A few bad boys have taken up residence

Start OTS. Copy/Paste the information in the quotebox below into the panel where it says “Paste fix here” and then click the Run Fix button.

 
[Unregister Dlls]
[Registry - Safe List]
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> 
YN -> HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{1392b8d2-5c05-419f-a8f6-b9f15a596612}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.]
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1001\] > -> 
YN -> HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1001\: URLSearchHooks\\"{1392b8d2-5c05-419f-a8f6-b9f15a596612}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.]
< Internet Explorer Settings [HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1008\] > -> 
YN -> HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1008\: "ProxyServer" -> http=127.0.0.1:49939
< Run [HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1001\] > -> HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
YY -> "SystemAuthenticationCtrl" -> C:\Users\Pete\AppData\Local\BthHelpaudio\SystemAuthenticationCtrl.dll [rundll32.exe "C:\Users\Pete\AppData\Local\BthHelpaudio\SystemAuthenticationCtrl.dll",userPadTray BthMainvga]
< Run [HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1008\] > -> HKEY_USERS\S-1-5-21-447438009-1717116898-3675535531-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
YN -> "java checksys" -> [%TEMP%\rtpmp.exe]
YN -> "java system update" -> [%TEMP%\eumlm.exe]
YN -> "windows updater" -> [%TEMP%\gaspci.exe]
YN -> "winupdate system" -> [%TEMP%\icvcc.exe]
[Files/Folders - Created Within 30 Days]
NY ->  temp.01A -> C:\Windows\System32\temp.01A
NY ->  temp.01C -> C:\Windows\System32\temp.01C
NY ->  temp.01B -> C:\Windows\System32\temp.01B
NY ->  temp.019 -> C:\Windows\System32\temp.019
NY ->  temp.018 -> C:\Windows\System32\temp.018
NY ->  temp.015 -> C:\Windows\System32\temp.015
NY ->  temp.017 -> C:\Windows\System32\temp.017
NY ->  temp.016 -> C:\Windows\System32\temp.016
NY ->  temp.014 -> C:\Windows\System32\temp.014
NY ->  temp.013 -> C:\Windows\System32\temp.013
NY ->  temp.010 -> C:\Windows\System32\temp.010
NY ->  temp.012 -> C:\Windows\System32\temp.012
NY ->  temp.011 -> C:\Windows\System32\temp.011
NY ->  temp.00F -> C:\Windows\System32\temp.00F
NY ->  temp.00E -> C:\Windows\System32\temp.00E
NY ->  temp.00D -> C:\Windows\System32\temp.00D
NY ->  temp.00C -> C:\Windows\System32\temp.00C
NY ->  temp.00B -> C:\Windows\System32\temp.00B
NY ->  temp.00A -> C:\Windows\System32\temp.00A
NY ->  temp.009 -> C:\Windows\System32\temp.009
NY ->  0 -> C:\Windows\System32\0
NY ->  temp.004 -> C:\Windows\System32\temp.004
[Files/Folders - Modified Within 30 Days]
NY ->  At2.job -> C:\Windows\tasks\At2.job
NY ->  At1.job -> C:\Windows\tasks\At1.job
[Files - No Company Name]
NY ->  At2.job -> C:\Windows\tasks\At2.job
[Custom Items]
:Files
C:\Windows\tasks\At*.job
ipconfig /flushdns /c
:end
[Empty Temp Folders]
[EmptyFlash]
[CreateRestorePoint]
 

The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. Click the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here

I will review the information when it comes back in.

Depending on what the fix contains, this process may take some time and your desktop icons might disappear or other uncommon behavior may occur.

This is no sign of malfunction, do not panic!