Pub qui s'ouvre des que j'ouvre une page web

Résolu/Fermé
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 - 9 sept. 2012 à 10:21
 barleey - 23 déc. 2016 à 14:39
Bonjour,
Je vien soliciter votre aide afin de comprendre pourquoi j'ai des pages de pub de toute sorte souvre des que j'ouvre une page que se soit sur explorer ou chrome, il y a aussi le probleme de certain lien: des que je passe ma souris dessus une pub s'affiche et quand je clic cela m'auriente sur une pub evidement ainsi que facebook des mini pub se glisse entre les photo ect...

J'ai deja passé ccleaner et spybot ainsi que avast version gratuite mais rien n'y fait.
Merci d'avance pour votre aide car cela commence a m'énerver serieusement.

Cdt



A voir également:

120 réponses

Utilisateur anonyme
20 sept. 2012 à 23:12
fallait decocher la case ......vire-le
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
20 sept. 2012 à 23:14
c'est fait
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
20 sept. 2012 à 23:18
et malheureusement toujour des pub...
0
refais adwcleaner suppression et desinstalle alcohol toolbar si installée

¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 05:59
Salut
aucune toolbar n'est installé

# AdwCleaner v2.000 - Rapport créé le 21/09/2012 à 05:53:49
# Mis à jour le 30/08/2012 par Xplode
# Système d'exploitation : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Nom d'utilisateur : yannos - PC-DE-YANNOS
# Mode de démarrage : Normal
# Exécuté depuis : C:\Users\yannos\Documents\logiciel\adwcleaner.exe
# Option [Suppression]


***** [Services] *****


***** [Fichiers / Dossiers] *****


***** [Registre] *****

Clé Supprimée : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{83AA2913-C123-4146-85BD-AD8F93971D39}

***** [Navigateurs] *****

-\\ Internet Explorer v9.0.8112.16421

Restauré : [HKCU\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]
Restauré : [HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes - DefaultScope]

-\\ Mozilla Firefox v15.0.1 (fr)

Nom du profil : default
Fichier : C:\Users\yannos\AppData\Roaming\Mozilla\Firefox\Profiles\sqt43kb3.default\prefs.js

[OK] Le fichier ne contient aucune entrée illégitime.

-\\ Google Chrome v [Impossible d'obtenir la version]

Fichier : C:\Users\yannos\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] Le fichier ne contient aucune entrée illégitime.

*************************

AdwCleaner[S1].txt - [1273 octets] - [21/09/2012 05:53:49]

########## EOF - C:\AdwCleaner[S1].txt - [1333 octets] ##########
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 06:00
rien a faire sa persiste!
0
Utilisateur anonyme
21 sept. 2012 à 09:25
supprime pre_scan , retelecharge-le puis lance l'option kill
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 18:00
Toujours impossible d' exécuter pre scan même en mode sans échec, l' installation se fait et je clic sur kill ensuite il travail 5 seconde et une fenêtre s'ouvre en me disant qu' il a cesser de fonctionner .
J'ai pourtant bien désactivé toute mes protections, je ne comprend pas...
0
Utilisateur anonyme
21 sept. 2012 à 18:30
bah refais ton système à neuf
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 18:42
C'est dire? restauration??
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 18:43
formatage???
0
Utilisateur anonyme
21 sept. 2012 à 19:21
est-ce qu'un diag passerait avec pre_scan ?
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 19:30
diag?
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 19:31
aaaaaaa un diagnostique

mais comment tu fait?
0
Utilisateur anonyme
21 sept. 2012 à 19:32
bah tu le lances et tu cliques sur diag ^^
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 19:33
et sa va coupé mes appli en cour?

Si oui je le ferais plus tard, j'ai commencé un tournois de poker
0
Utilisateur anonyme
21 sept. 2012 à 19:34
non non pas ce scan là c'est juste une lecture
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 19:36
ok je mi mais alor merci
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 19:47
il a fallu que j'autorise la prévention de l'exécution des données se que je n'avais pas fais avant parce qu'il me l'avais pas demandé c'est peut être pour ça que ça ne marchais pas?
0
yann252 Messages postés 84 Date d'inscription dimanche 9 septembre 2012 Statut Membre Dernière intervention 30 août 2013 4
21 sept. 2012 à 19:53
c' est passé voila le rapport

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Diag | 2.0920 | g3n-h@ckm@n & Saachaa | ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤

~ Update on 20/09/2012 | 23.55 by g3n-h@ckm@n
~ Informations | Evolution : https://gen-hackman.kanak.fr/
~ Informations for the switches Pre_Script : https://gen-hackman.kanak.fr/
~ Feedback Pre_scan : https://gen-hackman.kanak.fr/#505
~ Thx to C_XX , Slyk for their help for the evolution of the tool

~ User : yannos (Administrateurs) | SID = S-1-5-21-1170913042-1277233965-3038881231-1000
~ Computer : PC-DE-YANNOS

~ System : Windows Vista (TM) Home Premium (32 bits) HomePremium Service Pack 2
~ RegisteredOwner : yannos
~ RegisteredOrganization :
~ ProcessorNameString : AMD Athlon(tm) 64 X2 Dual Core Processor 5600+
~ Identifier : x86 Family 15 Model 67 Stepping 3
19:36:59

¤¤¤¤¤¤¤¤¤¤ | Run

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[NeroFilterCheck] : C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [12/01/2006 15:40:44]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[LogitechCommunicationsManager] : "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[LogitechQuickCamRibbon] : "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[PWRISOVM.EXE] : C:\Program Files\PowerISO\PWRISOVM.EXE [07/08/2007 02:05:46]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[UMonit] : C:\Windows\system32\UMonit.exe [27/12/2007 19:29:22]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[WinampAgent] : "C:\Program Files\Winamp\winampa.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[AppleSyncNotifier] : C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [20/04/2011 12:48:18]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[SMSTray] : C:\Program Files\Samsung\EmoDio\SMSTray.exe [16/04/2009 13:23:56]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[Adobe ARM] : "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[QuickTime Task] : "C:\Program Files\QuickTime\QTTask.exe" -atboottime
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[TkBellExe] : "C:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[StartCCC] : "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[SunJavaUpdateSched] : "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[MSC] : "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[Sidebar] : C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[ehTray.exe] : C:\Windows\ehome\ehTray.exe [18/06/2008 13:47:16]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[Facebook Update] : "C:\Users\yannos\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[WMPNSCFG] : C:\Program Files\Windows Media Player\WMPNSCFG.exe [18/06/2008 13:47:38]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]|[erifbrgc] : "c:\users\yannos\appdata\local\lollipop\erifbrgc.exe" erifbrgc


¤¤¤¤¤¤¤¤¤¤ | Others

[HKLM\System\CurrentControlSet\Control\SecurityProviders]|[SecurityProviders] : credssp.dll
[HKLM\System\CurrentControlSet\Control\Terminal Server]|[AllowRemoteRPC] : 0
[HKLM\System\CurrentControlSet\Control\Session Manager]|[BootExecute] : autocheck autochk *
[HKLM\System\ControlSet001\Control\Session Manager]|[SetupExecute] :
[HKLM\System\ControlSet001\Control]|[FirmwareBootDevice] : multi(0)disk(0)rdisk(0)partition(1)
[HKLM\System\ControlSet001\Control]|[SystemBootDevice] : multi(0)disk(0)rdisk(0)partition(1)
[HKLM\system\currentcontrolset\control\lsa]|[SecureBoot] : 1
[HKLM | Winlogon]|[VMApplet] : rundll32 shell32,Control_RunDLL "sysdm.cpl"
[HKLM | Winlogon]|[SFCDisable] : 0
[HKLM | Winlogon]|[WinStationsDisabled] : 0



[HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]|[WebCheck] : {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKU\S-1-5-19\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{CFBFAE00-17A6-11D0-99CB-00C04FD64497}] :
[HKU\S-1-5-20\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{CFBFAE00-17A6-11D0-99CB-00C04FD64497}] :
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{CFBFAE00-17A6-11D0-99CB-00C04FD64497}] :
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\URLSearchHooks]|[{EF99BD32-C1FB-11D2-892F-0090271D4F88}] :

[HKLM\Software\Microsoft\Internet Explorer\Toolbar]|[{55BDF3B0-C0A8-481A-B8A6-01CD2BE0F3FD}] : Barre de confiance
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Toolbar]|[Locked] : 0
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Toolbar]|[ShowDiscussionButton] : Yes

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]|[{8C7461EF-2B13-11d2-BE35-3078302C2030}] : Component Categories cache daemon

[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\${searchCLSID}] -> (@ieframe.dll,-12512) -> https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&src={referrer:source?}
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] -> (Bing) -> https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&src=IE-SearchBox&FORM=IE8SRC
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}] -> (Google) -> https://www.google.fr/webhp?gws_rd=ssl{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7GGLL_fr
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9B6103C1-F818-48a8-9683-314055BE6075}] -> (MyStart Search) -> http://mystart.hiyo.com/?search={searchTerms}&loc=ie_search
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9D5BD211-422C-4164-9298-BB4186A30F31}] -> (Bing) -> https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&mkt=fr-FR&form=IE0004
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\{E8838CF0-5A41-483D-881D-E1D54F705A52}] -> (Bing) -> https://www.bing.com/?scope=web&mkt=fr-FR&FORM=IEFM1{searchTerms}&src={referrer:source?}
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\SearchScopes\{ED4BD629-C1B6-4399-8A34-02CCAA921DC9}] -> (Barre d'outils Alcohol Soft) -> http://search.alcohol-toolbar.com/search?p=Q&ts=ne&w={searchTerms}&csrc=search-field

[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] -> (@ieframe.dll,-12512) -> https://www.bing.com/?scope=web&mkt=fr-FR{searchTerms}&FORM=IE8SRC
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}] -> (Google) -> https://www.google.com/webhp?gws_rd=ssl{searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7

[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{024FE56A-FB63-4A9B-84CA-867A3B599861}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0562C0A2-E425-4F99-B194-C4D1FB3C3A16}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A44969F-9D71-47FB-A845-ED81119917AF}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E5F05FB-F259-4906-B7FA-E50D72F57528}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5CDAD991-E351-4D13-B313-8DF54C782CD9}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D5DAE76-5142-4B56-9372-084E46028849}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{604CB6C7-9EA9-4236-AE6A-D7A4600620B7}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66E50C9A-52E3-40AB-8561-5AAF4960C5B0}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97C32638-E2E6-4594-97ED-7FD1AA07A224}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2FECAA1-3C71-49F1-AC3F-E297DD91E9CD}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFD47C0D-4E23-49E4-9670-A1730C35FCFB}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDAE3941-DDC3-40C2-B5AD-DD04BB6BC884}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D18FD9F0-E210-4B56-8D5F-F5AFA6B46AF6}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F124E4F1-0575-4551-ABA5-F11EF14A1562}] -> () ->
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FEC329C5-97EB-46EE-B2C2-CD284438C3F1}] -> () ->
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0002df01-0000-0000-c000-000000000046}] -> (iexplore.exe) -> %ProgramFiles%\Internet Explorer
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{003B91A6-61E3-4591-891D-01E94C8CB11E}] -> (Silverlight.Configuration.exe) -> c:\Program Files\Microsoft Silverlight\4.1.10329.0\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{054aae20-4bea-4347-8a35-64a533254a9d}] -> (tabtip.exe) -> %CommonProgramFiles%\Microsoft Shared\Ink
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{07d873dc-b9b9-44f5-af0b-fb59fa54fb7a}] -> (wpcer.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{08f24d68-9087-4b24-81ad-7b34af3e3ed5}] -> (Acrobat Elements.exe) -> %ProgramFiles%\adobe\acrobat 6.0\Acrobat Elements
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0a402d70-1f10-4ae7-bec9-286a98240695}] -> (winfxdocobj.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1024F1BE-76DC-40d5-AB98-664A4185E5FA}] -> (FacebookVideoCalling.exe) -> C:\Users\yannos\AppData\Local\Facebook\Video\Skype\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10483e7e-0e8b-4e16-9e77-6be5d991683b}] -> (mstsc.exe) -> %systemroot%\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1138506a-b949-46a7-b6c0-ee26499fdeaf}] -> (wuapp.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{130c40f0-1bcb-4852-8b63-291cf90a600b}] -> (msdt.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15B3FB63-66F4-4EFC-B717-BB283B85E79B}] -> (AcroBroker.exe) -> C:\Program Files\Adobe\Reader 10.0\Reader\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186e0934-aee9-11da-961b-0014223d2a70}] -> (dfsvc.exe) -> C:\Windows\microsoft.net\framework\v2.0.50727
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1ec76a37-1762-46ff-9b14-765b3e6793be}] -> (agcp.exe) -> c:\Program Files\Microsoft Silverlight\4.1.10329.0\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26fe7361-bd5a-4dcb-b309-c6f42dde661c}] -> (ieinstal.exe) -> %ProgramFiles%\Internet Explorer
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{358E6F10-DE8A-4602-8424-179CA217F8EE}] -> (AcroRd32Info.exe) -> C:\Program Files\Adobe\Reader 10.0\Reader
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B9A6E32-36C9-4946-B78C-3F58E3785EC1}] -> (unpack200.exe) -> C:\Program Files\Java\jre1.6.0_07\bin
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43ABBB95-C0E9-497B-8BB9-B5FA08861705}] -> (wlmail.exe) -> C:\Program Files\Windows Live\Mail\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44D1B085-E495-4b5f-9EE6-34795C46E7E7}] -> (jp2launcher.exe) -> C:\Program Files\Java\jre7\bin
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4becf16c-74f0-429b-8d3e-4fba507ac661}] -> (acrord32.exe) -> %ProgramFiles%\adobe\acrobat 7.0\reader
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C0B7A7C-8ECF-422f-9448-0874C41D4532}] -> (WLLoginProxy.exe) -> %ProgramFiles%\Common Files\Microsoft Shared\Windows Live
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5852F5ED-8BF4-11D4-A245-0080C6F74284}] -> (javaws.exe) -> C:\Program Files\Java\jre7\bin
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58F04068-17A5-41a3-B5B7-111004DDF5DC}] -> (realplay.exe) -> c:\program files\real\realplayer\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A2777DF-310A-49ca-A9E8-6C9D608D257E}] -> (realupgrade.exe) -> C:\Program Files\Real\RealUpgrade\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6bf52a52-394a-11d3-b153-00c04f79faa6}] -> (wmplayer.exe) -> %ProgramFiles%\Windows Media Player
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{70f641fd-9ffc-4d5b-a4dc-962af4ed7999}] -> (iedw.exe) -> %ProgramFiles%\Internet Explorer
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76E2369A-75BA-41F9-8B9E-16059E5CF9A6}] -> (AdobeARM.exe) -> C:\Program Files\Common Files\Adobe\ARM\1.0\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7aaae723-5fb5-4b2d-9327-75519f336825}] -> () ->
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B7FB824-0A43-4bc2-B58D-F6386FEEFD84}] -> (CGuard.exe) -> Choice Guard
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7eb01fb2-f185-445a-94e4-ec4e1ba2202c}] -> (verclsid.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85fc331e-bb64-4c53-ba25-3d8a956c02fd}] -> (ctfmon.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8cec58ae-07a1-11d9-b15e-000d56bfe6ee}] -> (helppane.exe) -> C:\Windows
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E1F80F4-953F-41E7-8460-E64AE5BE4ED3}] -> (AdobeCollabSync.exe) -> C:\Program Files\Adobe\Reader 10.0\Reader
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95a4104c-1c49-4c2a-9830-1be0f47e926c}] -> (acrobat.exe) -> %ProgramFiles%\adobe\acrobat 7.0\Acrobat
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C6A861C-B233-4994-AFB1-C158EE4FC578}] -> (AcroRd32.exe) -> C:\Program Files\Adobe\Reader 10.0\Reader
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9da1d2cb-796d-4bec-bbaa-0aa9ccd80e15}] -> (Acrobat Elements.exe) -> %ProgramFiles%\adobe\acrobat 7.0\Acrobat Elements
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5a2d52a-4944-47c4-a3e0-8bd92e14d953}] -> (xpsviewer.exe) -> C:\Windows\system32\xpsviewer
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5B020FD-E04B-4e67-B65A-E7DEED25B2CF}] -> (wisptis.exe) -> %SystemRoot%\System32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAD4AE2E-D834-46D4-8B09-490FAC9C722B}] -> () ->
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{aff735eb-cdf9-4894-aa69-3e3131128618}] -> (cmd.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2321D2F-1154-4d97-AD3E-2FE0BAE2897B}] -> (9launch.exe) -> C:\Program Files\SFR\Kit
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}] -> (GoogleUpdateBroker.exe) -> C:\Program Files\Google\Update\1.3.21.123
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C442AC41-9200-4770-8CC0-7CDB4F245C55}] -> (GoogleUpdate.exe) -> C:\Program Files\Google\Update
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8FE2181-CAE7-49EE-9B04-DB7EB4DA544A}] -> (ssvagent.exe) -> C:\Program Files\Java\jre7\bin
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D133B285-8A43-4EC7-93BE-9B909C2370F5}] -> (msnmsgr.exe) -> C:\Program Files\Windows Live\Messenger\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d8a5d001-3352-40db-9d1c-ed46683193b5}] -> (WindowsLiveWriter.exe) -> C:\Program Files\Windows Live\Writer\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{dc6bf185-7ae4-444e-8c35-e447b0d2bd1e}] -> (notepad.exe) -> C:\Windows\System32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E56200D6-445E-45ce-89D8-E0EF39ECF849}] -> (RecordingManager.exe) -> c:\program files\real\realplayer\
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{e5f90a07-7db7-4dcb-bd6d-d3fecd376ca3}] -> (acrord32.exe) -> %ProgramFiles%\adobe\acrobat 6.0\reader
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eee261cc-4b3e-46e7-affb-61f297155bf2}] -> (presentationhost.exe) -> C:\Windows\system32
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF199D2-BFA7-4394-A4DE-044A08E59B32}] -> (FlashUtil32_11_4_402_265_ActiveX.exe) -> C:\Windows\system32\Macromed\Flash
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{fb9e068b-c612-4fa8-bdb9-d728a716a420}] -> (acrobat.exe) -> %ProgramFiles%\adobe\acrobat 6.0\Acrobat

¤¤¤¤¤¤¤¤¤¤ | BHO

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}] -> (Objet d'aide à la navigation SFR) -> C:\Program Files\SFR\Kit\SFRNavErrorHelper.dll [19/07/2010 18:32:02]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] -> (Adobe PDF Link Helper) -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [27/07/2012 22:51:32]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}] -> (RealPlayer Download and Record Plugin for Internet Explorer) -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [10/11/2011 16:48:45]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] -> () ->
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] -> (Java(tm) Plug-In SSV Helper) -> C:\Program Files\Java\jre7\bin\ssv.dll [18/09/2012 05:37:10]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] -> (Programme d'aide de l'Assistant de connexion Windows Live) -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [22/01/2009 16:41:30]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{988B07F5-7392-455A-8A1F-64935CB8B6ED}] -> (BHO Barre de Confiance) -> C:\Program Files\BarreConfCMCIC\TAPBar.dll [14/09/2007 15:14:18]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] -> (Java(tm) Plug-In 2 SSV Helper) -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [18/09/2012 05:37:09]

¤¤¤¤¤¤¤¤¤¤ | ActiveX

[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> (WMPACCESS) -> Microsoft Windows Media Player
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] -> (IEACCESS) -> Internet Explorer
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] -> () ->
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS] -> (BRANDING.CAB) -> Personnalisation du navigateur
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}] -> () ->
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> () -> Microsoft Windows Media Player 11.0
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> (Theme Component) -> Themes Setup
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{3af36230-a269-11d1-b5bf-0000f8051515}] -> (MobilePk) -> Offline Browsing Pack
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> (MailNews) -> Microsoft Windows Mail 7
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}] -> () ->
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}] -> (DirectDrawEx) -> DirectDrawEx
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{45ea75a0-a269-11d1-b5bf-0000f8051515}] -> (HelpCont) -> Internet Explorer Help
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{4f645220-306d-11d2-995d-00c04f98bbc9}] -> (MSVBScript) -> Microsoft Windows Script 5.8
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}] -> (GenSetup) -> Internet Explorer Setup Tools
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{630b1da0-b465-11d1-9948-00c04f98bbc9}] -> (ExtraPack) -> Browsing Enhancements
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> (Microsoft Windows Media Player) -> Microsoft Windows Media Player
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}] -> (MSN_Auth) -> MSN Site Access
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] -> (WebFolders) -> Dossiers Web
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}] -> () -> Address Book 7
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}] -> (.NETFramework) -> .NET Framework
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] -> (IE4_SHELLID) -> Windows Desktop Update
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] -> (BASEIE40_W2K) -> Web Platform Customizations
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> (DOTNETFRAMEWORKS) ->
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{9381D8F2-0288-11D0-9501-00AA00B911A5}] -> (Tridata) -> Dynamic HTML Data Binding
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}] -> (.NETFramework) -> .NET Framework
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{C9E9A340-D1F1-11D0-821E-444553540600}] -> (Fontcore) -> Internet Explorer Core Fonts
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{CB6EED45-86CD-B910-43C2-0197DC944489}] -> () -> DirectX
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}] -> (Windows Movie Maker 2.6) ->
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{D27CDB6E-AE6D-11CF-96B8-444553540000}] -> (Flash) -> Adobe Flash Player
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{D649C898-087A-06D2-570A-C10CC3E1B074}] -> () -> Microsoft Windows Media Player 11.0
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}] -> (HTMLHelp) -> HTML Help
[HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}] -> (ADSI) -> Active Directory Service Interface
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] -> () -> 9,0,8112,16421
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] -> () -> 9,0,8112,16421
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS] -> () -> 5,0,2314,1003
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}] -> () -> 11,0,6000,6324
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> () -> 11,0,6000,6324
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> () -> 1,1,1,9
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> () -> 6,0,6002,18005
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}] -> () -> 11,0,6000,6324
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> () -> 11,0,6000,6324
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}] -> () -> 6,0,6002,18646
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}] -> () -> 9,0,8112,16421
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> () ->
[HKU\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}] -> () -> 11,0,6000,6324
[HKU\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> () -> 11,0,6000,6324
[HKU\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}] -> () -> 11,0,6000,6324
[HKU\S-1-5-18\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> () -> 11,0,6000,6324

[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{04CB5B64-5915-4629-B869-8945CEBADD21}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{4F1E5B1A-2A80-42CA-8532-2D05CB959537}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{867E13F2-7F31-44FB-AC97-CD38E0DC46EF}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}] -> Java Runtime Environment 1.6.0
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C3F79A2B-B9B4-4A66-B012-3EE46475B072}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}] -> Java Runtime Environment 1.6.0
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}] ->
[HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6}] ->

19:37:04

¤¤¤¤¤¤¤¤¤¤ | HKCR\Applications

[HKCR\Applications\BackItUp.exe\Shell\open\command] -> "C:\Program Files\Nero\Nero 7\Nero BackItUp\BackItUp.exe" "%1"
[HKCR\Applications\BitComet.exe\Shell\open\command] -> "C:\Program Files\BitComet\BitComet.exe" "%1"
[HKCR\Applications\bittorrent.exe\Shell\open\command] -> "C:\Program Files\BitTorrent\bittorrent.exe" "%1"
[HKCR\Applications\CoverDes.exe\Shell\open\command] -> "C:\Program Files\Nero\Nero 7\Nero CoverDesigner\CoverDes.exe" "%1"
[HKCR\Applications\ehshell.exe\Shell\open\command] -> "C:\Windows\eHome\ehshell.exe" "%1"
[HKCR\Applications\GoldWave.exe\Shell\open\command] -> "C:\Program Files\GoldWave\GoldWave.exe" "%1"
[HKCR\Applications\gwave523.exe\Shell\open\command] -> "C:\Documents\GoldWave.v.5.23.Key-maz\gwave523.exe" "%1"
[HKCR\Applications\hl2.exe\Shell\open\command] -> "c:\program files\steam\steamapps\yann230\half-life 2 deathmatch\hl2.exe" "%1"
[HKCR\Applications\iexplore.exe\Shell\open\command] -> "C:\Program Files\Internet Explorer\iexplore.exe" %1
[HKCR\Applications\MovieMaker.exe\Shell\open\command] -> "C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe" "%1"
[HKCR\Applications\mplayerc.exe\Shell\open\command] -> "C:\Program Files\Real Alternative\Media Player Classic\mplayerc.exe" "%1"
[HKCR\Applications\nero.exe\Shell\open\command] -> "C:\Program Files\Nero\Nero 7\Core\nero.exe" "%1"
[HKCR\Applications\NokiaMMSViewer.exe\Shell\open\command] -> "C:\Program Files\Nokia\Nokia Multimedia Player\NokiaMMSViewer.exe" "%1"
[HKCR\Applications\notepad.exe\Shell\open\command] -> %SystemRoot%\system32\NOTEPAD.EXE %1
[HKCR\Applications\PhotoSnapViewer.exe\Shell\open\command] -> "C:\Program Files\Nero\Nero 7\Nero PhotoSnap\PhotoSnapViewer.exe" "%1"
[HKCR\Applications\photoviewer.dll\Shell\open\command] -> %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Gallery\PhotoViewer.dll", ImageView_Fullscreen %1
[HKCR\Applications\RealPlay.exe\Shell\open\command] -> "c:\program files\real\realplayer\realplay.exe" "%1"
[HKCR\Applications\winamp.exe\Shell\open\command] -> "C:\Program Files\Winamp\winamp.exe" "%1"
[HKCR\Applications\WinCal.exe\Shell\open\command] -> "%ProgramFiles%\Windows Calendar\wincal.exe" "%1"
[HKCR\Applications\WLXPhotoViewer.dll\Shell\open\command] -> C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe /LaunchPhotoViewer /v "%1"
[HKCR\Applications\wmplayer.exe\Shell\open\command] -> "%ProgramFiles%\Windows Media Player\wmplayer.exe" /Open "%L"
[HKCR\Applications\wordpad.exe\Shell\open\command] -> "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1"

¤¤¤¤¤¤¤¤¤¤ | Svchost - Netsvc


19:37:05


¤¤¤¤¤¤¤¤¤¤ | HKU\S-1-5-21-1170913042-1277233965-3038881231-1000

[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\AC3filter]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ACE Compression Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Ad-Remover]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Adobe]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ahead]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ALWIL Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\AppDataLow]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Apple Computer, Inc.]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Apple Inc.]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ASProtect]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ATI]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ATI Technologies Inc.]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\AVAST Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\AVS4YOU]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Azureus]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Battle.net]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\BitComet]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\BitTorrent]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Blizzard Entertainment]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Boonty]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Bugsplat]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\BVRP Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\CDDB]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Clients]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\CoreVorbis]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\COWON]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\cybelsoft]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Cyberlink]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\DivXNetworks]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Dropbox]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\DSP-worx]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ej-technologies]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Electronic Arts]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Facebook]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Freeware]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Full Tilt Poker]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\g3n-h@ckm@n]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Gabest]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\GeoVid]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\GNU]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\GoldWave]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Google]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Grisoft]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\GSpot Appliance Corp]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Haali]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\HaaliMkx]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\HookNetwork]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\IE]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\IGA]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\IM Providers]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Image-Line]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\InstallCore]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\JavaSoft]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\JEDI-VCL]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\kde.org]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Lavalys]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Lavasoft]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Licenses]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Local AppWizard-Generated Applications]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Logitech]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\lollipop]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Macromedia]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Macrovision]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Magicbit]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\MainConcept]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Malwarebytes' Anti-Malware]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\MediaInfo]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Mozilla]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\MozillaPlugins]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\MySpace]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Netscape]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Neuf]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Nokia]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\ODBC]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\OpenOffice.org]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Orange]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Outspark.com]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Pando Networks]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\PartyFrance]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\PCSync5300v1]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\PepiMK Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Piriform]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\PistonSoft]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\PMU]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Policies]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\PowerISO]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Propellerhead Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\RealNetworks]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\RegisteredApplications]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Replay AV 8]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\SampleView]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Samsung]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Samsung Media Studio]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\skype]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\SkypeRS]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\SOCID]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\SoftVoice]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Sony Ericsson]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\SoundDownloader]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\StarSynergy]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\SWISSKNIFE]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Sysinternals]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Titan Casino]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Trolltech]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Ultimate Arena]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Valve]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\VB and VBA Program Settings]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\VirtualDJ]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Wget]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Winamp]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\WinRAR]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\WinRAR SFX]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Wow6432Node]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Yahoo]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\YahooPartnerToolbar]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Zyrax Software]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Classes]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Active Setup]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\ActiveMovie]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\AntiPhishing]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Assistance]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Babylon]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Calc]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\ClipArt Gallery]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Command Processor]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\ComPstUI]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\ConferencingRTC]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\CTF]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Direct3D]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\DirectInput]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\DVR]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Ease of Access]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\EventSystem]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Feeds]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\FTP]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\GDIPlus]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\HMREngine]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\IAM]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\IdentityCRL]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Ieak]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\IME]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\IMEJP]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\IMEMIP]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\InkBall]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\InputPersonalization]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Installer]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Connection Wizard]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Internet Explorer]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Java VM]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Journal]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Keyboard]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MediaCenterPeripheral]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MediaPlayer]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Microsoft Agent]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Microsoft DVD Wizard Settings]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Microsoft Management Console]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MM20]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MobilePC]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MPEG2Demultiplexer]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MS Design Tools]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MSDAIPP]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\MSNMessenger]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Multimedia]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Net]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\NetShow]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Notepad]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Office]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\OLE]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Osk]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\PeerNet]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Plus!]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\PowerPoint Viewer]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Protected Storage System Provider]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\RAS AutoDial]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\RAS Phonebook]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Remote Assistance]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\RTC]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Security Center]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Shared Tools]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\SideShow]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Speech]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\SQMClient]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\SystemCertificates]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\TabletTip]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\TPG]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Tracing]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\UCCPlatform]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\VBA]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Visual Basic]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\VisualStudio]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\WAB]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Collaboration]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Defender]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Live]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Live Contacts]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Live Mail]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Mail]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Media]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Media Foundation]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Media Player NSS]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows NT]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Photo Gallery]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Script]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Script Host]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows Sidebar]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Wisp]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Works]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows\CurrentVersion]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows\DWM]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows\Shell]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows\ShellNoRoam]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows\TabletPC]
[HKU\S-1-5-21-1170913042-1277233965-3038881231-1000\Software\Microsoft\Windows\Windows Error Reporting]


¤¤¤¤¤¤¤¤¤¤ | HKCU\Software\M$\Windows NT\CurrentVersion

[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Accessibility]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\devices]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Drivers32]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\EFS]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Network]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\PeerNet]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\PrinterPorts]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\TaskManager]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Terminal Server]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows]
[HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]

¤¤¤¤¤¤¤¤¤¤ | HKLM\Software

[HKLM\Software\AbiSuite]
[HKLM\Software\ACE Compression Software]
[HKLM\Software\Adobe]
[HKLM\Software\Adobe Systems]
[HKLM\Software\Adobe Systems Incorporated]
[HKLM\Software\AdwCleaner]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ahead]
[HKLM\Software\Alcohol Soft]
[HKLM\Software\ALWIL Software]
[HKLM\Software\AMD]
[HKLM\Software\America Online]
[HKLM\Software\AOL]
[HKLM\Software\Apple Computer, Inc.]
[HKLM\Software\Apple Inc.]
[HKLM\Software\Applian]
[HKLM\Software\ASUS]
[HKLM\Software\ATI]
[HKLM\Software\ATI Technologies]
[HKLM\Software\AVAST Software]
[HKLM\Software\AviSynth]
[HKLM\Software\AVS4YOU]
[HKLM\Software\Azureus]
[HKLM\Software\BitTorrent]
[HKLM\Software\Blizzard Entertainment]
[HKLM\Software\Boonty]
[HKLM\Software\C07ft5Y]
[HKLM\Software\CDDB]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\Codec tweak Tool]
[HKLM\Software\cybelsoft]
[HKLM\Software\Cyberlink]
[HKLM\Software\Cygnus Solutions]
[HKLM\Software\DivXNetworks]
[HKLM\Software\DriverTuner]
[HKLM\Software\DriverTuner_Init]
[HKLM\Software\Dropbox]
[HKLM\Software\EA GAMES]
[HKLM\Software\EID]
[HKLM\Software\Eidos Interactive]
[HKLM\Software\ej-technologies]
[HKLM\Software\Electronic Arts]
[HKLM\Software\FRANCE TELECOM]
[HKLM\Software\Full Tilt Poker]
[HKLM\Software\GEAR Software]
[HKLM\Software\Genesys Logic]
[HKLM\Software\GNU]
[HKLM\Software\Google]
[HKLM\Software\Grisoft]
[HKLM\Software\HaaliMkx]
[HKLM\Software\Hewlett-Packard]
[HKLM\Software\id]
[HKLM\Software\InstallShield]
[HKLM\Software\Intel]
[HKLM\Software\Inventel]
[HKLM\Software\JavaSoft]
[HKLM\Software\JreMetrics]
[HKLM\Software\KLCodecPack]
[HKLM\Software\Lanovation]
[HKLM\Software\LEAD Technologies, Inc.]
[HKLM\Software\Licenses]
[HKLM\Software\LightScribe]
[HKLM\Software\Logitech]
[HKLM\Software\Macromedia]
[HKLM\Software\magnet]
[HKLM\Software\Malwarebytes' Anti-Malware]
[HKLM\Software\Malwarebytes' Anti-Malware (Trial)]
[HKLM\Software\MarkAny]
[HKLM\Software\McAfee.com]
[HKLM\Software\Microsoft]
[HKLM\Software\Mozilla]
[HKLM\Software\mozilla.org]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mpath]
[HKLM\Software\MusicNet]
[HKLM\Software\MySpace]
[HKLM\Software\Nero]
[HKLM\Software\Neuf]
[HKLM\Software\Nokia]
[HKLM\Software\Notepad]
[HKLM\Software\Nullsoft]
[HKLM\Software\ODBC]
[HKLM\Software\OMSI]
[HKLM\Software\OpenOffice.org]
[HKLM\Software\Oracle]
[HKLM\Software\Orb Networks]
[HKLM\Software\Outspark.com]
[HKLM\Software\Pando Networks]
[HKLM\Software\PC Connectivity Solution]
[HKLM\Software\PCSuite]
[HKLM\Software\PepiMK Software]
[HKLM\Software\Piriform]
[HKLM\Software\PKR]
[HKLM\Software\PocketSoft]
[HKLM\Software\Policies]
[HKLM\Software\PowerISO]
[HKLM\Software\Propellerhead Software]
[HKLM\Software\PTECH]
[HKLM\Software\RealAlternative]
[HKLM\Software\RealNetworks]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\RTLSetup]
[HKLM\Software\S3R521]
[HKLM\Software\SECURITOO]
[HKLM\Software\SoftRM]
[HKLM\Software\SoftShape]
[HKLM\Software\SoftThinks]
[HKLM\Software\SoftVoice]
[HKLM\Software\Sonic]
[HKLM\Software\Sony Ericsson]
[HKLM\Software\SRS Labs]
[HKLM\Software\Sun Microsystems]
[HKLM\Software\TENCENT]
[HKLM\Software\Titan Casino]
[HKLM\Software\Valve]
[HKLM\Software\VideoLAN]
[HKLM\Software\VirtualDJ]
[HKLM\Software\Vittalia]
[HKLM\Software\VobEdit 0.6 Fr]
[HKLM\Software\Volatile]
[HKLM\Software\VST]
[HKLM\Software\Wow6432Node]
[HKLM\Software\Xerox]
[HKLM\Software\Xing Technology Corp.]
[HKLM\Software\Yahoo]
[HKLM\Software\ZSMC]
[HKLM\Software\Microsoft\.NETFramework]
[HKLM\Software\Microsoft\Active Setup]
[HKLM\Software\Microsoft\ADs]
[HKLM\Software\Microsoft\Advanced INF Setup]
[HKLM\Software\Microsoft\ALG]
[HKLM\Software\Microsoft\ASP.NET]
[HKLM\Software\Microsoft\Assistance]
[HKLM\Software\Microsoft\AudioCompressionManager]
[HKLM\Software\Microsoft\BidInterface]
[HKLM\Software\Microsoft\BRCpl]
[HKLM\Software\Microsoft\CameraControl]
[HKLM\Software\Microsoft\ClipArt Gallery]
[HKLM\Software\Microsoft\Code Store Database]
[HKLM\Software\Microsoft\COM3]
[HKLM\Software\Microsoft\Command Processor]
[HKLM\Software\Microsoft\Cryptography]
[HKLM\Software\Microsoft\CTF]
[HKLM\Software\Microsoft\DataAccess]
[HKLM\Software\Microsoft\DataFactory]
[HKLM\Software\Microsoft\DevDiv]
[HKLM\Software\Microsoft\Dfrg]
[HKLM\Software\Microsoft\Direct3D]
[HKLM\Software\Microsoft\DirectDraw]
[HKLM\Software\Microsoft\DirectInput]
[HKLM\Software\Microsoft\DirectMusic]
[HKLM\Software\Microsoft\DirectPlay]
[HKLM\Software\Microsoft\DirectPlay8]
[HKLM\Software\Microsoft\DirectPlayNATHelp]
[HKLM\Software\Microsoft\DirectShow]
[HKLM\Software\Microsoft\DirectX]
[HKLM\Software\Microsoft\DownloadManager]
[HKLM\Software\Microsoft\Driver Signing]
[HKLM\Software\Microsoft\DRM]
[HKLM\Software\Microsoft\EnterpriseCertificates]
[HKLM\Software\Microsoft\EventSystem]
[HKLM\Software\Microsoft\Exchange]
[HKLM\Software\Microsoft\Feeds]
[HKLM\Software\Microsoft\FlashConfig]
[HKLM\Software\Microsoft\Function Discovery]
[HKLM\Software\Microsoft\Fusion]
[HKLM\Software\Microsoft\Genuine Advantage]
[HKLM\Software\Microsoft\GPUPipeline]
[HKLM\Software\Microsoft\Home Publishing]
[HKLM\Software\Microsoft\HTMLHelp]
[HKLM\Software\Microsoft\IdentityCRL]
[HKLM\Software\Microsoft\IE Setup]
[HKLM\Software\Microsoft\IE4]
[HKLM\Software\Microsoft\IMAPI]
[HKLM\Software\Microsoft\IMEJP]
[HKLM\Software\Microsoft\IMEKR]
[HKLM\Software\Microsoft\IMETC]
[HKLM\Software\Microsoft\Internet Account Manager]
[HKLM\Software\Microsoft\Internet Domains]
[HKLM\Software\Microsoft\Internet Explorer]
[HKLM\Software\Microsoft\Jet]
[HKLM\Software\Microsoft\MediaCenterPeripheral]
[HKLM\Software\Microsoft\MediaPlayer]
[HKLM\Software\Microsoft\MessengerService]
[HKLM\Software\Microsoft\Microsoft Antimalware]
[HKLM\Software\Microsoft\Microsoft Security Client]
[HKLM\Software\Microsoft\Microsoft SQL Server Compact Edition]
[HKLM\Software\Microsoft\Microsoft Sync Framework Native]
[HKLM\Software\Microsoft\Microsoft Sync Services Native]
[HKLM\Software\Microsoft\MigWiz]
[HKLM\Software\Microsoft\MMC]
[HKLM\Software\Microsoft\Mobile]
[HKLM\Software\Microsoft\MpSigStub]
[HKLM\Software\Microsoft\MSBuild]
[HKLM\Software\Microsoft\MSDTC]
[HKLM\Software\Microsoft\MSE]
[HKLM\Software\Microsoft\MSLicensing]
[HKLM\Software\Microsoft\MSN Apps]
[HKLM\Software\Microsoft\MSNMessenger]
[HKLM\Software\Microsoft\MSSQLServer]
[HKLM\Software\Microsoft\Multimedia]
[HKLM\Software\Microsoft\NapServer]
[HKLM\Software\Microsoft\NET Framework Setup]
[HKLM\Software\Microsoft\NetSh]
[HKLM\Software\Microsoft\NetShow]
[HKLM\Software\Microsoft\Network]
[HKLM\Software\Microsoft\NetworkAccessProtection]
[HKLM\Software\Microsoft\Non-Driver Signing]
[HKLM\Software\Microsoft\Notepad]
[HKLM\Software\Microsoft\ODBC]
[HKLM\Software\Microsoft\Office]
[HKLM\Software\Microsoft\Ole]
[HKLM\Software\Microsoft\Outlook Express]
[HKLM\Software\Microsoft\PCHealth]
[HKLM\Software\Microsoft\PLA]
[HKLM\Software\Microsoft\PlayReady]
[HKLM\Software\Microsoft\Preinstall]
[HKLM\Software\Microsoft\Print]
[HKLM\Software\Microsoft\RADAR]
[HKLM\Software\Microsoft\Ras]
[HKLM\Software\Microsoft\RAS AutoDial]
[HKLM\Software\Microsoft\Reliability Analysis]
[HKLM\Software\Microsoft\RemovalTools]
[HKLM\Software\Microsoft\RendezvousApps]
[HKLM\Software\Microsoft\RFC1156Agent]
[HKLM\Software\Microsoft\Router]
[HKLM\Software\Microsoft\Rpc]
[HKLM\Software\Microsoft\SchedulingAgent]
[HKLM\Software\Microsoft\Search Enhancement Pack]
[HKLM\Software\Microsoft\Security Center]
[HKLM\Software\Microsoft\Shared]
[HKLM\Software\Microsoft\Shared Tools]
[HKLM\Software\Microsoft\Shared Tools Location]
[HKLM\Software\Microsoft\SideShow]
[HKLM\Software\Microsoft\Silverlight]
[HKLM\Software\Microsoft\Speech]
[HKLM\Software\Microsoft\SQMClient]
[HKLM\Software\Microsoft\Sysprep]
[HKLM\Software\Microsoft\SystemCertificates]
[HKLM\Software\Microsoft\TableTextService]
[HKLM\Software\Microsoft\TabletTip]
[HKLM\Software\Microsoft\Tcpip]
[HKLM\Software\Microsoft\Terminal Server Client]
[HKLM\Software\Microsoft\TIP Shared]
[HKLM\Software\Microsoft\TMM]
[HKLM\Software\Microsoft\TPG]
[HKLM\Software\Microsoft\Tpm]
[HKLM\Software\Microsoft\Tracing]
[HKLM\Software\Microsoft\Transaction Server]
[HKLM\Software\Microsoft\TV System Services]
[HKLM\Software\Microsoft\UCCPlatform]
[HKLM\Software\Microsoft\uDRM]
[HKLM\Software\Microsoft\Updates]
[HKLM\Software\Microsoft\UPnP D
0