All processes killed ========== OTL ========== Service xcqxz stopped successfully! Service xcqxz deleted successfully! File move failed. C:\WINDOWS\system32\chjvzdd.dll scheduled to be moved on reboot. xcqxz removed from NetSvcs value successfully! ========== REGISTRY ========== HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! Registry key HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2\ deleted successfully. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847}\ not found. ========== FILES ========== [color=#A23BEC]< netsh firewall reset /C >[/color] Ok. C:\Documents and Settings\Herman\Pulpit\cmd.bat deleted successfully. C:\Documents and Settings\Herman\Pulpit\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Herman ->Temp folder emptied: 328483658 bytes ->Temporary Internet Files folder emptied: 9804828 bytes ->FireFox cache emptied: 2525570 bytes ->Opera cache emptied: 415532 bytes ->Flash cache emptied: 13008 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 201202 bytes User: UpdatusUser ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 3812746 bytes %systemroot%\System32 .tmp files removed: 2596 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 16384 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 329,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 01282013_173924 Files\Folders moved on Reboot... C:\WINDOWS\system32\chjvzdd.dll moved successfully. C:\WINDOWS\temp\Perflib_Perfdata_a08.dat moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot...