Fix result of Farbar Recovery Scan Tool (x64) Version:13-06-2015 Ran by Kinga at 2015-06-21 12:57:29 Run:1 Running from C:\Users\Kinga\Downloads Loaded Profiles: Kinga (Available Profiles: Kinga) Boot Mode: Normal ============================================== fixlist content: ***************** OPR Extension: (Razor Web) - C:\Users\Kinga\AppData\Roaming\Opera Software\Opera Stable\Extensions\ljgajomlfccacbljbhocggijdgpablpc Task: {5216B262-7D0E-4A10-8FE5-036BA1029600} - System32\Tasks\Win Updater => C:\Users\Kinga\AppData\Roaming\Updater\winupd.exe <==== ATTENTION C:\Users\Kinga\AppData\Roaming\Updater Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll No File S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] C:\Users\Kinga\AppData\Roaming\8F0B.tmp.exe C:\Users\Kinga\AppData\Roaming\8F0B.tmp EmptyTemp: ***************** OPR Extension: (Razor Web) - C:\Users\Kinga\AppData\Roaming\Opera Software\Opera Stable\Extensions\ljgajomlfccacbljbhocggijdgpablpc folder not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5216B262-7D0E-4A10-8FE5-036BA1029600}" => key removed successfully C:\Windows\System32\Tasks\Win Updater => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Win Updater" => key removed successfully "C:\Users\Kinga\AppData\Roaming\Updater" => File/Folder not found. ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= C:\Windows\system32\GroupPolicy\Machine => moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully. "HKLM\SOFTWARE\Policies\Google" => key removed successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3" => key removed successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9" => key removed successfully gupdate => Service removed successfully gupdatem => Service removed successfully "C:\Users\Kinga\AppData\Roaming\8F0B.tmp.exe" => File/Folder not found. C:\Users\Kinga\AppData\Roaming\8F0B.tmp => moved successfully. EmptyTemp: => 822.3 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 12:57:44 ====