Infecté par virus et/ou spyware

ZeBlocker Messages postés 374 Statut Membre -  
 Utilisateur anonyme -
Bonjour,

Je pense avoir un ptit virus car j'ai qq problemes. comme par exemple:
- quand je clique sur lenveloppe dans msn messenger, pour afficher mes mails, une page d'erreur s"affiche
- quand je vais sur certains sites : on met dit "Votre ordinateur IP : .... produit des demandes attaquantes de DOS ? nos serveurs. Cette attaque a ?t? provoqu?e par le spyware/virus nomm? 'Troj/Rustok-N'
- quand je clique sur un lien dans google, presque à chaque fois ,une page dont ladresse commence par http://main.exoclick.com/click.php?

Pouvez-vous m'aider s'il vous plait

Par avance j'ai même un fichier hijackthis , le voici :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:31:39, on 30/07/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE
C:\Program Files\Logitech\ImageStudio\LogiTray.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur\Mes documents\Downloads\HiJackThis.exe
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe (User 'Default user')
O4 - Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{86A37F58-AA6E-4C5C-A410-2B2E87A718DB}: NameServer = 85.255.112.165,85.255.112.216
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.165,85.255.112.216
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.112.165,85.255.112.216
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.165,85.255.112.216
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
A voir également:

218 réponses

Résumé de la discussion

Problème signalé : infection potentielle sur Windows XP avec des symptômes de navigation détournée (messages d’erreur lors de l’ouverture des mails, avertissements DOS supposés liés au spyware Troj/Rustok-N et redirections via http://main.exoclick.com/click.php), accompagnés d’un fichier HijackThis détaillant de nombreuses entrées de démarrage et modules (BHO et services) actif. L’analyse fournie par HijackThis montre des composants et des processus multiples au démarrage, susceptibles d’être associés à la compromission. Une des réponses suggère de redémarrer en mode sans échec et d’utiliser un outil de nettoyage pour éradiquer l’infection. Aucune solution concluante n’est mentionnée dans l extrait, mais les éléments techniques soulignent une compromission potentielle étendue.

Généré automatiquement par IA
sur la base des meilleures réponses
ZeBlocker Messages postés 374 Statut Membre 4
 
ça me parait louche ce truc, supprimer comme ça à l'arrache ?
0
FoxRiver
 
c'est vrai que c'est pas très catholique comme méthode mais il ne reste + 36 solutions et puis en effacant les fichiers et nettoyant la base de registre il n'y a plus de traces de mcafee. Mais si tu préfers attendre pour voir si quelqu'un propose autre chose je comprends..
0
ZeBlocker Messages postés 374 Statut Membre 4
 
oui je préfèrerais avoir un autre avis, tant mieux si tu comprends :) gen-hackman, qu'en penses-tu ?
0
Utilisateur anonyme
 
moi je pense ceci :

==> Télécharge OAD (de Laur3n7!)

- Enregistre le sur ton bureau

Double clique sur le OAD pour le lancer

- nom de fichier à rechercher ,tape : McAfee
- Type de recherche : sélectionne l'option 6 puis valide [entree]

OAD va maintenant rechercher le fichier. Laisse le travailler jusqu'à ce qu'il en ai terminé.
Le rapport de recherche s'affichera automatiquement à dès qu'il en aura terminé.

- Fais un copier / coller de ce rapport dans ton prochain post.

Note importante : Suivant la taille des disques dur cette recherche peut prendre plusieurs minutes. Sois patient

0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
ZeBlocker Messages postés 374 Statut Membre 4
 
01/08/2009 ---- 17:22:00,54

----------------------------------
§§§§§§ [McAfee] §§§§§§
----------------------------------
[X] Registre

-------------- [ ] rapide
-- Fichier --- [ ] disque systeme
------------- [X] complete

********************
[Registre]
********************

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{2A6D72F1-6E7E-4702-B99C-E40D3DED33C3}]
"LocalService"="McAfeeFramework"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0104BA4A-D33C-40AF-8FD3-C42512D43468}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\UpdPlug.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04D18721-749F-4140-AEB0-CAC099CA4741}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\naPolicyManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{056ADD67-DDB0-47BE-9F7D-DC652206F766}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Scheduler.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08815891-3400-4CD8-B644-23BE617ED6D6}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\ComponentUserInterface.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0AA5BF4A-88BD-4E61-9968-BBF04701B5C6}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\ScriptSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D7C69CB-CF5F-4594-8FEE-0B6DDA9F75D6}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\GenEvtInf.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1161A96C-CBA5-4CA7-BB39-BC9280348E73}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\naPolicyManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A13B2E0-805B-44F7-94A8-8D3A2258D6A2}]
@="McAfeeScript Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A13B2E0-805B-44F7-94A8-8D3A2258D6A2}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\ScriptSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A13B2E0-805B-44F7-94A8-8D3A2258D6A2}\ProgID]
@="ScriptSubSys.McAfeeScript.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A13B2E0-805B-44F7-94A8-8D3A2258D6A2}\VersionIndependentProgID]
@="ScriptSubSys.McAfeeScript"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FE25B89-B3E7-4FF8-B67A-300286F51E5F}\LocalServer32]
@="\"C:\\Program Files\\McAfee\\Common Framework\\UdaterUI.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{221F3B81-CAD5-4EE1-82FE-65CAA21623DF}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\AgentPlugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D417134-0D48-4856-B6F5-04E63171E24C}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\naPolicyManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D4842EA-9F7B-4B6A-B157-41C6250DA148}\LocalServer32]
@="\"C:\\Program Files\\McAfee\\Common Framework\\naPrdMgr.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3153E8D7-C724-47CC-A7FE-5C90EB4093A0}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Agent.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3AEC7772-2766-4C67-8487-4189C55DDE4E}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Scheduler.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C9654E8-E7F6-491D-A674-85CB53573FEE}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\InternetManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EF17F94-3975-4ACF-B228-29485BDE5860}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Scheduler.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F1078B1-41CB-4743-996B-ACD1913A239B}\LocalServer32]
@="\"C:\\Program Files\\McAfee\\Common Framework\\naPrdMgr.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F13CE9C-D753-422E-B897-BD70CC8CEA46}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\TCHelper.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50CCECAC-7286-4CA0-9AD0-E309A2318482}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\SecureFrameworkFactory.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5284E46B-63F2-4D12-9434-88B7899EA7DD}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\GenEvtInf.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{528F66A7-7891-4F6B-8F1E-5132CC80650C}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\GenEvtInf.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6046FF06-6800-4F0E-B474-4BD5822105AA}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\TCHelper.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E389062-C540-4145-96B9-B8745CF7D856}]
@="McAfeeUpdate Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E389062-C540-4145-96B9-B8745CF7D856}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\UpdateSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E389062-C540-4145-96B9-B8745CF7D856}\ProgID]
@="UpdateSubSys.McAfeeUpdate.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E389062-C540-4145-96B9-B8745CF7D856}\VersionIndependentProgID]
@="UpdateSubSys.McAfeeUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70CABBFF-9D0B-4232-9F02-D1BD8298F037}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\ComponentSubSystem.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}\InProcServer32]
@="C:\\Program Files\\McAfee\\VirusScan Enterprise\\scriptcl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8036105A-E89B-4D24-8319-FEA26195A569}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\UserSpace.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8359000C-55B2-4076-A3C3-DDF39FEB14F5}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\TCSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{83D7FBE7-E507-4486-8785-8D1776D498F4}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Logging.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97C51E13-6932-4092-88C9-E7B73FBE0FD5}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\ListenServer.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BE8D8A1-2DB5-4A29-A95F-50C8B27820DA}\InprocServer32]
@="C:\\Program Files\\McAfee\\VirusScan Enterprise\\vsupdate.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EEFDA4D-0326-41B6-A3EB-CD1A67837443}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\InternetManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A5B589D5-CFB6-4E9A-9455-39963CBF74CB}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\naPolicyManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B54F3741-5B07-11cf-A4B0-00AA004A55E8}\InprocServer32]
@="C:\\Program Files\\McAfee\\VirusScan Enterprise\\scriptcl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cda2863e-2497-4c49-9b89-06840e070a87}\InProcServer32]
@="C:\\Program Files\\McAfee\\VirusScan Enterprise\\shext.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D3580208-D4E1-46D4-876C-B45A328AF25A}\LocalServer32]
@="\"C:\\Program Files\\McAfee\\Common Framework\\FrameworkService.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8D9EEBC-0640-47AC-84FF-97C3A6B2FC79}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Scheduler.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF4CE8D8-1896-431C-AE4F-1ABE8B235ED6}\InprocServer32]
@="C:\\Program Files\\McAfee\\Common Framework\\Management.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f414c260-6ac0-11cf-b6d1-00aa00bbbb58}\InprocServer32]
@="C:\\Program Files\\McAfee\\VirusScan Enterprise\\scriptcl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5F6647E-A36B-42BB-AD4E-A93753DE4DCD}\LocalServer32]
@="\"C:\\Program Files\\McAfee\\Common Framework\\naPrdMgr.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\40C30C53F1F32C249A987A75EE96F156]
"ProductName"="McAfee VirusScan Enterprise"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{51199FE2-2D9C-4047-A61E-81A9F6A0D806}]
@="IMcAfeeScript"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7A9ECE1F-5CAD-4017-999F-552270E45D92}]
@="_IMcAfeeScriptEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{963B7D71-C519-4A5D-B8E7-742B08628F5D}]
@="_IMcAfeeUpdateEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9F9776B1-E151-41E0-90F8-29A5C211A001}]
@="IMcAfeeScript2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A33F52E5-9F67-459C-95D3-8420B50E7183}]
@="IMcAfeeUpdate2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D831533D-0324-4EA4-B3FD-073AFEE85181}]
@="IMcAfeeUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript]
@="McAfeeScript Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript\CurVer]
@="ScriptSubSys.McAfeeScript.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript.1]
@="McAfeeScript Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ScriptSubSys.McAfeeScript.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00D37BEE-2D29-4F3E-9AB2-5910EBAF7A69}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\ScriptSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{00D37BEE-2D29-4F3E-9AB2-5910EBAF7A69}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1F8F276E-2CBC-4310-8BB3-1D8A72B647C7}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\ComponentUserInterface.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1F8F276E-2CBC-4310-8BB3-1D8A72B647C7}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22CE3FC4-4805-40CF-80E4-FEC207A77801}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\AgentPlugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22CE3FC4-4805-40CF-80E4-FEC207A77801}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2BD91F0A-F900-477C-8401-AF0774A3EEE4}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\UpdPlug.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2BD91F0A-F900-477C-8401-AF0774A3EEE4}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{31E7F064-EB69-4771-8AAB-1D1642DACA76}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\InternetManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{31E7F064-EB69-4771-8AAB-1D1642DACA76}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{365ADE60-0AB6-4260-A5F9-5F154E52E385}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\ListenServer.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{365ADE60-0AB6-4260-A5F9-5F154E52E385}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3B100745-A668-4D90-8EB2-A6E2E1387BF1}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\ComponentSubSystem.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3B100745-A668-4D90-8EB2-A6E2E1387BF1}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4238C1CE-0D7E-4A6D-8624-D53D2E276A05}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\Logging.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4238C1CE-0D7E-4A6D-8624-D53D2E276A05}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{46DC2A5D-4A7B-4184-B738-7EDF4D68526B}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\Agent.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{46DC2A5D-4A7B-4184-B738-7EDF4D68526B}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{745BA2BA-9B0E-459E-8A9C-A47C6A0131F1}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\FrameworkService.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{745BA2BA-9B0E-459E-8A9C-A47C6A0131F1}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7576F677-3945-4DA2-B9F0-37850028A7E7}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\UpdateSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7576F677-3945-4DA2-B9F0-37850028A7E7}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7DB1286A-CBEF-4823-96AA-27093A546741}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\naPolicyManager.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7DB1286A-CBEF-4823-96AA-27093A546741}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{801FC275-1246-4AD5-AB3D-07371BBF5BED}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\UdaterUI.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{801FC275-1246-4AD5-AB3D-07371BBF5BED}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8C81B1EE-514E-4A20-BCCD-60648432C9FE}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\TCSubSys.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8C81B1EE-514E-4A20-BCCD-60648432C9FE}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{90969396-649F-48A2-A082-6DEBA7A51F50}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\SecureFrameworkFactory.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{90969396-649F-48A2-A082-6DEBA7A51F50}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AE4341EF-80A3-4D53-9735-1BCB78C118F3}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\UserSpace.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AE4341EF-80A3-4D53-9735-1BCB78C118F3}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B5FA7874-ACBF-46B3-BE2E-98381FDA9D44}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\GenEvtInf.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B5FA7874-ACBF-46B3-BE2E-98381FDA9D44}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B74F7591-F64C-43DF-945A-519DA50ABAFA}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\Management.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B74F7591-F64C-43DF-945A-519DA50ABAFA}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C83F84A8-241A-4837-A6BA-1C5131141743}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\Scheduler.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C83F84A8-241A-4837-A6BA-1C5131141743}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F74008B3-A74D-4C9F-9D11-A9F9CFF1DDB6}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\TCHelper.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F74008B3-A74D-4C9F-9D11-A9F9CFF1DDB6}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAAEEE57-F848-4E65-BFCE-A7B75E4133FB}\1.0\0\win32]
@="C:\\Program Files\\McAfee\\Common Framework\\naPrdMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAAEEE57-F848-4E65-BFCE-A7B75E4133FB}\1.0\HELPDIR]
@="C:\\Program Files\\McAfee\\Common Framework\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate]
@="McAfeeUpdate Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate\CurVer]
@="UpdateSubSys.McAfeeUpdate.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate.1]
@="McAfeeUpdate Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\UpdateSubSys.McAfeeUpdate.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\AVEngine]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\AVEngine]
"DAT"="C:\\Program Files\\Fichiers communs\\McAfee\\Engine\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\AVEngine]
"szInstallDir32"="C:\\Program Files\\Fichiers communs\\McAfee\\Engine\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]
"szMidConfigDir"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\MID\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]
"szLanguageID"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0c00"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]
"szSupportURL"="https://support.mcafee.com/"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]
"szInstallDir"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]
"szUpdateEXE"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\MCUPDATE.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection]
"Product"="McAfee VirusScan Enterprise"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\Alerts]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\DefaultTask]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\TaskLastData]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\TaskLastData\{21221C11-A06D-4558-B833-98E8C7F6C4D2}]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\Tasks]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\Tasks\{21221C11-A06D-4558-B833-98E8C7F6C4D2}]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\DesktopProtection\Tasks\{A14CD6FC-3BA8-4703-87BF-E3247CE382F5}]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\ePolicy Orchestrator]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\ePolicy Orchestrator\Application Plugins]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\ePolicy Orchestrator\Application Plugins\VIRUSCAN8600]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\ePolicy Orchestrator\Application Plugins\VIRUSCAN8600]
"Product Name"="McAfee VirusScan Enterprise Workstation"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\ePolicy Orchestrator\Application Plugins\VIRUSCAN8600]
"Install Path"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\ePolicy Orchestrator\Application Plugins\VIRUSCAN8600]
"Plugin Path"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\VsPlugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\McTray]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\Products]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\Products\AlertManager]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\Products\NetShield NT]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\Products\VirusScan]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\Products\VShield]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapDefs]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapDefs\AntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapDefs\AntiVirus\2]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapDefs\TVDTrap]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\ACCESSPROCESSNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\CLIENTCOMPUTER]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\COMPUTERNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\DATVERSION]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\DOMAIN]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\ENGINESTATUS]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\ENGINEVERSION]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\EVENTNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\FILENAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\GMTTIME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\LANGUAGECODE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\LOCALTIME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\LONGDESCRIPT]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MAILCCNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MAILFROMNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MAILIDENTIFIERINFO]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MAILSUBJECTLINE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MAILTONAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MESSAGE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\MESSAGEID]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NOTEID]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NOTESDBNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NOTESSERVERNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NUMCLEANED]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NUMDELETED]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NUMQUARANTINED]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\NUMVIRS]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\OBRULE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\OS]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\PROCESSORSERIAL]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\RESOLUTION]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SCANRETURNCODE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SEVERITY]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SHORTDESCRIPT]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SOFTWARENAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SOFTWAREVERSION]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SOURCEIP]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SOURCEMAC]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\SOURCESEG]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\STATUS]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TARGETCOMPUTERNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TARGETIP]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TARGETMAC]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TASKNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TIME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TRAPID]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TRAPURL]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\TSCLIENTID]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\URL]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\USERNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\VIRUSNAME]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\SNMP\TrapParams\VIRUSTYPE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Alert Client\VSE]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Detect]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Detect]
"szInstallDir"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDelivery]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDelivery\ActionOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDelivery\AlertOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDelivery\DetectionOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDelivery\GeneralOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDelivery\ReportOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDemand]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDemand\ActionOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDemand\AlertOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDemand\DetectionOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDemand\GeneralOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Email Scanner\Outlook\OnDemand\ReportOptions]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\McPAL]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\McPAL\CurrentVersion]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\McPAL\CurrentVersion]
"VSE8.5"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\MCVSSNMP]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\MCVSSNMP]
"PathName"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mcvssnmp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\NVP]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner\BehaviourBlocking]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner\McShield]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner\McShield\Configuration]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner\McShield\Configuration\Default]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner\McShield\Configuration\High]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\On Access Scanner\McShield\Configuration\Low]

[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee\VSCore\Script Scanner]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
"Outlook Scan"="4.0;C:\\Program Files\\McAfee\\VirusScan Enterprise\\Scanotlk.dll;1;11000000000000;1110000;"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0900\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0401\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0402\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0700\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0a00\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0c00\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1000\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1100\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1200\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1300\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1500\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1600\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1d00\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Documents and Settings\\All Users\\Menu Démarrer\\Programmes\\McAfee\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00534BDFF73EF4741B9DE248FF053E6B]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfehida.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02C5303ECDC471C4E979719F11401D4C]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\Tasks\\EOLPID"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02D4AED8B1D30ED49889C6243467E1C0]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\On Access Scanner\\McShield\\dwFilesCleaned"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\035C83C043B311147A5883F13439611E]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\consl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\051908A3443BCF041AF8A50D9218D767]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\On Access Scanner\\BehaviourBlocking\\APEnabled"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07E8A486E0A627C42BADE2CB1894B161]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\Fichiers communs\\McAfee\\Engine\\license.dat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08EC3E06EDEDB4849A8D6A4E3A03B0CC]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\ftcfg.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0C539BDE625B1394EAB264871772D71E]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\ePolicy Orchestrator\\Application Plugins\\VIRUSCAN8600\\Product Name"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\shstat.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F83788799820444EBAD62F24D95A075]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\115C8E035990C514EB3FC746A5515577]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfeavfk.sys"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15080FB3D0752FE48B2E0750D89BC3A5]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\QuarantineDirectory"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\168EB765EF6D73B44B05AA7EB7DC2524]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\NCMenu.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\178E95FA2139C3948BDE155ED036CE5E]
"40C30C53F1F32C249A987A75EE96F156"="01:\\SOFTWARE\\McAfee\\DesktopProtection\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1B7C176BD0A2F294BA774115507BFA4B]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\Alerts\\dwAlertManagerMethod"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D1831C79C94B1E47B9892F0C5AAEA61]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\On Access Scanner\\McShield\\Configuration\\PPContextIDs"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\219A6D6982D292A45A432089A199E336]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\Fichiers communs\\McAfee\\Engine\\config.dat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A50FA2F3C1B9A14E9F42F7EE14BF7AB]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Email Scanner\\Outlook\\OnDelivery\\GeneralOptions\\NOTES_szTempScanFolder"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2A75B1CFB63130A46887CA8DF62700E2]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\LockDownEnabled"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BF768AE7E2FCB74CBD14C36A2F70A13]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1500\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2C4BAACEE3FF058449CFE4DABB1FD9A4]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2CF872CD0471D8E46AC86CBEDDFB2281]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\McAVSCV.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DD3DE2BA157A3740BDF0DF917F07158]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\DefaultTask\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\VsTskMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2F80004200B81DA4C8C1FFEEB76F45D8]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\vsupdate.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30CB024D603CB4B4E8907ECC8B76A83E]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\MCVSSNMP\\PathName"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30D335853FD29D84CAC4EFCE5040B3EF]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\restartvse.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\31312F733FF0564478C4C1F5C44EF9BB]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\NCTrace.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34A3A25BC60FE6E49A8B623A8B7F0733]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\ftl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\352F42A3709C90A44AB667FF26627D45]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1600\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\384ACFE859BB64C4587EB926BC37D99C]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1500\\McShield.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397988B6B00F14540835220DDD2F70AE]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3A03CA06999ECA14CA111621671BB823]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\vsodscpl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CCBFAEBF55DD95478D15E53BB4A50A2]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\McShieldPerfData.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\shutil.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3D90557193C55F44B984EFAED9744E57]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Email Scanner\\Outlook\\OnDelivery\\DetectionOptions\\PPContextIDs"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EBB5CF4487373441957AA39D28E4921]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\McPAL\\CurrentVersion\\VSE8.5"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\428FCD8E6FC857C49ACE8A297AA09757]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\coptcpl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42BC52741053D2843A4475CFE4541AE5]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43572F63D7653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\scan32.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43778FB1AC9068A40B872AF1EDF85F50]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1200\\McShield.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\446DD3B3BCCDB9944BBC0FBEBC3D57FE]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\pireg.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46383276227F4BB4D80734EBBD34330F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfebopk.sys"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\469F6B87C6AA72D40AE2EA3A23205593]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\On Access Scanner\\McShield\\Configuration\\EOLPID"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\48755C728E26FAA4B9C55072EF92B27E]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\ePolicy Orchestrator\\Application Plugins\\VIRUSCAN8600\\Software ID"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49C7DFA9451919B4A9CED1290A8D9EE5]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Mcvssnmp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4B8A0ACD6078FCF47A663D6158379670]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\condl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5194DF85EB00C234D8ECF11528A76C1B]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\ScanOTLK.Dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\53F88224E8FFED44FB7CC976A8676FD5]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1200\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D434988A3D6DC443B21B94DEEE34E66]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Detect\\szInstallDir"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D5470889D75F6344A9751684362ADA8]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\scriptsv.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D6F7971FBEF40A4383C43D472836B9E]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\NaEvent.Dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5F3DDC39CFD9C384CB4E1CF4FECEEDF7]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Email Scanner\\Outlook\\OnDelivery\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5FA0CAD0D8E018E408CF153F8A5A8C51]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\midutil.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60F662FFD22DFD44D93054451B78C420]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mferkda.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\614FE6D968324554E8F7072C80B289DC]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\szMidConfigDir"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\62907C0D30257C248B3C057E455FC093]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\NCDaemon.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63572F63D7653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\ScnCfg32.Exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6399290F37F93024980BCEC173FFFFFC]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfeavfa.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63AE560D1B3983143BB61508CA0A20FB]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\McShieldPerfData.ini"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\646E710D71C9DCC4DB415DE71C52A091]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\On Demand Scanner\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6672316CE8476054B83124BB363007B5]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Alert Client\\SNMP\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\672B05B48C4B472429137407ACE6CD8A]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\entvutil.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A3D6F771F153D14D9F3A92A69FFCEFE]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\McAVDetect.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A469BA6390CACE48985F2E45F82C76A]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0700\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mcconsol.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C945186A13920642BBFD921809128F2]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6D01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0900\\McShield.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EBE1492D2C6F784DB8B8CE3CA0DA4D3]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfetdik.sys"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F2AE7D7C8B5AF542B5EEA877B8D7EA8]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\MERTool.url"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6FEABFF49431AA342BB70085A6096B5A]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1600\\McShield.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\711365DB3DF4EAC43B1D10B31BAF2ECA]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\csscan.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\72CE849D05B70024D9DAD984F9CE664C]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1000\\McShield.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\73F8243026DFE384C921384B80FC470E]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\Alerts\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\743081708ED3EB044A704A241134ED22]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\lockdown.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\74378600F3051354288E934B4AD9EEA0]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\746D1EFCC3BE4D746A3DB3349F1F4471]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7575B534064B7D9449FEBBA765A5CC5F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0900\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75990324BC9E32B48BA174EA53FEFED9]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\783F175BA820F4741B92704E524F1B30]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0401\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7948923BEF13ACB43AD7C1D4F0BD4004]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0c00\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79F6747D69BCCC041847EAF7B897311D]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7A7A62401D5E66E4D954BFF89174DDE5]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\AVEngine\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7C49258BBF369AC49A4989908DB5F241]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1000\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7D01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Mcshield.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7D98C673AAB52D24B91F1569DB0B6518]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\On Access Scanner\\BehaviourBlocking\\BOPEnabled"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7EBCCA7382D2C9F4CB1D1981A498682D]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfehidin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7ED7900A8FD780942B1BE93CB61493BC]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res1300\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\806705D4443E2194F84C6A25BCC075AF]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Alert Client\\VSE\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\827E998DB2E98894DB59B958874E7C13]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Script Scanner\\PPContextIDs"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8393DBACFBF259B45A3840B5259AD211]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\McShieldPerfData.h"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88045822364E94C459DE618E2ED5D1D3]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0a00\\McShield.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88B8F3F9D4B047B4A8740E578038B086]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\VSCore\\Events\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89BCED396B09CD54EA7FDD1A9A6EDB41]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\Fichiers communs\\McAfee\\Engine\\Messages.dat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A901877F70DB4F408E178A4E49262F9]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8BB39EF132BE55F408174431C473E472]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\vsplugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D01393277653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\naiann.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D481C7D7857CBD499E53C18282224BD]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\Tasks\\{A14CD6FC-3BA8-4703-87BF-E3247CE382F5}\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8EB244EF98665E04298DE723571454DD]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8F16D56DDE4AB9F4F9401B576652E293]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0401\\McShield.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\929FD1A3CAC6F474BBB9ADF8995BA8EC]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mytilus.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\93572F63D7653D11989B0006807C0D2F]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mcupdate.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\936796DB66A782544901D8618B598A23]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\logparser.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9634FAA4CC2D7C341A379F014E0A7CEE]
"40C30C53F1F32C249A987A75EE96F156"="02:\\SOFTWARE\\McAfee\\DesktopProtection\\dwUIMode"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9956F07BEBC62D84789C45B3807221B4]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfebopa.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\99649F6A74FF9AD438088B08EC0DF180]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mcadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\999DBDC9534B54245A243B32E3571302]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\Res0a00\\strings.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9AAB7DB004388A84FA05B7B333DF91E8]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\shext.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9AB8C1160305782438D5EEF303F3DDE5]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program Files\\McAfee\\VirusScan Enterprise\\mfeapfa.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9B49705BA10AEBE46B5FA6A20644829C]
"40C30C53F1F32C249A987A75EE96F156"="C:\\Program F
0
Utilisateur anonyme
 
