Registre infecté !
ebird
Messages postés
265
Statut
Membre
-
ebird Messages postés 265 Statut Membre -
ebird Messages postés 265 Statut Membre -
Bonsoir,
Hier après midi, il m'est arrivé quelque chose d'assez bizarre, j'avais téléchargé "PocketDivixEncoder" pour encoder un fichier que je voulais envoyer chez Dailymotion.
Voyant que je n'y arrivais pas (il décrochait chaque fois à 90 ou 95%), j'ai cru que c'était parce que j'étais sur firefox, j'ai alors voulu me connecter sur ie6 (désolé) que je n'utilise plus depuis un moment (normal puisque, et je l'avais oublié, depuis que j'ai Firefox3 et que je m'en trouve très bien, j'avais supprimé IE6 de mon pc, mais je ne m'en souvenais plus, seul un raccourci était resté sur le bureau), dès ce moment, plus moyen de me connecter, j'ai voulu faire une restauration, pas moyen, j'ai alors passé "Malwarebytes" en mode sans échec et là surprise, il m'a découvert 7 clés du registre infectées, je les ai supprimés, je me suis reconnecté, j'ai repassé un scan de "Malwarebytes" et il n'a plus rien trouvé.
J'ai continué plusieurs heures sans problèmes, mais tout à coup, j'ai voulu me reconnecter surIE6 (toujours en oubliant qu'il n'était plus sur mon pc) et à partir du moment où j'ai eu re cliqué sur le raccourci IE6, rebelotte, plus moyen d'avancer, j'ai refais ce que j'avais fait précédemment, et il m'a de nouveau retrouvé les 7 mêmes clés du registre infectées, je les ai de nouveaux supprimés avec "Malewarebytes" et depuis, plus de problèmes,.
Qui pourrait m'expliquer cela, qu'un raccourci d'un navigateur n'existant plus soit infecté, par qui, comment, je suis vraiment perplexe et suis-je bien en ordre maintenant ?
Je vous envoie les rapport des deux scan infectés, dois-je encore faire quelque chose ?
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1414
Windows 5.1.2600 Service Pack 2
25/11/2008 21:18:30
mbam-log-2008-11-25 (21-18-30).txt
Type de recherche: Examen rapide
Eléments examinés: 44480
Temps écoulé: 1 minute(s), 55 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2b2a8719f0d73b540683675697e40b6f8c7c9a8c (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\394ad7ced9b99836082bdf9b59df73c2633b248e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\93eb9fd3ea40f221e990e3e71343e6d47d3fa0c0 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\c48d3b9bca9b3a5a04bc26f729ee0c6e389dde2e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ecdfb50751ae333aaa4ea5fd47308faa685e8ffe (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2c5eceb3d45147eb99fa51120e7c7adebe213de6 (Adware.123Mania) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\a6a50b0ebf885a7dd4fb6927f1388592138fffe6 (Adware.123Mania) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1423
Windows 5.1.2600 Service Pack 2
26/11/2008 0:15:52
mbam-log-2008-11-26 (00-15-52).txt
Type de recherche: Examen rapide
Eléments examinés: 44622
Temps écoulé: 1 minute(s), 57 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2b2a8719f0d73b540683675697e40b6f8c7c9a8c (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\394ad7ced9b99836082bdf9b59df73c2633b248e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\93eb9fd3ea40f221e990e3e71343e6d47d3fa0c0 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\c48d3b9bca9b3a5a04bc26f729ee0c6e389dde2e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ecdfb50751ae333aaa4ea5fd47308faa685e8ffe (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2c5eceb3d45147eb99fa51120e7c7adebe213de6 (Adware.123Mania) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\a6a50b0ebf885a7dd4fb6927f1388592138fffe6 (Adware.123Mania) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
Hier après midi, il m'est arrivé quelque chose d'assez bizarre, j'avais téléchargé "PocketDivixEncoder" pour encoder un fichier que je voulais envoyer chez Dailymotion.
Voyant que je n'y arrivais pas (il décrochait chaque fois à 90 ou 95%), j'ai cru que c'était parce que j'étais sur firefox, j'ai alors voulu me connecter sur ie6 (désolé) que je n'utilise plus depuis un moment (normal puisque, et je l'avais oublié, depuis que j'ai Firefox3 et que je m'en trouve très bien, j'avais supprimé IE6 de mon pc, mais je ne m'en souvenais plus, seul un raccourci était resté sur le bureau), dès ce moment, plus moyen de me connecter, j'ai voulu faire une restauration, pas moyen, j'ai alors passé "Malwarebytes" en mode sans échec et là surprise, il m'a découvert 7 clés du registre infectées, je les ai supprimés, je me suis reconnecté, j'ai repassé un scan de "Malwarebytes" et il n'a plus rien trouvé.
J'ai continué plusieurs heures sans problèmes, mais tout à coup, j'ai voulu me reconnecter surIE6 (toujours en oubliant qu'il n'était plus sur mon pc) et à partir du moment où j'ai eu re cliqué sur le raccourci IE6, rebelotte, plus moyen d'avancer, j'ai refais ce que j'avais fait précédemment, et il m'a de nouveau retrouvé les 7 mêmes clés du registre infectées, je les ai de nouveaux supprimés avec "Malewarebytes" et depuis, plus de problèmes,.
Qui pourrait m'expliquer cela, qu'un raccourci d'un navigateur n'existant plus soit infecté, par qui, comment, je suis vraiment perplexe et suis-je bien en ordre maintenant ?
Je vous envoie les rapport des deux scan infectés, dois-je encore faire quelque chose ?
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1414
Windows 5.1.2600 Service Pack 2
25/11/2008 21:18:30
mbam-log-2008-11-25 (21-18-30).txt
Type de recherche: Examen rapide
Eléments examinés: 44480
Temps écoulé: 1 minute(s), 55 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2b2a8719f0d73b540683675697e40b6f8c7c9a8c (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\394ad7ced9b99836082bdf9b59df73c2633b248e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\93eb9fd3ea40f221e990e3e71343e6d47d3fa0c0 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\c48d3b9bca9b3a5a04bc26f729ee0c6e389dde2e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ecdfb50751ae333aaa4ea5fd47308faa685e8ffe (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2c5eceb3d45147eb99fa51120e7c7adebe213de6 (Adware.123Mania) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\a6a50b0ebf885a7dd4fb6927f1388592138fffe6 (Adware.123Mania) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1423
Windows 5.1.2600 Service Pack 2
26/11/2008 0:15:52
mbam-log-2008-11-26 (00-15-52).txt
Type de recherche: Examen rapide
Eléments examinés: 44622
Temps écoulé: 1 minute(s), 57 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2b2a8719f0d73b540683675697e40b6f8c7c9a8c (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\394ad7ced9b99836082bdf9b59df73c2633b248e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\93eb9fd3ea40f221e990e3e71343e6d47d3fa0c0 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\c48d3b9bca9b3a5a04bc26f729ee0c6e389dde2e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ecdfb50751ae333aaa4ea5fd47308faa685e8ffe (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2c5eceb3d45147eb99fa51120e7c7adebe213de6 (Adware.123Mania) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\a6a50b0ebf885a7dd4fb6927f1388592138fffe6 (Adware.123Mania) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
A voir également:
- Https www google com gws_rd ssl virus android
- Registre windows - Guide
- Éditeur de registre windows 11 - Télécharger - Registre
- Alerte windows ordinateur infecté - Accueil - Arnaque
- Trouver clé windows 10 dans registre - Guide
- Invite registre quoi - Guide
92 réponses
Salut,
commences par ceci pour voir ce qu'il en est et donc repérer les infections possibles et les neutraliser....:
Télécharges et installes le logiciel de diagnostic HijackThis :
ici HijackThis
ou ici http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
ou ici https://www.clubic.com/telecharger-fiche17891-hijackthis.html
1- Cliques sur le setup pour lancer l'installe : laisses toi guider et ne modifies pas les paramètres d'installation .
A la fin de l'installe , le prg ce lance automatiquement : fermes le en cliquant sur la croix rouge .
Au final, tu dois avoir un raccourci sur ton bureau et aussi un cheminement comme :
"C:\ program files\Trend Micro\HijackThis\HijackThis.exe " .
tuto pour utilisation :
Regardes ici, c'est parfaitement expliqué en images (merci balltrap34),
http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm
( Ne fixes encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement )
2- !! Déconnectes toi et fermes toute tes applications en cours !!
Cliques sur le raccourci du bureau pour lancer le prg :
fais un scan HijackThis en cliquant sur : "Do a system scan and save a logfile"
---> Postes le rapport généré pour analyse ...
commences par ceci pour voir ce qu'il en est et donc repérer les infections possibles et les neutraliser....:
Télécharges et installes le logiciel de diagnostic HijackThis :
ici HijackThis
ou ici http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
ou ici https://www.clubic.com/telecharger-fiche17891-hijackthis.html
1- Cliques sur le setup pour lancer l'installe : laisses toi guider et ne modifies pas les paramètres d'installation .
A la fin de l'installe , le prg ce lance automatiquement : fermes le en cliquant sur la croix rouge .
Au final, tu dois avoir un raccourci sur ton bureau et aussi un cheminement comme :
"C:\ program files\Trend Micro\HijackThis\HijackThis.exe " .
tuto pour utilisation :
Regardes ici, c'est parfaitement expliqué en images (merci balltrap34),
http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm
( Ne fixes encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement )
2- !! Déconnectes toi et fermes toute tes applications en cours !!
Cliques sur le raccourci du bureau pour lancer le prg :
fais un scan HijackThis en cliquant sur : "Do a system scan and save a logfile"
---> Postes le rapport généré pour analyse ...
Bonsoir Gen-hackman,
Merci pour ton aide,
Voilà, j'espère que c'est ça !
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:11:03, on 26/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
C:\Program Files\Horloge\Horloge.exe
C:\Program Files\IncrediMail\bin\IMApp.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\USER\Bureau\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SARpp Class - {E56B8A14-3F49-4397-A003-316395FE68A7} - C:\WINDOWS\system32\MSSAR32.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - Startup: Horloge.lnk = C:\Program Files\Horloge\Horloge.exe
O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Merci pour ton aide,
Voilà, j'espère que c'est ça !
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:11:03, on 26/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
C:\Program Files\Horloge\Horloge.exe
C:\Program Files\IncrediMail\bin\IMApp.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\USER\Bureau\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SARpp Class - {E56B8A14-3F49-4397-A003-316395FE68A7} - C:\WINDOWS\system32\MSSAR32.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - Startup: Horloge.lnk = C:\Program Files\Horloge\Horloge.exe
O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
fais un bon nettoyage et dis si ca a changé :
1)Telecharge :
-------------
https://www.clubic.com/telecharger-fiche262022-purera.html
coche tout a droite , et "clean"
ensuite :
-----------
http://www.commentcamarche.net/telecharger/cleanafterme 34056612 avis opinions.php3
meme chose tu coches tout et "clean selected items"
source = Gen-Hackman..........et puis a faire aussi :
2)
---> Télécharge ToolsCleaner2 sur ton Bureau.
* Double-clique sur ToolsCleaner2.exe pour le lancer.
* Clique sur Recherche et laisse le scan agir.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options Facultatives.
* Clique sur Quitter pour obtenir le rapport.
* Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
3/
---> Télécharge et installe CCleaner (N'installe pas la Yahoo Toolbar) :
* Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
* Va dans Nettoyeur, choisis Analyse. Une fois terminé, lance le nettoyage.
* Ensuite, choisis Registre, puis Chercher des erreurs. Une fois terminé, répare toutes les erreurs tant de fois qu il en trouve a l analyse(Sauvegarde la base de registre).
4/
---> Il est nécessaire de désactiver puis réactiver la restauration système pour la purger :
http://www.infos-du-net.com/forum/272480-11-desactiver-activer-restauration-systeme
---> Je te conseille de créer un point de restauration que tu pourras utiliser plus tard si tu as un problème :
https://www.vulgarisation-informatique.com/creer-point-restauration.php
stp poste tous les rapports delivrés....merci.....
si tu as deja Ccleaner ne tiens pas compte du N°3.....mais fais ce qu il est demande avec
(desole le canned est pour tout le monde....lol)
Attention : ne pas toucher au PC pendant qu'il travaille !
B-Nettoyage et Défragmentation de tes Disques
*Nettoyage :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Général"
Cliques sur le bouton "nettoyage de disque", OK
tu le fais pour chacun de tes disques
*Vérifications des erreurs :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Outil"
"Vérifier maintenant", une boîte s'ouvre, cocher les cases :
-réparer automatiquement les erreurs...
-rechercher et tenter une récupération...
--->Démarrer, ok
Note : s'il te dis de redémarrer ton Pc pour le faire , tu redémarres et tu laisses faire, cela prend un peu de temps c'est normal
tu le fais pour chacun de tes disques
ensuite toujours dans le même onglet tu choisis :
*Défragmentation :
"défragmenter maintenant", OK
une boîte s'ouvre, tu sélectionnes le disque à défragmenter, et tu cliques sur "analyser", puis après l'analyse, "défragmenter" . OK
tu le fais pour chacun de tes disques
Note : si tu as un utilitaire pour défragmenter , utilises le à la place ...
pour ce faire je te conseille ceci :
https://www.clubic.com/telecharger-fiche44314-defraggler.html
C-Crées un point de restauration de ton PC :
Aller dans le Menu Démarrer puis dans Programmes,
- Ensuite dans Accessoires et enfin dans Outils système,
- Choisir "Restauration du système",
- Sélectionner "Créer un point de restauration",
- Cliquer sur "Suivant",
- Entrer un nom pour le point de restauration (ce nom doit être assez évocateur), exemple :
<< Point restauration sain >> .
--> Cliquer sur "Créer" et le point de restauration se créé automatiquement.
> Peux-tu vérifier ta console JAVA ici ? : https://www.java.com/fr/download/uninstalltool.jsp et installer la nouvelle version si besoin est (dans ce cas désinstalle avant l'ancienne version).
Pour info. ou en cas de problème : http://assiste.com.free.fr/p/abc/c/anti_java.html
> Mets à jour Acrobat si ce n'est pas le cas (désinstalle avant la version antérieure) : https://get2.adobe.com/reader/otherversions/
> Télécharge et installe Update Checker : https://filehippo.com/windows/tuning-utilities/
- Lance le programme. Une page web de ce type va s'ouvrir.
- Fais les mises à jour de tous les logiciels proposés pour Update. Je ne te conseille pas de faire celles pour les versions béta (elles peuvent être instables).
- Fais un copier/coller de la liste de éléments "Updates". Puis poste la sur le forum.
- Une fois les mises à jour effectuées, relance ton PC.
Tuto si problèmes : https://www.commentcamarche.net/list 9908 update checker vos logiciels sont ils a jour
> Télécharge et installe Easy Cleaner : https://www.01net.com/telecharger/windows/Utilitaire/registre/fiches/8351.html
(lien miroir : https://www.clubic.com/telecharger-fiche11170-easycleaner.html )
- Lance le programme puis clique sur <Registre> puis sur <Trouver>.
- A la fin du scan clique sur <Supprime tout> puis confirme par <Oui> puis quitte le programme.
Si besoin tuto ici : https://www.pcparadise.fr
et http://www.6ma.fr/tuto/easycleaner-nettoyer-windows-des-elements-obsoletes/
> Tu peux aussi vider ta corbeille......quoi que Ccleaner le fasse tout seul.......
> Si nous avons utilisé MalwaresByte's Anti-Malware : vide sa quarantaine.
- Lance le programme puis clique sur <Quarantaine>.
- Sélectionne tous les éléments puis clique sur <supprime>.
- Quitte la programme.
> Idem pour ton antivirus : vide sa quarantaine si ce n'est pas déjà fait...
> Désactive et réactive la restauration de système, pour cela : suis les instructions de ce lien :
liens XP:
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20020830101856924
liens Vista :
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/4f60eedf1156c8068525695b005ca288/c066b2e9a50cc948802572870032b170?OpenDocument
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Quelques conseils et recommandations pour l'avenir :
> Passe un coup d'AGV et/ou de MalwareByte's Anti-Malware et de Ccleaner de temps en temps (1 fois par semaine à 1 fois par mois, suivant l'utilisation que tu fais de ton PC. Tu peux aussi décocher la casse dans l’onglet "Options" puis clique sur "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures").
- Utilise aussi tes autres logiciels de protection (scannes antivirus, antispywares...). N'oublie pas de faire les mises à jour avant de les utiliser.
- Pense aussi à faire une défragmentation de tes disques durs de temps en temps (garde suffisamment d'espace sur C:\ (1/3 de libre pour être à l'aise))
> Pour bien protéger ton PC :
[1 seul Antivirus] + [1 seul Pare feu (/!\ les routeurs et box en possèdent un)] + [Quelques Antispywares] + [Mises à Jour récentes Windows et Logiciels de Protection] + [Utilisation de Firefox -ou autres- (Internet Explorer présente des failles de sécurité qui mettent longtemps avant d'être corrigées mais il faut absolument le conserver pour les mises à jour Windows)] + [Utilisation du PC en mode Invité (= limité). Lors d'une infection en mode administrateur le PC est beaucoup plus vulnérable. Voir ICI]
PS : En fait la meilleure des protections c'est toi même : ce que tu fais avec ton PC : où tu surfes, télécharges...ect....
Les virus utilisent les failles de ton PC pour infecter un système. Info : http://assiste.com.free.fr/p/abc/a/zombies_et_botnets.html
> Quelques liens utiles :
- https://www.commentcamarche.net/list 2432 securite proteger un ordinateur contre les malwares d internet
- https://sebsauvage.net/safehex.html
- https://www.zebulon.fr/telechargements/securite/protection-donnees-personnelles/spywareblaster.html (= petit logiciel qui bloque l'installation d'activ-X nuisibles au PC. Fonctionne en arrière plan)
et au final dernier petite chose :
http://www.commentcamarche.net/faq/sujet 11365 mettre son poste en probleme resolu
Voila,
Bonne lecture....
source : DllD..............;-)
Gen-hackman.......................
1)Telecharge :
-------------
https://www.clubic.com/telecharger-fiche262022-purera.html
coche tout a droite , et "clean"
ensuite :
-----------
http://www.commentcamarche.net/telecharger/cleanafterme 34056612 avis opinions.php3
meme chose tu coches tout et "clean selected items"
source = Gen-Hackman..........et puis a faire aussi :
2)
---> Télécharge ToolsCleaner2 sur ton Bureau.
* Double-clique sur ToolsCleaner2.exe pour le lancer.
* Clique sur Recherche et laisse le scan agir.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options Facultatives.
* Clique sur Quitter pour obtenir le rapport.
* Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
3/
---> Télécharge et installe CCleaner (N'installe pas la Yahoo Toolbar) :
* Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
* Va dans Nettoyeur, choisis Analyse. Une fois terminé, lance le nettoyage.
* Ensuite, choisis Registre, puis Chercher des erreurs. Une fois terminé, répare toutes les erreurs tant de fois qu il en trouve a l analyse(Sauvegarde la base de registre).
4/
---> Il est nécessaire de désactiver puis réactiver la restauration système pour la purger :
http://www.infos-du-net.com/forum/272480-11-desactiver-activer-restauration-systeme
---> Je te conseille de créer un point de restauration que tu pourras utiliser plus tard si tu as un problème :
https://www.vulgarisation-informatique.com/creer-point-restauration.php
stp poste tous les rapports delivrés....merci.....
si tu as deja Ccleaner ne tiens pas compte du N°3.....mais fais ce qu il est demande avec
(desole le canned est pour tout le monde....lol)
Attention : ne pas toucher au PC pendant qu'il travaille !
B-Nettoyage et Défragmentation de tes Disques
*Nettoyage :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Général"
Cliques sur le bouton "nettoyage de disque", OK
tu le fais pour chacun de tes disques
*Vérifications des erreurs :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Outil"
"Vérifier maintenant", une boîte s'ouvre, cocher les cases :
-réparer automatiquement les erreurs...
-rechercher et tenter une récupération...
--->Démarrer, ok
Note : s'il te dis de redémarrer ton Pc pour le faire , tu redémarres et tu laisses faire, cela prend un peu de temps c'est normal
tu le fais pour chacun de tes disques
ensuite toujours dans le même onglet tu choisis :
*Défragmentation :
"défragmenter maintenant", OK
une boîte s'ouvre, tu sélectionnes le disque à défragmenter, et tu cliques sur "analyser", puis après l'analyse, "défragmenter" . OK
tu le fais pour chacun de tes disques
Note : si tu as un utilitaire pour défragmenter , utilises le à la place ...
pour ce faire je te conseille ceci :
https://www.clubic.com/telecharger-fiche44314-defraggler.html
C-Crées un point de restauration de ton PC :
Aller dans le Menu Démarrer puis dans Programmes,
- Ensuite dans Accessoires et enfin dans Outils système,
- Choisir "Restauration du système",
- Sélectionner "Créer un point de restauration",
- Cliquer sur "Suivant",
- Entrer un nom pour le point de restauration (ce nom doit être assez évocateur), exemple :
<< Point restauration sain >> .
--> Cliquer sur "Créer" et le point de restauration se créé automatiquement.
> Peux-tu vérifier ta console JAVA ici ? : https://www.java.com/fr/download/uninstalltool.jsp et installer la nouvelle version si besoin est (dans ce cas désinstalle avant l'ancienne version).
Pour info. ou en cas de problème : http://assiste.com.free.fr/p/abc/c/anti_java.html
> Mets à jour Acrobat si ce n'est pas le cas (désinstalle avant la version antérieure) : https://get2.adobe.com/reader/otherversions/
> Télécharge et installe Update Checker : https://filehippo.com/windows/tuning-utilities/
- Lance le programme. Une page web de ce type va s'ouvrir.
- Fais les mises à jour de tous les logiciels proposés pour Update. Je ne te conseille pas de faire celles pour les versions béta (elles peuvent être instables).
- Fais un copier/coller de la liste de éléments "Updates". Puis poste la sur le forum.
- Une fois les mises à jour effectuées, relance ton PC.
Tuto si problèmes : https://www.commentcamarche.net/list 9908 update checker vos logiciels sont ils a jour
> Télécharge et installe Easy Cleaner : https://www.01net.com/telecharger/windows/Utilitaire/registre/fiches/8351.html
(lien miroir : https://www.clubic.com/telecharger-fiche11170-easycleaner.html )
- Lance le programme puis clique sur <Registre> puis sur <Trouver>.
- A la fin du scan clique sur <Supprime tout> puis confirme par <Oui> puis quitte le programme.
Si besoin tuto ici : https://www.pcparadise.fr
et http://www.6ma.fr/tuto/easycleaner-nettoyer-windows-des-elements-obsoletes/
> Tu peux aussi vider ta corbeille......quoi que Ccleaner le fasse tout seul.......
> Si nous avons utilisé MalwaresByte's Anti-Malware : vide sa quarantaine.
- Lance le programme puis clique sur <Quarantaine>.
- Sélectionne tous les éléments puis clique sur <supprime>.
- Quitte la programme.
> Idem pour ton antivirus : vide sa quarantaine si ce n'est pas déjà fait...
> Désactive et réactive la restauration de système, pour cela : suis les instructions de ce lien :
liens XP:
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20020830101856924
liens Vista :
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/4f60eedf1156c8068525695b005ca288/c066b2e9a50cc948802572870032b170?OpenDocument
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Quelques conseils et recommandations pour l'avenir :
> Passe un coup d'AGV et/ou de MalwareByte's Anti-Malware et de Ccleaner de temps en temps (1 fois par semaine à 1 fois par mois, suivant l'utilisation que tu fais de ton PC. Tu peux aussi décocher la casse dans l’onglet "Options" puis clique sur "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures").
- Utilise aussi tes autres logiciels de protection (scannes antivirus, antispywares...). N'oublie pas de faire les mises à jour avant de les utiliser.
- Pense aussi à faire une défragmentation de tes disques durs de temps en temps (garde suffisamment d'espace sur C:\ (1/3 de libre pour être à l'aise))
> Pour bien protéger ton PC :
[1 seul Antivirus] + [1 seul Pare feu (/!\ les routeurs et box en possèdent un)] + [Quelques Antispywares] + [Mises à Jour récentes Windows et Logiciels de Protection] + [Utilisation de Firefox -ou autres- (Internet Explorer présente des failles de sécurité qui mettent longtemps avant d'être corrigées mais il faut absolument le conserver pour les mises à jour Windows)] + [Utilisation du PC en mode Invité (= limité). Lors d'une infection en mode administrateur le PC est beaucoup plus vulnérable. Voir ICI]
PS : En fait la meilleure des protections c'est toi même : ce que tu fais avec ton PC : où tu surfes, télécharges...ect....
Les virus utilisent les failles de ton PC pour infecter un système. Info : http://assiste.com.free.fr/p/abc/a/zombies_et_botnets.html
> Quelques liens utiles :
- https://www.commentcamarche.net/list 2432 securite proteger un ordinateur contre les malwares d internet
- https://sebsauvage.net/safehex.html
- https://www.zebulon.fr/telechargements/securite/protection-donnees-personnelles/spywareblaster.html (= petit logiciel qui bloque l'installation d'activ-X nuisibles au PC. Fonctionne en arrière plan)
et au final dernier petite chose :
http://www.commentcamarche.net/faq/sujet 11365 mettre son poste en probleme resolu
Voila,
Bonne lecture....
source : DllD..............;-)
Gen-hackman.......................
Oufti Gen...
C'est ça que tu veux avant que je continue ?
PureRa v1.1 from RaProducts
Log created at 21:24 on 26/11/2008
===================================
C:\sqmdata00.sqm << Deleted.
C:\sqmdata01.sqm << Deleted.
C:\sqmdata02.sqm << Deleted.
C:\sqmdata03.sqm << Deleted.
C:\sqmdata04.sqm << Deleted.
C:\sqmdata05.sqm << Deleted.
C:\sqmdata06.sqm << Deleted.
C:\sqmdata07.sqm << Deleted.
C:\sqmdata08.sqm << Deleted.
C:\sqmdata09.sqm << Deleted.
C:\sqmdata10.sqm << Deleted.
C:\sqmdata11.sqm << Deleted.
C:\sqmdata12.sqm << Deleted.
C:\sqmdata13.sqm << Deleted.
C:\sqmdata14.sqm << Deleted.
C:\sqmnoopt00.sqm << Deleted.
C:\sqmnoopt01.sqm << Deleted.
C:\sqmnoopt02.sqm << Deleted.
C:\sqmnoopt03.sqm << Deleted.
C:\sqmnoopt04.sqm << Deleted.
C:\sqmnoopt05.sqm << Deleted.
C:\sqmnoopt06.sqm << Deleted.
C:\sqmnoopt07.sqm << Deleted.
C:\sqmnoopt08.sqm << Deleted.
C:\sqmnoopt09.sqm << Deleted.
C:\sqmnoopt10.sqm << Deleted.
C:\sqmnoopt11.sqm << Deleted.
C:\sqmnoopt12.sqm << Deleted.
C:\sqmnoopt13.sqm << Deleted.
C:\sqmnoopt14.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\Microsoft\MSN Messenger\1284741476\sqmnoopt00.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\Microsoft\MSN Messenger\1284741476\sqmnoopt01.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\Microsoft\MSN Messenger\2954885715\sqmnoopt00.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Application Data\IconCache.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Recent\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Ma musique\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Mes images\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Mes vidéos\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Contacts\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Favoris\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\IconCache.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Messenger\blaireautwo@hotmail.com\Sharing Folders\Nouveau dossier\Thumbs.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Messenger\blaireautwo@hotmail.com\Sharing Folders\vleugelsamelie@hotmail.com\Thumbs.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc00.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc01.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc02.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\Outils système\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Outils d'administration\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Mes documents\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Recent\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Voisinage réseau\My Web Sites on MSN\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Voisinage réseau\SharedDocs sur Pc-d30d43c43399\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Program Files\Microsoft Office\Office12\1036\DataServices\DESKTOP.INI << Deleted.
C:\ANCIEN HDD\WINDOWS\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\assembly\Desktop.ini << Unable to Delete.
C:\ANCIEN HDD\WINDOWS\Downloaded Program Files\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\Fonts\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\Offline Web Pages\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\612UP264\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\89MBC1E7\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\ODEF8LYB\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\VZFVKUSH\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\Tasks\desktop.ini << Unable to Delete.
C:\Documents and Settings\All Users\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Ma musique\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Ma musique\Échantillons de musique\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Mes images\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\Mes vidéos\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Outils système\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\Documents and Settings\Default User\SendTo\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\C1Q3STIJ\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\K9I3G9EN\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\N3YH94ZI\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\X31VMYP6\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\9QS9615H\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\LS0WYIU5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\YYWXVC4B\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\ZTY3NQTT\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\USER\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\USER\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini << Deleted.
C:\Documents and Settings\USER\Application Data\Microsoft\Office\Recent\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Favoris\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Application Data\IconCache.db << Deleted.
C:\Documents and Settings\USER\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\4PAVKDE3\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\GHIJKLMN\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\IJ2LMN67\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\O0MG5OM2\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Annuaire Tel ancien\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatar Papy Dédé Onairos\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatars\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatars animaux\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatars Gifs animés\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Belgacom\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Bons mots\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Diaporamas\A envoyer\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Diaporamas\Nature\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Festival films\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Gifs animés\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barriere MP3 30 années en chansons\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barriere MP3 30 années en chansons\30 Annees en Chansons- Ma Vie\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barrière 97 M3\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barrière 97 M3\97\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Copie de Alain Barriere\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\M.Aryan,F.Cabrel\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\M.Aryan,F.Cabrel\Cabrel\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\M.Aryan,F.Cabrel\Marc Aryan\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Biosphère\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Biosphère\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Instrumental\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Instrumental\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Instrumental\Kolygin Pavel\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Plume bleue\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Plume bleue\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Plume bleue\Pepe Michel Plume bleu\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Ricard Anthony\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Tiziano Ferro\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Tiziano Ferro\Perdono\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Animaux d'Afrique\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Art\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Avatar papy\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Blaireau\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Canabis\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Canon XM1\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Castor\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chat\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chauve souris\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chevêches Staf\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chevêches Staf 2\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chouettes\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Famille\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Feuillages\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 1\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 10\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 11\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 13\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 14\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 15\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 16 Heuchera\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 2\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 3\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 4\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 5\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 6\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 7\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 8\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 9\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Fraucis 12\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Hibou\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Insectes\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Loup\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Loutre\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\mon_ecran_fichiers\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Oiseaux\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Panda\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Papillon\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Paysages soleil levant\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Rat musqué\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Rongeurs\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Roses\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes Lettres\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes vidéos\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Nichoirs Schweegler Prix\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Photos Assurance vol\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Photos Eric Plongée\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Smileys\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Recent\Desktop.ini << Deleted.
C:\Documents and Settings\USER\SendTo\desktop.ini << Deleted.
C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN\Desktop.ini << Deleted.
C:\Program Files\Microsoft Office\Office12\1036\DataServices\DESKTOP.INI << Deleted.
C:\RECYCLER\S-1-5-21-527237240-1078145449-725345543-1003\desktop.ini << Deleted.
C:\WINDOWS\desktop.ini << Deleted.
C:\WINDOWS\Downloaded Program Files\desktop.ini << Deleted.
C:\WINDOWS\Fonts\desktop.ini << Deleted.
C:\WINDOWS\Offline Web Pages\desktop.ini << Deleted.
C:\WINDOWS\system32\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\CT2JS9AJ\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\GHEJS5AV\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\KPIFCT2R\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\WHYJGTYF\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\SendTo\desktop.ini << Deleted.
C:\WINDOWS\Tasks\desktop.ini << Unable to Delete.
===================================
C'est ça que tu veux avant que je continue ?
PureRa v1.1 from RaProducts
Log created at 21:24 on 26/11/2008
===================================
C:\sqmdata00.sqm << Deleted.
C:\sqmdata01.sqm << Deleted.
C:\sqmdata02.sqm << Deleted.
C:\sqmdata03.sqm << Deleted.
C:\sqmdata04.sqm << Deleted.
C:\sqmdata05.sqm << Deleted.
C:\sqmdata06.sqm << Deleted.
C:\sqmdata07.sqm << Deleted.
C:\sqmdata08.sqm << Deleted.
C:\sqmdata09.sqm << Deleted.
C:\sqmdata10.sqm << Deleted.
C:\sqmdata11.sqm << Deleted.
C:\sqmdata12.sqm << Deleted.
C:\sqmdata13.sqm << Deleted.
C:\sqmdata14.sqm << Deleted.
C:\sqmnoopt00.sqm << Deleted.
C:\sqmnoopt01.sqm << Deleted.
C:\sqmnoopt02.sqm << Deleted.
C:\sqmnoopt03.sqm << Deleted.
C:\sqmnoopt04.sqm << Deleted.
C:\sqmnoopt05.sqm << Deleted.
C:\sqmnoopt06.sqm << Deleted.
C:\sqmnoopt07.sqm << Deleted.
C:\sqmnoopt08.sqm << Deleted.
C:\sqmnoopt09.sqm << Deleted.
C:\sqmnoopt10.sqm << Deleted.
C:\sqmnoopt11.sqm << Deleted.
C:\sqmnoopt12.sqm << Deleted.
C:\sqmnoopt13.sqm << Deleted.
C:\sqmnoopt14.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\Microsoft\MSN Messenger\1284741476\sqmnoopt00.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\Microsoft\MSN Messenger\1284741476\sqmnoopt01.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Application Data\Microsoft\MSN Messenger\2954885715\sqmnoopt00.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Application Data\IconCache.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\Recent\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Administrateur\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Ma musique\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Mes images\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Documents\Mes vidéos\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Default User\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Contacts\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Favoris\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\IconCache.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Messenger\blaireautwo@hotmail.com\Sharing Folders\Nouveau dossier\Thumbs.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Messenger\blaireautwo@hotmail.com\Sharing Folders\vleugelsamelie@hotmail.com\Thumbs.db << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc00.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc01.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc02.sqm << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Accessoires\Outils système\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Menu Démarrer\Programmes\Outils d'administration\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Mes documents\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Recent\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Voisinage réseau\My Web Sites on MSN\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Voisinage réseau\SharedDocs sur Pc-d30d43c43399\Desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\Program Files\Microsoft Office\Office12\1036\DataServices\DESKTOP.INI << Deleted.
