Votre question

Aide RAPPORT COMBOFIX

Tags :
  • Portable dell
  • Sécurité
Dernière réponse : dans Sécurité et virus
22 Octobre 2010 17:10:49

Bonjour

J'ai un PC portable DELL INSPIRON 1010, acheté sans modification

les problèmes de ma machine sont :

plus de téléchargement possible (sauf en mode sans échec)
plus de son
image instable parfois
blocage de l'image avec défilement de bandes horizontales, dans ce cas je suis obligé de redémarrer l'ordi
dans démarrer/rechercher, plus de recherche possible

J'ai fais une réinstalle de windows xp sur l'ancienne version, aucune amélioration
je n'ai pas pu faire un formatage, refus de la machine

J'ai fais un scan avec Combofix, en ayant neutralisé Avast, mais j'ai oublié spyware et le pare feu.
Evidemment je ne sais pas lire le rapport


http://www.cijoint.fr/cjlink.php?file=cj201010/cijkYpUP...


Si vous pouviez m'aider

Je vous remercie par avance

Bien cordialement Christian

Autres pages sur : aide rapport combofix

a c 295 8 Sécurité
22 Octobre 2010 20:16:10

Bonjour,

  • Télécharge Ad-Remover (de C_XX) sur ton Bureau.
  • Déconnecte-toi et ferme toutes applications en cours.
  • Double-clique sur AD-R situé sur ton Bureau pour le lancer.
  • Choisis Nettoyer puis valide.
  • Poste le rapport qui apparaît à la fin (C:\Ad-Report-CLEAN.log).

    (CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)
    m
    0
    l
    22 Octobre 2010 20:27:41

    Bonsoir
    Si je reussi à telecharger en mode sans échec, aurai-je le même résultat.
    Quand je suis sur le bureau de windows, je ne peux pas télécharger.
    Merci de m'avoir répondu
    Christian
    m
    0
    l
    Contenus similaires
    22 Octobre 2010 20:57:45

    ======= RAPPORT D'AD-REMOVER 2.0.0.2,B | UNIQUEMENT XP/VISTA/7 =======

    Mis à jour par TeamXscript le 22/10/10 à 20:00
    Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
    Site web: http://www.teamxscript.org

    C:\Program Files\Ad-Remover\main.exe (CLEAN [2]) -> Lancé à 23:17:46 le 22/10/2010, Mode normal

    Microsoft Windows XP Édition familiale Service Pack 3 (X86)
    MOI@CHRISTIAN ( )

    ============== ACTION(S) ==============



    (!) -- Fichiers temporaires supprimés.



    ============== SCAN ADDITIONNEL ==============

    ** Mozilla Firefox Version [3.6.11 (fr)] **

    -- C:\Documents and Settings\MOI\Application Data\Mozilla\FireFox\Profiles\axvog8kx.default\Prefs.js --
    browser.download.lastDir, C:\\Documents and Settings\\MOI\\Bureau\\micro entreprise madagascar
    browser.search.selectedEngine, Bing
    browser.startup.homepage, hxxp://www.google.fr/
    browser.startup.homepage_override.mstone, rv:1.9.2.11
    keyword.URL, hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
    privacy.popups.showBrowserMessage, false

    ========================================

    ** Internet Explorer Version [6.0.2900.5512] **

    [HKCU\Software\Microsoft\Internet Explorer\Main]
    Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnh...
    Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    Do404Search: 0x01000000
    Enable Browser Extensions: yes
    Local Page: C:\WINDOWS\system32\blank.htm
    Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
    Show_ToolBar: yes
    Start Page: hxxp://fr.msn.com/
    Use Search Asst: no

    [HKLM\Software\Microsoft\Internet Explorer\Main]
    Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
    Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    Delete_Temp_Files_On_Exit: yes
    Local Page: C:\WINDOWS\system32\blank.htm
    Search bar: hxxp://search.msn.com/spbasic.htm
    Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    Start Page: hxxp://fr.msn.com/

    [HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]
    Tabs: res://ieframe.dll/tabswelcome.htm
    Blank: res://mshtml.dll/blank.htm

    ========================================

    C:\Program Files\Ad-Remover\Quarantine: 35 Fichier(s)
    C:\Program Files\Ad-Remover\Backup: 15 Fichier(s)

    C:\Ad-Report-CLEAN[1].txt - 22/10/2010 (6896 Octet(s))
    C:\Ad-Report-CLEAN[2].txt - 22/10/2010 (484 Octet(s))

    Fin à: 23:23:16, 22/10/2010

    ============== E.O.F ==============
    m
    0
    l
    22 Octobre 2010 21:44:03

    Est-ce que la bête est sérieusement touchée, doit-on sonner l'hallali ?
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 01:35:34

  • Télécharge Malwarebytes' Anti-Malware (MBAM) sur ton Bureau.
  • Double-clique sur le fichier téléchargé pour lancer le processus d'installation.
  • Dans l'onglet Mise à jour, clique sur le bouton Recherche de mise à jour : si le pare-feu demande l'autorisation à MBAM de se connecter à Internet, accepte.
  • Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
  • Sélectionne Exécuter un examen rapide.
  • Clique sur Rechercher. L'analyse démarre.
  • A la fin de l'analyse, un message s'affiche :
    Citation :
    L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.

  • Clique sur OK pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
  • Ferme tes navigateurs.
  • Si des malwares ont été détectés, clique sur Afficher les résultats.
  • Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre infectés et en mettre une copie dans la quarantaine.
  • MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport dans ta prochaine réponse.
    m
    0
    l
    23 Octobre 2010 07:51:39

    Bonjour

    Voilà le rapport de MBAM.

    Pourrais tu me donner des précisions sur ces virus ?
    Comment, je l'ai attrapé
    Bien cordialement

    Christian


    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org

    Version de la base de données: 4052

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 6.0.2900.5512

    24/10/2010 07:46:43
    mbam-log-2010-10-24 (07-46-43).txt

    Type d'examen: Examen complet (C:\|)
    Elément(s) analysé(s): 169384
    Temps écoulé: 51 minute(s), 54 seconde(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 0
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 5

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\Qoobox\Quarantine\C\WINDOWS\system32\512113\dp1.fne.vir (Worm.Autorun) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\512113\eAPI.fne.vir (Worm.Autorun) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\512113\HtmlView.fne.vir (HackTool.Patcher) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\512113\internet.fne.vir (HackTool.Patcher) -> Quarantined and deleted successfully.
    C:\Qoobox\Quarantine\C\WINDOWS\system32\512113\RegEx.fnr.vir (Worm.AutoRun) -> Quarantined and deleted successfully.
    m
    0
    l
    23 Octobre 2010 08:26:30

    Rebonjour,

    Après redémarrage de la machine, il n'y a toujours pas le son. Elle me demande si je veux installer ELAN PS/2 port input device, ce que je ne fais pas. Je n'ai pas vérifié les ports USB, il est possible qu'ils ne fonctionnent pas plus.
    Que dois je faire ?

    A bientôt

    Christian
    m
    0
    l
    23 Octobre 2010 08:54:52


    Merci de me consacrer du temps, j'ai vu que tu restais jusqu'a tard dans la nuit sur ta machine

    Christian
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 16:48:11

    MBAM n'est pas à jour.

    Regarde dans le gestionnaire de périphériques si tu as des ? ou ! jaunes. Si oui, devant quels périphériques ?

    Pour accéder au gestionnaire de périphériques :
    ---> Menu démarrer
    ---> Exécuter
    ---> Tu tapes devmgmt.msc et tu fais OK.
    m
    0
    l
    23 Octobre 2010 17:32:56

    !jaune) Realteck PCIe FE Family Controller
    X rouge) Realteck HD audio

    pilotes non plug and play

    ! jaune) Kernel mode driver frameworks service
    ! jaune Serial
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 17:53:13

    Tu peux refaire un scan avec MBAM à jour ?
    m
    0
    l
    23 Octobre 2010 18:14:15

    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org

    Version de la base de données: 4927

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 6.0.2900.5512

    24/10/2010 18:09:46
    mbam-log-2010-10-24 (18-09-46).txt

    Type d'examen: Examen rapide
    Elément(s) analysé(s): 154283
    Temps écoulé: 13 minute(s), 17 seconde(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 0
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 0

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    (Aucun élément nuisible détecté)
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 21:22:45

    Pour Realtek, tu ne peux pas faire un clic droit --> Activer ?
    m
    0
    l
    23 Octobre 2010 21:39:05

    J'ai pu réactiver realteck, mais j'ai toujours un problème de télechargement de pilotes, pour lui comme pour les autres. Les mises a jour ne fonctionnent pas.
    Je me suis en mode sans échec, le téléchargement ne va pas mieux.
    J'ai fais aussi une désinstalle de realteck, l'ordi me la ensuite proposé, j'ai accepté b ien sur et j'ai fais plusieures tentatives sans succés pour installer Rtenicxp.sys

    C'est sympa de ne pas lacher prise, moi je commence à en avoir marre
    A+
    m
    0
    l
    23 Octobre 2010 21:58:28

    Peux tu me dire, ce que signifie cette phrase :
    " l'administrateur système à configuré la politique de votre système pour interdire cette installation "
    Dans option internet, j'ai tout autorisé, la violence, le sexe etc... au cas ou il y aurait blocage de ce coté.
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 22:00:57

    Ta session est bien administrateur ?
    m
    0
    l
    23 Octobre 2010 22:39:18

    c'est administrateur ou moi. Et effectivement en ce moment je suis sur moi
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 22:47:50

    Moi est une session limitée ?
    m
    0
    l
    23 Octobre 2010 22:54:27

    j'ai quitté le mode sans échec, je m'y suis perdu avec ces différentes sessions
    m
    0
    l
    a c 295 8 Sécurité
    23 Octobre 2010 22:59:55

    Tu as toujours la phrase ?

    Peux-tu me poster le rapport ComboFix situé dans C:\ ?
    m
    0
    l
    23 Octobre 2010 23:04:19

    Je n'arrive pas a retrouver driverwhiz. Je l'ai mis sur le bureau, sous documents and settings\moi\documents.
    Quand je fais une recherche pour l'installer - gestionnaire de periphériques, installer les pilotes, c: parcourir, je ne le retrouve pas. Quelque soit la session
    m
    0
    l
    23 Octobre 2010 23:07:36

    ComboFix 10-10-19.04 - MOI 20/10/2010 20:49:34.2.2 - x86
    Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.1014.294 [GMT 2:00]
    Lancé depuis: c:\documents and settings\MOI\dwhelper\ComboFix.exe
    AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
    .

    ((((((((((((((((((((((((((((( Fichiers créés du 2010-09-20 au 2010-10-20 ))))))))))))))))))))))))))))))))))))
    .

    2010-10-20 17:41 . 2010-10-20 17:41 -------- d-----w- c:\program files\Ericsson
    2010-10-20 17:41 . 2010-10-20 17:41 -------- d-----w- c:\documents and settings\All Users\Application Data\Ericsson
    2010-10-20 17:34 . 2010-10-20 17:49 -------- d-----w- c:\windows\LastGood
    2010-10-20 14:55 . 2010-10-20 14:55 -------- d--h--w- c:\windows\PIF
    2010-10-20 09:58 . 2010-10-20 09:58 -------- d-----w- c:\documents and settings\MOI\Application Data\Nero
    2010-10-20 09:17 . 2010-10-20 09:18 -------- d-----w- C:\Temp
    2010-10-20 09:16 . 2010-10-20 09:18 16384 ----a-w- c:\windows\system32\lgfwunis.exe
    2010-10-20 09:16 . 2001-08-29 19:00 59904 ----a-w- c:\windows\system32\wbemdisp.tlb
    2010-10-20 09:16 . 1998-07-21 22:00 102160 ----a-w- c:\windows\system32\VB6KO.DLL
    2010-10-20 09:16 . 1998-06-23 22:00 115016 ----a-w- c:\windows\system32\MSINET.OCX
    2010-10-20 09:16 . 2010-10-20 16:29 -------- d-----w- c:\program files\lg_fwupdate
    2010-10-20 09:10 . 2010-10-20 09:10 -------- d-----w- c:\documents and settings\All Users\Application Data\Nero
    2010-10-20 09:10 . 2010-10-20 09:12 -------- d-----w- c:\program files\Fichiers communs\Nero
    2010-10-20 09:10 . 2010-10-20 09:10 -------- d-----w- c:\program files\Nero
    2010-10-20 08:58 . 2007-01-08 20:17 27168 ------w- c:\windows\system32\msxml3a.dll
    2010-10-20 08:16 . 2010-10-20 08:16 3072112 ----a-w- c:\program files\PDF_Suite_2010_Installer.exe
    2010-10-20 07:02 . 2010-10-20 07:02 -------- d-----w- c:\program files\Modem Diagnostic Tool
    2010-10-19 17:43 . 2010-10-20 17:54 -------- d-----w- C:\{2426F42A-20BE-4F19-A8A5-640920671123}
    2010-10-19 13:07 . 2010-09-07 15:12 38848 ----a-w- c:\windows\avastSS.scr
    2010-10-19 13:07 . 2010-10-19 13:07 -------- d-----w- c:\documents and settings\All Users\Application Data\Alwil Software
    2010-10-18 11:38 . 2010-10-18 11:38 -------- d-----w- c:\documents and settings\Administrateur.CHRISTIAN
    2010-10-18 10:39 . 2010-10-18 10:39 -------- d-----w- c:\windows\Dell
    2010-10-18 10:11 . 2008-04-13 23:00 15360 -c--a-w- c:\windows\system32\dllcache\register.exe
    2010-10-18 10:10 . 2008-04-13 23:00 39936 -c--a-w- c:\windows\system32\dllcache\hostmib.dll
    2010-10-18 10:09 . 2008-04-13 23:00 19456 -c--a-w- c:\windows\system32\dllcache\agt040d.dll
    2010-10-18 10:06 . 2008-04-13 23:00 16384 -c--a-w- c:\windows\system32\dllcache\isignup.exe
    2010-10-18 10:06 . 2008-04-13 23:00 16384 ----a-w- c:\program files\Internet Explorer\Connection Wizard\isignup.exe
    2010-10-18 09:43 . 2008-04-13 23:00 16825 ----a-r- c:\windows\SET5E.tmp
    2010-10-18 09:43 . 2008-04-13 23:00 1088840 ----a-r- c:\windows\SET52.tmp
    2010-10-18 09:43 . 2008-04-13 23:00 1246130 ----a-r- c:\windows\SET4F.tmp
    2010-10-18 08:52 . 2008-04-13 23:00 10096640 -c--a-w- c:\windows\system32\dllcache\hwxcht.dll
    2010-10-18 08:52 . 2008-04-13 23:00 24661 -c--a-w- c:\windows\system32\dllcache\spxcoins.dll
    2010-10-18 08:52 . 2008-04-13 23:00 24661 ----a-w- c:\windows\system32\spxcoins.dll
    2010-10-18 08:52 . 2008-04-13 23:00 13312 -c--a-w- c:\windows\system32\dllcache\irclass.dll
    2010-10-18 08:52 . 2008-04-13 23:00 13312 ----a-w- c:\windows\system32\irclass.dll
    2010-10-18 08:52 . 2008-04-13 23:00 16825 ----a-r- c:\windows\SET100.tmp
    2010-10-18 08:52 . 2008-04-13 23:00 1088840 ----a-r- c:\windows\SETF4.tmp
    2010-10-18 08:52 . 2008-04-13 23:00 1246130 ----a-r- c:\windows\SETF1.tmp
    2010-10-18 07:34 . 2010-10-18 08:20 -------- d-----w- c:\program files\Microsoft Silverlight
    2010-10-18 07:29 . 2010-10-18 07:29 86576 ----a-w- c:\documents and settings\MOI\Application Data\Microsoft\Services Windows Live\Raccourci Galerie de Photos Windows Live.exe
    2010-10-18 07:29 . 2010-10-18 07:29 132672 ----a-w- c:\documents and settings\MOI\Application Data\Microsoft\Services Windows Live\Raccourci Windows Live Messenger.exe
    2010-10-18 07:29 . 2010-10-18 07:29 392728 ----a-w- c:\documents and settings\MOI\Application Data\Microsoft\Services Windows Live\Services Windows Live.dll
    2010-10-18 05:05 . 2010-10-18 05:07 -------- d-----w- c:\documents and settings\MOI\Local Settings\Application Data\OpenCandy
    2010-10-18 05:05 . 2010-10-18 05:05 -------- d-----w- c:\documents and settings\MOI\Application Data\OpenCandy
    2010-10-17 15:17 . 2010-10-17 15:17 -------- d-----w- c:\program files\SystemRequirementsLab
    2010-10-17 15:17 . 2010-10-17 15:17 -------- d-----w- c:\program files\Raptr
    2010-10-17 15:16 . 2010-10-17 15:17 -------- d-----w- C:\I386
    2010-10-17 15:16 . 2010-10-17 15:16 -------- d-----w- c:\program files\Ask.com
    2010-10-17 14:38 . 2010-01-12 03:35 100896 ----a-w- c:\windows\system32\RTNUninst32.dll
    2010-10-17 14:38 . 2010-07-06 01:13 234392 ----a-w- c:\windows\system32\drivers\Rtenicxp.sys
    2010-10-17 14:38 . 2010-01-12 03:35 80416 ----a-w- c:\windows\system32\RtNicProp32.dll
    2010-10-17 13:53 . 2010-10-17 13:53 -------- d-----w- c:\documents and settings\MOI\Application Data\Uniblue
    2010-10-17 11:52 . 2010-10-20 17:24 555880 ----a-w- c:\program files\Mozilla Firefox\uninstall\helper.exe
    2010-10-16 18:37 . 2010-10-16 18:37 -------- d-----w- c:\windows\system32\wbem\Repository
    2010-10-16 18:31 . 2010-10-20 16:40 -------- d-----w- c:\documents and settings\MOI\Local Settings\Application Data\AskToolbar
    2010-10-11 16:17 . 2010-10-11 16:17 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
    2010-10-07 05:30 . 2010-10-20 17:24 16856 ----a-w- c:\program files\Mozilla Firefox\plugin-container.exe
    2010-10-07 05:30 . 2010-10-20 17:24 719832 ----a-w- c:\program files\Mozilla Firefox\mozcpp19.dll
    2010-10-06 09:51 . 2010-10-06 09:51 -------- d-----w- c:\documents and settings\MOI\Local Settings\Application Data\Vuze_Remote
    2010-10-06 09:15 . 2010-10-06 09:17 -------- d-----w- c:\documents and settings\MOI\Local Settings\Application Data\EdenFlash
    2010-09-22 16:10 . 2010-09-22 16:10 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
    2010-09-22 16:10 . 2010-09-22 16:10 103864 ----a-w- c:\program files\Internet Explorer\PLUGINS\nppdf32.dll

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-09-12 21:00 . 2010-02-16 15:59 119808 ----a-w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
    .

    ------- Sigcheck -------

    [-] 2010-09-10 . 07F85C15C4C0950DB8B5D4509D38182D . 5957120 . . [8.00.6001.18975] . . c:\windows\SoftwareDistribution\Download\1ee06da6d9c70a7cc36090af224837b6\SP3GDR\mshtml.dll
    [-] 2010-09-10 . E97A32E6341D4ED609514D59EB5D0E3D . 5958656 . . [8.00.6001.23067] . . c:\windows\$hf_mig$\KB2360131-IE8\SP3QFE\mshtml.dll
    [-] 2010-09-10 . E97A32E6341D4ED609514D59EB5D0E3D . 5958656 . . [8.00.6001.23067] . . c:\windows\SoftwareDistribution\Download\1ee06da6d9c70a7cc36090af224837b6\SP3QFE\mshtml.dll
    [-] 2010-09-09 . F82767442A6541A863693B611D322B8A . 3601920 . . [7.00.6000.17092] . . c:\windows\SoftwareDistribution\Download\4c5e2c575d2e09dda102a1e5f1cee8c5\sp3gdr\mshtml.dll
    [-] 2010-09-09 . 482216C69A20958D04D529102658114A . 3605504 . . [7.00.6000.21294] . . c:\windows\SoftwareDistribution\Download\4c5e2c575d2e09dda102a1e5f1cee8c5\sp3qfe\mshtml.dll
    [-] 2010-05-06 . 58AF16DE738F10213E86FEF10836D0E5 . 5950976 . . [8.00.6001.18928] . . c:\windows\ie8updates\KB2360131-IE8\mshtml.dll
    [-] 2010-05-06 . 705DA0AFB48A9333747475AD5600A902 . 5953024 . . [8.00.6001.23019] . . c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\mshtml.dll
    [-] 2010-03-11 . 1E81869FCA9787B42DC45A434BF14F2A . 3602944 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\mshtml.dll
    [-] 2010-03-11 . 42672DA5A7A741FE5728AE37F7080EFC . 3599872 . . [7.00.6000.17023] . . c:\windows\system32\mshtml.dll
    [-] 2010-03-11 . 42672DA5A7A741FE5728AE37F7080EFC . 3599872 . . [7.00.6000.17023] . . c:\windows\system32\dllcache\mshtml.dll
    [-] 2010-02-26 . 941F572A5703840868F77B485487CADC . 3094016 . . [6.00.2900.5945] . . c:\windows\ie7\mshtml.dll
    [-] 2010-02-26 . 30821D85390C63E9A0BD4D57159D1F05 . 3094528 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3QFE\mshtml.dll
    [-] 2010-02-25 . 61216C223AF660E87DF5482C861A9DE2 . 5944832 . . [8.00.6001.18904] . . c:\windows\ie8updates\KB982381-IE8\mshtml.dll
    [-] 2010-02-25 . B8B420A6EB2BB50AA014CD99C96CF983 . 5946880 . . [8.00.6001.22995] . . c:\windows\$hf_mig$\KB980182-IE8\SP3QFE\mshtml.dll
    [-] 2009-12-22 . 0935EDE7EDD8031598F8183B487F55D8 . 3094528 . . [6.00.2900.5921] . . c:\windows\$hf_mig$\KB978207\SP3QFE\mshtml.dll
    [-] 2009-10-29 . 68A29F2A4EA35F40339FC89549F388CE . 3094016 . . [6.00.2900.5897] . . c:\windows\$hf_mig$\KB976325\SP3QFE\mshtml.dll
    [-] 2009-10-19 . 96A5441C54E16340477D1B051AF5BEED . 3093504 . . [6.00.2900.5890] . . c:\windows\$hf_mig$\KB976749\SP3QFE\mshtml.dll
    [-] 2009-09-25 . CA9EE77EACF0021761764C28C2063D9A . 3093504 . . [6.00.2900.5880] . . c:\windows\$hf_mig$\KB974455\SP3QFE\mshtml.dll
    [-] 2009-07-18 . 4E816F8F7F18C2774EC5BACAC42635C0 . 3090944 . . [6.00.2900.5848] . . c:\windows\$hf_mig$\KB972260\SP3QFE\mshtml.dll
    [-] 2009-03-08 . D469A0EBA2EF5C6BEE8065B7E3196E5E . 5937152 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB980182-IE8\mshtml.dll
    [-] 2009-02-20 . BAE9A8994957EF57BB429A7E5688EC80 . 3089408 . . [6.00.2900.5764] . . c:\windows\$hf_mig$\KB963027\SP3QFE\mshtml.dll
    [-] 2008-12-12 . 6F69E698F11B1214F05195873B73BED4 . 3088896 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll
    [-] 2008-10-16 . 72299C6CD21801EAB5CBBC3F7B1DB195 . 3088896 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll
    [-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB980182-IE7\mshtml.dll

    [-] 2010-09-10 . A7E08F8C451076D4234AEB380693E45A . 916480 . . [8.00.6001.18968] . . c:\windows\SoftwareDistribution\Download\1ee06da6d9c70a7cc36090af224837b6\SP3GDR\wininet.dll
    [-] 2010-09-10 . 73F26DB9C92C7A8259B534451E3B18F9 . 919552 . . [8.00.6001.23060] . . c:\windows\$hf_mig$\KB2360131-IE8\SP3QFE\wininet.dll
    [-] 2010-09-10 . 73F26DB9C92C7A8259B534451E3B18F9 . 919552 . . [8.00.6001.23060] . . c:\windows\SoftwareDistribution\Download\1ee06da6d9c70a7cc36090af224837b6\SP3QFE\wininet.dll
    [-] 2010-09-09 . 7DFEAEB2E644144EF8BFA1903307D3C7 . 832512 . . [7.00.6000.17091] . . c:\windows\SoftwareDistribution\Download\4c5e2c575d2e09dda102a1e5f1cee8c5\sp3gdr\wininet.dll
    [-] 2010-09-09 . BB224795084F7BF4B64AB84E92AB7947 . 841216 . . [7.00.6000.21293] . . c:\windows\SoftwareDistribution\Download\4c5e2c575d2e09dda102a1e5f1cee8c5\sp3qfe\wininet.dll
    [-] 2010-05-06 . B98E84E2CD3EE25D6D41936352E93112 . 916480 . . [8.00.6001.18923] . . c:\windows\ie8updates\KB2360131-IE8\wininet.dll
    [-] 2010-05-06 . C906F4EA76E7BEC9255776E626086B95 . 919040 . . [8.00.6001.23014] . . c:\windows\$hf_mig$\KB982381-IE8\SP3QFE\wininet.dll
    [-] 2010-03-11 . 1BFBAE6B188230677BFE63962C2A11B4 . 832512 . . [7.00.6000.17023] . . c:\windows\system32\wininet.dll
    [-] 2010-03-11 . 1BFBAE6B188230677BFE63962C2A11B4 . 832512 . . [7.00.6000.17023] . . c:\windows\system32\dllcache\wininet.dll
    [-] 2010-03-11 . 5CC1B037988E966725FF544C564A22F3 . 841216 . . [7.00.6000.21228] . . c:\windows\$hf_mig$\KB980182-IE7\SP3QFE\wininet.dll
    [-] 2010-02-26 . 82782CBD6E1A6E87DCA435DBECEF9A73 . 671232 . . [6.00.2900.5945] . . c:\windows\ie7\wininet.dll
    [-] 2010-02-26 . 4527C7A356AFA4465BE5C713F8CB450C . 672768 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3QFE\wininet.dll
    [-] 2010-02-25 . 3897DB69B7ABF09C00406A249F8088D8 . 916480 . . [8.00.6001.18904] . . c:\windows\ie8updates\KB982381-IE8\wininet.dll
    [-] 2010-02-25 . B667625B38B5EA389044F90BDE80C4FD . 919040 . . [8.00.6001.22995] . . c:\windows\$hf_mig$\KB980182-IE8\SP3QFE\wininet.dll
    [-] 2009-12-22 . 6F18BDEDD53274AD3E5F55A454CD4A92 . 672768 . . [6.00.2900.5921] . . c:\windows\$hf_mig$\KB978207\SP3QFE\wininet.dll
    [-] 2009-10-29 . 1DF357F4537A7F5D77F46D9C4F36DDF0 . 672768 . . [6.00.2900.5897] . . c:\windows\$hf_mig$\KB976325\SP3QFE\wininet.dll
    [-] 2009-09-25 . 529081B5F266D9E18F85A2EF7725F21A . 672768 . . [6.00.2900.5880] . . c:\windows\$hf_mig$\KB974455\SP3QFE\wininet.dll
    [-] 2009-06-26 . 421625BFBCED3CCAFC30EBA47A05CECB . 672256 . . [6.00.2900.5835] . . c:\windows\$hf_mig$\KB972260\SP3QFE\wininet.dll
    [-] 2009-03-08 . 6CE32F7778061CCC5814D5E0F282D369 . 914944 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB980182-IE8\wininet.dll
    [-] 2009-02-20 . 8EAE861274F3E0C00C10C871371A1A8E . 671744 . . [6.00.2900.5764] . . c:\windows\$hf_mig$\KB963027\SP3QFE\wininet.dll
    [-] 2008-10-16 . 1C6E9FDAB1F4CB983A39EFBA6F131ACC . 671232 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll
    [-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB980182-IE7\wininet.dll
    .
    ((((((((((((((((((((((((((((( SnapShot@2010-10-20_16.28.38 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2010-10-20 17:52 . 2010-10-20 17:52 16384 c:\windows\temp\Perflib_Perfdata_4f0.dat
    - 2008-04-13 19:34 . 2008-04-13 23:00 23552 c:\windows\system32\wdmaud.drv
    + 2008-04-13 19:34 . 2008-04-13 17:34 23552 c:\windows\system32\wdmaud.drv
    - 2009-08-09 01:13 . 2009-03-30 01:15 35840 c:\windows\system32\RtkCoInstXP.dll
    + 2009-08-09 01:13 . 2009-02-09 12:34 35840 c:\windows\system32\RtkCoInstXP.dll
    + 2008-04-29 17:50 . 2010-10-20 17:51 90528 c:\windows\system32\perfc009.dat
    - 2008-04-29 17:50 . 2010-10-20 15:12 90528 c:\windows\system32\perfc009.dat
    + 2010-10-20 17:48 . 2008-04-13 23:00 23552 c:\windows\LastGood\System32\wdmaud.drv
    + 2010-10-20 17:49 . 2009-03-30 01:15 35840 c:\windows\LastGood\System32\RtkCoInstXP.dll
    + 2010-10-20 17:48 . 2008-04-13 09:45 49408 c:\windows\LastGood\System32\Drivers\stream.sys
    + 2010-10-20 17:48 . 2008-04-13 09:45 60160 c:\windows\LastGood\System32\Drivers\drmk.sys
    + 2010-10-20 17:49 . 2008-08-19 11:26 77824 c:\windows\LastGood\SOUNDMAN.EXE
    + 2010-10-20 17:49 . 2008-06-19 14:20 57344 c:\windows\LastGood\ALCMTR.EXE
    + 2010-10-20 17:41 . 2010-10-20 17:41 45056 c:\windows\Installer\{FF203294-02C1-4632-832C-762CBD15CF2D}\WirelessManager.ex_AF9690CE32E54A31A5724B026A2A71D1.exe
    + 2010-10-20 17:41 . 2010-10-20 17:41 45056 c:\windows\Installer\{FF203294-02C1-4632-832C-762CBD15CF2D}\NewShortcut3_5E8A6E5DC5074CF2A9D6B3831E06CF95.exe
    - 2010-10-20 07:02 . 2010-10-20 07:02 10222 c:\windows\Installer\{1882D3BE-8B8F-4EA3-9414-EB06CD5B9CD8}\DModem.exe_F63A3748B93D43609AD4B064481A5C7B.exe
    + 2010-10-20 07:02 . 2010-10-20 17:43 10222 c:\windows\Installer\{1882D3BE-8B8F-4EA3-9414-EB06CD5B9CD8}\DModem.exe_F63A3748B93D43609AD4B064481A5C7B.exe
    - 2010-10-20 07:02 . 2010-10-20 07:02 10222 c:\windows\Installer\{1882D3BE-8B8F-4EA3-9414-EB06CD5B9CD8}\ARPPRODUCTICON.exe
    + 2010-10-20 07:02 . 2010-10-20 17:43 10222 c:\windows\Installer\{1882D3BE-8B8F-4EA3-9414-EB06CD5B9CD8}\ARPPRODUCTICON.exe
    + 2010-10-20 17:48 . 2008-04-14 07:33 4096 c:\windows\LastGood\System32\ksuser.dll
    + 2010-10-20 17:41 . 2010-10-20 17:41 2238 c:\windows\Installer\{FF203294-02C1-4632-832C-762CBD15CF2D}\ARPPRODUCTICON.exe
    + 2010-10-20 17:34 . 2008-12-23 20:18 157696 c:\windows\system32\ReinstallBackups\0023\DriverFiles\RTS5121.sys
    + 2010-10-20 17:34 . 2008-12-23 20:18 266240 c:\windows\system32\ReinstallBackups\0023\DriverFiles\rts5121.dll
    + 2008-04-29 17:50 . 2010-10-20 17:51 602536 c:\windows\system32\perfh00C.dat
    - 2008-04-29 17:50 . 2010-10-20 15:12 602536 c:\windows\system32\perfh00C.dat
    - 2008-04-29 17:50 . 2010-10-20 15:12 505990 c:\windows\system32\perfh009.dat
    + 2008-04-29 17:50 . 2010-10-20 17:51 505990 c:\windows\system32\perfh009.dat
    + 2008-04-29 17:50 . 2010-10-20 17:51 116702 c:\windows\system32\perfc00C.dat
    - 2008-04-29 17:50 . 2010-10-20 15:12 116702 c:\windows\system32\perfc00C.dat
    - 2010-10-20 07:28 . 2010-04-12 15:29 153376 c:\windows\system32\javaws.exe
    + 2010-10-20 17:52 . 2010-04-12 15:29 153376 c:\windows\system32\javaws.exe
    + 2010-10-20 17:52 . 2010-04-12 15:29 145184 c:\windows\system32\javaw.exe
    - 2010-10-20 07:28 . 2010-04-12 15:29 145184 c:\windows\system32\javaw.exe
    - 2010-10-20 07:28 . 2010-04-12 15:29 145184 c:\windows\system32\java.exe
    + 2010-10-20 17:52 . 2010-04-12 15:29 145184 c:\windows\system32\java.exe
    + 2009-08-09 01:13 . 2008-08-26 16:57 157696 c:\windows\system32\drivers\RTS5121.sys
    - 2009-08-09 01:13 . 2008-12-23 20:18 157696 c:\windows\system32\drivers\RTS5121.sys
    + 2010-10-20 17:49 . 2008-10-23 15:42 290816 c:\windows\LastGood\vncutil.exe
    + 2010-10-20 17:34 . 2008-12-23 20:18 266240 c:\windows\LastGood\System32\rts5121.dll
    + 2010-10-20 17:49 . 2009-02-06 17:11 131072 c:\windows\LastGood\System32\RTCOM\RTLCPAPI.dll
    + 2010-10-20 17:49 . 2009-02-18 11:58 266240 c:\windows\LastGood\System32\RTCOM\RTCOMDLL.dll
    + 2010-10-20 17:34 . 2008-12-23 20:18 157696 c:\windows\LastGood\System32\Drivers\RTS5121.sys
    + 2010-10-20 17:48 . 2008-04-13 10:19 146048 c:\windows\LastGood\System32\Drivers\portcls.sys
    + 2010-10-20 17:48 . 2008-04-13 10:16 141056 c:\windows\LastGood\System32\Drivers\ks.sys
    + 2010-10-20 17:49 . 2008-06-24 12:46 104992 c:\windows\LastGood\RtkAudioService.exe
    - 2009-08-09 01:13 . 2008-12-23 20:18 6963200 c:\windows\system32\rts5121icon.dll
    + 2009-08-09 01:13 . 2008-08-27 09:47 6963200 c:\windows\system32\RTS5121icon.dll
    + 2010-10-20 17:34 . 2008-12-23 20:18 6963200 c:\windows\system32\ReinstallBackups\0023\DriverFiles\rts5121icon.dll
    + 2010-10-20 17:34 . 2008-12-23 20:18 6963200 c:\windows\LastGood\System32\rts5121icon.dll
    + 2010-10-20 17:48 . 2009-02-24 14:49 5032448 c:\windows\LastGood\System32\Drivers\RtkHDAud.sys
    + 2010-10-20 17:49 . 2006-01-04 13:41 1389056 c:\windows\LastGood\System32\Drivers\Monfilt.sys
    + 2010-10-20 17:49 . 2008-08-05 18:10 1684736 c:\windows\LastGood\System32\Drivers\Ambfilt.sys
    + 2010-10-20 17:49 . 2007-11-20 16:15 1826816 c:\windows\LastGood\SkyTel.exe
    + 2010-10-20 17:49 . 2009-01-21 13:54 1206816 c:\windows\LastGood\RtlUpd.exe
    + 2010-10-20 17:49 . 2008-06-19 14:27 9715200 c:\windows\LastGood\RTLCPL.EXE
    + 2010-10-20 17:49 . 2008-09-30 14:38 2168320 c:\windows\LastGood\MicCal.exe
    + 2010-10-20 17:49 . 2008-06-19 14:42 2808832 c:\windows\LastGood\ALCWZRD.EXE
    + 2010-10-20 17:52 . 2010-10-20 17:52 1598976 c:\windows\Installer\3c79c7.msi
    + 2010-10-20 17:41 . 2010-10-20 17:41 9516544 c:\windows\Installer\3c7707.msi
    + 2010-10-20 17:48 . 2009-02-24 13:40 17529856 c:\windows\LastGood\RTHDCPL.EXE
    .
    -- Instantané actualisé --
    .
    ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
    REGEDIT4

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
    "{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]

    [HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]

    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
    2010-05-26 13:23 1385864 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]

    [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
    [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]

    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
    "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2010-05-26 1385864]

    [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
    [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
    [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SightSpeed"="c:\program files\Dell Video Chat\DellVideoChat.exe" [2008-12-18 4823928]
    "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2009-10-03 39408]
    "ccleaner"="c:\program files\CCleaner\CCleaner.exe" [2010-05-25 1694520]
    "Google Update"="c:\documents and settings\MOI\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2010-10-10 136176]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ISTray"="c:\program files\Spyware Doctor\pctsTray.exe" [2008-12-08 1173384]
    "Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2010-09-12 30192]
    "Google Quick Search Box"="c:\program files\Google\Quick Search Box\GoogleQuickSearchBox.exe" [2009-10-03 68592]
    "Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2009-02-18 2441216]
    "BTMeter"="c:\program files\Battery Meter\BTMeter.exe" [2008-11-05 623912]
    "WSED"="c:\program files\WSED\WSED.exe" [2009-05-27 247080]
    "PersistenceThread"="c:\windows\system32\PersistenceThread.exe" [2009-04-06 86016]
    "TVEService"="c:\program files\Dell\Digital TV\TVEService.exe" [2009-02-27 185576]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2010-09-23 35760]
    "Adobe ARM"="c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 932288]
    "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2008-04-14 208952]
    "MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2008-04-13 59392]
    "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-13 455168]
    "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2008-04-13 455168]
    "SkyTel"="SkyTel.EXE" [2007-11-20 1826816]
    "RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2007-03-14 71216]
    "LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2007-01-08 52256]
    "NeroFilterCheck"="c:\program files\Fichiers communs\Nero\Lib\NeroCheck.exe" [2009-03-10 570664]
    "LGODDFU"="c:\program files\lg_fwupdate\fwupdate.exe" [2010-10-20 557056]
    "RTHDCPL"="RTHDCPL.EXE" [2009-02-24 17529856]
    "SoundMan"="SOUNDMAN.EXE" [2008-08-19 77824]
    "AlcWzrd"="ALCWZRD.EXE" [2008-06-19 2808832]
    "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [BU]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

    c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
    Windows Search.lnk - c:\program files\Windows Desktop Search\WindowsSearch.exe [2008-5-27 123904]

    [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
    "{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
    @=""

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
    @=""

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
    @="Driver"

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
    "c:\\WINDOWS\\system32\\mmc.exe"=
    "c:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe"=
    "c:\\WINDOWS\\system32\\sessmgr.exe"=
    "c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"=
    "c:\\Program Files\\Dell\\Digital TV\\TVEnhance.exe"=
    "c:\\Program Files\\Dell\\Digital TV\\TVEService.exe"=
    "c:\\Program Files\\Raptr\\raptr.exe"=
    "c:\\Program Files\\Raptr\\raptr_im.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Program Files\\Dell Video Chat\\DellVideoChat.exe"=
    "c:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
    "c:\\Program Files\\Skype\\Phone\\Skype.exe"=

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
    "3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009
    "58626:TCP"= 58626:TCP:emule
    "33577:UDP"= 33577:UDP:emule

    R0 EMSC;COMPAL Embedded System Control;c:\windows\system32\drivers\EMSC.sys [09/08/2009 00:35 14248]
    R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [03/10/2009 22:52 130936]
    R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [20/09/2009 19:04 165584]
    R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [20/09/2009 19:04 17744]
    R2 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [03/10/2009 22:50 348752]
    R2 TVECapSvc;TVEnhance Background Capture Service (TBCS);c:\program files\Dell\Digital TV\Kernel\TV\TVECapSvc.exe [27/06/2010 09:20 382304]
    R2 TVESched;TVEnhance Task Scheduler (TTS));c:\program files\Dell\Digital TV\Kernel\TV\TVESched.exe [27/06/2010 09:20 189792]
    R3 hcw17bda;Hauppauge SMS1000-based;c:\windows\system32\drivers\hcw17bda.sys [09/08/2009 03:14 51072]
    R3 igd;igd;c:\windows\system32\drivers\igxpmp32.sys [09/08/2009 03:13 5088896]
    R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI Service;c:\windows\system32\drivers\IntcHdmi.sys [09/08/2009 03:13 110080]
    R3 MixWComEmul;ComEmulDrv;c:\windows\system32\drivers\ComEmulDrv.sys [14/01/2010 17:00 29659]
    R3 OA012Afx;Provides a software interface to control audio effects of OA012 camera.;c:\windows\system32\drivers\OA012Afx.sys [09/08/2009 03:13 135168]
    R3 RSUSBSTOR;RTS5121.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RTS5121.sys [09/08/2009 03:13 157696]
    S0 cerc6;cerc6; [x]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [18/03/2010 13:16 130384]
    S2 gupdate1ca4467908ca69c;Service Google Update (gupdate1ca4467908ca69c);c:\program files\Google\Update\GoogleUpdate.exe [03/10/2009 22:24 133104]
    S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [09/08/2009 03:13 1684736]
    S3 cpudrv;cpudrv;c:\program files\SystemRequirementsLab\cpudrv.sys [18/12/2009 10:58 11336]
    S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\drivers\CtClsFlt.sys [09/08/2009 00:42 143840]
    S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\drivers\ETD.sys [09/08/2009 03:13 93952]
    S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [03/10/2009 22:11 30192]
    S3 hcw95bda;Hauppauge MOD7700 Tuner Driver;c:\windows\system32\drivers\hcw95bda.sys [26/06/2010 09:01 573440]
    S3 hcw95rc;Hauppauge MOD7700 IR Driver;c:\windows\system32\drivers\hcw95rc.sys [26/06/2010 09:01 15616]
    S3 OA012Ufd;Creative Camera OA012 Upper Filter Driver;c:\windows\system32\drivers\OA012Ufd.sys [09/08/2009 03:13 133632]
    S3 OA012Vid;Creative Camera OA012 Function Driver;c:\windows\system32\drivers\OA012Vid.sys [09/08/2009 03:13 272032]
    S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [18/03/2010 13:16 753504]
    S3 WPRO_40_1340;WinPcap Packet Driver (WPRO_40_1340);c:\windows\system32\drivers\WPRO_40_1340.sys --> c:\windows\system32\drivers\WPRO_40_1340.sys [?]

    --- Autres Services/Pilotes en mémoire ---

    *NewlyCreated* - JAVAQUICKSTARTERSERVICE
    *Deregistered* - mchInjDrv
    .
    Contenu du dossier 'Tâches planifiées'

    2010-10-20 c:\windows\Tasks\Google Software Updater.job
    - c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-10-03 20:03]

    2010-10-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cac6bbd90e2f90.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2009-10-03 20:24]

    2010-10-20 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2009-10-03 20:24]

    2010-10-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-418074801-125281679-1646600618-1006Core.job
    - c:\documents and settings\MOI\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-10-12 15:41]

    2010-10-20 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-418074801-125281679-1646600618-1006UA.job
    - c:\documents and settings\MOI\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2010-10-12 15:41]

    2010-10-20 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-418074801-125281679-1646600618-1006.job
    - c:\program files\Real\RealUpgrade\realupgrade.exe [2010-02-24 20:09]

    2010-10-20 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-418074801-125281679-1646600618-500.job
    - c:\program files\Real\RealUpgrade\realupgrade.exe [2010-02-24 20:09]

    2010-10-20 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-418074801-125281679-1646600618-1006.job
    - c:\program files\Real\RealUpgrade\realupgrade.exe [2010-02-24 20:09]

