All processes killed ========== OTL ========== Service pfsvgae stopped successfully! Service pfsvgae deleted successfully! File e:\tmp\pfsvgae.sys not found. Service ElbyVCD stopped successfully! Service ElbyVCD deleted successfully! File C:\windows\System32\DRIVERS\ElbyVCD.sys not found. Service dtscsi stopped successfully! Service dtscsi deleted successfully! File C:\windows\System32\Drivers\dtscsi.sys not found. Service catchme stopped successfully! Service catchme deleted successfully! File C:\ComboFix\catchme.sys not found. Prefs.js: "Yahoo" removed from browser.search.defaultenginename Prefs.js: "http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampie7&query=" removed from browser.search.defaulturl Prefs.js: "Yahoo" removed from browser.search.order.1 Prefs.js: "Yahoo" removed from browser.search.order.2 Prefs.js: "chr-greentree_ff&type=966134" removed from browser.search.param.yahoo-fr Prefs.js: "megaup" removed from browser.search.param.yahoo-fr-cjkt Prefs.js: "Yahoo" removed from browser.search.selectedEngine Prefs.js: dealio@mybrowserbar.com:4.0.2 removed from extensions.enabledItems Prefs.js: searchsettings@spigot.com:1.2.3 removed from extensions.enabledItems Prefs.js: {0b38152b-1b20-484d-a11f-5e04a9b0661f}:5.2.1.1 removed from extensions.enabledItems Prefs.js: "http://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=966134&p=" removed from keyword.URL Starting removal of ActiveX control {00000055-9980-0010-8000-00AA00389B71} C:\WINDOWS\Downloaded Program Files\fhg.inf moved successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{00000055-9980-0010-8000-00AA00389B71}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000055-9980-0010-8000-00AA00389B71}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{00000055-9980-0010-8000-00AA00389B71}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000055-9980-0010-8000-00AA00389B71}\ not found. Starting removal of ActiveX control {00000161-0000-0010-8000-00AA00389B71} C:\WINDOWS\Downloaded Program Files\msaudio.inf moved successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{00000161-0000-0010-8000-00AA00389B71}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000161-0000-0010-8000-00AA00389B71}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{00000161-0000-0010-8000-00AA00389B71}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000161-0000-0010-8000-00AA00389B71}\ not found. Starting removal of ActiveX control {40F576AD-8680-4F9E-9490-99D069CD665F} C:\WINDOWS\Downloaded Program Files\sysreqlabdetect.inf moved successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{40F576AD-8680-4F9E-9490-99D069CD665F}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40F576AD-8680-4F9E-9490-99D069CD665F}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{40F576AD-8680-4F9E-9490-99D069CD665F}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{40F576AD-8680-4F9E-9490-99D069CD665F}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40F576AD-8680-4F9E-9490-99D069CD665F}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ic32pp\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBCA9F81-8F4F-11D2-90FF-0080C83D3571}\ deleted successfully. File {BBCA9F81-8F4F-11D2-90FF-0080C83D3571} - C:\WINDOWS\wc98pp.dll File not found not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{57BCA5FA-5DBB-45a2-B558-1755C3F6253B} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}\ deleted successfully. Registry value HKEY_USERS\S-1-5-21-606747145-926492609-839522115-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\{57BCA5FA-5DBB-45a2-B558-1755C3F6253B} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57BCA5FA-5DBB-45a2-B558-1755C3F6253B}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C451C08A-EC37-45DF-AAAD-18B51AB5E837}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C451C08A-EC37-45DF-AAAD-18B51AB5E837}\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2}\ deleted successfully. Registry value HKEY_USERS\S-1-5-21-606747145-926492609-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2E608F70-C430-4BC5-96F6-608E02EBA5B2} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E608F70-C430-4BC5-96F6-608E02EBA5B2}\ not found. Registry value HKEY_USERS\S-1-5-21-606747145-926492609-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}\ not found. C:\Documents and Settings\jackob\Dane aplikacji\Mozilla\Firefox\Profiles\v5rpwq5v.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\META-INF folder moved successfully. C:\Documents and Settings\jackob\Dane aplikacji\Mozilla\Firefox\Profiles\v5rpwq5v.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components folder moved successfully. C:\Documents and Settings\jackob\Dane aplikacji\Mozilla\Firefox\Profiles\v5rpwq5v.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\chrome folder moved successfully. C:\Documents and Settings\jackob\Dane aplikacji\Mozilla\Firefox\Profiles\v5rpwq5v.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f} folder moved successfully. C:\Documents and Settings\jackob\Dane aplikacji\Mozilla\Firefox\Profiles\v5rpwq5v.default\searchplugins\aolsearch.xml moved successfully. C:\Documents and Settings\jackob\Dane aplikacji\Mozilla\Firefox\Profiles\v5rpwq5v.default\searchplugins\winamp-search.xml moved successfully. ========== COMMANDS ========== Restore points cleared and new OTL Restore Point set! [EMPTYFLASH] User: Administrator User: All Users User: Default User User: jackob ->Flash cache emptied: 146247 bytes User: LocalService User: NetworkService Total Flash Files Cleaned = 0,00 mb [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: jackob ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 96708 bytes ->Java cache emptied: 16842099 bytes ->FireFox cache emptied: 60365098 bytes ->Google Chrome cache emptied: 55926931 bytes ->Opera cache emptied: 22495948 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 67 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 2465167 bytes %systemroot%\System32 .tmp files removed: 18080460 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes Session Manager Tmp folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 168,00 mb OTL by OldTimer - Version 3.2.10.0 log created on 08272010_181628 Files\Folders moved on Reboot... Registry entries deleted on Reboot...