C:\ANCIEN HDD\WINDOWS\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\assembly\Desktop.ini << Unable to Delete.
C:\ANCIEN HDD\WINDOWS\Downloaded Program Files\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\Fonts\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\Offline Web Pages\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Historique\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\612UP264\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\89MBC1E7\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\ODEF8LYB\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\VZFVKUSH\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\system32\config\systemprofile\SendTo\desktop.ini << Deleted.
C:\ANCIEN HDD\WINDOWS\Tasks\desktop.ini << Unable to Delete.
C:\Documents and Settings\All Users\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Ma musique\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Ma musique\Échantillons de musique\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Mes images\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\Mes images\Échantillons d'images\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\Mes vidéos\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Communications\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\Outils système\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\Documents and Settings\Default User\SendTo\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\C1Q3STIJ\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\K9I3G9EN\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\N3YH94ZI\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\X31VMYP6\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\9QS9615H\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\LS0WYIU5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\YYWXVC4B\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\ZTY3NQTT\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\USER\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\USER\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini << Deleted.
C:\Documents and Settings\USER\Application Data\Microsoft\Office\Recent\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Favoris\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Application Data\IconCache.db << Deleted.
C:\Documents and Settings\USER\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Historique\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\4PAVKDE3\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\GHIJKLMN\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\IJ2LMN67\desktop.ini << Deleted.
C:\Documents and Settings\USER\Local Settings\Temporary Internet Files\Content.IE5\O0MG5OM2\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\Documents and Settings\USER\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Annuaire Tel ancien\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatar Papy Dédé Onairos\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatars\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatars animaux\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Avatars Gifs animés\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Belgacom\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Bons mots\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Diaporamas\A envoyer\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Diaporamas\Nature\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Festival films\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Gifs animés\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barriere MP3 30 années en chansons\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barriere MP3 30 années en chansons\30 Annees en Chansons- Ma Vie\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barrière 97 M3\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Alain Barrière 97 M3\97\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Copie de Alain Barriere\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\M.Aryan,F.Cabrel\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\M.Aryan,F.Cabrel\Cabrel\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\M.Aryan,F.Cabrel\Marc Aryan\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Biosphère\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Biosphère\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Instrumental\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Instrumental\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Instrumental\Kolygin Pavel\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Plume bleue\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Plume bleue\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Musiques films\Plume bleue\Pepe Michel Plume bleu\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Ricard Anthony\desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Tiziano Ferro\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Ma musique\Tiziano Ferro\Perdono\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Animaux d'Afrique\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Art\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Avatar papy\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Blaireau\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Canabis\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Canon XM1\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Castor\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chat\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chauve souris\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chevêches Staf\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chevêches Staf 2\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Chouettes\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Famille\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Feuillages\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 1\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 10\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 11\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 13\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 14\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 15\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 16 Heuchera\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 2\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 3\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 4\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 5\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 6\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 7\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 8\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Francis 9\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Fraucis 12\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Hibou\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Insectes\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Loup\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Loutre\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\mon_ecran_fichiers\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Oiseaux\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Panda\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Papillon\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Paysages soleil levant\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Rat musqué\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Rongeurs\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes images\Roses\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes Lettres\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Mes vidéos\Desktop.ini << Deleted.
C:\Documents and Settings\USER\Mes documents\Nichoirs Schweegler Prix\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Photos Assurance vol\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Photos Eric Plongée\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Mes documents\Smileys\Thumbs.db << Deleted.
C:\Documents and Settings\USER\Recent\Desktop.ini << Deleted.
C:\Documents and Settings\USER\SendTo\desktop.ini << Deleted.
C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN\Desktop.ini << Deleted.
C:\Program Files\Microsoft Office\Office12\1036\DataServices\DESKTOP.INI << Deleted.
C:\RECYCLER\S-1-5-21-527237240-1078145449-725345543-1003\desktop.ini << Deleted.
C:\WINDOWS\desktop.ini << Deleted.
C:\WINDOWS\Downloaded Program Files\desktop.ini << Deleted.
C:\WINDOWS\Fonts\desktop.ini << Deleted.
C:\WINDOWS\Offline Web Pages\desktop.ini << Deleted.
C:\WINDOWS\system32\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\CT2JS9AJ\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\GHEJS5AV\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\KPIFCT2R\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\WHYJGTYF\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Accessibilité\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Accessoires\Divertissement\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Menu Démarrer\Programmes\Démarrage\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\SendTo\desktop.ini << Deleted.
C:\WINDOWS\Tasks\desktop.ini << Unable to Delete.
===================================
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Voilà pour le deuxième point
Delete file: C:\Documents and Settings\USER\Recent\160399903946b1c4db25797 copie.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mes images.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mon compte Blog SkyRock.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mots de passe Forums (2).lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mots de passe Forums.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\purera_purera_1.1_anglais_262022.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\VIDEO_TS.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\VTS_01_1.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN\target.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN\desktop.ini - Failed
Delete folder: C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\* - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\* - Succeeded
Delete registry value: 'b' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\* - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\gif - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\gif - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\VOB - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\VOB - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU - Succeeded
Delete registry value: 'b' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '2' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '3' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '4' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '5' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'ViewStream' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '6' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '7' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.docx - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.docx - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.docx - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.gif - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.gif - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.VOB - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.VOB - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.zip - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.zip - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '2' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: 'LangID' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Java\jre6\lib\deploy\jqs\ff\..\..\..\..\bin\jqsnotify.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Mozilla Firefox\firefox.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9227' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9216' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9217' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\inf\unregmp2.exe,-155' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1200' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21791' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31233' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31236' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31260' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31374' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31272' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21785' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31274' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\Explorer.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22914' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Outlook Express\msimn.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7024' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7025' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\logon.scr' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows Media Player\wmplayer.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows Media Player\setup_wm.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Documents and Settings\USER\Bureau\ATF-Cleaner.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\CCleaner\CCleaner.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12691' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-6100' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\IncrediMail\bin\IncMail.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\POWERPNT.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Fichiers communs\Ahead\Lib\MediaLibraryNSE.dll,-11111' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21786' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12693' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\WINWORD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Documents and Settings\USER\Mes documents\Mes téléchargements\jkdefrag_jkdefrag_3.32_anglais_29383\JkDefrag.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\SNDVOL32.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\shimgvw.dll' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\ZNsoft Corporation\ZNsoft Optimizer Xp\ZNsoft Xp.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9319' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\rcbdyctl.dll,-152' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-8964' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11001' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11004' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22051' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22017' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22022' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\tourstart.exe,-1' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22052' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22065' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22041' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\xpsp1res.dll,-10077' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MOVIEM~1\wmm2res.dll,-61446' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\sti_ci.dll,-11' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22019' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22054' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22069' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22016' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mstsc.exe,-4000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22031' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22061' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\usmt\migwiz.exe,-202' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22027' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22063' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22026' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\restore\rstrui.exe,-2048' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22021' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22018' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\shvlres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\bckgres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mshearts.exe,-413' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\hrtzres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22045' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22030' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\chkrres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22057' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\rvseres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22060' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\spider.exe,-56' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22029' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22055' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22059' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\comres.dll,-661' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22025' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22040' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21761' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21787' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21772' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21760' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\compatUI.dll,-115' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22067' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22062' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22075' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21773' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21762' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21768' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21788' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\xpsp2res.dll,-16201' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1010' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\hnetwiz.dll,-3085' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22066' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\xpsp2res.dll,-6103' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22058' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-10077' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7021' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7020' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Java\jre6\bin\jusched.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Horloge\Horloge.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@sendmail.dll,-21' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@sendmail.dll,-4' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@zipfldr.dll,-10148' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12589' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12590' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Internet Explorer\IEXPLORE.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\EXCEL.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\NOTEPAD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\taskmgr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\Restore\rstrui.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\IncrediMail\bin\ImpCnt.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-32517' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22985' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22981' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22982' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mstask.dll,-3408' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\wiashext.dll,-331' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30498' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30506' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30497' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30507' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30517' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30514' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30511' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30499' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30501' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30500' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30509' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30513' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30512' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30504' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30505' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30502' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30518' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30508' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30510' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1501' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1585' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1520' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-150' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1525' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1201' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1504' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31273' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12054' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-151' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12052' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1570' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1540' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1550' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1555' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1575' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12017' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11002' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12001' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1502' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1565' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12007' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-10078' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11005' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12008' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12004' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50002' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50015' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50001' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\RegCleaner\RegCleanr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31254' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31256' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31258' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31380' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31262' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31242' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31244' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31246' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31248' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31370' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31250' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31252' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-8503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mycomput.dll,-400' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\rundll32.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31232' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31294' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31327' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31312' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22913' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\wuauclt.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\conf.exe,-12345' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\accwiz.exe,-16' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9903' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9909' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9910' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9904' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9905' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22978' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\ntbackup.exe,-40' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\pdh.dll,-10023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-304' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6145' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9918' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cdfview.dll,-4610' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6108' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\conf.exe,-12346' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6110' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\notepad.exe,-469' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1300' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9927' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-301' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-302' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\conf.exe,-12347' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\setupapi.dll,-2000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Internet Explorer\Connection Wizard\icwres.dll,-20003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-303' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4804' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4805' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9902' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9926' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9907' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9925' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mmcbase.dll,-130' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\msi.dll,-34' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\msi.dll,-35' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\RCBdyctl.dll,-150' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Movie Maker\wmm2res.dll,-63097' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\PCHealth\HelpCtr\Binaries\msinfo.dll,-391' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\nmwb.dll,-1234' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6111' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6113' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-305' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\msxml3r.dll,-1' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\scrobj.dll,-8192' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shscrap.dll,-258' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6112' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6109' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-306' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4803' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4802' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9908' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9911' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9912' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9920' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-307' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9915' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9914' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9916' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9923' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@"C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE",-208' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4801' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4800' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9913' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\msxml3r.dll,-2' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\zipfldr.dll,-10195' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\shell32.dll' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4746' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4731' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4732' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4745' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4852' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4856' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4866' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4833' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4734' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4743' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4737' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4840' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4837' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4836' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4835' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4838' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4829' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4861' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4736' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-4892' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-4891' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4832' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4735' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4828' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4825' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4827' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4826' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4874' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4873' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4839' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4875' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4747' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4750' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4749' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-5710' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4761' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4762' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-5700' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4863' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4756' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-10505' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4757' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4759' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4752' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4753' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4760' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4758' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4754' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4822' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4823' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4824' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4744' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4741' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4871' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4865' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4742' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4843' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4738' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4739' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4740' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4769' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4770' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4771' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4844' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4845' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4847' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4846' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4848' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mshta.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31317' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31321' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31292' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31325' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpCtr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mmc.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12710' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\cmd.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shdoclc.dll,-880' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mspaint.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Photoshop 7.0\ImageReady.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\PROGRA~1\MICROS~2\Office12\OIS.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shimgvw.dll,-550' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31323' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@wmploc.dll,-1800' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@wmploc.dll,-6502' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17154' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17155' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17168' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17158' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17159' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17156' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17157' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%systemroot%\System32\wiaacmgr.exe,-276' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%systemroot%\System32\wiaacmgr.exe,-101' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-8504' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Outlook Express\wab.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31283' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31287' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31313' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31391' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31379' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31285' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31264' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31266' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31362' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31270' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\hh.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21782' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31352' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@zipfldr.dll,-10300' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@zipfldr.dll,-10302' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'c:\program files\avira\antivir personaledition classic\avscan.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Internet Explorer\iexplore.exe,-702' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpob2res.dll,-41519' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12708' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31366' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-30520' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\main.cpl,-2000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Fichiers communs\System\Ole DB\msdasqlr.dll,-2323' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\icmui.dll,-45' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6148' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mstsc.exe,-4004' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9924' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-28995' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-28997' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-28996' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21792' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31368' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31268' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31329' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31331' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31333' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22915' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLED.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Logitech\Video\QSync.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31392' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31394' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\DivXCodecVersionChecker.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\DivX\DivX Player\DivX Player.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\DivX\DivX Converter\Converter.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@Shell32.dll,-12688' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\msohtmed.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31390' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31289' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31318' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31322' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31249' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31237' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31234' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31243' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31371' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31375' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31276' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31281' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@Shell32.dll,-12689' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31278' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31279' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31245' in HKCU\Software\
Delete file: C:\Documents and Settings\USER\Recent\160399903946b1c4db25797 copie.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mes images.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mon compte Blog SkyRock.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mots de passe Forums (2).lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\Mots de passe Forums.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\purera_purera_1.1_anglais_262022.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\VIDEO_TS.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Recent\VTS_01_1.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN\target.lnk - Succeeded
Delete file: C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN\desktop.ini - Failed
Delete folder: C:\Documents and Settings\USER\Voisinage réseau\My Web Sites on MSN - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\* - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\* - Succeeded
Delete registry value: 'b' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\* - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\gif - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\gif - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\VOB - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\VOB - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU - Succeeded
Delete registry value: 'b' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedMRU - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '2' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '3' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '4' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '5' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'ViewStream' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '6' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '7' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.docx - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.docx - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.docx - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.gif - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.gif - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.VOB - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.VOB - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.zip - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.zip - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '2' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: 'LangID' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Java\jre6\lib\deploy\jqs\ff\..\..\..\..\bin\jqsnotify.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Mozilla Firefox\firefox.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9227' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9216' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9217' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\inf\unregmp2.exe,-155' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1200' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21791' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31233' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31236' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31260' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31374' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31272' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21785' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31274' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\Explorer.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22914' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Outlook Express\msimn.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7024' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7025' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\logon.scr' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows Media Player\wmplayer.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows Media Player\setup_wm.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Documents and Settings\USER\Bureau\ATF-Cleaner.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\CCleaner\CCleaner.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12691' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-6100' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\IncrediMail\bin\IncMail.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\POWERPNT.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Fichiers communs\Ahead\Lib\MediaLibraryNSE.dll,-11111' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21786' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12693' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\WINWORD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Documents and Settings\USER\Mes documents\Mes téléchargements\jkdefrag_jkdefrag_3.32_anglais_29383\JkDefrag.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\SNDVOL32.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\shimgvw.dll' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\ZNsoft Corporation\ZNsoft Optimizer Xp\ZNsoft Xp.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9319' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\rcbdyctl.dll,-152' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-8964' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11001' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11004' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22051' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22017' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22022' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\tourstart.exe,-1' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22052' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22065' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22041' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\xpsp1res.dll,-10077' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MOVIEM~1\wmm2res.dll,-61446' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\sti_ci.dll,-11' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22019' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22054' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22069' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22016' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mstsc.exe,-4000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22031' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22061' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\usmt\migwiz.exe,-202' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22027' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22063' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22026' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\restore\rstrui.exe,-2048' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22021' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22018' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\shvlres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\bckgres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mshearts.exe,-413' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\hrtzres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22045' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22030' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\chkrres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22057' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\PROGRA~1\MSNGAM~1\Windows\rvseres.dll,-1212' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22060' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\spider.exe,-56' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22029' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22055' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22059' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\comres.dll,-661' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22025' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22040' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21761' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21787' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21772' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21760' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\compatUI.dll,-115' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22067' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22062' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22075' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21773' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21762' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21768' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21788' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\xpsp2res.dll,-16201' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1010' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\hnetwiz.dll,-3085' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22066' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\xpsp2res.dll,-6103' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22058' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-10077' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7021' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7020' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Java\jre6\bin\jusched.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Horloge\Horloge.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@sendmail.dll,-21' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@sendmail.dll,-4' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@zipfldr.dll,-10148' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12589' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12590' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Internet Explorer\IEXPLORE.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\EXCEL.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\NOTEPAD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\taskmgr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\Restore\rstrui.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\VS Revo Group\Revo Uninstaller\revouninstaller.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\IncrediMail\bin\ImpCnt.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Avira\AntiVir PersonalEdition Classic\GUARDGUI.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-32517' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22985' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22981' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22982' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mstask.dll,-3408' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\wiashext.dll,-331' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30498' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30506' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30497' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30507' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30517' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30514' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30511' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30499' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30501' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30500' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30509' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30513' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30512' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30504' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30505' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30502' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30518' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30508' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-30510' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1501' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1585' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1520' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-150' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1525' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1201' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1504' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31273' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12054' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-151' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12052' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1570' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1540' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1550' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1555' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1575' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12017' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11002' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12001' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1502' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-1565' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12007' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-10078' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11005' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12008' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netshell.dll,-12004' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50002' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50015' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@netcfgx.dll,-50001' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\RegCleaner\RegCleanr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31254' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31256' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31258' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31380' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31262' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31242' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31244' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31246' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31248' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31370' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31250' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31252' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-8503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mycomput.dll,-400' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\rundll32.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31232' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31294' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31327' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31312' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22913' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\wuauclt.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\conf.exe,-12345' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\accwiz.exe,-16' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9903' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9909' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9910' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9904' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9905' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22978' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\ntbackup.exe,-40' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\pdh.dll,-10023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-304' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6145' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9918' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cdfview.dll,-4610' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6108' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\conf.exe,-12346' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6110' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\notepad.exe,-469' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1300' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9927' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-301' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-302' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\conf.exe,-12347' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\setupapi.dll,-2000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Internet Explorer\Connection Wizard\icwres.dll,-20003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-303' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4804' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4805' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9902' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9926' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9907' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9925' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mmcbase.dll,-130' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\msi.dll,-34' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\msi.dll,-35' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\RCBdyctl.dll,-150' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Movie Maker\wmm2res.dll,-63097' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\PCHealth\HelpCtr\Binaries\msinfo.dll,-391' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\NetMeeting\nmwb.dll,-1234' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6111' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6113' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-305' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\msxml3r.dll,-1' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\scrobj.dll,-8192' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shscrap.dll,-258' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6112' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6109' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-306' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4803' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4802' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9908' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9911' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9912' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9920' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\shimgvw.dll,-307' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9915' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9914' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9916' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9923' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@"C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE",-208' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4801' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\wshext.dll,-4800' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9913' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\msxml3r.dll,-2' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\zipfldr.dll,-10195' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\shell32.dll' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4746' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4731' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4732' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4745' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4852' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4856' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4866' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4833' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4734' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4743' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4737' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4840' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4837' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4836' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4835' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4838' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4829' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4861' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4736' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-4892' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-4891' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4832' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4735' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4828' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4825' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4827' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4826' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4874' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4873' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4839' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4875' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4747' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4750' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4749' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-5710' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4761' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4762' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-5700' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4863' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4756' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-10505' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4757' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4759' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4752' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4753' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4760' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4758' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4754' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4822' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4823' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4824' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4744' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4741' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4871' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4865' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4742' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4843' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4738' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4739' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4740' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4769' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4770' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4771' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4844' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4845' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4847' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4846' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@inetcplc.dll,-4848' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mshta.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31317' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31321' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31292' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31325' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpCtr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mmc.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12710' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\cmd.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shdoclc.dll,-880' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mspaint.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Photoshop 7.0\Photoshop.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Photoshop 7.0\ImageReady.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\PROGRA~1\MICROS~2\Office12\OIS.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shimgvw.dll,-550' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31323' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@wmploc.dll,-1800' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@wmploc.dll,-6502' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17154' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17155' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17168' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17158' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17159' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17156' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\SHELL32.dll,-17157' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%systemroot%\System32\wiaacmgr.exe,-276' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%systemroot%\System32\wiaacmgr.exe,-101' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-8504' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Outlook Express\wab.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31283' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31287' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31313' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31391' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31379' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31285' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31264' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31266' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31362' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31270' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\hh.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21782' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31352' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@zipfldr.dll,-10300' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@zipfldr.dll,-10302' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'c:\program files\avira\antivir personaledition classic\avscan.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Internet Explorer\iexplore.exe,-702' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpob2res.dll,-41519' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12708' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31366' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-30520' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\main.cpl,-2000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Fichiers communs\System\Ole DB\msdasqlr.dll,-2323' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\icmui.dll,-45' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\System32\cryptext.dll,-6148' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mstsc.exe,-4004' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9924' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-28995' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-28997' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-28996' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21792' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31368' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31268' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31329' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31331' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31333' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22915' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLED.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Logitech\Video\QSync.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31392' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31394' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\DivXCodecVersionChecker.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\DivX\DivX Player\DivX Player.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\DivX\DivX Converter\Converter.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@Shell32.dll,-12688' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Office\Office12\msohtmed.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31390' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31289' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7003' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7000' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31318' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31322' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31249' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31237' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31234' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31243' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31371' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31375' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31276' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31281' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@Shell32.dll,-12689' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31278' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31279' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31245' in HKCU\Software\
Gen...il y a 5' que j'ai cliqué ur "recherche" dans Tools cleaner 2 le sablier est toujours présent, mais rien ne se passe, c'est normal ?
Ha, voilà le rapport de Tools cleaner2
[ Rapport ToolsCleaner version 2.2.6 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Rsit: trouvé !
C:\ANCIEN HDD\FixWareOut: trouvé !
C:\ANCIEN HDD\Rsit: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\fsbl.exe: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Hijackthis Version Française\hijackthis.log: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\ANCIEN HDD\WINDOWS\msnfix.txt: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\USER\Bureau\HijackThis.exe: trouvé !
C:\Documents and Settings\USER\Bureau\hijackthis.log: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
[ Rapport ToolsCleaner version 2.2.6 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Rsit: trouvé !
C:\ANCIEN HDD\FixWareOut: trouvé !
C:\ANCIEN HDD\Rsit: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\fsbl.exe: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Hijackthis Version Française\hijackthis.log: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\ANCIEN HDD\WINDOWS\msnfix.txt: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\USER\Bureau\HijackThis.exe: trouvé !
C:\Documents and Settings\USER\Bureau\hijackthis.log: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
Ach...j'avai pas tout lu, voici le rapport
[ Rapport ToolsCleaner version 2.2.6 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Rsit: trouvé !
C:\ANCIEN HDD\FixWareOut: trouvé !
C:\ANCIEN HDD\Rsit: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\fsbl.exe: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Hijackthis Version Française\hijackthis.log: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\ANCIEN HDD\WINDOWS\msnfix.txt: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\USER\Bureau\HijackThis.exe: trouvé !
C:\Documents and Settings\USER\Bureau\hijackthis.log: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
---------------------------------
-->- Suppression:
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\fsbl.exe: supprimé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\HijackThis.exe: supprimé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\USER\Bureau\HijackThis.exe: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\ANCIEN HDD\Program Files\Hijackthis Version Française\hijackthis.log: supprimé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\ANCIEN HDD\WINDOWS\msnfix.txt: supprimé !
C:\Documents and Settings\USER\Bureau\hijackthis.log: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Rsit: supprimé !
C:\ANCIEN HDD\FixWareOut: supprimé !
C:\ANCIEN HDD\Rsit: supprimé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
[ Rapport ToolsCleaner version 2.2.6 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Rsit: trouvé !
C:\ANCIEN HDD\FixWareOut: trouvé !
C:\ANCIEN HDD\Rsit: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\fsbl.exe: trouvé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Hijackthis Version Française\hijackthis.log: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\ANCIEN HDD\WINDOWS\msnfix.txt: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\USER\Bureau\HijackThis.exe: trouvé !
C:\Documents and Settings\USER\Bureau\hijackthis.log: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
---------------------------------
-->- Suppression:
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\fsbl.exe: supprimé !
C:\ANCIEN HDD\Documents and Settings\Emile Vleugels\Bureau\HijackThis.exe: supprimé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\USER\Bureau\HijackThis.exe: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\ANCIEN HDD\Program Files\Hijackthis Version Française\hijackthis.log: supprimé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\ANCIEN HDD\WINDOWS\msnfix.txt: supprimé !
C:\Documents and Settings\USER\Bureau\hijackthis.log: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Rsit: supprimé !
C:\ANCIEN HDD\FixWareOut: supprimé !
C:\ANCIEN HDD\Rsit: supprimé !
C:\ANCIEN HDD\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\ANCIEN HDD\Program Files\Trend Micro\HijackThis: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
Gen, j'ai nettoyé le disc et défagmenté
A ce sujet, j'ai défragmenté avec jkDéfrag que j'avais déjà.
A l'avenir, préfères tu que j'utilise "Deflragler" ?
Bon, je continue !
A ce sujet, j'ai défragmenté avec jkDéfrag que j'avais déjà.
A l'avenir, préfères tu que j'utilise "Deflragler" ?
Bon, je continue !
J'ai un problème avec java, sur ma machine pour l'instant, j'ai "Java TM up date 10"
voici les updates, je n'ai pas su faire celui de Nero, ni celui de Zone alarme !
Je n'ai pas fait celui de IE7 (je ne l'ai pas), ni celui de Media player 11 (je ne peux pas ) !
Je continue
Home » Update Checker Results
6 Updates Detected
Icon
CCleaner 2.14.750
Installed Version: 2.13.0.720
2.84MB Download Now!
Icon
Flash Player 10.0.12.36 (IE)
Installed Version: 9.0.124.0
1.80MB Download Now!
Icon
Internet Explorer 7.0.5730.13
Installed Version: 6.0.2900.2180
14.74MB Download Now!
Icon
Nero Burning Rom 9.0.9.4c
Installed Version: 7.10.1.0
370.49MB Download Now!
Icon
Windows Media Player 11
Installed Version: 9.0.0.3250
24.56MB Download Now!
Icon
ZoneAlarm Free 8.0.020.0
Installed Version: 7.0.483.0
26.05MB Download Now!
Total size: 440.47MB
2 Beta Updates Detected
Icon
Internet Explorer 8.0 Beta 2
Installed Version: 6.0.2900.2180
15.94MB Download Now!
Icon
Windows Live Messenger 2009 Beta
Installed Version: 8.5.1302.1018
991KB Download Now!
Total size: 16.90MB
voici les updates, je n'ai pas su faire celui de Nero, ni celui de Zone alarme !
Je n'ai pas fait celui de IE7 (je ne l'ai pas), ni celui de Media player 11 (je ne peux pas ) !
Je continue
Home » Update Checker Results
6 Updates Detected
Icon
CCleaner 2.14.750
Installed Version: 2.13.0.720
2.84MB Download Now!
Icon
Flash Player 10.0.12.36 (IE)
Installed Version: 9.0.124.0
1.80MB Download Now!
Icon
Internet Explorer 7.0.5730.13
Installed Version: 6.0.2900.2180
14.74MB Download Now!
Icon
Nero Burning Rom 9.0.9.4c
Installed Version: 7.10.1.0
370.49MB Download Now!
Icon
Windows Media Player 11
Installed Version: 9.0.0.3250
24.56MB Download Now!
Icon
ZoneAlarm Free 8.0.020.0
Installed Version: 7.0.483.0
26.05MB Download Now!
Total size: 440.47MB
2 Beta Updates Detected
Icon
Internet Explorer 8.0 Beta 2
Installed Version: 6.0.2900.2180
15.94MB Download Now!
Icon
Windows Live Messenger 2009 Beta
Installed Version: 8.5.1302.1018
991KB Download Now!
Total size: 16.90MB
Voilà Gen, j'ai fait "tout" ce que tu m'as demandé, j'espère que tout est clean, qu'en penses tu ?
Merci beaucoup pour ton aide, c'est vraiment sympa ! :)
Au fait que penses tu de cette infection des clès du registre par un simple raccourci d'IE6 qui n'était plus sur la machine, c'est normal ça, tu as une explication ? Cela m'intrigue ! :)
Je vais voir demain tout les conseils que tu me donnes à la fin.
J'espère que les up date que je n'ai pas su faire, ce n'est pas grave !
Ah oui, dans tous les logiciel de nettoyage que tu m'as donné, le ou lesquels dois-je ou puis-je garder pour m'en servir ?
Mille fois merci Gen,
ebird ;)
Merci beaucoup pour ton aide, c'est vraiment sympa ! :)
Au fait que penses tu de cette infection des clès du registre par un simple raccourci d'IE6 qui n'était plus sur la machine, c'est normal ça, tu as une explication ? Cela m'intrigue ! :)
Je vais voir demain tout les conseils que tu me donnes à la fin.
J'espère que les up date que je n'ai pas su faire, ce n'est pas grave !
Ah oui, dans tous les logiciel de nettoyage que tu m'as donné, le ou lesquels dois-je ou puis-je garder pour m'en servir ?
Mille fois merci Gen,
ebird ;)
Bonjour Gen,
Incroyable...Après tout ce que nous avons fait hier, je viens de passer un scan de "Malwarebytes" et les 7 clès du registres sont toujours infectées !!!
Help, qu'est ce qui se passe ?
Bien à toi,
ebird ;)
Voici le rapport :
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1428
Windows 5.1.2600 Service Pack 2
27/11/2008 12:06:27
mbam-log-2008-11-27 (12-06-27).txt
Type de recherche: Examen rapide
Eléments examinés: 47614
Temps écoulé: 3 minute(s), 7 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2b2a8719f0d73b540683675697e40b6f8c7c9a8c (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\394ad7ced9b99836082bdf9b59df73c2633b248e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\93eb9fd3ea40f221e990e3e71343e6d47d3fa0c0 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\c48d3b9bca9b3a5a04bc26f729ee0c6e389dde2e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ecdfb50751ae333aaa4ea5fd47308faa685e8ffe (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2c5eceb3d45147eb99fa51120e7c7adebe213de6 (Adware.123Mania) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\a6a50b0ebf885a7dd4fb6927f1388592138fffe6 (Adware.123Mania) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Incroyable...Après tout ce que nous avons fait hier, je viens de passer un scan de "Malwarebytes" et les 7 clès du registres sont toujours infectées !!!
Help, qu'est ce qui se passe ?
Bien à toi,
ebird ;)
Voici le rapport :
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1428
Windows 5.1.2600 Service Pack 2
27/11/2008 12:06:27
mbam-log-2008-11-27 (12-06-27).txt
Type de recherche: Examen rapide
Eléments examinés: 47614
Temps écoulé: 3 minute(s), 7 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 7
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2b2a8719f0d73b540683675697e40b6f8c7c9a8c (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\394ad7ced9b99836082bdf9b59df73c2633b248e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\93eb9fd3ea40f221e990e3e71343e6d47d3fa0c0 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\c48d3b9bca9b3a5a04bc26f729ee0c6e389dde2e (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ecdfb50751ae333aaa4ea5fd47308faa685e8ffe (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\2c5eceb3d45147eb99fa51120e7c7adebe213de6 (Adware.123Mania) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\SystemCertificates\TrustedPublisher\Certificates\a6a50b0ebf885a7dd4fb6927f1388592138fffe6 (Adware.123Mania) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
ok veux tu bien supprimer ton hijackthis du bureau et le rienstaller comme indique ? :
Télécharges et installes le logiciel de diagnostic HijackThis :
ici HijackThis
ou ici http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
ou ici https://www.clubic.com/telecharger-fiche17891-hijackthis.html
1- Cliques sur le setup pour lancer l'installe : laisses toi guider et ne modifies pas les paramètres d'installation .
A la fin de l'installe , le prg ce lance automatiquement : fermes le en cliquant sur la croix rouge .
Au final, tu dois avoir un raccourci sur ton bureau et aussi un cheminement comme :
"C:\ program files\Trend Micro\HijackThis\HijackThis.exe " .
tuto pour utilisation :
Regardes ici, c'est parfaitement expliqué en images (merci balltrap34),
http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm
( Ne fixes encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement )
2- !! Déconnectes toi et fermes toute tes applications en cours !!
Cliques sur le raccourci du bureau pour lancer le prg :
fais un scan HijackThis en cliquant sur : "Do a system scan and save a logfile"
---> Postes le rapport généré pour analyse ...
Télécharges et installes le logiciel de diagnostic HijackThis :
ici HijackThis
ou ici http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
ou ici https://www.clubic.com/telecharger-fiche17891-hijackthis.html
1- Cliques sur le setup pour lancer l'installe : laisses toi guider et ne modifies pas les paramètres d'installation .
A la fin de l'installe , le prg ce lance automatiquement : fermes le en cliquant sur la croix rouge .
Au final, tu dois avoir un raccourci sur ton bureau et aussi un cheminement comme :
"C:\ program files\Trend Micro\HijackThis\HijackThis.exe " .
tuto pour utilisation :
Regardes ici, c'est parfaitement expliqué en images (merci balltrap34),
http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm
( Ne fixes encore AUCUNE ligne, cela pourrait empêcher ton PC de fonctionner correctement )
2- !! Déconnectes toi et fermes toute tes applications en cours !!
Cliques sur le raccourci du bureau pour lancer le prg :
fais un scan HijackThis en cliquant sur : "Do a system scan and save a logfile"
---> Postes le rapport généré pour analyse ...
Désolé de te re déranger Gen, mais...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:52:44, on 27/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
C:\Program Files\Horloge\Horloge.exe
C:\Program Files\IncrediMail\bin\IMApp.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\LVComsX.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SARpp Class - {E56B8A14-3F49-4397-A003-316395FE68A7} - C:\WINDOWS\system32\MSSAR32.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - Startup: Horloge.lnk = C:\Program Files\Horloge\Horloge.exe
O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:52:44, on 27/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
C:\Program Files\Horloge\Horloge.exe
C:\Program Files\IncrediMail\bin\IMApp.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\LVComsX.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SARpp Class - {E56B8A14-3F49-4397-A003-316395FE68A7} - C:\WINDOWS\system32\MSSAR32.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] C:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
O4 - HKLM\..\Run: [AcronisTimounterMonitor] C:\Program Files\Acronis\TrueImageHome\TimounterMonitor.exe
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - Startup: Horloge.lnk = C:\Program Files\Horloge\Horloge.exe
O4 - Global Startup: HPAiODevice(hp psc 700 series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp psc 700 series\Bin\hpobrt07.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe