Did you get this as an e-mail attachment ?

CAUTION : This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:

CreateRestorePoint: HKU\S-1-5-21-2342202695-1248839866-1428999424-1000\...\Run: [e7c6391] => C:\Windows\syswow64\regsvr32.exe C:\e7c63910\e7c63910.dll HKU\S-1-5-21-2342202695-1248839866-1428999424-1000\...\Run: [e7c63910] => C:\Windows\syswow64\regsvr32.exe C:\Windows\system32\config\SYSTEM~1\AppData\Roaming\e7c63910.dll <===== ATTENTION GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File R1 {d3f6ae1b-5020-49f7-b46f-4feada63b7e5}Gw64; C:\Windows\System32\drivers\{d3f6ae1b-5020-49f7-b46f-4feada63b7e5}Gw64.sys [48776 2015-11-07] (StdLib) 2015-11-08 13:43 - 2015-11-09 20:14 - 00000000 ____D C:\curaci 2015-11-07 23:33 - 2015-11-07 23:33 - 00000000 ___HD C:\e7c63910 2015-11-07 21:19 - 2015-11-07 08:25 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{d3f6ae1b-5020-49f7-b46f-4feada63b7e5}Gw64.sys 2015-11-07 23:33 - 2015-11-07 23:33 - 0166912 _____ (Oracle Corporation) C:\Users\Martin\AppData\Roaming\e7c63910.dll Task: {DF4D2655-B8AE-481E-A73E-85046E23058F} - System32\Tasks\ProgramRefresh-ATFST => C:\Program Files (x86)\File Type Assistant\tsasetup.exe [2014-06-08] ( ) <==== ATTENTION C:\Program Files (x86)\File Type Assistant C:\Users\Martin\AppData\Roaming\e7c63910.dll C:\e7c63910 CMD: del /F /Q /S "C:\HELP_DECRYPT.TXT" CMD: del /F /Q /S "C:\HELP_DECRYPT.HTML" CMD: del /F /Q /S "C:\HELP_DECRYPT.PNG" CMD: del /F /Q /S "C:\HELP_DECRYPT.URL" Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f RemoveProxy: EmptyTemp: CMD: bitsadmin /reset /allusers

Save this as fixlist.txt, in the same location as FRST.exe

https://dl.dropboxusercontent.com/u/73555776/FRSTfix.JPG

Run FRST and press Fix
On completion a log will be generated please post that