All processes killed
========== OTL ==========
Service HidServ stopped successfully!
Service HidServ deleted successfully!
File %SystemRoot%\System32\hidserv.dll not found.
Error: No service named Winsock - Google Desktop Search Backup Before Last Install was found to stop!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Winsock - Google Desktop Search Backup Before Last Install deleted successfully.
Error: No service named Winsock - Google Desktop Search Backup Before First Install was found to stop!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Winsock - Google Desktop Search Backup Before First Install deleted successfully.
Service WDICA stopped successfully!
Service WDICA deleted successfully!
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
Service Changer stopped successfully!
Service Changer deleted successfully!
Service catchme stopped successfully!
Service catchme deleted successfully!
File C:\DOCUME~1\LUKEFI~1\LOCALS~1\Temp\catchme.sys not found.
Error: Unable to stop service KLIF!
Unable to delete service\driver key KLIF.
File move failed. C:\WINDOWS\system32\drivers\klif.sys scheduled to be moved on reboot.
Error: Unable to stop service KL1!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\KL1 deleted successfully.
File move failed. C:\WINDOWS\system32\drivers\kl1.sys scheduled to be moved on reboot.
Error: Unable to stop service kl2!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\kl2 deleted successfully.
C:\WINDOWS\system32\drivers\kl2.sys moved successfully.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
HKU\S-1-5-21-602162358-492894223-839522115-1012\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-602162358-492894223-839522115-1012\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry key HKEY_USERS\S-1-5-21-602162358-492894223-839522115-1012\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\localhost\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-602162358-492894223-839522115-1012\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\GD\\http deleted successfully.
C:\Documents and Settings\All Users\Application Data\VH56DJI7u87yo moved successfully.
C:\WINDOWS\system32\drivers\xhjdi.sys moved successfully.
C:\WINDOWS\system32\drivers\ofwoag.sys moved successfully.
C:\Documents and Settings\All Users\Application Data\Kaspersky SDK folder moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->FireFox cache emptied: 0 bytes
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: LocalService
->Temp folder emptied: 995072 bytes
->Temporary Internet Files folder emptied: 32902 bytes
User: Luke Fitton
->Temp folder emptied: 13110901 bytes
->Temporary Internet Files folder emptied: 5996106 bytes
->Java cache emptied: 43226 bytes
->FireFox cache emptied: 82584147 bytes
->Google Chrome cache emptied: 434321560 bytes
->Flash cache emptied: 149899 bytes
User: NetworkService
->Temp folder emptied: 1984464 bytes
->Temporary Internet Files folder emptied: 82054 bytes
User: test
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 294871 bytes
->Java cache emptied: 128094 bytes
->Google Chrome cache emptied: 77364019 bytes
->Flash cache emptied: 7822 bytes
User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: VS removal & admin
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 34993943 bytes
->Google Chrome cache emptied: 2265715 bytes
->Flash cache emptied: 683 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 200704 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 146048 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1195175 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 1042 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 626.00 mb
[EMPTYJAVA]
User: Administrator
User: All Users
User: Default User
User: LocalService
User: Luke Fitton
->Java cache emptied: 0 bytes
User: NetworkService
User: test
->Java cache emptied: 0 bytes
User: UpdatusUser
User: VS removal & admin
->Java cache emptied: 0 bytes
Total Java Files Cleaned = 0.00 mb
[EMPTYFLASH]
User: Administrator
User: All Users
User: Default User
User: LocalService
User: Luke Fitton
->Flash cache emptied: 0 bytes
User: NetworkService
User: test
->Flash cache emptied: 0 bytes
User: UpdatusUser
User: VS removal & admin
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0.00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 06022013_115709
Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\system32\drivers\klif.sys scheduled to be moved on reboot.
File move failed. C:\WINDOWS\system32\drivers\kl1.sys scheduled to be moved on reboot.
C:\Documents and Settings\Luke Fitton\Local Settings\Temp\~DF862C.tmp moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\startupCache\startupCache.4.little moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\_CACHE_CLEAN_ moved successfully.
File\Folder C:\WINDOWS\temp\ZLT06182.TMP not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== OTL ==========
Service HidServ stopped successfully!
Service HidServ deleted successfully!
File %SystemRoot%\System32\hidserv.dll not found.
Error: No service named Winsock - Google Desktop Search Backup Before Last Install was found to stop!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Winsock - Google Desktop Search Backup Before Last Install deleted successfully.
Error: No service named Winsock - Google Desktop Search Backup Before First Install was found to stop!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Winsock - Google Desktop Search Backup Before First Install deleted successfully.
Service WDICA stopped successfully!
Service WDICA deleted successfully!
Service PDRFRAME stopped successfully!
Service PDRFRAME deleted successfully!
Service PDRELI stopped successfully!
Service PDRELI deleted successfully!
Service PDFRAME stopped successfully!
Service PDFRAME deleted successfully!
Service PDCOMP stopped successfully!
Service PDCOMP deleted successfully!
Service PCIDump stopped successfully!
Service PCIDump deleted successfully!
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
Service i2omgmt stopped successfully!
Service i2omgmt deleted successfully!
Service Changer stopped successfully!
Service Changer deleted successfully!
Service catchme stopped successfully!
Service catchme deleted successfully!
File C:\DOCUME~1\LUKEFI~1\LOCALS~1\Temp\catchme.sys not found.
Error: Unable to stop service KLIF!
Unable to delete service\driver key KLIF.
File move failed. C:\WINDOWS\system32\drivers\klif.sys scheduled to be moved on reboot.
Error: Unable to stop service KL1!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\KL1 deleted successfully.
File move failed. C:\WINDOWS\system32\drivers\kl1.sys scheduled to be moved on reboot.
Error: Unable to stop service kl2!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\kl2 deleted successfully.
C:\WINDOWS\system32\drivers\kl2.sys moved successfully.
Registry value HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry value HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\\{A3BC75A2-1F87-4686-AA43-5347D756017C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
HKU\S-1-5-21-602162358-492894223-839522115-1012\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@Apple.com/iTunes,version=\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-602162358-492894223-839522115-1012\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry key HKEY_USERS\S-1-5-21-602162358-492894223-839522115-1012\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\localhost\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-602162358-492894223-839522115-1012\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\GD\\http deleted successfully.
C:\Documents and Settings\All Users\Application Data\VH56DJI7u87yo moved successfully.
C:\WINDOWS\system32\drivers\xhjdi.sys moved successfully.
C:\WINDOWS\system32\drivers\ofwoag.sys moved successfully.
C:\Documents and Settings\All Users\Application Data\Kaspersky SDK folder moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->FireFox cache emptied: 0 bytes
User: All Users
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: LocalService
->Temp folder emptied: 995072 bytes
->Temporary Internet Files folder emptied: 32902 bytes
User: Luke Fitton
->Temp folder emptied: 13110901 bytes
->Temporary Internet Files folder emptied: 5996106 bytes
->Java cache emptied: 43226 bytes
->FireFox cache emptied: 82584147 bytes
->Google Chrome cache emptied: 434321560 bytes
->Flash cache emptied: 149899 bytes
User: NetworkService
->Temp folder emptied: 1984464 bytes
->Temporary Internet Files folder emptied: 82054 bytes
User: test
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 294871 bytes
->Java cache emptied: 128094 bytes
->Google Chrome cache emptied: 77364019 bytes
->Flash cache emptied: 7822 bytes
User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: VS removal & admin
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 34993943 bytes
->Google Chrome cache emptied: 2265715 bytes
->Flash cache emptied: 683 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 200704 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 146048 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1195175 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 1042 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 626.00 mb
[EMPTYJAVA]
User: Administrator
User: All Users
User: Default User
User: LocalService
User: Luke Fitton
->Java cache emptied: 0 bytes
User: NetworkService
User: test
->Java cache emptied: 0 bytes
User: UpdatusUser
User: VS removal & admin
->Java cache emptied: 0 bytes
Total Java Files Cleaned = 0.00 mb
[EMPTYFLASH]
User: Administrator
User: All Users
User: Default User
User: LocalService
User: Luke Fitton
->Flash cache emptied: 0 bytes
User: NetworkService
User: test
->Flash cache emptied: 0 bytes
User: UpdatusUser
User: VS removal & admin
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0.00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 06022013_115709
Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\system32\drivers\klif.sys scheduled to be moved on reboot.
File move failed. C:\WINDOWS\system32\drivers\kl1.sys scheduled to be moved on reboot.
C:\Documents and Settings\Luke Fitton\Local Settings\Temp\~DF862C.tmp moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\startupCache\startupCache.4.little moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_001_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_002_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_003_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\Cache\_CACHE_MAP_ moved successfully.
C:\Documents and Settings\Luke Fitton\Local Settings\Application Data\Mozilla\Firefox\Profiles\z65wym3e.default\_CACHE_CLEAN_ moved successfully.
File\Folder C:\WINDOWS\temp\ZLT06182.TMP not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...