All processes killed
========== OTL ==========
HKU\S-1-5-21-397330479-2541648650-3957197338-1001\SOFTWARE\Microsoft\Internet Explorer\Main\bProtector Start Page| /E : value set successfully!
HKU\S-1-5-21-397330479-2541648650-3957197338-1001\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-397330479-2541648650-3957197338-1001\Software\Microsoft\Internet Explorer\SearchScopes{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found.
C:\Users\manusz\AppData\Roaming\mozilla\firefox\profiles\k4ir6jj0.default\extensions\toolbar_CLM-V7@apn.ask.com.xpi moved successfully.
C:\Users\manusz\AppData\Roaming\mozilla\firefox\profiles\k4ir6jj0.default\extensions{ba099a85-e825-4802-83e7-d386a5b4a734}.xpi moved successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\Locked deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-397330479-2541648650-3957197338-1001\Software\Microsoft\Windows\CurrentVersion\Run\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-397330479-2541648650-3957197338-1003\Software\Microsoft\Windows\CurrentVersion\Run\Galileo deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\mctadmin deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_Dlls:c:\progra~3\bitguard\2.6.1694.246{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\bitguard.dll deleted successfully.
C:\Windows\Tasks\PC Fresh.job moved successfully.
C:\Users\to my\AppData\Roaming\pwo6 folder moved successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: manusz
->Temp folder emptied: 213652353 bytes
->Temporary Internet Files folder emptied: 50614089 bytes
->FireFox cache emptied: 17284899 bytes
->Google Chrome cache emptied: 6247527 bytes
->Flash cache emptied: 602 bytes
User: mati
->Temp folder emptied: 4196788 bytes
->Temporary Internet Files folder emptied: 6400066 bytes
->Google Chrome cache emptied: 40272943 bytes
->Flash cache emptied: 492 bytes
User: Public
User: to my
->Temp folder emptied: 177283887 bytes
->Temporary Internet Files folder emptied: 349481000 bytes
->FireFox cache emptied: 391851774 bytes
->Google Chrome cache emptied: 314865989 bytes
->Flash cache emptied: 30928 bytes
User: wangzhisong
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 955262373 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 3599847 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 42293829 bytes
RecycleBin emptied: 1669739121 bytes
Total Files Cleaned = 4,047.00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 03132014_221708
Files\Folders moved on Reboot…
File move failed. C:\Users\to my\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
File move failed. C:\Users\to my\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.
PendingFileRenameOperations files…
Registry entries deleted on Reboot…
Extras: http://wklej.to/bQHEh
OTL: http://wklej.to/uIK70