Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

OTMoveIt3

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

OTMoveIt3

Unread postby mhorgan99 » May 1st, 2009, 6:26 am

No further problems encounters and my computer seems to be running normally. I could not access Eset as some security setting prevented me from using it (couldn't verify the publisher).

Here's the OTMoveIt3 log
========== FILES ==========
DllUnregisterServer procedure not found in C:\WINDOWS\CMDLIC.DLL
C:\WINDOWS\CMDLIC.DLL NOT unregistered.
C:\WINDOWS\CMDLIC.DLL moved successfully.
C:\WINDOWS\UNBOC.EXE moved successfully.
C:\WINDOWS\boc427.ini moved successfully.
C:\Program Files\Comodo\CBOClean moved successfully.
C:\Program Files\Comodo moved successfully.
C:\WINDOWS\SxsCaPendDel moved successfully.
C:\WINDOWS\system32\By0uUATFaWsISw4.vbs moved successfully.
C:\WINDOWS\system32\fU5ZmeVNJOve6.vbs moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\xml\data moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\xml moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\themes\windows_theme moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\themes moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\promotion moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\mozilla-profile\updates\0 moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\mozilla-profile\updates moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\mozilla-profile\extensions moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\mozilla-profile\Cache moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\mozilla-profile moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\certificate moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\res\html moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\res\fonts moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\res\entityTables moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\res\dtd moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\res moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\plugins moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\modules moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\greprefs moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\dictionaries moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults\profile\US\chrome moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults\profile\US moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults\profile\chrome moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults\profile moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults\pref moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults\autoconfig moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\defaults moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\components moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner\chrome moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser\xulrunner moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\browser moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire\.AppSpecialShare moved successfully.
C:\Documents and Settings\Michael A\Application Data\LimeWire moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}\\ deleted successfully.
Registry key HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}\\ deleted successfully.
Registry key HKEY_CLASSES_ROOT\CLSID\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}\\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched deleted successfully.
Registry value HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\\C:\Program Files\LimeWire\LimeWire.exe deleted successfully.
========== SERVICES/DRIVERS ==========
Service\Driver JavaQuickStarterService stopped successfully.
Service\Driver JavaQuickStarterService deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\etilqs_bpFENwRmuQgTP9nLhEcl scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\etilqs_TMKRvI449PKamjlGAmDj scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\~DFF078.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\~DFF094.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\UL50AF6H\launch[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\blank[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\blank[3].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\iframe3[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\iframe3[3].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\st[3] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\st[4] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\st[5] scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\_;ord=1241170013144955[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\749[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\a[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\a[3].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\fc[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\index[11].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\us_chrysler[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\01[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\iframe3[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\viewtopic[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\virusresults[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\JETC2F2.tmp scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_90.dat scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_a4.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
Java cache emptied.
Temp folders emptied.

OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05012009_104250

Files moved on Reboot...
File C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\etilqs_bpFENwRmuQgTP9nLhEcl not found!
File C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\etilqs_TMKRvI449PKamjlGAmDj not found!
File C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\~DFF078.tmp not found!
File C:\DOCUME~1\MICHAE~1\LOCALS~1\Temp\~DFF094.tmp not found!
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\UL50AF6H\launch[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\blank[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\blank[3].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\iframe3[2].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\iframe3[3].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\st[3] moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\st[4] moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\st[5] moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\N96XBCK1\_;ord=1241170013144955[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\749[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\a[2].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\a[3].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\fc[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\index[11].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\MQGTI1PR\us_chrysler[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\01[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\iframe3[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\viewtopic[2].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\Content.IE5\3XGV3RQY\virusresults[1].htm moved successfully.
C:\Documents and Settings\Michael A\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat moved successfully.
File C:\WINDOWS\temp\JETC2F2.tmp not found!
File C:\WINDOWS\temp\Perflib_Perfdata_90.dat not found!
File C:\WINDOWS\temp\Perflib_Perfdata_a4.dat not found!
mhorgan99
Active Member
 
Posts: 13
Joined: April 20th, 2009, 12:08 pm
Advertisement
Register to Remove

Re: OTMoveIt3

Unread postby Elrond » May 2nd, 2009, 4:52 pm

Duplicate post. The log is also posted in the topic where it belongs.
User avatar
Elrond
Admin/Teacher Emeritus
 
Posts: 8818
Joined: February 17th, 2005, 9:14 pm
Location: Jerusalem


Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 154 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware