All processes killed ========== OTL ========== Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{20F5AB16-9F2E-4E92-93F2-ECB9ABB0EC42}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20F5AB16-9F2E-4E92-93F2-ECB9ABB0EC42}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ECFA6619-3337-4200-9B8E-FD8C276E776A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECFA6619-3337-4200-9B8E-FD8C276E776A}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0388404D-6072-4CEB-B521-8F090FEAEE57}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0388404D-6072-4CEB-B521-8F090FEAEE57}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{58F728CA-11C2-4C5F-A32A-F745675271DB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{58F728CA-11C2-4C5F-A32A-F745675271DB}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ECFA6619-3337-4200-9B8E-FD8C276E776A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECFA6619-3337-4200-9B8E-FD8C276E776A}\ not found. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9BCF56B3-CF14-4C78-A07D-35DD410A8C11}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BCF56B3-CF14-4C78-A07D-35DD410A8C11}\ deleted successfully. C:\Program Files\FoxTab\FoxTabTB.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{3F5A62E2-51F2-11D3-A075-CC7364CAE42A} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F5A62E2-51F2-11D3-A075-CC7364CAE42A}\ deleted successfully. File C:\Program Files\FoxTab\FoxTabTB.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AnySend Updater deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\\036DFF850F422203C66D943B81CB3EF3 deleted successfully. C:\Documents and Settings\All Users\Dane aplikacji\036DFF850F422203C66D943B81CB3EF3\036DFF850F422203C66D943B81CB3EF3.exe moved successfully. Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7} C:\WINDOWS\Downloaded Program Files\gp.inf not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found. ========== FILES ========== C:\Documents and Settings\Mariuszek\Pulpit\Live Security Platinum.lnk moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\036DFF850F422203C66D943B81CB3EF3 folder moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\AnySend folder moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\Ask\APN-Stub folder moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\Ask folder moved successfully. C:\Documents and Settings\Mariuszek\Y2Y2 moved successfully. C:\Documents and Settings\Mariuszek\Y¤Y¤ moved successfully. C:\Program Files\FoxTab folder moved successfully. C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job moved successfully. ========== REGISTRY ========== Registry key HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Live Security Platinum\ deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"|"{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" /E : value set successfully! ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 5763025 bytes ->Temporary Internet Files folder emptied: 14083068 bytes ->Flash cache emptied: 56924 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Flash cache emptied: 56468 bytes User: LocalService ->Temp folder emptied: 66016 bytes ->Temporary Internet Files folder emptied: 6371604 bytes User: Mariuszek ->Temp folder emptied: 597230886 bytes ->Temporary Internet Files folder emptied: 16596625 bytes ->Java cache emptied: 108739869 bytes ->Google Chrome cache emptied: 404196227 bytes ->Flash cache emptied: 235634 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 1075433542 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2 126,00 mb OTL by OldTimer - Version 3.2.59.1 log created on 08302012_152426 Files\Folders moved on Reboot... C:\Documents and Settings\Mariuszek\Ustawienia lokalne\Temporary Internet Files\Content.IE5\5HSEVXHU\12227-live-security-platinium-zablokowal-system[1].htm moved successfully. C:\Documents and Settings\Mariuszek\Ustawienia lokalne\Temporary Internet Files\AntiPhishing\A0AB7674-8D67-4F4D-B5E1-96FAEADFB79D.dat moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot...