All processes killed ========== OTL ========== Registry value HKEY_USERS\S-1-5-21-1385047699-1197689655-504847657-1001_Classes\exefile\shell\open\command\\'' updated successfully. File "C:\Users\remik\AppData\Local\wwe.exe" -a "%1" %* not found. Registry key HKEY_USERS\S-1-5-21-1385047699-1197689655-504847657-1001_Classes\.exe\ deleted successfully. Registry key HKEY_USERS\S-1-5-21-1385047699-1197689655-504847657-1001_Classes\exefile\ deleted successfully. HKEY_LOCAL_MACHINE\Software\Classes\.exe\\|exefile /E : value set successfully! ========== FILES ========== C:\Users\remik\AppData\Local\t7wq14l2qs1owh moved successfully. C:\ProgramData\1f2BryYU.dat moved successfully. File\Folder C:\Windows\System32\hj23344.com not found. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public User: remik ->Temp folder emptied: 40098 bytes ->Temporary Internet Files folder emptied: 1013395 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Google Chrome cache emptied: 8338742 bytes ->Apple Safari cache emptied: 0 bytes ->Opera cache emptied: 8477157 bytes ->Flash cache emptied: 456 bytes User: TEMP ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 242039 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 17,00 mb OTL by OldTimer - Version 3.2.31.0 log created on 12032011_124803 Files\Folders moved on Reboot... C:\Windows\temp\vmware-SYSTEM\vmware-usbarb-SYSTEM-3976.log moved successfully. Registry entries deleted on Reboot...