySettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-501\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\DefaultConnectionSettings” => removed successfully
“HKU\S-1-5-21-2034169645-2416740140-1732510107-501\SOFTWARE\Microsoft\Windows\CurrentVersion\Inte rnet Settings\Connections\SavedLegacySettings” => removed successfully
========= End of RemoveProxy: =========
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
========= netsh winsock reset catalog =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
========= End of CMD: =========
========= netsh int ip reset c:\resetlog.txt =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= ipconfig /release =========
Windows IP Configuration
No operation can be performed on Ethernet while it has its media disconnected.
No operation can be performed on Local Area Connection* 1 while it has its media disconnected.
No operation can be performed on Local Area Connection* 2 while it has its media disconnected.
No operation can be performed on Bluetooth Network Connection while it has its media disconnected.
Ethernet adapter Ethernet:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter WiFi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::d903:7c0e:516d:139%9
Default Gateway . . . . . . . . . :
Ethernet adapter Bluetooth Network Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
========= End of CMD: =========
========= ipconfig /renew =========
Windows IP Configuration
No operation can be performed on Ethernet while it has its media disconnected.
No operation can be performed on Local Area Connection* 1 while it has its media disconnected.
No operation can be performed on Local Area Connection* 2 while it has its media disconnected.
No operation can be performed on Bluetooth Network Connection while it has its media disconnected.
Ethernet adapter Ethernet:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 1:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter Local Area Connection* 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Wireless LAN adapter WiFi:
Connection-specific DNS Suffix . :
Link-local IPv6 Address . . . . . : fe80::d903:7c0e:516d:139%9
IPv4 Address. . . . . . . . . . . : 192.168.0.48
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.0.1
Ethernet adapter Bluetooth Network Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
========= End of CMD: =========
========= netsh int ipv4 reset =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
========= netsh int ipv6 reset =========
The following helper DLL cannot be loaded: NAPMONTR.DLL.
Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.
========= End of CMD: =========
=========== EmptyTemp: ==========
BITS transfer queue => 11034624 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 143911120 B
Java, Flash, Steam htmlcache => 58159986 B
Windows/system/drivers => 4620938 B
Edge => 5633297 B
Chrome => 337541357 B
Firefox => 15462775 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 5429567 B
systemprofile32 => 0 B
LocalService => 121740 B
LocalService => 0 B
NetworkService => 101800 B
NetworkService => 0 B
Gallagher => 41992247 B
Paul’s Ipod => 80969825 B
Administrator => 0 B
Guest => 0 B
RecycleBin => 17376183 B
EmptyTemp: => 688.9 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 14:33:28 ====
Comment