Mozilla Pop-up on startup (without Mozilla) and application 2.1.2.3

Hello guys! I got here because I ran into some issues on my freshly installed Windows 11.

I probably caught this virus because I installed software from my USB drive. Last night I used the “Reset this PC” feature provided by Windows to get rid of this little bug. But this morning when I started the laptop, the Mozilla Firefox popup still appeared (remember that Mozilla is not installed).

I found something similar here: https://www.bleepingcomputer.com/forums/t/698194/suspicious-mozilla-firefox-application-at-boot-and-2123-malware/

I applied the solution there for me like this:

FIXLOG:

Fix result of Farbar Recovery Scan Tool (x64) Version: 24-03-2022
Ran by Stefania Ghisa (25-03-2022 07:38:43) Run:1
Running from C:UsersStefania GhisaDownloads
Loaded Profiles: Stefania Ghisa
Boot Mode: Normal
==============================================

fixlist content:
*****************
HKLM...Run: [SecurityHealth] => C:Program FilesWindows DefenderMSASCuiL.exe [638872 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32...Run: [Dropbox] => C:Program Files (x86)DropboxClientDropbox.exe [5461312 2019-05-21] (Dropbox, Inc -> Dropbox, Inc.)
HKUS-1-5-21-3553299408-2487281719-3809449130-1001...Run: [firefox] => C:Program Files (x86)Common FilesNeptuneupdate.exe [910296 2010-03-31] (Mozilla Corporation -> Mozilla Corporation) <==== ATTENTION
HKUS-1-5-21-3553299408-2487281719-3809449130-1001...Run: [CCleaner Smart Cleaning] => C:Program FilesCCleanerCCleaner64.exe [22588760 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
HKUS-1-5-21-3553299408-2487281719-3809449130-1001...PoliciesExplorer: []
FF HKLMSOFTWAREPoliciesMozillaFirefox: Restriction <==== ATTENTION
ACA & MEP 2019 Object Enabler (HKLM...{28B89EEF-2004-0000-5102-CF3F3A09B77D}) (Version: 8.1.44.0 - Autodesk) Hidden
ACAD Private (HKLM...{28B89EEF-2001-0000-3102-CF3F3A09B77D}) (Version: 23.0.46.0 - Autodesk) Hidden
ArcGIS Desktop 10.6 (HKLM-x32...{F8206086-367E-44E4-9E24-92E9E057A63D}) (Version: 10.6.8321 - Environmental Systems Research Institute, Inc.) Hidden
ArcGIS License Manager 10.6 (HKLM-x32...{D6AF20B5-825F-44A9-915D-C2868CBD59F3}) (Version: 10.6.8321 - Environmental Systems Research Institute, Inc.) Hidden
AutoCAD 2019 - Español (Spanish) (HKLM...{28B89EEF-2001-040A-2102-CF3F3A09B77D}) (Version: 23.0.46.0 - Autodesk) Hidden
AutoCAD 2019  Language Pack - Español (Spanish) (HKLM...{28B89EEF-2001-040A-1102-CF3F3A09B77D}) (Version: 23.0.46.0 - Autodesk) Hidden
AutoCAD 2019 (HKLM...{28B89EEF-2001-0000-0102-CF3F3A09B77D}) (Version: 23.0.46.0 - Autodesk) Hidden
Autodesk ReCap (HKLM...{50EDF910-0000-1033-0102-E3D118CE2EEA}) (Version: 5.0.0.40 - Autodesk) Hidden
Autodesk ReCap Photo (HKLM...{0E4FA9C0-0000-1033-0102-1B3A7F15D307}) (Version: 19.0.0.38 - Autodesk) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32...{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision) Hidden
D3DX10 (HKLM-x32...{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Dropbox Update Helper (HKLM-x32...{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.189.1 - Dropbox, Inc.) Hidden
Galería de fotos (HKLM-x32...{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Update Helper (HKLM-x32...{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Halo 2 para Windows Vista (HKLM-x32...{0CA38F52-F0FA-4B9F-8A36-EC8A9609FBBC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32...{9C82436F-F19C-42A4-B476-F87A28A95BF9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32...{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM...{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11601.20204 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM...{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11601.20204 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM...{90160000-008C-0C0A-1000-0000000FF1CE}) (Version: 16.0.11601.20204 - Microsoft Corporation) Hidden
Panel de control de NVIDIA 373.19 (HKLM...{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 373.19 - NVIDIA Corporation) Hidden
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
AlternateDataStreams: C:WindowsSysWOW64zlib.dll:DocumentSummaryInformation [63]
