[Virus !] petite collection !

Résolu
Fire77520 Messages postés 18 Statut Membre -  
blondin777 Messages postés 6162 Statut Contributeur -
Bonjour a tous

C'est temps j'ai de gros souci de virus
J'en ai de plus en plus dont ; photos.zip ( par msn ) ; trojan.peacomm ( par mail ) ; et j'ai une énorme quantité de page de pub qui s'ouvrent c'est trés chiant
Ca m'oblige a rallumer mon ordi toute les 1h45min tellement ils rament a force

J'antivirus que j'ai ne détecte rien ! ( Norton internet security )

Pouvez-vous m'aider a faire quelque chose svp

merci d'avance de votre aide ;)
Configuration: Windows XP
Firefox 2.0.0.4

24 réponses

  • 1
  • 2
  1. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Salut.

    télécharges « Hijackthis »:

    http://telechargement.zebulon.fr/138-HijackThis.html

    *Installes-le dans un dossier créé spécialement à la racine de ta partition principale (généralement c:\).
    Donc tu l'installes dans C:\ et pas dans C: \.........\........\.
    *Renommes le en hij.exe par exemple

    *Double cliques sur hij.exe
    *Cliques sur le fichier > « exécute » > « do a scan and save a logfile ».
    *Une fois fini tu vas avoir un « rapport.txt » (dans le dossier où tu l’as installé)
    *Postes ici ce rapport

    Démo pour cocher et fixer les lignes:

    http://pageperso.aol.fr/balltrap34/Hijenr.gif
    http://pageperso.aol.fr/balltrap34/demohijack.htm

    >>> note très importante:
    1°) ce qui suit doit être imprimé ou enregistré dans un fichier texte sur le bureau pour utilisation en "mode sans échec (donc forum inaccessible)
    2°) les utilitaires indiqués doivent être téléchargés, installés et mis à jour en "mode normal" avant toute utilisation.
    3°) démarrer en mode sans échec et utiliser les utilitaires dans l'ordre.

    ** télécharges « CCleaner »:
    https://www.01net.com/404/
    après l’install. lances-le et
    Clic sur "Options" > "Avancé" et décoches la case "Effacer uniquement ...que 48 heures".
    clic sur « erreurs » (à gauche) coches toutes les cases (sauf la dernière), puis
    clic sur « chercher des erreurs » une fois fini,
    clic sur « réparer les erreurs »
    au message pour sauvegarder la base de registre clic « oui »
    dans la fenêtre qui apparaît clic sur « corriger toutes les erreurs » puis sur « ok »
    recommencer jusqu’a ce qu’il n’y aie plus d’erreurs.
    dans la colonne de gauche clic sur « nettoyeur »puis « analyse ».
    attendre la fin et clic sur « lancer le nettoyage » autant de fois que nécessaire.

    ** télécharges « spybot »: https://www.clubic.com/telecharger-fiche10965-spybot-search-and-destroy.html

    lances le apres install. >
    dans « langue » choisis « fr » (si besoin est)
    dans « mode » choisir « mode avancé »
    clic sur « réglages » (à gauche) >> « modules add. », coches toutes les cases sauf la dernière (traceur...)
    reviens sur l'onglet "spybot-S&D" (à gauche) cliques sur "vérif tout"
    quand c'est fini supprimes tt ce q’il trouve en cliquant sur "corriger..."
    (s'il te propose de redémarrer le pc pour finir le nettoyage acceptes et laisses-le faire, (mais dès que c'est fini redémarres en mode sans echec et continues les étapes)
    utilises la rubrique "aide" si nécssaire

    **Télécharge la version d'essai d'AVG Anti-Spyware 7.5 ici :
    https://www.avg.com/en-ww/free-antivirus-download
    et l'installer.

    Son tuto (merci malekal_morte) : https://www.malekal.com/avg-antivirus-free-antivirus-gratuit-pour-proteger-son-pc-des-virus/

    Démarrer AVG antispyware. Cliquer sur "mise à jour", cliquer sur le bouton "Commencer la mise à jour" et attendre la fin de cette mise à jour puis, fermer le programme.
    Redemarrer en mode sans échec, relancer AVG AS et cliquer sur l'onglet "scanner" puis sur "Analyse complète du système".
    Une fois le scan terminé, il t'affiche un rapport. Cliquer sur "configurer..." en bas a gauche et choisir "supprimer". Ensuite cliquer sur "Appliquer toutes les actions ", ca va supprimer toutes les infections détectées.
    Ensuite cliquer sur "Enregistrer le rapport d'analyse" -> "enregistrer sous" et enregistrer le rapport où bon te semble, afin de me l'envoyer dans ta prochaine réponse.

    Pour vérifier, scanne ton PC avec cet antivirus en ligne (sous IE et accepte l’activX) :
    http://www.bitdefender.fr/bd/site/search.php#
    Clique sur « Bitdefender scan on line » suis les instructions.
    Et colle le rapport.
    0
  2. Fire77520 Messages postés 18 Statut Membre
     
    merci pour ton aide
    je vais essayer
    mais un par un

    voici le rapport hijackthis

    Logfile of HijackThis v1.99.1
    Scan saved at 10:52:55, on 17/06/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16473)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\Explorer.EXE
    c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
    c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
    C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
    c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\CyberLink\PowerCinema\PCMService.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
    C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
    C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\Program Files\Fichiers communs\Logitech\QCDriver\LVCOMS.EXE
    C:\HP\KBD\KBD.EXE
    C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\System32\svchost.exe
    c:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Program Files\Mozilla Firefox\firefox.exe
    c:\windows\system\hpsysdrv.exe
    C:\hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr?cobrand=compaq-desktop.msn.com&ocid=HPDHP&pc=CPDTDF
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
    O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver\LVCOMS.EXE
    O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Startup: ENJOY Plus!.lnk = C:\Program Files\ENJOY Plus!\Enjoy Plus!.exe
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab55579.cab
    O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game05.zylom.com/activex/zylomgamesplayer.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O21 - SSODL: syshelps - {E622ACBF-8EA9-40AF-9145-B31E2169D80C} - syshelps.dll (file missing)
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\ccPwdSvc.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
    O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Norton Internet Security\comHost.exe
    O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe (file missing)
    O23 - Service: Spyware Doctor Service (sdCoreService) - Unknown owner - C:\Program Files\Spyware Doctor\swdsvc.exe (file missing)
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    0
  3. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Ok, j'attends les autres rapports.
    0
  4. Fire77520 Messages postés 18 Statut Membre
     
    PREMIER PASSAGE AVEC CCLEANER

    Windows Registry Editor Version 5.00

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
    "c:\\WINDOWS\\system32\\msxml3a.dll"=dword:00000001

    [HKEY_CLASSES_ROOT\SysmonLogManager.Snapin]

    [HKEY_CLASSES_ROOT\WMPCD]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.0]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.0\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.1]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.1\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.82P]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.82P\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.big]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.big\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bpl]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bpl\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BUP]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BUP\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dwg]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dwg\OpenWithList]
    "a"="firefox.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flv]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.flv\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gbc]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gbc\OpenWithList]
    "a"="VisualBoy.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gvp]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gvp\OpenWithList]
    "a"="iexplore.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.IFO]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.IFO\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.INP]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.INP\OpenWithList]
    "a"="IPSWin.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ips]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ips\OpenWithList]
    "a"="IPSWin.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lng]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lng\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nds]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nds\OpenWithList]
    "a"="NO$GBA.EXE"
    "MRUList"="afecdb"
    "b"="dualis.exe"
    "c"="ideas.exe"
    "d"="desmume.exe"
    "e"="NeeDS.exe"
    "f"="IPSWin.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.part]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.part\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rbs]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rbs\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rjs]
    "Application"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rjt]
    "Application"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rnx]
    "Application"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rp]
    "Application"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rt]
    "Application"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sav]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sav\OpenWithList]
    "a"="NO$GBA.EXE"
    "MRUList"="ba"
    "b"="PokemonTrash_SavEdit.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.scm]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.scm\OpenWithList]
    "a"="firefox.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sdp]
    "Application"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent\OpenWithList]
    "a"="firefox.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tpl]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tpl\OpenWithList]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.zoo]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.zoo\OpenWithList]
    "a"="zoo.exe"
    "MRUList"="a"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\OpenWithList]

    [HKEY_CLASSES_ROOT\acrobat\DefaultIcon]
    @="C:\\Program Files\\Adobe\\Acrobat 7.0\\Acrobat\\AcroRd32.exe"

    [HKEY_CLASSES_ROOT\ADCS]
    @="Conteneur de classe Annuaire"

    [HKEY_CLASSES_ROOT\ADCS\CLSID]
    @="{89E30300-764D-11d0-B282-00A0C90F56FC}"

    [HKEY_CLASSES_ROOT\ComPlusMetaData.MsCorHost]

    [HKEY_CLASSES_ROOT\ComPlusMetaData.MsCorHost\CLSID]
    @="{727CDF4F-3BA0-11D3-8738-00C04F79ED0D}"

    [HKEY_CLASSES_ROOT\ComPlusMetaData.MsCorHost.2]
    @="Microsoft COM+ Runtime Meta Data"

    [HKEY_CLASSES_ROOT\ComPlusMetaData.MsCorHost.2\CLSID]
    @="{727CDF4F-3BA0-11D3-8738-00C04F79ED0D}"

    [HKEY_CLASSES_ROOT\Connection Manager Profile\DefaultIcon]
    @="C:\\WINDOWS\\system32\\CMMGR32.EXE,1"

    [HKEY_CLASSES_ROOT\Connection Manager Profile\shell\open]

    [HKEY_CLASSES_ROOT\Connection Manager Profile\shell\open\command]
    @="C:\\WINDOWS\\system32\\CMMGR32.EXE \"%1\""

    [HKEY_CLASSES_ROOT\Connection Manager Profile\shell\Settings...]

    [HKEY_CLASSES_ROOT\Connection Manager Profile\shell\Settings...\command]
    @="C:\\WINDOWS\\system32\\CMMGR32.EXE /settings \"%1\""

    [HKEY_CLASSES_ROOT\DirectAnimation.PathControl]
    @="Microsoft DirectAnimation Path"

    [HKEY_CLASSES_ROOT\DirectAnimation.PathControl\CLSID]
    @="{D7A7D7C3-D47F-11D0-89D3-00A0C90833E6}"

    [HKEY_CLASSES_ROOT\DirectAnimation.Sequence]
    @="Microsoft DirectAnimation Sequence"

    [HKEY_CLASSES_ROOT\DirectAnimation.Sequence\CLSID]
    @="{4F241DB1-EE9F-11D0-9824-006097C99E51}"

    [HKEY_CLASSES_ROOT\DirectAnimation.SequencerControl]
    @="Microsoft DirectAnimation Sequencer"

    [HKEY_CLASSES_ROOT\DirectAnimation.SequencerControl\CLSID]
    @="{B0A6BAE2-AAF0-11D0-A152-00A0C908DB96}"

    [HKEY_CLASSES_ROOT\DirectAnimation.SpriteControl]
    @="Microsoft DirectAnimation Sprite"

    [HKEY_CLASSES_ROOT\DirectAnimation.SpriteControl\CLSID]
    @="{FD179533-D86E-11D0-89D6-00A0C90833E6}"

    [HKEY_CLASSES_ROOT\DirectAnimation.StructuredGraphicsControl]
    @="Microsoft DirectAnimation Structured Graphics"

    [HKEY_CLASSES_ROOT\DirectAnimation.StructuredGraphicsControl\CLSID]
    @="{369303C2-D7AC-11D0-89D5-00A0C90833E6}"

    [HKEY_CLASSES_ROOT\msbackupfile\DefaultIcon]
    @=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
    00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6e,00,74,00,\
    62,00,61,00,63,00,6b,00,75,00,70,00,2e,00,65,00,78,00,65,00,2c,00,31,00,30,\
    00,00,00

    [HKEY_CLASSES_ROOT\msbackupfile\shell\Open]
    @="&Ouvrir"

    [HKEY_CLASSES_ROOT\msbackupfile\shell\Open\Command]
    @=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
    00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6e,00,74,00,\
    62,00,61,00,63,00,6b,00,75,00,70,00,2e,00,65,00,78,00,65,00,00,00

    [HKEY_CLASSES_ROOT\StationLaunchPad\shell\open]

    [HKEY_CLASSES_ROOT\StationLaunchPad\shell\open\command]
    @="c:\\Program Files\\Sony\\Station\\Launcher.exe %1"

    [HKEY_CLASSES_ROOT\SymAData.ActiveDataInfo]
    @="ActiveDataInfo Class"

    [HKEY_CLASSES_ROOT\SymAData.ActiveDataInfo\CLSID]
    @="{CE28D5D2-60CF-4C7D-9FE8-0F47A3308078}"

    [HKEY_CLASSES_ROOT\SymAData.ActiveDataInfo\CurVer]
    @="SymAData.ActiveDataInfo.1"

    [HKEY_CLASSES_ROOT\SymAData.ActiveDataInfo.1]
    @="ActiveDataInfo Class"

    [HKEY_CLASSES_ROOT\SymAData.ActiveDataInfo.1\CLSID]
    @="{CE28D5D2-60CF-4C7D-9FE8-0F47A3308078}"

    [HKEY_CLASSES_ROOT\SymWriter.pdb]
    @="Pdb based SymWriter"

    [HKEY_CLASSES_ROOT\SymWriter.pdb\CLSID]
    @="{520DC67A-752E-11D3-8D56-00C04F680B2B}"

    [HKEY_CLASSES_ROOT\zapfile\DefaultIcon]
    @=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
    00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,61,00,70,00,\
    70,00,6d,00,67,00,72,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,00,32,00,31,00,38,\
    00,00,00

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}]
    @="ActiveXPlugin Object"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\Control]

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\Implemented Categories]

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}]

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}]

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\InprocServer32]
    @="C:\\WINDOWS\\system32\\plugin.ocx"
    "ThreadingModel"="Apartment"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\MiscStatus]
    @="0"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\MiscStatus\1]
    @="131473"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\ProgID]
    @="Microsoft.ActiveXPlugin.1"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\ToolboxBitmap32]
    @="C:\\WINDOWS\\system32\\plugin.ocx, 1"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\TypeLib]
    @="{06DD38D0-D187-11CF-A80D-00C04FD74AD8}"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\Version]
    @="1.0"

    [HKEY_CLASSES_ROOT\CLSID\{06DD38D3-D187-11CF-A80D-00C04FD74AD8}\VersionIndependentProgID]
    @="Microsoft.ActiveXPlugin"

    [HKEY_CLASSES_ROOT\CLSID\{544357C5-F9B1-4D75-9F4D-E465992087AF}]
    @="TlbRC"

    [HKEY_CLASSES_ROOT\CLSID\{544357C5-F9B1-4D75-9F4D-E465992087AF}\InprocServer32]
    @="C:\\Program Files\\Messenger Plus! Live\\Scripts\\Now Playing\\dlls\\wmp9.dll"
    "ThreadingModel"="Apartment"

    [HKEY_CLASSES_ROOT\CLSID\{81F0237C-E2FD-49E6-8E99-1434D6E13375}]
    @="ASWrapComponent Class"

    [HKEY_CLASSES_ROOT\CLSID\{81F0237C-E2FD-49E6-8E99-1434D6E13375}\InprocServer32]
    @="c:\\Program Files\\HP\\bin\\hpqSonWr.dll"
    "InprocServer32"=hex(7):4e,00,21,00,26,00,45,00,26,00,33,00,2a,00,7d,00,69,00,\
    40,00,5d,00,4f,00,24,00,72,00,53,00,4f,00,59,00,35,00,6a,00,77,00,43,00,50,\
    00,5f,00,53,00,6c,00,69,00,64,00,65,00,73,00,68,00,6f,00,77,00,50,00,6c,00,\
    75,00,67,00,69,00,6e,00,3e,00,3d,00,5f,00,4e,00,49,00,25,00,4a,00,57,00,30,\
    00,5a,00,40,00,74,00,6f,00,25,00,5b,00,6f,00,31,00,61,00,6b,00,30,00,79,00,\
    00,00,00,00
    "ThreadingModel"="Apartment"

    [HKEY_CLASSES_ROOT\CLSID\{81F0237C-E2FD-49E6-8E99-1434D6E13375}\ProgID]
    @="ASWrapper.ASWrapComponent.1"

    [HKEY_CLASSES_ROOT\CLSID\{81F0237C-E2FD-49E6-8E99-1434D6E13375}\Programmable]

    [HKEY_CLASSES_ROOT\CLSID\{81F0237C-E2FD-49E6-8E99-1434D6E13375}\TypeLib]
    @="{88AC17A8-28FD-40C9-BD21-F7853F849E46}"

    [HKEY_CLASSES_ROOT\CLSID\{81F0237C-E2FD-49E6-8E99-1434D6E13375}\VersionIndependentProgID]
    @="ASWrapper.ASWrapComponent"

    [HKEY_CLASSES_ROOT\Applications\moviemk.exe]

    [HKEY_CLASSES_ROOT\Applications\moviemk.exe\shell]
    "FriendlyCache"="Movie Maker"

    [HKEY_CLASSES_ROOT\Applications\WinRAR.exe\shell\open]

    [HKEY_CLASSES_ROOT\Applications\WinRAR.exe\shell\open\command]
    @="\"C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\winrar\\WinRAR.exe\" \"%1\""

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\cmmgr32.exe]
    @="C:\\WINDOWS\\system32\\cmmgr32.exe"
    "Path"="C:\\WINDOWS\\system32"
    "CmstpExtensionDll"="C:\\WINDOWS\\system32\\cmcfg32.dll"
    "CMInternalVersion"="1.2"
    "CmNative"=dword:00000001
    "ProfilesUpgraded"=dword:00000001

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\ORUN32.EXE]
    "Path"="C:\\WINDOWS\\"
    @="C:\\WINDOWS\\ORUN32.EXE"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\WebMediaPlayer.exe]
    @="C:\\Program Files\\WebMediaPlayer\\WebMediaPlayer.exe"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]
    "C:\\WINDOWS\\winsxs\\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.91_x-ww_0de56c07\\"=""

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\ENJOY Plus!]
    "DisplayName"="ENJOY Plus!"
    "HelpLink"="http://www.enjoystation.net"
    "Publisher"="Sébastien BEGOUIN"
    "UninstallString"="\"C:\\Program Files\\ENJOY Plus!\\UnInstall.exe\""

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\GIMPshop]
    "NSIS:StartMenuDir"="GIMPshop"
    "DisplayName"="GIMPshop 2.2.8"
    "UninstallString"="C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\gimp_2_2_13_xp_2000\\GIMPshop\\uninst.exe"
    "DisplayIcon"="C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\gimp_2_2_13_xp_2000\\GIMPshop\\bin\\gimp-2.2.exe"
    "DisplayVersion"="2.2.8"
    "URLInfoAbout"="http://plasticbugs.com/?page_id=294"
    "Publisher"="The GIMP team (hack by Scott Moschella)"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Spyware Doctor]
    "DisplayIcon"="C:\\Program Files\\Spyware Doctor\\swdoctor.exe"
    "DisplayName"="Spyware Doctor 5.0"
    "DisplayVersion"="5.0"
    "HelpLink"="https://fr.norton.com/"
    "InstallLocation"="C:\\Program Files\\Spyware Doctor\\"
    "NoModify"=dword:00000001
    "NoRepair"=dword:00000001
    "Publisher"="PC Tools"
    "QuietUninstallString"="C:\\Program Files\\Spyware Doctor\\unins000.exe /SILENT"
    "UninstallString"="C:\\Program Files\\Spyware Doctor\\unins000.exe"
    "URLInfoAbout"="https://fr.norton.com/"
    "URLUpdateInfo"="https://fr.norton.com/"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WebMediaPlayer]
    "DisplayName"="WebMediaPlayer"
    "UninstallString"="C:\\Program Files\\WebMediaPlayer\\uninst.exe"
    "DisplayIcon"="C:\\Program Files\\WebMediaPlayer\\WebMediaPlayer.exe"
    "DisplayVersion"="1.0"
    "URLInfoAbout"="http://www.web-mediaplayer.com/"
    "Publisher"="OOO «Favorit»"
    "Installer Language"="1036"

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Diablo II]
    "SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,70,5f,6f,00,00,00,00,e2,7f,c2,\
    66,68,bc,c6,01,05,00,00,00,43,00,3a,00,5c,00,44,00,69,00,61,00,62,00,6c,00,\
    6f,00,20,00,32,00,5c,00,44,00,69,00,61,00,62,00,6c,00,6f,00,20,00,49,00,49,\
    00,5c,00,47,00,61,00,6d,00,65,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "Changed"=dword:00000000

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Mozilla Firefox (2.0.0.1)]
    "SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,40,50,01,00,00,00,00,a4,bc,e8,\
    2c,be,52,c7,01,19,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
    61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,4d,00,6f,00,7a,00,69,\
    00,6c,00,6c,00,61,00,20,00,46,00,69,00,72,00,65,00,66,00,6f,00,78,00,5c,00,\
    66,00,69,00,72,00,65,00,66,00,6f,00,78,00,2e,00,65,00,78,00,65,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "Changed"=dword:00000000

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Mozilla Firefox (2.0.0.2)]
    "SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,f0,57,01,00,00,00,00,ae,ab,e2,\
    6c,3b,5c,c7,01,50,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
    61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,4d,00,6f,00,7a,00,69,\
    00,6c,00,6c,00,61,00,20,00,46,00,69,00,72,00,65,00,66,00,6f,00,78,00,5c,00,\
    66,00,69,00,72,00,65,00,66,00,6f,00,78,00,2e,00,65,00,78,00,65,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "Changed"=dword:00000000

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1B778141-BB7A-4F1A-A02D-5A2BC640585E}]
    "SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,4c,b8,01,00,00,00,00,ff,ff,ff,\
    ff,ff,ff,ff,ff,00,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,\
    57,00,53,00,5c,00,49,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,65,00,72,00,5c,\
    00,7b,00,31,00,42,00,37,00,37,00,38,00,31,00,34,00,31,00,2d,00,42,00,42,00,\
    37,00,41,00,2d,00,34,00,46,00,31,00,41,00,2d,00,41,00,30,00,32,00,44,00,2d,\
    00,35,00,41,00,32,00,42,00,43,00,36,00,34,00,30,00,35,00,38,00,35,00,45,00,\
    7d,00,5c,00,4d,00,73,00,62,00,6c,00,49,00,63,00,6f,00,2e,00,45,00,78,00,65,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "Changed"=dword:00000000

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{AC76BA86-7AD7-1036-7B44-A70500000002}]
    "SlowInfoCache"=hex:28,02,00,00,00,00,00,00,00,54,b7,04,00,00,00,00,00,00,00,\
    00,00,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "Changed"=dword:00000000

    [HKEY_CURRENT_USER\Software\epk_extr]

    [HKEY_CURRENT_USER\Software\Stardock]

    [HKEY_CURRENT_USER\Software\WSoft Lab]

    [HKEY_LOCAL_MACHINE\Software\PC-Doctor]

    [HKEY_LOCAL_MACHINE\Software\Stardock]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "PCDrProfiler"=""

