All processes killed ========== OTL ========== HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully! Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFD8275B-53D8-4B1A-BD9C-C911369EFFF0}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFD8275B-53D8-4B1A-BD9C-C911369EFFF0}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DD82E7B2-34C6-4440-8155-904CF75CB662}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD82E7B2-34C6-4440-8155-904CF75CB662}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Sweetpacks Communicator deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM Startup deleted successfully. Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93} Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found. Service TuneUpUtilitiesDrv stopped successfully! Service TuneUpUtilitiesDrv deleted successfully! File C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys not found. Service hwusbdev stopped successfully! Service hwusbdev deleted successfully! File system32\DRIVERS\ewusbdev.sys not found. Service hwdatacard stopped successfully! Service hwdatacard deleted successfully! File system32\DRIVERS\ewusbmdm.sys not found. Service ewusbnet stopped successfully! Service ewusbnet deleted successfully! File system32\DRIVERS\ewusbnet.sys not found. ========== FILES ========== C:\user.js moved successfully. C:\windows\System32\Extensions folder moved successfully. C:\windows\System32\searchplugins folder moved successfully. C:\ProgramData\Ask\APN-Stub folder moved successfully. C:\ProgramData\Ask folder moved successfully. C:\ProgramData\Babylon folder moved successfully. C:\Program Files\Common Files\AVG Secure Search\ToolBandTlb folder moved successfully. C:\Program Files\Common Files\AVG Secure Search folder moved successfully. C:\Users\Dorota\AppData\Roaming\Babylon folder moved successfully. C:\Users\Dorota\AppData\Roaming\HCM Updater\Downloads folder moved successfully. C:\Users\Dorota\AppData\Roaming\HCM Updater folder moved successfully. C:\Users\Dorota\AppData\Roaming\OpenCandy\363582A0BC5147CBAF89A13203A7BAB0 folder moved successfully. C:\Users\Dorota\AppData\Roaming\OpenCandy\1E3573AF2BAA4E71ACAB7529E6BCF37A folder moved successfully. C:\Users\Dorota\AppData\Roaming\OpenCandy folder moved successfully. C:\Users\Dorota\AppData\Roaming\TuneUp Software\TU2013\TuningIndex folder moved successfully. C:\Users\Dorota\AppData\Roaming\TuneUp Software\TU2013\StartUp Manager folder moved successfully. C:\Users\Dorota\AppData\Roaming\TuneUp Software\TU2013\Dashboard folder moved successfully. C:\Users\Dorota\AppData\Roaming\TuneUp Software\TU2013\Backups folder moved successfully. C:\Users\Dorota\AppData\Roaming\TuneUp Software\TU2013 folder moved successfully. C:\Users\Dorota\AppData\Roaming\TuneUp Software folder moved successfully. C:\Program Files\TuneUp Utilities 2013 folder moved successfully. C:\ProgramData\TuneUp Software\TuneUp Utilities 2013 folder moved successfully. C:\ProgramData\TuneUp Software\TuneUp Utilities\Program Statistics folder moved successfully. C:\ProgramData\TuneUp Software\TuneUp Utilities folder moved successfully. C:\ProgramData\TuneUp Software\TU2013 folder moved successfully. C:\ProgramData\TuneUp Software folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Temp folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\PepperFlash folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\User StyleSheets folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\Plugin Data\Google Gears folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\Plugin Data folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\Local Storage folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\JumpListIconsOld folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\JumpListIcons folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\Extensions folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default\Cache folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data\Default folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome\User Data folder moved successfully. C:\Users\Dorota\AppData\Local\Google\Chrome folder moved successfully. [color=#A23BEC]< rd /s /q C:\CCE_Quarantine /C >[/color] c:\Users\Dorota\Downloads\cmd.bat deleted successfully. c:\Users\Dorota\Downloads\cmd.txt deleted successfully. ========== REGISTRY ========== Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Search Bar deleted successfully. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\ deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temporary Internet Files folder emptied: 0 bytes User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Dorota ->Temp folder emptied: 46844 bytes ->Temporary Internet Files folder emptied: 22356188 bytes ->Java cache emptied: 329339928 bytes ->FireFox cache emptied: 87984312 bytes ->Flash cache emptied: 88271 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 4240959 bytes RecycleBin emptied: 864622 bytes Total Files Cleaned = 424,00 mb OTL by OldTimer - Version 3.2.55.0 log created on 05172013_124047 Files\Folders moved on Reboot... C:\windows\temp\HS.log moved successfully. PendingFileRenameOperations files... File C:\windows\temp\HS.log not found! Registry entries deleted on Reboot...