Thx for this, maliprog;
Here is the OTL log - others to follow
========== OTL ==========
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a44595d7-5fff-11e0-831d-001111e84211}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a44595d7-5fff-11e0-831d-001111e84211}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a44595d7-5fff-11e0-831d-001111e84211}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a44595d7-5fff-11e0-831d-001111e84211}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a44595d7-5fff-11e0-831d-001111e84211}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a44595d7-5fff-11e0-831d-001111e84211}\ not found.
File G:\launcher.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a44595d8-5fff-11e0-831d-001111e84211}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a44595d8-5fff-11e0-831d-001111e84211}\ not found.
File G:\Launch.exe not found.
Folder C:\Documents and Settings\All Users\Application Data\kI01602DfPdE01602\ not found.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources\media\img folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources\media\css folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources\media folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources\common\scripts folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources\common\alert folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources\common folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\resources folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\redist folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\payloads\AdobeColorCommonSet1.0.1All folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004\payloads folder moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004 folder moved successfully.
C:\WINDOWS\tasks\CVYS.job moved successfully.
C:\WINDOWS\tasks\IXNMQLPH.job moved successfully.
C:\WINDOWS\Dtihabob.dat moved successfully.
C:\WINDOWS\Gpevinasowovoneg.bin moved successfully.
C:\WINDOWS\SYSTEM32\REGEDT32Y.dll moved successfully.
C:\WINDOWS\SYSTEM32\tmp26EB9.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmp19EB9.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmp0BEB9.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmp41EB9.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmpB7740.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmp80840.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmp56840.FOT moved successfully.
C:\WINDOWS\SYSTEM32\tmp07140.FOT moved successfully.
C:\Documents and Settings\All Users\Application Data\~18013988 moved successfully.
C:\Documents and Settings\All Users\Application Data\~18013988r moved successfully.
C:\Documents and Settings\All Users\Application Data\18013988 moved successfully.
C:\Documents and Settings\MIA\Application Data\Install.dat moved successfully.
C:\Documents and Settings\MIA\Local Settings\Application Data\fusioncache.dat moved successfully.
========== FILES ==========
< ipconfig /flushdns /c >
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
< ipconfig /all /c >
Windows IP Configuration
Host Name . . . . . . . . . . . . : D54VWZ61
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
Ethernet adapter Local Area Connection 3:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Intel® PRO/100 VE Network Connection
Physical Address. . . . . . . . . : 00-11-11-E8-42-11
Dhcp Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
IP Address. . . . . . . . . . . . : 192.168.1.8
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DNS Servers . . . . . . . . . . . : 192.168.1.1
Lease Obtained. . . . . . . . . . : 05 August 2011 09:00:24
Lease Expires . . . . . . . . . . : 06 August 2011 09:00:24
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
< nslookup google.com /c >
Server: UnKnown
Address: 192.168.1.1
Name: google.com
Addresses: 74.125.127.105, 74.125.127.106, 74.125.127.147, 74.125.127.99
74.125.127.103, 74.125.127.104
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
< nslookup yahoo.com /c >
Server: UnKnown
Address: 192.168.1.1
Name: yahoo.com
Addresses: 69.147.125.65, 72.30.2.43, 98.137.149.56, 209.191.122.70
67.195.160.76
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
< ping -n 2 google.com /c >
Pinging google.com [74.125.127.103] with 32 bytes of data:
Reply from 74.125.127.103: bytes=32 time=627ms TTL=48
Reply from 74.125.127.103: bytes=32 time=1149ms TTL=48
Ping statistics for 74.125.127.103:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 627ms, Maximum = 1149ms, Average = 888ms
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
< ping -n 2 yahoo.com /c >
Pinging yahoo.com [67.195.160.76] with 32 bytes of data:
Reply from 67.195.160.76: bytes=32 time=1272ms TTL=44
Reply from 67.195.160.76: bytes=32 time=789ms TTL=44
Ping statistics for 67.195.160.76:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 789ms, Maximum = 1272ms, Average = 1030ms
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
< route print /c >
===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 11 11 e8 42 11 ...... Intel® PRO/100 VE Network Connection - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.8 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
169.254.0.0 255.255.0.0 192.168.1.8 192.168.1.8 20
192.168.1.0 255.255.255.0 192.168.1.8 192.168.1.8 20
192.168.1.8 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.1.255 255.255.255.255 192.168.1.8 192.168.1.8 20
224.0.0.0 240.0.0.0 192.168.1.8 192.168.1.8 20
255.255.255.255 255.255.255.255 192.168.1.8 192.168.1.8 1
Default Gateway: 192.168.1.1
===========================================================================
Persistent Routes:
None
C:\Documents and Settings\MIA\Desktop\cmd.bat deleted successfully.
C:\Documents and Settings\MIA\Desktop\cmd.txt deleted successfully.
File\Folder C:\Documents and Settings\MIA\Local Settings\Application Data\Installer4004 not found.
C:\Documents and Settings\All Users\Application Data\kI01602DfPdE01602 folder moved successfully.
========== COMMANDS ==========
OTL by OldTimer - Version 3.2.26.1 log created on 08052011_091012