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Accessoires\Communications\Télécopier]
    "Order"=hex:08,00,00,00,02,00,00,00,44,02,00,00,01,00,00,00,03,00,00,00,b8,00,\
    00,00,00,00,00,00,aa,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,98,00,32,\
    00,4d,06,00,00,22,34,62,bc,20,00,43,4f,4e,53,4f,4c,7e,31,2e,4c,4e,4b,00,00,\
    6e,00,03,00,04,00,ef,be,22,34,62,bc,c2,36,c2,62,14,00,46,00,43,00,6f,00,6e,\
    00,73,00,6f,00,6c,00,65,00,20,00,64,00,65,00,20,00,74,00,e9,00,6c,00,e9,00,\
    63,00,6f,00,70,00,69,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,40,43,3a,5c,57,\
    49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,66,78,73,72,65,73,2e,64,6c,\
    6c,2c,2d,31,31,34,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,\
    00,00,00,00,00,00,00,c0,00,00,00,01,00,00,00,b2,00,00,00,41,75,67,4d,02,00,\
    00,00,01,00,00,00,a0,00,32,00,e2,06,00,00,22,34,62,bc,20,00,44,49,54,45,55,\
    52,7e,31,2e,4c,4e,4b,00,00,76,00,03,00,04,00,ef,be,22,34,62,bc,c2,36,c2,62,\
    14,00,4e,00,c9,00,64,00,69,00,74,00,65,00,75,00,72,00,20,00,64,00,65,00,20,\
    00,70,00,61,00,67,00,65,00,20,00,64,00,65,00,20,00,67,00,61,00,72,00,64,00,\
    65,00,2e,00,6c,00,6e,00,6b,00,00,00,40,43,3a,5c,57,49,4e,44,4f,57,53,5c,73,\
    79,73,74,65,6d,33,32,5c,66,78,73,72,65,73,2e,64,6c,6c,2c,2d,31,31,32,00,00,\
    1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,c0,\
    00,00,00,02,00,00,00,b2,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,a0,00,\
    32,00,41,06,00,00,22,34,62,bc,20,00,45,4e,56,4f,59,45,7e,31,2e,4c,4e,4b,00,\
    00,76,00,03,00,04,00,ef,be,22,34,62,bc,c2,36,c2,62,14,00,4e,00,45,00,6e,00,\
    76,00,6f,00,79,00,65,00,72,00,20,00,75,00,6e,00,65,00,20,00,74,00,e9,00,6c,\
    00,e9,00,63,00,6f,00,70,00,69,00,65,00,2e,00,2e,00,2e,00,2e,00,6c,00,6e,00,\
    6b,00,00,00,40,43,3a,5c,57,49,4e,44,4f,57,53,5c,73,79,73,74,65,6d,33,32,5c,\
    66,78,73,72,65,73,2e,64,6c,6c,2c,2d,31,31,30,00,00,1c,00,0e,00,00,00,0a,00,\
    ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Actual Transparent Window]
    "Order"=hex:08,00,00,00,02,00,00,00,70,04,00,00,01,00,00,00,08,00,00,00,9c,00,\
    00,00,00,00,00,00,8e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,7c,00,32,\
    00,44,03,00,00,4e,35,45,61,20,00,41,43,54,55,41,4c,7e,31,2e,4c,4e,4b,00,00,\
    52,00,03,00,04,00,ef,be,4e,35,45,61,4e,35,45,61,14,00,00,00,41,00,63,00,74,\
    00,75,00,61,00,6c,00,20,00,54,00,72,00,61,00,6e,00,73,00,70,00,61,00,72,00,\
    65,00,6e,00,74,00,20,00,57,00,69,00,6e,00,64,00,6f,00,77,00,2e,00,6c,00,6e,\
    00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,\
    00,00,00,00,b2,00,00,00,01,00,00,00,a4,00,00,00,41,75,67,4d,02,00,00,00,01,\
    00,00,00,92,00,32,00,87,02,00,00,4e,35,45,61,20,00,41,43,54,55,41,4c,7e,32,\
    2e,4c,4e,4b,00,00,68,00,03,00,04,00,ef,be,4e,35,45,61,4e,35,45,61,14,00,00,\
    00,41,00,63,00,74,00,75,00,61,00,6c,00,20,00,54,00,72,00,61,00,6e,00,73,00,\
    70,00,61,00,72,00,65,00,6e,00,74,00,20,00,57,00,69,00,6e,00,64,00,6f,00,77,\
    00,20,00,6f,00,6e,00,20,00,74,00,68,00,65,00,20,00,57,00,65,00,62,00,2e,00,\
    6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,\
    00,00,00,00,00,00,00,84,00,00,00,02,00,00,00,76,00,00,00,41,75,67,4d,02,00,\
    00,00,01,00,00,00,64,00,32,00,44,03,00,00,4e,35,45,61,20,00,43,4f,4e,46,49,\
    47,7e,31,2e,4c,4e,4b,00,00,3a,00,03,00,04,00,ef,be,4e,35,45,61,4e,35,45,61,\
    14,00,00,00,43,00,6f,00,6e,00,66,00,69,00,67,00,75,00,72,00,61,00,74,00,69,\
    00,6f,00,6e,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,\
    00,00,00,00,1c,00,00,00,00,00,00,00,00,00,6e,00,00,00,03,00,00,00,60,00,00,\
    00,41,75,67,4d,02,00,00,00,01,00,00,00,4e,00,32,00,26,03,00,00,4e,35,45,61,\
    20,00,48,65,6c,70,2e,6c,6e,6b,00,00,28,00,03,00,04,00,ef,be,4e,35,45,61,4e,\
    35,45,61,14,00,00,00,48,00,65,00,6c,00,70,00,2e,00,6c,00,6e,00,6b,00,00,00,\
    18,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,00,00,00,00,00,00,00,00,76,\
    00,00,00,04,00,00,00,68,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,56,00,\
    32,00,d4,02,00,00,4e,35,45,61,20,00,4c,69,63,65,6e,73,65,2e,6c,6e,6b,00,2e,\
    00,03,00,04,00,ef,be,4e,35,45,61,4e,35,45,61,14,00,00,00,4c,00,69,00,63,00,\
    65,00,6e,00,73,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1a,00,0e,00,00,00,0a,\
    00,ef,be,00,00,00,00,1a,00,00,00,00,00,00,00,00,00,8a,00,00,00,05,00,00,00,\
    7c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6a,00,32,00,13,06,00,00,4e,\
    35,45,61,20,00,50,52,4f,44,55,43,7e,31,2e,4c,4e,4b,00,00,40,00,03,00,04,00,\
    ef,be,4e,35,45,61,4e,35,45,61,14,00,00,00,50,00,72,00,6f,00,64,00,75,00,63,\
    00,74,00,73,00,20,00,43,00,61,00,74,00,61,00,6c,00,6f,00,67,00,2e,00,6c,00,\
    6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,\
    00,00,00,00,00,74,00,00,00,06,00,00,00,66,00,00,00,41,75,67,4d,02,00,00,00,\
    01,00,00,00,54,00,32,00,cf,02,00,00,4e,35,45,61,20,00,52,65,61,64,6d,65,2e,\
    6c,6e,6b,00,00,2c,00,03,00,04,00,ef,be,4e,35,45,61,4e,35,45,61,14,00,00,00,\
    52,00,65,00,61,00,64,00,6d,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1a,00,0e,\
    00,00,00,0a,00,ef,be,00,00,00,00,1a,00,00,00,00,00,00,00,00,00,b0,00,00,00,\
    07,00,00,00,a2,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,90,00,32,00,db,\
    02,00,00,4e,35,45,61,20,00,55,4e,49,4e,53,54,7e,31,2e,4c,4e,4b,00,00,66,00,\
    03,00,04,00,ef,be,4e,35,45,61,4e,35,45,61,14,00,00,00,55,00,6e,00,69,00,6e,\
    00,73,00,74,00,61,00,6c,00,6c,00,20,00,41,00,63,00,74,00,75,00,61,00,6c,00,\
    20,00,54,00,72,00,61,00,6e,00,73,00,70,00,61,00,72,00,65,00,6e,00,74,00,20,\
    00,57,00,69,00,6e,00,64,00,6f,00,77,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,\
    0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Alice Triway Wi-Fi]
    "Order"=hex:08,00,00,00,02,00,00,00,62,02,00,00,01,00,00,00,04,00,00,00,8a,00,\
    00,00,00,00,00,00,7c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6a,00,32,\
    00,16,07,00,00,04,35,e4,8b,20,00,41,53,53,49,53,54,7e,31,2e,4c,4e,4b,00,00,\
    40,00,03,00,04,00,ef,be,04,35,e4,8b,09,35,0a,58,14,00,00,00,41,00,73,00,73,\
    00,69,00,73,00,74,00,61,00,6e,00,74,00,20,00,72,00,e9,00,73,00,65,00,61,00,\
    75,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,\
    00,1c,00,00,00,00,00,00,00,00,00,8c,00,00,00,01,00,00,00,7e,00,00,00,41,75,\
    67,4d,02,00,00,00,01,00,00,00,6c,00,32,00,f5,06,00,00,04,35,e4,8b,20,00,41,\
    53,53,4f,43,49,7e,31,2e,4c,4e,4b,00,00,42,00,03,00,04,00,ef,be,04,35,e4,8b,\
    09,35,0a,58,14,00,00,00,41,00,73,00,73,00,6f,00,63,00,69,00,61,00,74,00,69,\
    00,6f,00,6e,00,20,00,57,00,69,00,2d,00,46,00,69,00,2e,00,6c,00,6e,00,6b,00,\
    00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,\
    00,c0,00,00,00,02,00,00,00,b2,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,\
    a0,00,32,00,e7,06,00,00,04,35,e4,8b,20,00,44,53,49,4e,53,54,7e,31,2e,4c,4e,\
    4b,00,00,76,00,03,00,04,00,ef,be,04,35,e4,8b,09,35,0a,58,14,00,00,00,44,00,\
    e9,00,73,00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,61,00,74,00,69,00,6f,\
    00,6e,00,20,00,64,00,65,00,20,00,6c,00,27,00,61,00,73,00,73,00,69,00,73,00,\
    74,00,61,00,6e,00,74,00,20,00,72,00,e9,00,73,00,65,00,61,00,75,00,20,00,41,\
    00,6c,00,69,00,63,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,\
    0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,80,00,00,00,03,00,00,\
    00,72,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,60,00,32,00,87,06,00,00,\
    04,35,e4,8b,20,00,4d,4f,44,45,41,56,7e,31,2e,4c,4e,4b,00,00,36,00,03,00,04,\
    00,ef,be,04,35,e4,8b,09,35,0a,58,14,00,00,00,4d,00,6f,00,64,00,65,00,20,00,\
    41,00,76,00,61,00,6e,00,63,00,e9,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,\
    00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus]
    "Order"=hex:08,00,00,00,02,00,00,00,8c,01,00,00,01,00,00,00,03,00,00,00,6e,00,\
    00,00,00,00,00,00,60,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,4e,00,32,\
    00,63,07,00,00,3b,36,69,4f,20,00,41,69,64,65,2e,6c,6e,6b,00,00,28,00,03,00,\
    04,00,ef,be,3b,36,69,4f,58,36,4c,4f,14,00,00,00,41,00,69,00,64,00,65,00,2e,\
    00,6c,00,6e,00,6b,00,00,00,18,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,\
    00,00,00,00,00,00,00,00,8a,00,00,00,01,00,00,00,7c,00,00,00,41,75,67,4d,02,\
    00,00,00,01,00,00,00,6a,00,32,00,c1,06,00,00,3b,36,69,4f,20,00,41,56,41,53,\
    54,21,7e,31,2e,4c,4e,4b,00,00,40,00,03,00,04,00,ef,be,3b,36,69,4f,58,36,4d,\
    4f,14,00,00,00,61,00,76,00,61,00,73,00,74,00,21,00,20,00,41,00,6e,00,74,00,\
    69,00,76,00,69,00,72,00,75,00,73,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,\
    00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,88,00,00,00,\
    02,00,00,00,7a,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,68,00,32,00,57,\
    00,00,00,3b,36,69,4f,20,00,53,49,54,45,57,45,7e,31,2e,55,52,4c,00,00,3e,00,\
    03,00,04,00,ef,be,3b,36,69,4f,58,36,4d,4f,14,00,00,00,53,00,69,00,74,00,65,\
    00,20,00,57,00,65,00,62,00,20,00,61,00,76,00,61,00,73,00,74,00,21,00,2e,00,\
    75,00,72,00,6c,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,\
    00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Diablo II]
    "Order"=hex:08,00,00,00,02,00,00,00,ca,04,00,00,01,00,00,00,08,00,00,00,96,00,\
    00,00,00,00,00,00,88,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,76,00,32,\
    00,8e,05,00,00,09,35,4d,4a,20,00,44,53,49,4e,53,54,7e,31,2e,4c,4e,4b,00,00,\
    4c,00,03,00,04,00,ef,be,09,35,4d,4a,29,35,19,9f,14,00,00,00,44,00,e9,00,73,\
    00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,65,00,72,00,20,00,44,00,69,00,\
    61,00,62,00,6c,00,6f,00,20,00,49,00,49,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,\
    00,0e,00,00,00,0a,00,ef,be,01,00,00,00,1c,00,00,00,00,00,00,00,00,00,7c,00,\
    00,00,01,00,00,00,6e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,5c,00,32,\
    00,f3,05,00,00,09,35,4d,4a,20,00,44,49,41,42,4c,4f,7e,31,2e,4c,4e,4b,00,00,\
    32,00,03,00,04,00,ef,be,09,35,4d,4a,29,35,19,9f,14,00,00,00,44,00,69,00,61,\
    00,62,00,6c,00,6f,00,20,00,49,00,49,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,\
    0e,00,00,00,0a,00,ef,be,01,00,00,00,1c,00,00,00,00,00,00,00,00,00,a8,00,00,\
    00,05,00,00,00,9a,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,88,00,32,00,\
    f3,05,00,00,09,35,98,4b,20,00,44,49,41,42,4c,4f,7e,31,2e,4c,4e,4b,00,00,5e,\
    00,03,00,04,00,ef,be,09,35,98,4b,29,35,18,9f,14,00,00,00,44,00,69,00,61,00,\
    62,00,6c,00,6f,00,20,00,49,00,49,00,20,00,2d,00,20,00,4c,00,6f,00,72,00,64,\
    00,20,00,6f,00,66,00,20,00,44,00,65,00,73,00,74,00,72,00,75,00,63,00,74,00,\
    69,00,6f,00,6e,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,\
    be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,dc,00,00,00,06,00,00,00,ce,00,\
    00,00,41,75,67,4d,02,00,00,00,02,00,00,00,56,00,32,00,00,2e,00,00,09,35,98,\
    4b,20,00,6c,69,63,65,6e,73,65,2e,74,78,74,00,2e,00,03,00,04,00,ef,be,09,35,\
    98,4b,0c,35,e4,3e,14,00,00,00,6c,00,69,00,63,00,65,00,6e,00,73,00,65,00,2e,\
    00,74,00,78,00,74,00,00,00,1a,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1a,00,\
    00,00,64,00,32,00,55,39,00,00,09,35,4d,4a,20,00,4c,69,63,65,6e,73,65,2e,74,\
    78,74,00,2e,00,03,00,04,00,ef,be,09,35,4d,4a,09,35,38,4b,14,00,00,00,4c,00,\
    69,00,63,00,65,00,6e,00,73,00,65,00,2e,00,74,00,78,00,74,00,00,00,1a,00,0e,\
    00,00,00,00,00,ef,be,01,00,00,00,1a,00,0e,00,00,00,0a,00,ef,be,01,00,00,00,\
    1a,00,00,00,00,00,00,00,00,00,7a,00,00,00,02,00,00,00,6c,00,00,00,41,75,67,\
    4d,02,00,00,00,01,00,00,00,5a,00,32,00,ec,05,00,00,09,35,4d,4a,20,00,4c,69,\
    73,65,7a,6d,6f,69,2e,6c,6e,6b,00,00,30,00,03,00,04,00,ef,be,09,35,4d,4a,29,\
    35,19,9f,14,00,00,00,4c,00,69,00,73,00,65,00,7a,00,6d,00,6f,00,69,00,2e,00,\
    6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,01,00,00,00,1c,00,00,\
    00,00,00,00,00,00,00,a4,00,00,00,07,00,00,00,96,00,00,00,41,75,67,4d,02,00,\
    00,00,01,00,00,00,84,00,32,00,e3,05,00,00,09,35,98,4b,20,00,4c,4f,52,44,4f,\
    46,7e,31,2e,4c,4e,4b,00,00,5a,00,03,00,04,00,ef,be,09,35,98,4b,29,35,18,9f,\
    14,00,00,00,4c,00,6f,00,72,00,64,00,20,00,6f,00,66,00,20,00,44,00,65,00,73,\
    00,74,00,72,00,75,00,63,00,74,00,69,00,6f,00,6e,00,20,00,4c,00,69,00,73,00,\
    65,00,7a,00,20,00,4d,00,6f,00,69,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,\
    00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,8c,00,00,00,\
    03,00,00,00,7e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6c,00,32,00,47,\
    06,00,00,09,35,4d,4a,20,00,53,55,50,50,4f,52,7e,31,2e,4c,4e,4b,00,00,42,00,\
    03,00,04,00,ef,be,09,35,4d,4a,29,35,19,9f,14,00,00,00,53,00,75,00,70,00,70,\
    00,6f,00,72,00,74,00,20,00,54,00,65,00,63,00,68,00,6e,00,69,00,71,00,75,00,\
    65,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,01,00,00,\
    00,1c,00,00,00,00,00,00,00,00,00,7e,00,00,00,04,00,00,00,70,00,00,00,41,75,\
    67,4d,02,00,00,00,01,00,00,00,5e,00,32,00,ec,05,00,00,09,35,4d,4a,20,00,54,\
    45,53,54,56,49,7e,31,2e,4c,4e,4b,00,00,34,00,03,00,04,00,ef,be,09,35,4d,4a,\
    29,35,19,9f,14,00,00,00,54,00,65,00,73,00,74,00,20,00,56,00,69,00,64,00,e9,\
    00,6f,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,01,00,\
    00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\DivX]
    "Order"=hex:08,00,00,00,02,00,00,00,88,00,00,00,01,00,00,00,01,00,00,00,7c,00,\
    00,00,00,00,00,00,6e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,5c,00,31,\
    00,00,00,00,00,b4,36,ce,6b,10,00,44,49,56,58,57,45,7e,31,00,00,36,00,03,00,\
    04,00,ef,be,b4,36,ce,6b,b4,36,cf,6b,14,00,00,00,44,00,69,00,76,00,58,00,20,\
    00,57,00,65,00,62,00,20,00,50,00,6c,00,61,00,79,00,65,00,72,00,00,00,18,00,\
    0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\DivX\DivX Web Player]
    "Order"=hex:08,00,00,00,02,00,00,00,9a,01,00,00,01,00,00,00,03,00,00,00,76,00,\
    00,00,00,00,00,00,68,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,56,00,32,\
    00,ef,02,00,00,b4,36,cf,6b,20,00,4c,69,63,65,6e,73,65,2e,6c,6e,6b,00,2e,00,\
    03,00,04,00,ef,be,b4,36,ce,6b,b4,36,cf,6b,14,00,00,00,4c,00,69,00,63,00,65,\
    00,6e,00,73,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1a,00,0e,00,00,00,0a,00,\
    ef,be,00,00,00,00,1a,00,00,00,00,00,00,00,00,00,74,00,00,00,01,00,00,00,66,\
    00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,54,00,32,00,ea,02,00,00,b4,36,\
    ce,6b,20,00,52,65,61,64,4d,65,2e,6c,6e,6b,00,00,2c,00,03,00,04,00,ef,be,b4,\
    36,ce,6b,b4,36,ce,6b,14,00,00,00,52,00,65,00,61,00,64,00,4d,00,65,00,2e,00,\
    6c,00,6e,00,6b,00,00,00,1a,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1a,00,00,\
    00,00,00,00,00,00,00,a4,00,00,00,02,00,00,00,96,00,00,00,41,75,67,4d,02,00,\
    00,00,01,00,00,00,84,00,32,00,19,02,00,00,b4,36,ce,6b,20,00,55,4e,49,4e,53,\
    54,7e,31,2e,4c,4e,4b,00,00,5a,00,03,00,04,00,ef,be,b4,36,ce,6b,b4,36,ce,6b,\
    14,00,00,00,55,00,6e,00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,20,00,74,\
    00,68,00,65,00,20,00,44,00,69,00,76,00,58,00,20,00,57,00,65,00,62,00,20,00,\
    50,00,6c,00,61,00,79,00,65,00,72,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,\
    00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\DivX\DivX Web Player]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\GIMPshop]
    "Order"=hex:08,00,00,00,02,00,00,00,cc,02,00,00,01,00,00,00,05,00,00,00,9e,00,\
    00,00,00,00,00,00,90,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,7e,00,32,\
    00,d4,03,00,00,8b,36,37,94,20,00,45,4e,41,42,4c,45,7e,31,2e,4c,4e,4b,00,00,\
    54,00,03,00,04,00,ef,be,8b,36,37,94,8b,36,37,94,14,00,00,00,45,00,6e,00,61,\
    00,62,00,6c,00,65,00,20,00,50,00,68,00,6f,00,74,00,6f,00,73,00,68,00,6f,00,\
    70,00,20,00,53,00,68,00,6f,00,72,00,74,00,63,00,75,00,74,00,73,00,2e,00,6c,\
    00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,\
    00,00,00,00,00,00,7a,00,00,00,01,00,00,00,6c,00,00,00,41,75,67,4d,02,00,00,\
    00,01,00,00,00,5a,00,32,00,24,04,00,00,8b,36,37,94,20,00,47,49,4d,50,73,68,\
    6f,70,2e,6c,6e,6b,00,00,30,00,03,00,04,00,ef,be,8b,36,37,94,8b,36,37,94,14,\
    00,00,00,47,00,49,00,4d,00,50,00,73,00,68,00,6f,00,70,00,2e,00,6c,00,6e,00,\
    6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,\
    00,00,00,a2,00,00,00,02,00,00,00,94,00,00,00,41,75,67,4d,02,00,00,00,01,00,\
    00,00,82,00,32,00,1c,04,00,00,8b,36,37,94,20,00,47,49,4d,50,53,48,7e,32,2e,\
    4c,4e,4b,00,00,58,00,03,00,04,00,ef,be,8b,36,37,94,8b,36,37,94,14,00,00,00,\
    47,00,49,00,4d,00,50,00,73,00,68,00,6f,00,70,00,20,00,66,00,6f,00,72,00,20,\
    00,57,00,69,00,6e,00,64,00,6f,00,77,00,73,00,20,00,57,00,65,00,62,00,73,00,\
    69,00,74,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,\
    be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,8a,00,00,00,03,00,00,00,7c,00,\
    00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6a,00,32,00,e0,03,00,00,8b,36,37,\
    94,20,00,47,49,4d,50,53,48,7e,31,2e,4c,4e,4b,00,00,40,00,03,00,04,00,ef,be,\
    8b,36,37,94,8b,36,37,94,14,00,00,00,47,00,49,00,4d,00,50,00,73,00,68,00,6f,\
    00,70,00,20,00,57,00,65,00,62,00,73,00,69,00,74,00,65,00,2e,00,6c,00,6e,00,\
    6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,\
    00,00,00,7c,00,00,00,04,00,00,00,6e,00,00,00,41,75,67,4d,02,00,00,00,01,00,\
    00,00,5c,00,32,00,17,04,00,00,8b,36,37,94,20,00,55,4e,49,4e,53,54,7e,31,2e,\
    4c,4e,4b,00,00,32,00,03,00,04,00,ef,be,8b,36,37,94,8b,36,37,94,14,00,00,00,\
    55,00,6e,00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,2e,00,6c,00,6e,00,6b,\
    00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,\
    00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\PC-320]
    "Order"=hex:08,00,00,00,02,00,00,00,12,01,00,00,01,00,00,00,02,00,00,00,7c,00,\
    00,00,00,00,00,00,6e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,5c,00,32,\
    00,50,05,00,00,05,35,1b,9c,20,00,41,4d,43,41,50,45,7e,31,2e,4c,4e,4b,00,00,\
    32,00,03,00,04,00,ef,be,05,35,1b,9c,05,35,1b,9c,14,00,00,00,61,00,6d,00,63,\
    00,61,00,70,00,2e,00,65,00,78,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,\
    0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,8a,00,00,\
    00,01,00,00,00,7c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6a,00,32,00,\
    94,05,00,00,05,35,1b,9c,20,00,55,4e,49,4e,53,54,7e,31,2e,4c,4e,4b,00,00,40,\
    00,03,00,04,00,ef,be,05,35,1b,9c,05,35,1b,9c,14,00,00,00,55,00,6e,00,69,00,\
    6e,00,73,00,74,00,61,00,6c,00,6c,00,20,00,50,00,43,00,2d,00,33,00,32,00,30,\
    00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,\
    1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Stardock]
    "Order"=hex:08,00,00,00,02,00,00,00,86,00,00,00,01,00,00,00,01,00,00,00,7a,00,\
    00,00,00,00,00,00,6c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,5a,00,31,\
    00,00,00,00,00,4e,35,84,52,10,00,4f,42,4a,45,43,54,7e,31,00,00,34,00,03,00,\
    04,00,ef,be,4e,35,84,52,6b,35,f7,98,14,00,00,00,4f,00,62,00,6a,00,65,00,63,\
    00,74,00,20,00,44,00,65,00,73,00,6b,00,74,00,6f,00,70,00,00,00,18,00,0e,00,\
    00,00,0a,00,ef,be,00,00,00,00,18,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Stardock\Object Desktop]
    "Order"=hex:08,00,00,00,02,00,00,00,8e,00,00,00,01,00,00,00,01,00,00,00,82,00,\
    00,00,00,00,00,00,74,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,62,00,32,\
    00,3a,03,00,00,4e,35,84,52,20,00,57,49,4e,44,4f,57,7e,31,2e,4c,4e,4b,00,00,\
    38,00,03,00,04,00,ef,be,4e,35,84,52,6a,35,28,98,14,00,00,00,57,00,69,00,6e,\
    00,64,00,6f,00,77,00,42,00,6c,00,69,00,6e,00,64,00,73,00,2e,00,6c,00,6e,00,\
    6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,\
    00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Stardock\Object Desktop]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Super Mario Pac]
    "Order"=hex:08,00,00,00,02,00,00,00,cc,01,00,00,01,00,00,00,03,00,00,00,88,00,\
    00,00,00,00,00,00,7a,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,68,00,32,\
    00,50,02,00,00,5b,35,a9,83,20,00,53,55,50,45,52,4d,7e,31,2e,4c,4e,4b,00,00,\
    3e,00,03,00,04,00,ef,be,5b,35,a9,83,5b,35,a9,83,14,00,00,00,53,00,75,00,70,\
    00,65,00,72,00,20,00,4d,00,61,00,72,00,69,00,6f,00,20,00,50,00,61,00,63,00,\
    2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,\
    00,00,00,00,00,00,00,00,00,9c,00,00,00,01,00,00,00,8e,00,00,00,41,75,67,4d,\
    02,00,00,00,01,00,00,00,7c,00,32,00,1f,02,00,00,5b,35,a9,83,20,00,55,4e,49,\
    4e,53,54,7e,31,2e,4c,4e,4b,00,00,52,00,03,00,04,00,ef,be,5b,35,a9,83,5b,35,\
    a9,83,14,00,00,00,55,00,6e,00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,20,\
    00,53,00,75,00,70,00,65,00,72,00,20,00,4d,00,61,00,72,00,69,00,6f,00,20,00,\
    50,00,61,00,63,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,\
    be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,9c,00,00,00,02,00,00,00,8e,00,\
    00,00,41,75,67,4d,02,00,00,00,01,00,00,00,7c,00,32,00,7d,01,00,00,5b,35,a9,\
    83,20,00,56,49,53,49,54,57,7e,31,2e,4c,4e,4b,00,00,52,00,03,00,04,00,ef,be,\
    5b,35,a9,83,5b,35,a9,83,14,00,00,00,56,00,69,00,73,00,69,00,74,00,20,00,77,\
    00,77,00,77,00,2e,00,68,00,65,00,72,00,6d,00,69,00,74,00,67,00,61,00,6d,00,\
    65,00,73,00,2e,00,63,00,6f,00,6d,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,\
    00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Zelda Mystery of Solarus]
    "Order"=hex:08,00,00,00,02,00,00,00,0e,03,00,00,01,00,00,00,05,00,00,00,b4,00,\
    00,00,00,00,00,00,a6,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,94,00,32,\
    00,05,02,00,00,53,35,fc,95,20,00,44,53,49,4e,53,54,7e,31,2e,4c,4e,4b,00,00,\
    6a,00,03,00,04,00,ef,be,53,35,fc,95,6b,35,c2,99,14,00,00,00,44,00,e9,00,73,\
    00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,65,00,72,00,20,00,5a,00,65,00,\
    6c,00,64,00,61,00,20,00,4d,00,79,00,73,00,74,00,65,00,72,00,79,00,20,00,6f,\
    00,66,00,20,00,53,00,6f,00,6c,00,61,00,72,00,75,00,73,00,2e,00,6c,00,6e,00,\
    6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,\
    00,00,00,7c,00,00,00,01,00,00,00,6e,00,00,00,41,75,67,4d,02,00,00,00,01,00,\
    00,00,5c,00,32,00,05,02,00,00,53,35,fc,95,20,00,4c,49,53,45,5a,2d,7e,31,2e,\
    4c,4e,4b,00,00,32,00,03,00,04,00,ef,be,53,35,fc,95,6b,35,c2,99,14,00,00,00,\
    4c,00,69,00,73,00,65,00,7a,00,2d,00,4d,00,6f,00,69,00,2e,00,6c,00,6e,00,6b,\
    00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,\
    00,00,84,00,00,00,02,00,00,00,76,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,\
    00,64,00,32,00,05,02,00,00,53,35,fc,95,20,00,4d,4f,44,45,44,27,7e,31,2e,4c,\
    4e,4b,00,00,3a,00,03,00,04,00,ef,be,53,35,fc,95,6b,35,c2,99,14,00,00,00,4d,\
    00,6f,00,64,00,65,00,20,00,64,00,27,00,65,00,6d,00,70,00,6c,00,6f,00,69,00,\
    2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,\
    00,00,00,00,00,00,00,00,00,b4,00,00,00,03,00,00,00,a6,00,00,00,41,75,67,4d,\
    02,00,00,00,01,00,00,00,94,00,32,00,fe,01,00,00,53,35,fc,95,20,00,53,49,54,\
    45,4f,46,7e,31,2e,4c,4e,4b,00,00,6a,00,03,00,04,00,ef,be,53,35,fc,95,6b,35,\
    c2,99,14,00,00,00,53,00,69,00,74,00,65,00,20,00,6f,00,66,00,66,00,69,00,63,\
    00,69,00,65,00,6c,00,20,00,2d,00,20,00,77,00,77,00,77,00,2e,00,7a,00,65,00,\
    6c,00,64,00,61,00,2d,00,73,00,6f,00,6c,00,61,00,72,00,75,00,73,00,2e,00,63,\
    00,6f,00,6d,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,\
    00,00,00,00,1c,00,00,00,00,00,00,00,00,00,9a,00,00,00,04,00,00,00,8c,00,00,\
    00,41,75,67,4d,02,00,00,00,01,00,00,00,7a,00,32,00,e1,01,00,00,53,35,fc,95,\
    20,00,5a,45,4c,44,41,4d,7e,31,2e,4c,4e,4b,00,00,50,00,03,00,04,00,ef,be,53,\
    35,fc,95,6b,35,c2,99,14,00,00,00,5a,00,65,00,6c,00,64,00,61,00,20,00,4d,00,\
    79,00,73,00,74,00,65,00,72,00,79,00,20,00,6f,00,66,00,20,00,53,00,6f,00,6c,\
    00,61,00,72,00,75,00,73,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,\
    0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\windows\\system32\\qpqhmdxdxw.exe"="qpqhmdxdxw"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Local Settings\\Temporary Internet Files\\Content.IE5\\XSJQCGA3\\EnjoySetup[1].exe"="EnjoySetup[1]"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\windows\\system32\\zbzmeymq.exe"="zbzmeymq"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\DOCUME~1\\COMPAQ~1\\LOCALS~1\\Temp\\Setup_af16.exe"="Messenger Plus! Live Setup"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Bureau\\wrar370fr.exe"="wrar370fr"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Bureau\\Project_Flood\\Project Flood V 2.0 FOR Darkgoovyx.exe"="Project Flood V 2.0 FOR Darkgoovyx"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Bureau\\save\\IPSWin.exe"="IPSWin"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\no$gba-w\\SLOT\\NO$GBA.EXE"="Nocash GBA Emulator"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\dualis.exe"="dualis"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\ideas.exe"="iDeaS - Nintendo Dual Screen Emulator"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\NO$GBA.EXE"="Nocash GBA Emulator"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\DeSmuME 0.6.0\\desmume.exe"="NDS(tm) emulator"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\ideas 1.0.1.4\\ideas.exe"="iDeaS - Nintendo Dual Screen Emulator"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\NeeDS 0.0.1\\NeeDS.exe"="NDS Emulator for Win32"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\jeu\\1\\No$GBA 2.4a\\NO$GBA.EXE"="Nocash GBA Emulator"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Bureau\\WWW.POKEBASE.NET_Patch_DP\\IPSWin.exe"="IPSWin"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Bureau\\PokemonTrash_SavEdit.exe"="PokemonTrash_SavEdit"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
    "C:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\Stéph\\webcam_photos-2007-06.scr"="webcam_photos-2007-06"

    ___________________________________________________________________________
    ___________________________________________________________________________

    DEUXIEME PASSAGE

    Windows Registry Editor Version 5.00

    [HKEY_CLASSES_ROOT\ASWrapper.ASWrapComponent]
    @="ASWrapComponent Class"

    [HKEY_CLASSES_ROOT\ASWrapper.ASWrapComponent\CLSID]
    @="{81F0237C-E2FD-49E6-8E99-1434D6E13375}"

    [HKEY_CLASSES_ROOT\ASWrapper.ASWrapComponent\CurVer]
    @="ASWrapper.ASWrapComponent.1"

    [HKEY_CLASSES_ROOT\ASWrapper.ASWrapComponent.1]
    @="ASWrapComponent Class"

    [HKEY_CLASSES_ROOT\ASWrapper.ASWrapComponent.1\CLSID]
    @="{81F0237C-E2FD-49E6-8E99-1434D6E13375}"

    [HKEY_CLASSES_ROOT\Connection Manager Profile]
    @="Connection Manager Profile"

    [HKEY_CLASSES_ROOT\Connection Manager Profile\shell]

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin]
    @="ActiveXPlugin Object"

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin\CLSID]
    @="{06DD38D3-D187-11CF-A80D-00C04FD74AD8}"

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin\CurVer]
    @="Microsoft.ActiveXPlugin.1"

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin\NotInsertable]

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin.1]
    @="ActiveXPlugin Object"

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin.1\CLSID]
    @="{06DD38D3-D187-11CF-A80D-00C04FD74AD8}"

    [HKEY_CLASSES_ROOT\Microsoft.ActiveXPlugin.1\NotInsertable]

    [HKEY_CLASSES_ROOT\Applications\WinRAR.exe]

    [HKEY_CLASSES_ROOT\Applications\WinRAR.exe\shell]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Spyware Doctor]
    "SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,e0,6c,02,00,00,00,00,7c,f6,dc,\
    5a,6f,68,c7,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
    61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,53,00,70,00,79,00,77,\
    00,61,00,72,00,65,00,20,00,44,00,6f,00,63,00,74,00,6f,00,72,00,5c,00,73,00,\
    77,00,64,00,6f,00,63,00,74,00,6f,00,72,00,2e,00,65,00,78,00,65,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00
    "Changed"=dword:00000000

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\WebMediaPlayer]
    "SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,f0,13,00,00,00,00,00,ee,8d,20,\
    d0,3b,5c,c7,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
    61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,57,00,65,00,62,00,4d,\
    00,65,00,64,00,69,00,61,00,50,00,6c,00,61,00,79,00,65,00,72,00,5c,00,57,00,\
    65,00,62,00,4d,00,65,00,64,00,69,00,61,00,50,00,6c,00,61,00,79,00,65,00,72,\
    00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
    00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,0
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Heu le rapport CCleaner, c'est pas utile;-)
    0
  7. Fire77520 Messages postés 18 Statut Membre
     
    dsl
    par contre çà met du temps
    quand spybot est fini je fais un screen ou pas ?
    0
  8. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Non plus.

    Seuls les rapports d'AVG et de Bitdefender m'interresses.
    0
  9. Fire77520 Messages postés 18 Statut Membre
     
    ---------------------------------------------------------
    AVG Anti-Spyware - Rapport d'analyse
    ---------------------------------------------------------

    + Créé à: 13:02:01 17/06/2007

    + Résultat de l'analyse:

    C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP166\A0218403.scr -> Backdoor.IRCBot.aaq : Nettoyé et sauvegardé (mise en quarantaine).
    C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP166\A0221481.dll -> Backdoor.IRCBot.acd : Nettoyé et sauvegardé (mise en quarantaine).
    :mozilla.54:C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla\Firefox\Profiles\2mjycywr.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.55:C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla\Firefox\Profiles\2mjycywr.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.56:C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla\Firefox\Profiles\2mjycywr.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
    :mozilla.34:C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla\Firefox\Profiles\2mjycywr.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
    :mozilla.35:C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla\Firefox\Profiles\2mjycywr.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
    :mozilla.36:C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla\Firefox\Profiles\2mjycywr.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.

    Fin du rapport

    maintenant je fais le drenier truc

    dsl mais c'était super long !!
    0
  10. Fire77520
     
    BitDefender Online Scanner

    Scan report generated at: Sun, Jun 17, 2007 - 17:08:11

    Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;

    Statistics

    Time
    01:14:08

    Files
    318850

    Folders
    6237

    Boot Sectors
    3

    Archives
    14962

    Packed Files
    26349

    Results

    Identified Viruses
    1

    Infected Files
    87

    Suspect Files
    0

    Warnings
    0

    Disinfected
    0

    Deleted Files
    174

    Engines Info

    Virus Definitions
    514012

    Engine build
    AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)

    Scan plugins
    14

    Archive plugins
    38

    Unpack plugins
    6

    E-mail plugins
    6

    System plugins
    1

    Scan Settings

    First Action
    Disinfect

    Second Action
    Delete

    Heuristics
    Yes

    Enable Warnings
    Yes

    Scanned Extensions
    *;

    Exclude Extensions

    Scan Emails
    Yes

    Scan Archives
    Yes

    Scan Packed
    Yes

    Scan Files
    Yes

    Scan Boot
    Yes

    Scanned File
    Status

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05541DF6.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05541DF6.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05541DF6.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05A71BB0.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05A71BB0.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05A71BB0.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\067307BF.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\067307BF.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\067307BF.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\087255E5.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\087255E5.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\087255E5.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10D161A7.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10D161A7.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10D161A7.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\119D4DB6.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\119D4DB6.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\119D4DB6.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C611DA6.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C611DA6.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C611DA6.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DFA75C4.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DFA75C4.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DFA75C4.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28584FAC.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28584FAC.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28584FAC.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\298A31C2.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\298A31C2.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\298A31C2.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C9033E4.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C9033E4.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C9033E4.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E390611.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E390611.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E390611.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E3C300D.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E3C300D.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E3C300D.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E3F5A09.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E3F5A09.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E3F5A09.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E567FF0.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E567FF0.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E567FF0.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E7723CC.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E7723CC.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E7723CC.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8B1FB7.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8B1FB7.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8B1FB7.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8E49B3.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8E49B3.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2E8E49B3.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EB54188.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EB54188.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EB54188.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EB86B84.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EB86B84.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EB86B84.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBC1581.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBC1581.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBC1581.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBF3F7D.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBF3F7D.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EBF3F7D.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EC2697A.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EC2697A.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EC2697A.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EC51376.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EC51376.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EC51376.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EF60940.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EF60940.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EF60940.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EFA333D.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EFA333D.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EFA333D.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F033132.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F033132.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F033132.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F075B2E.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F075B2E.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F075B2E.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0A052B.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0A052B.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0A052B.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F1A5719.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F1A5719.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F1A5719.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F317D00.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F317D00.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F317D00.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F3B7AF5.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F3B7AF5.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F3B7AF5.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F3E24F1.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F3E24F1.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F3E24F1.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F4F76DF.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F4F76DF.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F4F76DF.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5220DC.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5220DC.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5220DC.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F554AD8.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F554AD8.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F554AD8.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5874D4.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5874D4.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5874D4.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5C1ED1.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5C1ED1.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5C1ED1.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5F48CD.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5F48CD.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F5F48CD.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6272CA.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6272CA.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6272CA.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F651CC6.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F651CC6.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F651CC6.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6946C2.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6946C2.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6946C2.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6C70BF.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6C70BF.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6C70BF.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6F1ABB.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6F1ABB.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F6F1ABB.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F8D149B.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F8D149B.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F8D149B.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F903E97.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F903E97.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F903E97.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F936894.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F936894.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F936894.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F961290.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F961290.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F961290.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FA7647E.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FA7647E.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FA7647E.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FAA0E7B.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FAA0E7B.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FAA0E7B.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FAD3877.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FAD3877.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FAD3877.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB06273.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB06273.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB06273.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB40C70.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB40C70.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB40C70.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB7366C.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB7366C.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FB7366C.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC13461.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC13461.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC13461.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC45E5E.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC45E5E.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC45E5E.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC7085A.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC7085A.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FC7085A.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCB3257.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCB3257.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCB3257.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCE5C53.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCE5C53.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FCE5C53.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD1064F.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD1064F.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD1064F.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD4304C.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD4304C.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FD4304C.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FDB0445.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FDB0445.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FDB0445.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FDE2E41.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FDE2E41.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FDE2E41.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE1583D.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE1583D.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE1583D.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE5023A.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE5023A.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE5023A.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE82C36.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE82C36.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FE82C36.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FEB5633.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FEB5633.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FEB5633.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33E80BAA.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33E80BAA.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33E80BAA.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\377F31EE.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\377F31EE.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\377F31EE.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EAE35FC.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EAE35FC.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3EAE35FC.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3ED203D4.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3ED203D4.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3ED203D4.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1A1F85.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1A1F85.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1A1F85.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F7947A9.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F7947A9.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F7947A9.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FDF3DB1.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FDF3DB1.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FDF3DB1.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4071580C.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4071580C.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4071580C.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42AA77E5.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42AA77E5.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42AA77E5.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B0903A8.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B0903A8.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B0903A8.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B6F79AF.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B6F79AF.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B6F79AF.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C3B65BE.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C3B65BE.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C3B65BE.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D6E47D5.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D6E47D5.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D6E47D5.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\583217C4.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\583217C4.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\583217C4.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59CA6FE3.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59CA6FE3.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59CA6FE3.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\629071AC.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\629071AC.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\629071AC.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A924AD8.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A924AD8.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A924AD8.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6AC66A9F.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6AC66A9F.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6AC66A9F.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F520FC2.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F520FC2.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6F520FC2.exe=>(Quarantine-2)
    Deleted

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AE34BC0.exe=>(Quarantine-2)
    Infected with: Generic.Brontok.17E72DE4

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AE34BC0.exe=>(Quarantine-2)
    Disinfection failed

    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AE34BC0.exe=>(Quarantine-2)
    Deleted

    voilà j'ai tout mis
    par contre j'ai toujours mon trojan mais je n'ai plus de pub
    il faut absolument que je vire cette chose
    çà m'énerve et çà me pose des problémes
    0
  11. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Où se trouve ce trojan?
    0
  12. Fire77520 Messages postés 18 Statut Membre
     
    Le trojan est parti car je me suis renseigné un peu partout ( je viens juste de le virer )

    par contre

    les pubs sont revenus
    mais elles sont beaucoup moins nombreuses
    0
  13. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Fais un clic droit sur ce lien :

    http://perso.orange.fr/il.mafioso/Navifix/Navilog1.zip

    Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
    Fais un clic droit sur navilog1.zip et choisis "tout extraire"
    Ensuite double clique sur navilog1.exe pour lancer l'installation.
    Une fois l'installation terminée, le fix s'exécutera automatiquement.
    (Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

    Laisse-toi guider. Au menu principal, choisis 1 et valides.
    (ne fais pas le choix 2,3 ou 4 sans mon avis/accord)

    Patiente jusqu'au message :
    *** Analyse Termine le ..... ***
    Appuie sur une touche comme demandé, le blocnote va s'ouvrir.
    Copie-colle l'intégralité dans une réponse. Referme le blocnote.
    Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
    0
  14. Fire77520 Messages postés 18 Statut Membre
     
    slt blondin777

    je te préviens que j'ai réussi a tout virer
    au début j'avais omis de faire les MAJ

    tout est parti

    je te remercie pour l'aide que tu m'as apporté
    bonne continuation
    0
  15. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Ca te dérange si j'insistes pour que tu fasses ce qui est ecrit post<12>?
    0
  16. Fire77520
     
    Search Navipromo version 2.0.3 commencé le 19/06/2007 à 10:17:01,93

    !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
    !!! Poster ce rapport sur le forum pour le faire analyser !!!
    !!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

    Fix lancé depuis C:\Program Files\navilog1
    Mise a jour le 08.06.2007 a 17h00 by IL-MAFIOSO

    Executé en mode normal

    *** Recherche Programmes installes ***

    *** Recherche dossiers dans C:\WINDOWS ***

    *** Recherche dossiers dans C:\Program Files ***

    *** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***

    *** Recherche dossiers dans C:\Documents and Settings\Compaq_Propri‚taire\Application Data ***

    *** Recherche avec BlackLight Engine/F-secure ***
    BlackLight Engine est un produit de F-secure, pour + d'infos :
    https://www.f-secure.com/en

    Fichier(s) caché(s) dans C:\WINDOWS\system32 :

    c:\WINDOWS\system32\xurnfgnql.dat
    C:\windows\system32\xurnfgnql.exe
    c:\WINDOWS\system32\xurnfgnql_nav.dat
    c:\WINDOWS\system32\xurnfgnql_navps.dat

    Processus caché(s) dans C:\WINDOWS\system32 :

    C:\windows\system32\xurnfgnql.exe

    *** Recherche fichiers ***

    C:\WINDOWS\pack.epk trouvé !
    C:\WINDOWS\system32\nvs2.inf trouvé !

    *** Recherche cles registre ***

    Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]

    Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]

    Recherche Clé Magic Control

    HKEY_CURRENT_USER\Software\Lanconfig trouvé !
    HKEY_USERS\S-1-5-21-3174022488-2248507659-2707320188-1008\Software\Lanconfig trouvé !

    *** Module de Recherche complémentaire ***
    (Recherche fichiers spécifiques)

    1)Recherche fichiers connus:

    2)Recherche Heuristique :
    *
    C:\WINDOWS\system32\xurnfgnql.dat trouvé !
    **
    C:\WINDOWS\system32\xurnfgnql.dat trouvé !
    ***
    ****
    *****
    ******
    *******
    ********

    *** Analyse Terminé le 19/06/2007 à 10:27:58,84 ***
    0
  17. blondin777 Messages postés 6162 Statut Contributeur 945
     
    Ohh que j'ai bien fait d'insister...

    Double cliques sur le raccourci Navilog1 présent sur le bureau et laisse-toi guider.
    Au menu principal, choisis 2 et valides.

    Le fix va t'informer qu'il va alors redémarrer ton PC
    Fermes toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
    Appuies sur une touche comme demandé.
    (si ton Pc ne redémarre pas automatiquement, fais le toi même)
    Au redémarrage de ton PC, choisis ta session habituelle.

    Patiente jusqu'au message :
    *** Nettoyage Termine le ..... ***
    Le bloc-notes va s'ouvrir.
    Sauvegarde le rapport de manière à le retrouver
    Referme le bloc-notes. Ton bureau va réapparaitre

    PS:Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
    Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "exécuter"
    Tape explorer et valide. Celà te fera apparaitre ton bureau.

    Postes le rapport içi.

    Télécharge clean.zip
    http://www.malekal.com/download/clean.zip
    Décompresse-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.
    Ouvre le dossier Clean qui se trouve sur ton bureau.
    Double-clic sur clean.cmd.
    Une fenêtre noire va apparaître, suis les consignes.
    Poste le rapport qui se trouve ici C:\rapport_clean.txt

    0
  18. Fire77520 Messages postés 18 Statut Membre
     
    il y a encore plein de problémes ?

    dsl pour le double post
    0
  19. Fire77520 Messages postés 18 Statut Membre
     
    Clean Navipromo version 2.0.3 commencé le 19/06/2007 à 10:45:20,29

    Fix lancé depuis C:\Program Files\navilog1
    Mise a jour le 08.06.2007 a 17h00 by IL-MAFIOSO

    Mode suppression automatique avec prise en charge résultats Blacklight

    *** Creation backups fichiers trouvés par Blacklight ***

    Copie vers "C:\Program Files\navilog1\Backupnavi"

    *** Suppression des fichiers trouvés avec Blacklight ***

    c:\WINDOWS\system32\xurnfgnql.dat supprimé !
    C:\windows\system32\xurnfgnql.exe supprimé !
    c:\WINDOWS\system32\xurnfgnql_nav.dat supprimé !
    c:\WINDOWS\system32\xurnfgnql_navps.dat supprimé !

    ** 2ème passage **

    C:\WINDOWS\system32\xurnfgnql.exe absent !
    C:\WINDOWS\system32\xurnfgnql.dat absent !
    C:\WINDOWS\system32\xurnfgnql_nav.dat absent !
    C:\WINDOWS\system32\xurnfgnql_navps.dat absent !
    C:\WINDOWS\system32\xurnfgnql_navup.dat absent !
    C:\WINDOWS\system32\xurnfgnql_navtmp.dat absent !
    C:\WINDOWS\system32\xurnfgnql_m2s.xml absent !

    C:\WINDOWS\prefetch\xurnfgnql*.pf trouvé !
    Copie C:\WINDOWS\prefetch\xurnfgnql*.pf réalise avec succes !
    C:\WINDOWS\prefetch\xurnfgnql*.pf supprimé !

    *** Suppression dossiers dans C:\WINDOWS ***

    *** Suppression dossiers dans C:\Program Files ***

    *** Suppression dossiers dans C:\Documents and Settings\All Users\Application Data ***

    *** Suppression dossiers dans C:\Documents and Settings\Compaq_Propri‚taire\Application Data ***

    *** Suppression fichiers ***

    C:\WINDOWS\pack.epk supprimé !
    C:\WINDOWS\system32\nvs2.inf supprimé !

    *** Suppression fichiers temporaires ***

    Nettoyage contenu C:\WINDOWS\Temp effectué !
    Nettoyage contenu C:\Documents and Settings\Compaq_Propri‚taire\Local Settings\Temp effectué !

    *** Sauvegarde du registre vers dossier Backupnavi***

    sauvegarde du registre réalise avec succes !

    *** Nettoyage registre ***

    Nettoyage registre Ok

    *** Traitement Recherche complémentaire ***
    (Recherche fichiers spécifiques)

    1)Recherche fichiers connus:

    2)Recherche et Suppression Heuristique :

    *
    **
    ***
    ****
    *****
    ******
    *******
    ********

    3)Contrôle présence clés Rootkit dans le registre :

    Aucune autre clés présente dans le registre !

    *** Nettoyage termine le 19/06/2007 à 10:49:58,03 ***

    maintenant je m'occupe de cleanzip
    0
  20. Fire77520 Messages postés 18 Statut Membre
     
    19/06/2007 a 10:55:03,60

    *** Recherche des fichiers dans C:

    *** Recherche des fichiers dans C:\WINDOWS\

    *** Recherche des fichiers dans C:\WINDOWS\system32

    *** Recherche des fichiers dans C:\Program Files
    *** Fin du rapport !

    voilà
    0
  • 1
  • 2