    2010-10-20 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-418074801-125281679-1646600618-500.job
    - c:\program files\Real\RealUpgrade\realupgrade.exe [2010-02-24 20:09]
    .
    .
    ------- Examen supplémentaire -------
    .
    uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    uStart Page = hxxp://google.com/
    uInternet Settings,ProxyOverride = <local>
    uSearchAssistant = hxxp://www.google.com/ie
    uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
    IE: Envoyer au périphérique &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    IE: Envoyer à Bluetooth - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    FF - ProfilePath - c:\documents and settings\MOI\Application Data\Mozilla\Firefox\Profiles\axvog8kx.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2504091&SearchSource=3&q={searchTerms}
    FF - prefs.js: browser.search.selectedEngine - Bing
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr/
    FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q=
    FF - component: c:\documents and settings\MOI\Application Data\Mozilla\Firefox\Profiles\axvog8kx.default\extensions\{0fc85f5d-6207-4515-a490-45a549d285c0}\components\FFExternalAlert.dll
    FF - component: c:\documents and settings\MOI\Application Data\Mozilla\Firefox\Profiles\axvog8kx.default\extensions\{0fc85f5d-6207-4515-a490-45a549d285c0}\components\RadioWMPCore.dll
    FF - component: c:\documents and settings\MOI\Application Data\Mozilla\Firefox\Profiles\axvog8kx.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
    FF - component: c:\documents and settings\MOI\Application Data\Mozilla\Firefox\Profiles\axvog8kx.default\extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f}\platform\WINNT_x86-msvc\components\ipc_fireftp.dll
    FF - plugin: c:\documents and settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
    FF - plugin: c:\documents and settings\MOI\Application Data\Mozilla\Firefox\Profiles\axvog8kx.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\npGarmin.dll
    FF - plugin: c:\documents and settings\MOI\Local Settings\Application Data\Google\Update\1.2.183.39\npGoogleOneClick8.dll
    FF - plugin: c:\program files\Google\Google Updater\2.4.1698.5652\npCIDetect13.dll
    FF - plugin: c:\program files\Google\Update\1.2.183.39\npGoogleOneClick8.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    ---- PARAMETRES FIREFOX ----
    FF - user.js: yahoo.homepage.dontask - truec:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true); // Traditional
    c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true); // Simplified
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
    .
    .
    --------------------- CLES DE REGISTRE BLOQUEES ---------------------

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727]
    @DACL=(02 0000)
    @SACL=

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Accessibility, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Accessibility, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:02,00,00,00,01,e6,3d,6d,26,b8,a6,64,cf,df,bd,4a,d7,5e,03,c1,4d,
    05,00,00,00,a2,00,00,00,41,00,63,00,63,00,65,00,73,00,73,00,69,00,62,00,69,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Accessibility, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Accessibility, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:02,00,00,00,01,01,25,4c,aa,0e,fc,15,b5,cd,48,fb,31,78,01,87,01,
    05,00,00,00,a2,00,00,00,41,00,63,00,63,00,65,00,73,00,73,00,69,00,62,00,69,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\AspNetMMCExt, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\AspNetMMCExt, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:08,00,00,00,01,6d,34,f0,0b,6a,78,2d,15,be,c7,0d,6c,db,00,b5,e8,
    05,00,00,00,a0,00,00,00,41,00,73,00,70,00,4e,00,65,00,74,00,4d,00,4d,00,43,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\AspNetMMCExt, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\AspNetMMCExt, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:08,00,00,00,01,03,bf,63,d8,ea,66,22,a3,2b,9a,3f,c6,85,18,01,a9,
    05,00,00,00,a0,00,00,00,41,00,73,00,70,00,4e,00,65,00,74,00,4d,00,4d,00,43,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.IdentityModel.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.IdentityModel.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:09,00,00,00,01,ad,4f,b8,60,64,d7,a1,eb,cb,9e,e9,97,e7,20,8a,c1,
    05,00,00,00,b0,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.IdentityModel.Selectors.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.IdentityModel.Selectors.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:08,00,00,00,01,cf,a4,89,36,af,fc,9a,5f,b8,9f,0b,f6,6c,c5,2a,47,
    05,00,00,00,c4,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.IO.Log.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.IO.Log.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,e3,eb,86,17,0c,ba,4c,80,e6,e2,2c,a3,3c,63,c2,18,
    05,00,00,00,a2,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.Runtime.Serialization.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.Runtime.Serialization.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,8b,27,10,a6,3e,cd,36,33,15,ef,16,b2,57,58,8b,95,
    05,00,00,00,c0,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.ServiceModel.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/Program Files/Reference Assemblies/Microsoft/Framework/v3.0/System.ServiceModel.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:13,00,00,00,01,0f,62,4a,5a,42,ce,9d,db,23,0f,29,b3,5e,75,64,fa,
    05,00,00,00,ae,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,61,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v2.0.50727/CasPol.exe]
    @DACL=(02 0000)
    "Priority"=dword:00000001
    "KeepPriority"=dword:00000001
    "Status"=dword:00000005

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v2.0.50727/dfsvc.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v2.0.50727/dfsvc.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:03,00,00,00,01,a6,64,cc,ab,02,0f,93,f1,d5,33,91,9f,57,13,11,90,
    05,00,00,00,70,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v2.0.50727/jsc.exe]
    @DACL=(02 0000)
    "Priority"=dword:00000001
    "KeepPriority"=dword:00000001
    "Status"=dword:00000005

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v2.0.50727/RegAsm.exe]
    @DACL=(02 0000)
    "Priority"=dword:00000001
    "KeepPriority"=dword:00000001
    "Status"=dword:00000005

