Gros besoin d'aide! Trojans et virus...
OpuS
-
Utilisateur anonyme -
Utilisateur anonyme -
Bonjour,
Voila j'ai un problème avec mon pc et je ne sais pas quoi faire, surtout que c'est mon outil de travail!
J'ai démarré mon pc il y a deux jours, et un écran bleu s'est affiché avec écrit qu'il y avait eu un crash disk ou je ne sais trop quoi.
J'ai redémarré, et cela a recommencé plusieurs fois. J'ai donc redémarré en mode sans échec et fait une restauration système.
Ca a fonctionné correctement 2H, et même problème. Mon antivirus ( avast...) m'a détecté un trojan.
Du coup quand je lance mon pc en mode sans échec ou sans échec avec prise en charge réseau, ça fonctionne niquel. Mais quand je le démarre normalement, je tape mon mot de passe et la l'écran reste noir, je dois donc l'étaindre en laissant appuyer sur le bouton marche arrêt...
Quelqu'un pourrait m'aider? Je suis dans une mouise pas possible a cause de sa car c'est mon outil de travail...
Merci beaucoup!
Voila j'ai un problème avec mon pc et je ne sais pas quoi faire, surtout que c'est mon outil de travail!
J'ai démarré mon pc il y a deux jours, et un écran bleu s'est affiché avec écrit qu'il y avait eu un crash disk ou je ne sais trop quoi.
J'ai redémarré, et cela a recommencé plusieurs fois. J'ai donc redémarré en mode sans échec et fait une restauration système.
Ca a fonctionné correctement 2H, et même problème. Mon antivirus ( avast...) m'a détecté un trojan.
Du coup quand je lance mon pc en mode sans échec ou sans échec avec prise en charge réseau, ça fonctionne niquel. Mais quand je le démarre normalement, je tape mon mot de passe et la l'écran reste noir, je dois donc l'étaindre en laissant appuyer sur le bouton marche arrêt...
Quelqu'un pourrait m'aider? Je suis dans une mouise pas possible a cause de sa car c'est mon outil de travail...
Merci beaucoup!
A voir également:
- Gros besoin d'aide! Trojans et virus...
- Virus mcafee - Accueil - Piratage
- Virus facebook demande d'amis - Accueil - Facebook
- Undisclosed-recipients virus - Guide
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Virus trojan al11 ✓ - Forum Virus
43 réponses
ok reste en mode sans echec avec prise en charge reseau et fais l'option safemode clean de List_Kill'em
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Alors j'ai refait une analyse, voici les deux rapports :
http://www.cijoint.fr/cjlink.php?file=cj201007/cijj8K2TWq.txt
et
http://www.cijoint.fr/cjlink.php?file=cj201007/cijPGni0Q8.txt
http://www.cijoint.fr/cjlink.php?file=cj201007/cijj8K2TWq.txt
et
http://www.cijoint.fr/cjlink.php?file=cj201007/cijPGni0Q8.txt
tu t'amuses avec un aspirateur de sites.....
si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."
sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous "Personnalisation" :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
IE - HKU\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
FF - prefs.js..network.proxy.http: "localhost"
FF - prefs.js..network.proxy.http_port: 9666
FF - prefs.js..network.proxy.socks: "localhost"
FF - prefs.js..network.proxy.socks_port: 9050
FF - prefs.js..network.proxy.socks_remote_dns: true
FF - prefs.js..network.proxy.ssl: "localhost"
FF - prefs.js..network.proxy.ssl_port: 9666
O4 - HKLM..\Run: [HKLM] C:\Windows\main\explorer.exe ()
O4 - HKLM..\RunOnce: [SpybotDeletingA4464] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA4753] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA488] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA5738] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA6525] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA8148] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA8996] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA9204] File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB212] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB2933] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB5276] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB5562] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB8424] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\Windows\main\explorer.exe ()
O7 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\Windows\main\explorer.exe ()
:commands
[emptytemp]
[start explorer]
[reboot]
▶ Clique sur "Correction" pour lancer la suppression.
▶ Poste le rapport qui logiquement s'ouvrira tout seul en fin de travail appres le redemarrage.
si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."
sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous "Personnalisation" :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
IE - HKU\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = local;*.local
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
FF - prefs.js..network.proxy.http: "localhost"
FF - prefs.js..network.proxy.http_port: 9666
FF - prefs.js..network.proxy.socks: "localhost"
FF - prefs.js..network.proxy.socks_port: 9050
FF - prefs.js..network.proxy.socks_remote_dns: true
FF - prefs.js..network.proxy.ssl: "localhost"
FF - prefs.js..network.proxy.ssl_port: 9666
O4 - HKLM..\Run: [HKLM] C:\Windows\main\explorer.exe ()
O4 - HKLM..\RunOnce: [SpybotDeletingA4464] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA4753] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA488] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA5738] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA6525] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA8148] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA8996] File not found
O4 - HKLM..\RunOnce: [SpybotDeletingA9204] File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB212] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB2933] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB5276] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB5562] File not found
O4 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001..\RunOnce: [SpybotDeletingB8424] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\Windows\main\explorer.exe ()
O7 - HKU\S-1-5-21-584508524-2916951878-1096133624-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: Policies = C:\Windows\main\explorer.exe ()
:commands
[emptytemp]
[start explorer]
[reboot]
▶ Clique sur "Correction" pour lancer la suppression.
▶ Poste le rapport qui logiquement s'ouvrira tout seul en fin de travail appres le redemarrage.
Alors alors... Sa fonctionne correctement, mais lorsque sa redémarre sa ne redémarre pas en mode sans échec et donc sa bugg, et je dois l'éteindre en appuyant sur le bouton du côté pour le redémarrer en mode sans échec.
Du coup, aucun rapport ne s'affiche au redémmarage...
Du coup, aucun rapport ne s'affiche au redémmarage...
Ah si, quand je l'ai relancé sa m'a affiché le rapport!
le voici :
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Fabien&Matou Parfois
->Temp folder emptied: 229184 bytes
->Temporary Internet Files folder emptied: 8368398 bytes
->Java cache emptied: 31460619 bytes
->FireFox cache emptied: 86459215 bytes
->Google Chrome cache emptied: 19139376 bytes
->Flash cache emptied: 7208711 bytes
User: postgres
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 525974 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50406 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 147,00 mb
OTL by OldTimer - Version 3.2.9.1 log created on 07312010_114202
Files\Folders moved on Reboot...
File move failed. C:\Users\Fabien&Matou Parfois\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
le voici :
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Fabien&Matou Parfois
->Temp folder emptied: 229184 bytes
->Temporary Internet Files folder emptied: 8368398 bytes
->Java cache emptied: 31460619 bytes
->FireFox cache emptied: 86459215 bytes
->Google Chrome cache emptied: 19139376 bytes
->Flash cache emptied: 7208711 bytes
User: postgres
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 525974 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50406 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 147,00 mb
OTL by OldTimer - Version 3.2.9.1 log created on 07312010_114202
Files\Folders moved on Reboot...
File move failed. C:\Users\Fabien&Matou Parfois\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
J'ai refait, encore une fois quand sa redémarrer je tape mon mdp et y'a écran noire, donc je dois redémarrer en mode sans échec. Ensuite je clique sur otl, et sa m'ouvre ce rapport :
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
No active process named iexplore.exe was found!
No active process named firefox.exe was found!
No active process named msnmsgr.exe was found!
No active process named Teatimer.exe was found!
========== OTL ==========
HKU\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Prefs.js: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19 removed from extensions.enabledItems
Prefs.js: "localhost" removed from network.proxy.http
Prefs.js: 9666 removed from network.proxy.http_port
Prefs.js: "localhost" removed from network.proxy.socks
Prefs.js: 9050 removed from network.proxy.socks_port
Prefs.js: true removed from network.proxy.socks_remote_dns
Prefs.js: "localhost" removed from network.proxy.ssl
Prefs.js: 9666 removed from network.proxy.ssl_port
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HKLM not found.
File C:\Windows\main\explorer.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA4464 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA4753 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA488 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA5738 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA6525 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA8148 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA8996 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA9204 not found.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin not found.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB212 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB2933 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB5276 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB5562 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB8424 not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktopChanges not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Fabien&Matou Parfois
->Temp folder emptied: 30938 bytes
->Temporary Internet Files folder emptied: 579101 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 80589039 bytes
->Google Chrome cache emptied: 6279863 bytes
->Flash cache emptied: 1746 bytes
User: postgres
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 830 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 243475 bytes
Total Files Cleaned = 84,00 mb
OTL by OldTimer - Version 3.2.9.1 log created on 07312010_141131
Files\Folders moved on Reboot...
File move failed. C:\Users\Fabien&Matou Parfois\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
No active process named iexplore.exe was found!
No active process named firefox.exe was found!
No active process named msnmsgr.exe was found!
No active process named Teatimer.exe was found!
========== OTL ==========
HKU\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E : value set successfully!
Prefs.js: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}:6.0.16 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19 removed from extensions.enabledItems
Prefs.js: "localhost" removed from network.proxy.http
Prefs.js: 9666 removed from network.proxy.http_port
Prefs.js: "localhost" removed from network.proxy.socks
Prefs.js: 9050 removed from network.proxy.socks_port
Prefs.js: true removed from network.proxy.socks_remote_dns
Prefs.js: "localhost" removed from network.proxy.ssl
Prefs.js: 9666 removed from network.proxy.ssl_port
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HKLM not found.
File C:\Windows\main\explorer.exe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA4464 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA4753 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA488 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA5738 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA6525 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA8148 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA8996 not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingA9204 not found.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin not found.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB212 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB2933 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB5276 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB5562 not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\SpybotDeletingB8424 not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktopChanges not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
Registry value HKEY_USERS\S-1-5-21-584508524-2916951878-1096133624-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run\\Policies not found.
File C:\Windows\main\explorer.exe not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Fabien&Matou Parfois
->Temp folder emptied: 30938 bytes
->Temporary Internet Files folder emptied: 579101 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 80589039 bytes
->Google Chrome cache emptied: 6279863 bytes
->Flash cache emptied: 1746 bytes
User: postgres
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 830 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 243475 bytes
Total Files Cleaned = 84,00 mb
OTL by OldTimer - Version 3.2.9.1 log created on 07312010_141131
Files\Folders moved on Reboot...
File move failed. C:\Users\Fabien&Matou Parfois\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
Registry entries deleted on Reboot...