Mozilla firefox
Fermé
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
-
23 juil. 2013 à 23:31
AthenaC22 - 22 oct. 2013 à 22:45
AthenaC22 - 22 oct. 2013 à 22:45
A voir également:
- Mozilla firefox
- Télécharger mozilla firefox - Télécharger - Navigateurs
- Downloadhelper mozilla - Télécharger - Outils pour navigateurs
- Mozilla thunderbird - Télécharger - Mail
- Comment supprimer bing de firefox - Guide
- Exporter favoris firefox - Guide
46 réponses
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
25 juil. 2013 à 00:03
25 juil. 2013 à 00:03
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
25 juil. 2013 à 00:33
25 juil. 2013 à 00:33
http://cjoint.com/?CGzaHkZlI9y
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
25 juil. 2013 à 00:34
25 juil. 2013 à 00:34
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
25 juil. 2013 à 00:37
25 juil. 2013 à 00:37
ok la suite demain je suis crevé je vais dormir
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
25 juil. 2013 à 00:46
25 juil. 2013 à 00:46
OK MERCI A TOI BONNE NUIT A DEMAIN
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
25 juil. 2013 à 08:06
25 juil. 2013 à 08:06
au post 8 je t'ai demandé de desinstaller spyware terminator rien du tout , il turne encore , si tu ne suis pas mes indications , inutile de demander de l'aide
==
si installé desinstalle Piratrax
====
avec tous les logiciels de P2P , pas étonnant que tu t'infectes
==
C:\Program Files\Azureus
C:\Program Files\BitComet
C:\Program Files\BitSpirit
C:\Program Files\eMule
C:\Program Files\uTorrent
C:\Users\florian\AppData\Local\Shareaza
[HKEY_CURRENT_USER\Software\Peer2Me]
[HKEY_CURRENT_USER\Software\BitTorrent]
C:\Users\florian\AppData\Roaming\LimeWire
==
ATTENTION !!! : Script personnalisé pour cette machine uniquement , ne pas reproduire !!
si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."
sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous "Personnalisation" :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
@Alternate Data Stream - 1183 bytes -> C:\Users\florian\AppData\Local\temp:oVm94qgc03A5qsfDtb4L
ActiveX: {0291E591-EA41-4c82-8106-3DC6CE7F7664} - Reg Error: Value error.
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"Dell QuickSet"=-
"HP Component Manager"=-
[-HKEY_LOCAL_MACHINE\Software\Spyware Terminator]
[-HKEY_LOCAL_MACHINE\Software\BrowserChoice]
[-HKEY_CURRENT_USER\Software\UpToDown]
[-HKEY_CURRENT_USER\Software\Spyware Terminator]
[-HKEY_CURRENT_USER\Software\LdShih]
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O8 - Extra context menu item: Download with Star Downloader - Reg Error: Value error. File not found
O7 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
O2 - BHO: (no name) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - No CLSID value found.
CHR - plugin: (Enabled) = C:\Users\florian\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll
CHR - homepage: http://www.searchplusnetwork.com/?sp=st3
CHR - default_search_provider: search_url = http://www.searchplusnetwork.com/?sp=st3&q={searchTerms}
[2013/07/21 02:39:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2013/07/21 02:39:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\bbrs_002@blabbers.com
[2013/07/23 20:16:06 | 000,002,790 | ---- | M] () -- C:\Users\florian\AppData\Roaming\mozilla\firefox\profiles\hu8x93va.default\searchplugins\Plusnetwork.xml
[2013/07/21 02:39:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
FF - HKCU\Software\MozillaPlugins\@rawflow.com/ICDClient,version=5.3.1.0: C:\Windows\system32/Rawflow/npicdclient.dll File not found
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF - user.js - File not found
FF - prefs.js..keyword.URL: "http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q="
FF - prefs.js..network.proxy.type: 4
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Ask.com"
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1060933&SearchSource=3&q={searchTerms}"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Ask.com"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {da30eff8-ccc6-4162-a20d-67402a26a215}:3.3.2.1
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledAddons: bbrs_002%40blabbers.com:1.0.5
FF - prefs.js..browser.search.selectedEngine: "SweetIM Search"
FF - prefs.js..browser.search.defaultenginename,S: S", ""
FF - prefs.js..browser.search.defaultthis.engineName: "Freecorder Customized Web Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.defaultengine: "Ask.com"
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:57000;https=127.0.0.1:57000
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\SearchScopes\{D36B86DE-D7FC-4530-9271-10260FF8E204}: "URL" = http://www.search.ask.com/?l=dis{searchTerms}&locale=fr_FR&apn_ptnrs=^7R&apn_dtid=^YYYYYY^YY^FR&apn_uid=80e74dee-0968-47f3-8337-9d7281aa6b4b&apn_sauid=918190BD-DB34-457F-9DD0-BC9B9750B606
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\AWRTRD.sys -- (Ad-Watch Registry Filter)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\NSDriver.sys -- (Ad-Watch Connect Filter)
SRV - [2012/10/25 14:04:29 | 000,496,128 | ---- | M] (Crawler.com) [Auto | Running] -- C:\Program Files\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
:Files
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\*
C:\Windows\system32\Tasks\CreateChoiceProcessTask
C:\Program Files\Spybot - Search & Destroy
C:\Program Files\Spyware Terminator
C:\Program Files\Piratrax
C:\Users\florian\AppData\Local\{*}
C:\Users\florian\AppData\Local\piratrax
C:\Users\florian\AppData\Local\kimkom.bat
C:\ProgramData\Spybot - Search & Destroy
C:\ProgramData\Spyware Terminator
C:\ProgramData\.zreglib
C:\d35dbea5a9cccc6dce51754c
C:\a25c382c7a9b9b201c29c3
C:\*.exe
C:\Users\florian\AppData\Roaming\Spyware Terminator
C:\Users\florian\AppData\Roaming\ez*.*
C:\Windows\DeleteOnReboot.bat
:commands
[emptytemp]
▶ Clique sur "Correction" pour lancer la suppression.
▶ Poste le rapport qui logiquement s'ouvrira tout seul en fin de travail appres le redemarrage.
==
si installé desinstalle Piratrax
====
avec tous les logiciels de P2P , pas étonnant que tu t'infectes
==
C:\Program Files\Azureus
C:\Program Files\BitComet
C:\Program Files\BitSpirit
C:\Program Files\eMule
C:\Program Files\uTorrent
C:\Users\florian\AppData\Local\Shareaza
[HKEY_CURRENT_USER\Software\Peer2Me]
[HKEY_CURRENT_USER\Software\BitTorrent]
C:\Users\florian\AppData\Roaming\LimeWire
==
ATTENTION !!! : Script personnalisé pour cette machine uniquement , ne pas reproduire !!
si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "executer en tant que...."
sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous "Personnalisation" :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
@Alternate Data Stream - 1183 bytes -> C:\Users\florian\AppData\Local\temp:oVm94qgc03A5qsfDtb4L
ActiveX: {0291E591-EA41-4c82-8106-3DC6CE7F7664} - Reg Error: Value error.
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"Dell QuickSet"=-
"HP Component Manager"=-
[-HKEY_LOCAL_MACHINE\Software\Spyware Terminator]
[-HKEY_LOCAL_MACHINE\Software\BrowserChoice]
[-HKEY_CURRENT_USER\Software\UpToDown]
[-HKEY_CURRENT_USER\Software\Spyware Terminator]
[-HKEY_CURRENT_USER\Software\LdShih]
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O8 - Extra context menu item: Download with Star Downloader - Reg Error: Value error. File not found
O7 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
O2 - BHO: (no name) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - No CLSID value found.
CHR - plugin: (Enabled) = C:\Users\florian\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll
CHR - homepage: http://www.searchplusnetwork.com/?sp=st3
CHR - default_search_provider: search_url = http://www.searchplusnetwork.com/?sp=st3&q={searchTerms}
[2013/07/21 02:39:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2013/07/21 02:39:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\bbrs_002@blabbers.com
[2013/07/23 20:16:06 | 000,002,790 | ---- | M] () -- C:\Users\florian\AppData\Roaming\mozilla\firefox\profiles\hu8x93va.default\searchplugins\Plusnetwork.xml
[2013/07/21 02:39:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
FF - HKCU\Software\MozillaPlugins\@rawflow.com/ICDClient,version=5.3.1.0: C:\Windows\system32/Rawflow/npicdclient.dll File not found
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF - user.js - File not found
FF - prefs.js..keyword.URL: "http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q="
FF - prefs.js..network.proxy.type: 4
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Ask.com"
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1060933&SearchSource=3&q={searchTerms}"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Ask.com"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {da30eff8-ccc6-4162-a20d-67402a26a215}:3.3.2.1
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledAddons: bbrs_002%40blabbers.com:1.0.5
FF - prefs.js..browser.search.selectedEngine: "SweetIM Search"
FF - prefs.js..browser.search.defaultenginename,S: S", ""
FF - prefs.js..browser.search.defaultthis.engineName: "Freecorder Customized Web Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.defaultengine: "Ask.com"
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:57000;https=127.0.0.1:57000
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\SearchScopes\{D36B86DE-D7FC-4530-9271-10260FF8E204}: "URL" = http://www.search.ask.com/?l=dis{searchTerms}&locale=fr_FR&apn_ptnrs=^7R&apn_dtid=^YYYYYY^YY^FR&apn_uid=80e74dee-0968-47f3-8337-9d7281aa6b4b&apn_sauid=918190BD-DB34-457F-9DD0-BC9B9750B606
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\AWRTRD.sys -- (Ad-Watch Registry Filter)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\NSDriver.sys -- (Ad-Watch Connect Filter)
SRV - [2012/10/25 14:04:29 | 000,496,128 | ---- | M] (Crawler.com) [Auto | Running] -- C:\Program Files\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
:Files
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\*
C:\Windows\system32\Tasks\CreateChoiceProcessTask
C:\Program Files\Spybot - Search & Destroy
C:\Program Files\Spyware Terminator
C:\Program Files\Piratrax
C:\Users\florian\AppData\Local\{*}
C:\Users\florian\AppData\Local\piratrax
C:\Users\florian\AppData\Local\kimkom.bat
C:\ProgramData\Spybot - Search & Destroy
C:\ProgramData\Spyware Terminator
C:\ProgramData\.zreglib
C:\d35dbea5a9cccc6dce51754c
C:\a25c382c7a9b9b201c29c3
C:\*.exe
C:\Users\florian\AppData\Roaming\Spyware Terminator
C:\Users\florian\AppData\Roaming\ez*.*
C:\Windows\DeleteOnReboot.bat
:commands
[emptytemp]
▶ Clique sur "Correction" pour lancer la suppression.
▶ Poste le rapport qui logiquement s'ouvrira tout seul en fin de travail appres le redemarrage.
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
25 juil. 2013 à 23:08
25 juil. 2013 à 23:08
ok
fais-le en mode sans echec avec prise en charge reseau
fais-le en mode sans echec avec prise en charge reseau
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
26 juil. 2013 à 19:21
26 juil. 2013 à 19:21
en mode sans echec c la meme chose...............jsai âs pouuquoi et la jai un autre proble de temps en temps quand je vais sur internet sa me dit en gros que je suis pas connecter au serveurs proxy....
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
26 juil. 2013 à 21:14
26 juil. 2013 à 21:14
desolé j'ai merdouillé dans mon copier / coller
refais avec ca :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
@Alternate Data Stream - 1183 bytes -> C:\Users\florian\AppData\Local\temp:oVm94qgc03A5qsfDtb4L
ActiveX: {0291E591-EA41-4c82-8106-3DC6CE7F7664} - Reg Error: Value error.
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O8 - Extra context menu item: Download with Star Downloader - Reg Error: Value error. File not found
O7 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
O2 - BHO: (no name) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - No CLSID value found.
CHR - plugin: (Enabled) = C:\Users\florian\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll
CHR - homepage: http://www.searchplusnetwork.com/?sp=st3
CHR - default_search_provider: search_url = http://www.searchplusnetwork.com/?sp=st3&q={searchTerms}
[2013/07/21 02:39:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2013/07/21 02:39:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\bbrs_002@blabbers.com
[2013/07/23 20:16:06 | 000,002,790 | ---- | M] () -- C:\Users\florian\AppData\Roaming\mozilla\firefox\profiles\hu8x93va.default\searchplugins\Plusnetwork.xml
[2013/07/21 02:39:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
FF - HKCU\Software\MozillaPlugins\@rawflow.com/ICDClient,version=5.3.1.0: C:\Windows\system32/Rawflow/npicdclient.dll File not found
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF - user.js - File not found
FF - prefs.js..keyword.URL: "http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q="
FF - prefs.js..network.proxy.type: 4
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Ask.com"
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1060933&SearchSource=3&q={searchTerms}"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Ask.com"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {da30eff8-ccc6-4162-a20d-67402a26a215}:3.3.2.1
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledAddons: bbrs_002%40blabbers.com:1.0.5
FF - prefs.js..browser.search.selectedEngine: "SweetIM Search"
FF - prefs.js..browser.search.defaultenginename,S: S", ""
FF - prefs.js..browser.search.defaultthis.engineName: "Freecorder Customized Web Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.defaultengine: "Ask.com"
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:57000;https=127.0.0.1:57000
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\SearchScopes\{D36B86DE-D7FC-4530-9271-10260FF8E204}: "URL" = http://www.search.ask.com/?l=dis{searchTerms}&locale=fr_FR&apn_ptnrs=^7R&apn_dtid=^YYYYYY^YY^FR&apn_uid=80e74dee-0968-47f3-8337-9d7281aa6b4b&apn_sauid=918190BD-DB34-457F-9DD0-BC9B9750B606
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\AWRTRD.sys -- (Ad-Watch Registry Filter)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\NSDriver.sys -- (Ad-Watch Connect Filter)
SRV - [2012/10/25 14:04:29 | 000,496,128 | ---- | M] (Crawler.com) [Auto | Running] -- C:\Program Files\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"Dell QuickSet"=-
"HP Component Manager"=-
[-HKEY_LOCAL_MACHINE\Software\Spyware Terminator]
[-HKEY_LOCAL_MACHINE\Software\BrowserChoice]
[-HKEY_CURRENT_USER\Software\UpToDown]
[-HKEY_CURRENT_USER\Software\Spyware Terminator]
[-HKEY_CURRENT_USER\Software\LdShih]
:Files
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\*
C:\Windows\system32\Tasks\CreateChoiceProcessTask
C:\Program Files\Spybot - Search & Destroy
C:\Program Files\Spyware Terminator
C:\Program Files\Piratrax
C:\Users\florian\AppData\Local\{*}
C:\Users\florian\AppData\Local\piratrax
C:\Users\florian\AppData\Local\kimkom.bat
C:\ProgramData\Spybot - Search & Destroy
C:\ProgramData\Spyware Terminator
C:\ProgramData\.zreglib
C:\d35dbea5a9cccc6dce51754c
C:\a25c382c7a9b9b201c29c3
C:\*.exe
C:\Users\florian\AppData\Roaming\Spyware Terminator
C:\Users\florian\AppData\Roaming\ez*.*
C:\Windows\DeleteOnReboot.bat
:commands
[emptytemp]
refais avec ca :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:OTL
@Alternate Data Stream - 1183 bytes -> C:\Users\florian\AppData\Local\temp:oVm94qgc03A5qsfDtb4L
ActiveX: {0291E591-EA41-4c82-8106-3DC6CE7F7664} - Reg Error: Value error.
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.9.2)
O8 - Extra context menu item: Download with Star Downloader - Reg Error: Value error. File not found
O7 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No CLSID value found.
O3 - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found.
O2 - BHO: (no name) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - No CLSID value found.
