> Tous les forums > Forum Sécurité
 gros problème de demarrage très lentSujet résolu
Ajouter un message à la discussion
Pages : [1] 2 ... Fin
Page 1 sur 2 [Fin]
pierr31
  Posté le 18/03/2010 @ 09:11 
Aller en bas de la page 
Petit astucien

Bonjour à tous,

Je voulais remettre en service mon ordi un êi ancien mais déjà sous XP (AMD 1200MHZ et grosses déceptions 16 virus , qui reviennent malgrés avast et la desactivation su système après mise en quarantaine des virus. Bref j'ai mis plusqieurs jour pour pouvoir l'utiliser et vous contacter. ai utiliser avast MT et ccleaner et travaillé en mode sans echec. J'ai donc pu se matin demarrer l'ordi normalement avec du temps. j'ai fait un Hijackthis donc voici le résultat pour commencer qprès on verra ensemble. il n'y a pas d'urgence.

Merci à ceux ou celle qui me repondront. A+

Logfile of HijackThis v1.99.0
Scan saved at 08:48:28, on 18/03/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Iomega\Tools_NT\IMGICON.EXE
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\OLIFAXVX\TOOLBAR.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\DOCUME~1\PIERRE\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis_199.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS02
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=10168&gct=&gc=1&q=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE
O4 - Global Startup: Iomega Icons.lnk = ?
O4 - Global Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Options de démarrage Iomega.lnk = C:\Program Files\Iomega\Tools_NT\STARTNT.EXE
O4 - Global Startup: Refresh.lnk = C:\Program Files\Iomega\Tools_NT\REFRESH.EXE
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.fr/computercheckup/qdiagcc.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: avast! iAVS4 Control Service - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique - Unknown - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements - Unknown - C:\WINDOWS\system32\services.exe
O23 - Service: Fax - Unknown - C:\WINDOWS\system32\fxssvc.exe
O23 - Service: Service COM de gravage de CD IMAPI - Unknown - C:\WINDOWS\System32\imapi.exe
O23 - Service: IomegaAccess - Iomega Corporation - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE
O23 - Service: Java Quick Starter - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Partage de Bureau à distance NetMeeting - Unknown - C:\WINDOWS\System32\mnmsrvc.exe
O23 - Service: Plug-and-Play - Unknown - C:\WINDOWS\system32\services.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance - Unknown - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce - Unknown - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Journaux et alertes de performance - Unknown - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Telnet - Unknown - C:\WINDOWS\System32\tlntsvr.exe
O23 - Service: Cliché instantané de volume - Unknown - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI - Unknown - C:\WINDOWS\System32\wbem\wmiapsrv.exe
O23 - Service: Service Partage réseau du Lecteur Windows Media - Unknown - C:\Program Files\Windows Media Player\WMPNetwk.exe
O23 - Service: ZipToA - Unknown - C:\WINDOWS\System32\ZipToA.exe

Publicité
chrifleur
 Posté le 18/03/2010 à 11:10 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

bonjour

infection effectivement...

  • Télécharge Toolbar-S&D d'Eric71, AngelDark, Sham_Rock et XmichouX sur ton Bureau,
  • Double-clique sur Toolbar-S&D afin de lancer l'installation, un raccourci sera ajouté sur le Bureau.
  • Double-clique dessus pour démarrer l'outil; choisis la langue.
Aide en image : http://toolbarsd.googlepages.com/aideenimages

  • Désactive ton antivirus, ton antipsyware résidant (spybot par exemple) durant la phase de nettoyage. Voir ici.
  • Double clique sur le raccourci de Toolbar-S&D présent sur ton bureau. Sous Vista : clic droit -> Exécuter en tant qu'administrateur.
  • Au menu principal, choisis l'option 2 et valide par la touche [Entrée].

/!\ Ne ferme pas la fenêtre lors de la suppression /!\
Un rapport sera généré. Poste ce rapport avec un nouveau rapport Hijackthis.

tailhardas
 Posté le 18/03/2010 à 11:11 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
  Astucien

bonjour

deja tu as la toolbar de ask, il faut deja la supprimer

ici



Modifié par tailhardas le 18/03/2010 11:11
pierr31
 Posté le 18/03/2010 à 11:40 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Merci de m'aider voici le rapport de Toolbar SD

-----------\\ ToolBar S&D 1.2.4 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) processor )
BIOS : Award Modular BIOS v6.00PG
USER : PIERRE ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1368 [VPS 100317-1] 4.8.1368 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:17 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)
F:\ (Local Disk) - NTFS - Total:4 Go (Free:3 Go)
G:\ (USB)

"C:\ToolBar SD" ( MAJ : 27-10-2008|09:25 )
Option : [2] ( 18/03/2010|11:28 )

-----------\\ Recherche de Fichiers / Dossiers ...


-----------\\ Extensions

(PIERRE) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.google.fr/"
"Search Bar"="http://g.msn.fr/0SEFRFR/SAOS02"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.msn.com/"
"Search Bar"="http://home.fr.netscape.com/fr/home/winsearch200.html"


--------------------\\ Recherche d'autres infections


Aucune autre infection trouvée !


1 - "C:\ToolBar SD\TB_1.txt" - 08/11/2008|18:27 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 08/11/2008|18:31 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 08/11/2008|18:34 - Option : [1]
4 - "C:\ToolBar SD\TB_4.txt" - 15/11/2008|11:27 - Option : [1]
5 - "C:\ToolBar SD\TB_5.txt" - 18/03/2010|11:28 - Option : [1]
6 - "C:\ToolBar SD\TB_6.txt" - 18/03/2010|11:30 - Option : [2]

-----------\\ Fin du rapport a 11:30:30,46

A+

merci a+ pour tes instructions je vais couper et relancer pour voir si cela va mieux

pierr31
 Posté le 18/03/2010 à 13:53 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

J'avais oublié le rapport nouveau de hijackthis le voilà .

Je compte remplacer avast par avira je l'ai sur mes autres PC j'en suis assez content/

Penses-tu nécessaire que je mette un pare feu différent de celui de windows?

J'ai aussi à changer intern exploreur pour le 7 ou le 8 mais je ne sais pas si le processeur assez ancien le le supportera AMD 1200 Mhz

j'ai aussi des vieux programme de mainteanace qui n'apparaissent pas dans la liste du panneau de configuration ni des programme mais qui sont bien "vivant" dans programme file. Comment m'en débarasser ?

J'ai encore mis du temps pour le demarrage c'est donc bien mieux mais je comprends qu'il doit rester des séaquelle de cette saloperie....

merci en attendant que l'on puisse continuer .

ogfile of HijackThis v1.99.1
Scan saved at 13:35:30, on 18/03/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Iomega\Tools_NT\IMGICON.EXE
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\OLIFAXVX\TOOLBAR.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\DOCUME~1\PIERRE\LOCALS~1\Temp\Répertoire temporaire 6 pour hijackthis_199.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS02
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE
O4 - Global Startup: Iomega Icons.lnk = ?
O4 - Global Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Options de démarrage Iomega.lnk = C:\Program Files\Iomega\Tools_NT\STARTNT.EXE
O4 - Global Startup: Refresh.lnk = C:\Program Files\Iomega\Tools_NT\REFRESH.EXE
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.fr/computercheckup/qdiagcc.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: IomegaAccess - Iomega Corporation - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe

chrifleur
 Posté le 18/03/2010 à 17:44 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

lance hijack this pour un scan et coche puis fixe de cette manière les lignes suivantes

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS02
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: Iomega Icons.lnk = ?
O4 - Global Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Options de démarrage Iomega.lnk = C:\Program Files\Iomega\Tools_NT\STARTNT.EXE
O4 - Global Startup: Refresh.lnk = C:\Program Files\Iomega\Tools_NT\REFRESH.EXE
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab

lance malwarebyte et poste son rapport

pierr31
 Posté le 18/03/2010 à 21:41 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

voilà donc le rapport de mbam je crois qu'il est bien.

Si tu peux jette un oeil sur l'ensemble j'ai deux java : java TM6 update7 et update 18 je pense que je peux supprimer la version 7

j'ai aussi java2 runtime environnement Standart V 1.3.1_03 et java J25E runtime environnement V 5.0 update 6.

Je conserve lequel?

Je n'ai pas essayer de redemarrer le PC jepréfère t'envoyer le rapport je verrai demain matin comment il démarre.

je peux maintenant remplacer l'anti virus par avira? Y a-t-il une procédure particulière pour supprimer AVAs?

merci

lwarebytes' Anti-Malware 1.44
Version de la base de données: 3883
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

18/03/2010 21:16:05
mbam-log-2010-03-18 (21-16-05).txt

Type de recherche: Examen complet (C:\|D:\|E:\|)
Eléments examinés: 207052
Temps écoulé: 1 hour(s), 3 minute(s), 50 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

pierr31
 Posté le 19/03/2010 à 20:04 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

bonsoir Grifleur,

Excuse moi peut-être es-tu absentes dans ce cas ne te vexe pas, mais j'aimerai savoir si mon ordi à encore besoin de "soins" après ces tests ou cela est suffisant?

Pour ma part ça va mieux, l'ordinateur à bien fonctionné hier soir. Peux-tu me renseigner sur les quelques question que j'ai posé hier ? Merci

chrifleur
 Posté le 20/03/2010 à 11:11 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

désolée pour le retard, panne d'internet hier

pour java tu ne conserves que la dernière version..

tu peux sans soucis remplacer par avira,

pour remplacer avast par contre il est préférable d'utiliser son désinstalleur

http://www.avast.com/fr-fr/uninstall-utility


Publicité
pierr31
 Posté le 20/03/2010 à 21:09 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Merci chrifleur , tu es excusée c'est moi qui devrait m'excuser .

en fait je suis toujours ennuyer après une nuit le demarrage est très long ; je n'arrive pas à cliquer sur un icone, , il met beaucoup de temps à réagir et au bout de 4 a 5 mn le dossier s'ouvre. Comme c'est très long j'ai cliqué plusieurs fois et là c'est 10 a 15mn, et souvent c'est l'avis ce fichier ne répond pas . C'est avec une patience d'ange que je démarre en sans échec puis en normal que j'arrive à démarrer et encore je n'ai pas le droit à l'erreur sinon il plante ., j'ai viré pas mal de fichiers lourd et inutile cela aurai du alléger mais c'est le contraire.

en fait le bienfait à été de courte durée, qu'en penses-tu?

Merci

pierr31
 Posté le 20/03/2010 à 22:40 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Je viens d'installer avira , j'ai avant désinstaller Avast , avec le programme que tu m'as indiqué ; avast à été désactivé, mais le programme est resté sur le disque dur et je ne peux le désinstaller avec lela suppression de programme de windows.

Je n'ose pas supprimer simplement et directement, je crois que c'est dangeureux as-tu une solution.

MERCI

chrifleur
 Posté le 21/03/2010 à 10:50 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

désactive antir réinstalle avast et recommence la suppression réactive antivir et dis moi...

pierr31
 Posté le 21/03/2010 à 18:27 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Bonjour,

Je n'ai pas eu besoin de reinstaller avast, j'ai juste recommencer plusieurs fois le programme de deinstallation que tu m'as indiqué et ça à marché, je pense quze je faisais

pierr31
 Posté le 21/03/2010 à 18:30 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Bon je recommence, excuse moi je veux aller plus vite que la machine et je fais des bétise , en fait j'ai recommencer la procédure que tu m'avais indiquée pour supprimer avast et là ça a marché.

Par contre j'avais un virus signalé par avira je te joinds le rapport dans le cadre réponse.

Merci

pierr31
 Posté le 21/03/2010 à 18:37 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Le fichier 'C:\System Volume Information\_restore{FE05312C-6F5D-45D7-90EE-519C33C87F8B}\RP20\A0041529.exe'
contenait un virus ou un programme indésirable 'WORM/Agent.CT' [worm].
Action(s) exécutée(s) :
Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4bd64772.qua' !

je n'ai pas trouvé le rapport du scan j'ai trouvé que "ça" peut-être que cela est suffisant quoi qu'il en soit je mettrais un scan en route ce soir.

Ce n'est pas encore super bien , mais j'arrive en moins de 10mn à demarrer le PC ce qui n'était pas le cas y a 3 jours.

Penses-tu que l'on peut faire mieux?

a+ merci

chrifleur
 Posté le 21/03/2010 à 19:14 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

on devrait...

ce n'est pas normal qu'il soit si long...

rescanne avec malwarebyte pour voir

pierr31
 Posté le 22/03/2010 à 16:49 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Bonjour,

voilà le rapport de malwarebytes, je pense qu'il n'y a rien de spécial:

Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3894
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

22/03/2010 10:55:45
mbam-log-2010-03-22 (10-55-45).txt

Type de recherche: Examen complet (C:\|D:\|E:\|)
Eléments examinés: 207965
Temps écoulé: 1 hour(s), 7 minute(s), 15 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Tu veux pas que je face un hijackthis à nouveau ou un RSIT ? peut être " ça fera parler le PC" , moi je ne sais pas le décoder.

Merci de ton aide à +

Publicité
chrifleur
 Posté le 22/03/2010 à 20:49 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

oui un RSIT

pierr31
 Posté le 22/03/2010 à 21:09 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

voilà les rapports log.txt

Logfile of random's system information tool 1.06 (written by random/random)
Run by PIERRE at 2010-03-22 21:05:22
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 18 GB (48%) free of 38 GB
Total RAM: 255 MB (43% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:06:02, on 22/03/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Documents and Settings\PIERRE\Bureau\RSIT.exe
C:\Program Files\trend micro\PIERRE.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.fr/computercheckup/qdiagcc.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (file missing)
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IomegaAccess - Iomega Corporation - C:\Program Files\Iomega\Tools_NT\IOMEGAACCESS.EXE
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\System32\ZipToA.exe

--
End of file - 5797 bytes

======Scheduled tasks folder======

et info.txt


======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ACDSee 4.0.1 Standard-->MsiExec.exe /I{F19FCF63-F3D9-41FE-AFC3-10BAF75F71ED}
Adobe Acrobat 5.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
Barre d'outils MSN-->C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\mtbs.exe c
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
CloneCD-->"C:\Program Files\Elaborate Bytes\CloneCD\ccd-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneCD"
Correctif pour Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB979306)-->"C:\WINDOWS\$NtUninstallKB979306$\spuninst\spuninst.exe"
EuroThink Chèque-->"C:\Program Files\EuroThink\Chèque\unins000.exe"
Extension Système de Microsoft Money-->MsiExec.exe /I{8C64E149-54BA-11D6-91B1-00500462BE80}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_E85CDE7661A53A6A.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
HP Image Zone Express-->MsiExec.exe /X{B314F1F2-49DF-41DD-A1B4-DC4192EC1021}
Intel A/V Codecs V2.0-->C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\System32\CDUninst.isu
IomegaWare pour Windows NT-->C:\WINDOWS\unin040c.exe -f"C:\Program Files\Iomega\Tools_NT\DeIsL1.isu"
iPhoto Plus 4-->C:\WINDOWS\unin040c.exe -f"C:\Program Files\iPhoto Plus 4\DeIsL1.isu"
J2SE Runtime Environment 5.0 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150060}
Java 2 Runtime Environment Standard Edition v1.3.1_03-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\JavaSoft\JRE\1.3.1_03\Uninst.isu"
Java(TM) 6 Update 18-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
K-Lite Codec Pack 3.7.5 Full-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Learn2 Player (Uninstall Only)-->C:\Program Files\Learn2.com\StRunner\stuninst.exe
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
LiveReg (Symantec Corporation)-->C:\Program Files\Fichiers communs\Symantec Shared\LiveReg\VcSetup.exe /REMOVE
LiveUpdate 2.6 (Symantec Corporation)-->C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /U
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{72AD53CC-CCC0-3757-8480-9EE176866A7C}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{0BD83598-C2EF-3343-847B-7D2E84599128}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Data Access Components KB870669-->C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
Microsoft Money-->MsiExec.exe /I{1D643CD0-4DD6-11D7-A4E0-000874180BB3}
Microsoft Office 97 Professional-->C:\Program Files\Microsoft Office\Office\Install\Acme.exe /w Off97Pro.STF
Microsoft Publisher 97-->C:\Program Files\Microsoft Publisher\Install\Install.exe /m
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971468)-->"C:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975560)-->"C:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975561)-->"C:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975713)-->"C:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB976325)-->"C:\WINDOWS\$NtUninstallKB976325$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977165-v2)-->"C:\WINDOWS\$NtUninstallKB977165-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB977914)-->"C:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978037)-->"C:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978251)-->"C:\WINDOWS\$NtUninstallKB978251$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978262)-->"C:\WINDOWS\$NtUninstallKB978262$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB978706)-->"C:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Mise à jour pour Microsoft Windows (KB971513)-->"C:\WINDOWS\$NtUninstallKB971513$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB978207)-->"C:\WINDOWS\$NtUninstallKB978207$\spuninst\spuninst.exe"
Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
Nero - Burning Rom (Web installer)-->C:\WINDOWS\UNNERO.exe /UNINSTALL
Olitec Speed'Com USB V92 Ready-->C:\Program Files\CONEXANT\CNXT_MODEM_USB_VID_0572&PID_1300\HXFSETUP.EXE -U -IVID_08E3&PID_0111
OpenOffice.org Installer 1.0-->MsiExec.exe /X{3A2AF807-9F9F-43C9-A24A-17B617238B74}
Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Photo Loader 1.1F-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\CASIO\Photo Loader\Uninst.isu"
Progitek Gestion Euros Express-->C:\WINDOWS\ST5UNST.EXE -n "c:\ST5UNST.LOG"
RealPlayer 5.0-->C:\WINDOWS\RAUNINST.exe Software\Progressive Networks\RealAudio Player\5.0
RealPlayer Basic-->C:\Program Files\Fichiers communs\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Security Update for Windows Search 4 - KB963093-->"C:\WINDOWS\$NtUninstallKB963093$\spuninst\spuninst.exe"
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows Live Messenger-->MsiExec.exe /I{F6326B60-1B1D-4ABF-BFCD-7B7404F44411}
Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
Windows Live Sign-in Assistant-->MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7}
Windows Media Connect-->"C:\WINDOWS\$NtUninstallWMCSetup$\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Search 4.0-->"C:\WINDOWS\$NtUninstallKB940157$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"

======Hosts File======

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com

======Security center information======

AV: AntiVir Desktop

======System event log======

Computer Name: ORDIRCH
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service NLA (Network Location Awareness).

Record Number: 3238
Source Name: Service Control Manager
Time Written: 20090926215205.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: ORDIRCH
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service avast! Web Scanner.

Record Number: 3237
Source Name: Service Control Manager
Time Written: 20090926215205.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: ORDIRCH
Event Code: 7036
Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.

Record Number: 3236
Source Name: Service Control Manager
Time Written: 20090926215142.000000+120
Event Type: Informations
User:

Computer Name: ORDIRCH
Event Code: 7036
Message: Le service Gestionnaire de connexions d'accès distant est entré dans l'état : en cours d'exécution.

Record Number: 3235
Source Name: Service Control Manager
Time Written: 20090926215140.000000+120
Event Type: Informations
User:

Computer Name: ORDIRCH
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service avast! Mail Scanner.

Record Number: 3234
Source Name: Service Control Manager
Time Written: 20090926215138.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

=====Application event log=====

Computer Name: INSTALLA-XNEDB4
Event Code: 105
Message: The service was started.

Record Number: 13099
Source Name: ZipToA
Time Written: 20060721150746.000000+120
Event Type: Informations
User:

Computer Name: INSTALLA-XNEDB4
Event Code: 3
Message:
Record Number: 13098
Source Name: NProtectService
Time Written: 20060721150741.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: INSTALLA-XNEDB4
Event Code: 105
Message: The service was started.

Record Number: 13097
Source Name: IomegaAccess
Time Written: 20060721150741.000000+120
Event Type: Informations
User:

Computer Name: INSTALLA-XNEDB4
Event Code: 1104
Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Completed all work. Shutting down.


Record Number: 13096
Source Name: .NET Runtime Optimization Service
Time Written: 20060721090633.000000+120
Event Type: Informations
User:

Computer Name: INSTALLA-XNEDB4
Event Code: 1102
Message: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Succesfully compiled: System.Web.Services, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a


Record Number: 13095
Source Name: .NET Runtime Optimization Service
Time Written: 20060721090632.000000+120
Event Type:
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 4 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=0402
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO

-----------------EOF-----------------

En esperant que tu pourras en tirer quelque chose

Merci Chrifleur

chrifleur
 Posté le 23/03/2010 à 14:27 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

bonjour

PROTECTION DU SYSTEME (Antivirus, FireWall, Anti-Malwares)
Avira®AntiVir PersonalEdition
Avira AntiVir PersonalEdition/Desktop
Avira®AntiVir PersonalEdition/Desktop
Alwil®Avast! Antivirus
Avira AntiVir Desktop
Symantec Norton LiveUpdate

cela fait un peu trop et explique la lenteur au démarrage

rechercher et supprimer par ajout suppression de programme si encore présents

Symantec Norton LiveUpdate

Alwil®Avast! Antivirus

ensuite

Télécharge OAD ( par !aur3n7) http://sosvirus.changelog.fr/OAD.exe
- Enregistre-le sur ton Bureau

Double clique sur le OAD pour le lancer

- nom de fichier à rechercher tape ou fais un copier coller de : symantec
- Type de recherche : Sélectionne l'option 6 puis valide [entrée]

OAD va maintenant rechercher le fichier. Laisse le travailler jusqu'à ce qu'il en ait terminé.
Le rapport de recherche s'affichera automatiquement à l’écran dès qu'il aura terminé.

- Fais un copier / coller de ce rapport dans ton prochain post.

Note importante : Suivant la taille des disques durs cette recherche peut prendre plusieurs minutes. Sois patient

recommence avec

norton

puis Avast!

puis Alwil

pierr31
 Posté le 24/03/2010 à 15:10 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

voilà les rapports Merci de ton aide je vais les envoyer en deux fois car c'est semble-t-il trop long

24/03/2010 ---- 14:15:52,65

----------------------------------
§§§§§§ [avast] §§§§§§
----------------------------------
[X] Registre
[ ] Fichier (rapide)
[ ] Fichier (disque systeme)
[X] Fichier (complete)


********************
[Registre]
********************


[HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software\Avast]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe]
"Path"="C:\\Program Files\\Alwil Software\\Avast4"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe]
@="C:\\Program Files\\Alwil Software\\Avast4\\ashAvast.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\www]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AAVMKER4\0000]
"DeviceDesc"="avast! Asynchronous Virus Monitor"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWMON2\0000]
"DeviceDesc"="avast! Standard Shield Support"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWSP\0000]
"DeviceDesc"="avast! Self Protection"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWTDI\0000]
"DeviceDesc"="avast! Network Shield Support"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWUPDSV\0000]
"DeviceDesc"="avast! iAVS4 Control Service"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"Service"="avast! Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"DeviceDesc"="avast! Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswUpdSv]
"DisplayName"="avast! iAVS4 Control Service"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswUpdSv]
"Description"="Fournit la mise à jour automatique pour l'antivirus avast!."

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AAVMKER4\0000]
"DeviceDesc"="avast! Asynchronous Virus Monitor"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWMON2\0000]
"DeviceDesc"="avast! Standard Shield Support"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWSP\0000]
"DeviceDesc"="avast! Self Protection"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWTDI\0000]
"DeviceDesc"="avast! Network Shield Support"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWUPDSV\0000]
"DeviceDesc"="avast! iAVS4 Control Service"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"Service"="avast! Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"DeviceDesc"="avast! Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswUpdSv]
"DisplayName"="avast! iAVS4 Control Service"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswUpdSv]
"Description"="Fournit la mise à jour automatique pour l'antivirus avast!."

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AAVMKER4\0000]
"DeviceDesc"="avast! Asynchronous Virus Monitor"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMON2\0000]
"DeviceDesc"="avast! Standard Shield Support"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWSP\0000]
"DeviceDesc"="avast! Self Protection"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWTDI\0000]
"DeviceDesc"="avast! Network Shield Support"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWUPDSV\0000]
"DeviceDesc"="avast! iAVS4 Control Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"Service"="avast! Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\0000]
"DeviceDesc"="avast! Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswUpdSv]
"DisplayName"="avast! iAVS4 Control Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswUpdSv]
"Description"="Fournit la mise à jour automatique pour l'antivirus avast!."

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast]
@="avast! antivirus"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\démarrage du programme]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\démarrage du programme\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Détection d'un message douteux]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Détection d'un message douteux\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Détection d'un message douteux\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\suspic.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Fin du programme]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Fin du programme\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Le bouton d'interface utilisateur simplifiée est enfoncé]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Le bouton d'interface utilisateur simplifiée est enfoncé\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Le bouton d'interface utilisateur simplifiée est enfoncé\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\press.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Logiciel malveillant trouvé]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Logiciel malveillant trouvé\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Logiciel malveillant trouvé\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\malfound.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Mise à jour VPS automatique]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Mise à jour VPS automatique\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Mise à jour VPS automatique\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\vpsupd.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Survol d'un bouton de l'interface utilisateur simplifiée par la souris]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Survol d'un bouton de l'interface utilisateur simplifiée par la souris\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Survol d'un bouton de l'interface utilisateur simplifiée par la souris\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\hover.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Tâche réalisée]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Tâche réalisée\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Tâche réalisée\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\ready.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Virus trouvé]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Virus trouvé\.Current]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Virus trouvé\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\virfound.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\ALWIL Software\Avast]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\www]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\www]

*******************
[Fichier]
*******************

c:\WINDOWS\Prefetch\AVAST.SETUP-032170A8.pf


*********************
[Même date]
*********************

C:\Config.Msi
C:\TB.txt
C:\ToolBar
C:\WINDOWS\Installer
C:\WINDOWS\Prefetch
C:\WINDOWS\pss
C:\WINDOWS\WinSxS
C:\WINDOWS\system32\drivers
C:\WINDOWS\system32\Logfiles
C:\WINDOWS\system32\drivers\.
C:\WINDOWS\system32\drivers\..

----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------

24/03/2010 ---- 14:10:44,42

----------------------------------
§§§§§§ [norton] §§§§§§
----------------------------------
[X] Registre
[ ] Fichier (rapide)
[ ] Fichier (disque systeme)
[X] Fichier (complete)


********************
[Registre]
********************


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Component Categories\{876412A8-3391-11D1-AB22-00600811C451}]
"409"="Norton Pre-Install Enabled Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{002E7DA2-BA9E-11D1-B526-0060085C418E}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\VolumeS.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{002E7DA2-BA9E-11D1-B526-0060085C418E}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{02926246-D3D1-11D1-B545-0060085C418E}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\SDOptions.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{02926246-D3D1-11D1-B545-0060085C418E}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2BC66F43-93A8-11D3-BEB6-00105AA9B6AE}\1.0]
@="Norton Internet Security AntiVirus Scan 1.0 Library"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{37C16012-B50F-11D1-B513-0060085C418E}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\SDDocSnapin.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{37C16012-B50F-11D1-B513-0060085C418E}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4C78B9E2-A887-11D1-B4FF-0060085C418E}\1.0\0\win32]
@="C:\\PROGRA~1\\NORTON~1\\SPEEDD~1\\nopdb.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4C78B9E2-A887-11D1-B4FF-0060085C418E}\1.0\HELPDIR]
@="C:\\PROGRA~1\\NORTON~1\\SPEEDD~1\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{643D8E15-B1F9-11D1-B50C-0060085C418E}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\sdntdrv.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{643D8E15-B1F9-11D1-B50C-0060085C418E}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6C68A7F7-6C82-11D2-BD50-E05AD2000000}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\DrvList.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6C68A7F7-6C82-11D2-BD50-E05AD2000000}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{71AD9F15-B2E1-11D1-B50F-0060085C418E}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\MapViewSnapin.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{71AD9F15-B2E1-11D1-B50F-0060085C418E}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{87FE4C63-7D87-11D2-BE60-00A0244D2D22}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\AnalysisSI.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{87FE4C63-7D87-11D2-BE60-00A0244D2D22}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E9905F20-8417-11D2-B364-00805FCD3EFB}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\SDResults.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E9905F20-8417-11D2-B364-00805FCD3EFB}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE520-61C2-11D2-B980-00805FCDA1A3}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\OptionsViewSnapin.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE520-61C2-11D2-B980-00805FCDA1A3}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE535-61C2-11D2-B980-00805FCDA1A3}\1.0\0\win32]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\ScheduleSI.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE535-61C2-11D2-B980-00805FCDA1A3}\1.0\HELPDIR]
@="C:\\Program Files\\Norton SystemWorks\\Speed Disk\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\Compatibility\NortonSystemInfo]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\489028BACF7D5CC48A5F49386D598DC4]
"00000000000000000000000000000000"="02:\\SOFTWARE\\Symantec\\Norton SystemWorks\\InstalledFrom"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Explorer_Shell_Extensions"="IcDYtx3}x8Iuaw^sGR%+Norton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Disk_Doctor"="ZGO$WT9pr9nEfn%SBWmXNorton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Integrator"="bwDZv-@Vp=%DXz5cQD&DNorton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_System_Doctor"="vV!EBj^kEA!a+(CCWZmmNorton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_UnErase_Wizard"="8P-1*?EMl@snE=@.=DX0Norton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Utilities_Basefiles"="BdY1sk.5]?UH4pTy}S'1Norton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Windoctor"="*@v_*TM+LASZR${ae)!BNorton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Wipe_Info"="ZRyB9TOtZ8?*5VqmF=VVNorton_Utilities"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Speed_Disk"="GMwP%u&DM@B)qptl7!]qNorton_Utilities"

"NU_System_Information"="@SF)[}u])?wN0f66AWF]Norton_Utilities"

"NU_System_Information"="@SF)[}u])?wN0f66AWF]Norton_Utilities"
"NU_WindocSharedex"="h7@QrDH9l@bAAwK2ev)ZNorton_Utilities"

"NU_System_Information"="@SF)[}u])?wN0f66AWF]Norton_Utilities"
"NU_Speed_Disk_NT_NU"="fI0^VJ7UZ9CVO~F'+GhCNorton_Utilities"

"NU_System_Information"="@SF)[}u])?wN0f66AWF]Norton_Utilities"
"NU_BeavCom"="in2{=-hF&Af)$P7pvMV7Norton_Utilities"

"NU_System_Information"="@SF)[}u])?wN0f66AWF]Norton_Utilities"
"NU_LiveUpdate"="$yaAfAUaO?OZRHYSz3f&Norton_Utilities"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\GlarySoft\Glary Utilities\Disk Cleaner\Exclude]
"*\\norton antivirus\\quarantine"=dword:00000001

*******************
[Fichier]
*******************

*********************
[Même date]
*********************

Aucun fichier créé à la même date détecté


----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------


pierr31
 Posté le 24/03/2010 à 15:13 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

La suite

24/03/2010 ---- 14:20:44,84

----------------------------------
§§§§§§ [alwil] §§§§§§
----------------------------------
[X] Registre
[ ] Fichier (rapide)
[ ] Fichier (disque systeme)
[X] Fichier (complete)


********************
[Registre]
********************


[HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software]

[HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software\Avast]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe]
"Path"="C:\\Program Files\\Alwil Software\\Avast4"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe]
@="C:\\Program Files\\Alwil Software\\Avast4\\ashAvast.exe"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Détection d'un message douteux\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\suspic.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Le bouton d'interface utilisateur simplifiée est enfoncé\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\press.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Logiciel malveillant trouvé\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\malfound.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Mise à jour VPS automatique\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\vpsupd.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Survol d'un bouton de l'interface utilisateur simplifiée par la souris\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\hover.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Tâche réalisée\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\ready.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\Virus trouvé\.Current]
@="C:\\Program Files\\Alwil Software\\Avast4\\French\\virfound.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\ALWIL Software]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\ALWIL Software\Avast]

*******************
[Fichier]
*******************

*********************
[Même date]
*********************

Aucun fichier créé à la même date détecté


----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------

24/03/2010 ---- 14:43:54,90

----------------------------------
§§§§§§ [symantec] §§§§§§
----------------------------------
[X] Registre
[ ] Fichier (rapide)
[ ] Fichier (disque systeme)
[X] Fichier (complete)


********************
[Registre]
********************


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\ProgID]
@="Symantec.stCheckForUpdates.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\VersionIndependentProgID]
@="Symantec.stCheckForUpdates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C17-24F8-11D3-B530-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C17-24F8-11D3-B530-00902771A435}\ProgID]
@="Symantec.stInetTransferItem.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C17-24F8-11D3-B530-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetTransferItem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C19-24F8-11D3-B530-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C19-24F8-11D3-B530-00902771A435}\ProgID]
@="Symantec.stInetBatchGet.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C19-24F8-11D3-B530-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetBatchGet"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A1-6BD0-11D3-B542-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A1-6BD0-11D3-B542-00902771A435}\ProgID]
@="Symantec.stLUProgressCallback.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A1-6BD0-11D3-B542-00902771A435}\VersionIndependentProgID]
@="Symantec.stLUProgressCallback"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A3-6BD0-11D3-B542-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A3-6BD0-11D3-B542-00902771A435}\ProgID]
@="Symantec.stCallbackManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A3-6BD0-11D3-B542-00902771A435}\VersionIndependentProgID]
@="Symantec.stCallbackManager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40800-D38D-11D3-B562-00902771A435}\InProcServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\LuComServerPS_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40801-D38D-11D3-B562-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40801-D38D-11D3-B562-00902771A435}\ProgID]
@="Symantec.stLog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40801-D38D-11D3-B562-00902771A435}\VersionIndependentProgID]
@="Symantec.stLog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5E-7B07-11D2-BF1F-00A024D73444}\InProcServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegComPS_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\InprocServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegCom_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\ProgID]
@="Symantec.luProductReg.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\VersionIndependentProgID]
@="Symantec.luProductReg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CEFD16C-91C2-4953-986E-EE77DE2DCF94}\InprocServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\NetDetectController_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\InprocServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegCom_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\ProgID]
@="Symantec.luGroup.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\VersionIndependentProgID]
@="Symantec.luGroup"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\ProgID]
@="Symantec.stSettings.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\VersionIndependentProgID]
@="Symantec.stSettings"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}]
@="Symantec AntiVirus scanner"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}\ProgID]
@="Symantec.NavSniff.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}\VersionIndependentProgID]
@="Symantec.NavSniff"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\ProgID]
@="Symantec.stHostCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\VersionIndependentProgID]
@="Symantec.stHostCatalog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{359C5E58-09FB-47E1-9D27-0AAB8C2A12B2}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LSPlugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{644E432F-49D3-41a1-8DD5-E099162EEEC5}]
@="Symantec RuFSI Utility Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E9EF3FE-BCA8-4F5C-AD81-3F4357205600}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LSCtrl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\ProgID]
@="Symantec.stPatchCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\VersionIndependentProgID]
@="Symantec.stPatchCatalog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\ProgID]
@="Symantec.stPatch.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\VersionIndependentProgID]
@="Symantec.stPatch"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75553A6D-1924-4C13-B218-085BB6D08094}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRRes.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75553A6D-1924-4C13-B218-085BB6D08094}\ProgID]
@="Symantec.Shared.LRRes.LRResMgr.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75553A6D-1924-4C13-B218-085BB6D08094}\VersionIndependentProgID]
@="Symantec.Shared.LRRes.LRResMgr"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81FA47D0-2F0C-4BAC-8F29-5D5CA1691069}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRCtrl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\ProgID]
@="Symantec.stDisScriptEngine.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\VersionIndependentProgID]
@="Symantec.stDisScriptEngine"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B0DE85A-F975-11D2-A985-00A0244D507A}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\IraLsClt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E47C874-8587-43D2-A862-53F6E17636D4}\InProcServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRRes.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B3A3465-FE53-11D3-9784-005004D12CC3}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\iraLSCl2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\ProgID]
@="Symantec.stInetGetFile.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetGetFile"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF4E-ACE9-11D3-BEBD-00105AA9B6AE}]
@="Symantec RuFSI File information Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF4E-ACE9-11D3-BEBD-00105AA9B6AE}\ProgID]
@="Symantec.SymVAFileQuery.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF4E-ACE9-11D3-BEBD-00105AA9B6AE}\VersionIndependentProgID]
@="Symantec.SymVAFileQuery"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE}]
@="Symantec RuFSI Registry Information Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE}\ProgID]
@="Symantec.SymVARegQuery.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE}\VersionIndependentProgID]
@="Symantec.SymVARegQuery"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C93FCF7F-6DF6-46C2-92E6-ABB1D1E96352}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LSPlugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8C437AA-74E3-4C9B-9409-603AA139FF2A}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRWebWnd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8C437AA-74E3-4C9B-9409-603AA139FF2A}\ProgID]
@="Symantec.Shared.lrWebWindow.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8C437AA-74E3-4C9B-9409-603AA139FF2A}\VersionIndependentProgID]
@="Symantec.Shared.lrWebWindow"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE2F6328-0707-11D4-9784-005004D12CC3}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\iraLSUI.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8D14F43-FC26-11D3-9784-005004D12CC3}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\iraLSCl2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\ProgID]
@="Symantec.stHost.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\VersionIndependentProgID]
@="Symantec.stHost"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\ProgID]
@="Symantec.stInetConnParms.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetConnParms"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Component Categories\{7CF2F881-02FB-11D1-AFD1-0020AFEB63DF}]
"409"="Symantec Correlators"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Component Categories\{7CF2F884-02FB-11D1-AFD1-0020AFEB63DF}]
"409"="Symantec Plug-In Root Correlators"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveupdateFile\DefaultIcon]
@="C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE,4"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RuFSI.SymUtility]
@="Symantec RuFSI Utility Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RuFSI.SymUtility.1]
@="Symantec RuFSI Utility Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup\CurVer]
@="Symantec.luGroup.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg\CurVer]
@="Symantec.luProductReg.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff]
@="Symantec AntiVirus scanner"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff\CurVer]
@="Symantec.NavSniff.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff.1]
@="Symantec AntiVirus scanner"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr\CurVer]
@="Symantec.Shared.LRRes.LRResMgr.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow\CurVer]
@="Symantec.Shared.lrWebWindow.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager\CurVer]
@="Symantec.stCallbackManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates\CurVer]
@="Symantec.stCheckForUpdates.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine\CurVer]
@="Symantec.stDisScriptEngine.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost\CurVer]
@="Symantec.stHost.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog\CurVer]
@="Symantec.stHostCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet\CurVer]
@="Symantec.stInetBatchGet.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms\CurVer]
@="Symantec.stInetConnParms.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile\CurVer]
@="Symantec.stInetGetFile.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem\CurVer]
@="Symantec.stInetTransferItem.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog\CurVer]
@="Symantec.stLog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback\CurVer]
@="Symantec.stLUProgressCallback.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch\CurVer]
@="Symantec.stPatch.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog\CurVer]
@="Symantec.stPatchCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings\CurVer]
@="Symantec.stSettings.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery]
@="Symantec RuFSI File information Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery\CurVer]
@="Symantec.SymVAFileQuery.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery.1]
@="Symantec RuFSI File information Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery]
@="Symantec RuFSI Registry Information Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery\CurVer]
@="Symantec.SymVARegQuery.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery.1]
@="Symantec RuFSI Registry Information Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{17580E52-7B07-11D2-BF1F-00A024D73444}\1.0\0\win32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegCom_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{17580E52-7B07-11D2-BF1F-00A024D73444}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec\\LiveUpdate\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51B9BCA6-4A06-11D3-B538-00902771A435}\1.0\0\win32]
@="C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51B9BCA6-4A06-11D3-B538-00902771A435}\1.0\HELPDIR]
@="C:\\PROGRA~1\\Symantec\\LIVEUP~1\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{60614412-BCD8-11D1-BC03-00600811C705}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\NCOMCAT.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{60614412-BCD8-11D1-BC03-00600811C705}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{838E8E82-F171-4006-A930-9D57949BC2AC}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRRes.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{838E8E82-F171-4006-A930-9D57949BC2AC}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{84699B2B-F985-4C87-ADB8-6FDCAD52ED22}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LSCtrl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{84699B2B-F985-4C87-ADB8-6FDCAD52ED22}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C02ABA7B-5269-4737-8DAE-3A453E6C9CD3}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRCtrl.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C02ABA7B-5269-4737-8DAE-3A453E6C9CD3}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C546DD23-7302-4E47-A4C1-E8417AD4243F}\1.0\0\win32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\NetDetectController_2_6.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C546DD23-7302-4E47-A4C1-E8417AD4243F}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec\\LiveUpdate\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EE311275-02B1-41F5-AB83-46F1EEE1DDFB}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LRWebWnd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EE311275-02B1-41F5-AB83-46F1EEE1DDFB}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FF2802B8-8E99-4518-B350-DF088BD26CE7}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\LSPlugin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FF2802B8-8E99-4518-B350-DF088BD26CE7}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}\DownloadInformation]
"CODEBASE"="http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{644E432F-49D3-41A1-8DD5-E099162EEEC5}\DownloadInformation]
"CODEBASE"="http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\LUALL.EXE]
@="C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\LUALL.EXE]
"Path"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cpls]
"SYMLIVE"="C:\\Program Files\\Symantec\\LiveUpdate\\S32LUCP1.CPL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\"="1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\Help\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DEE68F0FC3313E4CAD8E4C3EBCBEC40]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2Text.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4799D30A4DDA954429D8D4ED011517F9]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Script Blocking\\ScrAuth.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\489028BACF7D5CC48A5F49386D598DC4]
"00000000000000000000000000000000"="02:\\SOFTWARE\\Symantec\\Norton SystemWorks\\InstalledFrom"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50BBD0A1CB1FD3648A16157120DF2829]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2TNEF.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50E357748DE0DD840851872431DDB49B]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2RTF.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6925106EE9D0AF740BCCD43F8907862F]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2TAR.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EEA3CF07EBD65C48A3FE380BC2FF61E]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2LZ.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\91F31ECC41B96D243A45422551C96C23]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2Zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\956B95676BE85A84DA3C38A66DE87EF4]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2RAR.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8DC89FAF3F52B3448C6E06B118C405E]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2AMG.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC3E040CD66E45E49AF338BB1B4821BE]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2EXE.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE842139D531885469A1CDC35A26B1F4]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\DecSDK.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB26CE3D008E2FA499FDEE6A7A5B9335]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2CAB.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBAE3AAB8D0042547990AF991553C16B]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Script Blocking\\ScrBlock.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCD1A797A22A2444086E9E5F38AE3A76]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2MIME.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE6AEA47C44CE854791235345CE87CE6]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2LHA.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1AC78A74A3296B4BA739BA5E5766344]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2SS.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1D015D543A678D4088D751CA77430A5]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2ARJ.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D2EEB513BDC48C443B0FFC4606A08DFF]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2ID.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE6692E1170B7234EB5CFD71486A1C3F]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2GZIP.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F42B98E5315CA254F98CB0E739C7CEA1]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
"C:\\Program Files\\Symantec\\LiveUpdate\\S32LIVE1.DLL"=dword:00000064

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
"C:\\Program Files\\Symantec\\LiveUpdate\\S32LUIS1.DLL"=dword:00000064

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\IraLsClt.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
"DisplayName"="LiveReg (Symantec Corporation)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
"UninstallPath"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\VcSetup.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
"UninstallString"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\VcSetup.exe /REMOVE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
"InstallLocation"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
"Publisher"="Symantec Corporation"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
"QuietUninstallString"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\VcSetup.exe /SILENT /REMOVE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"UninstallString"="C:\\Program Files\\Symantec\\LiveUpdate\\LSETUP.EXE /U"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"DisplayName"="LiveUpdate 2.6 (Symantec Corporation)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"DisplayIcon"="C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"URLInfoAbout"="http://www.symantec.fr"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"InstallLocation"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"UninstallPath"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
"Publisher"="Symantec Corporation"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"DefAnnuity2"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"LiveReg"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\LiveReg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\LiveSubscribe]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\LiveSubscribe\Settings]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Shared Technology]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Shared Technology\AutoLiveUpdate]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Shared Technology\LiveAdvisor]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Shared Technology\LiveAdvisor\Apps]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
"LiveUpdate"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
"LiveUpdate1"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
"Location1"="C:\\Program Files\\Symantec"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
@="C:\\Program Files\\Symantec"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\LiveUpdate]
"EventMessageFile"="C:\\Program Files\\Symantec\\LiveUpdate\\LuComServer.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\LiveUpdate]
"EventMessageFile"="C:\\Program Files\\Symantec\\LiveUpdate\\LuComServer.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\LiveUpdate]
"EventMessageFile"="C:\\Program Files\\Symantec\\LiveUpdate\\LuComServer.exe"

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ALUAlert"="C:\\Program Files\\Symantec\\LiveUpdate\\ALUNotify.exe"

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Symantec NetDriver Warning"="C:\\PROGRA~1\\SYMNET~1\\SNDWarn.exe"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\EventLabels\NMain-MouseClick]
@="Symantec Integrator: Mouse Click"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\EventLabels\NMain-MouseLeave]
@="Symantec Integrator: Mouse Leave"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\EventLabels\NMain-MouseOver]
@="Symantec Integrator: Mouse Over"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseClick]
@="Symantec Integrator: Mouse Click"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseClick\.Current]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\NIMClick.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseClick\.Default]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\NIMClick.wav"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseLeave]
@="Symantec Integrator: Mouse Leave"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseOver]
@="Symantec Integrator: Mouse Over"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\GlarySoft\Glary Utilities\Disk Cleaner\Exclude]
"*\\symantec shared\\virusdefs"=dword:00000001

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Common]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Common\ISymUtil]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Common\ISymUtil\ModuleScan]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Common\ISymUtil\ModuleScan\Dlls - 16Bit]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Shared Technology]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Shared Technology\LiveReg]

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\Shared Technology\LiveReg]
"Store Root"="C:\\Documents and Settings\\PIERRE\\Application Data\\Symantec"

[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec\SystemWorks]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"ALUAlert"="C:\\Program Files\\Symantec\\LiveUpdate\\ALUNotify.exe"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"Symantec NetDriver Warning"="C:\\PROGRA~1\\SYMNET~1\\SNDWarn.exe"

*******************
[Fichier]
*******************

c:\Documents and Settings\All Users\Application Data\Symantec
c:\Documents and Settings\PIERRE\Application Data\Symantec
c:\Program Files\Symantec
c:\WINDOWS\system32\config\systemprofile\Application Data\Symantec
c:\Documents and Settings\All Users\Application Data\Symantec
c:\Documents and Settings\PIERRE\Application Data\Symantec
c:\Program Files\Symantec
c:\WINDOWS\system32\config\systemprofile\Application Data\Symantec


*********************
[Même date]
*********************

Aucun fichier créé à la même date détecté


----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------


chrifleur
 Posté le 24/03/2010 à 21:54 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

oups il reste du monde!!

je te prépare la suite....

chrifleur
 Posté le 24/03/2010 à 22:27 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

on commence...

suis ce tutoriel et sauvegarde ton Registre

https://forum.pcastuces.com/tuto_erunt-f31s5.htm

  • Télécharge OTM (de Old_Timer) sur ton bureau,
  • Double-clique sur OTM.exe pour lancer le programme,
  • Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste Instructions for Items to be Moved" :

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AAVMKER4]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWMON2]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWSP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWTDI]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWUPDSV]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswUpdSv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AAVMKER4]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWMON2]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWSP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWTDI]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWUPDSV]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswUpdSv]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswUpdSv]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AAVMKER4]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMON2]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWSP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWTDI]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWUPDSV]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswUpdSv]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]
[-KEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\ALWIL Software]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast]
[-HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com]
:files
c:\WINDOWS\Prefetch\AVAST.SETUP-032170A8.pf
:commands
[emptytemp]

  • Clique sur MoveIt! pour lancer la suppression,
  • Le résultat appraraîtra dans le cadre Results.
  • Clique sur Exit pour fermer le programme.
  • Poste le rapport qui est situé ici : C:\\\_OTM\MovedFiles
  • Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.

je reviens avec la suite


chrifleur
 Posté le 24/03/2010 à 23:10 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Groupe Sécurité

la suite

relance OTM et cette fois copie colle ce script, dis moi si tu as du mieux...

:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Component Categories\{876412A8-3391-11D1-AB22-00600811C451}]
"409"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{002E7DA2-BA9E-11D1-B526-0060085C418E}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{002E7DA2-BA9E-11D1-B526-0060085C418E}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{02926246-D3D1-11D1-B545-0060085C418E}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{02926246-D3D1-11D1-B545-0060085C418E}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2BC66F43-93A8-11D3-BEB6-00105AA9B6AE}\1.0]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{37C16012-B50F-11D1-B513-0060085C418E}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{37C16012-B50F-11D1-B513-0060085C418E}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4C78B9E2-A887-11D1-B4FF-0060085C418E}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4C78B9E2-A887-11D1-B4FF-0060085C418E}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{643D8E15-B1F9-11D1-B50C-0060085C418E}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{643D8E15-B1F9-11D1-B50C-0060085C418E}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6C68A7F7-6C82-11D2-BD50-E05AD2000000}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6C68A7F7-6C82-11D2-BD50-E05AD2000000}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{71AD9F15-B2E1-11D1-B50F-0060085C418E}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{71AD9F15-B2E1-11D1-B50F-0060085C418E}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{87FE4C63-7D87-11D2-BE60-00A0244D2D22}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{87FE4C63-7D87-11D2-BE60-00A0244D2D22}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E9905F20-8417-11D2-B364-00805FCD3EFB}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E9905F20-8417-11D2-B364-00805FCD3EFB}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE520-61C2-11D2-B980-00805FCDA1A3}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE520-61C2-11D2-B980-00805FCDA1A3}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE535-61C2-11D2-B980-00805FCDA1A3}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD0AE535-61C2-11D2-B980-00805FCDA1A3}\1.0\HELPDIR]
@=""
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\Compatibility\NortonSystemInfo]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\489028BACF7D5CC48A5F49386D598DC4]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Explorer_Shell_Extensions"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Disk_Doctor"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Integrator"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_System_Doctor"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_UnErase_Wizard"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Utilities_Basefiles"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Norton_Windoctor"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Wipe_Info"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\238D3C3469CAA3640230B1D8B1AF52F2\Features]
"NU_Speed_Disk"=-
"NU_System_Information"=-
"NU_WindocSharedex"=-
"NU_Speed_Disk_NT_NU"=-
"NU_BeavCom"=-
"NU_LiveUpdate"=-
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\GlarySoft\Glary Utilities\Disk Cleaner\Exclude]
"*\\norton antivirus\\quarantine"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40800-D38D-11D3-B562-00902771A435}\InProcServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5E-7B07-11D2-BF1F-00A024D73444}\InProcServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\ProgID]
@="
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CEFD16C-91C2-4953-986E-EE77DE2DCF94}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{359C5E58-09FB-47E1-9D27-0AAB8C2A12B2}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{644E432F-49D3-41a1-8DD5-E099162EEEC5}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6E9EF3FE-BCA8-4F5C-AD81-3F4357205600}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75553A6D-1924-4C13-B218-085BB6D08094}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75553A6D-1924-4C13-B218-085BB6D08094}\ProgID]
@="
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75553A6D-1924-4C13-B218-085BB6D08094}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81FA47D0-2F0C-4BAC-8F29-5D5CA1691069}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\ProgID]
@="
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B0DE85A-F975-11D2-A985-00A0244D507A}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E47C874-8587-43D2-A862-53F6E17636D4}\InProcServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9B3A3465-FE53-11D3-9784-005004D12CC3}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF4E-ACE9-11D3-BEBD-00105AA9B6AE}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF4E-ACE9-11D3-BEBD-00105AA9B6AE}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF4E-ACE9-11D3-BEBD-00105AA9B6AE}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C93FCF7F-6DF6-46C2-92E6-ABB1D1E96352}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8C437AA-74E3-4C9B-9409-603AA139FF2A}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8C437AA-74E3-4C9B-9409-603AA139FF2A}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8C437AA-74E3-4C9B-9409-603AA139FF2A}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DE2F6328-0707-11D4-9784-005004D12CC3}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8D14F43-FC26-11D3-9784-005004D12CC3}\InprocServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\LocalServer32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\ProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\VersionIndependentProgID]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Component Categories\{7CF2F881-02FB-11D1-AFD1-0020AFEB63DF}]
"409"="
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Component Categories\{7CF2F884-02FB-11D1-AFD1-0020AFEB63DF}]
"409"=""
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveupdateFile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RuFSI.SymUtility]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RuFSI.SymUtility.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.NavSniff.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.LRRes.LRResMgr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.Shared.lrWebWindow.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVAFileQuery.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymVARegQuery.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{17580E52-7B07-11D2-BF1F-00A024D73444}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{17580E52-7B07-11D2-BF1F-00A024D73444}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51B9BCA6-4A06-11D3-B538-00902771A435}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51B9BCA6-4A06-11D3-B538-00902771A435}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{60614412-BCD8-11D1-BC03-00600811C705}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{60614412-BCD8-11D1-BC03-00600811C705}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{838E8E82-F171-4006-A930-9D57949BC2AC}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{838E8E82-F171-4006-A930-9D57949BC2AC}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{84699B2B-F985-4C87-ADB8-6FDCAD52ED22}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{84699B2B-F985-4C87-ADB8-6FDCAD52ED22}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C02ABA7B-5269-4737-8DAE-3A453E6C9CD3}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C02ABA7B-5269-4737-8DAE-3A453E6C9CD3}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C546DD23-7302-4E47-A4C1-E8417AD4243F}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C546DD23-7302-4E47-A4C1-E8417AD4243F}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EE311275-02B1-41F5-AB83-46F1EEE1DDFB}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EE311275-02B1-41F5-AB83-46F1EEE1DDFB}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FF2802B8-8E99-4518-B350-DF088BD26CE7}\1.0\0\win32]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FF2802B8-8E99-4518-B350-DF088BD26CE7}\1.0\HELPDIR]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{2BC66F54-93A8-11D3-BEB6-00105AA9B6AE}\DownloadInformation]
"CODEBASE"="
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{644E432F-49D3-41A1-8DD5-E099162EEEC5}\DownloadInformation]
"CODEBASE"=""
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\LUALL.EXE]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\LUALL.EXE]
"Path"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cpls]
"SYMLIVE"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\Help\\"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DEE68F0FC3313E4CAD8E4C3EBCBEC40]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4799D30A4DDA954429D8D4ED011517F9]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\489028BACF7D5CC48A5F49386D598DC4]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50BBD0A1CB1FD3648A16157120DF2829]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50E357748DE0DD840851872431DDB49B]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6925106EE9D0AF740BCCD43F8907862F]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EEA3CF07EBD65C48A3FE380BC2FF61E]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\91F31ECC41B96D243A45422551C96C23]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\956B95676BE85A84DA3C38A66DE87EF4]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8DC89FAF3F52B3448C6E06B118C405E]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC3E040CD66E45E49AF338BB1B4821BE]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE842139D531885469A1CDC35A26B1F4]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB26CE3D008E2FA499FDEE6A7A5B9335]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BBAE3AAB8D0042547990AF991553C16B]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCD1A797A22A2444086E9E5F38AE3A76]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE6AEA47C44CE854791235345CE87CE6]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1AC78A74A3296B4BA739BA5E5766344]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1D015D543A678D4088D751CA77430A5]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D2EEB513BDC48C443B0FFC4606A08DFF]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE6692E1170B7234EB5CFD71486A1C3F]
"00000000000000000000000000000000"="
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F42B98E5315CA254F98CB0E739C7CEA1]
"00000000000000000000000000000000"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
"C:\\Program Files\\Symantec\\LiveUpdate\\S32LIVE1.DLL"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
"C:\\Program Files\\Symantec\\LiveUpdate\\S32LUIS1.DLL"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\IraLsClt.dll"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveReg]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Symantec]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\LiveUpdate]
[-HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ALUAlert"=-
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Symantec NetDriver Warning"=-
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\EventLabels\NMain-MouseClick]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\EventLabels\NMain-MouseLeave]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\EventLabels\NMain-MouseOver]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseClick]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseClick\.Current]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseLeave]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\.Default\NMain-MouseOver]
@=""
[HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\GlarySoft\Glary Utilities\Disk Cleaner\Exclude]
"*\\symantec shared\\virusdefs"=-
[-HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Symantec]
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"ALUAlert"=""
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"Symantec NetDriver Warning"=-
:files
c:\Documents and Settings\All Users\Application Data\Symantec
c:\Documents and Settings\PIERRE\Application Data\Symantec
c:\Program Files\Symantec
c:\WINDOWS\system32\config\systemprofile\Application Data\Symantec
c:\Documents and Settings\All Users\Application Data\Symantec
c:\Documents and Settings\PIERRE\Application Data\Symantec
c:\Program Files\Symantec
c:\WINDOWS\system32\config\systemprofile\Application Data\Symantec
:commands
[emptytemp]

pierr31
 Posté le 25/03/2010 à 18:05 
Aller en bas de la page Revenir au message précédent Revenir en haut de la page
Petit astucien

Bonjour chrifleur, quel travail je te donne......voici donc le premier rapport.

ll processes killed
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\ALWIL Software\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ashAvast.exe\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AAVMKER4\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWMON2\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWSP\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWTDI\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ASWUPDSV\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\aswUpdSv\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AAVMKER4\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWMON2\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWSP\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWTDI\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_ASWUPDSV\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswUpdSv\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\aswUpdSv\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AAVMKER4\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMON2\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWSP\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWTDI\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWUPDSV\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVAST!_ANTIVIRUS\ not found.
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\aswUpdSv\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast\ deleted successfully.
Registry key KEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\AppEvents\Schemes\Apps\Avast\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\ALWIL Software\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\avast! Antivirus\ not found.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1645522239-776561741-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\ deleted successfully.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-2007.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-downloads.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\avast-hq.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-avast.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\avast\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\free-software-center.com\www.avast\ deleted successfully.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\telecharger-avast.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-2007.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-downloads.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\avast-hq.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\download-avast.com\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\avast\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\free-software-center.com\www.avast\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\telecharger-avast.com\ not found.
========== FILES ==========
c:\WINDOWS\Prefetch\AVAST.SETUP-032170A8.pf moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrateur
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: All Users

User: ANNE MARIE
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: ASSOCIATION JGP
->Temp folder emptied: 78334 bytes
->Temporary Internet Files folder emptied: 359875 bytes

User: CHRIST
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: gargas

User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: MAIRIE
->Temp folder emptied: 14584 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: PIERRE
->Temp folder emptied: 352379 bytes
->Temporary Internet Files folder emptied: 3583401 bytes
->Java cache emptied: 0 bytes
->Flash cache emptied: 764 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 9668096 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 5702623 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 10455072 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 56216 bytes
RecycleBin emptied: 91989 bytes

Total Files Cleaned = 29,00 mb


OTM by OldTimer - Version 3.1.10.1 log created on 03252010_175125

Files moved on Reboot...
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\OV89M5I7\CA3ETOXX.com moved successfully.
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\OV89M5I7\CAF62P3F.com moved successfully.
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\OV89M5I7\gros_probleme_de_demarrage_tres_lent-f25s53803[1].htm moved successfully.
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\GHIJKLMN\CAGP6556.com moved successfully.
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\FE7MQBJ6\CA8LYTS1.com moved successfully.
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\FE7MQBJ6\CAFTD317.com moved successfully.
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\FE7MQBJ6\CAZ2ITZ7.com moved successfully.
File C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\8VXBEIN9\search[1]. not found!
C:\Documents and Settings\PIERRE\Local Settings\Temporary Internet Files\Content.IE5\0H2V8PMN\CA616L8X.com moved successfully.

Registry entries deleted on Reboot...

je te l'envoi et je continue merci encore

Publicité
Pages : [1] 2 ... Fin
Page 1 sur 2 [Fin]

Vous devez être connecté pour poster des messages. Cliquez ici pour vous identifier.

Vous n'avez pas de compte ? Créez-en un gratuitement !


Sujets relatifs
Problème de pc très lent au demarrage
Gros problème de latence, chargement très très long
PC très lent au démarrage
PC portable très lent au démarrage
Démarrage très lent, encore + récemment (écran noir trés long)
a chaque demarrage xp ordi tres lent durant 20 min
pc très lent, qui rame (surtout au démarrage)
PC très lent au démarrage
Pc très lent au démarrage, log Hijackthis joint
PC très lent et figé au démarrage
Plus de sujets relatifs à gros problème de demarrage très lent
 > Tous les forums > Forum Sécurité