Pc infecté rapport hitachi fait et avg que do
Résolu
marjo31
-
marjo31 Messages postés 174 Date d'inscription Statut Membre Dernière intervention -
marjo31 Messages postés 174 Date d'inscription Statut Membre Dernière intervention -
Bonjour,
j ai fait un nettoyage avec ccleaner un rapport avec avg et hitachi mais la je ne c est pas ce que je dois faire je n est plus d antivirus pas moyen d enlevé avast pour mettre kaspery et je n arrive pas a remettre avast non plus est que qqun pourrait m aider svp pour savoir ce que je dois faire je vous envoie le rapport de hitachi et avg merci
Logfile of HijackThis v1.99.1
Scan saved at 8:37:07, on 12/12/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AGEIA Technologies\TrayIcon.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\Defenza\pcd-as.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\HP\KBD\KBD.EXE
c:\windows\system\hpsysdrv.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\Java\jre1.5.0_05\bin\jucheck.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Documents and Settings\HP_Propriétaire\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/nl-be?cobrand=hp.msn.com&ocid=HPDHP&pc=HPDTDF&checklang=1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [AGEIA PhysX SysTray] C:\Program Files\AGEIA Technologies\TrayIcon.exe
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE USB PC Camera 301P
O4 - HKLM\..\Run: [Control Kids] C:\Program Files\Control Kids\Control kids.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [PCDAS] C:\Program Files\Defenza\pcd-as.exe /10003
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-BE/a-UNO1/GAME_UNO1.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://gamenextfr.oberon-media.com/online/online2/diner_dash/DinerDash.1.0.0.80.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
et avg
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 9:33:14 12/12/2008
+ Résultat de l'analyse:
HKU\S-1-5-21-1045004141-474808527-140331961-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCADDC14-BD46-408A-9842-CDBE1C6D37EB} -> Adware.Generic : Aucune action entreprise.
C:\WINDOWS\system32\tdsspopup.dll -> Backdoor.UltimateDefender : Aucune action entreprise.
C:\WINDOWS\system32\18D.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\WINDOWS\system32\26B.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\WINDOWS\system32\29E.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\WINDOWS\system32\29F.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\Documents and Settings\HP_Propriétaire\Cookies\hp_propriétaire@atdmt[1].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\HP_Propriétaire\Cookies\hp_propriétaire@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
Fin du rapport
j ai fait un nettoyage avec ccleaner un rapport avec avg et hitachi mais la je ne c est pas ce que je dois faire je n est plus d antivirus pas moyen d enlevé avast pour mettre kaspery et je n arrive pas a remettre avast non plus est que qqun pourrait m aider svp pour savoir ce que je dois faire je vous envoie le rapport de hitachi et avg merci
Logfile of HijackThis v1.99.1
Scan saved at 8:37:07, on 12/12/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AGEIA Technologies\TrayIcon.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\Defenza\pcd-as.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\HP\KBD\KBD.EXE
c:\windows\system\hpsysdrv.exe
C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe
C:\Program Files\Java\jre1.5.0_05\bin\jucheck.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Documents and Settings\HP_Propriétaire\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/nl-be?cobrand=hp.msn.com&ocid=HPDHP&pc=HPDTDF&checklang=1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://fr.search.yahoo.com/?fr=cb-hp06
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://fr.search.yahoo.com/?fr=cb-hp06
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [HPHUPD08] c:\Program Files\HP\Digital Imaging\{33D6CC28-9F75-4d1b-A11D-98895B3A3729}\hphupd08.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [AGEIA PhysX SysTray] C:\Program Files\AGEIA Technologies\TrayIcon.exe
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE USB PC Camera 301P
O4 - HKLM\..\Run: [Control Kids] C:\Program Files\Control Kids\Control kids.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [PCDAS] C:\Program Files\Defenza\pcd-as.exe /10003
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-BE/a-UNO1/GAME_UNO1.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://gamenextfr.oberon-media.com/online/online2/diner_dash/DinerDash.1.0.0.80.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
et avg
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 9:33:14 12/12/2008
+ Résultat de l'analyse:
HKU\S-1-5-21-1045004141-474808527-140331961-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCADDC14-BD46-408A-9842-CDBE1C6D37EB} -> Adware.Generic : Aucune action entreprise.
C:\WINDOWS\system32\tdsspopup.dll -> Backdoor.UltimateDefender : Aucune action entreprise.
C:\WINDOWS\system32\18D.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\WINDOWS\system32\26B.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\WINDOWS\system32\29E.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\WINDOWS\system32\29F.tmp -> Not-A-Virus.PUP.XPAntivirus.qj : Aucune action entreprise.
C:\Documents and Settings\HP_Propriétaire\Cookies\hp_propriétaire@atdmt[1].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Documents and Settings\HP_Propriétaire\Cookies\hp_propriétaire@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
Fin du rapport
A voir également:
- Pc infecté rapport hitachi fait et avg que do
- Pc lent que faire - Guide
- Reinitialiser pc - Guide
- Test performance pc - Guide
- Downloader for pc - Télécharger - Téléchargement & Transfert
- Avg free - Télécharger - Antivirus & Antimalwares
149 réponses
voila pour la configuration je crois que c est bon j ai suivi par rapport au site mais grrr j ai pas mis en francais mais bon tampis j envoie la copie du scan apparement y a encor des infection y en a qui sont en quarantaine vu qu il me demandé mais ma pas demandé pour tous donc voila
Avira AntiVir Personal
Report file date: lundi 15 décembre 2008 19:16
Scanning for 1088623 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: PROPRIÉTAIRE
Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.0.197 1170432 Bytes 7/12/2008 18:15:31
ANTIVIR2.VDF : 7.1.0.230 156160 Bytes 14/12/2008 18:15:32
ANTIVIR3.VDF : 7.1.0.237 32768 Bytes 15/12/2008 18:15:33
Engineversion : 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 10:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 15/12/2008 18:15:43
AESCN.DLL : 8.1.1.5 123251 Bytes 7/11/2008 15:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 4/11/2008 13:58:38
AEPACK.DLL : 8.1.3.4 393591 Bytes 11/11/2008 09:41:39
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 15/12/2008 18:15:42
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 15/12/2008 18:15:41
AEHELP.DLL : 8.1.2.0 119159 Bytes 15/12/2008 18:15:36
AEGEN.DLL : 8.1.1.8 323956 Bytes 15/12/2008 18:15:35
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 15/12/2008 18:15:34
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 9/07/2008 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 9/05/2008 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: lundi 15 décembre 2008 19:16
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'jucheck.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'hpsysdrv.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'kbd.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'CLSched.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'StarWindServiceAE.exe' - '1' Module(s) have been scanned
Scan process 'PSIService.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'CLMLServer.exe' - '1' Module(s) have been scanned
Scan process 'CLCapSvc.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned
Scan process 'CDAC11BA.EXE' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'uTorrent.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'VM_STI.EXE' - '1' Module(s) have been scanned
Scan process 'TrayIcon.exe' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'PCMService.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.EXE' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
47 processes with 47 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Master boot sector HD2
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Master boot sector HD3
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Master boot sector HD4
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '65' files ).
Starting the file scan:
Begin scan in 'C:\' <HP_PAVILION>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\HP_Propriétaire\Bureau\SmitfraudFix.exe
[0] Archive type: RAR SFX (self extracting)
--> SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '49af9fe1.qua'!
C:\Documents and Settings\HP_Propriétaire\Bureau\SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '49ab9ffc.qua'!
C:\Documents and Settings\HP_Propriétaire\Shared\17.Pokemon.Games\17.Pokemon.Games.rar
[0] Archive type: RAR
--> PokemonCollection.exe
[1] Archive type: RSRC
--> Object
[2] Archive type: CAB (Microsoft)
--> file.exe
[DETECTION] Is the TR/Vundo.ffm.1 Trojan
--> file.exe
[3] Archive type: NSIS
--> ProgramFilesDir/mpxpass.exe
[DETECTION] Contains recognition pattern of the DR/Proxy.mru.2 dropper
--> ProgramFilesDir/mpxpass.exe
[4] Archive type: NSIS
--> ProgramFilesDir/mpt.exe
[DETECTION] Is the TR/Zlob.CQP Trojan
[NOTE] The file was moved to '4974a0ef.qua'!
C:\Program Files\Diner Dash 2\dinerdash2.exe
[DETECTION] Is the TR/Dldr.Agent.adla.1 Trojan
[NOTE] The file was moved to '49b4a290.qua'!
C:\Program Files\Diner Dash 2\dinerdash2.exe.backup
[DETECTION] Is the TR/Dldr.Agent.adla.1 Trojan
[NOTE] The file was moved to '49b4a294.qua'!
C:\Program Files\Zylom Games\Tumblebugs Deluxe\tumblebugs.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '49b3a52d.qua'!
C:\SDFix\backups\backups.zip
[0] Archive type: ZIP
--> backups/18D.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/26B.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/29E.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/29F.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/tdsspopup.dll
[DETECTION] Contains a recognition pattern of the (harmful) BDS/UltimateDefender.14848 back-door program
[NOTE] The file was moved to '49a9a53e.qua'!
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP127\A0028458.exe
[0] Archive type: RAR SFX (self extracting)
--> SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '4976aa7c.qua'!
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP127\A0028462.exe
[DETECTION] Is the TR/Dldr.Agent.adla.1 Trojan
[NOTE] The file was moved to '4976aa7f.qua'!
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP127\A0028463.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '4976aa81.qua'!
C:\WINDOWS\system32\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '49abadc1.qua'!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <HP_RECOVERY>
End of the scan: lundi 15 décembre 2008 20:24
Used time: 1:07:45 Hour(s)
The scan has been done completely.
8076 Scanning directories
455559 Files were scanned
18 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
11 files were moved to quarantine
0 files were renamed
3 Files cannot be scanned
455538 Files not concerned
15760 Archives were scanned
7 Warnings
11 Notes
Avira AntiVir Personal
Report file date: lundi 15 décembre 2008 19:16
Scanning for 1088623 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: PROPRIÉTAIRE
Version information:
BUILD.DAT : 8.2.0.337 16934 Bytes 18/11/2008 13:05:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:26
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 07:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
ANTIVIR1.VDF : 7.1.0.197 1170432 Bytes 7/12/2008 18:15:31
ANTIVIR2.VDF : 7.1.0.230 156160 Bytes 14/12/2008 18:15:32
ANTIVIR3.VDF : 7.1.0.237 32768 Bytes 15/12/2008 18:15:33
Engineversion : 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 10:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 15/12/2008 18:15:43
AESCN.DLL : 8.1.1.5 123251 Bytes 7/11/2008 15:06:41
AERDL.DLL : 8.1.1.3 438645 Bytes 4/11/2008 13:58:38
AEPACK.DLL : 8.1.3.4 393591 Bytes 11/11/2008 09:41:39
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 15/12/2008 18:15:42
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 15/12/2008 18:15:41
AEHELP.DLL : 8.1.2.0 119159 Bytes 15/12/2008 18:15:36
AEGEN.DLL : 8.1.1.8 323956 Bytes 15/12/2008 18:15:35
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 15/12/2008 18:15:34
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 9/07/2008 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
AVREG.DLL : 8.0.0.1 33537 Bytes 9/05/2008 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 13:34:37
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium
Start of the scan: lundi 15 décembre 2008 19:16
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'jucheck.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'hpsysdrv.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'kbd.exe' - '1' Module(s) have been scanned
Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'CLSched.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'StarWindServiceAE.exe' - '1' Module(s) have been scanned
Scan process 'PSIService.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'CLMLServer.exe' - '1' Module(s) have been scanned
Scan process 'CLCapSvc.exe' - '1' Module(s) have been scanned
Scan process 'rundll32.exe' - '1' Module(s) have been scanned
Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned
Scan process 'CDAC11BA.EXE' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'uTorrent.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'VM_STI.EXE' - '1' Module(s) have been scanned
Scan process 'TrayIcon.exe' - '1' Module(s) have been scanned
Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
Scan process 'PCMService.exe' - '1' Module(s) have been scanned
Scan process 'RTHDCPL.EXE' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
47 processes with 47 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Master boot sector HD2
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Master boot sector HD3
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Master boot sector HD4
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '65' files ).
Starting the file scan:
Begin scan in 'C:\' <HP_PAVILION>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\HP_Propriétaire\Bureau\SmitfraudFix.exe
[0] Archive type: RAR SFX (self extracting)
--> SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '49af9fe1.qua'!
C:\Documents and Settings\HP_Propriétaire\Bureau\SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '49ab9ffc.qua'!
C:\Documents and Settings\HP_Propriétaire\Shared\17.Pokemon.Games\17.Pokemon.Games.rar
[0] Archive type: RAR
--> PokemonCollection.exe
[1] Archive type: RSRC
--> Object
[2] Archive type: CAB (Microsoft)
--> file.exe
[DETECTION] Is the TR/Vundo.ffm.1 Trojan
--> file.exe
[3] Archive type: NSIS
--> ProgramFilesDir/mpxpass.exe
[DETECTION] Contains recognition pattern of the DR/Proxy.mru.2 dropper
--> ProgramFilesDir/mpxpass.exe
[4] Archive type: NSIS
--> ProgramFilesDir/mpt.exe
[DETECTION] Is the TR/Zlob.CQP Trojan
[NOTE] The file was moved to '4974a0ef.qua'!
C:\Program Files\Diner Dash 2\dinerdash2.exe
[DETECTION] Is the TR/Dldr.Agent.adla.1 Trojan
[NOTE] The file was moved to '49b4a290.qua'!
C:\Program Files\Diner Dash 2\dinerdash2.exe.backup
[DETECTION] Is the TR/Dldr.Agent.adla.1 Trojan
[NOTE] The file was moved to '49b4a294.qua'!
C:\Program Files\Zylom Games\Tumblebugs Deluxe\tumblebugs.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '49b3a52d.qua'!
C:\SDFix\backups\backups.zip
[0] Archive type: ZIP
--> backups/18D.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/26B.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/29E.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/29F.tmp
[DETECTION] Is the TR/Dldr.FraudLoa.NC Trojan
--> backups/tdsspopup.dll
[DETECTION] Contains a recognition pattern of the (harmful) BDS/UltimateDefender.14848 back-door program
[NOTE] The file was moved to '49a9a53e.qua'!
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP127\A0028458.exe
[0] Archive type: RAR SFX (self extracting)
--> SmitfraudFix\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '4976aa7c.qua'!
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP127\A0028462.exe
[DETECTION] Is the TR/Dldr.Agent.adla.1 Trojan
[NOTE] The file was moved to '4976aa7f.qua'!
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP127\A0028463.dll
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] The file was moved to '4976aa81.qua'!
C:\WINDOWS\system32\Agent.OMZ.Fix.exe
[DETECTION] The file contains an executable program that is disguised by a harmless file extension (HIDDENEXT/Crypted)
[NOTE] The file was moved to '49abadc1.qua'!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\' <HP_RECOVERY>
End of the scan: lundi 15 décembre 2008 20:24
Used time: 1:07:45 Hour(s)
The scan has been done completely.
8076 Scanning directories
455559 Files were scanned
18 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
11 files were moved to quarantine
0 files were renamed
3 Files cannot be scanned
455538 Files not concerned
15760 Archives were scanned
7 Warnings
11 Notes
il faut activer le module de recherche de rootkit dans ta configuration
Search for rootkits..............: off ( met le sur on )
bon il semble rester une saletée on faire un petit nettoyage afin d'eviter les faux positifs
· Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.
https://www.commentcamarche.net/telecharger/ 34055291 toolscleaner
· Clique sur Recherche et laisse le scan se terminer.
· Clique, sur Suppression pour finaliser.
· Tu peux, si tu le souhaites, te servir des Options facultatives.
· Clique sur Quitter, pour que le rapport puisse se créer.
· Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
ensuite
Suppression de fichiers inutiles avec CCleaner
-- CCleaner
https://www.ccleaner.com/ccleaner/download
Choisi la version SLIM-No Toolbar.
Installe-le en prenant soin de décocher les diverses options dont la barre Yahoo et la mise à jour.
Lance CCleaner puis Clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures".
Pour les autres paramètres, laisse-le avec ses réglages par défaut.
*Puis dans le menu Nettoyeur
-Clique sur Analyse (laisser travailler cela peut durer longtemps la 1ere fois)
-Clique sur le bouton Lancer le nettoyage.
-Clique une seconde fois sur le bouton Lancer le nettoyage
-clique sur registre cherche et repare les erreurs effectue trois fois la manipe pour que se sois efficace !
une fois ces manips effectuées recommence un scan complet avec antivir
Search for rootkits..............: off ( met le sur on )
bon il semble rester une saletée on faire un petit nettoyage afin d'eviter les faux positifs
· Télécharge ToolsCleaner de A.Roshtein sur ton Bureau.
https://www.commentcamarche.net/telecharger/ 34055291 toolscleaner
· Clique sur Recherche et laisse le scan se terminer.
· Clique, sur Suppression pour finaliser.
· Tu peux, si tu le souhaites, te servir des Options facultatives.
· Clique sur Quitter, pour que le rapport puisse se créer.
· Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
ensuite
Suppression de fichiers inutiles avec CCleaner
-- CCleaner
https://www.ccleaner.com/ccleaner/download
Choisi la version SLIM-No Toolbar.
Installe-le en prenant soin de décocher les diverses options dont la barre Yahoo et la mise à jour.
Lance CCleaner puis Clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures".
Pour les autres paramètres, laisse-le avec ses réglages par défaut.
*Puis dans le menu Nettoyeur
-Clique sur Analyse (laisser travailler cela peut durer longtemps la 1ere fois)
-Clique sur le bouton Lancer le nettoyage.
-Clique une seconde fois sur le bouton Lancer le nettoyage
-clique sur registre cherche et repare les erreurs effectue trois fois la manipe pour que se sois efficace !
une fois ces manips effectuées recommence un scan complet avec antivir
pour le rootkit c est cochez pour le lecteur c
tools cleaner le lien ne prend pas et ccleaner je l est je peux faire avant tools ?
tools cleaner le lien ne prend pas et ccleaner je l est je peux faire avant tools ?
voila le rapport de tools ccleaner j espere que c est bon car je l est fait 2 fois ptite erreur donc dans le rapport c est le 2eme qui c est mis désolée
[ Rapport ToolsCleaner version 2.2.7 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Documents and Settings\HP_Propriétaire\Bureau\ComboFix.exe: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\HP_Propriétaire\Bureau\ComboFix.exe: ERREUR DE SUPPRESSION !!
[ Rapport ToolsCleaner version 2.2.7 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Documents and Settings\HP_Propriétaire\Bureau\ComboFix.exe: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\HP_Propriétaire\Bureau\ComboFix.exe: ERREUR DE SUPPRESSION !!
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
j ai fait aussi c cleaner apres j ai fait une recherche d erreur mais la je c est pas si je dois ou pas réparer les erreurs selectionnés car tout est coché masi je c est pas faire de copier coller pour te le montrer
non pas de soucis tu peu reparer les erreurs , ccleaner va te demander si tu veu creer une sauvegarde tu clique sur oui
voila les erreurs sont réparé il me la envoyé dans le registre mais ca je ne le trouve pas sinon l autre c est des petits carrés bleu mais je c est pas le coller ici .
voila j ai su ouvrir avec le bloc note mais j espere que c est celui la
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\MediaHub.skn"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Splash.hmp"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\About.bmp"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Splash.bmp"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Images\\Logo.png"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Images\\LogoDn.png"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Images\\LogoHi.png"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Tutorial\\Graphics\\action_area.gif"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\HTML\\FRA\\err_not_connected.htm"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\WINDOWS\\Downloaded Program Files\\dwusplay.dll"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\WINDOWS\\Downloaded Program Files\\dwusplay.exe"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Sonic\\MyDVD\\Styles\\NTSC\\DefaultMotionStyles_Lite\\DefaultMotionStyles_Lite.dvd"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Sonic\\MyDVD\\Styles\\PAL\\DefaultMotionStyles_Lite\\DefaultMotionStyles_Lite.dvd"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Help\\video.chm"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.CHS"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.CHT"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.DE"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.DEU"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.ES"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.ESP"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.FR"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.FRA"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.IT"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.ITA"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.JP"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.JPN"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.KOR"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.NL"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.NLD"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\SCM\\MTrackBase.scm"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\error-ENU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_1.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_3.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_4.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_5.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_6.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_7.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\logo.jpg"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\px_cl.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\redbullet.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-CHS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-CHT.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-CSY.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-DAN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-DEU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ENG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ENU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ESP.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-FIN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-FRA.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ITA.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-JPN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-KOR.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-NLD.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-NON.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-POL.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-PTG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-RUS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-SVE.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_1.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_10.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_2.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_3.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_4.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_5.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_6.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_7.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\logo.jpg"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\px_cl.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\redbullet.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-CHS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-CHT.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-CSY.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-DAN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-DEU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ENG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ENU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ESP.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-FIN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ITA.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-KOR.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-NLD.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-NON.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-POL.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-PTG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-RUS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-SVE.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\RealVideo\\avcnvt.ilk"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC120\\recorder.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC120\\usb2fw.hex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC150\\player.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC150\\recorder.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC150\\usb2fw.hex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MovieBoxUSB\\player.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MovieBoxUSB\\recorder.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MovieBoxUSB\\usb2fw.hex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Documents and Settings\\All Users\\Application Data\\SmartSound Software Inc\\Libraries\\Master Libraries.sxl"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MTrackRedEye.scm"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.!ut]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.!ut\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ase]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ase\OpenWithProgids]
"Photoshop.ExchangeableSwatchFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccd]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccd\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cin]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cin\OpenWithProgids]
"Photoshop.CINFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cmo]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cmo\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\OpenWithProgids]
"Photoshop.CameraRawFileCanon2.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\OpenWithProgids]
"Photoshop.CameraRawFileCanon.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\OpenWithProgids]
"Photoshop.CameraRawFileDigital.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\OpenWithProgids]
"Photoshop.CameraRawFileEpson.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exr\OpenWithProgids]
"Photoshop.OpenEXRFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gadget]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gadget\OpenWithList]
"a"="iexplore.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\OpenWithProgids]
"Photoshop.PortableBitMapFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.isn]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.isn\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsx]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsx\OpenWithProgids]
"JSXFile"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsxbin]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsxbin\OpenWithProgids]
"JSXBINFile"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mnu]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mnu\OpenWithProgids]
"Photoshop.MenuCustomizationFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\OpenWithProgids]
"Photoshop.CameraRawFileLeaf.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\OpenWithProgids]
"Photoshop.CameraRawFileMinolta.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nds]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nds\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\OpenWithProgids]
"Photoshop.CameraRawFileNikon.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nes]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nes\OpenWithList]
"a"="Nestopia Rplus!.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\OpenWithProgids]
"Photoshop.CameraRawFileOlympus.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\OpenWithProgids]
"Photoshop.RadianceFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdd]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdd\OpenWithProgids]
"Photoshop.PDDFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdp]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdp\OpenWithProgids]
"Photoshop.PDPFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\OpenWithProgids]
"Photoshop.CameraRawFilePentax.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psb]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psb\OpenWithProgids]
"Photoshop.PSBFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pxr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pxr\OpenWithProgids]
"Photoshop.PXRFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r30]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r30\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r31]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r31\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r32]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r32\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r33]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r33\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r34]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r34\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\OpenWithProgids]
"Photoshop.CameraRawFileFujifilm.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sav]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sav\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfv]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfv\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shh]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shh\OpenWithProgids]
"Photoshop.SHHFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\OpenWithProgids]
"Photoshop.CameraRawFileSony.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sta]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sta\OpenWithProgids]
"Photoshop.STAFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sub]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sub\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vpu]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vpu\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.x3f]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.x3f\OpenWithProgids]
"Photoshop.CameraRawFileFoveon.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\OpenWithList]
[HKEY_CLASSES_ROOT\AcroExch.Document\shell\Open]
[HKEY_CLASSES_ROOT\AcroExch.Document\shell\Open\Command]
@="\"C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AcroRd32.exe\" \"%1\""
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu]
@="CmdLineContextMenu Class"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu\CLSID]
@="{9869EFB4-18E9-11D3-A837-00104B9E30B5}"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu\CurVer]
@="CmdLineExt.CmdLineContextMenu.1"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu.1]
@="CmdLineContextMenu Class"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu.1\CLSID]
@="{9869EFB4-18E9-11D3-A837-00104B9E30B5}"
[HKEY_CLASSES_ROOT\FlashProp.FlashProp.1]
@="FlashProp Class"
[HKEY_CLASSES_ROOT\FlashProp.FlashProp.1\CLSID]
@="{1171A62F-05D2-11D1-83FC-00A0C9089C5A}"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker]
@=""
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker\CLSID]
@="{111C85E9-BB62-4528-A806-F0BE908E02F0}"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker\CurVer]
@="MSNMessenger.ContactsPicker.1"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker.1]
@=""
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker.1\CLSID]
@="{111C85E9-BB62-4528-A806-F0BE908E02F0}"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker.1\CurVer]
@="MSNMessenger.ContactsPicker"
[HKEY_CLASSES_ROOT\rayv\DefaultIcon]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\""
[HKEY_CLASSES_ROOT\rayv\shell\open]
@=""
[HKEY_CLASSES_ROOT\rayv\shell\open\command]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\" \"/command=%1\""
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}]
@="InstallShield Update Service Agent"
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}\InprocServer32]
@="c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,47,\
00,5d,00,26,00,7a,00,63,00,5e,00,66,00,37,00,67,00,28,00,5b,00,27,00,2e,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}\ProgID]
@="DWUSWebAgent.WebAgent.1"
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}\VersionIndependentProgID]
@="DWUSWebAgent.WebAgent"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}]
@="RayVActiveXCtrl Object"
"AppID"="{0C44F244-1019-4B1B-880A-608F7E27AE2B}"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\Control]
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\InprocServer32]
@="C:\\Program Files\\RayV\\RayV\\rayvactivex.dll"
"ThreadingModel"="apartment"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\MiscStatus]
@="0"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\MiscStatus\1]
@="131473"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\ProgID]
@="rayvactivex.RayVActiveXCtrl.1"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\ToolboxBitmap32]
@="C:\\Program Files\\RayV\\RayV\\rayvactivex.dll, 1"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\TypeLib]
@="{0C44F244-1019-4B1B-880A-608F7E27AE2B}"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\Version]
@="1.0"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\VersionIndependentProgID]
@="rayvactivex.RayVActiveXCtrl"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}]
@="OdysseyActiveX Class"
"AppID"="{5F8FD45A-D58C-4AAD-8EDE-B9B78F02B959}"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Control]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Implemented Categories]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Oberon Media\\Odyssey\\2.0.0.29\\Odyssey.dll"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\MiscStatus]
@="0"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\MiscStatus\1]
@="132497"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\ProgID]
@="Odyssey.OdysseyActiveX.1"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\ToolboxBitmap32]
@="C:\\Program Files\\Fichiers communs\\Oberon Media\\Odyssey\\2.0.0.29\\Odyssey.dll, 102"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\TypeLib]
@="{D45A9CD2-22CB-419F-87CF-94DCB7CA583F}"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Version]
@="1.0"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\VersionIndependentProgID]
@="Odyssey.OdysseyActiveX"
[HKEY_CLASSES_ROOT\CLSID\{4C904448-74A9-11d0-AF6E-00C04FD8DC02}]
@="PDF IFilter"
[HKEY_CLASSES_ROOT\CLSID\{4C904448-74A9-11d0-AF6E-00C04FD8DC02}\InprocServer32]
@="C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AcroRdIF.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}]
@="PRedEyeCorrection Class"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\InprocServer32]
@="C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MTrackRedEye.scm"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\ProgID]
@="MTrackRedEye.PRedEyeCorrection.1"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\TypeLib]
@="{4AD0B487-6F48-4A9B-B0AC-8266C75032EA}"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\VersionIndependentProgID]
@="MTrackRedEye.PRedEyeCorrection"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}]
@="InstallShield Update Service Agent"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}\InprocServer32]
@="c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,47,\
00,5d,00,26,00,7a,00,63,00,5e,00,66,00,37,00,67,00,28,00,5b,00,27,00,2e,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}\ProgID]
@="DWUSWebAgent.WebAgent.1"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}\VersionIndependentProgID]
@="DWUSWebAgent.WebAgent"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}]
@="Adobe Photoshop Image"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AutoConvertTo]
@="{76E9291E-57BD-45B4-8DA4-E4AC599DD39E}"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AuxUserType]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AuxUserType\2]
@="Image"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AuxUserType\3]
@="Adobe Photoshop CS3"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\0]
@="Adobe Photoshop Image,1,1,3"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\1]
@="Link Source,1,4,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\2]
@="3,1,32,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\3]
@="2,1,16,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DefaultIcon]
@="C:\\Program Files\\Adobe\\Adobe Photoshop CS3\\Photoshop.exe,0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\InProcHandler]
@="ole2.dll"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\InProcHandler32]
@="ole32.dll"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\Insertable]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\LocalServer32]
@="C:\\Program Files\\Adobe\\Adobe Photoshop CS3\\Photoshop.exe /Automation"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\MiscStatus]
@="1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\MiscStatus\4]
@="0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\ProgID]
@="Photoshop.Image.10"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\-1]
@="Show,0,0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\-2]
@="Open,0,0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\-3]
@="Hide,0,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\0]
@="&Edit,0,2"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\VersionIndependentProgID]
@="Photoshop.Image"
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}]
@="RayVEmbeddedComApi Object"
"AppID"=""
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\LocalServer32]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\""
"ThreadingModel"=""
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\ProgID]
@="RayV.RayVEmbeddedAPI.1"
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\TypeLib]
@="{31EB916B-D067-4DCB-BE93-0119B1771B17}"
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\VersionIndependentProgID]
@="RayV.RayVEmbeddedAPI"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}]
@="InstallShield Update Service Setup Player"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\InprocServer32]
@="c:\\WINDOWS\\DOWNLO~1\\dwusplay.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,71,\
00,41,00,2d,00,47,00,4c,00,68,00,27,00,35,00,67,00,28,00,59,00,7d,00,2d,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,67,00,3f,00,6e,00,53,00,33,\
00,5e,00,56,00,55,00,61,00,3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,\
3f,00,74,00,32,00,3e,00,70,00,41,00,2d,00,47,00,4c,00,68,00,27,00,35,00,67,\
00,28,00,59,00,7d,00,2d,00,30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,\
00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\LocalServer32]
@="c:\\WINDOWS\\DOWNLO~1\\dwusplay.EXE"
"LocalServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,71,\
00,41,00,2d,00,47,00,4c,00,68,00,27,00,35,00,67,00,28,00,59,00,7d,00,2d,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\ProgID]
@="DWSetup.Player.1"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\VersionIndependentProgID]
@="DWSetup.Player"
[HKEY_CLASSES_ROOT\CLSID\{CD1A30C2-EB62-4AD5-B2C5-A8A9BCCF3904}]
[HKEY_CLASSES_ROOT\CLSID\{CD1A30C2-EB62-4AD5-B2C5-A8A9BCCF3904}\LocalServer32]
@="C:\\Program Files\\Adobe\\Adobe Photoshop CS3\\Photoshop.exe /StiDevice:%1 /StiEvent:%2"
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}]
@="FlashBroker"
"LocalizedString"="@C:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil9f.exe,-101"
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation]
"Enabled"=dword:00000001
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32]
@="C:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil9f.exe"
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}]
@="InstallShield Update Service Agent"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}\InprocServer32]
@="c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,47,\
00,5d,00,26,00,7a,00,63,00,5e,00,66,00,37,00,67,00,28,00,5b,00,27,00,2e,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}\ProgID]
@="DWUSWebAgent.WebAgent.1"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}\VersionIndependentProgID]
@="DWUSWebAgent.WebAgent"
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}]
@="RayVComApi Object"
"AppID"=""
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\LocalServer32]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\""
"ThreadingModel"=""
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\ProgID]
@="RayV.RayVAPI.1"
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\TypeLib]
@="{31EB916B-D067-4DCB-BE93-0119B1771B17}"
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\VersionIndependentProgID]
@="RayV.RayVAPI"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Cake Mania 2]
"DisplayName"="Cake Mania 2"
"UninstallString"="C:\\PROGRA~1\\GAMEHO~1\\CAKEMA~1\\UNWISE.EXE /U C:\\PROGRA~1\\GAMEHO~1\\CAKEMA~1\\INSTALL.LOG"
"DisplayIcon"="C:\\Program Files\\GameHouse\\Cake Mania 2\\CakeMania2.exe,-0"
"Publisher"="GameHouse, Inc."
"URLInfoAbout"="https://www.gamehouse.com/welcome"
"HelpLink"="http://www.gamehouse.com/support/"
"DisplayVersion"="1.0.0.3"
"Comments"="Copyright © 2007 GameHouse, Inc."
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Mystery P.I. - The Lottery Ticket]
"DisplayName"="Mystery P.I. - The Lottery Ticket"
"UninstallString"="C:\\PROGRA~1\\GAMEHO~1\\MYSTER~1.-TH\\UNWISE.EXE /U C:\\PROGRA~1\\GAMEHO~1\\MYSTER~1.-TH\\INSTALL.LOG"
"DisplayIcon"="C:\\Program Files\\GameHouse\\Mystery P.I. - The Lottery Ticket\\MysteryPI.exe,-0"
"Publisher"="GameHouse, Inc."
"URLInfoAbout"="https://www.gamehouse.com/welcome"
"HelpLink"="http://www.gamehouse.com/support/"
"DisplayVersion"="1.0.0.3"
"Comments"="Copyright © 2007 GameHouse, Inc."
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Navilog1_is1]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast!]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,f0,92,03,00,00,00,00,c2,39,40,\
4e,38,5e,c9,01,06,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,41,00,6c,00,77,00,69,\
00,6c,00,20,00,53,00,6f,00,66,00,74,00,77,00,61,00,72,00,65,00,5c,00,41,00,\
76,00,61,00,73,00,74,00,34,00,5c,00,61,00,73,00,68,00,41,00,76,00,61,00,73,\
00,74,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Tonka à la rescousse]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,ff,ff,\
ff,ff,ff,ff,ff,00,00,00,00,43,00,3a,00,5c,00,48,00,41,00,53,00,42,00,52,00,\
4f,00,5c,00,54,00,4b,00,5f,00,53,00,52,00,5f,00,46,00,52,00,5c,00,53,00,52,\
00,5f,00,44,00,45,00,4c,00,39,00,35,00,2e,00,45,00,58,00,45,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2E3C6ABD-ABC7-4956-921B-FE86D8AD8F6B}_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,d0,72,00,00,00,00,00,50,c0,f9,\
9c,58,4a,c8,01,01,00,00,00,43,00,3a,00,5c,00,33,00,44,00,20,00,42,00,61,00,\
6c,00,6c,00,20,00,53,00,6c,00,69,00,64,00,65,00,72,00,5c,00,33,00,64,00,62,\
00,61,00,6c,00,6c,00,73,00,6c,00,69,00,64,00,65,00,72,00,5f,00,66,00,69,00,\
6e,00,61,00,6c,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{AC76BA86-7AD7-1036-7B44-A70500000002}]
"SlowInfoCache"=hex:28,02,00,00,00,00,00,00,00,54,b7,04,00,00,00,00,00,00,00,\
00,00,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_CURRENT_USER\Software\Wget]
[HKEY_LOCAL_MACHINE\Software\RayV]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Antivirus XP 2008]
"Order"=hex:08,00,00,00,02,00,00,00,ea,02,00,00,01,00,00,00,05,00,00,00,8c,00,\
00,00,00,00,00,00,7e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6c,00,32,\
00,63,06,00,00,24,39,d0,44,20,00,41,4e,54,49,56,49,7e,31,2e,4c,4e,4b,00,00,\
42,00,03,00,04,00,ef,be,24,39,cb,44,24,39,38,73,14,00,00,00,41,00,6e,00,74,\
00,69,00,76,00,69,00,72,00,75,00,73,00,20,00,58,00,50,00,20,00,32,00,30,00,\
30,00,38,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,\
00,00,00,1c,00,00,00,00,00,00,00,00,00,ac,00,00,00,01,00,00,00,9e,00,00,00,\
41,75,67,4d,02,00,00,00,01,00,00,00,8c,00,32,00,a4,05,00,00,24,39,d0,44,20,\
00,48,4f,57,54,4f,52,7e,31,2e,4c,4e,4b,00,00,62,00,03,00,04,00,ef,be,24,39,\
cb,44,24,39,38,73,14,00,00,00,48,00,6f,00,77,00,20,00,74,00,6f,00,20,00,52,\
00,65,00,67,00,69,00,73,00,74,00,65,00,72,00,20,00,41,00,6e,00,74,00,69,00,\
76,00,69,00,72,00,75,00,73,00,20,00,58,00,50,00,20,00,32,00,30,00,30,00,38,\
00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,\
1c,00,00,00,00,00,00,00,00,00,8c,00,00,00,02,00,00,00,7e,00,00,00,41,75,67,\
4d,02,00,00,00,01,00,00,00,6c,00,32,00,3e,06,00,00,24,39,d0,44,20,00,4c,49,\
43,45,4e,53,7e,31,2e,4c,4e,4b,00,00,42,00,03,00,04,00,ef,be,24,39,cb,44,24,\
39,38,73,14,00,00,00,4c,00,69,00,63,00,65,00,6e,00,73,00,65,00,20,00,41,00,\
67,00,72,00,65,00,65,00,6d,00,65,00,6e,00,74,00,2e,00,6c,00,6e,00,6b,00,00,\
00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,\
9e,00,00,00,03,00,00,00,90,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,7e,\
00,32,00,77,06,00,00,24,39,d0,44,20,00,52,45,47,49,53,54,7e,31,2e,4c,4e,4b,\
00,00,54,00,03,00,04,00,ef,be,24,39,cb,44,24,39,38,73,14,00,00,00,52,00,65,\
00,67,00,69,00,73,00,74,00,65,00,72,00,20,00,41,00,6e,00,74,00,69,00,76,00,\
69,00,72,00,75,00,73,00,20,00,58,00,50,00,20,00,32,00,30,00,30,00,38,00,2e,\
00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,\
00,00,00,00,00,00,00,00,7c,00,00,00,04,00,00,00,6e,00,00,00,41,75,67,4d,02,\
00,00,00,01,00,00,00,5c,00,32,00,4e,06,00,00,24,39,d0,44,20,00,55,4e,49,4e,\
53,54,7e,31,2e,4c,4e,4b,00,00,32,00,03,00,04,00,ef,be,24,39,cb,44,24,39,c8,\
7b,14,00,00,00,55,00,6e,00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,2e,00,\
6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,\
00,00,00,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus]
"Order"=hex:08,00,00,00,02,00,00,00,8c,01,00,00,01,00,00,00,03,00,00,00,8a,00,\
00,00,00,00,00,00,7c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6a,00,32,\
00,c4,06,00,00,25,39,46,98,20,00,41,56,41,53,54,21,7e,31,2e,4c,4e,4b,00,00,\
40,00,03,00,04,00,ef,be,25,39,46,98,39,39,5c,35,14,00,00,00,61,00,76,00,61,\
00,73,00,74,00,21,00,20,00,41,00,6e,00,74,00,69,00,76,00,69,00,72,00,75,00,\
73,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,\
00,1c,00,00,00,00,00,00,00,00,00,88,00,00,00,01,00,00,00,7a,00,00,00,41,75,\
67,4d,02,00,00,00,01,00,00,00,68,00,32,00,57,00,00,00,25,39,46,98,20,00,41,\
56,41,53,54,21,7e,31,2e,55,52,4c,00,00,3e,00,03,00,04,00,ef,be,25,39,46,98,\
39,39,5c,35,14,00,00,00,61,00,76,00,61,00,73,00,74,00,21,00,20,00,57,00,65,\
00,62,00,20,00,53,00,69,00,74,00,65,00,2e,00,75,00,72,00,6c,00,00,00,1c,00,\
0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,6e,00,00,\
00,02,00,00,00,60,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,4e,00,32,00,\
6f,07,00,00,25,39,46,98,20,00,48,65,6c,70,2e,6c,6e,6b,00,00,28,00,03,00,04,\
00,ef,be,25,39,46,98,39,39,5c,35,14,00,00,00,48,00,65,00,6c,00,70,00,2e,00,\
6c,00,6e,00,6b,00,00,00,18,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,00,\
00,00,00,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus(2)]
"Order"=hex:08,00,00,00,02,00,00,00,94,00,00,00,01,00,00,00,01,00,00,00,88,00,\
00,00,00,00,00,00,7a,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,68,00,32,\
00,57,00,00,00,54,39,c3,36,20,00,53,49,54,45,57,45,7e,31,2e,55,52,4c,00,00,\
3e,00,03,00,04,00,ef,be,54,39,c3,36,8b,39,ba,35,14,00,00,00,53,00,69,00,74,\
00,65,00,20,00,57,00,65,00,62,00,20,00,61,00,76,00,61,00,73,00,74,00,21,00,\
2e,00,75,00,72,00,6c,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,\
00,00,00,00,00,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\EA GAMES]
"Order"=hex:08,00,00,00,02,00,00,00,c0,00,00,00,01,00,00,00,01,00,00,00,b4,00,\
00,00,00,00,00,00,a6,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,94,00,31,\
00,00,00,00,00,67,39,97,7a,10,00,48,41,52,52,59,50,7e,31,00,00,6e,00,03,00,\
04,00,ef,be,67,39,97,7a,67,39,99,7a,14,00,00,00,48,00,61,00,72,00,72,00,79,\
00,20,00,50,00,6f,00,74,00,74,00,65,00,72,00,20,00,65,00,74,00,20,00,6c,00,\
65,00,20,00,70,00,72,00,69,00,73,00,6f,00,6e,00,6e,00,69,00,65,00,72,00,20,\
00,64,00,27,00,41,00,7a,00,6b,00,61,00,62,00,61,00,6e,00,28,00,54,00,4d,00,\
29,00,00,00,18,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,00,00,00,00,00,\
00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\EA GAMES\Harry Potter et le prisonnier d'Azkaban(TM)]
"Order"=hex:08,00,00,00,02,00,00,00,ca,03,00,00,01,00,00,00,06,00,00,00,92,00,\
00,00,00,00,00,00,84,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,72,00,32,\
00,13,05,00,00,67,39,97,7a,20,00,41,53,53,49,53,54,7e,31,2e,4c,4e,4b,00,00,\
48,00,03,00,04,00,ef,be,67,39,97,7a,67,39,97,7a,14,00,00,00,41,00,73,00,73,\
00,69,00,73,00,74,00,61,00,6e,00,63,00,65,00,20,00,74,00,65,00,63,00,68,00,\
6e,00,69,00,71,00,75,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,\
00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,7c,00,00,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\MediaHub.skn"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Splash.hmp"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\About.bmp"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Splash.bmp"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Images\\Logo.png"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Images\\LogoDn.png"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Skins\\Images\\LogoHi.png"=dword:00000003
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Tutorial\\Graphics\\action_area.gif"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\HTML\\FRA\\err_not_connected.htm"=dword:00000004
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\WINDOWS\\Downloaded Program Files\\dwusplay.dll"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\WINDOWS\\Downloaded Program Files\\dwusplay.exe"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Sonic\\MyDVD\\Styles\\NTSC\\DefaultMotionStyles_Lite\\DefaultMotionStyles_Lite.dvd"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Sonic\\MyDVD\\Styles\\PAL\\DefaultMotionStyles_Lite\\DefaultMotionStyles_Lite.dvd"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"c:\\Program Files\\Fichiers communs\\Sonic Shared\\Sonic Central\\Main\\Help\\video.chm"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.CHS"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.CHT"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.DE"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.DEU"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.ES"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.ESP"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.FR"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.FRA"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.IT"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.ITA"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.JP"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.JPN"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.KOR"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.NL"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\WINDOWS\\system32\\PSDrvCheck.NLD"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\SCM\\MTrackBase.scm"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\error-ENU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_1.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_3.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_4.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_5.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_6.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\hdr_register_7.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\logo.jpg"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\px_cl.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\redbullet.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-CHS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-CHT.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-CSY.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-DAN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-DEU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ENG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ENU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ESP.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-FIN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-FRA.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-ITA.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-JPN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-KOR.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-NLD.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-NON.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-POL.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-PTG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-RUS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\Register\\register-SVE.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_1.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_10.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_2.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_3.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_4.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_5.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_6.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\hdr_register_7.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\logo.jpg"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\px_cl.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\redbullet.gif"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-CHS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-CHT.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-CSY.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-DAN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-DEU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ENG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ENU.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ESP.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-FIN.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-ITA.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-KOR.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-NLD.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-NON.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-POL.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-PTG.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-RUS.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Pixie\\RegisterStudio\\register-SVE.html"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\RealVideo\\avcnvt.ilk"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC120\\recorder.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC120\\usb2fw.hex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC150\\player.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC150\\recorder.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\DVC150\\usb2fw.hex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MovieBoxUSB\\player.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MovieBoxUSB\\recorder.qthex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MovieBoxUSB\\usb2fw.hex"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Documents and Settings\\All Users\\Application Data\\SmartSound Software Inc\\Libraries\\Master Libraries.sxl"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MTrackRedEye.scm"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.!ut]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.!ut\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ase]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ase\OpenWithProgids]
"Photoshop.ExchangeableSwatchFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccd]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccd\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cin]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cin\OpenWithProgids]
"Photoshop.CINFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cmo]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cmo\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\OpenWithProgids]
"Photoshop.CameraRawFileCanon2.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\OpenWithProgids]
"Photoshop.CameraRawFileCanon.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\OpenWithProgids]
"Photoshop.CameraRawFileDigital.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\OpenWithProgids]
"Photoshop.CameraRawFileEpson.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exr\OpenWithProgids]
"Photoshop.OpenEXRFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gadget]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gadget\OpenWithList]
"a"="iexplore.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\OpenWithProgids]
"Photoshop.PortableBitMapFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.isn]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.isn\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsx]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsx\OpenWithProgids]
"JSXFile"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsxbin]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jsxbin\OpenWithProgids]
"JSXBINFile"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mnu]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mnu\OpenWithProgids]
"Photoshop.MenuCustomizationFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\OpenWithProgids]
"Photoshop.CameraRawFileLeaf.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\OpenWithProgids]
"Photoshop.CameraRawFileMinolta.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nds]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nds\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\OpenWithProgids]
"Photoshop.CameraRawFileNikon.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nes]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nes\OpenWithList]
"a"="Nestopia Rplus!.exe"
"MRUList"="a"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\OpenWithProgids]
"Photoshop.CameraRawFileOlympus.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\OpenWithProgids]
"Photoshop.RadianceFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdd]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdd\OpenWithProgids]
"Photoshop.PDDFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdp]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdp\OpenWithProgids]
"Photoshop.PDPFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\OpenWithProgids]
"Photoshop.CameraRawFilePentax.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psb]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psb\OpenWithProgids]
"Photoshop.PSBFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pxr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pxr\OpenWithProgids]
"Photoshop.PXRFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r30]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r30\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r31]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r31\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r32]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r32\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r33]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r33\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r34]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.r34\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\OpenWithProgids]
"Photoshop.CameraRawFileFujifilm.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sav]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sav\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfv]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sfv\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shh]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shh\OpenWithProgids]
"Photoshop.SHHFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\OpenWithProgids]
"Photoshop.CameraRawFileSony.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sta]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sta\OpenWithProgids]
"Photoshop.STAFile.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sub]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sub\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vpu]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vpu\OpenWithList]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.x3f]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.x3f\OpenWithProgids]
"Photoshop.CameraRawFileFoveon.10"=hex(0):
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\OpenWithList]
[HKEY_CLASSES_ROOT\AcroExch.Document\shell\Open]
[HKEY_CLASSES_ROOT\AcroExch.Document\shell\Open\Command]
@="\"C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AcroRd32.exe\" \"%1\""
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu]
@="CmdLineContextMenu Class"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu\CLSID]
@="{9869EFB4-18E9-11D3-A837-00104B9E30B5}"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu\CurVer]
@="CmdLineExt.CmdLineContextMenu.1"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu.1]
@="CmdLineContextMenu Class"
[HKEY_CLASSES_ROOT\CmdLineExt.CmdLineContextMenu.1\CLSID]
@="{9869EFB4-18E9-11D3-A837-00104B9E30B5}"
[HKEY_CLASSES_ROOT\FlashProp.FlashProp.1]
@="FlashProp Class"
[HKEY_CLASSES_ROOT\FlashProp.FlashProp.1\CLSID]
@="{1171A62F-05D2-11D1-83FC-00A0C9089C5A}"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker]
@=""
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker\CLSID]
@="{111C85E9-BB62-4528-A806-F0BE908E02F0}"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker\CurVer]
@="MSNMessenger.ContactsPicker.1"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker.1]
@=""
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker.1\CLSID]
@="{111C85E9-BB62-4528-A806-F0BE908E02F0}"
[HKEY_CLASSES_ROOT\MSNMessenger.ContactsPicker.1\CurVer]
@="MSNMessenger.ContactsPicker"
[HKEY_CLASSES_ROOT\rayv\DefaultIcon]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\""
[HKEY_CLASSES_ROOT\rayv\shell\open]
@=""
[HKEY_CLASSES_ROOT\rayv\shell\open\command]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\" \"/command=%1\""
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}]
@="InstallShield Update Service Agent"
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}\InprocServer32]
@="c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,47,\
00,5d,00,26,00,7a,00,63,00,5e,00,66,00,37,00,67,00,28,00,5b,00,27,00,2e,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}\ProgID]
@="DWUSWebAgent.WebAgent.1"
[HKEY_CLASSES_ROOT\CLSID\{2837E0FE-686B-4CB0-BE53-0EA097EAF71B}\VersionIndependentProgID]
@="DWUSWebAgent.WebAgent"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}]
@="RayVActiveXCtrl Object"
"AppID"="{0C44F244-1019-4B1B-880A-608F7E27AE2B}"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\Control]
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\InprocServer32]
@="C:\\Program Files\\RayV\\RayV\\rayvactivex.dll"
"ThreadingModel"="apartment"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\MiscStatus]
@="0"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\MiscStatus\1]
@="131473"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\ProgID]
@="rayvactivex.RayVActiveXCtrl.1"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\ToolboxBitmap32]
@="C:\\Program Files\\RayV\\RayV\\rayvactivex.dll, 1"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\TypeLib]
@="{0C44F244-1019-4B1B-880A-608F7E27AE2B}"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\Version]
@="1.0"
[HKEY_CLASSES_ROOT\CLSID\{3B1E1AB9-98C2-4B7E-AE01-59C84302BBDB}\VersionIndependentProgID]
@="rayvactivex.RayVActiveXCtrl"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}]
@="OdysseyActiveX Class"
"AppID"="{5F8FD45A-D58C-4AAD-8EDE-B9B78F02B959}"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Control]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Implemented Categories]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Oberon Media\\Odyssey\\2.0.0.29\\Odyssey.dll"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\MiscStatus]
@="0"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\MiscStatus\1]
@="132497"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\ProgID]
@="Odyssey.OdysseyActiveX.1"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\ToolboxBitmap32]
@="C:\\Program Files\\Fichiers communs\\Oberon Media\\Odyssey\\2.0.0.29\\Odyssey.dll, 102"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\TypeLib]
@="{D45A9CD2-22CB-419F-87CF-94DCB7CA583F}"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\Version]
@="1.0"
[HKEY_CLASSES_ROOT\CLSID\{3E8FD258-0359-4476-AAF4-7C5F65E9B46E}\VersionIndependentProgID]
@="Odyssey.OdysseyActiveX"
[HKEY_CLASSES_ROOT\CLSID\{4C904448-74A9-11d0-AF6E-00C04FD8DC02}]
@="PDF IFilter"
[HKEY_CLASSES_ROOT\CLSID\{4C904448-74A9-11d0-AF6E-00C04FD8DC02}\InprocServer32]
@="C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AcroRdIF.dll"
"ThreadingModel"="Both"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}]
@="PRedEyeCorrection Class"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\InprocServer32]
@="C:\\Program Files\\Pinnacle\\Shared Files\\Filter\\MTrackRedEye.scm"
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\ProgID]
@="MTrackRedEye.PRedEyeCorrection.1"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\TypeLib]
@="{4AD0B487-6F48-4A9B-B0AC-8266C75032EA}"
[HKEY_CLASSES_ROOT\CLSID\{575F4865-AD93-4456-9838-E121566A993F}\VersionIndependentProgID]
@="MTrackRedEye.PRedEyeCorrection"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}]
@="InstallShield Update Service Agent"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}\InprocServer32]
@="c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,47,\
00,5d,00,26,00,7a,00,63,00,5e,00,66,00,37,00,67,00,28,00,5b,00,27,00,2e,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}\ProgID]
@="DWUSWebAgent.WebAgent.1"
[HKEY_CLASSES_ROOT\CLSID\{5B7524C8-2446-40E9-9474-94A779DBA224}\VersionIndependentProgID]
@="DWUSWebAgent.WebAgent"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}]
@="Adobe Photoshop Image"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AutoConvertTo]
@="{76E9291E-57BD-45B4-8DA4-E4AC599DD39E}"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AuxUserType]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AuxUserType\2]
@="Image"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\AuxUserType\3]
@="Adobe Photoshop CS3"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\0]
@="Adobe Photoshop Image,1,1,3"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\1]
@="Link Source,1,4,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\2]
@="3,1,32,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DataFormats\GetSet\3]
@="2,1,16,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\DefaultIcon]
@="C:\\Program Files\\Adobe\\Adobe Photoshop CS3\\Photoshop.exe,0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\InProcHandler]
@="ole2.dll"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\InProcHandler32]
@="ole32.dll"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\Insertable]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\LocalServer32]
@="C:\\Program Files\\Adobe\\Adobe Photoshop CS3\\Photoshop.exe /Automation"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\MiscStatus]
@="1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\MiscStatus\4]
@="0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\ProgID]
@="Photoshop.Image.10"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb]
@=""
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\-1]
@="Show,0,0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\-2]
@="Open,0,0"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\-3]
@="Hide,0,1"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\verb\0]
@="&Edit,0,2"
[HKEY_CLASSES_ROOT\CLSID\{76E9291E-57BD-45b4-8DA4-E4AC599DD39E}\VersionIndependentProgID]
@="Photoshop.Image"
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}]
@="RayVEmbeddedComApi Object"
"AppID"=""
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\LocalServer32]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\""
"ThreadingModel"=""
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\ProgID]
@="RayV.RayVEmbeddedAPI.1"
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\TypeLib]
@="{31EB916B-D067-4DCB-BE93-0119B1771B17}"
[HKEY_CLASSES_ROOT\CLSID\{86863B92-67FA-425e-9AFE-C60FDEC626DA}\VersionIndependentProgID]
@="RayV.RayVEmbeddedAPI"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}]
@="InstallShield Update Service Setup Player"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\InprocServer32]
@="c:\\WINDOWS\\DOWNLO~1\\dwusplay.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,71,\
00,41,00,2d,00,47,00,4c,00,68,00,27,00,35,00,67,00,28,00,59,00,7d,00,2d,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,67,00,3f,00,6e,00,53,00,33,\
00,5e,00,56,00,55,00,61,00,3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,\
3f,00,74,00,32,00,3e,00,70,00,41,00,2d,00,47,00,4c,00,68,00,27,00,35,00,67,\
00,28,00,59,00,7d,00,2d,00,30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,\
00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\LocalServer32]
@="c:\\WINDOWS\\DOWNLO~1\\dwusplay.EXE"
"LocalServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,71,\
00,41,00,2d,00,47,00,4c,00,68,00,27,00,35,00,67,00,28,00,59,00,7d,00,2d,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\ProgID]
@="DWSetup.Player.1"
[HKEY_CLASSES_ROOT\CLSID\{885BB46A-3F1E-44C3-A01B-A7D9260CC98B}\VersionIndependentProgID]
@="DWSetup.Player"
[HKEY_CLASSES_ROOT\CLSID\{CD1A30C2-EB62-4AD5-B2C5-A8A9BCCF3904}]
[HKEY_CLASSES_ROOT\CLSID\{CD1A30C2-EB62-4AD5-B2C5-A8A9BCCF3904}\LocalServer32]
@="C:\\Program Files\\Adobe\\Adobe Photoshop CS3\\Photoshop.exe /StiDevice:%1 /StiEvent:%2"
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}]
@="FlashBroker"
"LocalizedString"="@C:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil9f.exe,-101"
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\Elevation]
"Enabled"=dword:00000001
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\LocalServer32]
@="C:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil9f.exe"
[HKEY_CLASSES_ROOT\CLSID\{D4304BCF-B8E9-4B35-BEA0-DC5B522670C2}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}]
@="InstallShield Update Service Agent"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}\InprocServer32]
@="c:\\WINDOWS\\Downloaded Program Files\\isusweb.dll"
"InprocServer32"=hex(7):67,00,3f,00,6e,00,53,00,33,00,5e,00,56,00,55,00,61,00,\
3f,00,6d,00,63,00,43,00,61,00,76,00,2c,00,63,00,3f,00,74,00,32,00,3e,00,47,\
00,5d,00,26,00,7a,00,63,00,5e,00,66,00,37,00,67,00,28,00,5b,00,27,00,2e,00,\
30,00,28,00,4b,00,27,00,70,00,7b,00,73,00,00,00,00,00
"ThreadingModel"="Apartment"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}\ProgID]
@="DWUSWebAgent.WebAgent.1"
[HKEY_CLASSES_ROOT\CLSID\{E9880553-B8A7-4960-A668-95C68BED571E}\VersionIndependentProgID]
@="DWUSWebAgent.WebAgent"
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}]
@="RayVComApi Object"
"AppID"=""
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\LocalServer32]
@="\"C:\\Program Files\\RayV\\RayV\\RayV.exe\""
"ThreadingModel"=""
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\ProgID]
@="RayV.RayVAPI.1"
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\Programmable]
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\TypeLib]
@="{31EB916B-D067-4DCB-BE93-0119B1771B17}"
[HKEY_CLASSES_ROOT\CLSID\{FA0766E0-9705-4EE8-B9D9-63D34AFA8748}\VersionIndependentProgID]
@="RayV.RayVAPI"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Cake Mania 2]
"DisplayName"="Cake Mania 2"
"UninstallString"="C:\\PROGRA~1\\GAMEHO~1\\CAKEMA~1\\UNWISE.EXE /U C:\\PROGRA~1\\GAMEHO~1\\CAKEMA~1\\INSTALL.LOG"
"DisplayIcon"="C:\\Program Files\\GameHouse\\Cake Mania 2\\CakeMania2.exe,-0"
"Publisher"="GameHouse, Inc."
"URLInfoAbout"="https://www.gamehouse.com/welcome"
"HelpLink"="http://www.gamehouse.com/support/"
"DisplayVersion"="1.0.0.3"
"Comments"="Copyright © 2007 GameHouse, Inc."
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Mystery P.I. - The Lottery Ticket]
"DisplayName"="Mystery P.I. - The Lottery Ticket"
"UninstallString"="C:\\PROGRA~1\\GAMEHO~1\\MYSTER~1.-TH\\UNWISE.EXE /U C:\\PROGRA~1\\GAMEHO~1\\MYSTER~1.-TH\\INSTALL.LOG"
"DisplayIcon"="C:\\Program Files\\GameHouse\\Mystery P.I. - The Lottery Ticket\\MysteryPI.exe,-0"
"Publisher"="GameHouse, Inc."
"URLInfoAbout"="https://www.gamehouse.com/welcome"
"HelpLink"="http://www.gamehouse.com/support/"
"DisplayVersion"="1.0.0.3"
"Comments"="Copyright © 2007 GameHouse, Inc."
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Navilog1_is1]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\avast!]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,f0,92,03,00,00,00,00,c2,39,40,\
4e,38,5e,c9,01,06,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,41,00,6c,00,77,00,69,\
00,6c,00,20,00,53,00,6f,00,66,00,74,00,77,00,61,00,72,00,65,00,5c,00,41,00,\
76,00,61,00,73,00,74,00,34,00,5c,00,61,00,73,00,68,00,41,00,76,00,61,00,73,\
00,74,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Tonka à la rescousse]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,ff,ff,ff,ff,ff,ff,ff,ff,ff,ff,ff,\
ff,ff,ff,ff,ff,00,00,00,00,43,00,3a,00,5c,00,48,00,41,00,53,00,42,00,52,00,\
4f,00,5c,00,54,00,4b,00,5f,00,53,00,52,00,5f,00,46,00,52,00,5c,00,53,00,52,\
00,5f,00,44,00,45,00,4c,00,39,00,35,00,2e,00,45,00,58,00,45,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{2E3C6ABD-ABC7-4956-921B-FE86D8AD8F6B}_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,d0,72,00,00,00,00,00,50,c0,f9,\
9c,58,4a,c8,01,01,00,00,00,43,00,3a,00,5c,00,33,00,44,00,20,00,42,00,61,00,\
6c,00,6c,00,20,00,53,00,6c,00,69,00,64,00,65,00,72,00,5c,00,33,00,64,00,62,\
00,61,00,6c,00,6c,00,73,00,6c,00,69,00,64,00,65,00,72,00,5f,00,66,00,69,00,\
6e,00,61,00,6c,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{AC76BA86-7AD7-1036-7B44-A70500000002}]
"SlowInfoCache"=hex:28,02,00,00,00,00,00,00,00,54,b7,04,00,00,00,00,00,00,00,\
00,00,00,00,00,02,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
[HKEY_CURRENT_USER\Software\Wget]
[HKEY_LOCAL_MACHINE\Software\RayV]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Antivirus XP 2008]
"Order"=hex:08,00,00,00,02,00,00,00,ea,02,00,00,01,00,00,00,05,00,00,00,8c,00,\
00,00,00,00,00,00,7e,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6c,00,32,\
00,63,06,00,00,24,39,d0,44,20,00,41,4e,54,49,56,49,7e,31,2e,4c,4e,4b,00,00,\
42,00,03,00,04,00,ef,be,24,39,cb,44,24,39,38,73,14,00,00,00,41,00,6e,00,74,\
00,69,00,76,00,69,00,72,00,75,00,73,00,20,00,58,00,50,00,20,00,32,00,30,00,\
30,00,38,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,\
00,00,00,1c,00,00,00,00,00,00,00,00,00,ac,00,00,00,01,00,00,00,9e,00,00,00,\
41,75,67,4d,02,00,00,00,01,00,00,00,8c,00,32,00,a4,05,00,00,24,39,d0,44,20,\
00,48,4f,57,54,4f,52,7e,31,2e,4c,4e,4b,00,00,62,00,03,00,04,00,ef,be,24,39,\
cb,44,24,39,38,73,14,00,00,00,48,00,6f,00,77,00,20,00,74,00,6f,00,20,00,52,\
00,65,00,67,00,69,00,73,00,74,00,65,00,72,00,20,00,41,00,6e,00,74,00,69,00,\
76,00,69,00,72,00,75,00,73,00,20,00,58,00,50,00,20,00,32,00,30,00,30,00,38,\
00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,\
1c,00,00,00,00,00,00,00,00,00,8c,00,00,00,02,00,00,00,7e,00,00,00,41,75,67,\
4d,02,00,00,00,01,00,00,00,6c,00,32,00,3e,06,00,00,24,39,d0,44,20,00,4c,49,\
43,45,4e,53,7e,31,2e,4c,4e,4b,00,00,42,00,03,00,04,00,ef,be,24,39,cb,44,24,\
39,38,73,14,00,00,00,4c,00,69,00,63,00,65,00,6e,00,73,00,65,00,20,00,41,00,\
67,00,72,00,65,00,65,00,6d,00,65,00,6e,00,74,00,2e,00,6c,00,6e,00,6b,00,00,\
00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,\
9e,00,00,00,03,00,00,00,90,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,7e,\
00,32,00,77,06,00,00,24,39,d0,44,20,00,52,45,47,49,53,54,7e,31,2e,4c,4e,4b,\
00,00,54,00,03,00,04,00,ef,be,24,39,cb,44,24,39,38,73,14,00,00,00,52,00,65,\
00,67,00,69,00,73,00,74,00,65,00,72,00,20,00,41,00,6e,00,74,00,69,00,76,00,\
69,00,72,00,75,00,73,00,20,00,58,00,50,00,20,00,32,00,30,00,30,00,38,00,2e,\
00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,\
00,00,00,00,00,00,00,00,7c,00,00,00,04,00,00,00,6e,00,00,00,41,75,67,4d,02,\
00,00,00,01,00,00,00,5c,00,32,00,4e,06,00,00,24,39,d0,44,20,00,55,4e,49,4e,\
53,54,7e,31,2e,4c,4e,4b,00,00,32,00,03,00,04,00,ef,be,24,39,cb,44,24,39,c8,\
7b,14,00,00,00,55,00,6e,00,69,00,6e,00,73,00,74,00,61,00,6c,00,6c,00,2e,00,\
6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,\
00,00,00,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus]
"Order"=hex:08,00,00,00,02,00,00,00,8c,01,00,00,01,00,00,00,03,00,00,00,8a,00,\
00,00,00,00,00,00,7c,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,6a,00,32,\
00,c4,06,00,00,25,39,46,98,20,00,41,56,41,53,54,21,7e,31,2e,4c,4e,4b,00,00,\
40,00,03,00,04,00,ef,be,25,39,46,98,39,39,5c,35,14,00,00,00,61,00,76,00,61,\
00,73,00,74,00,21,00,20,00,41,00,6e,00,74,00,69,00,76,00,69,00,72,00,75,00,\
73,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,\
00,1c,00,00,00,00,00,00,00,00,00,88,00,00,00,01,00,00,00,7a,00,00,00,41,75,\
67,4d,02,00,00,00,01,00,00,00,68,00,32,00,57,00,00,00,25,39,46,98,20,00,41,\
56,41,53,54,21,7e,31,2e,55,52,4c,00,00,3e,00,03,00,04,00,ef,be,25,39,46,98,\
39,39,5c,35,14,00,00,00,61,00,76,00,61,00,73,00,74,00,21,00,20,00,57,00,65,\
00,62,00,20,00,53,00,69,00,74,00,65,00,2e,00,75,00,72,00,6c,00,00,00,1c,00,\
0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,6e,00,00,\
00,02,00,00,00,60,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,4e,00,32,00,\
6f,07,00,00,25,39,46,98,20,00,48,65,6c,70,2e,6c,6e,6b,00,00,28,00,03,00,04,\
00,ef,be,25,39,46,98,39,39,5c,35,14,00,00,00,48,00,65,00,6c,00,70,00,2e,00,\
6c,00,6e,00,6b,00,00,00,18,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,00,\
00,00,00,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus(2)]
"Order"=hex:08,00,00,00,02,00,00,00,94,00,00,00,01,00,00,00,01,00,00,00,88,00,\
00,00,00,00,00,00,7a,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,68,00,32,\
00,57,00,00,00,54,39,c3,36,20,00,53,49,54,45,57,45,7e,31,2e,55,52,4c,00,00,\
3e,00,03,00,04,00,ef,be,54,39,c3,36,8b,39,ba,35,14,00,00,00,53,00,69,00,74,\
00,65,00,20,00,57,00,65,00,62,00,20,00,61,00,76,00,61,00,73,00,74,00,21,00,\
2e,00,75,00,72,00,6c,00,00,00,1c,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,1c,\
00,00,00,00,00,00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\EA GAMES]
"Order"=hex:08,00,00,00,02,00,00,00,c0,00,00,00,01,00,00,00,01,00,00,00,b4,00,\
00,00,00,00,00,00,a6,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,94,00,31,\
00,00,00,00,00,67,39,97,7a,10,00,48,41,52,52,59,50,7e,31,00,00,6e,00,03,00,\
04,00,ef,be,67,39,97,7a,67,39,99,7a,14,00,00,00,48,00,61,00,72,00,72,00,79,\
00,20,00,50,00,6f,00,74,00,74,00,65,00,72,00,20,00,65,00,74,00,20,00,6c,00,\
65,00,20,00,70,00,72,00,69,00,73,00,6f,00,6e,00,6e,00,69,00,65,00,72,00,20,\
00,64,00,27,00,41,00,7a,00,6b,00,61,00,62,00,61,00,6e,00,28,00,54,00,4d,00,\
29,00,00,00,18,00,0e,00,00,00,0a,00,ef,be,00,00,00,00,18,00,00,00,00,00,00,\
00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\EA GAMES\Harry Potter et le prisonnier d'Azkaban(TM)]
"Order"=hex:08,00,00,00,02,00,00,00,ca,03,00,00,01,00,00,00,06,00,00,00,92,00,\
00,00,00,00,00,00,84,00,00,00,41,75,67,4d,02,00,00,00,01,00,00,00,72,00,32,\
00,13,05,00,00,67,39,97,7a,20,00,41,53,53,49,53,54,7e,31,2e,4c,4e,4b,00,00,\
48,00,03,00,04,00,ef,be,67,39,97,7a,67,39,97,7a,14,00,00,00,41,00,73,00,73,\
00,69,00,73,00,74,00,61,00,6e,00,63,00,65,00,20,00,74,00,65,00,63,00,68,00,\
6e,00,69,00,71,00,75,00,65,00,2e,00,6c,00,6e,00,6b,00,00,00,1c,00,0e,00,00,\
00,0a,00,ef,be,00,00,00,00,1c,00,00,00,00,00,00,00,00,00,7c,00,00,00
bonjour tu vas bien ?
je n'avais pas besoin du rapport de ccleaner , desoles . lol
maintenant que tu as activée le module de detection de rootkit
effectue la mise a jour d'antivir puis effectue un scan complet de ton pc et poste le rapport de scan , nous devrions y voire plus claire
je n'avais pas besoin du rapport de ccleaner , desoles . lol
maintenant que tu as activée le module de detection de rootkit
effectue la mise a jour d'antivir puis effectue un scan complet de ton pc et poste le rapport de scan , nous devrions y voire plus claire
bonjour
je vais lancé la mise a jour maintenant et dirait quoi vers 15h15-30 car la je dois allez faire la garderie
a tantot et encor merci
je vais lancé la mise a jour maintenant et dirait quoi vers 15h15-30 car la je dois allez faire la garderie
a tantot et encor merci
oups ca ce fait ou la mise a jour car c est pas en francais et l anglais je le comprend pas du tout lol
merci
merci
Hello;
Télécharger ANTIVIR en français à partir de ce lien et tuto [ http://www.libellules.ch/tuto_antivir.php ] ou là http://www.zebulon.fr/actualites/3001-antivir-francais.html
Si problème de mise à jour, télécharger les Maj d'antivir ici : https://www.bytesin.com/software/Download-Avira-Antivir-Virus-Definition-File-Update/
Installer
Bonne chance
Al.
Télécharger ANTIVIR en français à partir de ce lien et tuto [ http://www.libellules.ch/tuto_antivir.php ] ou là http://www.zebulon.fr/actualites/3001-antivir-francais.html
Si problème de mise à jour, télécharger les Maj d'antivir ici : https://www.bytesin.com/software/Download-Avira-Antivir-Virus-Definition-File-Update/
Installer
Bonne chance
Al.
bonjour
voila le rapport de antivirus merci pour le lien en francais la mise a jour est faite
Avira AntiVir Personal
Date de création du fichier de rapport : mardi 16 décembre 2008 16:03
La recherche porte sur 1090113 souches de virus.
Détenteur de la licence :Avira AntiVir PersonalEdition Classic
Numéro de série : 0000149996-ADJIE-0001
Plateforme : Windows XP
Version de Windows :(Service Pack 2) [5.1.2600]
Mode Boot : Démarré normalement
Identifiant : SYSTEM
Nom de l'ordinateur :PROPRIÉTAIRE
Informations de version :
BUILD.DAT : 8.2.0.52 16931 Bytes 2/12/2008 14:55:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 16/12/2008 14:56:48
AVSCAN.DLL : 8.1.4.1 49921 Bytes 21/07/2008 13:44:27
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:16
LUKERES.DLL : 8.1.4.0 13057 Bytes 4/07/2008 07:30:27
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 14:56:48
ANTIVIR1.VDF : 7.1.0.197 1170432 Bytes 7/12/2008 14:56:48
ANTIVIR2.VDF : 7.1.0.230 156160 Bytes 14/12/2008 14:56:48
ANTIVIR3.VDF : 7.1.0.242 55296 Bytes 16/12/2008 14:56:48
Version du moteur: 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 10:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 16/12/2008 14:56:48
AESCN.DLL : 8.1.1.5 123251 Bytes 16/12/2008 14:56:48
AERDL.DLL : 8.1.1.3 438645 Bytes 16/12/2008 14:56:48
AEPACK.DLL : 8.1.3.4 393591 Bytes 16/12/2008 14:56:48
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 16/12/2008 14:56:48
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 16/12/2008 14:56:48
AEHELP.DLL : 8.1.2.0 119159 Bytes 16/12/2008 14:56:48
AEGEN.DLL : 8.1.1.8 323956 Bytes 16/12/2008 14:56:48
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 16/12/2008 14:56:48
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 9/07/2008 08:40:02
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:27:58
AVREP.DLL : 8.0.0.2 98344 Bytes 16/12/2008 14:56:48
AVREG.DLL : 8.0.0.1 33537 Bytes 9/05/2008 11:26:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:19
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:46
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:36
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:07
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 4/07/2008 07:23:16
RCTEXT.DLL : 8.0.52.1 86273 Bytes 17/07/2008 10:08:43
Configuration pour la recherche actuelle :
Nom de la tâche..................: Contrôle intégral du système
Fichier de configuration.........: c:\program files\avira\antivir personaledition classic\sysscan.avp
Documentation....................: bas
Action principale................: interactif
Action secondaire................: ignorer
Recherche sur les secteurs d'amorçage maître: marche
Recherche sur les secteurs d'amorçage: marche
Secteurs d'amorçage..............: C:, D:,
Recherche dans les programmes actifs: marche
Recherche en cours sur l'enregistrement: marche
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen
Début de la recherche : mardi 16 décembre 2008 16:03
La recherche sur les processus démarrés commence :
Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avcenter.exe' - '1' module(s) sont contrôlés
Processus de recherche 'sched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avgnt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avguard.exe' - '1' module(s) sont contrôlés
Processus de recherche 'WLLoginProxy.exe' - '1' module(s) sont contrôlés
Processus de recherche 'iexplore.exe' - '1' module(s) sont contrôlés
Processus de recherche 'jucheck.exe' - '1' module(s) sont contrôlés
Processus de recherche 'jusched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'hpsysdrv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wuauclt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'kbd.exe' - '1' module(s) sont contrôlés
Processus de recherche 'usnsvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'alg.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CLSched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wdfmgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'StarWindServiceAE.exe' - '1' module(s) sont contrôlés
Processus de recherche 'PSIService.exe' - '1' module(s) sont contrôlés
Processus de recherche 'nvsvc32.exe' - '1' module(s) sont contrôlés
Processus de recherche 'LSSrvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CLMLServer.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CLCapSvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CDAC11BA.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'guard.exe' - '1' module(s) sont contrôlés
Processus de recherche 'hpqtra08.exe' - '1' module(s) sont contrôlés
Processus de recherche 'msnmsgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'uTorrent.exe' - '1' module(s) sont contrôlés
Processus de recherche 'GoogleToolbarNotifier.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ctfmon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avgas.exe' - '1' module(s) sont contrôlés
Processus de recherche 'VM_STI.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'TrayIcon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'rundll32.exe' - '1' module(s) sont contrôlés
Processus de recherche 'hpwuSchd2.exe' - '1' module(s) sont contrôlés
Processus de recherche 'PCMService.exe' - '1' module(s) sont contrôlés
Processus de recherche 'RTHDCPL.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'explorer.exe' - '1' module(s) sont contrôlés
Processus de recherche 'spoolsv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'lsass.exe' - '1' module(s) sont contrôlés
Processus de recherche 'services.exe' - '1' module(s) sont contrôlés
Processus de recherche 'winlogon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés
Processus de recherche 'smss.exe' - '1' module(s) sont contrôlés
'49' processus ont été contrôlés avec '49' modules
La recherche sur les secteurs d'amorçage maître commence :
Secteur d'amorçage maître HD0
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD1
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD2
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD3
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD4
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
La recherche sur les secteurs d'amorçage commence :
Secteur d'amorçage 'C:\'
[INFO] Aucun virus trouvé !
Secteur d'amorçage 'D:\'
[INFO] Aucun virus trouvé !
La recherche sur les renvois aux fichiers exécutables (registre) commence.
Le registre a été contrôlé ( '65' fichiers).
La recherche sur les fichiers sélectionnés commence :
Recherche débutant dans 'C:\' <HP_PAVILION>
C:\hiberfil.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
C:\pagefile.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
C:\WINDOWS\system32\drivers\sptd.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
Recherche débutant dans 'D:\' <HP_RECOVERY>
Fin de la recherche : mardi 16 décembre 2008 16:45
Temps nécessaire: 42:04 Minute(s)
La recherche a été effectuée intégralement
7887 Les répertoires ont été contrôlés
456472 Des fichiers ont été contrôlés
0 Des virus ou programmes indésirables ont été trouvés
0 Des fichiers ont été classés comme suspects
0 Des fichiers ont été supprimés
0 Des virus ou programmes indésirables ont été réparés
0 Les fichiers ont été déplacés dans la quarantaine
0 Les fichiers ont été renommés
3 Impossible de contrôler des fichiers
456469 Fichiers non infectés
15745 Les archives ont été contrôlées
7 Avertissements
0 Consignes
voila le rapport de antivirus merci pour le lien en francais la mise a jour est faite
Avira AntiVir Personal
Date de création du fichier de rapport : mardi 16 décembre 2008 16:03
La recherche porte sur 1090113 souches de virus.
Détenteur de la licence :Avira AntiVir PersonalEdition Classic
Numéro de série : 0000149996-ADJIE-0001
Plateforme : Windows XP
Version de Windows :(Service Pack 2) [5.1.2600]
Mode Boot : Démarré normalement
Identifiant : SYSTEM
Nom de l'ordinateur :PROPRIÉTAIRE
Informations de version :
BUILD.DAT : 8.2.0.52 16931 Bytes 2/12/2008 14:55:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 16/12/2008 14:56:48
AVSCAN.DLL : 8.1.4.1 49921 Bytes 21/07/2008 13:44:27
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:16
LUKERES.DLL : 8.1.4.0 13057 Bytes 4/07/2008 07:30:27
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 14:56:48
ANTIVIR1.VDF : 7.1.0.197 1170432 Bytes 7/12/2008 14:56:48
ANTIVIR2.VDF : 7.1.0.230 156160 Bytes 14/12/2008 14:56:48
ANTIVIR3.VDF : 7.1.0.242 55296 Bytes 16/12/2008 14:56:48
Version du moteur: 8.2.0.45
AEVDF.DLL : 8.1.0.6 102772 Bytes 14/10/2008 10:05:56
AESCRIPT.DLL : 8.1.1.19 336252 Bytes 16/12/2008 14:56:48
AESCN.DLL : 8.1.1.5 123251 Bytes 16/12/2008 14:56:48
AERDL.DLL : 8.1.1.3 438645 Bytes 16/12/2008 14:56:48
AEPACK.DLL : 8.1.3.4 393591 Bytes 16/12/2008 14:56:48
AEOFFICE.DLL : 8.1.0.33 196987 Bytes 16/12/2008 14:56:48
AEHEUR.DLL : 8.1.0.75 1524087 Bytes 16/12/2008 14:56:48
AEHELP.DLL : 8.1.2.0 119159 Bytes 16/12/2008 14:56:48
AEGEN.DLL : 8.1.1.8 323956 Bytes 16/12/2008 14:56:48
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
AECORE.DLL : 8.1.5.2 172405 Bytes 16/12/2008 14:56:48
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 9/07/2008 08:40:02
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:27:58
AVREP.DLL : 8.0.0.2 98344 Bytes 16/12/2008 14:56:48
AVREG.DLL : 8.0.0.1 33537 Bytes 9/05/2008 11:26:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:19
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:46
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:36
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:07
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 4/07/2008 07:23:16
RCTEXT.DLL : 8.0.52.1 86273 Bytes 17/07/2008 10:08:43
Configuration pour la recherche actuelle :
Nom de la tâche..................: Contrôle intégral du système
Fichier de configuration.........: c:\program files\avira\antivir personaledition classic\sysscan.avp
Documentation....................: bas
Action principale................: interactif
Action secondaire................: ignorer
Recherche sur les secteurs d'amorçage maître: marche
Recherche sur les secteurs d'amorçage: marche
Secteurs d'amorçage..............: C:, D:,
Recherche dans les programmes actifs: marche
Recherche en cours sur l'enregistrement: marche
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen
Début de la recherche : mardi 16 décembre 2008 16:03
La recherche sur les processus démarrés commence :
Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avcenter.exe' - '1' module(s) sont contrôlés
Processus de recherche 'sched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avgnt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avguard.exe' - '1' module(s) sont contrôlés
Processus de recherche 'WLLoginProxy.exe' - '1' module(s) sont contrôlés
Processus de recherche 'iexplore.exe' - '1' module(s) sont contrôlés
Processus de recherche 'jucheck.exe' - '1' module(s) sont contrôlés
Processus de recherche 'jusched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'hpsysdrv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wuauclt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'kbd.exe' - '1' module(s) sont contrôlés
Processus de recherche 'usnsvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'alg.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CLSched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wdfmgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'StarWindServiceAE.exe' - '1' module(s) sont contrôlés
Processus de recherche 'PSIService.exe' - '1' module(s) sont contrôlés
Processus de recherche 'nvsvc32.exe' - '1' module(s) sont contrôlés
Processus de recherche 'LSSrvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CLMLServer.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CLCapSvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CDAC11BA.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'guard.exe' - '1' module(s) sont contrôlés
Processus de recherche 'hpqtra08.exe' - '1' module(s) sont contrôlés
Processus de recherche 'msnmsgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'uTorrent.exe' - '1' module(s) sont contrôlés
Processus de recherche 'GoogleToolbarNotifier.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ctfmon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avgas.exe' - '1' module(s) sont contrôlés
Processus de recherche 'VM_STI.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'TrayIcon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'rundll32.exe' - '1' module(s) sont contrôlés
Processus de recherche 'hpwuSchd2.exe' - '1' module(s) sont contrôlés
Processus de recherche 'PCMService.exe' - '1' module(s) sont contrôlés
Processus de recherche 'RTHDCPL.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'explorer.exe' - '1' module(s) sont contrôlés
Processus de recherche 'spoolsv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'lsass.exe' - '1' module(s) sont contrôlés
Processus de recherche 'services.exe' - '1' module(s) sont contrôlés
Processus de recherche 'winlogon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés
Processus de recherche 'smss.exe' - '1' module(s) sont contrôlés
'49' processus ont été contrôlés avec '49' modules
La recherche sur les secteurs d'amorçage maître commence :
Secteur d'amorçage maître HD0
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD1
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD2
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD3
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD4
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
La recherche sur les secteurs d'amorçage commence :
Secteur d'amorçage 'C:\'
[INFO] Aucun virus trouvé !
Secteur d'amorçage 'D:\'
[INFO] Aucun virus trouvé !
La recherche sur les renvois aux fichiers exécutables (registre) commence.
Le registre a été contrôlé ( '65' fichiers).
La recherche sur les fichiers sélectionnés commence :
Recherche débutant dans 'C:\' <HP_PAVILION>
C:\hiberfil.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
C:\pagefile.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
C:\WINDOWS\system32\drivers\sptd.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
Recherche débutant dans 'D:\' <HP_RECOVERY>
Fin de la recherche : mardi 16 décembre 2008 16:45
Temps nécessaire: 42:04 Minute(s)
La recherche a été effectuée intégralement
7887 Les répertoires ont été contrôlés
456472 Des fichiers ont été contrôlés
0 Des virus ou programmes indésirables ont été trouvés
0 Des fichiers ont été classés comme suspects
0 Des fichiers ont été supprimés
0 Des virus ou programmes indésirables ont été réparés
0 Les fichiers ont été déplacés dans la quarantaine
0 Les fichiers ont été renommés
3 Impossible de contrôler des fichiers
456469 Fichiers non infectés
15745 Les archives ont été contrôlées
7 Avertissements
0 Consignes
il faut activer le module de recherche de rootkit de antivir
Recherche en cours sur l'enregistrement: marche
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen
et derniere manip a effectuer tu dois purger ta restauration syteme afin d'y supprimer les virus restes en memoire dans ton pc
http://www.libellules.ch/desactiver_restauration.php
desactive la et ensuite tu la reactive puis tu cree un nouveau point de restauration sains
instal et execute ce petit logiciel qui va tout seul scanner ton pc afin de trouver les dernieres mises de tes logiciel ( n'instal pas les versions proposées en beta , elle peuvent etre instables )
http://www.filehippo.com/updatechecker/FHSetup.exe " updates checker "
Recherche en cours sur l'enregistrement: marche
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen
et derniere manip a effectuer tu dois purger ta restauration syteme afin d'y supprimer les virus restes en memoire dans ton pc
http://www.libellules.ch/desactiver_restauration.php
desactive la et ensuite tu la reactive puis tu cree un nouveau point de restauration sains
instal et execute ce petit logiciel qui va tout seul scanner ton pc afin de trouver les dernieres mises de tes logiciel ( n'instal pas les versions proposées en beta , elle peuvent etre instables )
http://www.filehippo.com/updatechecker/FHSetup.exe " updates checker "
re
le rootkit dans protection local controlé sur le pavillon c il est coché j ai regardé un peu partout ailleurs pour voir si il en avait un autre a activé mais j ai pas trouvé, est que je peux quand meme faire la suite ?
le rootkit dans protection local controlé sur le pavillon c il est coché j ai regardé un peu partout ailleurs pour voir si il en avait un autre a activé mais j ai pas trouvé, est que je peux quand meme faire la suite ?
voila c est fait mais je n est pas eu de rapport avec je l est réinstallé et toujours pas de rapport et quand je clic dessus il ne s ouvre pas je vais le réinstallé pour voir je dis quoi apres