Fix result of Farbar Recovery Scan Tool (x86) Version: 25-07-2015 Ran by JRo at 2015-07-26 18:50:36 Run:1 Running from C:\Users\JRo\Downloads Loaded Profiles: JRo (Available Profiles: JRo) Boot Mode: Normal ============================================== fixlist content: ***************** GroupPolicyUsers\S-1-5-21-3680615266-3818583227-3819495129-1001\User: Group Policy Restriction detected <======= ATTENTION CHR HKU\S-1-5-21-3680615266-3818583227-3819495129-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3680615266-3818583227-3819495129-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION Toolbar: HKU\S-1-5-21-3680615266-3818583227-3819495129-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File CHR HKLM\...\Chrome\Extension: [dhdmjeclekijlogbipdlifcmgoanoemm] - C:\Program Files\Expresso\source.crx [Not Found] CHR HKLM\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - No Path Or update_url value Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S4 uliahci; \SystemRoot\system32\drivers\uliahci.sys [X] S4 UlSata; \SystemRoot\system32\drivers\ulsata.sys [X] S4 ulsata2; \SystemRoot\system32\drivers\ulsata2.sys [X] EmptyTemp: ***************** C:\Windows\system32\GroupPolicyUsers\S-1-5-21-3680615266-3818583227-3819495129-1001\User => moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully. "HKU\S-1-5-21-3680615266-3818583227-3819495129-1000\SOFTWARE\Policies\Google" => key removed successfully. "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully. "HKU\S-1-5-21-3680615266-3818583227-3819495129-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully. HKU\S-1-5-21-3680615266-3818583227-3819495129-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully. HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found. "HKLM\SOFTWARE\Google\Chrome\Extensions\dhdmjeclekijlogbipdlifcmgoanoemm" => key removed successfully. "HKLM\SOFTWARE\Google\Chrome\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk" => key removed successfully. ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie. ========= End of Reg: ========= NwlnkFlt => service removed successfully. NwlnkFwd => service removed successfully. uliahci => service removed successfully. UlSata => service removed successfully. ulsata2 => service removed successfully.