donny711 | 20.07.2009 14:30 | combofix log teil 2 Zitat:
------- Sigcheck -------
[-] 2007-06-13 13:21:46 1554944 14B0B1999FCA97A232465246E5CE3F10 C:\WINDOWS\explorer.exe
[7] 2007-06-13 13:10:08 1036288 331ED93570BAF3CFE30340298762CD56 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
[7] 2007-06-13 13:21:45 1036288 64D320C0E301EEDC5A4ADBBDC5024F7F C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[-] 2008-04-14 02:22:45 1036800 418045A93CD87A352098AB7DABE1B53E C:\WINDOWS\SoftwareDistribution\Download\d7ca437757bb79190d8fe0f22734e38b\explorer.exe
[7] 2007-06-13 13:21:45 1036288 64D320C0E301EEDC5A4ADBBDC5024F7F C:\WINDOWS\system32\dllcache\explorer.exe
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{95289393-33EA-4F8D-B952-483415B9C955}"= "C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Microsoft\Internet Explorer\qipsearchbar.dll" [2009-02-10 15:56:14 119808]
[HKEY_CLASSES_ROOT\clsid\{95289393-33ea-4f8d-b952-483415b9c955}]
[HKEY_CLASSES_ROOT\qipbar.QIPBHO.1]
[HKEY_CLASSES_ROOT\TypeLib\{45FF696B-5284-4781-B2CA-ECF3A742A17B}]
[HKEY_CLASSES_ROOT\qipbar.QIPBHO]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinClicker.exe"="REM" [X]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="REM" [X]
"Sony Ericsson PC Suite"="REM" [X]
"BitTorrent DNA"="REM" [X]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 23:57:50 15360]
"DAEMON Tools Lite"="F:\DAEMON Tools\daemon.exe" [2008-08-08 12:11:12 490952]
"ISUSPM"="C:\Programme\Gemeinsame Dateien\InstallShield\UpdateService\isuspm.exe" [2006-09-10 21:56:24 218032]
"WMPNSCFG"="C:\Programme\Windows Media Player\WMPNSCFG.exe" [2009-07-16 14:15:37 25600]
"AutoStartNPSAgent"="F:\Samsung New PC Studio\NPSAgent.exe" [2008-12-13 15:51:46 98304]
"SpybotSD TeaTimer"="f:\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 13:31:16 2144088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NBKeyScan"="REM" [X]
"QuickTime Task"="REM" [X]
"AVMWlanClient"="REM" [X]
"NeroFilterCheck"="C:\Programme\Gemeinsame Dateien\Nero\Lib\NeroCheck.exe" [2009-07-16 09:24:50 25600]
"SecurDisc"="F:\Nero 8\InCD\NBHGui.exe" [2007-09-20 09:36:26 2044712]
"InCD"="F:\Nero 8\InCD\InCD.exe" [2007-09-20 09:35:56 1077032]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-09-17 00:07:00 8491008]
"Start WingMan Profiler"="C:\Programme\Logitech\Gaming Software\LWEMon.exe" [2008-04-04 09:38:00 88584]
"avgnt"="C:\Programme\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 11:08:43 209153]
"nwiz"="nwiz.exe" - C:\WINDOWS\system32\nwiz.exe [2007-09-17 00:07:00 1626112]
"Logitech Utility"="Logi_MwX.Exe" - C:\WINDOWS\LOGI_MWX.EXE [2003-12-17 08:50:00 19968]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" - C:\WINDOWS\KHALMNPR.Exe [2008-12-18 21:42:58 76304]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" - C:\WINDOWS\KHALMNPR.Exe [2008-12-18 21:42:58 76304]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-03 23:57:50 15360]
"Nokia.PCSync"="F:\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-11-07 16:35:22 1294336]
C:\DOKUME~1\ALLUSE~1\STARTM~1\PROGRA~1\AUTOST~1\
Adobe Gamma Loader.lnk - C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe [2007-1-20 113664]
Logitech Desktop Messenger.lnk - F:\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-8-11 67128]
Logitech SetPoint.lnk - F:\Logitech\SetPoint\SetPoint.exe [2007-8-11 809488]
TabUserW.exe.lnk - C:\WINDOWS\system32\Wtablet\TabUserW.exe [2003-12-4 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2009-02-18 22:30:52 72208 ----a-w- c:\Programme\Gemeinsame Dateien\Logitech\Bluetooth\LBTWLgn.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MIDI2"=diomidi.dll
"wave2"=Digi32.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^Administrator^Startmenü^Programme^Autostart^FooBar 1.0.LNK]
path=C:\Dokumente und Einstellungen\Administrator\Startmenü\Programme\Autostart\FooBar 1.0.LNK
backup=C:\WINDOWS\pss\FooBar 1.0.LNKStartup
[HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^jetToolBar.lnk]
path=C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\jetToolBar.lnk
backup=C:\WINDOWS\pss\jetToolBar.lnkCommon Startup
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"F:\\xFire\\xfire.exe"=
"F:\\Adobe\\Dreamweaver 8\\Dreamweaver.exe"=
"F:\\BearShare\\BearShare.exe"=
"F:\\Sony Ericsson\\Mobile4\\Sync Manager\\DXP SyncML.exe"=
"F:\\iTunes\\iTunes.exe"=
"F:\\QIP\\qip.exe"=
"C:\\Programme\\Sony\\Station\\LaunchPad\\LaunchPad.exe"=
"F:\\mIRC\\mirc.exe"=
"C:\\Programme\\ICQ6\\ICQ.exe"=
"C:\\Programme\\MSN Messenger\\msnmsgr.exe"=
"C:\\Programme\\MSN Messenger\\livecall.exe"=
"C:\\WINDOWS\\system32\\rtcshare.exe"=
"C:\\Programme\\NetMeeting\\conf.exe"=
"F:\\Salling Software AB\\Salling Clicker\\WinClicker.exe"=
"F:\\Mozilla Firefox\\firefox.exe"=
"F:\\Gamers.IRC\\mirc.exe"=
"C:\\WINDOWS\\system32\\dplaysvr.exe"=
"C:\\WINDOWS\\system32\\dpnsvr.exe"=
"F:\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"F:\\Trainer Creation Kit\\Display Server.exe"=
"F:\\eMule.de 0.48a v18\\emule.exe"=
"C:\\Programme\\Bonjour\\mDNSResponder.exe"=
"F:\\QIP\\jeak\\qip.exe"=
"C:\\Programme\\Gemeinsame Dateien\\Nokia\\Service Layer\\A\\nsl_host_process.exe"=
"F:\\Sony Ericsson\\Sony Ericsson Media Manager 1.0\\MediaManager.exe"=
"F:\\Nero 8\\Nero ShowTime\\ShowTime.exe"=
"C:\\Programme\\Skype\\Phone\\Skype.exe"=
"F:\\uTorrent\\uTorrent.exe"=
"C:\\Programme\\Electronic Arts\\EADM\\Core.exe"=
"C:\\Programme\\DNA\\btdna.exe"=
"F:\\BitTorrent\\bittorrent.exe"=
"F:\\Stronghold Legends\\StrongholdLegends.exe"=
"F:\\Stronghold 2\\Stronghold2.exe"=
"C:\\Programme\\QIP\\qip.exe"=
"G:\\Star Wars Battlefront II\\GameData\\BattlefrontII.exe"=
"F:\\LeechGet 2007\\LeechGet.exe"=
"E:\\Mechwarrior Mercenaries\\MW4Mercs.exe"=
"E:\\Anno 1701\\Anno1701.exe"=
"F:\\Samsung New PC Studio\\npsasvr.exe"=
"F:\\Samsung New PC Studio\\npsvsvr.exe"=
"E:\\MechCommander2\\Mc2Rel.exe"=
"E:\\Command & Conquer The First Decade\\Command & Conquer(tm) Tiberian Sun(tm)\\SUN\\Game.exe"=
"E:\\Command & Conquer The First Decade\\Command & Conquer Renegade(tm)\\Renegade\\Game.exe"=
"E:\\Command & Conquer The First Decade\\Command & Conquer(tm) Generals Zero Hour\\generals.exe"=
"E:\\Command & Conquer The First Decade\\Command & Conquer(tm) Generals Zero Hour\\game.dat"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"5353:UDP"= 5353:UDP:Salling Clicker mDNS
"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
"9474:TCP"= 9474:TCP:BitCometLite 9474 TCP
"9474:UDP"= 9474:UDP:BitCometLite 9474 UDP
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);C:\WINDOWS\system32\drivers\sfdrv01a.sys [05.07.2006 14:46:06 63352]
R1 SSHDRV85;SSHDRV85;C:\WINDOWS\system32\drivers\SSHDRV85.sys [01.03.2009 15:43:39 78848]
R1 vdrv9000;vdrv9000;C:\WINDOWS\system32\drivers\vdrv9000.sys [10.05.2007 21:17:57 105984]
R2 AntiVirSchedulerService;Avira AntiVir Planer;C:\Programme\Avira\AntiVir Desktop\sched.exe [15.07.2009 16:02:54 108289]
R2 FsUsbExService;FsUsbExService;C:\WINDOWS\system32\FsUsbExService.Exe [15.06.2009 14:26:18 233472]
R2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
R2 ServiceSB4;ServiceSB4;F:\SpamBully 4 for Outlook Express\sb4service.exe [27.07.2007 12:11:48 563608]
R2 TabletServicePen;TabletServicePen;C:\WINDOWS\system32\Pen_Tablet.exe [26.07.2008 21:16:24 3024168]
R2 VC9SecS;Virtual CD v9 Management Service;F:\Virtual CD v9\System\VC9SecS.exe [10.05.2007 21:17:12 124488]
R3 CLEDX;Team H2O CLEDX service;C:\WINDOWS\system32\drivers\cledx.sys [01.06.2008 10:07:31 33792]
R3 EuMusDesignVirtualAudioCableWdm_s2x;Sound2x Audio Cable (WDM);C:\WINDOWS\system32\drivers\vacs2xkd.sys [04.09.2008 20:18:46 42880]
R3 FsUsbExDisk;FsUsbExDisk;C:\WINDOWS\system32\FsUsbExDisk.Sys [15.06.2009 14:26:18 36608]
R3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.10.1;C:\WINDOWS\system32\drivers\libusb0.sys [17.04.2007 22:48:49 33792]
S3 ASPI;Advanced SCSI Programming Interface Driver;C:\WINDOWS\system32\drivers\aspi32.sys [27.04.2007 17:26:58 16512]
S3 avmeject;AVM Eject;C:\WINDOWS\system32\drivers\avmeject.sys [16.06.2008 17:43:47 4352]
S3 bdacap;PC-DTV Receiver;C:\WINDOWS\system32\drivers\bdacap.sys [07.06.2007 16:31:00 217728]
S3 Dmmsscrgpks;Dmmsscrgpks; [x]
S3 drhard;DRHARD;C:\WINDOWS\system32\drivers\drhard.sys [26.04.2007 15:16:47 23600]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;E:\Common\Database\bin\fbserver.exe --> E:\Common\Database\bin\fbserver.exe [?]
S3 FWLANUSB;AVM FRITZ!WLAN;C:\WINDOWS\system32\drivers\fwlanusb.sys [16.06.2008 17:43:07 265088]
S3 ggflt;SEMC USB Flash Driver Filter;C:\WINDOWS\system32\drivers\ggflt.sys [18.07.2008 23:47:28 13352]
S3 GLHIDKBFILTER;GLHIDKBFILTER;C:\WINDOWS\system32\drivers\GLKbFilter.sys [07.06.2007 16:31:12 11264]
S3 HH9Help.sys;HH9Help.sys;C:\WINDOWS\system32\drivers\HH9Help.sys [10.05.2007 21:17:57 11392]
S3 imhidusb;Immersion's HID USB Driver;C:\WINDOWS\system32\drivers\imhidusb.sys [24.07.2007 18:46:10 30984]
S3 MyUnlocker;MyUnlocker Service;"C:\Dokumente und Einstellungen\Administrator\Desktop\MyUnlocker\MyUnlocker.exe" --> C:\Dokumente und Einstellungen\Administrator\Desktop\MyUnlocker\MyUnlocker.exe [?]
S3 SaiHFFB5;SaiHFFB5;C:\WINDOWS\system32\drivers\SaiHFFB5.sys [24.07.2007 18:46:06 176640]
S3 SaiIFFB5;Immersion's HID USB Driver (FFB5);C:\WINDOWS\system32\drivers\SaiIFFB5.sys [14.12.2005 12:10:02 16768]
S3 wacmoumonitor;Wacom Mode Helper;C:\WINDOWS\system32\drivers\wacmoumonitor.sys [26.07.2008 20:48:09 15144]
S3 XDva092;XDva092;\??\C:\WINDOWS\system32\XDva092.sys --> C:\WINDOWS\system32\XDva092.sys [?]
S3 XDva221;XDva221;\??\C:\WINDOWS\system32\XDva221.sys --> C:\WINDOWS\system32\XDva221.sys [?]
S3 zlportio;zlportio;\??\G:\UltraStar Deluxe\zlportio.sys --> G:\UltraStar Deluxe\zlportio.sys [?]
--- Andere Dienste/Treiber im Speicher ---
*NewlyCreated* - FSUSBEXDISK
*Deregistered* - mchInjDrv
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{544735C9-AE13-4721-9DE7-D529BE675038}]
rundll32 locsock32.dll,laspi
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
WebBrowser-{8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - (no file)
HKLM-Run-Microsoft WinUpdate - C:\WINDOWS\system32\msupdte.exe
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = start.qip.ru
uDefault_Search_URL = hxxp://search.qip.ru
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
IE:
IE: &Winamp Toolbar Search - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
IE: An vorhandenes PDF anfügen - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Ausgewählte Verknüpfungen in Adobe PDF konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Ausgewählte Verknüpfungen in vorhandene PDF-Datei konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Auswahl in Adobe PDF konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Auswahl in vorhandene PDF-Datei konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Download mit &Ultimate Download Manager - F:\WinSysClean 2008\UDManager\UDManager.htm
IE: In Adobe PDF konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Mit dem LeechGet Wizard laden - file://f:\LeechGet 2007\\Wizard.html
IE: Mit LeechGet herunterladen - file://f:\LeechGet 2007\\AddUrl.html
IE: Mit LeechGet parsen - file://f:\LeechGet 2007\\Parser.html
IE: Nach Microsoft &Excel exportieren - C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Senden an &Bluetooth-Gerät... - C:\Programme\ANYCOM\Blue USB-200-250\btsendto_ie_ctx.htm
IE: Verknüpfungsziel in Adobe PDF konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Verknüpfungsziel in vorhandene PDF-Datei konvertieren - F:\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: {{AEF9B8DB-0DEF-4c0b-8209-661C9E82B8C3} - F:\WinSysClean 2008\UDManager\UDManager.exe
IE: {{D401C3A2-12EF-4D1D-A086-F3AB10B565BF} - f:\SECRET~1\\SECRET~1.EXE
IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Dokumente und Einstellungen\Administrator\Startmenü\Programme\IMVU\Run IMVU.lnk
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - f:\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
DPF: DirectAnimation Java Classes - file://C:\WINDOWS\Java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://C:\WINDOWS\Java\classes\xmldso.cab
FF - ProfilePath - C:\DOKUME~1\ADMINI~1\ANWEND~1\Mozilla\Firefox\Profiles\9a7rzx7v.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1795216&SearchSource=3&q=
FF - prefs.js: browser.search.selectedEngine - Wikipedia (de)
FF - prefs.js: browser.startup.homepage - chrome://fastdial/content/fastdial.html
FF - component: C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Mozilla\Firefox\Profiles\9a7rzx7v.default\extensions\piclens@cooliris.com\components\coolirisstub.dll
FF - component: F:\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: C:\Dokumente und Einstellungen\Administrator\Anwendungsdaten\Mozilla\plugins\npcoolirisplugin.dll
FF - plugin: C:\Dokumente und Einstellungen\Administrator\Lokale Einstellungen\Anwendungsdaten\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
FF - plugin: C:\Programme\thriXXX\WebLaunch\Binaries\npWebLaunch.dll
FF - plugin: F:\Adobe\Acrobat 7.0\Reader\browser\nppdf32.dll
FF - plugin: F:\Mozilla Firefox\plugins\npbittorrent.dll
FF - plugin: F:\Mozilla Firefox\plugins\NPHoldemFireLauncher.dll
FF - plugin: F:\Mozilla Firefox\plugins\NPLeechGet.dll
FF - plugin: F:\Mozilla Firefox\plugins\NPMFireLauncher.dll
FF - plugin: F:\Mozilla Firefox\plugins\npstrlnk.dll
FF - plugin: F:\Mozilla Firefox\plugins\npWebLaunch.dll
FF - plugin: F:\Mozilla Firefox\plugins\npzylomgamesplayer.dll
FF - plugin: f:\Real Alternative\browser\plugins\nppl3260.dll
FF - plugin: f:\Real Alternative\browser\plugins\nprpjplug.dll
FF - plugin: f:\VLC\npvlc.dll
---- FIREFOX Richtlinien ----
F:\Mozilla Firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
F:\Mozilla Firefox\greprefs\all.js - pref("media.cache_size", 51200);
F:\Mozilla Firefox\greprefs\all.js - pref("media.ogg.enabled", true);
F:\Mozilla Firefox\greprefs\all.js - pref("media.wave.enabled", true);
F:\Mozilla Firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
F:\Mozilla Firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
F:\Mozilla Firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
F:\Mozilla Firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
F:\Mozilla Firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
F:\Mozilla Firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
F:\Mozilla Firefox\greprefs\all.js - pref("layout.css.dpi", -1);
F:\Mozilla Firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
F:\Mozilla Firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
F:\Mozilla Firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
F:\Mozilla Firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
F:\Mozilla Firefox\greprefs\all.js - pref("geo.enabled", true);
F:\Mozilla Firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
F:\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
F:\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
F:\Mozilla Firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
.
**************************************************************************
| |