:Services :Processes KILLALLPROCESSES :OTL O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [HWSetup] \HWSetup.exe hwSetUP File not found O4 - HKLM..\Run: [NDSTray.exe] NDSTray.exe File not found O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Reg Error: Key error.) O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} http://www.systemreq.../sysreqlab2.cab (Reg Error: Key error.) O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} http://download.divx...owserPlugin.cab (Reg Error: Key error.) O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (Reg Error: Key error.) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.ma...r/ultrashim.cab (Reg Error: Key error.) [2011/11/01 23:43:02 | 000,000,000 | ---D | C] -- C:\Users\Emiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Restore [2011/11/02 00:14:40 | 000,000,304 | ---- | M] () -- C:\ProgramData\~6DSS92c31Apgjk [2011/11/01 23:46:18 | 000,000,440 | ---- | M] () -- C:\ProgramData\6DSS92c31Apgjk [2011/11/01 23:43:02 | 000,000,644 | ---- | M] () -- C:\Users\Emiko\Application Data\Microsoft\Internet Explorer\Quick Launch\System Restore.lnk [2011/11/02 00:41:20 | 000,000,644 | ---- | C] () -- C:\Users\Emiko\Application Data\Microsoft\Internet Explorer\Quick Launch\System Restore.lnk [2011/11/02 00:14:40 | 000,000,304 | ---- | C] () -- C:\ProgramData\~6DSS92c31Apgjk [2011/11/01 23:42:57 | 000,000,440 | ---- | C] () -- C:\ProgramData\6DSS92c31Apgjk @Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:20DB61D6 @Alternate Data Stream - 111 bytes -> C:\ProgramData\TEMP:5D10517E :Reg :Files echo,Y|cacls "%WinDir%\system32\drivers\etc\hosts" /G everyone:f /c ipconfig /flushdns /c :Commands [purity] [resethosts] [CreateRestorePoint] [emptytemp] [EMPTYFLASH]