Actualité informatique
Test comparatif matériel informatique
Jeux vidéo
Astuces informatique
Vidéo
Télécharger
Services en ligne
Forum informatique
01Business

|-  SECURITE


|||-  

Trojan Katusha

 

3 utilisateurs anonymes
Ajouter une réponse
 

 
Page photos
 
     
Vider la liste des messages à citer
 
 Page :
1
Auteur
 Sujet :

Trojan Katusha

Prévenir les modérateurs en cas d'abus 
damien1984
damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 12/05/2010 à 17:33:20  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bonjour
 Je m'occupe du Pc de mes parents, suite à l'appel en détresse de mon père: Avira a detecté un trojan :
 "Dans le fichier 'C:\System Volume Information\_restore{F75EEC69-​6E97-419B-93B4-6A3A275301C4}\R​P354\A0035315.exe'
 un virus ou un programme indésirable 'TR/PCK.Katusha.L.103' [trojan] a été détecté.
 Action exécutée : Refuser l'accès
 L'action de refus d'acces était la seule accessible selon mon père, donc je ne sais pas si il l'a définitivement effacé du systeme
 Une premiere recherche avec malwarebytes mis à jour ne détecte rien.
 Pouvez vous m'aider à verifier?
 Merciii
 Damien

  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 12/05/2010 à 18:03:05  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bonjour,

 Pas d'inquietude :'C:\System Volume Information\_restore{F75EEC69-​6E97-419B-93B4-6A3A275301C4}\R​P354\A0035315.exe'

 Il sagit de la restauration du system...

 mais on va verifier cela en profondeur tout de meme ,
 Pour ce faire :

 Telecharge RSIT (de random/random)==>> ICI

 --> Enregistre le sur ton burreau, et clique droit de ta souris et selectionne executer en tant qu'administrateur (POUR VISTA/7)
 --> une page va safficher, clique sur continue,
 --> Tu sera peut etre amener a accepter les contrat de license si hijackthis n'est pas installer sur la machine, Accepte le...
 --> en fin de scan deux fenetre saffiche automatiquement..( log.txt.....info.txt...)
 --> poste les deux rapport ici STP..  :super:  :super:

(Publicité)
damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 12/05/2010 à 18:43:33  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Merci de t'occuper de mon probleme
 Voici le log :
 Logfile of random's system information tool 1.07 (written by random/random)
 Run by HP_Propriétaire at 2010-05-12 19:42:14
 Microsoft Windows XP Édition familiale Service Pack 3
 System drive C: has 110 GB (48%) free of 231 GB
 Total RAM: 1023 MB (35% free)

 Logfile of Trend Micro HijackThis v2.0.4
 Scan saved at 19:42:31, on 12/05/2010
 Platform: Windows XP SP3 (WinNT 5.01.2600)
 MSIE: Internet Explorer v7.00 (7.00.6000.17023)
 Boot mode: Normal

 Running processes:
 C:\WINDOWS\System32\smss.exe
 C:\WINDOWS\system32\winlogon.e​xe
 C:\WINDOWS\system32\services.e​xe
 C:\WINDOWS\system32\lsass.exe
 C:\WINDOWS\system32\Ati2evxx.e​xe
 C:\WINDOWS\system32\svchost.ex​e
 C:\WINDOWS\System32\svchost.ex​e
 C:\WINDOWS\system32\Ati2evxx.e​xe
 C:\WINDOWS\system32\spoolsv.ex​e
 C:\WINDOWS\Explorer.EXE
 C:\Program Files\Avira\AntiVir Desktop\sched.exe
 C:\WINDOWS\SOUNDMAN.EXE
 C:\HP\KBD\KBD.EXE
 C:\Program Files\Fichiers communs\InstallShield\UpdateSe​rvice\issch.exe
 C:\windows\system\hpsysdrv.exe
 C:\WINDOWS\system32\hphmon06.e​xe
 C:\WINDOWS\ALCWZRD.EXE
 C:\Program Files\BroadJump\Client Foundation\CFD.exe
 C:\Program Files\Avira\AntiVir Desktop\avguard.exe
 C:\PROGRA~1\CLUB-I~1\LECOMP~1\​SMARTB~1\MotiveSB.exe
 C:\Program Files\QuickTime\QTTask.exe
 C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 C:\Program Files\iTunes\iTunesHelper.exe
 C:\Program Files\Fichiers communs\Talkway\vmtalk.exe
 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
 C:\Program Files\Bonjour\mDNSResponder.ex​e
 C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
 C:\WINDOWS\system32\crypserv.e​xe
 C:\Program Files\Logitech\Profiler\lwemon​.exe
 C:\WINDOWS\system32\ctfmon.exe
 C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
 C:\Program Files\Ensemble clavier et souris sans fil Labtec\MagicKey.exe
 C:\Program Files\Olympus\DeviceDetector\D​evDtct2.exe
 C:\Program Files\Ensemble clavier et souris sans fil Labtec\MulMouse.exe
 C:\Program Files\e-Carte Bleue Société Générale\ecbl-sg.exe
 C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
 C:\Program Files\Club-Internet\Le Compagnon Club\bin\lecompagnonclub.exe
 C:\Program Files\PC Tools Firewall Plus\FWService.exe
 C:\WINDOWS\system32\svchost.ex​e
 C:\WINDOWS\system32\UAService7​.exe
 C:\PROGRA~1\Motive\ASSTCO~1\MO​TIVE~1.EXE
 C:\Program Files\Ensemble clavier et souris sans fil Labtec\OSD.EXE
 C:\Program Files\iPod\bin\iPodService.exe
 C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe
 C:\WINDOWS\system32\wuauclt.ex​e
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\BitTornado\btdownloadgui​.exe
 C:\Program Files\BitTornado\btdownloadgui​.exe
 C:\Documents and Settings\HP_Propriétaire\Mes documents\Downloads\RSIT.exe
 C:\Program Files\trend micro\HP_Propriétaire.exe

 R1 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://ie.redirect.hp.com/svs/ [...] pf=desktop
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://www.club-internet.fr
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/ [...] pf=desktop
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Window Title = Internet Explorer avec Club-Internet
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll
 O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C091​46192CA} - C:\Program Files\Real\RealPlayer\rpbrowse​rrecordplugin.dll
 O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7​942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (file missing)
 O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988​571CECB} - (no file)
 O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF​1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe
 O4 - HKLM\..\Run: [SSBkgdUpdate] C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupda​te.exe -Embedding -boot
 O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
 O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
 O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
 O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
 O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.​exe
 O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
 O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateSe​rvice\issch.exe" -start
 O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\​UPDATE~1\isuspm.exe -startup
 O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
 O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8​DD3-EBC57C83374D}\hphupd06.exe
 O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.e​xe
 O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
 O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe"  -osboot
 O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
 O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\CLUB-I~1\LECOMP~1\​SMARTB~1\MotiveSB.exe
 O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
 O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
 O4 - HKLM\..\Run: [vmtalk] C:\Program Files\Fichiers communs\Talkway\vmtalk.exe
 O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
 O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
 O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
 O4 - HKLM\..\Run: [mafveg] C:\DOCUME~1\HP_PRO~1\LOCALS~1\​Temp\mafveg.exe
 O4 - HKLM\..\Run: [hpgscnsvhpgscnsv4.5.0.805] c:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe
 O4 - HKLM\..\Run: [QuickTimeQuickTimeResources] C:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe
 O4 - HKLM\..\Run: [hpgscnsvhpgscnsv] C:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe
 O4 - HKLM\..\Run: [iTunesiTunesHelperLocalized] C:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe
 O4 - HKLM\..\Run: [quicktimeresourcesquicktime] c:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe
 O4 - HKLM\..\RunServices: [mafveg] C:\DOCUME~1\HP_PRO~1\LOCALS~1\​Temp\mafveg.exe
 O4 - HKLM\..\RunServices: [bcti] c:\docume~1\hp_pro~1\locals~1\​temp\bcti.exe
 O4 - HKLM\..\RunServices: [iTunesHelperLocalizediTunesHelperLocalized9.0.0.53] c:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe
 O4 - HKLM\..\RunServices: [QuickTimeQuickTimeResources] C:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe
 O4 - HKLM\..\RunServices: [hpgscnsvhpgscnsv] C:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe
 O4 - HKLM\..\RunServices: [iTunesiTunesHelperLocalized] C:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe
 O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
 O4 - HKCU\..\Run: [Start WingMan Profiler] "C:\Program Files\Logitech\Profiler\lwemon​.exe" /noui
 O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
 O4 - HKCU\..\Run: [EasyStudio_L] "C:\Program Files\Samsung\Samsung PC Studio 3\Launcher.exe" -tray
 O4 - S-1-5-18 Startup: AutoTBar.exe (User 'SYSTEM')
 O4 - .DEFAULT Startup: AutoTBar.exe (User 'Default user')
 O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')
 O4 - Global Startup: Activer l'ensemble clavier et souris sans fil Labtec.lnk = C:\Program Files\Ensemble clavier et souris sans fil Labtec\MagicKey.exe
 O4 - Global Startup: Device Detector 2.lnk = C:\Program Files\Olympus\DeviceDetector\D​evDtct2.exe
 O4 - Global Startup: e-Carte Bleue Société Générale.lnk = ?
 O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
 O4 - Global Startup: LE COMPAGNON CLUB.lnk = C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
 O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMC​onf.exe
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Off​ice10\EXCEL.EXE/3000
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll
 O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll
 O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A25​5F085E1} - C:\Program Files\PartyGaming\PartyPoker\R​unApp.exe (file missing)
 O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A25​5F085E1} - C:\Program Files\PartyGaming\PartyPoker\R​unApp.exe (file missing)
 O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm
 O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm
 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04​F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04​F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm (HKCU)
 O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm (HKCU)
 O16 - DPF: {00B71CFB-6864-4346-A978-C0A14​556272C} (Checkers Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {14B87622-7E19-4EA8-93B3-97215​F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {17492023-C23A-453E-A040-C7C58​0BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE​825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/edia [...] er_gmn.cab
 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05C​B959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF​33E833C} (WUWebControl Class) - http://update.microsoft.com/wi [...] 0438230484
 O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD​1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0​A5519FF} (MsnMessengerSetupDownloadCont​rol Class) - http://messenger.msn.com/downl [...] loader.cab
 O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-22031​3175592} (ZoneIntro Class) - http://messenger.zone.msn.com/ [...] b32846.cab
 O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1​036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.hp.com/aio/ [...] gh.cab?326
 O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C​90312E1} - C:\WINDOWS\system32\browseui.d​ll
 O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-30783​02C2030} - C:\WINDOWS\system32\browseui.d​ll
 O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
 O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
 O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.e​xe
 O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\WINDOWS\SYSTEM32\crypserv.e​xe
 O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.ex​e
 O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.e​xe
 O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
 O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.​exe
 O23 - Service: Service Google Update (gupdate1c9b4ada1869164) (gupdate1c9b4ada1869164) - Unknown owner - C:\Program Files\Google\Update\GoogleUpda​te.exe
 O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1​1\Intel 32\IDriverT.exe
 O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
 O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.ex​e
 O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - Unknown owner - C:\Program Files\PC Tools Firewall Plus\FWService.exe
 O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe (file missing)
 O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.e​xe
 O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.e​xe
 O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.ex​e
 O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.e​xe
 O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.e​xe
 O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7​.exe
 O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
 O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiap​srv.exe
 O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe
 O24 - Desktop Component 0: (no name) - http://www.hautetfort.com/grap [...] square.jpg

 --
 End of file - 16164 bytes

 ======Scheduled tasks folder======

 C:\WINDOWS\tasks\GoogleUpdateT​askMachineCore.job
 C:\WINDOWS\tasks\GoogleUpdateT​askMachineUA.job

 ======Registry dump======

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
 Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll [2006-10-23 62080]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
 RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowse​rrecordplugin.dll [2009-04-04 312928]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
 C:\Program Files\Spybot - Search & Destroy\SDHelper.dll []

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
 SSVHelper Class - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll [2005-11-10 184423]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
 Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\Run]
 "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe [2006-11-10 90112]
 "SSBkgdUpdate"=C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupda​te.exe [2003-09-29 155648]
 "SoundMan"=C:\WINDOWS\SOUNDMAN​.EXE [2005-04-07 90112]
 "Recguard"=C:\WINDOWS\SMINST\R​ECGUARD.EXE [2004-04-14 233472]
 "Raccourci vers la page des propriétés de High Definition Audio"=C:\WINDOWS\system32\HDA​udPropShortcut.exe [2004-03-18 61952]
 "PS2"=C:\WINDOWS\system32\ps2.​exe [2004-10-25 90112]
 "NeroFilterCheck"=C:\WINDOWS\s​ystem32\NeroCheck.exe [2005-09-25 155648]
 "KBD"=C:\HP\KBD\KBD.EXE [2005-02-03 61440]
 "ISUSScheduler"=C:\Program Files\Fichiers communs\InstallShield\UpdateSe​rvice\issch.exe [2006-09-11 86960]
 "ISUSPM Startup"=C:\PROGRA~1\FICHIE~1\​INSTAL~1\UPDATE~1\isuspm.exe -startup []
 "hpsysdrv"=c:\windows\system\h​psysdrv.exe [1998-05-07 52736]
 "HPHUPD06"=c:\Program Files\HP\{AAC4FC36-8F89-4587-8​DD3-EBC57C83374D}\hphupd06.exe [2004-06-07 49152]
 "HPHmon06"=C:\WINDOWS\system32​\hphmon06.exe [2004-06-07 659456]
 "AlcWzrd"=C:\WINDOWS\ALCWZRD.E​XE [2005-04-07 2805248]
 "TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe [2009-04-04 198160]
 "BJCFD"=C:\Program Files\BroadJump\Client Foundation\CFD.exe [2003-01-27 376912]
 "Motive SmartBridge"=C:\PROGRA~1\CLUB-​I~1\LECOMP~1\SMARTB~1\MotiveSB​.exe [2006-04-21 438359]
 "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-09-05 417792]
 "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-09-08 305440]
 "vmtalk"=C:\Program Files\Fichiers communs\Talkway\vmtalk.exe [2003-07-24 61440]
 "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
 "00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2010-04-15 3168216]
 "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
 "mafveg"=C:\DOCUME~1\HP_PRO~1\​LOCALS~1\Temp\mafveg.exe []
 "hpgscnsvhpgscnsv4.5.0.805"=c:​\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe []
 "QuickTimeQuickTimeResources"=​C:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe []
 "hpgscnsvhpgscnsv"=C:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe []
 "iTunesiTunesHelperLocalized"=​C:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe []
 "quicktimeresourcesquicktime"=​c:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe []

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\RunOnce]
 "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-04-29 437584]

 [HKEY_CURRENT_USER\Software\Mic​rosoft\Windows\CurrentVersion\​Run]
 "Start WingMan Profiler"=C:\Program Files\Logitech\Profiler\lwemon​.exe [2005-04-18 73728]
 "ctfmon.exe"=C:\WINDOWS\system​32\ctfmon.exe [2008-04-14 15360]
 "EasyStudio_L"=C:\Program Files\Samsung\Samsung PC Studio 3\Launcher.exe [2009-06-18 614400]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\Adob​e Photo Downloader]
 C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.e​xe [2005-06-23 57344]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\Adob​e Reader Speed Launcher]
 C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\DAEM​ON Tools]
 C:\Program Files\DAEMON Tools\daemon.exe [2005-12-10 133016]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\LSBWatcher]
 c:\hp\drivers\hplsbwatcher\lsb​urnwatcher.exe [2004-10-14 253952]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\MSMSGS]
 C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\MsnMsgr]
 C:\Program Files\MSN Messenger\msnmsgr.exe /background []

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\Spyb​otSD TeaTimer]
 C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-01-28 2097488]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\TkBellExe]
 C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe [2009-04-04 198160]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\vmtalk]
 C:\Program Files\Fichiers communs\Talkway\vmtalk.exe [2003-07-24 61440]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^​Démarrage rapide du logiciel HP Image Zone.lnk]
 C:\PROGRA~1\HP\DIGITA~1\bin\hp​qthb08.exe [2004-11-05 53248]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^​Microsoft Office.lnk]
 C:\PROGRA~1\MICROS~3\Office10\​OSA.EXE [2001-02-13 83360]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^HP_Propriétaire^Menu Démarrer^Programmes^Démarrage^​PowerReg Scheduler V3.exe]
 C:\Documents and Settings\HP_Propriétaire\Menu Démarrer\Programmes\Démarrage\​PowerReg Scheduler V3.exe []

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^HP_Propriétaire^Menu Démarrer^Programmes^Démarrage^​Registration Prince of Persia T2T.LNK]
 C:\Program Files\Ubisoft\Prince of Persia T2T\Support\Register\Registrat​ionReminder.exe -d 802443 -l french -r 7 -g Prince of Persia T2T -c fr -i 2430 []

 C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
 Activer l'ensemble clavier et souris sans fil Labtec.lnk - C:\Program Files\Ensemble clavier et souris sans fil Labtec\MagicKey.exe
 Device Detector 2.lnk - C:\Program Files\Olympus\DeviceDetector\D​evDtct2.exe
 e-Carte Bleue Société Générale.lnk - C:\Program Files\e-Carte Bleue Société Générale\ecbl-sg.exe
 HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
 LE COMPAGNON CLUB.lnk - C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
 Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMC​onf.exe

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
 C:\WINDOWS\system32\Ati2evxx.d​ll [2007-08-17 118784]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
 C:\WINDOWS\system32\WgaLogon.d​ll [2007-03-15 236928]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\ShellServiceObjectDelayLoad]
 WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D52​4869DB5} - C:\WINDOWS\system32\WPDShServi​ceObj.dll [2006-10-18 133632]
 UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de​9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]

 [HKEY_LOCAL_MACHINE\SYSTEM\Curr​entControlSet\Control\SafeBoot​\network\nm]

 [HKEY_LOCAL_MACHINE\SYSTEM\Curr​entControlSet\Control\SafeBoot​\network\nm.sys]

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\Policies\System]
 "dontdisplaylastusername"=0
 "legalnoticecaption"=
 "legalnoticetext"=
 "shutdownwithoutlogon"=1
 "undockwithoutlogon"=1

 [HKEY_CURRENT_USER\Software\Mic​rosoft\Windows\CurrentVersion\​Policies\explorer]
 "NoDriveAutoRun"=67108863
 "NoDrives"=0
 "NoDriveTypeAutoRun"=323

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\Policies\explorer]
 "HonorAutoRunSetting"=
 "NoDriveAutoRun"=
 "NoDriveTypeAutoRun"=
 "NoDrives"=

 [HKEY_LOCAL_MACHINE\system\curr​entcontrolset\services\shareda​ccess\parameters\firewallpolic​y\standardprofile\authorizedap​plications\list]
 "%windir%\system32\sessmgr.exe​"="%windir%\system32\sessmgr.e​xe:*:enabled:@xpsp2res.dll,-22​019"
 "C:\Program Files\eChanblard\emule.exe"="C​:\Program Files\eChanblard\emule.exe:*:E​nabled:eMule"
 "C:\Program Files\Messenger\msmsgs.exe"="C​:\Program Files\Messenger\msmsgs.exe:*:D​isabled:Windows Messenger"
 "C:\Program Files\BitTornado\btdownloadgui​.exe"="C:\Program Files\BitTornado\btdownloadgui​.exe:*:Enabled:btdownloadgui"
 "C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Ca​ll of Duty(R) 4 - Modern Warfare(TM)"
 "%windir%\Network Diagnostic\xpnetdiag.exe"="%wi​ndir%\Network Diagnostic\xpnetdiag.exe:*:Ena​bled:@xpsp3res.dll,-20000"
 "C:\Program Files\ZoomText 9.1\Zt.exe"="C:\Program Files\ZoomText 9.1\Zt.exe:LocalSubNet:Enabled​:ZoomText 9.1"
 "C:\Program Files\MSN Messenger\livecall.exe"="C:\Pr​ogram Files\MSN Messenger\livecall.exe:*:Enabl​ed:Windows Live Messenger 8.1 (Phone)"
 "C:\Program Files\Bonjour\mDNSResponder.ex​e"="C:\Program Files\Bonjour\mDNSResponder.ex​e:*:Enabled:Bonjour"
 "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:​\Program Files\Windows Live\Messenger\wlcsdk.exe:*:En​abled:Windows Live Call"
 "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C​:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:E​nabled:Windows Live Messenger"
 "C:\Program Files\iTunes\iTunes.exe"="C:\P​rogram Files\iTunes\iTunes.exe:*:Enab​led:iTunes"

 [HKEY_LOCAL_MACHINE\system\curr​entcontrolset\services\shareda​ccess\parameters\firewallpolic​y\domainprofile\authorizedappl​ications\list]
 "%windir%\system32\sessmgr.exe​"="%windir%\system32\sessmgr.e​xe:*:enabled:@xpsp2res.dll,-22​019"
 "%ProgramFiles%\iTunes\iTunes.​exe"="%ProgramFiles%\iTunes\iT​unes.exe:*:enabled:iTunes"
 "C:\Program Files\MSN Messenger\msncall.exe"="C:\Pro​gram Files\MSN Messenger\msncall.exe:*:Enable​d:Windows Live Messenger 8.0 (Phone)"
 "%windir%\Network Diagnostic\xpnetdiag.exe"="%wi​ndir%\Network Diagnostic\xpnetdiag.exe:*:Ena​bled:@xpsp3res.dll,-20000"
 "C:\Program Files\ZoomText 9.1\Zt.exe"="C:\Program Files\ZoomText 9.1\Zt.exe:LocalSubNet:Enabled​:ZoomText 9.1"
 "C:\Program Files\MSN Messenger\livecall.exe"="C:\Pr​ogram Files\MSN Messenger\livecall.exe:*:Enabl​ed:Windows Live Messenger 8.1 (Phone)"
 "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:​\Program Files\Windows Live\Messenger\wlcsdk.exe:*:En​abled:Windows Live Call"
 "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C​:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:E​nabled:Windows Live Messenger"

 ======File associations======

 .js - edit -
 .js - open -

 ======List of files/folders created in the last 1 months======

 2010-05-12 19:42:14 ----D---- C:\rsit
 2010-05-12 17:50:00 ----A---- C:\mbam-error.txt
 2010-05-12 17:47:29 ----D---- C:\WINDOWS\LastGood
 2010-04-15 00:33:45 ----HDC---- C:\WINDOWS\$NtUninstallKB97968​3$
 2010-04-15 00:33:34 ----HDC---- C:\WINDOWS\$NtUninstallKB98023​2$
 2010-04-15 00:31:12 ----HDC---- C:\WINDOWS\$NtUninstallKB98134​9$
 2010-04-15 00:31:04 ----HDC---- C:\WINDOWS\$NtUninstallKB97833​8$
 2010-04-15 00:30:55 ----HDC---- C:\WINDOWS\$NtUninstallKB97781​6$
 2010-04-15 00:30:48 ----HDC---- C:\WINDOWS\$NtUninstallKB97860​1$
 2010-04-15 00:30:22 ----HDC---- C:\WINDOWS\$NtUninstallKB97930​9$
 2010-04-13 11:56:36 ----N---- C:\WINDOWS\system32\browsercho​ice.exe

 ======List of files/folders modified in the last 1 months======

 2010-05-12 19:42:31 ----D---- C:\Program Files\Trend Micro
 2010-05-12 19:42:20 ----D---- C:\WINDOWS\Prefetch
 2010-05-12 18:59:58 ----D---- C:\ToolBar SD
 2010-05-12 18:59:57 ----HD---- C:\Python22
 2010-05-12 18:59:54 ----D---- C:\WINDOWS
 2010-05-12 18:35:33 ----D---- C:\WINDOWS\temp
 2010-05-12 18:25:05 ----D---- C:\Program Files\Steam
 2010-05-12 18:23:15 ----D---- C:\Program Files\CCleaner
 2010-05-12 18:20:39 ----D---- C:\Program Files\Mozilla Firefox
 2010-05-12 18:05:44 ----HD---- C:\WINDOWS\inf
 2010-05-12 18:05:44 ----D---- C:\WINDOWS\system32\drivers
 2010-05-12 18:05:44 ----D---- C:\WINDOWS\system32
 2010-05-12 18:05:42 ----D---- C:\Program Files\Fichiers communs
 2010-05-12 17:49:59 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
 2010-05-12 17:47:30 ----HD---- C:\WINDOWS\$hf_mig$
 2010-05-12 17:45:44 ----A---- C:\WINDOWS\win.ini
 2010-05-12 17:45:12 ----D---- C:\WINDOWS\system32\CatRoot2
 2010-05-12 17:45:03 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
 2010-05-11 22:20:48 ----A---- C:\WINDOWS\SchedLgU.Txt
 2010-05-09 16:25:59 ----D---- C:\Documents and Settings\HP_Propriétaire\Appli​cation Data\U3
 2010-05-01 10:56:02 ----D---- C:\temp
 2010-04-15 23:12:25 ----D---- C:\Program Files\PC Tools Firewall Plus
 2010-04-15 00:33:53 ----D---- C:\WINDOWS\system32\dllcache
 2010-04-15 00:33:37 ----A---- C:\WINDOWS\imsins.BAK
 2010-04-15 00:30:44 ----SHD---- C:\WINDOWS\Installer
 2010-04-15 00:30:44 ----HD---- C:\Config.Msi

 ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

 R1 Ai2sXP;Ai2sXP; C:\WINDOWS\System32\drivers\Ai​2sXP.sys [2007-05-07 7296]
 R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
 R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\av​ipbb.sys [2009-03-30 96104]
 R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\in​telppm.sys [2008-04-14 40576]
 R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kb​dhid.sys [2008-04-14 14720]
 R1 kbfilter;Keyboard Filter Driver; C:\WINDOWS\system32\drivers\kb​filter.sys [2003-03-27 11776]
 R1 moufiltr;Mouse Filter Driver; C:\WINDOWS\system32\drivers\mo​ufiltr.sys [2004-10-11 8448]
 R1 MUsbFltr;WayTechUSBFilterDrive​r; C:\WINDOWS\system32\drivers\MU​sbFltr.sys [2005-12-21 9060]
 R1 NetworkX;NetworkX; C:\WINDOWS\system32\ckldrv.sys [2006-01-10 31846]
 R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\driver​s\pctgntdi.sys []
 R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\pr​odrv06.sys [2004-10-07 80576]
 R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ss​mdrv.sys [2009-12-26 28520]
 R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\St​arOpen.sys [2008-09-10 5632]
 R1 UsbFltr;WayTechUSBFilterDriver​; C:\WINDOWS\system32\drivers\Us​bFltr.sys [2005-12-21 8963]
 R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\av​gntflt.sys [2009-12-26 56816]
 R2 PCTAppEvent;PCTAppEvent Driver; \??\C:\WINDOWS\system32\driver​s\PCTAppEvent.sys []
 R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\ar​p1394.sys [2008-04-13 60800]
 R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\at​i2mtag.sys [2007-08-17 2371584]
 R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dt​scsi.sys [2006-01-13 223128]
 R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\SYSTEM32\DRIVERS\GE​ARAspiWDM.sys [2009-05-18 26600]
 R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HD​AudBus.sys [2008-04-13 144384]
 R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hi​dusb.sys [2008-04-13 10368]
 R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\Rt​kHDAud.sys [2005-04-16 2564032]
 R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mo​uhid.sys [2001-08-23 12288]
 R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\ni​c1394.sys [2008-04-13 61824]
 R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\WINDOWS\system32\driver​s\pctNdis-PacketFilter.sys []
 R3 pctNDIS;PC Tools Driver; C:\WINDOWS\system32\DRIVERS\pc​tNdis.sys [2010-04-15 58816]
 R3 pctplfw;pctplfw; \??\C:\WINDOWS\system32\driver​s\pctplfw.sys []
 R3 QCMerced;Logitech QuickCam Messenger; C:\WINDOWS\system32\DRIVERS\LV​CM.sys [2003-06-27 472332]
 R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rt​lnicxp.sys [2004-10-15 71168]
 R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\us​baudio.sys [2008-04-13 60032]
 R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​bccgp.sys [2008-04-13 32128]
 R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\us​behci.sys [2008-04-13 30208]
 R3 usbhub;Pilote de concentrateur standard USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​bhub.sys [2008-04-13 59520]
 R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\US​BSTOR.SYS [2008-04-13 26368]
 R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​buhci.sys [2008-04-13 20608]
 R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\Wm​BEnum.sys [2005-04-12 10144]
 R3 WmXlCore;Logitech WingMan Translation Layer Driver; C:\WINDOWS\system32\drivers\Wm​XlCore.sys [2005-04-12 45504]
 R3 WN5401;Liteon Wireless LAN PCI 802.11 a/b/g adapter WN5401A; C:\WINDOWS\system32\DRIVERS\wn​5401.sys [2005-01-07 449920]
 R4 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\Px​Help20.sys []
 S1 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\AS​PI32.sys []
 S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\In​CDPass.sys []
 S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\In​CDRm.sys []
 S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CC​DECODE.sys [2008-04-13 17024]
 S3 HdAudAddService;Pilote de fonction Microsoft UAA pour Service High Definition Audio; C:\WINDOWS\system32\drivers\Hd​Audio.sys [2004-03-18 113664]
 S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HP​Zid412.sys [2004-12-15 51120]
 S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HP​Zipr12.sys [2005-10-21 16496]
 S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HP​Zius12.sys [2005-10-21 21568]
 S3 L8042pr2;Logitech PS/2 Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\L8​042pr2.Sys [2003-12-11 51582]
 S3 LMouFlt2;Logitech Mouse Class Filter Driver; C:\WINDOWS\system32\DRIVERS\LM​ouFlt2.Sys [2003-12-11 70894]
 S3 ltmodem5;LT Modem Driver; C:\WINDOWS\system32\DRIVERS\lt​mdmnt.sys [2004-08-04 607452]
 S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motiv​e\MRENDIS5.SYS []
 S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MS​TEE.sys [2008-04-13 5504]
 S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NA​BTSFEC.sys [2008-04-13 85248]
 S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\Nd​isIP.sys [2008-04-13 10880]
 S3 PcdrNdisuio;PCDRNDISUIO Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\pc​drndisuio.sys [2005-01-19 12416]
 S3 PCTFW-DNS;PCTools Firewall - DNS driver; \??\C:\WINDOWS\system32\driver​s\pctNdis-DNS.sys []
 S3 Ps2;PS2; C:\WINDOWS\system32\DRIVERS\PS​2.sys [2001-06-04 14112]
 S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RT​L8139.SYS [2004-08-04 20992]
 S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SL​IP.sys [2008-04-13 11136]
 S3 sony_ssm.sys;sony_ssm.sys; \??\C:\DOCUME~1\HP_PRO~1\LOCAL​S~1\Temp\sony_ssm.sys []
 S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ss​m_bus.sys [2005-08-30 58320]
 S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ss​m_mdfl.sys [2005-08-30 8336]
 S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ss​m_mdm.sys [2005-08-30 94000]
 S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\St​reamIP.sys [2008-04-13 15232]
 S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​bprint.sys [2008-04-13 25856]
 S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\us​bscan.sys [2008-04-13 15104]
 S3 VNUSB;VN Series Device; C:\WINDOWS\system32\DRIVERS\VN​USB.sys [2003-12-15 38448]
 S3 WmFilter;Logitech Gaming HID Filter Driver; C:\WINDOWS\system32\drivers\Wm​Filter.sys [2005-04-12 22240]
 S3 WmHidLo;Logitech Gaming USB Filter Driver; C:\WINDOWS\system32\drivers\Wm​HidLo.sys [2005-04-12 17632]
 S3 WmVirHid;Logitech Virtual Hid Device Driver; C:\WINDOWS\system32\drivers\Wm​VirHid.sys [2005-04-12 5600]
 S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WS​TCODEC.SYS [2008-04-13 19200]
 S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\Wu​dfPf.sys [2006-09-28 77568]
 S4 dacFips;dacFips; \??\C:\WINDOWS\system32\driver​s\amdcmcia.sys []
 S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\In​CDFs.sys []

 ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

 R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-12-26 108289]
 R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-12-26 185089]
 R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe [2009-07-09 144712]
 R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.e​xe [2007-08-17 483328]
 R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.ex​e [2008-12-12 238888]
 R2 Crypkey License;Crypkey License; C:\WINDOWS\system32\crypserv.e​xe [2007-02-02 122880]
 R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2003-06-20 322120]
 R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2009-11-09 818432]
 R2 UserAccess7;SecuROM User Access Service (V7); C:\WINDOWS\system32\UAService7​.exe [2006-03-16 225280]
 R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-09-08 545568]
 S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.e​xe [2007-08-16 593920]
 S2 gupdate1c9b4ada1869164;Service Google Update (gupdate1c9b4ada1869164); C:\Program Files\Google\Update\GoogleUpda​te.exe [2009-04-04 133104]
 S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe []
 S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.e​xe [2004-09-29 69632]
 S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Frame​work\v2.0.50727\aspnet_state.e​xe [2008-07-25 34312]
 S3 clr_optimization_v2.0.50727_32​;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Frame​work\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
 S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
 S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.​exe [2008-03-29 654848]
 S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Frame​work\v3.0\WPF\PresentationFont​Cache.exe [2008-07-29 46104]
 S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1​1\Intel 32\IDriverT.exe [2005-04-04 69632]
 S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Frame​work\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
 S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
 S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.ex​e [2008-04-14 14336]
 S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Frame​work\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

 -----------------EOF----------​-------

damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 12/05/2010 à 18:44:34  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
et voici le info:
 info.txt logfile of random's system information tool 1.06 2010-05-12 19:42:35

 ======Uninstall list======

 -->C:\PROGRA~1\CLUB-I~1\LECOMP​~1\Uninstall.exe  TONLFR
 -->C:\Program Files\Fichiers communs\Real\Update_OB\r1punin​st.exe RealNetworks|RealPlayer|6.0
 -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
 -->MsiExec /X{65F1CF63-31E0-450B-96F3-4A8​8BE7361A6}
 -->rundll32.exe setupapi.dll,InstallHinfSectio​n DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
 Ad-Aware SE Personal-->C:\PROGRA~1\Lavasof​t\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\​INSTALL.LOG
 Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F86​2228A6B95}
 Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9​AF4EA0A61}
 Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E​5D4831394}
 Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB​681A36A23}
 Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC​4ACD9FC1C}
 Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-917​0EABEC59C}
 Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-943​88B063C5E}
 Adobe Color Common Settings-->C:\Program Files\Fichiers communs\Adobe\Installers\6c8e2​cb4fd241c55406016127a6ab2e\Set​up.exe
 Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B​53CE257BF}
 Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77​F0FF475B8}
 Adobe Color JA Extra Settings-->MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F​2940EB029}
 Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-714​4877A32E5}
 Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC​87856124D}
 Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F​22D21F0DD}
 Adobe ExtendScript Toolkit 2-->C:\Program Files\Fichiers communs\Adobe\Installers\3e054​d2218e7aa282c2369d939e58ff\Set​up.exe
 Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{77D2A9D3-5800-43E3-B274-878​41BC87DB2}
 Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\​Macromed\Flash\uninstall_activ​eX.exe
 Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\M​acromed\Flash\uninstall_plugin​.exe
 Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E7​2A289431B}
 Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991​F6AB66245}
 Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C36​4617C6078}
 Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F49​2BAA9C48C}
 Adobe Photoshop CS3-->C:\Program Files\Fichiers communs\Adobe\Installers\719d6​f144d0c086a0dfa7ff76bb9ac1\Set​up.exe
 Adobe Photoshop CS3-->MsiExec.exe /I{3D7E3EC9-46CF-4359-9289-39C​E01DFB82F}
 Adobe Reader 8.1.3 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81​300000003}
 Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-857​3738E4AD1}
 Adobe Setup-->MsiExec.exe /I{8AE03988-8C8C-40EE-BDC7-767​81BEF1B1D}
 Adobe Setup-->MsiExec.exe /I{FF11004C-F42A-4A31-9BCF-7F5​C8FDBE53C}
 Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F​169117183}
 Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8​FA8E03312}
 Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-784​1F48D42D8}
 Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74​A173C25C5}
 Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A​10EDFD3C6}
 Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-145​0E523C923}
 Adobe® Photoshop® Album Edition Découverte 3.0-->MsiExec.exe /I{4BDFD2CE-6329-42E4-9801-9B3​D1F10D79B}
 AGEIA PhysX v7.07.09-->MsiExec.exe /X{65F1CF63-31E0-450B-96F3-4A8​8BE7361A6}
 Apple Application Support-->MsiExec.exe /I{0C34B801-6AEC-4667-B053-03A​67E2D0415}
 Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8​D1C18F4EE}
 Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F4​95BE32033}
 Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
 ASIO4ALL-->C:\Program Files\ASIO4ALL v2\uninstall.exe
 Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18​E473546C7}
 ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiC​imUn.exe
 ATI AVIVO Codecs-->MsiExec.exe /I{89DE67AD-08B8-4699-A55D-CA5​C0AF82BF3}
 ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​PROFES~1\RunTime\09\01\Intel32​\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A​7-ABFF-507B966405D8}\setup.exe​" -l0x435c
 ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.d​ll,_InfEngUnInstallINFFile_Run​DLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
 ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B​99309BDC7}
 Audio Converter Plus 3.36-->"C:\Program Files\Audio Converter Plus\unins000.exe"
 Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
 BitTornado 0.3.13-->C:\Program Files\BitTornado\uninst.exe
 Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D7​77245C35B}
 BroadJump Client Foundation-->C:\WINDOWS\IsUnin​st.exe -f"C:\Program Files\BroadJump\Client Foundation\Uninst.isu" -c"C:\Program Files\BroadJump\Client Foundation\RmvBJCFD.dll" -b"CFD" -h"CFD" -a
 BSPlayer-->"C:\Program Files\Webteh\BSplayer\uninstal​l.exe"
 Call of Duty(R) 4 - Modern Warfare(TM)-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD​5-A122-1497C286D217}\setup.exe -runfromtemp -l0x040c
 CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
 Compléments d'aide et de support-->WScript.exe C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\eHelpSetup.js​e eHelpUninstall
 Conjugaison-->MsiExec.exe /I{5F82B545-AE13-45ED-A8A2-67E​56F3165BC}
 Connexion Facile à Internet-->C:\PROGRA~1\FICHIE~​1\INSTAL~1\Driver\7\INTEL3~1\I​Driver.exe /M{8105684D-8CA6-440D-8F58-7E5​FD67A499D} /l1036
 Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUn​installKB939683$\spuninst\spun​inst.exe"
 Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7up​dates\KB947864-IE7\spuninst\sp​uninst.exe"
 Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUn​installKB952287$\spuninst\spun​inst.exe"
 Correctif pour Windows XP (KB970653-v3)-->"C:\WINDOWS\$N​tUninstallKB970653-v3$\spunins​t\spuninst.exe"
 Correctif pour Windows XP (KB976098-v2)-->"C:\WINDOWS\$N​tUninstallKB976098-v2$\spunins​t\spuninst.exe"
 Correctif pour Windows XP (KB979306)-->"C:\WINDOWS\$NtUn​installKB979306$\spuninst\spun​inst.exe"
 Dico de Rimes-->c:\rimes\Uninstal.exe
 Dragon NaturallySpeaking 8-->MsiExec.exe /I{DDDD0C4B-57F7-4A85-ACF0-DB3​FC8F1DBB4}
 e-Carte Bleue Société Générale-->"C:\Program Files\InstallShield Installation Information\{EC3CAFA6-1CDC-46D​1-AD8D-B66CFDE59EE0}\setup.exe​" -runfromtemp -l0x040c  -removeonly
 Ensemble clavier et souris sans fil Labtec-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​engine\6\INTEL3~1\Ctor.dll,Lau​nchSetup "C:\Program Files\InstallShield Installation Information\{A369B607-5BAF-4AB​3-B18A-1017ED19902D}\Setup.exe​"  -l0x040c
 Falcon 4.0-->C:\WINDOWS\IsUn040c.exe -fC:\MicroProse\Falcon4\Uninst​.isu
 Free Games Offer, Desktop Shortcut-->MsiExec.exe /X{31DABA20-10A1-4746-9D9F-579​55B8DFF66}
 Google Chrome-->"C:\Program Files\Google\Chrome\Applicatio​n\4.1.249.1064\Installer\setup​.exe" --uninstall --system-level
 Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA​4F0EA21E3}
 Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC4​4E68B55E2}
 Half-Life(R) 2-->MsiExec.exe /I{D45EC259-4A19-4656-B588-C2C​360DD18EA}
 High Definition Audio Driver Package - KB835221-->C:\WINDOWS\$NtUnins​tallKB835221WXP$\spuninst\spun​inst.exe
 HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e" /uninstall
 Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system​32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DC​F5C5BD9} /uninstall  /qb+ REBOOTPROMPT=""
 Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system​32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DC​F5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A​786E658} /qb+ REBOOTPROMPT=""
 Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUn​installKB929399$\spuninst\spun​inst.exe"
 HP Appareils photos Photosmart 4.5-->C:\Program Files\HP\Digital Imaging\{ABA2B37F-AB88-486e-87​0A-52454A23FEE0}\setup\hpzscr0​1.exe -datfile hpiscr01.dat
 HP Deskjet Printer Preload-->MsiExec.exe /I{2C5D07FB-31A2-4F2D-9FDA-0B2​4ACD42BD0}
 HP Extended Capabilities 4.7-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr​01.exe -datfile hpqhsc01.dat
 HP Image Zone 4.7-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
 HP PSC & OfficeJet 4.7-->"C:\Program Files\HP\Digital Imaging\{342C7C88-D335-4bc2-8C​F1-281857629CE2}\setup\hpzscr0​1.exe" -datfile hposcr05.dat
 HP Software Update-->MsiExec.exe /X{64FC0C98-B035-4530-B15D-3D3​0610B6DF1}
 IBM ViaVoice TTS Runtime v6.610 -  Français (Canada)-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​engine\6\INTEL3~1\Ctor.dll,Lau​nchSetup "C:\Program Files\InstallShield Installation Information\{2113BFA6-DF71-47C​A-8361-11A3A5A8EA57}\SETUP.EXE​" xxxanything
 IBM ViaVoice TTS Runtime v6.610 -  Français-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​engine\6\INTEL3~1\Ctor.dll,Lau​nchSetup "C:\Program Files\InstallShield Installation Information\{94ED958B-C7BC-4B5​4-8B27-2FBA717D4EDB}\SETUP.EXE​" xxxanything
 IL Download Manager-->C:\Program Files\Image-Line\Downloader\un​install.exe
 Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
 Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C​063A63F31}
 InterVideo WinDVD Player-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EB​A-A5AA-B198BBC81144}\setup.exe​" REMOVEALL
 iPod for Windows 2006-01-10-->C:\Program Files\Fichiers communs\InstallShield\Driver\8​\Intel 32\IDriver.exe /M{3D047C15-C859-45F7-81CE-F26​81778069B} /l1036
 iTunes-->MsiExec.exe /I{EC2A8F27-4FBF-4E41-B27B-FE8​22511B761}
 J2SE Runtime Environment 5.0 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B​0D0150060}
 J2SE Runtime Environment 5.0-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B​0D0150000}
 KBD-->C:\HP\KBD\KBD.EXE uninstalled
 K-Lite Codec Pack 2.54 Full-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
 LE COMPAGNON CLUB-->C:\WINDOWS\Motive\TONLF​R\MCCUninst.exe
 Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
 Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​engine\6\INTEL3~1\Ctor.dll,Lau​nchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F4​6-A882-2CFFFE2EEDCB}\setup.exe​" -l0x40c UNINSTALL
 Logitech Gaming Software-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​PROFES~1\RunTime\10\50\Intel32​\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C1DA723-24FC-48A​D-93BA-925695C3EF26}\setup.exe​" -l0x40c  -removeonly
 Logitech MouseWare 9.80 -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​engine\6\INTEL3~1\Ctor.dll,Lau​nchSetup "C:\Program Files\InstallShield Installation Information\{5809E7CF-4DCF-11D​4-9875-00105ACE7734}\setup.exe​" -l0x40c -l040c UNINSTALL
 Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
 Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B​559F4E700}
 Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Micro​soft.NET\Framework\v1.1.4322\U​pdates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Fram​ework\v1.1.4322\Updates\M95329​7\M953297Uninstall.msp"
 Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52E​AE172A1}
 Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F5​2EAE172A1}
 Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{72AD53CC-CCC0-3757-8480-9EE​176866A7C}
 Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1​D67F2073F}
 Microsoft .NET Framework 3.0 French Language Pack-->MsiExec.exe /X{E3C080B0-23F5-49AF-89F8-8E8​DBC89E659}
 Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8D​CCDE8F8C7}
 Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET​\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
 Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4​DCF5C5BD9}
 Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C​8A0C4D570}
 Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallM​SCompPackV1$\spuninst\spuninst​.exe"
 Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServiceP​ackUninstallIDNMitigationAPIs$​\spuninst\spuninst.exe"
 Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServiceP​ackUninstallNLSDownlevelMappin​g$\spuninst\spuninst.exe"
 Microsoft Office XP Professional avec FrontPage-->MsiExec.exe /I{9028040C-6000-11D3-8CFE-005​0048383C9}
 Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstall​Wudf01000$\spuninst\spuninst.e​xe"
 Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C8​3EC895118}
 Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-181​8da5d550d}
 Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B25​85E8E76B7}
 Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7​D6DBC735C}
 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E​6EC160475}
 Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUn​installKB959772_WM11$\spuninst​\spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUn​installKB952069_WM9$\spuninst\​spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUn​installKB954155_WM9$\spuninst\​spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUn​installKB968816_WM9$\spuninst\​spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUn​installKB973540_WM9$\spuninst\​spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)-->"C:\WINDOWS\$NtUn​installKB911565$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUn​installKB917734_WMP10$\spunins​t\spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUn​installKB936782_WMP11$\spunins​t\spuninst.exe"
 Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUn​installKB954154_WM11$\spuninst​\spuninst.exe"
 Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)-->"C:\WINDOWS\$NtUn​installKB898458$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUn​installKB923723$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7up​dates\KB938127-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7up​dates\KB942615-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7up​dates\KB944533-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7up​dates\KB950759-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7up​dates\KB953838-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7up​dates\KB956390-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7up​dates\KB958215-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7up​dates\KB960714-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7up​dates\KB961260-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7up​dates\KB963027-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB969897)-->"C:\WINDOWS\ie7up​dates\KB969897-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB972260)-->"C:\WINDOWS\ie7up​dates\KB972260-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB974455)-->"C:\WINDOWS\ie7up​dates\KB974455-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB976325)-->"C:\WINDOWS\ie7up​dates\KB976325-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows Internet Explorer 7 (KB978207)-->"C:\WINDOWS\ie7up​dates\KB978207-IE7\spuninst\sp​uninst.exe"
 Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUn​installKB923561$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUn​installKB938464$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$N​tUninstallKB938464-v2$\spunins​t\spuninst.exe"
 Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUn​installKB941569$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUn​installKB946648$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUn​installKB950760$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUn​installKB950762$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUn​installKB950974$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUn​installKB951066$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUn​installKB951376$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$N​tUninstallKB951376-v2$\spunins​t\spuninst.exe"
 Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUn​installKB951698$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUn​installKB951748$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUn​installKB952004$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUn​installKB952954$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUn​installKB953839$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUn​installKB954211$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUn​installKB954459$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUn​installKB954600$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUn​installKB955069$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUn​installKB956391$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUn​installKB956572$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956744)-->"C:\WINDOWS\$NtUn​installKB956744$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUn​installKB956802$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUn​installKB956803$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUn​installKB956841$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUn​installKB956844$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUn​installKB957095$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUn​installKB957097$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUn​installKB958644$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUn​installKB958687$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUn​installKB958690$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUn​installKB958869$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUn​installKB959426$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUn​installKB960225$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUn​installKB960715$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUn​installKB960803$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUn​installKB960859$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB961371)-->"C:\WINDOWS\$NtUn​installKB961371$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUn​installKB961373$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUn​installKB961501$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB968537)-->"C:\WINDOWS\$NtUn​installKB968537$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUn​installKB969059$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB969898)-->"C:\WINDOWS\$NtUn​installKB969898$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUn​installKB969947$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUn​installKB970238$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUn​installKB970430$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB971468)-->"C:\WINDOWS\$NtUn​installKB971468$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUn​installKB971486$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB971557)-->"C:\WINDOWS\$NtUn​installKB971557$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB971633)-->"C:\WINDOWS\$NtUn​installKB971633$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUn​installKB971657$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB971961)-->"C:\WINDOWS\$NtUn​installKB971961$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUn​installKB972270$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB973346)-->"C:\WINDOWS\$NtUn​installKB973346$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUn​installKB973354$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUn​installKB973507$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB973525)-->"C:\WINDOWS\$NtUn​installKB973525$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUn​installKB973869$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUn​installKB973904$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUn​installKB974112$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUn​installKB974318$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUn​installKB974392$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUn​installKB974571$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUn​installKB975025$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUn​installKB975467$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB975560)-->"C:\WINDOWS\$NtUn​installKB975560$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB975561)-->"C:\WINDOWS\$NtUn​installKB975561$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB975713)-->"C:\WINDOWS\$NtUn​installKB975713$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB977165)-->"C:\WINDOWS\$NtUn​installKB977165$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB977816)-->"C:\WINDOWS\$NtUn​installKB977816$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB977914)-->"C:\WINDOWS\$NtUn​installKB977914$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB978037)-->"C:\WINDOWS\$NtUn​installKB978037$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB978251)-->"C:\WINDOWS\$NtUn​installKB978251$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB978262)-->"C:\WINDOWS\$NtUn​installKB978262$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB978338)-->"C:\WINDOWS\$NtUn​installKB978338$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB978601)-->"C:\WINDOWS\$NtUn​installKB978601$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB978706)-->"C:\WINDOWS\$NtUn​installKB978706$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB979309)-->"C:\WINDOWS\$NtUn​installKB979309$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB979683)-->"C:\WINDOWS\$NtUn​installKB979683$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB980232)-->"C:\WINDOWS\$NtUn​installKB980232$\spuninst\spun​inst.exe"
 Mise à jour de sécurité pour Windows XP (KB981349)-->"C:\WINDOWS\$NtUn​installKB981349$\spuninst\spun​inst.exe"
 Mise à jour pour Windows Internet Explorer 7 (KB976749)-->"C:\WINDOWS\ie7up​dates\KB976749-IE7\spuninst\sp​uninst.exe"
 Mise à jour pour Windows Internet Explorer 7 (KB980182)-->"C:\WINDOWS\ie7up​dates\KB980182-IE7\spuninst\sp​uninst.exe"
 Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$N​tUninstallKB951072-v2$\spunins​t\spuninst.exe"
 Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUn​installKB951978$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUn​installKB955759$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUn​installKB955839$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB961503)-->"C:\WINDOWS\$NtUn​installKB961503$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUn​installKB967715$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUn​installKB968389$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUn​installKB971737$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUn​installKB973687$\spuninst\spun​inst.exe"
 Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUn​installKB973815$\spuninst\spun​inst.exe"
 Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0-->c:\WINDOWS\Microsoft.NET​\Framework\v3.0\Microsoft .NET Framework 3.0 French Language Pack\setup.exe
 Mozilla Firefox (3.0.19)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
 MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5​E3257BD94}
 MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAF​C6BCFF99F}
 MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-696​9D703A9EF}
 MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5​DCDC52A71}
 MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C1​1F044BDEC}
 MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972​D3C8CED9E}
 Nero 7 Ultra Edition-->MsiExec.exe /I{4781569D-5404-1F26-4B2B-6DF​444441031}
 Olympus Digital Wave Player-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​engine\6\INTEL3~1\Ctor.dll,Lau​nchSetup "C:\Program Files\InstallShield Installation Information\{FB91E774-867B-456​7-ACE7-8144EF036068}\Setup.exe​" -l0x40c
 OpenOffice.org 2.0-->MsiExec.exe /I{752783F5-0CFC-44C3-9E1F-CAF​17C4508E7}
 Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A0​93F35A238}
 Outils Club Internet-->"C:\Program Files\Club-Internet\Assistance​\OutilsCI\uninstall.exe"
 Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstal​lbasecsp$\spuninst\spuninst.ex​e"
 PC Tools Firewall Plus 6.0-->C:\Program Files\PC Tools Firewall Plus\unins000.exe /LOG
 PC-Doctor for Windows-->C:\PROGRA~1\FICHIE~1​\INSTAL~1\Driver\1050\INTEL3~1​\IDriver.exe /M{19C989C4-50AE-43A4-B06E-8C7​0FFFF852F} /l1036
 PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410​ECF7F70A5}
 Photosmart 320,370,7400,8100,8400 Series (fra)-->C:\Program Files\HP\{AAC4FC36-8F89-4587-8​DD3-EBC57C83374D}\setup\hpzscr​01.exe -datfile hphscr01.dat
 PLAYSTATION(R)Network Downloader-->MsiExec.exe /X{BC4CA8FA-41D2-4B81-8680-E9B​7573D6500}
 PS2-->C:\WINDOWS\system32\ps2.​exe uninstall
 Python 2.2 pywin32 extensions (build 203)-->"C:\Python22\Removepywi​n32.exe" -u "C:\Python22\pywin32-wininst.l​og"
 Python 2.2.3-->C:\Python22\UNWISE.EXE C:\Python22\INSTALL.LOG
 QuickTime-->MsiExec.exe /I{A429C2AE-EBF1-4F81-A221-1C1​15CAADDAD}
 RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1punin​st.exe RealNetworks|RealPlayer|6.0
 SAMSUNG CDMA Modem Driver Set-->C:\WINDOWS\system32\Sams​ung_USB_Drivers\3\SSCDUninstal​l.exe
 SAMSUNG Mobile Composite Device Software-->C:\WINDOWS\system32​\Samsung_USB_Drivers\6\SSBCUni​nstall.exe
 SAMSUNG Mobile Modem Driver Set-->C:\WINDOWS\system32\Sams​ung_USB_Drivers\3\SSCDUninstal​l.exe
 Samsung Mobile phone USB driver Software-->C:\WINDOWS\system32​\Samsung_USB_Drivers\5\SSSDUni​nstall.exe
 SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32​\Samsung_USB_Drivers\1\SS_Unin​stall.exe
 SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32​\Samsung_USB_Drivers\2\SSM_Uni​nstall.exe
 Samsung PC Studio 3 USB Driver Installer-->"C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B6​2-B2E3-9841F92A3E3A}\setup.exe​" -runfromtemp -l0x040c -removeonly
 Samsung PC Studio 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\​PROFES~1\RunTime\10\50\Intel32​\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417​C-BD72-8D359A090C97}\setup.exe​" -l0x40c  -removeonly
 Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F​8D1E69FB7}
 Steam(TM)-->C:\PROGRA~1\Steam\​UNWISE.EXE C:\PROGRA~1\Steam\INSTALL.LOG
 System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Un​install.exe
 Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system​32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DC​F5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275​C4F3607} /qb+ REBOOTPROMPT=""
 Vidéo Email v2.0 pour Outlook Express -->C:\PROGRA~1\Talkway\VIDOMA~​1\UNWISE.EXE C:\PROGRA~1\Talkway\VIDOMA~1\I​NSTALL.LOG
 Video to Flash Converter-->"C:\Program Files\GeoVid\Video to Flash Converter\unins000.exe"
 VLC media player 0.9.8a-->C:\Program Files\VideoLAN\VLC\uninstall.e​xe
 Windows Genuine Advantage v1.3.0254.0-->MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D​4D93ACF91}
 Windows Imaging Component-->"C:\WINDOWS\$NtUni​nstallWIC$\spuninst\spuninst.e​xe"
 Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD​3A3F9DF41}
 Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189​800823F52}
 Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8​525FFA3B1}
 Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
 Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUnins​tallWMFDist11$\spuninst\spunin​st.exe"
 Windows Media Player 11-->"C:\WINDOWS\$NtUninstallw​mp11$\spuninst\spuninst.exe"
 Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867​DC9D0A2A4}
 Windows Presentation Foundation Language Pack (FRA)-->MsiExec.exe /X{6901DD22-527A-41EF-9059-E81​FEDE9E494}
 Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D9​22A799840}
 Windows Workflow Foundation FR Language Pack-->MsiExec.exe /I{B84C141C-9A13-44BE-9A69-301​D7B11D836}
 Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePack​Uninstall$\spuninst\spuninst.e​xe"
 X3 REUNION DEMO-->MsiExec.exe /I{D9A21C73-AA48-428F-93B7-23E​B275E8E55}
 XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstall​XPSEPSCLP$\spuninst\spuninst.e​xe"
 ZoomText 9.1-->C:\PROGRA~1\INSTAL~1\{9C​A01~1\setup.exe -runfromtemp -l0x0009 -ir -ni

 ======Security center information======

 AV: AntiVir Desktop (disabled) (outdated)
 FW: PC Tools Firewall Plus

 ======System event log======

 Computer Name: CHRISTIAN
 Event Code: 7036
 Message: Le service Pml Driver HPZ12 est entré dans l'état : en cours d'exécution.

 Record Number: 688551
 Source Name: Service Control Manager
 Time Written: 20100505183103.000000+120
 Event Type: Informations
 User:

 Computer Name: CHRISTIAN
 Event Code: 7035
 Message: Un contrôle Démarrer a correctement été envoyé au service Pml Driver HPZ12.

 Record Number: 688550
 Source Name: Service Control Manager
 Time Written: 20100505183103.000000+120
 Event Type: Informations
 User: CHRISTIAN\HP_Propriétaire

 Computer Name: CHRISTIAN
 Event Code: 7036
 Message: Le service Pml Driver HPZ12 est entré dans l'état : arrêté.

 Record Number: 688549
 Source Name: Service Control Manager
 Time Written: 20100505182903.000000+120
 Event Type: Informations
 User:

 Computer Name: CHRISTIAN
 Event Code: 7036
 Message: Le service Pml Driver HPZ12 est entré dans l'état : en cours d'exécution.

 Record Number: 688548
 Source Name: Service Control Manager
 Time Written: 20100505182903.000000+120
 Event Type: Informations
 User:

 Computer Name: CHRISTIAN
 Event Code: 7035
 Message: Un contrôle Démarrer a correctement été envoyé au service Pml Driver HPZ12.

 Record Number: 688547
 Source Name: Service Control Manager
 Time Written: 20100505182903.000000+120
 Event Type: Informations
 User: CHRISTIAN\HP_Propriétaire

 =====Application event log=====

 Computer Name: CHRISTIAN
 Event Code: 34
 Message:
 Record Number: 35405
 Source Name: ccSvcHst
 Time Written: 20091116130836.000000+060
 Event Type: Informations
 User: AUTORITE NT\SYSTEM

 Computer Name: CHRISTIAN
 Event Code: 35
 Message:
 Record Number: 35404
 Source Name: ccSvcHst
 Time Written: 20091116130836.000000+060
 Event Type: Informations
 User: AUTORITE NT\SYSTEM

 Computer Name: CHRISTIAN
 Event Code: 34
 Message:
 Record Number: 35403
 Source Name: ccSvcHst
 Time Written: 20091116130835.000000+060
 Event Type: Informations
 User: AUTORITE NT\SYSTEM

 Computer Name: CHRISTIAN
 Event Code: 36
 Message:
 Record Number: 35402
 Source Name: ccSvcHst
 Time Written: 20091116000410.000000+060
 Event Type: Informations
 User: CHRISTIAN\HP_Propriétaire

 Computer Name: CHRISTIAN
 Event Code: 101
 Message:
 Record Number: 35401
 Source Name: Automatic LiveUpdate Scheduler
 Time Written: 20091115214924.000000+060
 Event Type: Informations
 User: AUTORITE NT\SYSTEM

 ======Environment variables======

 "ComSpec"=%SystemRoot%\system3​2\cmd.exe
 "Path"=%systemroot%\system32;%​systemroot%;%systemroot%\syste​m32\wbem;c:\Python22;C:\Progra​m Files\QuickTime\QTSystem;C:\Pr​ogram Files\ATI Technologies\ATI.ACE\Core-Stat​ic;C:\Program Files\Samsung\Samsung PC Studio 3;C:\Program Files\QuickTime\QTSystem\
 "windir"=%SystemRoot%
 "FP_NO_HOST_CHECK"=NO
 "OS"=Windows_NT
 "PROCESSOR_ARCHITECTURE"=x86
 "PROCESSOR_LEVEL"=15
 "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 3, GenuineIntel
 "PROCESSOR_REVISION"=0403
 "NUMBER_OF_PROCESSORS"=2
 "PATHEXT"=.COM;.EXE;.BAT;.CMD;​.VBS;.VBE;.JS;.JSE;.WSF;.WSH
 "TEMP"=%SystemRoot%\TEMP
 "TMP"=%SystemRoot%\TEMP
 "CLASSPATH"=.;C:\Program Files\Java\jre1.5.0_06\lib\ext​\QTJava.zip
 "QTJAVA"=C:\Program Files\Java\jre1.5.0_06\lib\ext​\QTJava.zip

 -----------------EOF----------​-------

 merci

  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 12/05/2010 à 19:01:59  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Et bien...

 il y a pas mal d'inutile dans tous sa  :super:

 On va commencer par faire ceci :

 On va faire une analyse complete de ton pc, en ligne:
 Rend toi sur ce lien :
 http://www.eset-nod32.fr/scanner.html


 --> clique sur le carrer vert est onligne scanner,
 --> Il recherchera ton navigateur pour voir si il et compatible, une fois fait tu devra accepter les therme du contrat de license, Accepte les,
 --> Une fois accepter tu pourra alors cliquer sur start, Il risque de te demander d'installer un controle Activ X...Accepte le,
 --> Tu aura alors la page de parametre d'analyse de l'ordinateur.Voici les parametre a effectuer :

 -> Laisse cocher "Suprimer les menaces detectees"
 -> Coche la case "Analyser les archives"

 --> Clique sur le lien en bleu " Parametre Avancés",

 --> Si il ne sont pas cocher, coche ces cases :

 -> "Rechercher les applications potentiellement indesirables"
 -> "Rechercher les applications potentiellement dangereuses"
 -> "Activer la thechologie Anti-Stealth (Anti-furtiviter)"

 --> decoche cette cases :

 -> utillisez des parametres proxy manuel...

 --> une fois terminer, colle le rapport qui et stoquer a cette emplacement :
 C:\Program Files\EsetOnlineScanner\log.txt

(Publicité)
damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/05/2010 à 08:47:59  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Le pc a 5 ans et a subi les débuts informatiques de la famille !!!  :heink:

 voici le log

 ESETSmartInstaller@High as downloader log:
 all ok
 # version=7
 # OnlineScannerApp.exe=1.0.0.1
 # OnlineScanner.ocx=1.0.0.6211
 # api_version=3.0.2
 # EOSSerial=3366108ff0da944298c7​389c13bbe750
 # end=finished
 # remove_checked=true
 # archives_checked=true
 # unwanted_checked=true
 # unsafe_checked=true
 # antistealth_checked=true
 # utc_time=2010-05-13 01:39:35
 # local_time=2010-05-13 03:39:35 (+0100, Paris, Madrid (heure d'été))
 # country="France"
 # lang=1036
 # osver=5.1.2600 NT Service Pack 3
 # compatibility_mode=512 16777215 100 0 3239 3239 0 0
 # compatibility_mode=1797 16775145 100 100 533135 69749699 0 0
 # compatibility_mode=2560 16777215 100 0 0 0 0 0
 # compatibility_mode=8192 67108863 100 0 215 215 0 0
 # scanned=152086
 # found=39
 # cleaned=39
 # scan_time=25387
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\MSNFix.zip menaces multiples (supprimé - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\Copie de MSNFix\MSNFix\incl\Hostsclean.​exe Win32/Packed.Autoit.Gen application (supprimé - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\Copie de MSNFix\MSNFix\incl\Process.exe Win32/PrcView application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\MSNFix\incl\Hostsc​lean.exe Win32/Packed.Autoit.Gen application (supprimé - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\MSNFix\incl\Proces​s.exe Win32/PrcView application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\MSNFix\MSNFix\incl​\Hostsclean.exe Win32/Packed.Autoit.Gen application (supprimé - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Documents and Settings\HP_Propriétaire\Burea​u\depannage\MSNFix\MSNFix\incl​\Process.exe Win32/PrcView application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Program Files\eChanblard\config\last.z​ip Win32/Tool.EvID4226 application (supprimé - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\chhqrsyq.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\dahdpirb.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\eqavttlf.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\gjkngrxc.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\GjRYycdd.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\GjRYycdd.ini2.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\GOYcLRqr.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\GOYcLRqr.ini2.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\hncqoybg.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\hNTvCcfe.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\hNTvCcfe.ini2.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\hvudydva.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\JmSBayay.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\JmSBayay.ini2.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\kihywtjl.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\nmwdlvdn.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\oftbnxqf.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\ogepjlic.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\OoopYGgh.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\OoopYGgh.ini2.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\pklinfyc.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\qlckplvi.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\rkndphyd.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\slxnrhot.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\sutssBeg.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\sutssBeg.ini2.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\unjnkkwg.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\uxnuchgk.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\vsbvjhtv.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\xvfqotrk.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C
 C:\Qoobox\Quarantine\C\WINDOWS​\system32\yeenoqjv.ini.vir Win32/Adware.Virtumonde.NEO application (nettoyé par suppression - mis en quarantaine) 000000000000000000000000000000​00 C

  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 13/05/2010 à 11:52:27  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bien, y a du monde  :sol:

 Télécharge >>> Navilog1 <<< depuis un des lien suivant :

 1.>> http://perso.orange.fr/il.mafi [...] vilog1.exe

 2.>> Ou ici


 --> Double clic (clic droit exécuter en tant qu'administrateur pour VISTA/7) sur Navilog1.exe présent sur ton bureau

 --> A l'ouverture de la fenêtre choisis la langue désirer (1) Français

 --> Tu aura 2 message d'avertissement, clic sur n'importe quel touche a l'arriver de ces deux message pour continuer

 --> Une fois la vérification de l'installation, il te redemandera d'appuyer sur une touche, fait le

 --> A ce moment la, chois l'option (1) Recherche

 --> Au redémarrage de l'ordinateur, un rapport du nom de cleannavi.txt va s'ouvrir, Post le ici STP :super:

damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/05/2010 à 13:43:05  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Alors voici le log
 Fix Navipromo version 4.0.8 commencé le 13/05/2010 14:29:37,85

 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
 !!! Postez ce rapport sur le forum pour le faire analyser !!!

 Outil exécuté depuis C:\navilog1

 Mise à jour le 09.03.2010 à 18h00 par IL-MAFIOSO

 Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
 X86-based PC ( Multiprocessor Free :               Intel(R) Pentium(R) 4 CPU 3.20GHz )
 BIOS : BIOS Date: 04/29/05 17:55:16 Ver: 08.00.10
 USER : HP_Propriétaire ( Administrator )
 BOOT : Normal boot

 Antivirus : AntiVir Desktop 9.0.1.26 (Not Activated)
 Firewall  : PC Tools Firewall Plus 6.0.0 (Activated)

 C:\ (Local Disk) - NTFS - Total:225 Go (Free:107 Go)
 D:\ (Local Disk) - FAT32 - Total:6 Go (Free:2 Go)
 E:\ (CD or DVD)
 F:\ (CD or DVD)
 G:\ (CD or DVD)
 I:\ (USB)
 J:\ (USB)
 K:\ (USB)
 L:\ (USB)
 M:\ (USB)


 Recherche executée en mode normal

 Nettoyage exécuté au redémarrage de l'ordinateur




 Nettoyage contenu C:\WINDOWS\Temp effectué !
 Nettoyage contenu C:\Documents and Settings\HP_Propriétaire\local​s~1\Temp effectué !


 *** Sauvegarde du Registre vers dossier Safebackup ***

 sauvegarde du Registre réalisée avec succès !

 *** Nettoyage Registre ***

 Nettoyage Registre Ok

 Certificat OOO-Favorit supprimé !



 *** Scan terminé 13/05/2010 14:35:09,34 ***

(Publicité)
  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 13/05/2010 à 15:51:26  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Impec  :super:

 Maintenant :

 Télécharge AD-Remover (de C_XX) depuis un des lien suivant sur ton Bureau.

 1.>> http://pagesperso-orange.fr/NosTools/C_XX/AD-R.exe

 2.>> Ou ici


 Déconnecte-toi de internet et ferme toutes applications en cours(Le meilleur moyen et de debrancher le cable Ethernet)

 --> Lance le programme d'installation, installe-le dans son emplacement par défaut (C:\Program files).
 --> Clique droit sur l'icône AD-Remover située sur ton Bureau et choisir exécuter en tant qu'administrateur.(Pour VISTA/7)
 --> Au menu principal, choisis l'option L ou Nettoyer.
 --> Poste le rapport generer à la fin ici STP.

 (Le rapport est sauvegardé aussi sous C:\Ad-Report-(00/00/0000).log)
 

 P.S : "Process.exe", une composante de l'outil, est détecté A tort par certains antivirus comme une infection, ne pas en tenir compte, il s'agit d'un faux positif, continue la procédure
 


 Aide et tuto : http://kerio.probb.fr/logiciel [...] -t3786.htm

damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/05/2010 à 18:06:44  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ca en fait du partypoker !!


 .
 ======= RAPPORT D'AD-REMOVER 2.0.0.0,D | UNIQUEMENT XP/VISTA/7 =======
 .
 Mis à jour par C_XX le 07/05/10 à 16:50
 Contact: AdRemover.contact@gmail.com
 Site web: http://pagesperso-orange.fr/No [...] mover.html
 .
 Lancé à: 18:49:13 le 13/05/2010 | Mode normal | Option: CLEAN
 Exécuté de: C:\Ad-Remover\ADR.exe
 SE: Microsoft® Windows XP™  Service Pack 3 - X86
 Nom du PC: CHRISTIAN
 Utilisateur actuel: HP_Propriétaire
 .
 ============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
 .
 .
 C:\Documents and Settings\HP_Propriétaire\Menu Démarrer\Programmes\PartyPoker
 C:\Program Files\PartyGaming

 (!) -- Fichiers temporaires supprimés.
 .
 HKCU\Software\PartyGaming
 HKCU\Software\Titan Poker
 HKLM\Software\Microsoft\Intern​et Explorer\Extensions\{B7FE5D70-​9AA2-40F1-9C6B-12A255F085E1}
 HKLM\Software\Titan Poker
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|C:​\Program Files\PartyGaming\PartyCasino\​Images\sys_icons.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\GR​A.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\account_but_newacocunt.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\account_button_background​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-bottom.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-bottomleft.g​if
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-bottomleft.J​PG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-bottomright.​gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-bottomright.​JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-left.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_popup-right.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_title-background.J​PG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_title-topleft.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_title-topleft.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_title-topright.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\active_title-topright.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\but.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\but_account.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\but_skin.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\but_skin_account.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\client_bottom.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\client_bottom_right.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\client_gradient.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\client_lobby_left.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\client_lobby_right.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\client_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\connect_screen_bg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\balance_strip.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\but_skin.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\2c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\2d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\2h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\2s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\3c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\3d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\3h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\3s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\4c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\4d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\4h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\4s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\5c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\5d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\5h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\5s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\6_bigcard​back.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\6c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\6d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\6h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\6s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\7c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\7d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\7h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\7s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\8c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\8d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\8h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\8s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\9c.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\9d.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\9h.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\9s.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Ac.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Ad.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Ah.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\As.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\bj_check.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\blackjack.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\blackjack.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\blackjack\bj_table.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\blackjack\pff_betinfo.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\blackjack\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\chip1_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\chip100_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\chip25_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\chip5_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\chip500_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\clear_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\deal_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\double_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\hit_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\insurance.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\insure_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\number_circle.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\pointer_R.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\push.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\repeatbet_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\result_bj.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\result_bust.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\result_insure.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\result_lost.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\result_push.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\result_won.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\split.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\split_button.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\stand_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\surrender_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\blackjack​\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\c50.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\c95.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Card.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\CardFlip.​wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d1.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d100.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d1000.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d2000.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d25.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d5.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d50.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d500.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\d5000.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Jc.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Jd.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Jh.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Js.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Kc.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Kd.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Kh.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Ks.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\number_ci​rcle.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\pointer_R​.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Qc.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Qd.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Qh.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Qs.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Rr.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\rules_but​ton.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Tc.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Td.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Th.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\Ts.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cardgames\version.t​xt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cashier_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\cent_strip.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\chips.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\exit_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\game_topbar_pff.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\gamebalance_free.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\gamelogs_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_but_cancel.gi​f
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_but_cashier.g​if
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_but_ok.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_but_playmoney​.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_buyin_box.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_buyin_but_all​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_buyin_tab.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\popup_buyin_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\PushBut.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\status_dlg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\version_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\games\win.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\genv.sh
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-bottom.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-bottomleft​.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-bottomleft​.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-bottomrigh​t.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-bottomrigh​t.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-left.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_popup-right.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_title-background​.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_title-left.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_title-left.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_title-right.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\inactive_title-right.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\jackpotwin_bg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_account_background.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_account_divider.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_bar_jackpot.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_bar_jackpot_numbers.j​pg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_bar_news.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_cashout.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_deposit.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_deposit_large.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_options.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_redeem.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_refresh.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_reload_play.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_but_status.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_details_open.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_link_arrow.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lhn_tab_background.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\loading.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\lobby\lobbyconfig.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_01_myaccount.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_02_cashier.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_03_news.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_04_rules.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_05_tellfriend.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_06_about.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\menu_07_help.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\PartyCasino.ico
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\popup_login_bottom.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\popup_login_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\popup_register_bottomleft​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\popup_register_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\skin.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\skin_account.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\sys_icons.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_bets.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_bingo.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_cashier.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_close.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_connected.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_gammon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_inactive_close​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_inactive_minim​ise.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_login.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_minimise.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_poker.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\system_but_security.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\title_changevalidateemail​.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\title_chgpwd.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\title_weak_password.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Im​ages\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\de_DE\images\but.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\de_DE\images\but_accoun​t.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\de_DE\images\client_top​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\de_DE\images\lhn_bar_ja​ckpot.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\de_DE\images\lhn_bar_ja​ckpot_numbers.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\de_DE\lang_pack_de_DE.t​xt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\format.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\account_bu​t_newacocunt.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\account_bu​tton_background.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-bottom.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-bottomleft.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-bottomleft.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-bottomright.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-bottomright.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-left.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_pop​up-right.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_tit​le-background.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_tit​le-topleft.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_tit​le-topleft.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_tit​le-topright.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\active_tit​le-topright.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\allversion​.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\but.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\but_accoun​t.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\but_skin.g​if
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\but_skin_a​ccount.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\client_bot​tom.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\client_bot​tom_right.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\client_gra​dient.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\client_lob​by_left.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\client_lob​by_right.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\client_top​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\connect_sc​reen_bg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\addp​laymoney_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\aud.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\auto​spincancel_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\auto​spinoptions_background.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\auto​spinstart_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\bala​nce_strip.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\but_​skin.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\buyi​n_botbg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\buyi​n_cancelbutton.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\buyi​n_cashierbutton.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\buyi​n_midbg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\buyi​n_okbutton.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\buyi​n_topbg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\cad.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\6_bigcardback.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bj_check.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_american​roulette_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_baccarat​_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_bjbonusp​airs_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_bjhighli​mit_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_bjsingle​deck_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_boardbab​e_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_cashcrui​se_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_casinowa​r_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_coolbana​na_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_deuceswi​ld_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_european​roulette_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_firedrak​e_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_flamingo​_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_fruitpar​ty_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_goannago​ld_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_goldenoa​sis_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_graveyar​dbash_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_hotjoker​poker_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_hotrolle​r_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_job_icon​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_jungleru​mble_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_kangacas​h_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_kookaken​o_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_lir_icon​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_logo_cov​er.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_magicman​_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_mhvp_ico​n.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_paigow_i​con.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_pc_icon.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_pcp_icon​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_piggypay​back_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_predator​_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_reddog_i​con.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_safecrac​kerkeno_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_sfw_icon​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_silverci​ty_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_superjok​er_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_supermys​tic_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_supersta​r_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_sweethaw​aii_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_tcp_icon​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_tod_icon​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\bjbar_vegasclu​b_icon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\BlackJack.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\blackjack.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\blackjack\bj_t​able.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\blackjack\Conf​ig.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\blackjack\pff_​betinfo.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\blackjack\vers​ion.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\chip_pointer_R​.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\chip1_button.j​pg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\chip100_button​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\chip25_button.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\chip5_button.j​pg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\chip500_button​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\clear_button.j​pg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\deal_button.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\double_button.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\hit_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\insurance.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\insure_button.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\number_circle.​gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\pointer_R.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\push.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\repeatbet_butt​on.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\result_bj.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\result_bust.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\result_insure.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\result_lost.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\result_push.jp​g
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\result_won.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\split.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\split_button.p​ng
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\stand_button.j​pg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\surrender_butt​on.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\blackjack\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c0_5.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c1.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c10.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c100.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c100k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c10k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c1k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c2_5k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c25.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c250.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c25k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c5.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c50.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c50.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c500.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c500k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c50k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c5k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\c95.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\Card.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\card_deck.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\CardFlip.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d1.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d100.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d1000.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d1k.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d2000.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d25.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d2k.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d5.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d50.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d500.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d5000.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\d5k.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\FRU_6_bigcardback.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpg

damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/05/2010 à 18:08:06  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\action_but​ton.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\action_pen​ding_panel.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\autostand.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\away_butto​n.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\backcard.b​mp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\bj_check.j​pg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\blackjack.​wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\card_point​er.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\check_box.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\chip_point​er.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\clear_butt​on.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\CommonConf​ig.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\deal_butto​n.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\double_but​ton.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\first_hand​.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\FRU_backca​rd.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\game_topba​r_pff.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\hit_button​.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\iam_back_b​utton.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\insurance.​wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\leave_seat​_button.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\looser.rgn
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\looser_pop​up.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\mpbj_deck.​bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\MultiHandB​JConfig.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\MultiHandB​JTrnyConfig.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\multiplaye​rbj.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\multiplaye​rblackjack\mpbj_table.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\multiplaye​rblackjack\mpbj_trny_table.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\multiplaye​rblackjack\sp_mpbj_table.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\multiplaye​rblackjack\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\number_cir​cle.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\player_are​a.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\push.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\repeatbet_​button.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\result_bj.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\result_bus​t.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\result_pus​h.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\result_won​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\sittingout​_button.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\skip_butto​n.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\split.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\split_butt​on.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\stand_butt​on.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\surrender_​button.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\take_seat_​button.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\trny_playe​r_area.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\trny_watch​er_area.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\version.tx​t
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\watcher_ar​ea.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\winner.rgn
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\winners_cl​osebutton.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\multiplayerbj\winners_po​pup.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\number_circle.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\pointer_R.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc0_5.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc1.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc10.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc100.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc100k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc10k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc1k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc2_5k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc25.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc250.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc25k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc5.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc50.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc500.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc500k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc50k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rc5k.png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\Rr.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\rules_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\card​games\version.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\cash​ier_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\cash​out_midbg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\cent​_strip.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\chf.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\chip​s.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\czk.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\dkk.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\eur.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\exit​_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\form​at.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\game​_topbar_pff.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\game​balance_free.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\game​logs_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\gbp.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\hkd.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\huf.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\ils.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\inr.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\jpy.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\krw.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\myr.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\nok.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\nzd.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\php.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\pln.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_but_cancel.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_but_cashier.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_but_ok.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_but_playmoney.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_buyin_box.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_buyin_but_all.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_buyin_tab.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\popu​p_buyin_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\Push​But.wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\ron.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\rur.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\sek.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\sgd.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\skk.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\stat​us_dlg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\sys_​icons.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\syst​em_but_close.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\syst​em_but_inactive_close.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\syst​em_but_inactive_minimise.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\syst​em_but_minimise.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\thb.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\trny​_buyin_botbg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\try.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\twd.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\usd.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\vers​ion.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\vers​ion_button.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\win.​wav
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\games\zar.​png
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\icon_three​.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\icon_ticke​d.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-bottom.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-bottomleft.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-bottomleft.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-bottomright.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-bottomright.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-left.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_p​opup-right.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_t​itle-background.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_t​itle-left.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_t​itle-left.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_t​itle-right.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\inactive_t​itle-right.JPG
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\jackpotwin​_bg.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_accoun​t_background.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_accoun​t_divider.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_ani_re​fresh.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_bar_ja​ckpot.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_bar_ja​ckpot_numbers.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_bar_ja​ckpot_numbers.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_bar_ja​ckpot_numbers_small.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_bar_ne​ws.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_ca​shout.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_de​posit.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_de​posit_large.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_op​tions.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_re​deem.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_re​fresh.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_re​load_play.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_but_st​atus.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_detail​s_open.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_link_a​rrow.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lhn_tab_ba​ckground.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\loading.gi​f
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\lobby\lobb​yconfig.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_01_my​account.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_02_ca​shier.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_03_ne​ws.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_04_ru​les.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_05_te​llfriend.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_06_ab​out.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\menu_07_he​lp.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\PartyCasin​o.ico
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\popup_logi​n_bottom.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\popup_logi​n_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\popup_regi​ster_bottomleft.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\popup_regi​ster_top.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\skin.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\skin_accou​nt.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\sys_icons.​jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_bets.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_bingo.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_cashier.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_close.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_connected.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_gammon.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_inactive_close.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_inactive_minimise.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_login.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_minimise.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_poker.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\system_but​_security.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\title_chan​gevalidateemail.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\title_chgp​wd.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\title_weak​_password.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\Images\version.tx​t
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\en_US\lang_pack_en_US.t​xt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\es_ES\images\but.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\es_ES\images\but_accoun​t.bmp
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\es_ES\images\client_top​.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\es_ES\images\lhn_bar_ja​ckpot.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\es_ES\images\lhn_bar_ja​ckpot_numbers.jpg
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\La​nguage\es_ES\lang_pack_es_ES.t​xt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\Pa​rtyCasino.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\PartyPoker\t​mpUpgrade\..\..\PartyCasino\sy​s.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\ARA.ini
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\DM.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\images\habeas_webseal.gif
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\Language\en_US\lang_pack_en_​US.txt
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\MFC42LU.DLL
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\MSLUP60.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\MSLURT.dll
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\PartyGaming.exe
 HKLM\Software\Microsoft\Window​s\CurrentVersion\SharedDLLs|c:​\program files\partygaming\tmpUpgrade\.​.\UNICOWS.DLL
 .
 (Orpheline) HKLM,Run - ISUSPM Startup - C:\PROGRA~1\FICHIE~1\INSTAL~1\​UPDATE~1\isuspm.exe (Fichier manquant)
 (Orpheline) HKLM,Run - mafveg - C:\DOCUME~1\HP_PRO~1\LOCALS~1\​Temp\mafveg.exe (Fichier manquant)
 (Orpheline) HKLM,Run - QuickTimeQuickTimeResources - C:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe (Fichier manquant)
 (Orpheline) HKLM,Run - iTunesiTunesHelperLocalized - C:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe (Fichier manquant)
 (Orpheline) BHO: () -{53707962-6F74-2D53-2644-206D​7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Fichier manquant)
 (Orpheline) HKLM,Uninstall - IL Download Manager - C:\Program Files\Image-Line\Downloader\un​install.exe (Fichier manquant)
 .
 ============== SCAN ADDITIONNEL ==============
 .
 * Mozilla FireFox Version 3.0.19 (fr) *
 .
 C:\Documents and Settings\HP_Propriétaire\..\u9​3405bz.default\prefs.js - browser.download.lastDir: O:
 C:\Documents and Settings\HP_Propriétaire\..\u9​3405bz.default\prefs.js - browser.startup.homepage_overr​ide.mstone: rv:1.9.0.19
 .
 .
 * Internet Explorer Version 7.0.5730.13 *
 .
 [HKCU\Software\Microsoft\Intern​et Explorer\Main]
 .
 Default_Page_URL: hxxp://www.microsoft.com/isapi​/redir.dll?prd=ie&pver=6&ar=ms​nhome
 Default_Search_URL: hxxp://www.microsoft.com/isapi​/redir.dll?prd=ie&ar=iesearch
 Do404Search: 0x01000000
 Enable Browser Extensions: yes
 Local Page: C:\WINDOWS\system32\blank.htm
 Search bar: hxxp://go.microsoft.com/fwlink​/?linkid=54896
 Show_ToolBar: yes
 Start Page: hxxp://fr.msn.com/
 Use Custom Search URL: 1
 .
 [HKLM\Software\Microsoft\Intern​et Explorer\Main]
 .
 Default_Page_URL: hxxp://www.microsoft.com/isapi​/redir.dll?prd=ie&pver=6&ar=ms​nhome
 Default_Search_URL: hxxp://www.microsoft.com/isapi​/redir.dll?prd=ie&ar=iesearch
 Delete_Temp_Files_On_Exit: yes
 Local Page: %SystemRoot%\system32\blank.ht​m
 Search bar: hxxp://search.msn.com/spbasic.​htm
 Search Page: hxxp://www.microsoft.com/isapi​/redir.dll?prd=ie&ar=iesearch
 Start Page: hxxp://fr.msn.com/
 .
 [HKLM\Software\Microsoft\Intern​et Explorer\ABOUTURLS]
 .
 Tabs: res://ieframe.dll/tabswelcome.​htm
 Blank: res://mshtml.dll/blank.htm
 .
 ==============================​==========
 .
 C:\Ad-Remover\Quarantine: 0 Fichier(s)
 C:\Ad-Remover\Backup: 13 Fichier(s)
 .
 C:\Ad-Report-CLEAN[1].txt - 104960 Octet(s)
 .
 Fin à: 18:59:53, 13/05/2010
 .
 ============== E.O.F - CLEAN[1] ==============

(Publicité)
  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 13/05/2010 à 18:17:39  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Et bien, c'est qu'il y en a un paquet  :fume:

 Relance un scan RSIT...
 Seul le (log.txt) apparaitra en fin de scan (ceci et normal)..Poste le ici STP ;-)
 :super:

damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/05/2010 à 23:40:14  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
OK

 alors voici le log

 Logfile of random's system information tool 1.07 (written by random/random)
 Run by HP_Propriétaire at 2010-05-14 00:39:05
 Microsoft Windows XP Édition familiale Service Pack 3
 System drive C: has 110 GB (47%) free of 231 GB
 Total RAM: 1023 MB (48% free)

 Logfile of Trend Micro HijackThis v2.0.4
 Scan saved at 00:39:15, on 14/05/2010
 Platform: Windows XP SP3 (WinNT 5.01.2600)
 MSIE: Internet Explorer v7.00 (7.00.6000.17023)
 Boot mode: Normal

 Running processes:
 C:\WINDOWS\System32\smss.exe
 C:\WINDOWS\system32\winlogon.e​xe
 C:\WINDOWS\system32\services.e​xe
 C:\WINDOWS\system32\lsass.exe
 C:\WINDOWS\system32\Ati2evxx.e​xe
 C:\WINDOWS\system32\svchost.ex​e
 C:\WINDOWS\System32\svchost.ex​e
 C:\WINDOWS\system32\Ati2evxx.e​xe
 C:\WINDOWS\system32\spoolsv.ex​e
 C:\Program Files\Avira\AntiVir Desktop\sched.exe
 C:\WINDOWS\Explorer.EXE
 C:\Program Files\Avira\AntiVir Desktop\avguard.exe
 C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 C:\Program Files\Bonjour\mDNSResponder.ex​e
 C:\WINDOWS\system32\crypserv.e​xe
 C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
 C:\Program Files\PC Tools Firewall Plus\FWService.exe
 C:\WINDOWS\system32\svchost.ex​e
 C:\WINDOWS\system32\UAService7​.exe
 C:\WINDOWS\SOUNDMAN.EXE
 C:\HP\KBD\KBD.EXE
 C:\Program Files\Fichiers communs\InstallShield\UpdateSe​rvice\issch.exe
 C:\windows\system\hpsysdrv.exe
 C:\WINDOWS\system32\hphmon06.e​xe
 C:\WINDOWS\ALCWZRD.EXE
 C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe
 C:\Program Files\BroadJump\Client Foundation\CFD.exe
 C:\PROGRA~1\CLUB-I~1\LECOMP~1\​SMARTB~1\MotiveSB.exe
 C:\Program Files\QuickTime\QTTask.exe
 C:\Program Files\iTunes\iTunesHelper.exe
 C:\Program Files\Fichiers communs\Talkway\vmtalk.exe
 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
 C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe
 C:\Program Files\Logitech\Profiler\lwemon​.exe
 C:\WINDOWS\system32\ctfmon.exe
 C:\Program Files\Ensemble clavier et souris sans fil Labtec\MagicKey.exe
 C:\Program Files\Olympus\DeviceDetector\D​evDtct2.exe
 C:\Program Files\Ensemble clavier et souris sans fil Labtec\MulMouse.exe
 C:\Program Files\e-Carte Bleue Société Générale\ecbl-sg.exe
 C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
 C:\Program Files\Club-Internet\Le Compagnon Club\bin\lecompagnonclub.exe
 C:\Program Files\Ensemble clavier et souris sans fil Labtec\OSD.EXE
 C:\PROGRA~1\Motive\ASSTCO~1\MO​TIVE~1.EXE
 C:\Program Files\iPod\bin\iPodService.exe
 C:\WINDOWS\system32\NOTEPAD.EX​E
 C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
 C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Program Files\Google\Chrome\Applicatio​n\chrome.exe
 C:\Documents and Settings\HP_Propriétaire\Mes documents\Downloads\RSIT.exe
 C:\Program Files\trend micro\HP_Propriétaire.exe

 R1 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.msn.com/
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.msn.com/
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Search,SearchAssistan​t =
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Search,CustomizeSearc​h =
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me = Liens
 O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll
 O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C091​46192CA} - C:\Program Files\Real\RealPlayer\rpbrowse​rrecordplugin.dll
 O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988​571CECB} - (no file)
 O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF​1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe
 O4 - HKLM\..\Run: [SSBkgdUpdate] C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupda​te.exe -Embedding -boot
 O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
 O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
 O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe
 O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
 O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.​exe
 O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
 O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateSe​rvice\issch.exe" -start
 O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
 O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8​DD3-EBC57C83374D}\hphupd06.exe
 O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.e​xe
 O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
 O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe"  -osboot
 O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
 O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\CLUB-I~1\LECOMP~1\​SMARTB~1\MotiveSB.exe
 O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
 O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
 O4 - HKLM\..\Run: [vmtalk] C:\Program Files\Fichiers communs\Talkway\vmtalk.exe
 O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
 O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
 O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
 O4 - HKLM\..\Run: [hpgscnsvhpgscnsv4.5.0.805] c:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe
 O4 - HKLM\..\Run: [hpgscnsvhpgscnsv] C:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe
 O4 - HKLM\..\Run: [quicktimeresourcesquicktime] c:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe
 O4 - HKLM\..\RunServices: [mafveg] C:\DOCUME~1\HP_PRO~1\LOCALS~1\​Temp\mafveg.exe
 O4 - HKLM\..\RunServices: [bcti] c:\docume~1\hp_pro~1\locals~1\​temp\bcti.exe
 O4 - HKLM\..\RunServices: [iTunesHelperLocalizediTunesHelperLocalized9.0.0.53] c:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe
 O4 - HKLM\..\RunServices: [QuickTimeQuickTimeResources] C:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe
 O4 - HKLM\..\RunServices: [hpgscnsvhpgscnsv] C:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe
 O4 - HKLM\..\RunServices: [iTunesiTunesHelperLocalized] C:\program files\itunes\ituneshelper.reso​urces\nl.lproj\itunesituneshel​perlocalized9.0.0.53.exe
 O4 - HKCU\..\Run: [Start WingMan Profiler] "C:\Program Files\Logitech\Profiler\lwemon​.exe" /noui
 O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
 O4 - HKCU\..\Run: [EasyStudio_L] "C:\Program Files\Samsung\Samsung PC Studio 3\Launcher.exe" -tray
 O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe"
 O4 - S-1-5-18 Startup: AutoTBar.exe (User 'SYSTEM')
 O4 - .DEFAULT Startup: AutoTBar.exe (User 'Default user')
 O4 - .DEFAULT User Startup: AutoTBar.exe (User 'Default user')
 O4 - Global Startup: Activer l'ensemble clavier et souris sans fil Labtec.lnk = C:\Program Files\Ensemble clavier et souris sans fil Labtec\MagicKey.exe
 O4 - Global Startup: Device Detector 2.lnk = C:\Program Files\Olympus\DeviceDetector\D​evDtct2.exe
 O4 - Global Startup: e-Carte Bleue Société Générale.lnk = ?
 O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
 O4 - Global Startup: LE COMPAGNON CLUB.lnk = C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
 O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMC​onf.exe
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Off​ice10\EXCEL.EXE/3000
 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll
 O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401​C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll
 O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm
 O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm
 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba3​8496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04​F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04​F795683} - C:\Program Files\Messenger\msmsgs.exe
 O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm (HKCU)
 O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6​D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Ve​ndors\CN=Hewlett-Packard,L=Cup​ertino,S=Ca,C=US\IEButton\supp​ort.htm (HKCU)
 O16 - DPF: {00B71CFB-6864-4346-A978-C0A14​556272C} (Checkers Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {14B87622-7E19-4EA8-93B3-97215​F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {17492023-C23A-453E-A040-C7C58​0BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
 O16 - DPF: {200B3EE9-7242-4EFD-B1E4-D97EE​825BA53} (VerifyGMN Class) - http://h20270.www2.hp.com/edia [...] er_gmn.cab
 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05C​B959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF​33E833C} (WUWebControl Class) - http://update.microsoft.com/wi [...] 0438230484
 O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD​1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/ [...] b31267.cab
 O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0​A5519FF} (MsnMessengerSetupDownloadCont​rol Class) - http://messenger.msn.com/downl [...] loader.cab
 O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-22031​3175592} (ZoneIntro Class) - http://messenger.zone.msn.com/ [...] b32846.cab
 O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1​036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.hp.com/aio/ [...] gh.cab?326
 O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C​90312E1} - C:\WINDOWS\system32\browseui.d​ll
 O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-30783​02C2030} - C:\WINDOWS\system32\browseui.d​ll
 O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
 O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
 O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.e​xe
 O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\WINDOWS\SYSTEM32\crypserv.e​xe
 O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.ex​e
 O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.e​xe
 O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
 O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.​exe
 O23 - Service: Service Google Update (gupdate1c9b4ada1869164) (gupdate1c9b4ada1869164) - Unknown owner - C:\Program Files\Google\Update\GoogleUpda​te.exe
 O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1​1\Intel 32\IDriverT.exe
 O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
 O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.ex​e
 O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - Unknown owner - C:\Program Files\PC Tools Firewall Plus\FWService.exe
 O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe (file missing)
 O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.e​xe
 O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.e​xe
 O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.ex​e
 O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.e​xe
 O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.e​xe
 O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
 O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7​.exe
 O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
 O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiap​srv.exe
 O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe
 O24 - Desktop Component 0: (no name) - http://www.hautetfort.com/grap [...] square.jpg

 --
 End of file - 15003 bytes

 ======Scheduled tasks folder======

 C:\WINDOWS\tasks\GoogleUpdateT​askMachineCore.job
 C:\WINDOWS\tasks\GoogleUpdateT​askMachineUA.job

 ======Registry dump======

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
 Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\​AcroIEHelper.dll [2006-10-23 62080]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
 RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowse​rrecordplugin.dll [2009-04-04 312928]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
 SSVHelper Class - C:\Program Files\Java\jre1.5.0_06\bin\ssv​.dll [2005-11-10 184423]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
 Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\Run]
 "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe [2006-11-10 90112]
 "SSBkgdUpdate"=C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupda​te.exe [2003-09-29 155648]
 "SoundMan"=C:\WINDOWS\SOUNDMAN​.EXE [2005-04-07 90112]
 "Recguard"=C:\WINDOWS\SMINST\R​ECGUARD.EXE [2004-04-14 233472]
 "Raccourci vers la page des propriétés de High Definition Audio"=C:\WINDOWS\system32\HDA​udPropShortcut.exe [2004-03-18 61952]
 "PS2"=C:\WINDOWS\system32\ps2.​exe [2004-10-25 90112]
 "NeroFilterCheck"=C:\WINDOWS\s​ystem32\NeroCheck.exe [2005-09-25 155648]
 "KBD"=C:\HP\KBD\KBD.EXE [2005-02-03 61440]
 "ISUSScheduler"=C:\Program Files\Fichiers communs\InstallShield\UpdateSe​rvice\issch.exe [2006-09-11 86960]
 "hpsysdrv"=c:\windows\system\h​psysdrv.exe [1998-05-07 52736]
 "HPHUPD06"=c:\Program Files\HP\{AAC4FC36-8F89-4587-8​DD3-EBC57C83374D}\hphupd06.exe [2004-06-07 49152]
 "HPHmon06"=C:\WINDOWS\system32​\hphmon06.exe [2004-06-07 659456]
 "AlcWzrd"=C:\WINDOWS\ALCWZRD.E​XE [2005-04-07 2805248]
 "TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe [2009-04-04 198160]
 "BJCFD"=C:\Program Files\BroadJump\Client Foundation\CFD.exe [2003-01-27 376912]
 "Motive SmartBridge"=C:\PROGRA~1\CLUB-​I~1\LECOMP~1\SMARTB~1\MotiveSB​.exe [2006-04-21 438359]
 "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-09-05 417792]
 "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-09-08 305440]
 "vmtalk"=C:\Program Files\Fichiers communs\Talkway\vmtalk.exe [2003-07-24 61440]
 "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
 "00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2010-04-15 3168216]
 "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
 "hpgscnsvhpgscnsv4.5.0.805"=c:​\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe []
 "hpgscnsvhpgscnsv"=C:\program files\fichiers communs\hewlett-packard\scanje​t\hpgscnsvhpgscnsv.exe []
 "quicktimeresourcesquicktime"=​c:\program files\quicktime\qtsystem\quick​timempeg.resources\nb.lproj\qu​icktimeresourcesquicktime.exe []

 [HKEY_CURRENT_USER\Software\Mic​rosoft\Windows\CurrentVersion\​Run]
 "Start WingMan Profiler"=C:\Program Files\Logitech\Profiler\lwemon​.exe [2005-04-18 73728]
 "ctfmon.exe"=C:\WINDOWS\system​32\ctfmon.exe [2008-04-14 15360]
 "EasyStudio_L"=C:\Program Files\Samsung\Samsung PC Studio 3\Launcher.exe [2009-06-18 614400]
 "TomTomHOME.exe"=C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [2009-11-13 247144]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\Adob​e Photo Downloader]
 C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.e​xe [2005-06-23 57344]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\Adob​e Reader Speed Launcher]
 C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\DAEM​ON Tools]
 C:\Program Files\DAEMON Tools\daemon.exe [2005-12-10 133016]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\LSBWatcher]
 c:\hp\drivers\hplsbwatcher\lsb​urnwatcher.exe [2004-10-14 253952]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\MSMSGS]
 C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\MsnMsgr]
 C:\Program Files\MSN Messenger\msnmsgr.exe /background []

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\Spyb​otSD TeaTimer]
 C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-01-28 2097488]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\TkBellExe]
 C:\Program Files\Fichiers communs\Real\Update_OB\realsch​ed.exe [2009-04-04 198160]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupreg\vmtalk]
 C:\Program Files\Fichiers communs\Talkway\vmtalk.exe [2003-07-24 61440]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^​Démarrage rapide du logiciel HP Image Zone.lnk]
 C:\PROGRA~1\HP\DIGITA~1\bin\hp​qthb08.exe [2004-11-05 53248]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^​Microsoft Office.lnk]
 C:\PROGRA~1\MICROS~3\Office10\​OSA.EXE [2001-02-13 83360]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^HP_Propriétaire^Menu Démarrer^Programmes^Démarrage^​PowerReg Scheduler V3.exe]
 C:\Documents and Settings\HP_Propriétaire\Menu Démarrer\Programmes\Démarrage\​PowerReg Scheduler V3.exe []