CHR - plugin: (Enabled) = C:\Users\florian\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll
CHR - homepage: http://www.searchplusnetwork.com/?sp=st3
CHR - default_search_provider: search_url = http://www.searchplusnetwork.com/?sp=st3&q={searchTerms}
[2013/07/21 02:39:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
[2013/07/21 02:39:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\bbrs_002@blabbers.com
[2013/07/23 20:16:06 | 000,002,790 | ---- | M] () -- C:\Users\florian\AppData\Roaming\mozilla\firefox\profiles\hu8x93va.default\searchplugins\Plusnetwork.xml
[2013/07/21 02:39:28 | 000,000,000 | ---D | M] (No name found) -- C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
FF - HKCU\Software\MozillaPlugins\@rawflow.com/ICDClient,version=5.3.1.0: C:\Windows\system32/Rawflow/npicdclient.dll File not found
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""
FF - user.js - File not found
FF - prefs.js..keyword.URL: "http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q="
FF - prefs.js..network.proxy.type: 4
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: "Ask.com"
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1060933&SearchSource=3&q={searchTerms}"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "Ask.com"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems: {da30eff8-ccc6-4162-a20d-67402a26a215}:3.3.2.1
FF - prefs.js..extensions.enabledItems: {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledAddons: bbrs_002%40blabbers.com:1.0.5
FF - prefs.js..browser.search.selectedEngine: "SweetIM Search"
FF - prefs.js..browser.search.defaultenginename,S: S", ""
FF - prefs.js..browser.search.defaultthis.engineName: "Freecorder Customized Web Search"
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.defaultengine: "Ask.com"
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:57000;https=127.0.0.1:57000
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
IE - HKU\S-1-5-21-1420555668-164698954-293517806-1002\..\SearchScopes\{D36B86DE-D7FC-4530-9271-10260FF8E204}: "URL" = http://www.search.ask.com/?l=dis{searchTerms}&locale=fr_FR&apn_ptnrs=^7R&apn_dtid=^YYYYYY^YY^FR&apn_uid=80e74dee-0968-47f3-8337-9d7281aa6b4b&apn_sauid=918190BD-DB34-457F-9DD0-BC9B9750B606
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\AWRTRD.sys -- (Ad-Watch Registry Filter)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\NSDriver.sys -- (Ad-Watch Connect Filter)
SRV - [2012/10/25 14:04:29 | 000,496,128 | ---- | M] (Crawler.com) [Auto | Running] -- C:\Program Files\Spyware Terminator\sp_rsser.exe -- (sp_rssrv)
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"Dell QuickSet"=-
"HP Component Manager"=-
[-HKEY_LOCAL_MACHINE\Software\Spyware Terminator]
[-HKEY_LOCAL_MACHINE\Software\BrowserChoice]
[-HKEY_CURRENT_USER\Software\UpToDown]
[-HKEY_CURRENT_USER\Software\Spyware Terminator]
[-HKEY_CURRENT_USER\Software\LdShih]
:Files
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\*
C:\Windows\system32\Tasks\CreateChoiceProcessTask
C:\Program Files\Spybot - Search & Destroy
C:\Program Files\Spyware Terminator
C:\Program Files\Piratrax
C:\Users\florian\AppData\Local\{*}
C:\Users\florian\AppData\Local\piratrax
C:\Users\florian\AppData\Local\kimkom.bat
C:\ProgramData\Spybot - Search & Destroy
C:\ProgramData\Spyware Terminator
C:\ProgramData\.zreglib
C:\d35dbea5a9cccc6dce51754c
C:\a25c382c7a9b9b201c29c3
C:\*.exe
C:\Users\florian\AppData\Roaming\Spyware Terminator
C:\Users\florian\AppData\Roaming\ez*.*
C:\Windows\DeleteOnReboot.bat
:commands
[emptytemp]
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
27 juil. 2013 à 00:03
27 juil. 2013 à 00:03
Files\Folders moved on Reboot...
File move failed. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File\Folder C:\Windows\temp\logishrd\LVPrcInj04.dll not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
File move failed. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File\Folder C:\Windows\temp\logishrd\LVPrcInj04.dll not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
27 juil. 2013 à 00:08
27 juil. 2013 à 00:08
sa abloquer vers la fin genre mais sa a fini et ma mi sa ??
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
27 juil. 2013 à 00:08
27 juil. 2013 à 00:08
et sa ma ouvert pleins de fenetre de connexion ..
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
27 juil. 2013 à 00:09
27 juil. 2013 à 00:09
o ka ou jai fais une capture decran
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
27 juil. 2013 à 00:10
27 juil. 2013 à 00:10
et la quand je vais sur internet des fois sa me met erreur serveur proxy
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
Modifié par g3n-h@ckm@n le 27/07/2013 à 07:34
Modifié par g3n-h@ckm@n le 27/07/2013 à 07:34
possible d'avoir le rapport complet ? et essaie d'écrire en francais je ne suis pas un decodeur
¤¤¤¤¤¤¤¤¤¤_Pre_Scan_Concept_¤¤¤¤¤¤¤¤¤¤
Windows 8 => meme flop que Vista X 10
¤¤¤¤¤¤¤¤¤¤_Pre_Scan_Concept_¤¤¤¤¤¤¤¤¤¤
Windows 8 => meme flop que Vista X 10
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
2 août 2013 à 00:20
2 août 2013 à 00:20
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
No active process named iexplore.exe was found!
No active process named firefox.exe was found!
No active process named msnmsgr.exe was found!
No active process named Teatimer.exe was found!
========== OTL ==========
Unable to delete ADS C:\Users\florian\AppData\Local\temp:oVm94qgc03A5qsfDtb4L .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {D27CDB6E-AE6D-11CF-96B8-444553540000}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Download with Star Downloader\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks not found.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0}\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C55BBCD6-41AD-48AD-9953-3609C48EACC7} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C55BBCD6-41AD-48AD-9953-3609C48EACC7}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}\ not found.
File C:\Users\florian\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll not found.
Use Chrome's Settings page to change the HomePage.
Use Chrome's Settings page to remove the default_search_provider items.
Folder C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\ not found.
Folder C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\bbrs_002@blabbers.com\ not found.
File C:\Users\florian\AppData\Roaming\mozilla\firefox\profiles\hu8x93va.default\searchplugins\Plusnetwork.xml not found.
Folder C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\ not found.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\@rawflow.com/ICDClient,version=5.3.1.0\ not found.
Prefs.js: "" removed from sweetim.toolbar.previous.keyword.URL
Prefs.js: "http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q=" removed from keyword.URL
Prefs.js: 4 removed from network.proxy.type
Prefs.js: "Ask.com" removed from sweetim.toolbar.previous.browser.search.defaultenginename
Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1060933&SearchSource=3&q={searchTerms}" removed from sweetim.toolbar.previous.browser.search.defaulturl
Prefs.js: "Ask.com" removed from sweetim.toolbar.previous.browser.search.selectedEngine
Prefs.js: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 removed from extensions.enabledItems
Prefs.js: engine@conduit.com:3.3.3.2 removed from extensions.enabledItems
Prefs.js: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 removed from extensions.enabledItems
Prefs.js: {da30eff8-ccc6-4162-a20d-67402a26a215}:3.3.2.1 removed from extensions.enabledItems
Prefs.js: {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13 removed from extensions.enabledItems
Prefs.js: bbrs_002%40blabbers.com:1.0.5 removed from extensions.enabledAddons
Prefs.js: "SweetIM Search" removed from browser.search.selectedEngine
Prefs.js: S", "" removed from browser.search.defaultenginename,S
Prefs.js: "Freecorder Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.defaultengine
HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\SearchScopes\{D36B86DE-D7FC-4530-9271-10260FF8E204}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D36B86DE-D7FC-4530-9271-10260FF8E204}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
Error: No service named Ad-Watch Registry Filter was found to stop!
Service\Driver key Ad-Watch Registry Filter not found.
File C:\Windows\system32\drivers\AWRTRD.sys not found.
Error: No service named Ad-Watch Connect Filter was found to stop!
Service\Driver key Ad-Watch Connect Filter not found.
File C:\Windows\system32\drivers\NSDriver.sys not found.
Error: No service named sp_rssrv was found to stop!
Service\Driver key sp_rssrv not found.
File C:\Program Files\Spyware Terminator\sp_rsser.exe not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Alcmtr not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Dell QuickSet not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Component Manager not found.
Registry key HKEY_LOCAL_MACHINE\Software\Spyware Terminator\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\BrowserChoice\ not found.
Registry key HKEY_CURRENT_USER\Software\UpToDown\ not found.
Registry key HKEY_CURRENT_USER\Software\Spyware Terminator\ not found.
Registry key HKEY_CURRENT_USER\Software\LdShih\ not found.
========== FILES ==========
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9ML17EE8 folder moved successfully.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini moved successfully.
File move failed. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OWUQOM9K folder moved successfully.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SM7ATS3J folder moved successfully.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZA1MJBTQ folder moved successfully.
File\Folder C:\Windows\system32\Tasks\CreateChoiceProcessTask not found.
File\Folder C:\Program Files\Spybot - Search & Destroy not found.
File\Folder C:\Program Files\Spyware Terminator not found.
File\Folder C:\Program Files\Piratrax not found.
File\Folder C:\Users\florian\AppData\Local\{*} not found.
File\Folder C:\Users\florian\AppData\Local\piratrax not found.
