Did you get this as an e-mail attachment ?
CAUTION : This fix is only valid for this specific machine, using it on another may break your computer
Open notepad and copy/paste the text in the quotebox below into it:
CreateRestorePoint:
HKU\S-1-5-21-2342202695-1248839866-1428999424-1000\...\Run: [e7c6391] => C:\Windows\syswow64\regsvr32.exe C:\e7c63910\e7c63910.dll
HKU\S-1-5-21-2342202695-1248839866-1428999424-1000\...\Run: [e7c63910] => C:\Windows\syswow64\regsvr32.exe C:\Windows\system32\config\SYSTEM~1\AppData\Roaming\e7c63910.dll <===== ATTENTION
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
R1 {d3f6ae1b-5020-49f7-b46f-4feada63b7e5}Gw64; C:\Windows\System32\drivers\{d3f6ae1b-5020-49f7-b46f-4feada63b7e5}Gw64.sys [48776 2015-11-07] (StdLib)
2015-11-08 13:43 - 2015-11-09 20:14 - 00000000 ____D C:\curaci
2015-11-07 23:33 - 2015-11-07 23:33 - 00000000 ___HD C:\e7c63910
2015-11-07 21:19 - 2015-11-07 08:25 - 00048776 _____ (StdLib) C:\Windows\system32\Drivers\{d3f6ae1b-5020-49f7-b46f-4feada63b7e5}Gw64.sys
2015-11-07 23:33 - 2015-11-07 23:33 - 0166912 _____ (Oracle Corporation) C:\Users\Martin\AppData\Roaming\e7c63910.dll
Task: {DF4D2655-B8AE-481E-A73E-85046E23058F} - System32\Tasks\ProgramRefresh-ATFST => C:\Program Files (x86)\File Type Assistant\tsasetup.exe [2014-06-08] ( ) <==== ATTENTION
C:\Program Files (x86)\File Type Assistant
C:\Users\Martin\AppData\Roaming\e7c63910.dll
C:\e7c63910
CMD: del /F /Q /S "C:\HELP_DECRYPT.TXT"
CMD: del /F /Q /S "C:\HELP_DECRYPT.HTML"
CMD: del /F /Q /S "C:\HELP_DECRYPT.PNG"
CMD: del /F /Q /S "C:\HELP_DECRYPT.URL"
Reg: reg delete HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
Reg: reg add HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local /f
RemoveProxy:
EmptyTemp:
CMD: bitsadmin /reset /allusers
Save this as fixlist.txt, in the same location as FRST.exe
https://dl.dropboxusercontent.com/u/73555776/FRSTfix.JPG
Run FRST and press Fix
On completion a log will be generated please post that