All processes killed ========== OTL ========== Service vproeventmonitor stopped successfully! Service vproeventmonitor deleted successfully! File %systemroot%\system32\ScFBPNT3.dll not found. Service fpjojfbda stopped successfully! Service fpjojfbda deleted successfully! File C:\WINDOWS\system32\lvvtnutg.dll not found. Service wpsdrvnt stopped successfully! Service wpsdrvnt deleted successfully! File C:\WINDOWS\system32\drivers\wpsdrvnt.sys not found. Service VOBID stopped successfully! Service VOBID deleted successfully! File system32\DRIVERS\vobid.sys not found. Service Teefer stopped successfully! Service Teefer deleted successfully! File SYSTEM32\Drivers\Teefer.sys not found. Service STAC97 stopped successfully! Service STAC97 deleted successfully! File system32\drivers\STAC97.sys not found. Service SBRE stopped successfully! Service SBRE deleted successfully! File C:\WINDOWS\system32\drivers\SBREdrv.sys not found. Service Lbd stopped successfully! Service Lbd deleted successfully! File system32\DRIVERS\Lbd.sys not found. Service Lavasoft Kernexplorer stopped successfully! Service Lavasoft Kernexplorer deleted successfully! File C:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys not found. Service ENTECH stopped successfully! Service ENTECH deleted successfully! File C:\WINDOWS\system32\DRIVERS\ENTECH.sys not found. Service dtscsi stopped successfully! Service dtscsi deleted successfully! File C:\WINDOWS\System32\Drivers\dtscsi.sys not found. Service cpuz134 stopped successfully! Service cpuz134 deleted successfully! File C:\DOCUME~1\szeffel\USTAWI~1\Temp\cpuz134\cpuz134_x32.sys not found. Service cmuda stopped successfully! Service cmuda deleted successfully! File system32\drivers\cmuda.sys not found. Service catchme stopped successfully! Service catchme deleted successfully! File C:\ComboFix\catchme.sys not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D7562AE-8EF6-416d-A838-AB665251703A}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1645A33F-0A96-4315-904E-29E188E7720E}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1645A33F-0A96-4315-904E-29E188E7720E}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F3A28E5B-E4D1-4EDA-869A-F50889996CCA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3A28E5B-E4D1-4EDA-869A-F50889996CCA}\ not found. HKU\S-1-5-21-515967899-1532298954-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully! Registry key HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D7562AE-8EF6-416d-A838-AB665251703A}\ not found. Registry key HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found. Registry key HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\SearchScopes\{103521B8-A8AD-40FD-B0E9-6F662816F84B}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{103521B8-A8AD-40FD-B0E9-6F662816F84B}\ not found. Registry key HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\SearchScopes\{179F5766-258D-4165-8110-1C5202BC2721}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{179F5766-258D-4165-8110-1C5202BC2721}\ not found. Registry key HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\SearchScopes\{F3A28E5B-E4D1-4EDA-869A-F50889996CCA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3A28E5B-E4D1-4EDA-869A-F50889996CCA}\ not found. C:\Program Files\Mozilla Firefox\extensions\ffxtlbr@babylon.com\defaults\preferences folder moved successfully. C:\Program Files\Mozilla Firefox\extensions\ffxtlbr@babylon.com\defaults folder moved successfully. C:\Program Files\Mozilla Firefox\extensions\ffxtlbr@babylon.com folder moved successfully. C:\Program Files\Mozilla Firefox\extensions\quickstores@quickstores.de\chrome folder moved successfully. C:\Program Files\Mozilla Firefox\extensions\quickstores@quickstores.de folder moved successfully. C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml moved successfully. C:\Program Files\Mozilla Firefox\searchplugins\fcmdSrch.xml moved successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D}\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}\ not found. Registry value HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found. ========== FILES ========== C:\WINDOWS\ecokzifw.exe moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\brmcrftcehinhtd folder moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\ahmhyevpiorguit moved successfully. ========== REGISTRY ========== HKEY_USERS\S-1-5-21-515967899-1532298954-839522115-1003\Software\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"|"{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /E : value set successfully! Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\6005:TCP deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 67 bytes User: LocalService ->Temp folder emptied: 66016 bytes ->Temporary Internet Files folder emptied: 32902 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 67 bytes ->Flash cache emptied: 2502 bytes User: szeffel ->Temp folder emptied: 1643 bytes ->Temporary Internet Files folder emptied: 78010930 bytes ->Java cache emptied: 54798834 bytes ->FireFox cache emptied: 92909773 bytes ->Flash cache emptied: 1492118 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 1156795 bytes %systemroot%\System32 .tmp files removed: 2596 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 483 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 218,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 09292012_214308 Files\Folders moved on Reboot... PendingFileRenameOperations files... Registry entries deleted on Reboot...