All processes killed ========== FILES ========== C:\WINDOWS\System32\drivers\etc\hîsts moved successfully. C:\WINDOWS\update.1 folder moved successfully. C:\WINDOWS\update.2 folder moved successfully. C:\WINDOWS\update.3 folder moved successfully. C:\WINDOWS\update.5.0 folder moved successfully. C:\WINDOWS\update.8.1 folder moved successfully. C:\WINDOWS\update.tray-2-0 folder moved successfully. C:\WINDOWS\update.tray-2-0-lnk folder moved successfully. C:\WINDOWS\update.tray-7-0 folder moved successfully. C:\WINDOWS\update.tray-7-0-lnk folder moved successfully. C:\WINDOWS\update.tray-8-0 folder moved successfully. C:\WINDOWS\update.tray-8-0-lnk folder moved successfully. C:\WINDOWS\av_ico folder moved successfully. C:\WINDOWS\ufa folder moved successfully. C:\WINDOWS\ufa.rar moved successfully. C:\WINDOWS\phoenix\kernels\poclbm folder moved successfully. C:\WINDOWS\phoenix\kernels\phatk folder moved successfully. C:\WINDOWS\phoenix\kernels folder moved successfully. C:\WINDOWS\phoenix folder moved successfully. C:\WINDOWS\phoenix.rar moved successfully. C:\WINDOWS\rpcminer.rar moved successfully. C:\WINDOWS\geoiplist moved successfully. C:\WINDOWS\geoiplist.rar moved successfully. C:\WINDOWS\unrar.exe moved successfully. C:\WINDOWS\info1 moved successfully. C:\WINDOWS\loader2.exe_ok moved successfully. C:\Program Files\mozilla firefox\searchplugins\seekservice133.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\seekservice135.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\seekservice137.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\seekservice139.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\seekservice145.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\zwunzi128.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\zwunzi129.xml moved successfully. C:\Program Files\mozilla firefox\searchplugins\BearShareWebSearch.xml moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\searchplugins\askcom.xml moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\searchplugins\BearShareWebSearch.xml moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\searchplugins\conduit.xml moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\searchplugin folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\META-INF folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\lib folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\DualPackage folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\defaults folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\components folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com\chrome folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\engine@conduit.com folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}\searchplugin folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}\modules folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}\META-INF folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}\defaults folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}\components folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}\chrome folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\{c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\defaults\preferences folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\defaults folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\content\imgs\mnRadio folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\content\imgs\flgs folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\content\imgs folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\content folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com\components folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\Mozilla\Firefox\Profiles\77yihvzx.default\extensions\ffxtlbr@babylon.com folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\BabylonToolbar\BabylonToolbar folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\BabylonToolbar folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\PriceGong\Data folder moved successfully. C:\Documents and Settings\Home\Dane aplikacji\PriceGong folder moved successfully. ========== REGISTRY ========== Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Documents and Settings\Home\Moje dokumenty\Pobieranie\Flash-Player.exe deleted successfully. Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\update.1\svchost.exe deleted successfully. Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\services32.exe deleted successfully. Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\update.2\svchost.exe deleted successfully. Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\update.3\svchost.exe deleted successfully. ========== OTL ========== Prefs.js: "Softonic-Polska Customized Web Search" removed from browser.search.defaultthis.engineName Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2530240&SearchSource=3&q={searchTerms}" removed from browser.search.defaulturl Prefs.js: engine@conduit.com:3.2.5.2 removed from extensions.enabledItems Prefs.js: ffxtlbr@babylon.com:1.1.3 removed from extensions.enabledItems Prefs.js: {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf}:3.6.0.10 removed from extensions.enabledItems Prefs.js: "http://www.google.com/search?ie=UTF-8&oe=utf-8&q=" removed from keyword.URL Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@tools.google.com/Google Update;version=8\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{0974BA1E-64EC-11DE-B2A5-E43756D89593} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0974BA1E-64EC-11DE-B2A5-E43756D89593}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully. Registry value HKEY_USERS\S-1-5-21-1085031214-1604221776-1177238915-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\EnableLUA deleted successfully. ========== COMMANDS ========== [EMPTYFLASH] User: Administrator User: All Users User: Default User User: Home ->Flash cache emptied: 88006 bytes User: LocalService User: NetworkService Total Flash Files Cleaned = 0,00 mb [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Home ->Temp folder emptied: 65020387 bytes ->Temporary Internet Files folder emptied: 15588860 bytes ->Java cache emptied: 60274868 bytes ->FireFox cache emptied: 51624028 bytes ->Google Chrome cache emptied: 101382328 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33229 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33237 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 2442134 bytes %systemroot%\System32 .tmp files removed: 2596 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 213247 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 283,00 mb OTL by OldTimer - Version 3.2.26.1 log created on 09092011_173634 Files\Folders moved on Reboot... Registry entries deleted on Reboot...