All processes killed ========== FILES ========== C:\Windows\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\support@predictad.com\defaults\preferences folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\support@predictad.com\defaults folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\support@predictad.com\chrome\content folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\support@predictad.com\chrome folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\support@predictad.com folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\vshare@toolbar\modules folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\vshare@toolbar\locale\en-US folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\vshare@toolbar\locale folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\vshare@toolbar\components folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\vshare@toolbar\chrome folder moved successfully. C:\Users\Madzia\AppData\Roaming\mozilla\Firefox\Profiles\5nv3ngd3.default\extensions\vshare@toolbar folder moved successfully. C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\5nv3ngd3.default\searchplugins\askcom.xml moved successfully. ========== OTL ========== Prefs.js: "Ask.com" removed from browser.search.defaultengine Prefs.js: "Ask.com" removed from browser.search.defaultenginename Prefs.js: "Ask.com" removed from browser.search.order.1 Prefs.js: DTToolbar@toolbarnet.com:1.1.1.0014 removed from extensions.enabledItems Prefs.js: dealio@mybrowserbar.com:4.0.2 removed from extensions.enabledItems Prefs.js: searchsettings@spigot.com:1.2.3 removed from extensions.enabledItems Prefs.js: vshare@toolbar:1.0.0 removed from extensions.enabledItems Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D}\ deleted successfully. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully. 64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. 64bit-Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5.5ServiceManager deleted successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SearchSettings deleted successfully. Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully. Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge deleted successfully. Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Corel Photo Downloader deleted successfully. Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Windows\CurrentVersion\Run\\T7PKEYSDPX deleted successfully. Registry value HKEY_USERS\S-1-5-21-324691334-3929128139-3163752591-1000\Software\Microsoft\Windows\CurrentVersion\Run\\TorrentEasy_7f296c563714e6552e96a4a33711a94501beec82 deleted successfully. ========== REGISTRY ========== Registry key HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\\ deleted successfully. HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\"Start Page"|"about:blank" /E : value set successfully! ========== COMMANDS ========== [EMPTYFLASH] User: All Users User: Default ->Flash cache emptied: 56468 bytes User: Default User ->Flash cache emptied: 0 bytes User: Madzia ->Flash cache emptied: 284581 bytes User: Public Total Flash Files Cleaned = 0.00 mb [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Madzia ->Temp folder emptied: 3708819627 bytes ->Temporary Internet Files folder emptied: 82024965 bytes ->Java cache emptied: 65558171 bytes ->FireFox cache emptied: 674289600 bytes ->Google Chrome cache emptied: 405464158 bytes ->Flash cache emptied: 0 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 245841237 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 85396 bytes RecycleBin emptied: 2150698989 bytes Total Files Cleaned = 6,993.00 mb OTL by OldTimer - Version 3.2.26.1 log created on 07262011_111032 Files\Folders moved on Reboot... C:\Users\Madzia\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. Registry entries deleted on Reboot...