URL:Mal infection of svchost.exe

Hello, I am having a similar issue to a number of recent posts: upon opening chrome, I begin to receive fairly regular (every few minutes) Avast notices of blocked infections, even if Chrome is running in the background (meaning, I am not actively navigating to any pages).

AVAST notification:
Object: http://opticized.net/
Infection: URL:Mal
Process: C:\Windows\System32\svchost.exe

At first the infected file was alternately coming from chrome.exe and svchost.exe. In effort to fix the issue, I downloaded and ran Malwarebytes and performed an Avast boot-time scan. I am now no longer notified of the chrome.exe infection, but the svchost.exe still persists. Can you please assist?

I have attached the standard log files:

  1. Malwarebytes Anti-Malware.txt
  2. FRST.txt
  3. Addition.txt

Let me know if this stops it

CAUTION : This fix is only valid for this specific machine, using it on another may break your computer

Open notepad and copy/paste the text in the quotebox below into it:

CreateRestorePoint: CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION 2015-01-09 06:24 - 2015-01-09 06:24 - 00000000 ____D () C:\ProgramData\icopkdaobblebafjgegailkhafcmgnij EmptyTemp: CMD: bitsadmin /reset /allusers

Save this as fixlist.txt, in the same location as FRST.exe

https://dl.dropboxusercontent.com/u/73555776/FRSTfix.JPG

Run FRST and press Fix
On completion a log will be generated please post that

It appears it has been fixed :o

I’ll use the laptop throughout the day and see if there’s a re-occurrence. I appreciate your assistance and swift response.

Let me know when you are happy and I will tidy up