lost résolu

Section d'analyse de rapports et de désinfection : malwares en tous genre et autres indésirables. Demandes de nettoyage uniquement. Prise en charge restreinte : équipe spécialisée.

Modérateur: Modérateurs

Règles du forum :arrow: Les désinfections sont prises en charge par un groupe spécifique, tout le monde ne peut pas intervenir pour désinfecter les machines (règles).
:arrow: Les procédures sont sur-mesure, ne faites pas la même chose chez vous (explications).
:arrow: Un topic par machine, chacun crée le sien. ;)

Re: lost

Messagepar Falkra » 15 Fév 2010 22:17

Télécharge Malwarebytes' Anti-Malware (MBAM)
Si ça ne se télécharge pas, que tu es redirigé, ou que MBAM ne démarre pas, signale-le moi : c'est un symptôme.

  • Double clique sur le fichier téléchargé pour lancer le processus d'installation.
  • Dans l'onglet "Mise à jour", clique sur le bouton "Recherche de mise à jour": si le pare-feu demande l'autorisation à MBAM de se connecter, accepte.
  • Une fois la mise à jour terminée, rends-toi dans l'onglet "Recherche".
  • Sélectionne "Exécuter un examen rapide"
  • Clique sur "Rechercher"
  • L'analyse démarre.
  • A la fin de l'analyse (mais ce n'est pas fini), un message s'affiche :
    L'examen s'est terminé normalement. Clique sur 'Afficher les résultats' pour afficher tous les objets trouvés.

    Clique sur "Ok" pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi. N'oublie pas la suite. ;-)
  • Ferme tes navigateurs.
  • Si des malwares ont été détectés, clique sur Afficher les résultats.
    Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
  • MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport et poste-le dans ta prochaine réponse.

NB : Si MBAM te demande à redémarrer, fais-le.
Pour récupérer le rapport de MBAM si tu as redémarré un peu vite, démarre MBAM et va dans l'onglet log/rapports, tu pourras double cliquer dessus (ils sont datés) pour le poster.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 15 Fév 2010 22:28

bah en effet il a rien détecté
ms comme on avait déjà commencé par ça c'e surement normal
voici le bloc note
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3742
Windows 6.1.7600
Internet Explorer 8.0.7600.16385

15/02/2010 22:25:49
mbam-log-2010-02-15 (22-25-49).txt

Type de recherche: Examen rapide
Eléments examinés: 99996
Temps écoulé: 3 minute(s), 39 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 15 Fév 2010 22:36

L'onglet IE affiche exactement LO.ST comme adresse ?

Peux-tu me faire une copie d'écran stp ?
Tu trouveras de l'aide pour le faire ici, sur le forum :
lire-avant-poster-f28.html
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 15 Fév 2010 22:56

j'ai bien fait ma copie d'écran sur paint en format .jpeg
le probleme c'e que quand je clic sur le lien pour savoir comment le mettre en ligne il me dit que la page n'existe pas
alors je sais pas comment faire pour t'envoyer ma copie d'écran mais l'adresse c'e bien http://lo.st/
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 15 Fév 2010 22:57

Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 15 Fév 2010 23:14

Merci je pense que j'ai compris
voici ce que ça donne

Image

dis moi que j'ai réussi
hihi
merci
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 15 Fév 2010 23:27

Tu as réussi, parfait pour la copie d'écran.

Utilise ce code pour SystemLook stp :
:regfind
.st


C'est un autre petit scan, plus large.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 16 Fév 2010 18:33

ok ci joint en 2 fois car je peux pas en une seule : trop de caractere
bon courage
:-D

SystemLook v1.0 by jpshortstuff (11.01.10)
Log created at 18:27 on 16/02/2010 by Céline (Administrator - Elevation successful)

========== regfind ==========

Searching for ".st"
[HKEY_CURRENT_USER\Software\Microsoft\Windows Live\Communications Clients\Shared\3550391938\Affinity\tkrdr.storage.msn.com]
[HKEY_LOCAL_MACHINE\COMPONENTS\CanonicalData\Deployments\microsoft-w..stickynotes_31bf3856ad364e35_6.1.7600.16385_a691ffc46a5357c1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-a..stant-adm.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_d159b756bd047a32]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-a..structure-manifests_31bf3856ad364e35_6.1.7600.16385_none_f9c056b9cd0366f5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-a..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_e665c683bff7ef12]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-a..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_f6a00d30a34ae11a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-e..storage-grouppolicy_31bf3856ad364e35_6.1.7600.16385_none_56ae7a348640808a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-h..statement.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_2ea9369d0a2ce0ff]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-i..stfilteringbinaries_31bf3856ad364e35_6.1.7600.16385_none_2e85fc7ec5fb7db1]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-i..stmonitor.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_5d4aa847099fb4ca]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-i..stomloggingbinaries_31bf3856ad364e35_6.1.7600.16385_none_0c741d2872a20a44]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-m..stration-deployment_31bf3856ad364e35_6.1.7600.16385_none_4b46ecbcd31952ba]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-n..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_ecb208fc9c541be3]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-o..style-layeredtitles_31bf3856ad364e35_6.1.7600.16385_none_4ad2978b8b3ac8b2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-p..st-client-migration_31bf3856ad364e35_6.1.7600.16385_none_0d495cc6292f080c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-p..st-common.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_69096b24e8486491]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-p..standardportmonitor_31bf3856ad364e35_6.1.7600.16385_none_ffbb87eff2f3f869]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-p..stics-adm.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_cbb096d1a8d6d240]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-p..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_63942029c89460e2]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-r..stbootrepair-events_31bf3856ad364e35_6.1.7600.16385_none_ac05ac78a4777ecb]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-r..stion-detector-core_31bf3856ad364e35_6.1.7600.16385_none_54dd4ad229c92897]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-r..stion-resolver-core_31bf3856ad364e35_6.1.7600.16385_none_fcf27d7d89ee8e4b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-s..stack-msg.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_60bd53159ffd70c9]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-s..store-adm.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_c7574b1ee3a15ccd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-s..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_9d774152432708ef]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_microsoft-windows-t..stringime.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_882de4394e753398]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_netfx35linq-microsoft.visualc.stlclr.ref_31bf3856ad364e35_6.1.7600.16385_none_5bf06295324feb0e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\amd64_netfx35linq-microsoft.visualc.stlclr_31bf3856ad364e35_6.1.7600.16385_none_b0cd07cfb8bd5603]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\msil_microsoft.visualc.stlclr.ref_b03f5f7f11d50a3a_6.1.7600.16385_none_64fc1e0449b56e85]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\msil_microsoft.visualc.stlclr_b03f5f7f11d50a3a_6.1.7600.16385_none_d1f1a4588757895a]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-a..structure-manifests_31bf3856ad364e35_6.1.7600.16385_none_0415010c016428f0]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-i..stfilteringbinaries_31bf3856ad364e35_6.1.7600.16385_none_38daa6d0fa5c3fac]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-i..stmonitor.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_679f52993e0076c5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-i..stomloggingbinaries_31bf3856ad364e35_6.1.7600.16385_none_16c8c77aa702cc3f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-p..st-client-migration_31bf3856ad364e35_6.1.7600.16385_none_179e07185d8fca07]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-p..st-common.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_735e15771ca9268c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\wow64_microsoft-windows-p..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_6de8ca7bfcf522dd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-a..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_8a472b00079a7ddc]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-a..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_9a8171aceaed6fe4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-n..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_90936d78e3f6aaad]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-r..stion-detector-core_31bf3856ad364e35_6.1.7600.16385_none_f8beaf4e716bb761]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-r..stion-resolver-core_31bf3856ad364e35_6.1.7600.16385_none_a0d3e1f9d1911d15]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-s..structure.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_4158a5ce8ac997b9]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_microsoft-windows-t..stringime.resources_31bf3856ad364e35_6.1.7600.16385_fr-fr_2c0f48b59617c262]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\Components\x86_netfx35linq-microsoft.visualc.stlclr_31bf3856ad364e35_6.1.7600.16385_none_54ae6c4c005fe4cd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-a..iles-help.resources_31bf3856ad364e35_fr-fr_ae6ebeca82d64452\f256!stopwrds.stp]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-a..stant-adm.resources_31bf3856ad364e35_fr-fr_0948bf46bd111e6d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-a..structure-manifests_31bf3856ad364e35_none_abe809b22d113d02]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-a..structure.resources_31bf3856ad364e35_fr-fr_2ccc752c6767d88d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-a..structure.resources_31bf3856ad364e35_fr-fr_f2d093976a9784c5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-e..storage-grouppolicy_31bf3856ad364e35_none_34b5f228c326e4d5]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-h..statement.resources_31bf3856ad364e35_fr-fr_6ba0e453264584c8]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-i..stfilteringbinaries_31bf3856ad364e35_none_5a5d5587d883e526]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-i..stmonitor.resources_31bf3856ad364e35_fr-fr_8f8c1e515f38c295]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-i..stomloggingbinaries_31bf3856ad364e35_none_56ba05bd371c0e6b]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-m..stration-deployment_31bf3856ad364e35_none_0afe77f281b97825]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-n..structure.resources_31bf3856ad364e35_fr-fr_237f568ec0b2f004]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-o..style-layeredtitles_31bf3856ad364e35_none_d71735cf17eea3ed]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-p..st-client-migration_31bf3856ad364e35_none_6b691e54949a9ce3]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-p..st-common.resources_31bf3856ad364e35_fr-fr_36925cd1d4b43d46]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-p..standardportmonitor_31bf3856ad364e35_none_0f70dab5eff6822e]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-p..stics-adm.resources_31bf3856ad364e35_fr-fr_f772ca3269f9bf4f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-p..structure.resources_31bf3856ad364e35_fr-fr_df7797cf4a01213d]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-r..stbootrepair-events_31bf3856ad364e35_none_db7854e9dc3d3a5c]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-r..stion-detector-core_31bf3856ad364e35_none_4d51b739b0fb43f0]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-r..stion-resolver-core_31bf3856ad364e35_none_841f0793fba1c6dc]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-s..stack-msg.resources_31bf3856ad364e35_fr-fr_038cdd9c6af574ce]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-s..store-adm.resources_31bf3856ad364e35_fr-fr_7e61964c46ffafea]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-s..structure.resources_31bf3856ad364e35_fr-fr_bcb98cd0ca9b8058]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_microsoft-windows-t..stringime.resources_31bf3856ad364e35_fr-fr_271b6d051eaf42b7]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_netfx35linq-microsoft.visualc.stlclr.ref_31bf3856ad364e35_none_7ee3f8799396f571]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_netfx35linq-microsoft.visualc.stlclr.ref_31bf3856ad364e35_none_7ee3f8799396f571\f256!microsoft.visualc.stlclr._618f404609647a15]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_netfx35linq-microsoft.visualc.stlclr_31bf3856ad364e35_none_005d4bc584a73ee4]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\amd64_netfx35linq-microsoft.visualc.stlclr_31bf3856ad364e35_none_005d4bc584a73ee4\f256!microsoft.visualc.stlclr._618f404609647a15]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\msil_microsoft.visualc.stlclr.ref_b03f5f7f11d50a3a_none_537b712ff6187948]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\msil_microsoft.visualc.stlclr.ref_b03f5f7f11d50a3a_none_537b712ff6187948\f256!microsoft.visualc.stlclr._618f404609647a15]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\msil_microsoft.visualc.stlclr_b03f5f7f11d50a3a_none_0cf705f1ef3f59db]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\msil_microsoft.visualc.stlclr_b03f5f7f11d50a3a_none_0cf705f1ef3f59db\f256!microsoft.visualc.stlclr._618f404609647a15]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-a..structure-manifests_31bf3856ad364e35_none_b63cb4046171fefd]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-i..stfilteringbinaries_31bf3856ad364e35_none_64b1ffda0ce4a721]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-i..stmonitor.resources_31bf3856ad364e35_fr-fr_99e0c8a393998490]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-i..stomloggingbinaries_31bf3856ad364e35_none_610eb00f6b7cd066]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-p..st-client-migration_31bf3856ad364e35_none_75bdc8a6c8fb5ede]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-p..st-common.resources_31bf3856ad364e35_fr-fr_40e707240914ff41]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\wow64_microsoft-windows-p..structure.resources_31bf3856ad364e35_fr-fr_e9cc42217e61e338]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-a..structure.resources_31bf3856ad364e35_fr-fr_96b1f813b23a138f]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-a..structure.resources_31bf3856ad364e35_fr-fr_d0add9a8af0a6757]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-n..structure.resources_31bf3856ad364e35_fr-fr_c760bb0b08557ece]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-r..stion-detector-core_31bf3856ad364e35_none_f1331bb5f89dd2ba]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-r..stion-resolver-core_31bf3856ad364e35_none_28006c10434455a6]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-s..structure.resources_31bf3856ad364e35_fr-fr_609af14d123e0f22]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_microsoft-windows-t..stringime.resources_31bf3856ad364e35_fr-fr_cafcd1816651d181]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_netfx35linq-microsoft.visualc.stlclr_31bf3856ad364e35_none_a43eb041cc49cdae]
[HKEY_LOCAL_MACHINE\COMPONENTS\DerivedData\VersionedIndex\6.1.7600.16385 (win7_rtm.090713-1255)\ComponentFamilies\x86_netfx35linq-microsoft.visualc.stlclr_31bf3856ad364e35_none_a43eb041cc49cdae\f256!microsoft.visualc.stlclr._618f404609647a15]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\CLSID\{8cec589e-07a1-11d9-b15e-000d56bfe6ee}\ProgID]
@="Microsoft.ITIR.StopListHandler.5.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\CLSID\{8cec589e-07a1-11d9-b15e-000d56bfe6ee}\VersionIndependentProgID]
@="Microsoft.ITIR.StopListHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\CLSID\{8cec58f3-07a1-11d9-b15e-000d56bfe6ee}\ProgID]
@="Microsoft.ITSS.StgMgr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\Microsoft.ITIR.StopListHandler]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\Microsoft.ITIR.StopListHandler\CurVer]
@="Microsoft.ITIR.StopListHandler.5.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\Microsoft.ITIR.StopListHandler.5.5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Assistance\Client\1.0\LocalReg\Microsoft.ITSS.StgMgr]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Fusion\References\Microsoft.VisualC.STLCLR, Version=1.0.0.0, Culture=Neutral, PublicKeyToken=b03f5f7f11d50a3a, processorArchitecture=msil]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\CLSID\{0A9007AA-4076-11D3-8789-0000F8105754}\ProgID]
@="Microsoft.ITSS.StgMgr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\CLSID\{3E6C800F-743D-4265-8E3D-0D7EA889DFDB}\ProgID]
@="Microsoft.ITIR.StopListHandler.5.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\CLSID\{3E6C800F-743D-4265-8E3D-0D7EA889DFDB}\VersionIndependentProgID]
@="Microsoft.ITIR.StopListHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\Microsoft.ITIR.StopListHandler]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\Microsoft.ITIR.StopListHandler\CurVer]
@="Microsoft.ITIR.StopListHandler.5.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\Microsoft.ITIR.StopListHandler.5.5]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\HTMLHelp\2.0\LocalReg\Microsoft.ITSS.StgMgr]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\ButtonGroup\StopElement]
"enabled"="wmpenabled:player.controls.Stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\ButtonGroup\StopElement]
"enabled"="wmpenabled:player.controls.Stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\ButtonGroup\StopElement]
"enabled"="wmpenabled:player.controls.Stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\ButtonGroup\StopElement]
"enabled"="wmpenabled:player.controls.Stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\ButtonGroup\StopElement]
"enabled"="wmpenabled:player.controls.Stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\StopButton]
"enabled"="wmpenabled:player.controls.stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\StopButton]
"enabled"="wmpenabled:player.controls.stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\StopButton]
"enabled"="wmpenabled:player.controls.stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\StopButton]
"enabled"="wmpenabled:player.controls.stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\StopButton]
"enabled"="wmpenabled:player.controls.stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Objects\StopButton]
"enabled"="wmpenabled:player.controls.stop"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.stl]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.stm]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADODB.Stream]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADODB.Stream]
@="ADODB.Stream"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADODB.Stream\CurVer]
@="ADODB.Stream.6.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADODB.Stream.6.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADODB.Stream.6.0]
@="ADODB.Stream"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}]
@="ADODB.Stream"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}\ProgID]
@="ADODB.Stream.6.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}\VersionIndependentProgID]
@="ADODB.Stream"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A9007AA-4076-11D3-8789-0000F8105754}\ProgID]
@="Microsoft.ITSS.StgMgr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14910622-09D4-3B4A-8C1E-9991DBDCC553}]
@="System.Diagnostics.StackFrame"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14910622-09D4-3B4A-8C1E-9991DBDCC553}\ProgId]
@="System.Diagnostics.StackFrame"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27F31D55-D6C6-3676-9D42-C40F3A918636}]
@="System.IO.StringWriter"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27F31D55-D6C6-3676-9D42-C40F3A918636}\ProgId]
@="System.IO.StringWriter"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B11E9B0-9F09-11D0-9484-00A0C91110ED}\ProgId]
@="MSSTDFMT.StdDataValue.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31C967B5-2F8A-3957-9C6D-34A0731DB36C}]
@="System.Globalization.StringInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31C967B5-2F8A-3957-9C6D-34A0731DB36C}\ProgId]
@="System.Globalization.StringInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E6C800F-743D-4265-8E3D-0D7EA889DFDB}\ProgID]
@="Microsoft.ITIR.StopListHandler.5.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E6C800F-743D-4265-8E3D-0D7EA889DFDB}\VersionIndependentProgID]
@="Microsoft.ITIR.StopListHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}]
@="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32\2.0.0.0]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32\2.0.0.0]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32\2.0.0.0]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\ProgId]
@="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4599202D-460F-3FB7-8A1C-C2CC6ED6C7C8}]
@="System.Collections.Stack"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4599202D-460F-3FB7-8A1C-C2CC6ED6C7C8}\ProgId]
@="System.Collections.Stack"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4662DAAF-D393-11D0-9A56-00C04FB68BF7}\ProgID]
@="ITIR.StdWordBreaker.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4662DAAF-D393-11D0-9A56-00C04FB68BF7}\VersionIndependentProgID]
@="ITIR.StdWordBreaker"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}]
@="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\InprocServer32\2.0.0.0]
"Class"="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\InprocServer32\2.0.0.0]
"Class"="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\InprocServer32\2.0.0.0]
"Class"="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\ProgId]
@="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63A4B1FC-259A-4A5B-8129-A83B8C9E6F4F}\ProgID]
@="DXImageTransform.Microsoft.Strips.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63A4B1FC-259A-4A5B-8129-A83B8C9E6F4F}\VersionIndependentProgID]
@="DXImageTransform.Microsoft.Strips"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\ProgId]
@="MSSTDFMT.StdDataFormat.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C97D74-7C3B-40AE-B77D-ABDB22EBA6FB}\ProgID]
@="Microsoft.Update.StringColl.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C97D74-7C3B-40AE-B77D-ABDB22EBA6FB}\VersionIndependentProgID]
@="Microsoft.Update.StringColl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92ad68ab-17e0-11d1-b230-00c04fb9473f}\ProgID]
@="STClient.STClient.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{92ad68ab-17e0-11d1-b230-00c04fb9473f}\VersionIndependentProgID]
@="STClient.STClient"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\ProgId]
@="MSSTDFMT.StdDataFormats.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C125A6F-EAE2-3FC1-97A1-C0DCEAB0B5DF}]
@="System.StackOverflowException"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C125A6F-EAE2-3FC1-97A1-C0DCEAB0B5DF}\ProgId]
@="System.StackOverflowException"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A74D16A5-42DA-44A2-AE8B-2CAA0C2C299E}\ProgID]
@="WorksSTV.STVThumbnail.11"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A74D16A5-42DA-44A2-AE8B-2CAA0C2C299E}\VersionIndependentProgID]
@="WorksSTV.STVThumbnail"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDEADEF5-C265-11D0-BCED-00A0C90AB50F}\ProgID]
@="SharePoint.StssyncHandler.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDEADEF5-C265-11D0-BCED-00A0C90AB50F}\VersionIndependentProgID]
@="SharePoint.StssyncHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8B81EA1-7BB5-44E8-92D7-F3ACC07FE263}\ProgID]
@="NMUIVirtualKeyboard.Standard.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8B81EA1-7BB5-44E8-92D7-F3ACC07FE263}\VersionIndependentProgID]
@="NMUIVirtualKeyboard.Standard"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}]
@="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\ProgId]
@="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F088DE73-BDD0-4E3C-81F8-6D32F4FE9D28}\ProgID]
@="DXImageTransform.Microsoft.Stretch.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F088DE73-BDD0-4E3C-81F8-6D32F4FE9D28}\VersionIndependentProgID]
@="DXImageTransform.Microsoft.Stretch"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0DDB702-2A9C-4F59-839B-9332D265C1EF}\ProgID]
@="MicrosoftEffects.StraighteningEffect.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F0DDB702-2A9C-4F59-839B-9332D265C1EF}\VersionIndependentProgID]
@="MicrosoftEffects.StraighteningEffect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F301665A-12F8-4331-804A-5BCBD379668C}\ProgID]
@="EXIFTollBar.StockBar.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F301665A-12F8-4331-804A-5BCBD379668C}\VersionIndependentProgID]
@="EXIFTollBar.StockBar"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3E06854-6A6D-46F3-B5FA-7BC919BD6302}\ProgID]
@="WindowsLiveWriterFilter.StreamLockByt.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3E06854-6A6D-46F3-B5FA-7BC919BD6302}\VersionIndependentProgID]
@="WindowsLiveWriterFilter.StreamLockBytes"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DeviceDisplayObject\InterfaceClass\{0ecef634-6ef0-472a-8085-5ad023ecbccd}\Commands]
"SubCommands"="Windows.StartScan;Windows.UpdatePrinterDriver;Windows.OpenPrintQueue;Windows.ManageDefaultPrinters;Windows.OpenPrinterServerProperty"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DXImageTransform.Microsoft.Stretch]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DXImageTransform.Microsoft.Stretch\CurVer]
@="DXImageTransform.Microsoft.Stretch.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DXImageTransform.Microsoft.Stretch.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DXImageTransform.Microsoft.Strips]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DXImageTransform.Microsoft.Strips\CurVer]
@="DXImageTransform.Microsoft.Strips.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DXImageTransform.Microsoft.Strips.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\EXIFTollBar.StockBar]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\EXIFTollBar.StockBar\CurVer]
@="EXIFTollBar.StockBar.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\EXIFTollBar.StockBar.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ITIR.StdWordBreaker]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ITIR.StdWordBreaker.4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Activity]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.StartDate;~System.LayoutPattern.PlaceHolder;~System.Search.QueryFocusedSummaryWithFallback"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Appointment]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Schedule.Meeting]
"ContentViewModeForBrowse"="prop:~System.ItemNameDisplay;System.Calendar.Location;System.Calendar.OrganizerName;System.Category;System.StartDate;System.EndDate"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.StickyNote]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MCEMediaStatus.StatusSink]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MCEMediaStatus.StatusSink\CurVer]
@="MCEMediaStatus.StatusSink.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MCEMediaStatus.StatusSink.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ITIR.StopListHandler]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ITIR.StopListHandler.5.4]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.ITSS.StgMgr]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Update.StringColl]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Update.StringColl\CurVer]
@="Microsoft.Update.StringColl.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Microsoft.Update.StringColl.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MicrosoftEffects.StraighteningEffect]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MicrosoftEffects.StraighteningEffect\CurVer]
@="MicrosoftEffects.StraighteningEffect.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MicrosoftEffects.StraighteningEffect.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-pki.stl]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\application/vnd.ms-pki.stl]
"Extension"=".stl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\vnd.ms-pki.stl]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MIME\Database\Content Type\vnd.ms-pki.stl]
"Extension"=".stl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataFormat]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataFormat\CurVer]
@="MSSTDFMT.StdDataFormat.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataFormat.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataFormats]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataFormats\CurVer]
@="MSSTDFMT.StdDataFormats.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataFormats.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataValue]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataValue\CurVer]
@="MSSTDFMT.StdDataValue.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MSSTDFMT.StdDataValue.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NMUIVirtualKeyboard.Standard]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NMUIVirtualKeyboard.Standard\CurVer]
@="NMUIVirtualKeyboard.Standard.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NMUIVirtualKeyboard.Standard.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Printers]
"PreviewDetails"="prop:System.ItemNameDisplay;System.Printer.QueueSize;System.Printer.Status;System.Comment;System.Printer.Location;System.Printer.Model"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Printers]
"PreviewDetails"="prop:System.ItemNameDisplay;System.Printer.QueueSize;System.Printer.Status;System.Comment;System.Printer.Location;System.Printer.Model"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Printers]
"PreviewDetails"="prop:System.ItemNameDisplay;System.Printer.QueueSize;System.Printer.Status;System.Comment;System.Printer.Location;System.Printer.Model"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{7EEEE946-3F23-371F-9BAE-15214D3C95C9}\1.0.3300.0]
"Class"="Microsoft.CLRAdmin.STGMEDIUM"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{7EEEE946-3F23-371F-9BAE-15214D3C95C9}\1.0.3300.0]
"Class"="Microsoft.CLRAdmin.STGMEDIUM"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{8CF0278D-D0AD-307D-BE63-A785432E3FDF}\2.0.0.0]
"Class"="System.Reflection.Emit.StringToken"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{8CF0278D-D0AD-307D-BE63-A785432E3FDF}\2.0.0.0]
"Class"="System.Reflection.Emit.StringToken"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Record\{8CF0278D-D0AD-307D-BE63-A785432E3FDF}\2.0.0.0]
"Class"="System.Reflection.Emit.StringToken"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Search.ShellFolder\CurVer]
@="Search.StickyNotesHandler.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Search.StickyNotesHandler]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Search.StickyNotesHandler\CurVer]
@="Search.StickyNotesHandler.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Search.StickyNotesHandler.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SharePoint.StssyncHandler]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SharePoint.StssyncHandler\CurVer]
@="SharePoint.StssyncHandler.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SharePoint.StssyncHandler.2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SharePoint.StssyncHandler.3]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STacAPI.StreamCtrl]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STacAPI.StreamCtrl\CurVer]
@="STacAPI.StreamCtrl.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STacAPI.StreamCtrl.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STacAPI.STSpreader]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STacAPI.STSpreader\CurVer]
@="STacAPI.STSpreader.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STacAPI.STSpreader.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\statemodel.StateController]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\statemodel.StateController\CurVer]
@="statemodel.StateController.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\statemodel.StateController.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STClient.STClient]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STClient.STClient\CurVer]
@="STClient.STClient.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STClient.STClient.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STSServer.STSServerInstance]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STSServer.STSServerInstance\CurVer]
@="STSServer.STSServerInstance.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\STSServer.STSServerInstance.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Collections.Stack]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Collections.Stack]
@="System.Collections.Stack"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Diagnostics.StackFrame]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Diagnostics.StackFrame]
@="System.Diagnostics.StackFrame"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Diagnostics.StackTrace]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Diagnostics.StackTrace]
@="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Globalization.StringInfo]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Globalization.StringInfo]
@="System.Globalization.StringInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.IO.StringWriter]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.IO.StringWriter]
@="System.IO.StringWriter"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.StackOverflowException]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.StackOverflowException]
@="System.StackOverflowException"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.STAThreadAttribute]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.STAThreadAttribute]
@="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Text.StringBuilder]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\System.Text.StringBuilder]
@="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Activity]
"InfoTip"="prop:*System.StartDate;*System.Calendar.Duration;*System.Company;*System.Category"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Activity]
"InfoTip"="prop:*System.StartDate;*System.Calendar.Duration;*System.Company;*System.Category"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Activity]
"InfoTip"="prop:*System.StartDate;*System.Calendar.Duration;*System.Company;*System.Category"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Activity]
"InfoTip"="prop:*System.StartDate;*System.Calendar.Duration;*System.Company;*System.Category"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Appointment]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Schedule.Meeting]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.Calendar.Duration;*System.Calendar.Location;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.StickyNote]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.DueDate;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.DueDate;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.DueDate;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.DueDate;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task]
"InfoTip"="prop:*System.StartDate;*System.EndDate;*System.DueDate;*System.Calendar.IsRecurring"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6B263850-900B-11D0-9484-00A0C91110ED}\1.0]
"PrimaryInteropAssemblyName"="Microsoft.StdFormat, Version=7.0.3300.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6B263850-900B-11D0-9484-00A0C91110ED}\1.0]
"PrimaryInteropAssemblyName"="Microsoft.StdFormat, Version=7.0.3300.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsLiveWriterFilter.StreamLockByt.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsLiveWriterFilter.StreamLockBytes]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WindowsLiveWriterFilter.StreamLockBytes\CurVer]
@="WindowsLiveWriterFilter.StreamLockByt.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WorksSTV.STVThumbnail]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WorksSTV.STVThumbnail\CurVer]
@="WorksSTV.STVThumbnail.11"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WorksSTV.STVThumbnail.11]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}]
@="ADODB.Stream"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}\ProgID]
@="ADODB.Stream.6.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{00000566-0000-0010-8000-00AA006D2EA4}\VersionIndependentProgID]
@="ADODB.Stream"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{0A9007AA-4076-11D3-8789-0000F8105754}\ProgID]
@="Microsoft.ITSS.StgMgr"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{14910622-09D4-3B4A-8C1E-9991DBDCC553}]
@="System.Diagnostics.StackFrame"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{14910622-09D4-3B4A-8C1E-9991DBDCC553}\ProgId]
@="System.Diagnostics.StackFrame"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{27F31D55-D6C6-3676-9D42-C40F3A918636}]
@="System.IO.StringWriter"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{27F31D55-D6C6-3676-9D42-C40F3A918636}\ProgId]
@="System.IO.StringWriter"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{2B11E9B0-9F09-11D0-9484-00A0C91110ED}\ProgId]
@="MSSTDFMT.StdDataValue.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{31C967B5-2F8A-3957-9C6D-34A0731DB36C}]
@="System.Globalization.StringInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{31C967B5-2F8A-3957-9C6D-34A0731DB36C}\ProgId]
@="System.Globalization.StringInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{3E6C800F-743D-4265-8E3D-0D7EA889DFDB}\ProgID]
@="Microsoft.ITIR.StopListHandler.5.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{3E6C800F-743D-4265-8E3D-0D7EA889DFDB}\VersionIndependentProgID]
@="Microsoft.ITIR.StopListHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}]
@="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar c2bis » 16 Fév 2010 18:34

voici la suite :

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32\2.0.0.0]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32\2.0.0.0]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\InprocServer32\2.0.0.0]
"Class"="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{405C2D81-315B-3CB0-8442-EF5A38D4C3B8}\ProgId]
@="System.Diagnostics.StackTrace"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4599202D-460F-3FB7-8A1C-C2CC6ED6C7C8}]
@="System.Collections.Stack"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4599202D-460F-3FB7-8A1C-C2CC6ED6C7C8}\ProgId]
@="System.Collections.Stack"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4662DAAF-D393-11D0-9A56-00C04FB68BF7}\ProgID]
@="ITIR.StdWordBreaker.4"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{4662DAAF-D393-11D0-9A56-00C04FB68BF7}\VersionIndependentProgID]
@="ITIR.StdWordBreaker"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}]
@="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\InprocServer32\2.0.0.0]
"Class"="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\InprocServer32\2.0.0.0]
"Class"="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\InprocServer32\2.0.0.0]
"Class"="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{50AAD4C2-61FA-3B1F-8157-5BA3B27AEE61}\ProgId]
@="System.STAThreadAttribute"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{63A4B1FC-259A-4A5B-8129-A83B8C9E6F4F}\ProgID]
@="DXImageTransform.Microsoft.Strips.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{63A4B1FC-259A-4A5B-8129-A83B8C9E6F4F}\VersionIndependentProgID]
@="DXImageTransform.Microsoft.Strips"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\InprocServer32]
"Class"="StdFormat.StdDataFormatClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6D835690-900B-11D0-9484-00A0C91110ED}\ProgId]
@="MSSTDFMT.StdDataFormat.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{72C97D74-7C3B-40AE-B77D-ABDB22EBA6FB}\ProgID]
@="Microsoft.Update.StringColl.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{72C97D74-7C3B-40AE-B77D-ABDB22EBA6FB}\VersionIndependentProgID]
@="Microsoft.Update.StringColl"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{92ad68ab-17e0-11d1-b230-00c04fb9473f}\ProgID]
@="STClient.STClient.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{92ad68ab-17e0-11d1-b230-00c04fb9473f}\VersionIndependentProgID]
@="STClient.STClient"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\InprocServer32]
"Class"="StdFormat.StdDataFormatsClass"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{99FF4677-FFC3-11D0-BD02-00C04FC2FB86}\ProgId]
@="MSSTDFMT.StdDataFormats.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9C125A6F-EAE2-3FC1-97A1-C0DCEAB0B5DF}]
@="System.StackOverflowException"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9C125A6F-EAE2-3FC1-97A1-C0DCEAB0B5DF}\ProgId]
@="System.StackOverflowException"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A74D16A5-42DA-44A2-AE8B-2CAA0C2C299E}\ProgID]
@="WorksSTV.STVThumbnail.11"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A74D16A5-42DA-44A2-AE8B-2CAA0C2C299E}\VersionIndependentProgID]
@="WorksSTV.STVThumbnail"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{BDEADEF5-C265-11D0-BCED-00A0C90AB50F}\ProgID]
@="SharePoint.StssyncHandler.3"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{BDEADEF5-C265-11D0-BCED-00A0C90AB50F}\VersionIndependentProgID]
@="SharePoint.StssyncHandler"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D8B81EA1-7BB5-44E8-92D7-F3ACC07FE263}\ProgID]
@="NMUIVirtualKeyboard.Standard.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D8B81EA1-7BB5-44E8-92D7-F3ACC07FE263}\VersionIndependentProgID]
@="NMUIVirtualKeyboard.Standard"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}]
@="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\InprocServer32]
"Class"="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{E724B749-18D6-36AB-9F6D-09C36D9C6016}\ProgId]
@="System.Text.StringBuilder"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F088DE73-BDD0-4E3C-81F8-6D32F4FE9D28}\ProgID]
@="DXImageTransform.Microsoft.Stretch.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F088DE73-BDD0-4E3C-81F8-6D32F4FE9D28}\VersionIndependentProgID]
@="DXImageTransform.Microsoft.Stretch"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F0DDB702-2A9C-4F59-839B-9332D265C1EF}\ProgID]
@="MicrosoftEffects.StraighteningEffect.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F0DDB702-2A9C-4F59-839B-9332D265C1EF}\VersionIndependentProgID]
@="MicrosoftEffects.StraighteningEffect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F301665A-12F8-4331-804A-5BCBD379668C}\ProgID]
@="EXIFTollBar.StockBar.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F301665A-12F8-4331-804A-5BCBD379668C}\VersionIndependentProgID]
@="EXIFTollBar.StockBar"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F3E06854-6A6D-46F3-B5FA-7BC919BD6302}\ProgID]
@="WindowsLiveWriterFilter.StreamLockByt.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F3E06854-6A6D-46F3-B5FA-7BC919BD6302}\VersionIndependentProgID]
@="WindowsLiveWriterFilter.StreamLockBytes"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{6B263850-900B-11D0-9484-00A0C91110ED}\1.0]
"PrimaryInteropAssemblyName"="Microsoft.StdFormat, Version=7.0.3300.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{6B263850-900B-11D0-9484-00A0C91110ED}\1.0]
"PrimaryInteropAssemblyName"="Microsoft.StdFormat, Version=7.0.3300.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a"
[HKEY_USERS\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Microsoft\Windows Live\Communications Clients\Shared\3550391938\Affinity\tkrdr.storage.msn.com]

-=End Of File=-
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 16 Fév 2010 22:05

Rien ici non plus.

Télécharge random's system information tool (RSIT) par random/random et sauvegarde-le sur le Bureau. Cet outil va faire un état des lieux, lire la configuration, comme HijackThis, mais en plus détaillé.
  • Double-clique sur RSIT.exe afin de lancer RSIT.
  • Clique Continue à l'écran Disclaimer.
  • Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
  • Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (<<qui sera affiché) ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).
  • NB : Les rapports sont sauvegardés dans le dossier C:\rsit
    Ca fait deux rapports donc. Comme ils sont longs, tu peux faire 2 réponses, une par rapport. ;-)
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 16 Fév 2010 22:29

heu j'y arrive pas
voici le message que j'ai quand je télécharge par le lien que tu m'a envoyé
Image

pourquoi tu me dit par random/random c'e quoi?
parce qu'il me demande rien
je vais voir si j'y accede autrement
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 16 Fév 2010 22:30

Démarre le avec les droits admin.

Random/random est le nom de l'auteur de cet outil. :-D
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 16 Fév 2010 23:04

j"y arrive pas
quand j'appuie sur ton lien il fait directement executer random/random
mais avant la fin du téléchargement il me dit le message que je t'ai envoyé ci dessus
j'ai été voir comment on démarre avec les droits administrateurs du coup j'suis partie dans regedit pour activer l'administrateur j'ai fermé ma session me suis connecté en tant qu'administrateur mais rien de changé j'ai exactement le meme message
quand je clic droit sur le lien il me propose pas d'ouvrier en tant qu'administrateur
là j'avoue que je suis perdue
:?:
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 16 Fév 2010 23:08

La navigateur est mal configuré et exécute le programme au lieu de le télécharger.
Fais un clic droit sur le lien, puis enregistrer (la cible) sous... pour choisir où le sauvegarder sans le démarrer automatiquement.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 16 Fév 2010 23:09

je viens d'essayer autre chose :
j'ai fait clic droit sur ton lien
j'ai enregistré sur le bureau
après clic droit sur le fichier et là je clic sur ouvrir en tant qu'administrateur
mais toujours le meme message
toujours aussi perdue
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar c2bis » 16 Fév 2010 23:12

hihi
apparement j'ai fait ce que tu m'as dit en meme temps que tu m'écrivais de le faire
mais je te confirme ça marche toujours pas
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar Falkra » 16 Fév 2010 23:16

Télécharge DDS de sUBs, sur le bureau.
L'outil ne nécessite pas d'installation, lance dds.scr avec les droits admin.

Une fenêtre DOS va apparaitre. Un premier rapport va s'ouvrir que tu enregistreras sous DDS.txt par défaut sur le bureau. Il te sera demandé si tu veux faire le scan optionnel. Accepte.
Un nouveau rapport s'ouvre que tu enregistres sous Attach.txt sur le bureau.

