Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 20-11-2014 Ran by Agata at 2014-11-21 13:31:57 Run:2 Running from D:\Downloads\logi Loaded Profile: Agata (Available profiles: Agata) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CMD: type "C:\Windows\System32\Tasks\P4G Sidebar" Task: {5B59D958-F818-48FE-BDF0-53C5A130F79C} - System32\Tasks\P4G Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {865C1D08-B155-4071-B5F3-347C6FD3B20A} - System32\Tasks\P4GIntlCtrl => \IntlCtrl.exe HKLM\...\Run: [EeeStorageBackup] => C:\Program Files (x86)\ASUS\Asus WebStorage\BackupService.exe Handler: livecall - No CLSID Value Handler: ms-help - No CLSID Value Handler: msnim - No CLSID Value Handler: wlmailhtml - No CLSID Value C:\Users\Agata\AppData\Roaming\Asus WebStorage C:\Users\Agata\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok C:\Users\Agata\AppData\Local\Google\Chrome\User Data\Default\Local Storage\*localstorage* C:\Users\Agata\AppData\Local\Google\Chrome\User Data\Default\Preferences Reg: reg add HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\javascript /v CLSID /t REG_SZ /d {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} /f Reg: reg add HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\mailto /v CLSID /t REG_SZ /d {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} /f Reg: reg add HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\res /v CLSID /t REG_SZ /d {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} /f EmptyTemp: ***************** Processes closed successfully. ========= type "C:\Windows\System32\Tasks\P4G Sidebar" ========= Author Name true LeastPrivilege Agata-Komputer\Agata InteractiveToken IgnoreNew false true true true false PT10M PT1H true false true true false false false PT72H 7 C:\Program Files\Windows Sidebar\sidebar.exe ========= End of CMD: ========= "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B59D958-F818-48FE-BDF0-53C5A130F79C}" => Key not found. C:\Windows\System32\Tasks\P4G Sidebar => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\P4G Sidebar" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{865C1D08-B155-4071-B5F3-347C6FD3B20A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{865C1D08-B155-4071-B5F3-347C6FD3B20A}" => Key deleted successfully. C:\Windows\System32\Tasks\P4GIntlCtrl => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\P4GIntlCtrl" => Key deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\EeeStorageBackup => value deleted successfully. "HKCR\PROTOCOLS\Handler\Handler: livecall - No CLSID Value" => Key not found. "HKCR\PROTOCOLS\Handler\Handler: ms-help - No CLSID Value" => Key not found. "HKCR\PROTOCOLS\Handler\Handler: msnim - No CLSID Value" => Key not found. "HKCR\PROTOCOLS\Handler\Handler: wlmailhtml - No CLSID Value" => Key not found. C:\Users\Agata\AppData\Roaming\Asus WebStorage => Moved successfully. "C:\Users\Agata\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok" => File/Directory not found. C:\Users\Agata\AppData\Local\Google\Chrome\User Data\Default\Local Storage\*localstorage* => Moved successfully. C:\Users\Agata\AppData\Local\Google\Chrome\User Data\Default\Preferences => Moved successfully. ========= reg add HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\javascript /v CLSID /t REG_SZ /d {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} /f ========= Bť¤D: Odmowa dost©pu. ========= End of Reg: ========= ========= reg add HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\mailto /v CLSID /t REG_SZ /d {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} /f ========= Bť¤D: Odmowa dost©pu. ========= End of Reg: ========= ========= reg add HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\res /v CLSID /t REG_SZ /d {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} /f ========= Bť¤D: Odmowa dost©pu. ========= End of Reg: ========= EmptyTemp: => Removed 26.1 MB temporary data. The system needed a reboot. ==== End of Fixlog ====