1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179. | All processes killed
========== PROCESSES ==========
No active process named Explorer.EXE was found!
========== OTL ==========
HKCU\\SOFTWARE\\Microsoft\\Internet Explorer\\Main\\\\Start Page| /E : value set successfully!
Prefs.js: \"Ask\" removed from browser.search.defaultenginename
Prefs.js: \"Ask\" removed from browser.search.order.1
Prefs.js: \"http://toolbar.ask.com/toolbarv/askRedirect?o=101761&gct=&gc=1&q=\" removed from keyword.URL
C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D}\\META-INF folder moved successfully.
C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D}\\defaults\\preferences folder moved successfully.
C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D}\\defaults folder moved successfully.
Folder move failed. C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D}\\chrome scheduled to be moved on reboot.
Folder move failed. C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D} scheduled to be moved on reboot.
C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\searchplugins\\ask.xml moved successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Winlogon\\Notify\\AtiExtEvent\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\ShellExecuteHooks\\\\{68101905-D80F-4788-96F6-98618116178A} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{68101905-D80F-4788-96F6-98618116178A}\\ deleted successfully.
C:\\WINDOWS\\system32\\flashadgmn32.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\ShellExecuteHooks\\\\{BB4C402F-882A-4526-8C08-51278EA437C1} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{BB4C402F-882A-4526-8C08-51278EA437C1}\\ deleted successfully.
C:\\WINDOWS\\system32\\e8main1.dll moved successfully.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{3779018d-2cd2-11de-bb33-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{3779018d-2cd2-11de-bb33-000e50d95a49}\\ not found.
File F:\\ej10fkdo.bat not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{3779018d-2cd2-11de-bb33-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{3779018d-2cd2-11de-bb33-000e50d95a49}\\ not found.
File F:\\ej10fkdo.bat not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{5dee78b2-b2af-11de-bd19-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{5dee78b2-b2af-11de-bd19-000e50d95a49}\\ not found.
File G:\\se12ydam.exe not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{5dee78b2-b2af-11de-bd19-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{5dee78b2-b2af-11de-bd19-000e50d95a49}\\ not found.
File G:\\se12ydam.exe not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{729fede4-bfe9-11de-bd42-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{729fede4-bfe9-11de-bd42-000e50d95a49}\\ not found.
File G:\\wcgswa.exe not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{729fede4-bfe9-11de-bd42-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{729fede4-bfe9-11de-bd42-000e50d95a49}\\ not found.
File G:\\wcgswa.exe not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\ not found.
File F:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\ not found.
File F:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{84312a0d-fb52-11dd-ba5e-000e50d95a49}\\ not found.
File F:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\ not found.
File F:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\ not found.
File F:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{9f4da60a-371e-11de-bb56-000e50d95a49}\\ not found.
File F:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{adcf2b3c-5905-11de-bbed-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{adcf2b3c-5905-11de-bbed-000e50d95a49}\\ not found.
File F:\\w.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{adcf2b3c-5905-11de-bbed-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{adcf2b3c-5905-11de-bbed-000e50d95a49}\\ not found.
File F:\\w.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{b3898f86-93cf-11de-bcb9-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{b3898f86-93cf-11de-bcb9-000e50d95a49}\\ not found.
File G:\\a2g21.exe not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{b3898f86-93cf-11de-bcb9-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{b3898f86-93cf-11de-bcb9-000e50d95a49}\\ not found.
File G:\\a2g21.exe not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{efface94-c700-11de-bd54-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{efface94-c700-11de-bd54-000e50d95a49}\\ not found.
File G:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{efface94-c700-11de-bd54-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{efface94-c700-11de-bd54-000e50d95a49}\\ not found.
File G:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{efface94-c700-11de-bd54-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{efface94-c700-11de-bd54-000e50d95a49}\\ not found.
File G:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{efface95-c700-11de-bd54-000e50d95a49}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{efface95-c700-11de-bd54-000e50d95a49}\\ not found.
File H:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{efface95-c700-11de-bd54-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{efface95-c700-11de-bd54-000e50d95a49}\\ not found.
File H:\\2fiji.com not found.
Registry key HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\MountPoints2\\{efface95-c700-11de-bd54-000e50d95a49}\\ not found.
Registry key HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\CLSID\\{efface95-c700-11de-bd54-000e50d95a49}\\ not found.
File H:\\2fiji.com not found.
C:\\xmor.exe moved successfully.
C:\\ohd.exe moved successfully.
C:\\2id9.exe moved successfully.
C:\\k8jc.exe moved successfully.
C:\\mbvd.exe moved successfully.
C:\\mbdm.exe moved successfully.
C:\\q3kku.exe moved successfully.
C:\\cs6phv6d.exe moved successfully.
C:\\wfx062.exe moved successfully.
C:\\ngp8l.exe moved successfully.
C:\\wu1n.exe moved successfully.
C:\\i9bwjpqc.exe moved successfully.
File C:\\ohd.exe not found.
File C:\\2id9.exe not found.
File C:\\k8jc.exe not found.
File C:\\mbvd.exe not found.
File C:\\mbdm.exe not found.
File C:\\q3kku.exe not found.
File C:\\cs6phv6d.exe not found.
File C:\\wfx062.exe not found.
File C:\\ngp8l.exe not found.
File C:\\wu1n.exe not found.
File C:\\i9bwjpqc.exe not found.
========== REGISTRY ==========
Registry key HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\explorer\\mountpoints2\\ deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: All Users
User: All Users.WINDOWS
User: Cys
->Temp folder emptied: 13470700 bytes
->Temporary Internet Files folder emptied: 7509105 bytes
->FireFox cache emptied: 74017236 bytes
User: Cys.BLASZAKIII
->Temp folder emptied: 37984561 bytes
->Temporary Internet Files folder emptied: 1125656230 bytes
->FireFox cache emptied: 87379281 bytes
->Google Chrome cache emptied: 0 bytes
->Opera cache emptied: 4559681 bytes
User: CYS~1~BLA
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User.WINDOWS
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: LocalService.ZARZĄDZANIE NT
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
User: NetworkService.ZARZĄDZANIE NT
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 33114523 bytes
%systemroot%\\System32 .tmp files removed: 8268206 bytes
Windows Temp folder emptied: 777145 bytes
RecycleBin emptied: 5660852759 bytes
Total Files Cleaned = 6 727,00 mb
OTL by OldTimer - Version 3.1.19.0 log created on 12222009_132124
Files\\Folders moved on Reboot...
C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D}\\chrome folder moved successfully.
C:\\Documents and Settings\\Cys.BLASZAKIII\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\sffdk3nd.default\\extensions\\{E9A1DEE0-C623-4439-8932-001E7D17607D} folder moved successfully.
C:\\Documents and Settings\\Cys.BLASZAKIII\\Ustawienia lokalne\\Temp\\cvasds0.dll moved successfully.
Registry entries deleted on Reboot... |