========== OTL ========== Service wwsecsvc stopped successfully! Service wwsecsvc deleted successfully! File %systemroot%\system32\psdistributionagent.dll File not found not found. Service wg4n stopped successfully! Service wg4n deleted successfully! File %systemroot%\system32\abiosdsk.dll File not found not found. Service w800mdm stopped successfully! Service w800mdm deleted successfully! File %systemroot%\system32\hpqcxs08.dll File not found not found. Service tga stopped successfully! Service tga deleted successfully! File %systemroot%\system32\cics.region2.dll File not found not found. Service TClass2k stopped successfully! Service TClass2k deleted successfully! File %systemroot%\system32\symantecantibotfilter.dll File not found not found. Service sentinel stopped successfully! Service sentinel deleted successfully! File %systemroot%\system32\smwdm.dll File not found not found. Service s616bus stopped successfully! Service s616bus deleted successfully! File %systemroot%\system32\HssDrv.dll File not found not found. Service ProcObsrv stopped successfully! Service ProcObsrv deleted successfully! File %systemroot%\system32\s125mdfl.dll File not found not found. Service nsengine stopped successfully! Service nsengine deleted successfully! File %systemroot%\system32\ithsgt.dll File not found not found. Service nfmservice stopped successfully! Service nfmservice deleted successfully! File %systemroot%\system32\ZDPSp50.dll File not found not found. Service ixiaendpoint stopped successfully! Service ixiaendpoint deleted successfully! File %systemroot%\system32\upsmonservice.dll File not found not found. Service itchfltr stopped successfully! Service itchfltr deleted successfully! File %systemroot%\system32\zebrmdmc.dll File not found not found. Service ikfileflt stopped successfully! Service ikfileflt deleted successfully! File %systemroot%\system32\samss.dll File not found not found. Service AppMgmt stopped successfully! Service AppMgmt deleted successfully! File %SystemRoot%\System32\appmgmts.dll File not found not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70D46D94-BF1E-45ED-B567-48701376298E}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}\ not found. File oft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab not found. Starting removal of ActiveX control Microsoft XML Parser for Java Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java\DownloadInformation\\INF . Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\Microsoft XML Parser for Java\ not found. C:\Documents and Settings\All Users\Application Data\-c9dn2UZgyWU50vr moved successfully. C:\Documents and Settings\All Users\Application Data\-c9dn2UZgyWU50v moved successfully. C:\Documents and Settings\Reginald\Local Settings\Application Data\8nev7720y4aijfo7rj53c23ebmkg555hr2tuw5212vtqx moved successfully. ========== FILES ========== [color=#A23BEC]< xcopy %Temp%\smtmp\1 "%AllUsersProfile%\Start Menu" /H /I /S /Y /C >[/color] 0 File(s) copied I:\SpywareRemoval\OTL\cmd.bat deleted successfully. I:\SpywareRemoval\OTL\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\2 "%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch" /H /I /S /Y /C >[/color] 0 File(s) copied I:\SpywareRemoval\OTL\cmd.bat deleted successfully. I:\SpywareRemoval\OTL\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\3 "%AppData%\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar" /H /I /S /Y /C >[/color] 0 File(s) copied I:\SpywareRemoval\OTL\cmd.bat deleted successfully. I:\SpywareRemoval\OTL\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\4 "%AllUsersProfile%\Desktop" /H /I /S /Y /C >[/color] 0 File(s) copied I:\SpywareRemoval\OTL\cmd.bat deleted successfully. I:\SpywareRemoval\OTL\cmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYJAVA] User: Administrator User: All Users User: Allison ->Java cache emptied: 18139213 bytes User: Cathy ->Java cache emptied: 0 bytes User: Default User User: LocalService User: NetworkService User: Reginald ->Java cache emptied: 0 bytes Total Java Files Cleaned = 17.00 mb [EMPTYFLASH] User: Administrator User: All Users User: Allison ->Flash cache emptied: 6362 bytes User: Cathy ->Flash cache emptied: 2296 bytes User: Default User ->Flash cache emptied: 56475 bytes User: LocalService ->Flash cache emptied: 87062 bytes User: NetworkService ->Flash cache emptied: 95247 bytes User: Reginald ->Flash cache emptied: 75450 bytes Total Flash Files Cleaned = 0.00 mb C:\WINDOWS\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.42.2 log created on 05032012_081305