All processes killed ========== OTL ========== Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{F3FEE66E-E034-436a-86E4-9690573BEE8A} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3FEE66E-E034-436a-86E4-9690573BEE8A}\ not found. HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully! Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{472734EA-242A-422B-ADF8-83D1E48CC825} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{472734EA-242A-422B-ADF8-83D1E48CC825}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{4B3803EA-5230-4DC3-A7FC-33638F3D3542} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MS Defender deleted successfully. Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\7-Zip deleted successfully. File move failed. C:\Documents and Settings\Właściciel\Dane aplikacji\CA2D91.exe scheduled to be moved on reboot. C:\Documents and Settings\Właściciel\Pulpit\Live Security Platinum.lnk moved successfully. C:\Documents and Settings\Właściciel\Menu Start\Programy\Live Security Platinum folder moved successfully. C:\Documents and Settings\Właściciel\Dane aplikacji\Search Settings\temp folder moved successfully. C:\Documents and Settings\Właściciel\Dane aplikacji\Search Settings\res folder moved successfully. C:\Documents and Settings\Właściciel\Dane aplikacji\Search Settings folder moved successfully. ========== REGISTRY ========== Registry key HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2\ deleted successfully. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Opera cache emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Test User: Test.MISKOWSKI ->Temp folder emptied: 45585 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Opera cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: UpdatusUser ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Właściciel ->Temp folder emptied: 239920925 bytes ->Temporary Internet Files folder emptied: 257048428 bytes ->Java cache emptied: 91643021 bytes ->Google Chrome cache emptied: 163694813 bytes ->Opera cache emptied: 25733170 bytes ->Flash cache emptied: 3040783 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes RecycleBin emptied: 4045797731 bytes Total Files Cleaned = 4 603,00 mb OTL by OldTimer - Version 3.2.53.0 log created on 06292012_223708 Files\Folders moved on Reboot... C:\Documents and Settings\Właściciel\Dane aplikacji\CA2D91.exe moved successfully. PendingFileRenameOperations files... File C:\Documents and Settings\Właściciel\Dane aplikacji\CA2D91.exe not found! Registry entries deleted on Reboot...