Se if you have this file and delete it.
C:\Program Files (x86)\Mozilla Firefox\extensions\
cxfnl@nxazbwxrbgsgfqqp.netGMER does show possible suspicious activity but again, this may not be malware itself. Post me the both fresh FRST logs (FRST and Addition logreprots).
Also, let's preform one more ARK scan. Download
TDSSKiller and save it to your desktop
Execute
TDSSKiller.exe by doubleclicking on it.
Confirm "End user Licence Agreement" and "KSN Statement" dialog box by clicking on Accept button.- Under Additional options check the boxes next to:
- Verify Driver Digital Signature;
- Detect TDLFS file system
- Use KSN to scan objects
- Press Start Scan
- If Suspicious object is detected, the default action will be Skip, click on Continue.
- If Malicious objects are found, select Cure.
Once complete, a log will be produced at the root drive which is typically C:\ ,for example,
C:\TDSSKiller.<version_date_time>log.txtPlease post the contents of that log in your next reply.