AlternateDataStreams: C:WindowsSysWOW64zlib.dll:SummaryInformation [63]
AlternateDataStreams: C:WindowsSysWOW64zlib.dll:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0]
AlternateDataStreams: C:ProgramDataReprise:wupeogjxlctlfudivq`qsp`28hfm [0]
AlternateDataStreams: C:ProgramDataReprise:wupeogjxlctlfudivq`qsp`29hfm [0]
HKUS-1-5-21-3553299408-2487281719-3809449130-1001SoftwareClasses.scr: AutoCADScriptFile => C:Windowssystem32notepad.exe "%1"
IE trusted site: HKUS-1-5-21-3553299408-2487281719-3809449130-1001...sharepoint.com -> hxxps://correouisedu-files.sharepoint.com
HKLM...StartupApprovedRun32: => "Autodesk Desktop App"
HKUS-1-5-21-3553299408-2487281719-3809449130-1001...StartupApprovedRun: => "OneDrive"
FirewallRules: [{123EE69C-26B0-4374-8531-1CD9787F2A7B}] => (Allow) LPort=50042
FirewallRules: [{125E452C-FDE3-4453-82C5-F440C53AA5C3}] => (Allow) LPort=5000
FirewallRules: [{6CDB2919-8DCC-47EA-8EE9-2311CE906A59}] => (Allow) C:Program FilesChaos GroupV-RayV-Ray for SketchUpextensionvrayneui-win32-x64vrayneui.exe No File
FirewallRules: [{7A7A9F3B-170D-4DF3-B834-34FE0940450F}] => (Allow) C:Program FilesChaos GroupV-RayV-Ray for SketchUpextensionvrayneui-win32-x64vrayneui.exe No File
FirewallRules: [{542ABBDA-8BBF-431A-B87C-6633148983B4}] => (Allow) C:Program FilesChaos GroupV-RaySwarm 1.4swrm.exe No File
FirewallRules: [{B973B86F-1997-44EB-96BF-E3086F339CE0}] => (Allow) C:Program FilesChaos GroupV-RaySwarm 1.4swrm.exe No File
FirewallRules: [{841E5BA5-5B0B-4ECC-B6F0-EBE0EC986625}] => (Allow) C:Program FilesChaos GroupV-RayV-Ray 3.4 for SketchUpextensionvrayneui-win32-x64vrayneui.exe No File
FirewallRules: [{116984F2-82C4-4EAB-8218-C385C887B4E3}] => (Allow) C:Program FilesChaos GroupV-RayV-Ray 3.4 for SketchUpextensionvrayneui-win32-x64vrayneui.exe No File
FirewallRules: [{D0EBC36F-C9CE-4A63-A129-C51DBFCADFCA}] => (Allow) C:Program FilesChaos GroupVRLServiceOLSvrol.exe No File
FirewallRules: [{F67FD344-6051-4A6F-B5F2-0CD9A6D3C99C}] => (Allow) C:Program FilesChaos GroupVRLServiceOLSvrol.exe No File
FirewallRules: [{9B63E1F4-F264-4B6E-A12C-768B742534C1}] => (Allow) LPort=20208
FirewallRules: [{4A139EC4-32F4-482B-B97B-F459264F2064}] => (Allow) LPort=20208
FirewallRules: [{A0E7E103-22AC-4B44-A667-6D51596F5B87}] => (Allow) C:Program FilesChaos GroupV-Ray Swarmswrm.exe No File
FirewallRules: [{981C2A23-066A-4346-A7A0-9BD964B5CC19}] => (Allow) C:Program FilesChaos GroupV-Ray Swarmswrm.exe No File
FirewallRules: [TCP Query User{37B226BD-EFA6-4275-8915-9E9DECC18DB8}C:program filessketchupsketchup 2017sketchup.exe] => (Allow) C:program filessketchupsketchup 2017sketchup.exe No File
FirewallRules: [UDP Query User{68DD8A1F-021A-4E2F-9529-8637111095FD}C:program filessketchupsketchup 2017sketchup.exe] => (Allow) C:program filessketchupsketchup 2017sketchup.exe No File
FirewallRules: [TCP Query User{5087105D-D60C-47DA-AD90-2E56B9D8F98C}C:program filessketchupsketchup 2017sketchup.exe] => (Allow) C:program filessketchupsketchup 2017sketchup.exe No File
FirewallRules: [UDP Query User{2229B37C-2121-4598-999C-EB071168712B}C:program filessketchupsketchup 2017sketchup.exe] => (Allow) C:program filessketchupsketchup 2017sketchup.exe No File
FirewallRules: [{FCAA9F90-4162-4D2E-B036-F91B41F8A79F}] => (Allow) LPort=2869
FirewallRules: [{11C50D6D-6CD0-4DE6-88A5-1357111BD119}] => (Allow) LPort=1900
C:UsersStefania GhisaAppDataLocalTempRar$EXa4968.8204
C:UsersStefania GhisaAppDataRoamingOutput
C:UsersStefania GhisaAppDataRoamingMozilla
C:UsersStefania GhisaAppDataRoamingff2
C:UsersStefania GhisaAppDataLocalAMozilla
C:Windowsnsreg.dat
C:UsersStefania GhisaAppDataRoamingpinnacle-setup.exe
C:UsersStefania GhisaDownloadsccsetup557.exe
C:UsersStefania GhisaDownloadsHitmanPro_x64.exe
C:UsersStefania GhisaAppDataRoamingJorge Ortega1.bmp
C:Program Files (x86)Common FilesNeptune
C:UsersStefania GhisaAppDataRoamingAMozilla
C:UsersStefania GhisaDownloadsPhysX-9.16.0318-SystemSoftware.exe
C:UsersStefania GhisaAppDataLocal{F402D2E0-5808-4D88-B81F-2220C47852E5}
C:Program FilesWindowsAppsmicrosoftteams_22055.502.1226.2344_x64__8wekyb3d8bbwemsteams.exe
C:Program Files (x86)MicrosoftEdgeWebViewApplication90.0.818.66msedgewebview2.exe

VirusTotal: C:WindowsSysWOW64zlib.dll
EmptyTemp:
*****************

"HKLMSoftwareMicrosoftWindowsCurrentVersionRunSecurityHealth" => removed successfully
"HKLMSoftwareWOW6432NodeMicrosoftWindowsCurrentVersionRunDropbox" => not found
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SoftwareMicrosoftWindowsCurrentVersionRunfirefox" => not found
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SoftwareMicrosoftWindowsCurrentVersionRunCCleaner Smart Cleaning" => not found
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SoftwareMicrosoftWindowsCurrentVersionPoliciesExplorer" => not found
HKLMSOFTWAREPoliciesMozilla => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{28B89EEF-2004-0000-5102-CF3F3A09B77D}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{28B89EEF-2001-0000-3102-CF3F3A09B77D}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{F8206086-367E-44E4-9E24-92E9E057A63D}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{D6AF20B5-825F-44A9-915D-C2868CBD59F3}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{28B89EEF-2001-040A-2102-CF3F3A09B77D}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{28B89EEF-2001-040A-1102-CF3F3A09B77D}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{28B89EEF-2001-0000-0102-CF3F3A09B77D}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{50EDF910-0000-1033-0102-E3D118CE2EEA}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{0E4FA9C0-0000-1033-0102-1B3A7F15D307}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{E48469CC-635E-4FD5-A122-1497C286D217}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{E09C4DB7-630C-4F06-A631-8EA7239923AF}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{099218A5-A723-43DC-8DB5-6173656A1E94}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{198CEF22-A27F-4DC7-9B66-2C22A4B1CA09}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{0CA38F52-F0FA-4B9F-8A36-EC8A9609FBBC}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{9C82436F-F19C-42A4-B476-F87A28A95BF9}SystemComponent" => not found
"HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{DD67BE4B-7E62-4215-AFA3-F123A800A389}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{90160000-008C-0000-1000-0000000FF1CE}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{90160000-007E-0000-1000-0000000FF1CE}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{90160000-008C-0C0A-1000-0000000FF1CE}SystemComponent" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanelSystemComponent" => not found
HKLMSoftwareClassesDirectoryBackgroundShellExContextMenuHandlersigfxcui => not found
"C:WindowsSysWOW64zlib.dll" => ":DocumentSummaryInformation" ADS not found.
"C:WindowsSysWOW64zlib.dll" => ":SummaryInformation" ADS not found.
"C:WindowsSysWOW64zlib.dll" => ":{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}" ADS not found.
"C:ProgramDataReprise" => ":wupeogjxlctlfudivq`qsp`28hfm" ADS not found.
"C:ProgramDataReprise" => ":wupeogjxlctlfudivq`qsp`29hfm" ADS not found.
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SoftwareClasses.scr" => not found
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SoftwareMicrosoftWindowsCurrentVersionInternet SettingsZoneMapDomainssharepoint.com" => not found
"HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerStartupApprovedRun32Autodesk Desktop App" => not found
"HKLMSOFTWAREWOW6432NodeMicrosoftWindowsCurrentVersionRunAutodesk Desktop App" => not found
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SOFTWAREMicrosoftWindowsCurrentVersionExplorerStartupApprovedRunOneDrive" => not found
"HKUS-1-5-21-3553299408-2487281719-3809449130-1001SOFTWAREMicrosoftWindowsCurrentVersionRunOneDrive" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{123EE69C-26B0-4374-8531-1CD9787F2A7B}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{125E452C-FDE3-4453-82C5-F440C53AA5C3}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{6CDB2919-8DCC-47EA-8EE9-2311CE906A59}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{7A7A9F3B-170D-4DF3-B834-34FE0940450F}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{542ABBDA-8BBF-431A-B87C-6633148983B4}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{B973B86F-1997-44EB-96BF-E3086F339CE0}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{841E5BA5-5B0B-4ECC-B6F0-EBE0EC986625}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{116984F2-82C4-4EAB-8218-C385C887B4E3}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{D0EBC36F-C9CE-4A63-A129-C51DBFCADFCA}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{F67FD344-6051-4A6F-B5F2-0CD9A6D3C99C}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{9B63E1F4-F264-4B6E-A12C-768B742534C1}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{4A139EC4-32F4-482B-B97B-F459264F2064}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{A0E7E103-22AC-4B44-A667-6D51596F5B87}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{981C2A23-066A-4346-A7A0-9BD964B5CC19}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRulesTCP Query User{37B226BD-EFA6-4275-8915-9E9DECC18DB8}C:program filessketchupsketchup 2017sketchup.exe" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRulesUDP Query User{68DD8A1F-021A-4E2F-9529-8637111095FD}C:program filessketchupsketchup 2017sketchup.exe" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRulesTCP Query User{5087105D-D60C-47DA-AD90-2E56B9D8F98C}C:program filessketchupsketchup 2017sketchup.exe" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRulesUDP Query User{2229B37C-2121-4598-999C-EB071168712B}C:program filessketchupsketchup 2017sketchup.exe" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{FCAA9F90-4162-4D2E-B036-F91B41F8A79F}" => not found
"HKLMSYSTEMCurrentControlSetservicesSharedAccessParametersFirewallPolicyFirewallRules{11C50D6D-6CD0-4DE6-88A5-1357111BD119}" => not found
"C:UsersStefania GhisaAppDataLocalTempRar$EXa4968.8204" => not found
C:UsersStefania GhisaAppDataRoamingOutput => moved successfully
C:UsersStefania GhisaAppDataRoamingMozilla => moved successfully
C:UsersStefania GhisaAppDataRoamingff2 => moved successfully
C:UsersStefania GhisaAppDataLocalAMozilla => moved successfully
C:Windowsnsreg.dat => moved successfully
"C:UsersStefania GhisaAppDataRoamingpinnacle-setup.exe" => not found
"C:UsersStefania GhisaDownloadsccsetup557.exe" => not found
"C:UsersStefania GhisaDownloadsHitmanPro_x64.exe" => not found
"C:UsersStefania GhisaAppDataRoamingJorge Ortega1.bmp" => not found
"C:Program Files (x86)Common FilesNeptune" => not found
C:UsersStefania GhisaAppDataRoamingAMozilla => moved successfully
"C:UsersStefania GhisaDownloadsPhysX-9.16.0318-SystemSoftware.exe" => not found
"C:UsersStefania GhisaAppDataLocal{F402D2E0-5808-4D88-B81F-2220C47852E5}" => not found
C:Program FilesWindowsAppsmicrosoftteams_22055.502.1226.2344_x64__8wekyb3d8bbwemsteams.exe => moved successfully
C:Program Files (x86)MicrosoftEdgeWebViewApplication90.0.818.66msedgewebview2.exe => moved successfully
"VirusTotal: C:WindowsSysWOW64zlib.dll" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11607776 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 227879 B
Edge => 0 B
Chrome => 72604296 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 2268 B
Stefania Ghisa => 47874256 B

RecycleBin => 28230706 B
EmptyTemp: => 154.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 07:39:42 ====

Although after reboot everything seemed to be fine, I got it when scanning with AdwCleaner (see attached image).

I will also attach a new analysis using Farbar: FRST & Addition.

If you can help me solve this problem, I will be very grateful! Thank you!

I probably caught this virus because I installed software from my USB drive. Last night I used the “Reset this PC” feature provided by Windows to get rid of this little bug. But this morning when I started the laptop, the Mozilla Firefox popup still appeared (remember that Mozilla is not installed).