File\Folder C:\Users\florian\AppData\Local\kimkom.bat not found.
File\Folder C:\ProgramData\Spybot - Search & Destroy not found.
File\Folder C:\ProgramData\Spyware Terminator not found.
File\Folder C:\ProgramData\.zreglib not found.
File\Folder C:\d35dbea5a9cccc6dce51754c not found.
File\Folder C:\a25c382c7a9b9b201c29c3 not found.
File\Folder C:\*.exe not found.
File\Folder C:\Users\florian\AppData\Roaming\Spyware Terminator not found.
File\Folder C:\Users\florian\AppData\Roaming\ez*.* not found.
File\Folder C:\Windows\DeleteOnReboot.bat not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: flo
->Temp folder emptied: 0 bytes
User: florian
->Temp folder emptied: 136359 bytes
->Temporary Internet Files folder emptied: 160407 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 238702192 bytes
->Flash cache emptied: 0 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 123864 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1970824843 bytes
Total Files Cleaned = 2 108,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 08022013_001139
Files\Folders moved on Reboot...
File move failed. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Windows\temp\logishrd\LVPrcInj01.dll scheduled to be moved on reboot.
C:\Windows\temp\JETC8F9.tmp moved successfully.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== PROCESSES ==========
No active process named explorer.exe was found!
No active process named iexplore.exe was found!
No active process named firefox.exe was found!
No active process named msnmsgr.exe was found!
No active process named Teatimer.exe was found!
========== OTL ==========
Unable to delete ADS C:\Users\florian\AppData\Local\temp:oVm94qgc03A5qsfDtb4L .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0291E591-EA41-4c82-8106-3DC6CE7F7664}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {D27CDB6E-AE6D-11CF-96B8-444553540000}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D27CDB6E-AE6D-11CF-96B8-444553540000}\ not found.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Download with Star Downloader\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoLowDiskSpaceChecks not found.
Registry key HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Restrictions\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0}\ not found.
Registry value HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C55BBCD6-41AD-48AD-9953-3609C48EACC7} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C55BBCD6-41AD-48AD-9953-3609C48EACC7}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}\ not found.
File C:\Users\florian\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\chromeNPAPI.dll not found.
Use Chrome's Settings page to change the HomePage.
Use Chrome's Settings page to remove the default_search_provider items.
Folder C:\Program Files\mozilla firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\ not found.
Folder C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\bbrs_002@blabbers.com\ not found.
File C:\Users\florian\AppData\Roaming\mozilla\firefox\profiles\hu8x93va.default\searchplugins\Plusnetwork.xml not found.
Folder C:\Users\florian\AppData\Roaming\mozilla\Firefox\Profiles\hu8x93va.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\ not found.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\@rawflow.com/ICDClient,version=5.3.1.0\ not found.
Prefs.js: "" removed from sweetim.toolbar.previous.keyword.URL
Prefs.js: "http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q=" removed from keyword.URL
Prefs.js: 4 removed from network.proxy.type
Prefs.js: "Ask.com" removed from sweetim.toolbar.previous.browser.search.defaultenginename
Prefs.js: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1060933&SearchSource=3&q={searchTerms}" removed from sweetim.toolbar.previous.browser.search.defaulturl
Prefs.js: "Ask.com" removed from sweetim.toolbar.previous.browser.search.selectedEngine
Prefs.js: {CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}:6.0.19 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 removed from extensions.enabledItems
Prefs.js: engine@conduit.com:3.3.3.2 removed from extensions.enabledItems
Prefs.js: {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 removed from extensions.enabledItems
Prefs.js: {da30eff8-ccc6-4162-a20d-67402a26a215}:3.3.2.1 removed from extensions.enabledItems
Prefs.js: {3112ca9c-de6d-4884-a869-9855de68056c}:7.1.20101113Wb1 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}:6.0.10 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11 removed from extensions.enabledItems
Prefs.js: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13 removed from extensions.enabledItems
Prefs.js: bbrs_002%40blabbers.com:1.0.5 removed from extensions.enabledAddons
Prefs.js: "SweetIM Search" removed from browser.search.selectedEngine
Prefs.js: S", "" removed from browser.search.defaultenginename,S
Prefs.js: "Freecorder Customized Web Search" removed from browser.search.defaultthis.engineName
Prefs.js: "" removed from browser.search.defaulturl
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.defaultengine
HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer| /E : value set successfully!
