Problème avec Perfect Keylogger
Résolu/Fermé
A voir également:
- Problème avec Perfect Keylogger
- Bank perfect - Télécharger - Comptabilité & Facturation
- Perfect pdf - Télécharger - PDF
- Perfect keyboard - Télécharger - Divers Utilitaires
- Keylogger gratuit invisible - Télécharger - Contrôle parental
- Perfect disk - Télécharger - Optimisation
5 réponses
Utilisateur anonyme
14 févr. 2011 à 15:31
14 févr. 2011 à 15:31
Bonjour
* Téléchargez SEAF puis lancez le.
* Coches la case "Chercher également dans le Registre".
* Copie/colle le mot ci-dessous en gras et place le dans le champs de recherche, cliquez sur "Lancer la recherche" puis patientez.
________________________________________________________________
Perfect Keylogger
________________________________________________________________
*Héberge le rapport SEAF sur le site cijoint.fr ou toofiles puis copie/colle le lien fournit dans ta prochaine réponse sur le forum
* Téléchargez SEAF puis lancez le.
* Coches la case "Chercher également dans le Registre".
* Copie/colle le mot ci-dessous en gras et place le dans le champs de recherche, cliquez sur "Lancer la recherche" puis patientez.
________________________________________________________________
Perfect Keylogger
________________________________________________________________
*Héberge le rapport SEAF sur le site cijoint.fr ou toofiles puis copie/colle le lien fournit dans ta prochaine réponse sur le forum
Bonjour à vous,
Voici le rapport comme convenu : http://www.cijoint.fr/cjlink.php?file=cj201102/cijNrZqBq5.txt
En revanche, étant donné le peu de trouvaille, j'ai fait une autre analyse en rentrant "BTK".
Voici : http://www.cijoint.fr/cjlink.php?file=cj201102/cijSXSMk9q.txt
Voici le rapport comme convenu : http://www.cijoint.fr/cjlink.php?file=cj201102/cijNrZqBq5.txt
En revanche, étant donné le peu de trouvaille, j'ai fait une autre analyse en rentrant "BTK".
Voici : http://www.cijoint.fr/cjlink.php?file=cj201102/cijSXSMk9q.txt
Est-ce possible d'avoir la suite ?
Merci à vous
Merci à vous
ne sois pas si pressé.Pour la survie de ton pc je n'ai pas droit a l'erreur.
* Télécharge OTM (OtmoveIT de Old_Timer) sur ton Bureau
ou
* http://www.itxassociates.com/OT-Tools/OTM.exe
* Double-clique sur OTM.exe pour le lancer.
* Copie la liste qui se trouve en gras dans la citation ci-dessous et colle-la dans le cadre de gauche de OTM sous Paste Instructions for Items to be Moved.
-----------------------------
:processes
explorer.exe
:files
C:\ProgramData\BPK\bpk.dat
C:\ProgramData\BPK\bpkhk.dll
C:\ProgramData\BPK\bpki.dll
C:\ProgramData\BPK\bpkr.exe
C:\ProgramData\BPK\bpkvw.exe
C:\ProgramData\BPK\bpkwb.dll
C:\Users\All Users\BPK\bpk.dat
C:\Users\All Users\BPK\bpk.exe
C:\Users\All Users\BPK\bpkhk.dll
C:\Users\All Users\BPK\bpki.dll
C:\Users\All Users\BPK\bpkr.exe
C:\Users\All Users\BPK\bpkvw.exe
C:\Users\All Users\BPK\bpkwb.dll
C:\Users\JB\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZXT9IDEO\bpk[1].dat
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpki.dll
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkr.exe
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkvw.exe
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkwb.dll
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.rar.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\BlazingTools Perfect Keylogger.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Perfect Keylogger Help.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Uninstall Perfect Keylogger.lnk
C:\Users\JB\Downloads\i_bpk2009\bpk.dat
C:\Users\JB\Downloads\i_bpk2009\bpk.exe
C:\Users\JB\Downloads\i_bpk2009\bpkhk.dll
C:\Users\JB\Downloads\i_bpk2009\bpki.dll
C:\Users\JB\Downloads\i_bpk2009\bpkr.exe
C:\Users\JB\Downloads\i_bpk2009\bpkvw.exe
C:\Users\JB\Downloads\i_bpk2009\bpkwb.dll
C:\Users\JB\Downloads\i_bpk2009\mt\bpk.dat
C:\Windows\Prefetch\BPK.EXE-EFCCD36D.pf
C:\Windows\Prefetch\BPK.EXE-FD9245DB.pf
C:\Windows\Prefetch\BPKVW.EXE-165023DC.pf
C:\Windows\Prefetch\BPKVW.EXE-5F761A4E.pf
:reg
[-HKLM\Software\Microsoft\Tracing\bpk_RASAPI32]
[-HKLM\Software\Microsoft\Tracing\bpk_RASMANCS]
[HKLM\Software\Classes\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32]
""=-
[HKLM\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32]
""=-
[HKLM\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR]
""=-
[HKLM\Software\Classes\Wow6432Node\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32]
""=-
[HKLM\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32]
""=-
[HKLM\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR]
""=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1]
"DeviceName"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\CIDSizeMRU]
"5"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs]
"22"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs]
"29"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.rar]
"2"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder]
"4"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted]
"C:\Users\JB\Downloads\i_bpk2009\setup.exe"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\WinRAR\ArcHistory]
"0"=-
:commands
[emptytemp]
[start explorer]
[reboot]
-----------------------------
* clique sur MoveIt! puis ferme OTM.
* Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
* Accepte en cliquant sur YES.
* Poste le rapport situé dans C:\_OTM\MovedFiles.
* Le nom du rapport correspond au moment de sa création : date_heure.log
* Télécharge OTM (OtmoveIT de Old_Timer) sur ton Bureau
ou
* http://www.itxassociates.com/OT-Tools/OTM.exe
* Double-clique sur OTM.exe pour le lancer.
* Copie la liste qui se trouve en gras dans la citation ci-dessous et colle-la dans le cadre de gauche de OTM sous Paste Instructions for Items to be Moved.
-----------------------------
:processes
explorer.exe
:files
C:\ProgramData\BPK\bpk.dat
C:\ProgramData\BPK\bpkhk.dll
C:\ProgramData\BPK\bpki.dll
C:\ProgramData\BPK\bpkr.exe
C:\ProgramData\BPK\bpkvw.exe
C:\ProgramData\BPK\bpkwb.dll
C:\Users\All Users\BPK\bpk.dat
C:\Users\All Users\BPK\bpk.exe
C:\Users\All Users\BPK\bpkhk.dll
C:\Users\All Users\BPK\bpki.dll
C:\Users\All Users\BPK\bpkr.exe
C:\Users\All Users\BPK\bpkvw.exe
C:\Users\All Users\BPK\bpkwb.dll
C:\Users\JB\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZXT9IDEO\bpk[1].dat
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpki.dll
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkr.exe
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkvw.exe
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkwb.dll
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.rar.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\BlazingTools Perfect Keylogger.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Perfect Keylogger Help.lnk
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Uninstall Perfect Keylogger.lnk
C:\Users\JB\Downloads\i_bpk2009\bpk.dat
C:\Users\JB\Downloads\i_bpk2009\bpk.exe
C:\Users\JB\Downloads\i_bpk2009\bpkhk.dll
C:\Users\JB\Downloads\i_bpk2009\bpki.dll
C:\Users\JB\Downloads\i_bpk2009\bpkr.exe
C:\Users\JB\Downloads\i_bpk2009\bpkvw.exe
C:\Users\JB\Downloads\i_bpk2009\bpkwb.dll
C:\Users\JB\Downloads\i_bpk2009\mt\bpk.dat
C:\Windows\Prefetch\BPK.EXE-EFCCD36D.pf
C:\Windows\Prefetch\BPK.EXE-FD9245DB.pf
C:\Windows\Prefetch\BPKVW.EXE-165023DC.pf
C:\Windows\Prefetch\BPKVW.EXE-5F761A4E.pf
:reg
[-HKLM\Software\Microsoft\Tracing\bpk_RASAPI32]
[-HKLM\Software\Microsoft\Tracing\bpk_RASMANCS]
[HKLM\Software\Classes\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32]
""=-
[HKLM\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32]
""=-
[HKLM\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR]
""=-
[HKLM\Software\Classes\Wow6432Node\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32]
""=-
[HKLM\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32]
""=-
[HKLM\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR]
""=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0]
"DeviceName"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1]
"Filename"=-
[HKLM\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1]
"DeviceName"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\CIDSizeMRU]
"5"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs]
"22"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs]
"29"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.rar]
"2"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder]
"4"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted]
"C:\Users\JB\Downloads\i_bpk2009\setup.exe"=-
[HKU\S-1-5-21-228883860-835040742-1300031664-1001\Software\WinRAR\ArcHistory]
"0"=-
:commands
[emptytemp]
[start explorer]
[reboot]
-----------------------------
* clique sur MoveIt! puis ferme OTM.
* Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
* Accepte en cliquant sur YES.
* Poste le rapport situé dans C:\_OTM\MovedFiles.
* Le nom du rapport correspond au moment de sa création : date_heure.log
Voici :
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
File/Folder C:\ProgramData\BPK\bpk.dat not found.
DllUnregisterServer procedure not found in C:\ProgramData\BPK\bpkhk.dll
C:\ProgramData\BPK\bpkhk.dll moved successfully.
LoadLibrary failed for C:\ProgramData\BPK\bpki.dll
C:\ProgramData\BPK\bpki.dll moved successfully.
C:\ProgramData\BPK\bpkr.exe moved successfully.
C:\ProgramData\BPK\bpkvw.exe moved successfully.
C:\ProgramData\BPK\bpkwb.dll moved successfully.
File/Folder C:\Users\All Users\BPK\bpk.dat not found.
C:\Users\All Users\BPK\bpk.exe moved successfully.
File/Folder C:\Users\All Users\BPK\bpkhk.dll not found.
File/Folder C:\Users\All Users\BPK\bpki.dll not found.
File/Folder C:\Users\All Users\BPK\bpkr.exe not found.
File/Folder C:\Users\All Users\BPK\bpkvw.exe not found.
File/Folder C:\Users\All Users\BPK\bpkwb.dll not found.
File/Folder C:\Users\JB\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZXT9IDEO\bpk[1].dat not found.
LoadLibrary failed for C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpki.dll
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpki.dll moved successfully.
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkr.exe moved successfully.
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkvw.exe moved successfully.
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkwb.dll moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.rar.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\BlazingTools Perfect Keylogger.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Perfect Keylogger Help.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Uninstall Perfect Keylogger.lnk moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpk.dat moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpk.exe moved successfully.
DllUnregisterServer procedure not found in C:\Users\JB\Downloads\i_bpk2009\bpkhk.dll
C:\Users\JB\Downloads\i_bpk2009\bpkhk.dll moved successfully.
LoadLibrary failed for C:\Users\JB\Downloads\i_bpk2009\bpki.dll
C:\Users\JB\Downloads\i_bpk2009\bpki.dll moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpkr.exe moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpkvw.exe moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpkwb.dll moved successfully.
C:\Users\JB\Downloads\i_bpk2009\mt\bpk.dat moved successfully.
C:\Windows\Prefetch\BPK.EXE-EFCCD36D.pf moved successfully.
C:\Windows\Prefetch\BPK.EXE-FD9245DB.pf moved successfully.
C:\Windows\Prefetch\BPKVW.EXE-165023DC.pf moved successfully.
C:\Windows\Prefetch\BPKVW.EXE-5F761A4E.pf moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\bpk_RASAPI32\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\bpk_RASMANCS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR not found.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1\\DeviceName deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\CIDSizeMRU\\5 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\\22 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\\29 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.rar\\2 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\\4 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted\\C:\Users\JB\Downloads\i_bpk2009\setup.exe deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\WinRAR\ArcHistory\\0 deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 51005 bytes
->Temporary Internet Files folder emptied: 4580180 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 41620 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: JB
->Temp folder emptied: 3222107 bytes
->Temporary Internet Files folder emptied: 11267084 bytes
->Java cache emptied: 2582952 bytes
->FireFox cache emptied: 296503773 bytes
->Google Chrome cache emptied: 4788592 bytes
->Flash cache emptied: 48196 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 322104 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 14618 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50607 bytes
RecycleBin emptied: 3656692 bytes
Total Files Cleaned = 312,00 mb
OTM by OldTimer - Version 3.1.17.2 log created on 02142011_170252
Files moved on Reboot...
C:\Users\JB\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
Registry entries deleted on Reboot...
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== FILES ==========
File/Folder C:\ProgramData\BPK\bpk.dat not found.
DllUnregisterServer procedure not found in C:\ProgramData\BPK\bpkhk.dll
C:\ProgramData\BPK\bpkhk.dll moved successfully.
