I received your last instruction Friday 4th. I did not want to bother over weekend - ran your instruction which created these logs. But you have closed my thread. Sorry I just wanted wait till Monday instead of the weekend.
Here is log generated by last instructions.
Hoping you accept these logs. Thanks
Regards SFasihi
===== ==========
All processes killed
========== OTL ==========
File C:\Users\SFasihi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gagcbogmgkaogoadfcoicjdojbmkegao\1.0.1_0 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D425283-D487-4337-BAB6-AB8354A81457}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D425283-D487-4337-BAB6-AB8354A81457}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{9D425283-D487-4337-BAB6-AB8354A81457} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D425283-D487-4337-BAB6-AB8354A81457}\ not found.
C:\Windows\LMI6C3A.tmp\backup.ini deleted successfully.
C:\Windows\LMI6C3A.tmp\ICSAgent32.dll deleted successfully.
C:\Windows\LMI6C3A.tmp\LMIRhook.000.dll deleted successfully.
C:\Windows\LMI6C3A.tmp\lmi_rescue.exe deleted successfully.
C:\Windows\LMI6C3A.tmp\LMI_Rescue_srv.exe deleted successfully.
C:\Windows\LMI6C3A.tmp\logo.bmp deleted successfully.
C:\Windows\LMI6C3A.tmp\params.txt deleted successfully.
C:\Windows\LMI6C3A.tmp\ra64app.exe deleted successfully.
C:\Windows\LMI6C3A.tmp\rahook.dll deleted successfully.
C:\Windows\LMI6C3A.tmp\rarcc.dll deleted successfully.
C:\Windows\LMI6C3A.tmp\rescue.ico deleted successfully.
C:\Windows\LMI6C3A.tmp\rescue.log deleted successfully.
C:\Windows\LMI6C3A.tmp\session.log deleted successfully.
C:\Windows\LMI6C3A.tmp\unattended.exe deleted successfully.
C:\Windows\LMI6C3A.tmp\unlock.dll deleted successfully.
C:\Windows\LMI6C3A.tmp\unlock64.dll deleted successfully.
C:\Windows\LMI6C3A.tmp folder deleted successfully.
C:\Program Files (x86)\GUM512B.tmp folder deleted successfully.
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Users\SFasihi\Desktop\cmd.bat deleted successfully.
C:\Users\SFasihi\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56502 bytes
User: Default User
User: Public
User: SFasihi
->Temp folder emptied: 108515790 bytes
->Temporary Internet Files folder emptied: 104931725 bytes
->Java cache emptied: 28031 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 39605 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 18805948 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 67490 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 222.00 mb
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
OTL by OldTimer - Version 3.2.69.0 log created on 12082014_114220
Files\Folders moved on Reboot...
C:\Users\SFasihi\AppData\Local\Temp\cf4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUKB8AF7\filtered[1].htm moved successfully.
C:\Users\SFasihi\AppData\Local\Temp\cf4\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
C:\Users\SFasihi\AppData\Local\Temp\cf4\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT moved successfully.
C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\20-ways-to-make-20-fast[1].htm moved successfully.
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\300x250[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\4651[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\728x90[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\;ord=3302764024804833067[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\;ord=3358171385930500182[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\AdDisplayTrackerServlet[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\AdDisplayTrackerServlet[2].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\AdDisplayTrackerServlet[3].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\cJZKeOuBrn4kERxqtaUH3T8E0i7KZn-EPnyo3HZu7kw[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\comments[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\createASLId[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\evC1haE-MsorTl_A7_uSGT8E0i7KZn-EPnyo3HZu7kw[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\ff2[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\follow_button.93c9003dd72a6cd9f4fee1e5eb3546c1.en[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\fontawesome-webfont[1].eot not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\Genericons[1].eot not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\getAds[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\icons.47c6a1ac947c34190cda1cafe989ed8b[1].eot not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\like[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\match[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\match[2].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\net[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\Noticons[1].eot not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\ODelI1aHBYDBqgeIAH2zlBM0YzuT7MdOe03otPbuUS0[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\pxj[1].gif not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\rvt[1].html not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\SHIcXhdd5RknatSgOzyEkA[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\toadOcfmlt9b38dHJxOBGFkQc6VGVFSmCnC_l7QZG60[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\toadOcfmlt9b38dHJxOBGJ6-ys_j0H4QL65VLqzI3wI[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\toadOcfmlt9b38dHJxOBGNbE_oMaV8t2eFeISPpzbdE[1].woff not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\usersync[1].gif not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\usersync[2].gif not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\user_sync[1].htm not found!
File\Folder C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\ZvcMqxEwPfh2qDWBPxn6nnl4twXkwp3_u9ZoePkT564[1].woff not found!
C:\Users\SFasihi\AppData\Local\Temp\b2c\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File\Folder C:\Users\SFasihi\AppData\Local\Temp\flaC60D.tmp not found!
C:\Users\SFasihi\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUKB8AF7\7r8gQb8MIqE[2].htm moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUKB8AF7\7r8gQb8MIqE[3].htm moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YUKB8AF7\viewtopic[1].htm moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OPJMHZTB\showad[1].htm moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\container[1].htm moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6PNVUD66\DroidSans[1].woff moved successfully.
C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\Windows\temp\Low\SkypeClickToCall\Logs\AutoUpdateSvc.log scheduled to be moved on reboot.
File\Folder C:\Windows\temp\hsperfdata_SFASIHI-HP$\1552 not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== ======= ====== AdwCleaner (S0)
# AdwCleaner v4.104 - Report created 08/12/2014 at 11:31:08
# Updated 05/12/2014 by Xplode
# Database : 2014-12-08.1 [Live]
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : SFasihi - SFASIHI-HP
# Running from : C:\Users\SFasihi\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YAYW02S5\adwcleaner_4.104.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Users\SFasihi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gagcbogmgkaogoadfcoicjdojbmkegao
File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
File Deleted : C:\Windows\System32\roboot64.exe
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D425283-D487-4337-BAB6-AB8354A81457}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D425283-D487-4337-BAB6-AB8354A81457}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9D425283-D487-4337-BAB6-AB8354A81457}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{9D425283-D487-4337-BAB6-AB8354A81457}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{9D425283-D487-4337-BAB6-AB8354A81457}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C7E885C2-9AC5-4A62-B409-49661DC00715}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C7E885C2-9AC5-4A62-B409-49661DC00715}
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\systweak
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKCU\Software\Zugo
Key Deleted : HKLM\SOFTWARE\systweak
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17420
-\\ Google Chrome v
[C:\Users\SFasihi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms}
[C:\Users\SFasihi\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\SFasihi\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : lifbcibllhkdhoafpjfnlhfpfgnpldfl
[C:\Users\SFasihi\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : gagcbogmgkaogoadfcoicjdojbmkegao
*************************
AdwCleaner[R0].txt - [3168 octets] - [30/11/2014 16:15:25]
AdwCleaner[R1].txt - [3098 octets] - [08/12/2014 11:29:10]
AdwCleaner[S0].txt - [2835 octets] - [08/12/2014 11:31:08]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2895 octets] ##########