HKU\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-1420555668-164698954-293517806-1002\Software\Microsoft\Internet Explorer\SearchScopes\{D36B86DE-D7FC-4530-9271-10260FF8E204}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D36B86DE-D7FC-4530-9271-10260FF8E204}\ not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Secondary Start Pages| /E : value set successfully!
Error: No service named Ad-Watch Registry Filter was found to stop!
Service\Driver key Ad-Watch Registry Filter not found.
File C:\Windows\system32\drivers\AWRTRD.sys not found.
Error: No service named Ad-Watch Connect Filter was found to stop!
Service\Driver key Ad-Watch Connect Filter not found.
File C:\Windows\system32\drivers\NSDriver.sys not found.
Error: No service named sp_rssrv was found to stop!
Service\Driver key sp_rssrv not found.
File C:\Program Files\Spyware Terminator\sp_rsser.exe not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Alcmtr not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Dell QuickSet not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Component Manager not found.
Registry key HKEY_LOCAL_MACHINE\Software\Spyware Terminator\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\BrowserChoice\ not found.
Registry key HKEY_CURRENT_USER\Software\UpToDown\ not found.
Registry key HKEY_CURRENT_USER\Software\Spyware Terminator\ not found.
Registry key HKEY_CURRENT_USER\Software\LdShih\ not found.
========== FILES ==========
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9ML17EE8 folder moved successfully.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini moved successfully.
File move failed. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\OWUQOM9K folder moved successfully.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SM7ATS3J folder moved successfully.
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZA1MJBTQ folder moved successfully.
File\Folder C:\Windows\system32\Tasks\CreateChoiceProcessTask not found.
File\Folder C:\Program Files\Spybot - Search & Destroy not found.
File\Folder C:\Program Files\Spyware Terminator not found.
File\Folder C:\Program Files\Piratrax not found.
File\Folder C:\Users\florian\AppData\Local\{*} not found.
File\Folder C:\Users\florian\AppData\Local\piratrax not found.
File\Folder C:\Users\florian\AppData\Local\kimkom.bat not found.
File\Folder C:\ProgramData\Spybot - Search & Destroy not found.
File\Folder C:\ProgramData\Spyware Terminator not found.
File\Folder C:\ProgramData\.zreglib not found.
File\Folder C:\d35dbea5a9cccc6dce51754c not found.
File\Folder C:\a25c382c7a9b9b201c29c3 not found.
File\Folder C:\*.exe not found.
File\Folder C:\Users\florian\AppData\Roaming\Spyware Terminator not found.
File\Folder C:\Users\florian\AppData\Roaming\ez*.* not found.
File\Folder C:\Windows\DeleteOnReboot.bat not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: flo
->Temp folder emptied: 0 bytes
User: florian
->Temp folder emptied: 136359 bytes
->Temporary Internet Files folder emptied: 160407 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 238702192 bytes
->Flash cache emptied: 0 bytes
User: Public
->Temp folder emptied: 0 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 123864 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1970824843 bytes
Total Files Cleaned = 2 108,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 08022013_001139
Files\Folders moved on Reboot...
File move failed. C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot.
File move failed. C:\Windows\temp\logishrd\LVPrcInj01.dll scheduled to be moved on reboot.
C:\Windows\temp\JETC8F9.tmp moved successfully.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
2 août 2013 à 00:21
2 août 2013 à 00:21
voila j'ai enfin reussis a effectuer la manip correctement....voila le rapport et desoler pour le retard
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
2 août 2013 à 13:47
2 août 2013 à 13:47
re
des soucis persistent ?
des soucis persistent ?
jul135
Messages postés
49
Date d'inscription
mercredi 3 avril 2013
Statut
Membre
Dernière intervention
26 septembre 2013
1
3 août 2013 à 20:57
3 août 2013 à 20:57
lol oui j'ai toujours Firefox qui ne demarre pas...ainsi que des fenêtres de connexion qui s'ouvre en permanence...lol
g3n-h@ckm@n
Messages postés
13238
Date d'inscription
jeudi 31 janvier 2013
Statut
Membre
Dernière intervention
24 février 2022
948
3 août 2013 à 21:39
3 août 2013 à 21:39
dis m'en plus