All processes killed ========== FILES ========== C:\autorun.inf moved successfully. D:\autorun.inf moved successfully. E:\autorun.inf moved successfully. C:\gryvee.exe moved successfully. gryvee.exe not found in D:\ gryvee.exe not found in E:\ [color=#A23BEC]< netsh firewall reset /C >[/color] Ok. C:\Documents and Settings\Stepien\Pulpit\cmd.bat deleted successfully. C:\Documents and Settings\Stepien\Pulpit\cmd.txt deleted successfully. ========== OTL ========== Service ddhmobf stopped successfully! Service ddhmobf deleted successfully! File move failed. C:\WINDOWS\system32\jvrlkzi.dll scheduled to be moved on reboot. Error: Unable to stop service amsint32! Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\amsint32 deleted successfully. File C:\WINDOWS\system32\drivers\plnul.sys not found. Registry value HKEY_USERS\S-1-5-21-789336058-1275210071-1606980848-1003\Software\Microsoft\Windows\CurrentVersion\Run\\EXPLORER.EXE deleted successfully. C:\WINDOWS\system32\EXPLORER.EXE moved successfully. Registry value HKEY_USERS\S-1-5-21-789336058-1275210071-1606980848-1003\Software\Microsoft\Windows\CurrentVersion\Run\\wsctf.exe deleted successfully. ========== REGISTRY ========== HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\"Userinit"|"C:\\WINDOWS\\system32\\userinit.exe," /E : value set successfully! Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\ deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Stepien ->Temp folder emptied: 22634818 bytes ->Temporary Internet Files folder emptied: 1200456 bytes ->FireFox cache emptied: 350766755 bytes ->Flash cache emptied: 23274 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 2352022 bytes %systemroot%\System32 .tmp files removed: 2596 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 24706433 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 383,00 mb OTL by OldTimer - Version 3.2.69.0 log created on 03112013_183608 Files\Folders moved on Reboot... C:\WINDOWS\system32\jvrlkzi.dll moved successfully. File\Folder C:\WINDOWS\temp\Perflib_Perfdata_774.dat not found! PendingFileRenameOperations files... Registry entries deleted on Reboot...