LoadLibrary failed for C:\ProgramData\BPK\bpki.dll
C:\ProgramData\BPK\bpki.dll moved successfully.
C:\ProgramData\BPK\bpkr.exe moved successfully.
C:\ProgramData\BPK\bpkvw.exe moved successfully.
C:\ProgramData\BPK\bpkwb.dll moved successfully.
File/Folder C:\Users\All Users\BPK\bpk.dat not found.
C:\Users\All Users\BPK\bpk.exe moved successfully.
File/Folder C:\Users\All Users\BPK\bpkhk.dll not found.
File/Folder C:\Users\All Users\BPK\bpki.dll not found.
File/Folder C:\Users\All Users\BPK\bpkr.exe not found.
File/Folder C:\Users\All Users\BPK\bpkvw.exe not found.
File/Folder C:\Users\All Users\BPK\bpkwb.dll not found.
File/Folder C:\Users\JB\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZXT9IDEO\bpk[1].dat not found.
LoadLibrary failed for C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpki.dll
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpki.dll moved successfully.
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkr.exe moved successfully.
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkvw.exe moved successfully.
C:\Users\JB\AppData\Local\Temp\Rar$DR05.495\i_bpk2009\bpkwb.dll moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Recent\i_bpk2009.rar.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\BlazingTools Perfect Keylogger.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Perfect Keylogger Help.lnk moved successfully.
C:\Users\JB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BlazingTools Perfect Keylogger\Uninstall Perfect Keylogger.lnk moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpk.dat moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpk.exe moved successfully.
DllUnregisterServer procedure not found in C:\Users\JB\Downloads\i_bpk2009\bpkhk.dll
C:\Users\JB\Downloads\i_bpk2009\bpkhk.dll moved successfully.
LoadLibrary failed for C:\Users\JB\Downloads\i_bpk2009\bpki.dll
C:\Users\JB\Downloads\i_bpk2009\bpki.dll moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpkr.exe moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpkvw.exe moved successfully.
C:\Users\JB\Downloads\i_bpk2009\bpkwb.dll moved successfully.
C:\Users\JB\Downloads\i_bpk2009\mt\bpk.dat moved successfully.
C:\Windows\Prefetch\BPK.EXE-EFCCD36D.pf moved successfully.
C:\Windows\Prefetch\BPK.EXE-FD9245DB.pf moved successfully.
C:\Windows\Prefetch\BPKVW.EXE-165023DC.pf moved successfully.
C:\Windows\Prefetch\BPKVW.EXE-5F761A4E.pf moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\bpk_RASAPI32\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\bpk_RASMANCS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\CLSID\{1D1B2879-99FF-11E3-8D96-D7ACAC95952A}\InprocServer32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\0\win32 not found.
Registry key HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{1D1B286C-99FF-11E3-8D96-D7ACAC95952A}\1.0\HELPDIR not found.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\Firewall\Policy\1\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\1\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\0\Allowed\1\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\2\Rules\2\Allowed\2\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\3\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\0\Allowed\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\0\\DeviceName deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1\\Filename deleted successfully.
Registry value HKEY_LOCAL_MACHINE\System\Software\Comodo\Firewall Pro\Configurations\0\HIPS\Policy\4\Rules\1\Allowed\1\\DeviceName deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\CIDSizeMRU\\5 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\\22 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\\29 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.rar\\2 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\\4 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted\\C:\Users\JB\Downloads\i_bpk2009\setup.exe deleted successfully.
Registry value HKEY_USERS\S-1-5-21-228883860-835040742-1300031664-1001\Software\WinRAR\ArcHistory\\0 deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 51005 bytes
->Temporary Internet Files folder emptied: 4580180 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 41620 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: JB
->Temp folder emptied: 3222107 bytes
->Temporary Internet Files folder emptied: 11267084 bytes
->Java cache emptied: 2582952 bytes
->FireFox cache emptied: 296503773 bytes
->Google Chrome cache emptied: 4788592 bytes
->Flash cache emptied: 48196 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 322104 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 14618 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50607 bytes
RecycleBin emptied: 3656692 bytes
Total Files Cleaned = 312,00 mb
OTM by OldTimer - Version 3.1.17.2 log created on 02142011_170252
Files moved on Reboot...
C:\Users\JB\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
Registry entries deleted on Reboot...
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question