This should stop the alerts

CAUTION : This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:

CreateRestorePoint: HKLM\...\Policies\Explorer\Run: [1584721395] => C:\Documents and Settings\All Users\mshwvvsxd.exe [96423296 2008-05-19] () GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "about:newtab" <======= ATTENTION Toolbar: HKLM - No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File Toolbar: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> No Name - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File Toolbar: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File SearchScopes: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> {0D7562AE-8EF6-416d-A838-AB665251703A} URL = hxxp://start.facemoods.com/?a=pcmega&s={searchTerms}&f=4 SearchScopes: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=18563 SearchScopes: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> {162EE9D0-F8E9-461F-B9DF-E1745CF0025B} URL = hxxp://rts.dsrlte.com/?affID=&q={searchTerms} SearchScopes: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = SearchScopes: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={7FCFA135-D49B-43B1-824B-632725537F67}&mid=0ca7b576117d30eded41390a3187754e-99758be5667f6f1cad8119f06fd9df8c41c335ad&lang=pt-br&ds=AVG&pr=fr&d=2011-12-10 09:40:17&v=9.0.0.18&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-1060284298-1957994488-1606980848-1003 -> {978F0B8D-BE92-4C0E-9898-B4235DF9A085} URL = hxxp://rts.dsrlte.com/?affID=na&q={searchTerms} FF Extension: Speed Analysis 2 - C:\Documents and Settings\cliente\Dados de aplicativos\Mozilla\Extensions\speedanalysis02@SpeedAnalysis.com [2013-04-18] FF HKU\S-1-5-21-1060284298-1957994488-1606980848-1003\...\Firefox\Extensions: [findlyrics@findlyrics.co] - C:\Arquivos de programas\FindLyrics\FF FF HKU\S-1-5-21-1060284298-1957994488-1606980848-1003\...\Firefox\Extensions: [speedanalysis02@SpeedAnalysis.com] - C:\Documents and Settings\cliente\Dados de aplicativos\Mozilla\Extensions\speedanalysis02@SpeedAnalysis.com CHR HKLM\...\Chrome\Extension: [dgjkhjdcljddbedokogakmmdjgnbeanf] - C:\Documents and Settings\cliente\Dados de aplicativos\SpeedAnalysis2\speedanalysis.crx [2013-04-17] CHR HKLM\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Arquivos de programas\Babylon\Babylon-Pro\Utils\BabylonChrome.crx CHR HKLM\...\Chrome\Extension: [jmhhdaimhfblnamlcdijbaakkifakade] - C:\Arquivos de programas\FindLyrics\Chrome.crx 2015-08-25 13:09 - 2015-08-25 13:09 - 00000000 ____D C:\WINDOWS\CD95F661A5C444F5A6AAECDD91C240EC.TMP 2008-04-14 09:00 - 2008-05-19 00:57 - 96423296 ___SH () C:\Documents and Settings\All Users\mshwvvsxd.exe C:\Documents and Settings\cliente\Dados de aplicativos\SpeedAnalysis2 C:\Arquivos de programas\Babylon C:\Arquivos de programas\FindLyrics RemoveProxy: EmptyTemp: CMD: bitsadmin /reset /allusers

Save this as fixlist.txt, in the same location as FRST.exe

https://dl.dropboxusercontent.com/u/73555776/FRSTfix.JPG

Run FRST and press Fix
On completion a log will be generated please post that

THEN

Please download AdwCleaner by Xplode onto your desktop.

[*]Close all open programs and internet browsers.
[*]Double click on AdwCleaner.exe to run the tool.
[*]Click on Scan.
[*]After the scan is complete click on “Clean”
[*]Confirm each time with Ok.
[*]Your computer will be rebooted automatically. A text file will open after the restart.
[*]Please post the content of that logfile with your next answer.
[*]You can find the logfile at C:\AdwCleaner[CX].txt as well.