Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-11-2014 Ran by Milosz at 2014-11-05 16:14:18 Run:2 Running from C:\Users\Milosz\Desktop Loaded Profile: Milosz (Available profiles: Milosz & Mama) Boot Mode: Normal ============================================== Content of fixlist: ***************** Reg: reg query HKLM\SOFTWARE\Policies\Google /s CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION FF Plugin-x32: @esn/npbattlelog,version=2.3.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.1\npbattlelog.dll No File FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\MICROS~4\Office14\NPAUTHZ.DLL No File FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\MICROS~4\Office15\NPSPWRAP.DLL No File BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\MICROS~4\Office15\URLREDIR.DLL No File Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL No File C:\ProgramData\c738455ff494c861 C:\Users\Milosz\AppData\Roaming\appdataFr2.bin Folder: C:\Windows\system32\GroupPolicy Folder: C:\Windows\system32\GroupPolicyUsers Folder: C:\Windows\SysWOW64\GroupPolicy Folder: C:\Windows\SysWOW64\GroupPolicyUsers RemoveDirectory: C:\AdwCleaner RemoveDirectory: C:\FRST\Quarantine Reboot: ***************** ========= reg query HKLM\SOFTWARE\Policies\Google /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Update UpdateDefault REG_DWORD 0x1 AutoUpdateCheckPeriodMinutes REG_DWORD 0x0 DisableAutoUpdateChecksCheckboxValue REG_DWORD 0x1 Update{8A69D345-D564-463C-AFF1-A69D9E530F96} REG_DWORD 0x0 ========= End of Reg: ========= "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.3.1" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{B4F3A835-0E21-4959-BA22-42B3008E02FF}" => Key not found. "HKCR\Wow6432Node\PROTOCOLS\Handler\osf" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{D924BDC6-C83A-4BD5-90D0-095128A113D1}" => Key not found. C:\ProgramData\c738455ff494c861 => Moved successfully. C:\Users\Milosz\AppData\Roaming\appdataFr2.bin => Moved successfully. ========================= Folder: C:\Windows\system32\GroupPolicy ======================== ====== End of Folder: ====== ========================= Folder: C:\Windows\system32\GroupPolicyUsers ======================== ====== End of Folder: ====== ========================= Folder: C:\Windows\SysWOW64\GroupPolicy ======================== ====== End of Folder: ====== ========================= Folder: C:\Windows\SysWOW64\GroupPolicyUsers ======================== ====== End of Folder: ====== "C:\AdwCleaner" => Removed successfully. "C:\FRST\Quarantine" => Removed successfully. The system needed a reboot. ==== End of Fixlog ====