il est trop long tu peux me l'envoyer par cijoint stp ?
0
ZeBlocker Messages postés 374 Statut Membre 4
 
pas de problème : http://www.cijoint.fr/cjlink.php?file=cj200908/cijmLP4xQU.txt
0
Utilisateur anonyme
 
tu as tenté une desinstallation normale en premier ???????
0
ZeBlocker Messages postés 374 Statut Membre 4
 
bah non , moi on me disait de faire une manipulation particulière alors je n'ai pas osé faire comme cela. Dois-je le faire ?
0
FoxRiver
 
haa d'acord je comprends mieux ta réticence à la désinstallation brutale..lol

Je pensais que tavé testé la manière classique...
Ba wi tu devré essayer ca marchera peu etre..
0
ZeBlocker Messages postés 374 Statut Membre 4
 
mais cela sera-t-il enlevé convenablement ?
0
Utilisateur anonyme
 
non mais ca me reduira le travail de rédiger un script de 4h à 10 mn

parce que là j ai plus de 2000 clés de registre à te faire retirer ^^

moi aussi j ai cru que tu ne pouvais le desinstaller !!

oui fais le en mode sans echec avec prise en charge reseau

(ouf ! ) ^^
0
ZeBlocker Messages postés 374 Statut Membre 4
 
impossible d'accéder au service Windows Installer. Ceci peut se produire si vous executez Windows en mode sans échec... Je le fais en mode normal ?
0
ZeBlocker Messages postés 374 Statut Membre 4
 
impossible d'accéder au service Windows Installer. Ceci peut se produire si vous executez Windows en mode sans échec... Je le fais en mode normal ?
0
Utilisateur anonyme
 
je t'ai dit en mude sans echec avec prise en charge réseau hein ?
0
ZeBlocker Messages postés 374 Statut Membre 4
 
oui oui mais ça ne marche pas
0
ZeBlocker Messages postés 374 Statut Membre 4
 
oui oui mais ça ne marche pas
0
Utilisateur anonyme
 
ok refais rsit , on va le virer au demarrage et tu pourras le desinstaller ensuite , puis utiliser l outil pour peaufiner

n'envoie que le log.txt
0
ZeBlocker Messages postés 374 Statut Membre 4
 
D'accord, voila le rapport , (et après ?)

Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-08-01 18:46:02

Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 60 GB (40%) free of 150 GB
Total RAM: 2047 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:46:14, on 01/08/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16876)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
C:\Program Files\trend micro\Administrateur.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Administrateur\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - S-1-5-18 Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe (User 'Default user')
O4 - Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
0
Utilisateur anonyme
 
Double clic sur OTL.exe pour le lancer.

Copie la liste qui se trouve en gras ci-dessous,

et colle-la dans la zone sous Customs Scans/Fixes

:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
TeaTimer.exe
SHSTAT.EXE
UdaterUI.exe
McTray.exe
FrameworkService.exe
VsTskMgr.exe
Mcshield.exe

:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"=-
"ShStatEXE"=-
"McAfeeUpdaterUI"=-

[emptytemp]
[reboot]


Clique sur RunFix pour lancer la suppression.

Poste le rapport.

==========
0
ZeBlocker Messages postés 374 Statut Membre 4
 
All processes killed
Error: Unable to interpret <processes > in the current context!
Error: Unable to interpret <explorer.exe > in the current context!
Error: Unable to interpret <iexplore.exe > in the current context!
Error: Unable to interpret <firefox.exe > in the current context!
Error: Unable to interpret <msnmsgr.exe > in the current context!
Error: Unable to interpret <TeaTimer.exe > in the current context!
Error: Unable to interpret <SHSTAT.EXE > in the current context!
Error: Unable to interpret <UdaterUI.exe > in the current context!
Error: Unable to interpret <McTray.exe > in the current context!
Error: Unable to interpret <FrameworkService.exe > in the current context!
Error: Unable to interpret <VsTskMgr.exe > in the current context!
Error: Unable to interpret <Mcshield.exe > in the current context!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersio n\Run not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersio n\Run not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersio n\Run not found.

OTL by OldTimer - Version 3.0.10.3 log created on 08012009_192747

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
0