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/ComSvcConfig.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/ComSvcConfig.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:0a,00,00,00,01,ab,b6,2e,3e,d7,4c,97,4f,02,82,bc,7e,a5,d3,f1,c1,
    05,00,00,00,b4,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/Microsoft.Transactions.Bridge.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/Microsoft.Transactions.Bridge.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:0a,00,00,00,01,7a,26,6d,e4,93,d3,0e,ed,21,cb,60,eb,e3,00,be,53,
    05,00,00,00,d6,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/Microsoft.Transactions.Bridge.Dtc.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/Microsoft.Transactions.Bridge.Dtc.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:09,00,00,00,01,c7,4d,4c,69,c4,99,92,df,b2,3b,a5,12,08,1d,c3,de,
    05,00,00,00,de,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/ServiceModelReg.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/ServiceModelReg.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:0b,00,00,00,01,5c,8f,5c,a3,64,98,f4,39,80,d6,48,20,d8,18,6c,8a,
    05,00,00,00,ba,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/SMdiagnostics.dll]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/SMdiagnostics.dll\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:05,00,00,00,01,6c,ab,c7,d1,70,0c,22,4e,8b,41,ff,2f,96,a3,08,7c,
    05,00,00,00,b6,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/SMSvcHost.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/SMSvcHost.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:09,00,00,00,01,f3,8a,42,6b,90,e6,c5,26,dc,b2,c4,35,c7,38,04,50,
    05,00,00,00,ae,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/WsatConfig.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.0/Windows Communication Foundation/WsatConfig.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:07,00,00,00,01,4d,07,b1,cc,ec,ca,66,f3,20,c1,a0,97,1d,d6,14,d1,
    05,00,00,00,b0,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.5/MSBuild.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v3.5/MSBuild.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000000
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:09,00,00,00,01,77,00,96,36,10,c1,af,36,4a,a9,34,c3,c8,24,b7,b4,
    05,00,00,00,68,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/ComSvcConfig.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/ComSvcConfig.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:0c,00,00,00,01,51,81,9c,70,90,96,22,9e,e1,87,a7,fe,ee,39,5d,9f,
    05,00,00,00,7e,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/dfsvc.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/dfsvc.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:03,00,00,00,01,b9,b6,06,9e,6d,a0,6e,b5,7e,89,cc,54,43,97,f7,35,
    05,00,00,00,70,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/MSBuild.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/MSBuild.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000000
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:0d,00,00,00,01,aa,25,09,26,06,e5,e9,82,6d,b7,a7,bd,0a,db,9b,2b,
    05,00,00,00,74,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/SMSvcHost.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/SMSvcHost.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:0a,00,00,00,01,38,f0,d7,76,29,89,1e,78,08,42,41,03,aa,ef,07,28,
    05,00,00,00,78,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/WsatConfig.exe]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\C:/WINDOWS/Microsoft.NET/Framework/v4.0.30319/WsatConfig.exe\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:07,00,00,00,01,3c,0d,21,e7,5c,9a,48,ab,a6,fb,a3,dd,ff,0f,cf,39,
    05,00,00,00,7a,00,00,00,43,00,3a,00,5c,00,57,00,49,00,4e,00,44,00,4f,00,57,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\CustomMarshalers, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\CustomMarshalers, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:03,00,00,00,01,77,68,8c,e1,4f,22,1e,d9,4a,9f,44,2a,e4,73,61,23,
    05,00,00,00,a8,00,00,00,43,00,75,00,73,00,74,00,6f,00,6d,00,4d,00,61,00,72,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\CustomMarshalers, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\CustomMarshalers, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:03,00,00,00,01,d2,57,4c,8a,e3,33,ff,95,9b,e2,e0,d8,31,21,ad,10,
    05,00,00,00,a8,00,00,00,43,00,75,00,73,00,74,00,6f,00,6d,00,4d,00,61,00,72,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:0a,00,00,00,01,3b,fb,84,14,77,d2,8c,a8,66,b9,12,11,f5,01,99,bb,
    05,00,00,00,a6,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Conversion.v3.5, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Conversion.v3.5, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,c9,38,6d,cd,89,c2,51,8a,74,11,5f,3b,fd,86,18,30,
    05,00,00,00,c6,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Conversion.v4.0, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Conversion.v4.0, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:07,00,00,00,01,83,7f,a0,37,ca,30,2e,74,32,ea,99,13,ae,45,3e,70,
    05,00,00,00,c6,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Engine, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Engine, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,c4,c3,60,df,9c,10,24,eb,c3,f0,de,77,f5,cf,8b,1c,
    05,00,00,00,b4,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Engine, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Engine, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,43,fc,67,23,d0,8e,9c,e8,87,01,c2,96,53,ef,d2,24,
    05,00,00,00,b4,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Engine, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Engine, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:06,00,00,00,01,7c,fd,4a,64,a9,58,07,ee,7c,b6,ae,50,cf,ab,d9,3c,
    05,00,00,00,b4,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Framework, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Framework, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:02,00,00,00,01,d5,13,fe,1a,81,c4,41,e7,65,6a,9b,06,2c,ff,4e,9f,
    05,00,00,00,ba,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Framework, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Framework, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:02,00,00,00,01,c5,d5,04,72,4d,7f,35,1b,1d,03,46,15,db,b7,2a,2a,
    05,00,00,00,ba,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Framework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Framework, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:06,00,00,00,01,11,ef,4b,e6,ee,22,7f,ce,37,25,d6,df,53,42,97,a4,
    05,00,00,00,ba,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Tasks, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Tasks, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:0b,00,00,00,01,38,15,de,5b,05,21,87,b5,d9,37,56,81,a6,78,42,55,
    05,00,00,00,b2,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Tasks.v3.5, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Tasks.v3.5, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:0b,00,00,00,01,c9,6b,e8,2d,6c,b0,03,67,db,4e,35,53,27,21,65,ef,
    05,00,00,00,bc,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Tasks.v4.0, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Tasks.v4.0, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000000
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:11,00,00,00,01,89,73,26,56,00,ed,d2,13,5e,cf,5e,36,9a,08,7d,fb,
    05,00,00,00,bc,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Utilities, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Utilities, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,a6,a9,f2,4b,1a,89,84,ea,af,ba,bb,1e,e9,68,e3,59,
    05,00,00,00,ba,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Utilities.v3.5, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Utilities.v3.5, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:06,00,00,00,01,2f,a8,1d,36,3c,b1,49,6b,e2,42,7d,84,8a,86,74,09,
    05,00,00,00,c4,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Utilities.v4.0, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Build.Utilities.v4.0, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:09,00,00,00,01,b3,84,b9,64,60,ad,28,69,7e,89,90,e5,6b,02,34,d8,
    05,00,00,00,c4,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.CSharp, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Priority"=dword:00000001
    "KeepPriority"=dword:00000001
    "Status"=dword:00000005

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:0a,00,00,00,01,7a,26,6d,e4,93,d3,0e,ed,21,cb,60,eb,e3,00,be,53,
    05,00,00,00,c2,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:0b,00,00,00,01,99,52,f6,6f,c5,92,ff,c2,1b,02,48,03,c8,c9,55,fd,
    05,00,00,00,c2,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge.Dtc, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge.Dtc, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v2.0.50727"
    "ImageList"=hex:09,00,00,00,01,c7,4d,4c,69,c4,99,92,df,b2,3b,a5,12,08,1d,c3,de,
    05,00,00,00,ca,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge.Dtc, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.Transactions.Bridge.Dtc, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:09,00,00,00,01,5f,59,53,38,c6,3c,2f,db,5a,17,17,60,c2,9d,5b,cf,
    05,00,00,00,ca,00,00,00,4d,00,69,00,63,00,72,00,6f,00,73,00,6f,00,66,00,74,\

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.VisualBasic, Version=10.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a]
    @DACL=(02 0000)
    "Status"=dword:00000003

    [HKEY_LOCAL_MACHINE\software\Microsoft\.NETFramework\v2.0.50727\NGenService\Roots\Microsoft.VisualBasic, Version=10.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a\0]
    @DACL=(02 0000)
    "Scenario"=dword:00000020
    "Status"=dword:00000000
    "RuntimeVersion"="v4.0.30319"
    "ImageList"=hex:0e,00,00,00,01,e8,ab,3b,63,ba,de,82,c3,52,26,13,f2,b1,24,0c,0d,
    05,00,00,00,b4,00,00,00,4d,00,6
    m
    0
    l
    23 Octobre 2010 23:22:35

    Quand je fais un double clic sur driverwhiz pour l'installer. Ca ne fonctionne pas non plus. Que je lui laisse choisir la cible ou que je mette realteck, ca bloque
    m
    0
    l
    a c 295 8 Sécurité
    24 Octobre 2010 18:55:40

    Je pense que la réinstallation système est inévitable vu les problèmes cités.
    m
    0
    l
    24 Octobre 2010 19:45:51

    Je le crois aussi.
    J ai encore une question concernant mes ports USB. J'ai du faire un mauvaise manip dans le BIOS. Dans la rubrique boot quel est l'ordre exact des éléments, il y a cd,dvd - le dique dur - usb etc. eventuelement connais tu un site qui me donnerait un visu.
    Encore une fois je te remercie
    Je ne vais plus t'embéter pour ce soir
    Peut-être que demain, j'aurai d'autres questions
    Bonne soirée

    Christian
    m
    0
    l
    a c 295 8 Sécurité
    24 Octobre 2010 19:50:07

    Il n'y a pas d'ordre précis. Si tu veux réinstaller Windows, il faut que le lecteur CD/DVD soit avant le disque dur.
    m
    0
    l
    31 Octobre 2010 05:36:38


    J'ai fais un diagnostique avec le logiciel de Dell - inclus dans la machine en faisant f12. Voila le résultat :
    code erreur 4400.011A - SCI_0-000_DISK_GENERIC_MULTI-CARD -target not ready
    code erreur 1B63.1A1B- audio. user indicated they did not hear the expected result
    code erreur 1B63.241B- audio. user indicated they did not hear the expected result

    Sur le site de Dell, ces codes erreurs ne sont pas repertoriés. Est ce qu'ils appartiennent à des logiciels ou a des composants ?

    Je ne peux toujours pas faire de mise à jour et telecharger les pilotes Dell.
    Bien cordialement
    m
    0
    l
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS