Fix result of Farbar Recovery Scan Tool (x64) Version: 25-05-2015 Ran by Ania at 2015-05-26 09:26:07 Run:1 Running from C:\Users\Ania\Downloads Loaded Profiles: Ania (Available Profiles: Ania & Awaryjny & Gość) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: HKLM-x32\...\Run: [system.exe] => C:\Users\Ania\AppData\Local\Temp\system.exe [698843 2013-05-16] () <===== ATTENTION HKU\S-1-5-21-3068530862-1638747248-2017865010-1000\...\Run: [system.exe] => C:\Users\Ania\AppData\Local\Temp\system.exe [698843 2013-05-16] () <===== ATTENTION Startup: C:\Users\Ania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\system.exe [2015-01-29] () R2 Service Mgr SaleCharger; C:\ProgramData\322cb724-1680-423d-8862-1b52ca5027ad\plugincontainer.exe [556304 2015-05-22] () <==== ATTENTION R2 Update Mgr SaleCharger; C:\Program Files (x86)\Common Files\322cb724-1680-423d-8862-1b52ca5027ad\updater.exe [478992 2015-05-22] () <==== ATTENTION S3 massfilter; system32\DRIVERS\massfilter.sys [X] S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X] S3 ZTEusbnet; system32\DRIVERS\ZTEusbnet.sys [X] S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X] S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X] GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION SearchScopes: HKU\S-1-5-21-3068530862-1638747248-2017865010-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3068530862-1638747248-2017865010-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = C:\Program Files (x86)\Mozilla Firefox\plugins C:\Program Files (x86)\Sale Charger C:\Program Files (x86)\Common Files\322cb724-1680-423d-8862-1b52ca5027ad C:\ProgramData\322cb724-1680-423d-8862-1b52ca5027ad C:\Users\Ania\Desktop\Continue PC Inspector File Recovery installation.lnk C:\Users\Ania\Downloads\*(*)-dp*.exe C:\Users\Ania\Downloads\jxpiinstall(*).exe DisableService: Mobile Partner. RunOuc CMD: netsh advfirewall reset Reg: reg delete HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I /f Reg: reg delete HKCU\Software\dobreprogramy /f Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\system.exe => value Removed successfully HKU\S-1-5-21-3068530862-1638747248-2017865010-1000\Software\Microsoft\Windows\CurrentVersion\Run\\system.exe => value Removed successfully C:\Users\Ania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\system.exe => Moved successfully. Service Mgr SaleCharger => Service not found. Update Mgr SaleCharger => Service not found. massfilter => Service Removed successfully ZTEusbmdm6k => Service Removed successfully ZTEusbnet => Service Removed successfully ZTEusbnmea => Service Removed successfully ZTEusbser6k => Service Removed successfully C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => key Removed successfully HKU\S-1-5-21-3068530862-1638747248-2017865010-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully "HKU\S-1-5-21-3068530862-1638747248-2017865010-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key Removed successfully HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. C:\Program Files (x86)\Mozilla Firefox\plugins => Moved successfully. "C:\Program Files (x86)\Sale Charger" => File/Folder not found. "C:\Program Files (x86)\Common Files\322cb724-1680-423d-8862-1b52ca5027ad" => File/Folder not found. "C:\ProgramData\322cb724-1680-423d-8862-1b52ca5027ad" => File/Folder not found. C:\Users\Ania\Desktop\Continue PC Inspector File Recovery installation.lnk => Moved successfully. C:\Users\Ania\Downloads\*(*)-dp*.exe => Moved successfully. C:\Users\Ania\Downloads\jxpiinstall(*).exe => Moved successfully. Mobile Partner. RunOuc service was disabled ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= ========= reg delete HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\dobreprogramy /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 431.9 MB temporary data. The system needed a reboot. ==== End of Fixlog 09:28:22 ====