OTL System Restore
1. We need to reset system restore to prevent your computer from being accidentally reinfected by using some old restore point(s). We'll create fresh, clean restore point, using following OTL script:
Run
OTL
- Under the Custom Scans/Fixes box at the bottom, paste in the following:
Code:
:OTL
:Commands
[purity]
[emptytemp]
[EMPTYFLASH]
[emptyjava]
[CLEARALLRESTOREPOINTS]
[Reboot]
- Then click the Run Fix button at the top
- Let the program run unhindered, reboot the PC when it is done
- Post resulting log.
All processes killed
========== OTL ==========
========== COMMANDS ==========
[EMPTYTEMP]
User: Alex
->Temp folder emptied: 20012268 bytes
-> No Temporary Internet Files cache folder defined!
->Java cache emptied: 0 bytes
->FireFox cache emptied: 40948966 bytes
->Google Chrome cache emptied: 0 bytes
->Apple Safari cache emptied: 0 bytes
User: All Users
-> No Temporary Internet Files cache folder defined!
User: Default
->Temp folder emptied: 0 bytes
-> No Temporary Internet Files cache folder defined!
User: Default User
-> No Temporary Internet Files cache folder defined!
User: Girls
-> No Temporary Internet Files cache folder defined!
User: Public
-> No Temporary Internet Files cache folder defined!
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 98560 bytes
RecycleBin emptied: 7936768 bytes
Total Files Cleaned = 66,00 mb
[EMPTYFLASH]
User: Alex
User: All Users
User: Default
User: Default User
User: Girls
User: Public
Total Flash Files Cleaned = 0,00 mb
[EMPTYJAVA]
User: Alex
->Java cache emptied: 0 bytes
User: All Users
User: Default
User: Default User
User: Girls
User: Public
Total Java Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.35.1 log created on 03102012_032236
Files\Folders moved on Reboot...
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\Windows\temp\WebEx\Log\310\atashost.log scheduled to be moved on reboot.
File\Folder C:\Windows\temp\JET61BE.tmp not found!
File\Folder C:\Windows\temp\SEPA24D.tmp not found!
Registry entries deleted on Reboot...