Poste le rapport DDS.txt seulement, si ça marche, pour le moment.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: lost

Messagepar c2bis » 16 Fév 2010 23:17

c'est bon j'ai trouvé trop cool
j'ai fait résoudre les problemes de compatibilité
donc voici ce que ça donne
Logfile of random's system information tool 1.06 (written by random/random)
Run by Céline at 2010-02-16 23:14:38
Microsoft Windows 7 Édition Familiale Premium Service Pack 2
System drive C: has 234 GB (80%) free of 292 GB
Total RAM: 4063 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:14:40, on 16/02/2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWow64\Macromed\Flash\FlashUtil10b.exe
c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Users\Céline\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Céline.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... on&pf=cnnb
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~2\ArcSoft\VIDEOD~1\ARCURL~1.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\IPSBHO.DLL
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ToolbarBHO Class - {9519AF7E-638D-4933-BAD6-D33D23C79FE5} - C:\PROGRA~2\ArcSoft\RAWTHU~1\EXIFToolBar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: RAW Thumbnail Viewer - {F301665A-12F8-4331-804A-5BCBD379668C} - C:\PROGRA~2\ArcSoft\RAWTHU~1\EXIFToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam"
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU')
O4 - Global Startup: Bluetooth.lnk = ?
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: Envoyer à Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Envoyer au périphérique &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/Messenger ... E_UNO1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe
O23 - Service: Service Google Update (gupdate1ca8d8395819c80) (gupdate1ca8d8395819c80) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13389 bytes
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar c2bis » 16 Fév 2010 23:19

et le 2ème rapport
======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\HPCeeScheduleForCéline.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11222041-111B-46E3-BD29-EFB2449479B1}]
IEPlugin Class - C:\PROGRA~2\ArcSoft\VIDEOD~1\ARCURL~1.DLL [2008-12-19 145920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll [2009-08-22 378736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\IPSBHO.DLL [2009-08-22 107896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9519AF7E-638D-4933-BAD6-D33D23C79FE5}]
ToolbarBHO Class - C:\PROGRA~2\ArcSoft\RAWTHU~1\EXIFToolBar.dll [2009-07-10 65536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-29 279664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll [2010-01-29 812528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\coIEPlg.dll [2009-08-22 378736]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{F301665A-12F8-4331-804A-5BCBD379668C} - RAW Thumbnail Viewer - C:\PROGRA~2\ArcSoft\RAWTHU~1\EXIFToolBar.dll [2009-07-10 65536]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-29 279664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-02 98304]
"HPCam_Menu"=c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [2009-02-25 218408]
"QlbCtrl.exe"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-08-20 322104]
"UpdatePRCShortCut"=C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"Easybits Recovery"=C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe []
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
""= []
"WirelessAssistant"=C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2009-10-11 149280]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2009-10-10 203264]
"EoEngine"= []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"=C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-12-29 39408]
"TomTomHOME.exe"=C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [2009-11-13 247144]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2006-12-23 143360]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SymEFA.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"WallpaperStyle"=2
"DisableLockWorkstation"=0
"DisableTaskMgr"=0
"DisableChangePassword"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"HideFastUserSwitching"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"ForceActiveDesktopOn"=
"NoActiveDesktopChanges"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e9b4b48a-910a-11de-bf5b-806e6f6e6963}]
shell\AutoRun\command - F:\AUTORUN.EXE


======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-02-16 22:16:28 ----D---- C:\Program Files (x86)\trend micro
2010-02-16 22:16:27 ----D---- C:\rsit
2010-02-11 12:35:38 ----SHD---- C:\Config.Msi
2010-02-11 09:15:43 ----D---- C:\Users\Céline\AppData\Roaming\Malwarebytes
2010-02-11 09:15:37 ----D---- C:\ProgramData\Malwarebytes
2010-02-11 09:15:37 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2010-02-10 17:25:30 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-10 17:25:30 ----A---- C:\Windows\system32\secproc.dll
2010-02-10 17:25:29 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-10 17:25:29 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-10 17:25:29 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-10 17:25:29 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-10 17:25:29 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-10 17:25:29 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-10 17:25:26 ----A---- C:\Windows\system32\quartz.dll
2010-02-10 17:25:26 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-10 17:25:26 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-10 17:25:26 ----A---- C:\Windows\system32\avifil32.dll
2010-02-10 17:25:25 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-10 17:25:25 ----A---- C:\Windows\system32\msyuv.dll
2010-02-10 17:25:25 ----A---- C:\Windows\system32\msrle32.dll
2010-02-10 17:25:25 ----A---- C:\Windows\system32\iyuv_32.dll
2010-01-29 20:24:51 ----D---- C:\ProgramData\LightScribe
2010-01-29 20:17:58 ----D---- C:\Program Files (x86)\Common Files\LightScribe
2010-01-29 20:16:23 ----D---- C:\Users\Céline\AppData\Roaming\Ahead
2010-01-29 20:12:07 ----D---- C:\ProgramData\Nero
2010-01-29 20:12:06 ----D---- C:\Program Files (x86)\Nero
2010-01-29 20:12:06 ----D---- C:\Program Files (x86)\Common Files\Ahead
2010-01-29 20:11:21 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-01-29 20:11:21 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-01-29 08:51:46 ----D---- C:\ProgramData\TomTom
2010-01-29 08:50:50 ----D---- C:\Users\Céline\AppData\Roaming\TomTom
2010-01-29 08:50:50 ----D---- C:\Users\Céline\AppData\Roaming\Mozilla
2010-01-29 08:50:35 ----D---- C:\Program Files (x86)\TomTom International B.V
2010-01-29 08:50:23 ----D---- C:\Program Files (x86)\TomTom HOME 2
2010-01-29 08:48:20 ----D---- C:\Program Files (x86)\TomTom DesktopSuite
2010-01-27 15:47:27 ----D---- C:\ProgramData\Leapfrog
2010-01-27 15:45:52 ----D---- C:\Program Files (x86)\LeapFrog
2010-01-27 15:17:12 ----D---- C:\Users\Céline\AppData\Roaming\U3
2010-01-27 15:01:21 ----A---- C:\Windows\system32\explorer.exe
2010-01-27 15:01:21 ----A---- C:\Windows\explorer.exe
2010-01-21 21:12:36 ----A---- C:\Windows\system32\mshtml.dll
2010-01-21 21:12:36 ----A---- C:\Windows\system32\ieframe.dll
2010-01-21 21:12:35 ----A---- C:\Windows\system32\urlmon.dll
2010-01-21 21:12:35 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-21 21:12:34 ----A---- C:\Windows\system32\wininet.dll
2010-01-21 21:12:34 ----A---- C:\Windows\system32\msfeedsbs.dll

======List of files/folders modified in the last 1 months======

2010-02-16 23:14:39 ----D---- C:\Windows\Temp
2010-02-16 22:52:19 ----HD---- C:\ProgramData
2010-02-16 22:52:19 ----A---- C:\ProgramData\HPWALog.txt
2010-02-16 22:51:37 ----RD---- C:\Users
2010-02-16 22:16:28 ----RD---- C:\Program Files (x86)
2010-02-12 22:59:07 ----D---- C:\Users\Céline\AppData\Roaming\Skype
2010-02-12 19:28:53 ----D---- C:\Users\Céline\AppData\Roaming\skypePM
2010-02-11 12:36:44 ----SHD---- C:\Windows\Installer
2010-02-11 12:36:05 ----SHD---- C:\System Volume Information
2010-02-11 09:15:39 ----D---- C:\Windows\system32\drivers
2010-02-11 00:13:31 ----D---- C:\Program Files (x86)\Google
2010-02-10 23:53:23 ----D---- C:\Windows\winsxs
2010-02-10 23:51:24 ----D---- C:\Windows\Help
2010-02-10 23:49:34 ----D---- C:\Users\Céline\AppData\Roaming\HpUpdate
2010-02-10 23:49:34 ----D---- C:\Users\Céline\AppData\Roaming\HP Support Assistant
2010-02-10 23:39:47 ----D---- C:\Windows\Prefetch
2010-02-10 23:37:33 ----D---- C:\Windows\SysWOW64
2010-02-10 23:37:32 ----D---- C:\Windows\System32
2010-02-09 21:57:09 ----D---- C:\Windows\inf
2010-02-06 10:31:19 ----SD---- C:\Users\Céline\AppData\Roaming\Microsoft
2010-02-04 01:25:45 ----D---- C:\Windows\Tasks
2010-02-04 01:25:45 ----D---- C:\Windows
2010-02-04 01:25:44 ----D---- C:\Windows\AppCompat
2010-02-04 01:25:43 ----D---- C:\Program Files (x86)\Microsoft Office Suite Activation Assistant
2010-02-04 01:25:39 ----D---- C:\Windows\registration
2010-01-29 20:17:58 ----D---- C:\Program Files (x86)\Common Files
2010-01-29 20:15:47 ----D---- C:\Windows\ehome
2010-01-27 17:12:47 ----D---- C:\Program Files (x86)\Internet Explorer
2010-01-27 08:01:12 ----D---- C:\Windows\debug
2010-01-26 07:43:26 ----D---- C:\ProgramData\Symantec
2010-01-21 19:34:28 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2010-01-20 20:32:06 ----D---- C:\Users\Céline\AppData\Roaming\hpqlog
2010-01-20 20:31:57 ----D---- C:\SwSetup
2010-01-20 20:31:52 ----D---- C:\ProgramData\Hewlett-Packard
2010-01-20 20:31:51 ----D---- C:\Users\Céline\AppData\Roaming\Hewlett-Packard
2010-01-20 15:13:06 ----SD---- C:\ProgramData\Microsoft
2010-01-19 18:11:55 ----SHD---- C:\$Recycle.Bin

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 BHDrvx64;Symantec Heuristics Driver; C:\Windows\System32\Drivers\NISx64\1007020.00B\BHDrvx64.sys []
R1 blbdrive;blbdrive; C:\Windows\system32\DRIVERS\blbdrive.sys []
R1 ccHP;Symantec Hash Provider; C:\Windows\System32\Drivers\NISx64\1007020.00B\ccHPx64.sys []
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys []
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys []
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2009-12-28 475696]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20100210.001\IDSvia64.sys [2009-10-28 466992]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys []
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys []
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys []
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1007020.00B\SRTSPX64.SYS []
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys []
R1 SYMTDI;Symantec Network Dispatch Driver; C:\Windows\System32\Drivers\NISx64\1007020.00B\SYMTDI.SYS []
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys []
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys []
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys []
R2 {55662437-DA8C-40c0-AADA-2C816A897A49};Power Control [2009/08/25 02:09:08]; \??\c:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl [2009-07-23 146928]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys []
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys []
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys []
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys []
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys []
R3 1394ohci;Contrôleur d’hôte compatible OHCI 1394; C:\Windows\system32\DRIVERS\1394ohci.sys []
R3 Accelerometer;HP Accelerometer; C:\Windows\system32\DRIVERS\Accelerometer.sys []
R3 AtiHdmiService;ATI Service for HD Audio Codec; C:\Windows\system32\drivers\AtiHdmi.sys []
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys []
R3 BthEnum;Pilote de bloc de demande Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys []
R3 BTHMODEM;Pilote de communication série Bluetooth; C:\Windows\system32\DRIVERS\bthmodem.sys []
R3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys []
R3 btwaudio;Périphérique audio Bluetooth; C:\Windows\system32\drivers\btwaudio.sys []
R3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys []
R3 btwl2cap;Bluetooth L2CAP Service; C:\Windows\system32\DRIVERS\btwl2cap.sys []
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys []
R3 circlass;Périphériques IR grand public; C:\Windows\system32\DRIVERS\circlass.sys []
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys []
R3 CompositeBus;Pilote de l’énumérateur de bus composite; C:\Windows\system32\DRIVERS\CompositeBus.sys []
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys []
R3 enecir;ENE CIR Receiver; C:\Windows\system32\DRIVERS\enecir.sys []
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-12-28 132656]
R3 HDAudBus;Pilote de bus UAA Microsoft pour High Definition Audio; C:\Windows\system32\DRIVERS\HDAudBus.sys []
R3 HidIr;Pilote HID infrarouge Microsoft; C:\Windows\system32\DRIVERS\hidir.sys []
R3 HidUsb;Pilote de classe HID Microsoft; C:\Windows\system32\DRIVERS\hidusb.sys []
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys []
R3 intelppm;Pilote de processeur Intel; C:\Windows\system32\DRIVERS\intelppm.sys []
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys []
R3 kbdhid;Pilote HID de clavier; C:\Windows\system32\DRIVERS\kbdhid.sys []
R3 ksthunk;Kernel Streaming Thunks; C:\Windows\system32\drivers\ksthunk.sys []
R3 monitor;Service Pilote de fonction de classe Moniteur Microsoft; C:\Windows\system32\DRIVERS\monitor.sys []
R3 mouhid;Pilote HID de souris; C:\Windows\system32\DRIVERS\mouhid.sys []
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys []
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys []
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys []
R3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys []
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100216.005\ENG64.SYS [2010-02-03 116272]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20100216.005\EX64.SYS [2010-02-03 1742896]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit; C:\Windows\system32\DRIVERS\netw5v64.sys []
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys []
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys []
R3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1007020.00B\SRTSP64.SYS []
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys []
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys []
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt64.sys []
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS []
R3 SYMFW;Symantec Network Filter Driver; C:\Windows\System32\Drivers\NISx64\1007020.00B\SYMFW.SYS []
R3 SYMNDISV;Symantec Network Filter Driver; C:\Windows\System32\Drivers\NISx64\1007020.00B\SYMNDISV.SYS []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 tunnel;Pilote de carte miniport Microsoft Tunnel; C:\Windows\system32\DRIVERS\tunnel.sys []
R3 umbus;Pilote d’énumérateur UMBus; C:\Windows\system32\DRIVERS\umbus.sys []
R3 usbccgp;Pilote parent générique USB Microsoft; C:\Windows\system32\DRIVERS\usbccgp.sys []
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\Windows\system32\DRIVERS\usbehci.sys []
R3 usbhub;Pilote de concentrateur standard USB Microsoft; C:\Windows\system32\DRIVERS\usbhub.sys []
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\Windows\system32\DRIVERS\usbuhci.sys []
R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys []
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys []
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys []
S3 AcpiPmi;Jauge d’alimentation ACPI; C:\Windows\system32\DRIVERS\acpipmi.sys []
S3 agp440;Filtre de bus AGP Intel; C:\Windows\system32\DRIVERS\agp440.sys []
S3 AmdK8;Pilote de processeur AMD K8; C:\Windows\system32\DRIVERS\amdk8.sys []
S3 AmdPPM;Pilote de processeur AMD; C:\Windows\system32\DRIVERS\amdppm.sys []
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys []
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbda.sys []
S3 b57nd60a;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60a.sys []
S3 BrFiltLo;Pilote de filtre inférieur de stockage de masse Brother USB; C:\Windows\system32\DRIVERS\BrFiltLo.sys []
S3 BrFiltUp;Pilote de filtre supérieur de stockage de masse Brother USB; C:\Windows\system32\DRIVERS\BrFiltUp.sys []
S3 Brserid;Pilote d’interface de port série Brother MFC (WDM); C:\Windows\System32\Drivers\Brserid.sys []
S3 BrSerWdm;Pilote série WDM Brother; C:\Windows\System32\Drivers\BrSerWdm.sys []
S3 BrUsbMdm;Brother MFC USB modem télécopieur uniquement; C:\Windows\System32\Drivers\BrUsbMdm.sys []
S3 BrUsbSer;Pilote WDM Brother MFC USB Série; C:\Windows\System32\Drivers\BrUsbSer.sys []
S3 BTHPORT;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys []
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbda.sys []
S3 ErrDev;Pilote de périphérique d’erreur matérielle Microsoft; C:\Windows\system32\DRIVERS\errdev.sys []
S3 exfat;exFAT File System Driver; C:\Windows\system32\drivers\exfat.sys []
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys []
S3 FlyUsb;FLY Fusion; C:\Windows\system32\DRIVERS\FlyUsb.sys []
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys []
S3 gagp30kx;Filtre AGP version 3.0 générique Microsoft pour plates-formes à base de processeur K8; C:\Windows\system32\DRIVERS\gagp30kx.sys []
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys []
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys []
S3 HidBatt;Pilote de batterie onduleur HID; C:\Windows\system32\DRIVERS\HidBatt.sys []
S3 HidBth;Miniport HID Microsoft Bluetooth; C:\Windows\system32\DRIVERS\hidbth.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys []
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\DRIVERS\IPMIDrv.sys []
S3 iScsiPrt;Pilote iScsiPort; C:\Windows\system32\DRIVERS\msiscsi.sys []
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys []
S3 MsRPC;MsRPC; C:\Windows\system32\drivers\MsRPC.sys []
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys []
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys []
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys []
S3 nv_agp;Filtre de bus NVIDIA nForce AGP; C:\Windows\system32\DRIVERS\nv_agp.sys []
S3 ohci1394;Contrôleur d’hôte compatible OHCI 1394 (hérité); C:\Windows\system32\DRIVERS\ohci1394.sys []
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys []
S3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys []
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys []
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
S3 sermouse;Pilote pour souris sur port série; C:\Windows\system32\DRIVERS\sermouse.sys []
S3 sffdisk;Pilote de classe de stockage SFF; C:\Windows\system32\DRIVERS\sffdisk.sys []
S3 sffp_mmc;Pilote de protocole de stockage SFF pour MMC; C:\Windows\system32\DRIVERS\sffp_mmc.sys []
S3 sffp_sd;Pilote de protocole de stockage SFF pour SDBus; C:\Windows\system32\DRIVERS\sffp_sd.sys []
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys []
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS []
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS []
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS []
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys []
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys []
S3 uagp35;Filtre AGP version 3.5 Microsoft; C:\Windows\system32\DRIVERS\uagp35.sys []
S3 uliagpkx;Filtre de bus AGP Uli; C:\Windows\system32\DRIVERS\uliagpkx.sys []
S3 UmPass;Pilote Microsoft UMPass; C:\Windows\system32\DRIVERS\umpass.sys []
S3 usbcir;Récepteur infrarouge eHome (USBCIR); C:\Windows\system32\DRIVERS\usbcir.sys []
S3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\Windows\system32\DRIVERS\usbohci.sys []
S3 usbprint;Classe d’imprimantes USB Microsoft; C:\Windows\system32\DRIVERS\usbprint.sys []
S3 USBSTOR;Pilote de stockage de masse USB; C:\Windows\system32\DRIVERS\USBSTOR.SYS []
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys []
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys []
S3 vwifibus;@%SystemRoot%\System32\drivers\vwifibus.sys,-257; C:\Windows\System32\drivers\vwifibus.sys []
S3 WacomPen;Pilote de tablette Wacom à stylet série; C:\Windows\system32\DRIVERS\wacompen.sys []
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys []
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk62x64.sys []
S4 crcdisk;Pilote de filtre Crcdisk; C:\Windows\system32\DRIVERS\crcdisk.sys []
S4 ws2ifsl;@%systemroot%\System32\drivers\ws2ifsl.sys,-1000; C:\Windows\system32\drivers\ws2ifsl.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2009-09-28 109056]
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe [2009-03-02 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
R2 AudioEndpointBuilder;@%SystemRoot%\system32\audiosrv.dll,-204; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 BFE;@%SystemRoot%\system32\bfe.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2009-07-30 864032]
R2 DPS;@%systemroot%\system32\dps.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 FDResPub;@%systemroot%\system32\fdrespub.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 gpsvc;@gpapi.dll,-112; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2009-07-09 124928]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe []
R2 IKEEXT;@%SystemRoot%\system32\ikeext.dll,-501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 iphlpsvc;@%SystemRoot%\system32\iphlpsvc.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 MMCSS;@%systemroot%\system32\mmcss.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 MpsSvc;@%SystemRoot%\system32\FirewallAPI.dll,-23090; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 NlaSvc;@%SystemRoot%\System32\nlasvc.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Norton Internet Security;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\16.7.2.11\ccSvcHst.exe [2009-08-22 117640]
R2 nsi;@%SystemRoot%\system32\nsisvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 PcaSvc;@%SystemRoot%\system32\pcasvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 ProfSvc;@%systemroot%\system32\profsvc.dll,-300; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-01-21 247152]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe [2009-07-22 240128]
R2 SysMain;@%SystemRoot%\system32\sysmain.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2009-11-13 92008]
R2 UxSms;@%SystemRoot%\system32\dwm.exe,-2000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Wlansvc;@%SystemRoot%\System32\wlansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 WMPNetworkSvc;@%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101; C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe []
R2 WSearch;@%systemroot%\system32\SearchIndexer.exe,-103; C:\Windows\system32\SearchIndexer.exe [2009-07-14 428032]
R2 wudfsvc;@%SystemRoot%\system32\wudfsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 AeLookupSvc;@%SystemRoot%\system32\aelupsvc.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 Appinfo;@%systemroot%\system32\appinfo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
R3 fdPHost;@%systemroot%\system32\fdPHost.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2009-06-10 42840]
R3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
R3 KeyIso;@keyiso.dll,-100; C:\Windows\system32\lsass.exe []
R3 netprofm;@%SystemRoot%\system32\netprofm.dll,-202; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
R3 p2pimsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8004; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 p2psvc;@%SystemRoot%\system32\p2psvc.dll,-8006; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 PNRPsvc;@%SystemRoot%\system32\pnrpsvc.dll,-8000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 SDRSVC;@%SystemRoot%\system32\sdrsvc.dll,-107; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 wcncsvc;@%SystemRoot%\system32\wcncsvc.dll,-3; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiServiceHost;@%systemroot%\system32\wdi.dll,-502; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WdiSystemHost;@%systemroot%\system32\wdi.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R3 WinHttpAutoProxySvc;@%SystemRoot%\system32\winhttp.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S2 gupdate1ca8d8395819c80;Service Google Update (gupdate1ca8d8395819c80); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-01-04 133104]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\Windows\system32\sppsvc.exe []
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 CertPropSvc;@%SystemRoot%\System32\certprop.dll,-11; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 clr_optimization_v2.0.50727_32;Microsoft .NET Framework NGEN v2.0.50727_X86; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2009-06-10 66384]
S3 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-06-10 89920]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\Windows\System32\lsass.exe []
S3 ehRecvr;@%SystemRoot%\ehome\ehrecvr.exe,-101; C:\Windows\ehome\ehRecvr.exe [2009-07-14 696832]
S3 ehSched;@%SystemRoot%\ehome\ehsched.exe,-101; C:\Windows\ehome\ehsched.exe [2009-07-14 127488]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe []
S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe [2010-01-04 238328]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-29 182768]
S3 idsvc;@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193; C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe [2009-06-10 856384]
S3 IPBusEnum;@%systemroot%\system32\IPBusEnum.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 KtmRm;@comres.dll,-2946; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 lltdsvc;@%SystemRoot%\system32\lltdres.dll,-1; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 MSiSCSI;@%SystemRoot%\system32\iscsidsc.dll,-5000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2009-07-14 20992]
S3 pla;@%systemroot%\system32\pla.dll,-500; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PNRPAutoReg;@%SystemRoot%\system32\pnrpauto.dll,-8002; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 QWAVE;@%SystemRoot%\system32\qwave.dll,-1; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SCPolicySvc;@%SystemRoot%\System32\certprop.dll,-13; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SessionEnv;@%SystemRoot%\System32\SessEnv.dll,-1026; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SNMPTRAP;@%SystemRoot%\system32\snmptrap.exe,-3; C:\Windows\System32\snmptrap.exe []
S3 sppuinotify;@%SystemRoot%\system32\sppuinotify.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 SstpSvc;@%SystemRoot%\system32\sstpsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TabletInputService;@%SystemRoot%\system32\TabSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 TBS;@%SystemRoot%\system32\tbssvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 THREADORDER;@%systemroot%\system32\mmcss.dll,-102; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 TrustedInstaller;@%SystemRoot%\servicing\TrustedInstaller.exe,-100; C:\Windows\servicing\TrustedInstaller.exe [2009-07-14 194048]
S3 UI0Detect;@%SystemRoot%\system32\ui0detect.exe,-101; C:\Windows\system32\UI0Detect.exe []
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\Windows\system32\lsass.exe []
S3 vds;@%SystemRoot%\system32\vds.exe,-100; C:\Windows\System32\vds.exe []
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe []
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WcsPlugInService;@%SystemRoot%\system32\WcsPlugInService.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 Wecsvc;@%SystemRoot%\system32\wecsvc.dll,-200; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 wercplsupport;@%SystemRoot%\System32\wercplsupport.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WerSvc;@%SystemRoot%\System32\wersvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinDefend;@%ProgramFiles%\Windows Defender\MsMpRes.dll,-103; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WinRM;@%Systemroot%\system32\wsmsvc.dll,-101; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WPCSvc;@%SystemRoot%\system32\wpcsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WPDBusEnum;@%SystemRoot%\system32\wpdbusenum.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WwanSvc;@%SystemRoot%\System32\wwansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 Mcx2Svc;@%SystemRoot%\ehome\ehres.dll,-15501; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 NetTcpPortSharing;@%systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201; C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe [2009-06-10 116560]

-----------------EOF-----------------
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

Re: lost

Messagepar c2bis » 16 Fév 2010 23:31

rectificatif
les 2 premiers messages sont sur le meme rapport voici le 2ème :

info.txt logfile of random's system information tool 1.06 2010-02-16 23:14:50

======Uninstall list======

-->"C:\Program Files (x86)\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Blasterball 2 Revolution\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Blasterball 3\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Bob the Builder Can-Do-Zoo\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Build-a-lot 2\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Build-a-lot 3\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Chocolatier - Decadence by Design\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Chuzzle Deluxe\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Dora's Carnival Adventure\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Eighteen Wheels of Steel Haulin'\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Farm Frenzy - Pizza Party\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\FATE Undiscovered Realms\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Game Explorer Categories - genres\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Game Explorer Categories - main\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\HP Game Console\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Jewel Quest Solitaire 2\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\John Deere Drive Green\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Liong - The Lost Amulets\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Mah Jong Medley\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Mortimer Beckett and the Time Paradox\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Mystery P.I. - The New York Fortune\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Mystery P.I. - The Vegas Heist\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Peggle\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Penguins!\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Polar Bowler\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Polar Golfer\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Slingo Deluxe\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Super Collapse 3\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\The Hidden Object Game Show\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Totem Tribe\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Virtual Villagers - The Secret City\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\World of Goo\Uninstall.exe"
-->"C:\Program Files (x86)\HP Games\Zuma Deluxe\Uninstall.exe"
-->"C:\Program Files (x86)\InstallShield Installation Information\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\setup.exe" /z-uninstall
-->C:\Program Files (x86)\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
-->C:\Windows\UNNeroShowTime.exe /UNINSTALL
-->C:\Windows\UNNeroVision.exe /UNINSTALL
-->C:\Windows\UNRecode.exe /UNINSTALL
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Flash Player 10 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 9.1 MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-A91000000001}
ArcSoft MediaImpression 2-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{30B056AF-F414-4B68-B9B0-6EFDB9FCDF18}\Setup.exe" -l0x40c
ArcSoft Photo Book Screen Saver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{E2EE273D-E111-4FFD-ACD4-78E1D35E01D2}\Setup.exe" -l0x9
ArcSoft PhotoStudio 6-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{9A4D3FF6-FFDD-4E4E-B887-4BF378174F04}\Setup.exe" -l0x40c
ArcSoft Print Creations - Album Page-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1AlbumPage
ArcSoft Print Creations - Brochures & Flyers-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1Brochure
ArcSoft Print Creations - Funhouse II-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1HouseFun
ArcSoft Print Creations - Funhouse-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1Funhouse
ArcSoft Print Creations - Greeting Card-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1GreetingCard
ArcSoft Print Creations - Photo Book-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1PhotoBook
ArcSoft Print Creations - Photo Calendar-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1Calendar
ArcSoft Print Creations - Photo Prints-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1PhotoPrint
ArcSoft Print Creations - Poster Creator-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1Poster
ArcSoft Print Creations - Scrapbook-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1ScrapBook
ArcSoft Print Creations - Slimline Card-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c -1Slimline
ArcSoft Print Creations-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F03EC055-F34E-4F6B-A684-8A370E11A304}\Setup.exe" -l0x40c
ArcSoft RAW Thumbnail Viewer-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{82FAC25D-D0E1-4D60-9268-F3DD958BF052}\Setup.exe" -l0x40c
ArcSoft Video Downloader-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{C8B44566-839A-459C-A73D-49764CE216CC}\Setup.exe" -l0x40c
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
Catalyst Control Center - Branding-->MsiExec.exe /I{266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7}
CyberLink DVD Suite-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
CyberLink DVD Suite-->"C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
Google Toolbar for Internet Explorer-->"C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarManager_E85CDE7661A53A6A.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Earth-->MsiExec.exe /X{2EAF7E61-068E-11DF-953C-005056806466}
HijackThis 2.0.2-->"C:\Program Files (x86)\trend micro\HijackThis.exe" /uninstall
HP Advisor-->MsiExec.exe /X{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}
HP Games-->"C:\Program Files (x86)\HP Games\Uninstall.exe"
HP MediaSmart DVD-->"C:\Program Files (x86)\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
HP MediaSmart DVD-->"C:\Program Files (x86)\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
HP MediaSmart Internet TV-->"C:\Program Files (x86)\InstallShield Installation Information\{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}\setup.exe" /z-uninstall
HP MediaSmart Internet TV-->"C:\Program Files (x86)\InstallShield Installation Information\{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}\setup.exe" /z-uninstall
HP MediaSmart Live TV-->"C:\Program Files (x86)\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\setup.exe" /z-uninstall
HP MediaSmart Live TV-->"C:\Program Files (x86)\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\setup.exe" /z-uninstall
HP MediaSmart Movie Themes-->"C:\Program Files (x86)\InstallShield Installation Information\{3023EBDA-BF1B-4831-B347-E5018555F26E}\setup.exe" /z-uninstall
HP MediaSmart Movie Themes-->"C:\Program Files (x86)\InstallShield Installation Information\{3023EBDA-BF1B-4831-B347-E5018555F26E}\setup.exe" /z-uninstall /zMS
HP MediaSmart Music/Photo/Video-->"C:\Program Files (x86)\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall
HP MediaSmart Music/Photo/Video-->"C:\Program Files (x86)\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall /zMS
HP MediaSmart Webcam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
HP MediaSmart Webcam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall /z
HP Quick Launch Buttons-->"C:\Program Files (x86)\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe" -runfromtemp -l0x040c -removeonly uninst
HP Setup-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}\setup.exe" -l0x9 -removeonly
HP Support Assistant-->"C:\Program Files (x86)\InstallShield Installation Information\{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}\setup.exe" -runfromtemp -l0x0409 -removeonly
HP Update-->MsiExec.exe /X{D46D081B-F60E-467E-A7C4-117B70D76731}
HP User Guides 0153-->MsiExec.exe /X{2EBA8202-FBD5-4004-81EA-BDC38C054CE2}
HP Wireless Assistant-->MsiExec.exe /X{54CC7901-804D-4155-B353-21F0CC9112AB}
HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
IDT Audio-->"C:\Program Files (x86)\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -remove -removeonly
Installation Windows Live-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
JMicron Flash Media Controller Driver-->"C:\Program Files (x86)\JMicron\JMCR_DIR\setup.exe" delpkg
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
LabelPrint-->"C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
Le Comte de Monte Cristo-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{A75A3152-220E-430B-A6DC-62D3FA79B578}\Setup.exe" -l0x40c
Malwarebytes' Anti-Malware-->"C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {E64BA721-2310-4B55-BE5A-2925F9706192}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-002A-040C-1000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
Microsoft Office Home and Student 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
Microsoft Office Suite Activation Assistant-->MsiExec.exe /X{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nero 7 Essentials-->MsiExec.exe /X{B28B351F-1232-46EA-85EF-B8EA91641036}
Norton Internet Security-->C:\Program Files (x86)\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS\A5E82D02\16.7.2.11\InstStub.exe /X
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
PhotoNow!-->"C:\Program Files (x86)\InstallShield Installation Information\{D36DD326-7280-11D8-97C8-000129760CBE}\Setup.exe" /z-uninstall
PhotoNow!-->"C:\Program Files (x86)\InstallShield Installation Information\{D36DD326-7280-11D8-97C8-000129760CBE}\Setup.exe" /z-uninstall
Photorécit 3 pour Windows-->MsiExec.exe /I{4F41AD68-89F2-4262-A32C-2F70B01FCE9E}
Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
Power2Go-->"C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
PowerDirector-->"C:\Program Files (x86)\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
PowerDirector-->"C:\Program Files (x86)\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
PowerRecover-->"C:\Program Files (x86)\InstallShield Installation Information\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}\setup.exe" /z-uninstall
QLBCASL-->MsiExec.exe /I{F1D7AC58-554A-4A58-B784-B61558B1449A}
Realtek 8136 8168 8169 Ethernet Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
The Mystery of the Mary Celeste-->"C:\Program Files (x86)\HP Games\The Mystery of the Mary Celeste\Uninstall.exe"
TomTom HOME 2.7.3.1894-->C:\Program Files (x86)\TomTom HOME 2\Uninstall TomTom HOME.exe
TomTom HOME Visual Studio Merge Modules-->MsiExec.exe /I{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft Office InfoPath 2007 (KB976416)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
Windows Live Movie Maker-->MsiExec.exe /X{53B20C18-D8D4-4588-8737-9BBFE303C354}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
Zylom Games Player Plugin-->"C:\Program Files (x86)\Zylom Games\UninstallPlugin.exe" --uninstall

======System event log======

Computer Name: Céline-PC
Event Code: 5033
Message: Intel(R) WiFi Link 5100 AGN : la carte réseau a détecté que le câble token ring est déconnecté de la carte réseau. Veuillez reconnecter le câble.
Record Number: 2721
Source Name: netw5v64
Time Written: 20091228213708.178460-000
Event Type: Avertissement
User:

Computer Name: Céline-PC
Event Code: 1
Message: Realtek PCIe GBE Family Controller is disconnected from network.
Record Number: 2670
Source Name: RTL8167
Time Written: 20091228213649.852025-000
Event Type: Avertissement
User:

Computer Name: Céline-PC
Event Code: 4001
Message: Le Service d’autoconfiguration WLAN s’est arrêté correctement.

Record Number: 2646
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20091228213607.254400-000
Event Type: Avertissement
User: AUTORITE NT\Système

Computer Name: Céline-PC
Event Code: 1
Message: Realtek PCIe GBE Family Controller is disconnected from network.
Record Number: 2478
Source Name: RTL8167
Time Written: 20091228210943.774025-000
Event Type: Avertissement
User:

Computer Name: Céline-PC
Event Code: 4001
Message: Le Service d’autoconfiguration WLAN s’est arrêté correctement.

Record Number: 2455
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20091228210855.281418-000
Event Type: Avertissement
User: AUTORITE NT\Système

=====Application event log=====

Computer Name: Céline-PC
Event Code: 1530
Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

DÉTAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-384906095-3857046164-3746913057-1001:
Process 1640 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Microsoft\Windows\CurrentVersion\Explorer

Record Number: 2144
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20091229190410.779358-000
Event Type: Avertissement
User: AUTORITE NT\Système

Computer Name: Céline-PC
Event Code: 1530
Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

DÉTAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-384906095-3857046164-3746913057-1001:
Process 1848 (\Device\HarddiskVolume2\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001

Record Number: 2053
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20091229073807.116569-000
Event Type: Avertissement
User: AUTORITE NT\Système

Computer Name: Céline-PC
Event Code: 1530
Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

DÉTAIL -
5 user registry handles leaked from \Registry\User\S-1-5-21-384906095-3857046164-3746913057-1001:
Process 580 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 580 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 580 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 580 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
Process 580 (\Device\HarddiskVolume2\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001\Software\Microsoft\Internet Explorer\IETld

Record Number: 1955
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20091228213604.847191-000
Event Type: Avertissement
User: AUTORITE NT\Système

Computer Name: Céline-PC
Event Code: 11
Message: Fuite de mémoire possible. L’application (C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted) (PID : 924) a transmis un pointeur non NULL à RPC pour un paramètre [out] marqué [allocate(all_nodes)]. Les paramètres [allocate(all_nodes)] sont toujours réaffectés ; si le pointeur initial contenait une adresse mémoire valide, cela entraînerait une fuite de cette mémoire. L’appel provenait de l’interface avec l’UUID ({3F31C91E-2545-4B7B-9311-9529E8BFFEF6}), Numéro de méthode (20). Action utilisateur : contactez le fournisseur de l’application pour obtenir une version mise à jour.
Record Number: 1815
Source Name: Microsoft-Windows-RPC-Events
Time Written: 20091228211207.106479-000
Event Type: Avertissement
User: AUTORITE NT\SERVICE LOCAL

Computer Name: Céline-PC
Event Code: 1530
Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

DÉTAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-384906095-3857046164-3746913057-1001:
Process 504 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-384906095-3857046164-3746913057-1001

Record Number: 1794
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20091228210852.925813-000
Event Type: Avertissement
User: AUTORITE NT\Système

=====Security event log=====

Computer Name: Céline-PC
Event Code: 4616
Message: L’heure du système a été modifiée.

Sujet :
ID de sécurité : S-1-5-19
Nom du compte : SERVICE LOCAL
Domaine du compte : AUTORITE NT
ID d’ouverture de session : 0x3e5

Informations sur le processus :
ID du processus : 0x43c
Nom : C:\Windows\System32\svchost.exe

Heure précédente : ?2009?-?12?-?28T20:27:23.197848900Z
Nouvelle heure : ?2009?-?12?-?28T20:27:23.197000000Z

Cet événement est généré lorsque l’heure du système est modifiée. Le changement régulier de l’heure du système est une opération normale de la part du service de temps Windows qui s’exécute avec des privilèges système. D’autres modifications de l’heure du système peuvent indiquer des tentatives de modification non autorisées de l’ordinateur.
Record Number: 1525
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091228202723.197000-000
Event Type: Succès de l’audit
User:

Computer Name: Céline-PC
Event Code: 4616
Message: L’heure du système a été modifiée.

Sujet :
ID de sécurité : S-1-5-19
Nom du compte : SERVICE LOCAL
Domaine du compte : AUTORITE NT
ID d’ouverture de session : 0x3e5

Informations sur le processus :
ID du processus : 0x43c
Nom : C:\Windows\System32\svchost.exe

Heure précédente : ?2009?-?12?-?28T20:27:26.314878900Z
Nouvelle heure : ?2009?-?12?-?28T20:27:23.196848900Z

Cet événement est généré lorsque l’heure du système est modifiée. Le changement régulier de l’heure du système est une opération normale de la part du service de temps Windows qui s’exécute avec des privilèges système. D’autres modifications de l’heure du système peuvent indiquer des tentatives de modification non autorisées de l’ordinateur.
Record Number: 1524
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091228202723.196848-000
Event Type: Succès de l’audit
User:

Computer Name: Céline-PC
Event Code: 4905
Message: Une tentative d’annulation d’inscription de la source d’un événement de sécurité a été effectuée.

Sujet :
ID de sécurité : S-1-5-18
Nom du compte : WIN-RMLEEDO8MVN$
Domaine du compte : WORKGROUP
ID d’ouverture de session : 0x3e7

Processus :
ID du processus : 0xf68
Nom du processus : C:\Windows\System32\VSSVC.exe

Source de l’événement :
Nom de la source : VSSAudit
ID de la source de l’événement : 0x172045
Record Number: 1523
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091228202628.927968-000
Event Type: Succès de l’audit
User:

Computer Name: Céline-PC
Event Code: 4904
Message: Une tentative d’inscription de la source d’un événement de sécurité a été effectuée.

Sujet :
ID de sécurité : S-1-5-18
Nom du compte : WIN-RMLEEDO8MVN$
Domaine du compte : WORKGROUP
ID d’ouverture de session : 0x3e7

Processus :
ID du processus : 0xf68
Nom du processus : C:\Windows\System32\VSSVC.exe

Source de l’événement :
Nom de la source : VSSAudit
ID de la source de l’événement : 0x172045
Record Number: 1522
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091228202628.927968-000
Event Type: Succès de l’audit
User:

Computer Name: Céline-PC
Event Code: 1102
Message: Le journal d’audit a été effacé.
Objet :
ID de sécurité : S-1-5-21-384906095-3857046164-3746913057-1001
Nom de compte : Céline
Nom de domaine : Céline-PC
ID de connexion : 0xd47bf
Record Number: 1521
Source Name: Microsoft-Windows-Eventlog
Time Written: 20091228202625.948363-000
Event Type: Succès de l’audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\WIDCOMM\Bluetooth Software\;C:\Program Files\WIDCOMM\Bluetooth Software\syswow64;
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=2
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
"PROCESSOR_REVISION"=170a
"OnlineServices"=Online Services
"Platform"=MCD
"PCBRAND"=Pavilion

-----------------EOF-----------------
c2bis
 
Messages: 25
Inscription: 10 Fév 2010 18:35

PrécédenteSuivante

Retourner vers Désinfections et demandes d'analyse

Qui est en ligne

Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 2 invités