All processes killed ========== FILES ========== C:\Users\KAROL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.lnk moved successfully. C:\ProgramData\lsass.exe moved successfully. C:\ProgramData\0tbpw.pad moved successfully. C:\ProgramData\Babylon folder moved successfully. C:\Users\KAROL\AppData\Roaming\Babylon folder moved successfully. C:\Users\KAROL\AppData\Roaming\YourFileDownloader folder moved successfully. C:\Windows\System32\drivers\str.sys moved successfully. C:\Windows\System32\crt.dat moved successfully. C:\Windows\System32\shimg.dll moved successfully. C:\Program Files\mozilla firefox\searchplugins\babylon.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\v9.xml moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data\Default\User StyleSheets folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data\Default\Plugin Data\Google Gears folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data\Default\Plugin Data folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data\Default\Local Storage folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data\Default\Cache folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data\Default folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome\User Data folder moved successfully. C:\Users\KAROL\AppData\Local\Google\Chrome folder moved successfully. C:\Users\KAROL\AppData\Roaming\Panda Security\Panda Internet Security 2010 folder moved successfully. C:\Users\KAROL\AppData\Roaming\Panda Security folder moved successfully. [color=#A23BEC]< netsh advfirewall reset /C >[/color] WystĄpiˆ bˆĄd podczas kontaktowania si© z zaporĄ. Upewnij si©, ľe usˆuga Zapora systemu Windows jest uruchomiona, i pon˘w ľĄdanie. C:\Users\KAROL\Desktop\cmd.bat deleted successfully. C:\Users\KAROL\Desktop\cmd.txt deleted successfully. ========== OTL ========== Registry key HKEY_USERS\S-1-5-21-2580844496-339915642-4209370837-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found. Registry key HKEY_USERS\S-1-5-21-2580844496-339915642-4209370837-1000\Software\Microsoft\Internet Explorer\SearchScopes\{F756994E-FC37-29D0-B6B3-004938757426}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F756994E-FC37-29D0-B6B3-004938757426}\ not found. Registry value HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{b64982b1-d112-42b5-b1e4-d3867c4533f8} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b64982b1-d112-42b5-b1e4-d3867c4533f8}\ not found. C:\ProgramData\Browser Manager\2.3.796.11\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension\content folder moved successfully. C:\ProgramData\Browser Manager\2.3.796.11\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension\components folder moved successfully. C:\ProgramData\Browser Manager\2.3.796.11\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension folder moved successfully. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Search the Web\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avldr\ deleted successfully. Service zknvhwrwvbaqwq stopped successfully! Service zknvhwrwvbaqwq deleted successfully! File C:\Users\KAROL\AppData\Local\Temp\DAT49CB.tmp.exe not found. Service ntportio stopped successfully! Service ntportio deleted successfully! File C:\Users\KAROL\AppData\Local\Temp\u\1310033985\ntportio.sys not found. ========== REGISTRY ========== Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\ deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: KAROL ->Temp folder emptied: 51570018 bytes ->Temporary Internet Files folder emptied: 65721956 bytes ->Java cache emptied: 23881 bytes ->FireFox cache emptied: 694724102 bytes ->Flash cache emptied: 13640 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 632 bytes RecycleBin emptied: 596480 bytes Total Files Cleaned = 775,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 11132012_195434 Files\Folders moved on Reboot... PendingFileRenameOperations files... Registry entries deleted on Reboot...