ncmaass2
Posts: 25 +0
All processes killed
========== OTL ==========
Prefs.js: "WhiteSmoke US Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "WhiteSmoke US Customized Web Search" removed from browser.search.selectedEngine
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\Windows\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\{fb385931-a35a-8865-4765-626513eb4459}\U folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\{fb385931-a35a-8865-4765-626513eb4459}\L folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\{fb385931-a35a-8865-4765-626513eb4459} folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\U folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\L folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459} folder moved successfully.
C:\FRST\Quarantine folder moved successfully.
C:\FRST\Logs folder moved successfully.
C:\FRST\Hives folder moved successfully.
C:\FRST folder moved successfully.
ADS C:\.Trashes:Mac_Metadata deleted successfully.
ADS C:\ProgramData\TEMP:C8B8CEBD deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56475 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: LogMeInRemoteUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 41620 bytes
User: nmradar
->Temp folder emptied: 852193525 bytes
->Temporary Internet Files folder emptied: 29562843 bytes
->Java cache emptied: 3130829 bytes
->FireFox cache emptied: 91995729 bytes
->Google Chrome cache emptied: 378394646 bytes
->Flash cache emptied: 96507 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 142086 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33565 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 753 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 108551223 bytes
RecycleBin emptied: 5733283246 bytes
Total Files Cleaned = 6,864.00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: LogMeInRemoteUser
User: nmradar
->Java cache emptied: 0 bytes
User: Public
Total Java Files Cleaned = 0.00 mb
[EMPTYFLASH]
User: All Users
User: Default
->Flash cache emptied: 0 bytes
User: Default User
->Flash cache emptied: 0 bytes
User: LogMeInRemoteUser
->Flash cache emptied: 0 bytes
User: nmradar
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0.00 mb
OTL by OldTimer - Version 3.2.56.0 log created on 08112012_142804
Files\Folders moved on Reboot...
C:\Users\nmradar\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File\Folder C:\Users\nmradar\AppData\Local\Temp\~DF1D3C2ABB841925F6.TMP not found!
File\Folder C:\Users\nmradar\AppData\Local\Temp\~PIE9BC.tmp not found!
File\Folder C:\Users\nmradar\AppData\Local\Temp\~PIE9EC.tmp not found!
File\Folder C:\Users\nmradar\AppData\Local\Temp\~PIEBC3.tmp not found!
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{392AE208-91CC-4381-9D71-09519261E841}.tmp moved successfully.
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{49B1FD25-37C4-4489-B435-5ECFFC15C903}.tmp moved successfully.
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{B3764D83-DE30-4814-B301-8C8DA5C37CF3}.tmp moved successfully.
File\Folder C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E0C7FEFA-1918-464B-940E-A622C906489A}.tmp not found!
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E3E2F6CA-C799-47EB-8B6E-87A2CCF7D551}.tmp moved successfully.
C:\Windows\temp\vmware-SYSTEM-2851879344\vmware-usbarb-SYSTEM-3120.log moved successfully.
File move failed. C:\Windows\temp\Pharos\UpdaterLog.txt scheduled to be moved on reboot.
PendingFileRenameOperations files...
File C:\Users\nmradar\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File C:\Users\nmradar\AppData\Local\Temp\~DF1D3C2ABB841925F6.TMP not found!
File C:\Users\nmradar\AppData\Local\Temp\~PIE9BC.tmp not found!
File C:\Users\nmradar\AppData\Local\Temp\~PIE9EC.tmp not found!
File C:\Users\nmradar\AppData\Local\Temp\~PIEBC3.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{392AE208-91CC-4381-9D71-09519261E841}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{49B1FD25-37C4-4489-B435-5ECFFC15C903}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{B3764D83-DE30-4814-B301-8C8DA5C37CF3}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E0C7FEFA-1918-464B-940E-A622C906489A}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E3E2F6CA-C799-47EB-8B6E-87A2CCF7D551}.tmp not found!
File C:\Windows\temp\vmware-SYSTEM-2851879344\vmware-usbarb-SYSTEM-3120.log not found!
[2012/08/11 14:41:02 | 000,139,224 | ---- | M] () C:\Windows\temp\Pharos\UpdaterLog.txt : Unable to obtain MD5
Registry entries deleted on Reboot...
========== OTL ==========
Prefs.js: "WhiteSmoke US Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "WhiteSmoke US Customized Web Search" removed from browser.search.selectedEngine
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\Windows\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\{fb385931-a35a-8865-4765-626513eb4459}\U folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\{fb385931-a35a-8865-4765-626513eb4459}\L folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\{fb385931-a35a-8865-4765-626513eb4459} folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\U folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459}\L folder moved successfully.
C:\FRST\Quarantine\{fb385931-a35a-8865-4765-626513eb4459} folder moved successfully.
C:\FRST\Quarantine folder moved successfully.
C:\FRST\Logs folder moved successfully.
C:\FRST\Hives folder moved successfully.
C:\FRST folder moved successfully.
ADS C:\.Trashes:Mac_Metadata deleted successfully.
ADS C:\ProgramData\TEMP:C8B8CEBD deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56475 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: LogMeInRemoteUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 41620 bytes
User: nmradar
->Temp folder emptied: 852193525 bytes
->Temporary Internet Files folder emptied: 29562843 bytes
->Java cache emptied: 3130829 bytes
->FireFox cache emptied: 91995729 bytes
->Google Chrome cache emptied: 378394646 bytes
->Flash cache emptied: 96507 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 142086 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33565 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 753 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 108551223 bytes
RecycleBin emptied: 5733283246 bytes
Total Files Cleaned = 6,864.00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: LogMeInRemoteUser
User: nmradar
->Java cache emptied: 0 bytes
User: Public
Total Java Files Cleaned = 0.00 mb
[EMPTYFLASH]
User: All Users
User: Default
->Flash cache emptied: 0 bytes
User: Default User
->Flash cache emptied: 0 bytes
User: LogMeInRemoteUser
->Flash cache emptied: 0 bytes
User: nmradar
->Flash cache emptied: 0 bytes
User: Public
Total Flash Files Cleaned = 0.00 mb
OTL by OldTimer - Version 3.2.56.0 log created on 08112012_142804
Files\Folders moved on Reboot...
C:\Users\nmradar\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File\Folder C:\Users\nmradar\AppData\Local\Temp\~DF1D3C2ABB841925F6.TMP not found!
File\Folder C:\Users\nmradar\AppData\Local\Temp\~PIE9BC.tmp not found!
File\Folder C:\Users\nmradar\AppData\Local\Temp\~PIE9EC.tmp not found!
File\Folder C:\Users\nmradar\AppData\Local\Temp\~PIEBC3.tmp not found!
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{392AE208-91CC-4381-9D71-09519261E841}.tmp moved successfully.
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{49B1FD25-37C4-4489-B435-5ECFFC15C903}.tmp moved successfully.
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{B3764D83-DE30-4814-B301-8C8DA5C37CF3}.tmp moved successfully.
File\Folder C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E0C7FEFA-1918-464B-940E-A622C906489A}.tmp not found!
C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E3E2F6CA-C799-47EB-8B6E-87A2CCF7D551}.tmp moved successfully.
C:\Windows\temp\vmware-SYSTEM-2851879344\vmware-usbarb-SYSTEM-3120.log moved successfully.
File move failed. C:\Windows\temp\Pharos\UpdaterLog.txt scheduled to be moved on reboot.
PendingFileRenameOperations files...
File C:\Users\nmradar\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File C:\Users\nmradar\AppData\Local\Temp\~DF1D3C2ABB841925F6.TMP not found!
File C:\Users\nmradar\AppData\Local\Temp\~PIE9BC.tmp not found!
File C:\Users\nmradar\AppData\Local\Temp\~PIE9EC.tmp not found!
File C:\Users\nmradar\AppData\Local\Temp\~PIEBC3.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{392AE208-91CC-4381-9D71-09519261E841}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{49B1FD25-37C4-4489-B435-5ECFFC15C903}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{B3764D83-DE30-4814-B301-8C8DA5C37CF3}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E0C7FEFA-1918-464B-940E-A622C906489A}.tmp not found!
File C:\Users\nmradar\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E3E2F6CA-C799-47EB-8B6E-87A2CCF7D551}.tmp not found!
File C:\Windows\temp\vmware-SYSTEM-2851879344\vmware-usbarb-SYSTEM-3120.log not found!
[2012/08/11 14:41:02 | 000,139,224 | ---- | M] () C:\Windows\temp\Pharos\UpdaterLog.txt : Unable to obtain MD5
Registry entries deleted on Reboot...