All processes killed ========== OTL ========== Service MyWebSearchService stopped successfully! Service MyWebSearchService deleted successfully! File C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwssvc.exe not found. Registry key HKEY_USERS\S-1-5-21-1935655697-484763869-725345543-1003\Software\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56256A51-B582-467e-B8D4-7786EDA79AE0}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@mywebsearch.com/Plugin\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\m3ffxtbr@mywebsearch.com deleted successfully. C:\Program Files\MyWebSearch\bar\1.bin\ThirdPartyInstallers folder moved successfully. C:\Program Files\MyWebSearch\bar\1.bin\chrome folder moved successfully. C:\Program Files\MyWebSearch\bar\1.bin folder moved successfully. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\&Search\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD}\ deleted successfully. C:\Program Files\vShare.tv plugin\BarLcher.dll moved successfully. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99079a25-328f-4bd4-be04-00955acaa0a7}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}\ not found. File C:\Program Files\DealPly\DealPlyIE.dll not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C26CD490-5F01-41E3-B150-EB29F19DA056}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C26CD490-5F01-41E3-B150-EB29F19DA056}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D27FC31C-6E3D-4305-8D53-ACDAEFA5F862}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27FC31C-6E3D-4305-8D53-ACDAEFA5F862}\ not found. File C:\Documents and Settings\jo\Application Data\Complitly\Complitly.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{07B18EA9-A523-4961-B6BB-170DE4475CCA} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5}\ deleted successfully. File C:\Program Files\vShare.tv plugin\BarLcher.dll not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{99079a25-328f-4bd4-be04-00955acaa0a7} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\10 deleted successfully. Registry value HKEY_USERS\S-1-5-21-1935655697-484763869-725345543-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{07B18EA9-A523-4961-B6BB-170DE4475CCA} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\ not found. ADS C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:0B4227B4 deleted successfully. ADS C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2 deleted successfully. ========== FILES ========== [color=#A23BEC]< ipconfig /flushdns /c >[/color] Windows IP Configuration Successfully flushed the DNS Resolver Cache. C:\Documents and Settings\jo\Desktop\cmd.bat deleted successfully. C:\Documents and Settings\jo\Desktop\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\1 "%AllUsersProfile%\Start Menu" /H /I /S /Y /C >[/color] 0 File(s) copied C:\Documents and Settings\jo\Desktop\cmd.bat deleted successfully. C:\Documents and Settings\jo\Desktop\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\2 "%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch" /H /I /S /Y /C >[/color] 0 File(s) copied C:\Documents and Settings\jo\Desktop\cmd.bat deleted successfully. C:\Documents and Settings\jo\Desktop\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\3 "%AppData%\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar" /H /I /S /Y /C >[/color] 0 File(s) copied C:\Documents and Settings\jo\Desktop\cmd.bat deleted successfully. C:\Documents and Settings\jo\Desktop\cmd.txt deleted successfully. [color=#A23BEC]< xcopy %Temp%\smtmp\4 "%AllUsersProfile%\Desktop" /H /I /S /Y /C >[/color] 0 File(s) copied C:\Documents and Settings\jo\Desktop\cmd.bat deleted successfully. C:\Documents and Settings\jo\Desktop\cmd.txt deleted successfully. C:\Program Files\MyWebSearch\bar\setups folder moved successfully. C:\Program Files\MyWebSearch\bar\Settings folder moved successfully. C:\Program Files\MyWebSearch\bar\Overlay folder moved successfully. C:\Program Files\MyWebSearch\bar\Notifier folder moved successfully. C:\Program Files\MyWebSearch\bar\Message folder moved successfully. C:\Program Files\MyWebSearch\bar\IE9Mesg folder moved successfully. C:\Program Files\MyWebSearch\bar\icons folder moved successfully. C:\Program Files\MyWebSearch\bar\History folder moved successfully. C:\Program Files\MyWebSearch\bar\Game folder moved successfully. C:\Program Files\MyWebSearch\bar\Cache folder moved successfully. C:\Program Files\MyWebSearch\bar\Avatar folder moved successfully. C:\Program Files\MyWebSearch\bar folder moved successfully. C:\Program Files\MyWebSearch folder moved successfully. C:\Documents and Settings\jo\Application Data\Babylon folder moved successfully. File\Folder C:\Documents and Settings\jo\Application Data\Complitly not found. ========== REGISTRY ========== ========== COMMANDS ========== C:\WINDOWS\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32768 bytes User: All Users User: All Users.WINDOWS User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes User: Default User.WINDOWS ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Flash cache emptied: 0 bytes User: jo ->Temp folder emptied: 401888850 bytes ->Temporary Internet Files folder emptied: 357085677 bytes ->Java cache emptied: 568255 bytes ->Google Chrome cache emptied: 819568 bytes ->Flash cache emptied: 3805054 bytes User: Joe ->Temp folder emptied: 723724561 bytes ->Temporary Internet Files folder emptied: 137899198 bytes ->Java cache emptied: 18016450 bytes ->Flash cache emptied: 47681 bytes User: LocalService ->Temp folder emptied: 66016 bytes ->Temporary Internet Files folder emptied: 10409532 bytes User: LocalService.NT AUTHORITY ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: LocalService.NT AUTHORITY.000 ->Temp folder emptied: 66016 bytes ->Temporary Internet Files folder emptied: 33871 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 1356415 bytes User: NetworkService.NT AUTHORITY ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 402 bytes User: NetworkService.NT AUTHORITY.000 ->Temp folder emptied: 5960 bytes ->Temporary Internet Files folder emptied: 3135826 bytes User: Owner ->Temp folder emptied: 27503869 bytes ->Temporary Internet Files folder emptied: 75669548 bytes %systemdrive% .tmp files removed: 79132395 bytes %systemroot% .tmp files removed: 1138887 bytes %systemroot%\System32 .tmp files removed: 2577 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 85601411 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 587029182 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 57931 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2,399.00 mb Restore point Set: OTL Restore Point OTL by OldTimer - Version 3.2.69.0 log created on 11202012_190009 Files\Folders moved on Reboot... File\Folder C:\Documents and Settings\jo\Local Settings\Temp\hsperfdata_jo\2236 not found! File\Folder C:\Documents and Settings\jo\Local Settings\Temp\~DFEEB7.tmp not found! File\Folder C:\Documents and Settings\jo\Local Settings\Temp\~DFEEDB.tmp not found! File\Folder C:\Documents and Settings\jo\Local Settings\Temp\~DFF046.tmp not found! File\Folder C:\Documents and Settings\jo\Local Settings\Temp\~DFF055.tmp not found! C:\Documents and Settings\jo\Local Settings\Temp\~DFF12F.tmp moved successfully. File\Folder C:\Documents and Settings\jo\Local Settings\Temp\~DFF515.tmp not found! File\Folder C:\Documents and Settings\jo\Local Settings\Temp\~DFF539.tmp not found! C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\X3YFOGWX\page__p__2229229__fromsearch__1[1].txt moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\X3YFOGWX\page__p__2229934__fromsearch__1[1].txt moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\X3YFOGWX\roomad[1].php moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\WO1KRW5H\ante[1].txt moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\RSXB1T6E\applet[1].php moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\RSXB1T6E\fix[1].txt moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\NB0EX5W3\loaded[1].html moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\NB0EX5W3\logo[1].php moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\Content.IE5\9NT47596\rsa[1].txt moved successfully. C:\Documents and Settings\jo\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot...