Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 21-10-2014 Ran by Tosia at 2014-10-21 23:17:56 Run:1 Running from C:\Users\Tosia\Desktop Loaded Profile: Tosia (Available profiles: Tosia) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: R2 MaintainerSvc1.47.6049145; C:\ProgramData\2ce8e63b-5e53-4efc-b4cf-6a6e52e017a4\maintainer.exe [117248 2014-10-21] () [File not signed] GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION SearchScopes: HKCU - {044384BA-0092-4206-9230-55AE3492A442} URL = http://rts.dsrlte.com/?q={searchTerms}&r=50 S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [X] S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X] C:\Program Files\Google C:\Program Files\Opera C:\ProgramData\2ce8e63b-5e53-4efc-b4cf-6a6e52e017a4 C:\Users\Tosia\AppData\Local\Google C:\Users\Tosia\AppData\Roaming\Opera Software C:\Users\Tosia\Downloads\Niepotwierdzony*.crdownload C:\Users\Tosia\Downloads\yet_another_cleaner_reh.exe Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. MaintainerSvc1.47.6049145 => Service deleted successfully. C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{044384BA-0092-4206-9230-55AE3492A442}" => Key deleted successfully. "HKCR\CLSID\{044384BA-0092-4206-9230-55AE3492A442}" => Key not found. ewusbnet => Service deleted successfully. ew_hwusbdev => Service deleted successfully. ew_usbenumfilter => Service deleted successfully. huawei_enumerator => Service deleted successfully. hwdatacard => Service deleted successfully. C:\Program Files\Google => Moved successfully. C:\Program Files\Opera => Moved successfully. C:\ProgramData\2ce8e63b-5e53-4efc-b4cf-6a6e52e017a4 => Moved successfully. C:\Users\Tosia\AppData\Local\Google => Moved successfully. C:\Users\Tosia\AppData\Roaming\Opera Software => Moved successfully. C:\Users\Tosia\Downloads\Niepotwierdzony*.crdownload => Moved successfully. C:\Users\Tosia\Downloads\yet_another_cleaner_reh.exe => Moved successfully. ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 188.4 MB temporary data. The system needed a reboot. ==== End of Fixlog ====