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\shared tools\msconfig\startupfolder\C​:^Documents and Settings^HP_Propriétaire^Menu Démarrer^Programmes^Démarrage^​Registration Prince of Persia T2T.LNK]
 C:\Program Files\Ubisoft\Prince of Persia T2T\Support\Register\Registrat​ionReminder.exe -d 802443 -l french -r 7 -g Prince of Persia T2T -c fr -i 2430 []

 C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
 Activer l'ensemble clavier et souris sans fil Labtec.lnk - C:\Program Files\Ensemble clavier et souris sans fil Labtec\MagicKey.exe
 Device Detector 2.lnk - C:\Program Files\Olympus\DeviceDetector\D​evDtct2.exe
 e-Carte Bleue Société Générale.lnk - C:\Program Files\e-Carte Bleue Société Générale\ecbl-sg.exe
 HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
 LE COMPAGNON CLUB.lnk - C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
 Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMC​onf.exe

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
 C:\WINDOWS\system32\Ati2evxx.d​ll [2007-08-17 118784]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
 C:\WINDOWS\system32\WgaLogon.d​ll [2007-03-15 236928]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\ShellServiceObjectDelayLoad]
 WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D52​4869DB5} - C:\WINDOWS\system32\WPDShServi​ceObj.dll [2006-10-18 133632]
 UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de​9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]

 [HKEY_LOCAL_MACHINE\SYSTEM\Curr​entControlSet\Control\SafeBoot​\network\nm]

 [HKEY_LOCAL_MACHINE\SYSTEM\Curr​entControlSet\Control\SafeBoot​\network\nm.sys]

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\Policies\System]
 "dontdisplaylastusername"=0
 "legalnoticecaption"=
 "legalnoticetext"=
 "shutdownwithoutlogon"=1
 "undockwithoutlogon"=1

 [HKEY_CURRENT_USER\Software\Mic​rosoft\Windows\CurrentVersion\​Policies\explorer]
 "NoDriveAutoRun"=67108863
 "NoDrives"=0
 "NoDriveTypeAutoRun"=323

 [HKEY_LOCAL_MACHINE\Software\Mi​crosoft\Windows\CurrentVersion​\Policies\explorer]
 "HonorAutoRunSetting"=
 "NoDriveAutoRun"=
 "NoDriveTypeAutoRun"=
 "NoDrives"=

 [HKEY_LOCAL_MACHINE\system\curr​entcontrolset\services\shareda​ccess\parameters\firewallpolic​y\standardprofile\authorizedap​plications\list]
 "%windir%\system32\sessmgr.exe​"="%windir%\system32\sessmgr.e​xe:*:enabled:@xpsp2res.dll,-22​019"
 "C:\Program Files\eChanblard\emule.exe"="C​:\Program Files\eChanblard\emule.exe:*:E​nabled:eMule"
 "C:\Program Files\Messenger\msmsgs.exe"="C​:\Program Files\Messenger\msmsgs.exe:*:D​isabled:Windows Messenger"
 "C:\Program Files\BitTornado\btdownloadgui​.exe"="C:\Program Files\BitTornado\btdownloadgui​.exe:*:Enabled:btdownloadgui"
 "C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Ca​ll of Duty(R) 4 - Modern Warfare(TM)"
 "%windir%\Network Diagnostic\xpnetdiag.exe"="%wi​ndir%\Network Diagnostic\xpnetdiag.exe:*:Ena​bled:@xpsp3res.dll,-20000"
 "C:\Program Files\ZoomText 9.1\Zt.exe"="C:\Program Files\ZoomText 9.1\Zt.exe:LocalSubNet:Enabled​:ZoomText 9.1"
 "C:\Program Files\MSN Messenger\livecall.exe"="C:\Pr​ogram Files\MSN Messenger\livecall.exe:*:Enabl​ed:Windows Live Messenger 8.1 (Phone)"
 "C:\Program Files\Bonjour\mDNSResponder.ex​e"="C:\Program Files\Bonjour\mDNSResponder.ex​e:*:Enabled:Bonjour"
 "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:​\Program Files\Windows Live\Messenger\wlcsdk.exe:*:En​abled:Windows Live Call"
 "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C​:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:E​nabled:Windows Live Messenger"
 "C:\Program Files\iTunes\iTunes.exe"="C:\P​rogram Files\iTunes\iTunes.exe:*:Enab​led:iTunes"

 [HKEY_LOCAL_MACHINE\system\curr​entcontrolset\services\shareda​ccess\parameters\firewallpolic​y\domainprofile\authorizedappl​ications\list]
 "%windir%\system32\sessmgr.exe​"="%windir%\system32\sessmgr.e​xe:*:enabled:@xpsp2res.dll,-22​019"
 "%ProgramFiles%\iTunes\iTunes.​exe"="%ProgramFiles%\iTunes\iT​unes.exe:*:enabled:iTunes"
 "C:\Program Files\MSN Messenger\msncall.exe"="C:\Pro​gram Files\MSN Messenger\msncall.exe:*:Enable​d:Windows Live Messenger 8.0 (Phone)"
 "%windir%\Network Diagnostic\xpnetdiag.exe"="%wi​ndir%\Network Diagnostic\xpnetdiag.exe:*:Ena​bled:@xpsp3res.dll,-20000"
 "C:\Program Files\ZoomText 9.1\Zt.exe"="C:\Program Files\ZoomText 9.1\Zt.exe:LocalSubNet:Enabled​:ZoomText 9.1"
 "C:\Program Files\MSN Messenger\livecall.exe"="C:\Pr​ogram Files\MSN Messenger\livecall.exe:*:Enabl​ed:Windows Live Messenger 8.1 (Phone)"
 "C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:​\Program Files\Windows Live\Messenger\wlcsdk.exe:*:En​abled:Windows Live Call"
 "C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C​:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:E​nabled:Windows Live Messenger"

 ======File associations======

 .js - edit -
 .js - open -

 ======List of files/folders created in the last 1 months======

 2010-05-13 19:44:07 ----D---- C:\Documents and Settings\All Users\Application Data\TomTom
 2010-05-13 19:43:35 ----D---- C:\Documents and Settings\HP_Propriétaire\Appli​cation Data\TomTom
 2010-05-13 19:43:26 ----D---- C:\Program Files\TomTom International B.V
 2010-05-13 19:43:10 ----D---- C:\Program Files\TomTom HOME 2
 2010-05-13 18:49:21 ----A---- C:\Ad-Report-CLEAN[1].txt
 2010-05-13 18:49:12 ----D---- C:\Ad-Remover
 2010-05-13 14:29:07 ----AD---- C:\Navilog1
 2010-05-13 03:01:23 ----HDC---- C:\WINDOWS\$NtUninstallKB97854​2$
 2010-05-12 20:32:55 ----D---- C:\Program Files\ESET
 2010-05-12 19:42:14 ----D---- C:\rsit
 2010-05-12 17:50:00 ----A---- C:\mbam-error.txt
 2010-04-15 00:33:45 ----HDC---- C:\WINDOWS\$NtUninstallKB97968​3$
 2010-04-15 00:33:34 ----HDC---- C:\WINDOWS\$NtUninstallKB98023​2$
 2010-04-15 00:31:12 ----HDC---- C:\WINDOWS\$NtUninstallKB98134​9$
 2010-04-15 00:31:04 ----HDC---- C:\WINDOWS\$NtUninstallKB97833​8$
 2010-04-15 00:30:55 ----HDC---- C:\WINDOWS\$NtUninstallKB97781​6$
 2010-04-15 00:30:48 ----HDC---- C:\WINDOWS\$NtUninstallKB97860​1$
 2010-04-15 00:30:22 ----HDC---- C:\WINDOWS\$NtUninstallKB97930​9$

 ======List of files/folders modified in the last 1 months======

 2010-05-14 00:39:15 ----D---- C:\WINDOWS\Prefetch
 2010-05-14 00:39:07 ----D---- C:\Program Files\Trend Micro
 2010-05-13 20:59:17 ----D---- C:\Program Files\Mozilla Firefox
 2010-05-13 19:43:26 ----SHD---- C:\WINDOWS\Installer
 2010-05-13 19:43:26 ----HD---- C:\Config.Msi
 2010-05-13 19:43:26 ----AD---- C:\Program Files
 2010-05-13 19:04:29 ----D---- C:\WINDOWS\temp
 2010-05-13 19:03:39 ----D---- C:\WINDOWS\system32\CatRoot2
 2010-05-13 19:03:36 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
 2010-05-13 19:03:24 ----A---- C:\WINDOWS\win.ini
 2010-05-13 19:01:17 ----A---- C:\WINDOWS\SchedLgU.Txt
 2010-05-13 14:35:09 ----A---- C:\cleannavi.txt
 2010-05-13 14:35:05 ----D---- C:\WINDOWS
 2010-05-13 03:01:29 ----HD---- C:\WINDOWS\inf
 2010-05-13 03:01:26 ----D---- C:\WINDOWS\system32\dllcache
 2010-05-13 03:01:26 ----D---- C:\Program Files\Outlook Express
 2010-05-13 03:01:25 ----D---- C:\WINDOWS\system32
 2010-05-12 18:59:58 ----D---- C:\ToolBar SD
 2010-05-12 18:59:57 ----HD---- C:\Python22
 2010-05-12 18:25:05 ----D---- C:\Program Files\Steam
 2010-05-12 18:23:15 ----D---- C:\Program Files\CCleaner
 2010-05-12 18:05:44 ----D---- C:\WINDOWS\system32\drivers
 2010-05-12 18:05:43 ----HD---- C:\Program Files\InstallShield Installation Information
 2010-05-12 18:05:42 ----D---- C:\Program Files\Fichiers communs
 2010-05-12 17:49:59 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
 2010-05-12 17:47:30 ----HD---- C:\WINDOWS\$hf_mig$
 2010-05-09 16:25:59 ----D---- C:\Documents and Settings\HP_Propriétaire\Appli​cation Data\U3
 2010-05-01 10:56:02 ----D---- C:\temp
 2010-04-30 20:51:06 ----A---- C:\WINDOWS\system32\MRT.exe
 2010-04-15 23:12:25 ----D---- C:\Program Files\PC Tools Firewall Plus
 2010-04-15 00:33:56 ----A---- C:\WINDOWS\imsins.BAK

 ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

 R1 Ai2sXP;Ai2sXP; C:\WINDOWS\System32\drivers\Ai​2sXP.sys [2007-05-07 7296]
 R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
 R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\av​ipbb.sys [2009-03-30 96104]
 R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\in​telppm.sys [2008-04-14 40576]
 R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kb​dhid.sys [2008-04-14 14720]
 R1 kbfilter;Keyboard Filter Driver; C:\WINDOWS\system32\drivers\kb​filter.sys [2003-03-27 11776]
 R1 moufiltr;Mouse Filter Driver; C:\WINDOWS\system32\drivers\mo​ufiltr.sys [2004-10-11 8448]
 R1 MUsbFltr;WayTechUSBFilterDrive​r; C:\WINDOWS\system32\drivers\MU​sbFltr.sys [2005-12-21 9060]
 R1 NetworkX;NetworkX; C:\WINDOWS\system32\ckldrv.sys [2006-01-10 31846]
 R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\driver​s\pctgntdi.sys []
 R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\pr​odrv06.sys [2004-10-07 80576]
 R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ss​mdrv.sys [2009-12-26 28520]
 R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\St​arOpen.sys [2008-09-10 5632]
 R1 UsbFltr;WayTechUSBFilterDriver​; C:\WINDOWS\system32\drivers\Us​bFltr.sys [2005-12-21 8963]
 R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\av​gntflt.sys [2009-12-26 56816]
 R2 PCTAppEvent;PCTAppEvent Driver; \??\C:\WINDOWS\system32\driver​s\PCTAppEvent.sys []
 R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\ar​p1394.sys [2008-04-13 60800]
 R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\at​i2mtag.sys [2007-08-17 2371584]
 R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dt​scsi.sys [2006-01-13 223128]
 R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\SYSTEM32\DRIVERS\GE​ARAspiWDM.sys [2009-05-18 26600]
 R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HD​AudBus.sys [2008-04-13 144384]
 R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hi​dusb.sys [2008-04-13 10368]
 R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\Rt​kHDAud.sys [2005-04-16 2564032]
 R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mo​uhid.sys [2001-08-23 12288]
 R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\ni​c1394.sys [2008-04-13 61824]
 R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\WINDOWS\system32\driver​s\pctNdis-PacketFilter.sys []
 R3 pctNDIS;PC Tools Driver; C:\WINDOWS\system32\DRIVERS\pc​tNdis.sys [2010-04-15 58816]
 R3 pctplfw;pctplfw; \??\C:\WINDOWS\system32\driver​s\pctplfw.sys []
 R3 QCMerced;Logitech QuickCam Messenger; C:\WINDOWS\system32\DRIVERS\LV​CM.sys [2003-06-27 472332]
 R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rt​lnicxp.sys [2004-10-15 71168]
 R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\us​baudio.sys [2008-04-13 60032]
 R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​bccgp.sys [2008-04-13 32128]
 R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\us​behci.sys [2008-04-13 30208]
 R3 usbhub;Pilote de concentrateur standard USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​bhub.sys [2008-04-13 59520]
 R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\US​BSTOR.SYS [2008-04-13 26368]
 R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​buhci.sys [2008-04-13 20608]
 R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\Wm​BEnum.sys [2005-04-12 10144]
 R3 WmXlCore;Logitech WingMan Translation Layer Driver; C:\WINDOWS\system32\drivers\Wm​XlCore.sys [2005-04-12 45504]
 R3 WN5401;Liteon Wireless LAN PCI 802.11 a/b/g adapter WN5401A; C:\WINDOWS\system32\DRIVERS\wn​5401.sys [2005-01-07 449920]
 S1 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\AS​PI32.sys []
 S1 InCDPass;InCDPass; C:\WINDOWS\system32\drivers\In​CDPass.sys []
 S1 InCDRm;InCD Reader; C:\WINDOWS\system32\drivers\In​CDRm.sys []
 S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CC​DECODE.sys [2008-04-13 17024]
 S3 HdAudAddService;Pilote de fonction Microsoft UAA pour Service High Definition Audio; C:\WINDOWS\system32\drivers\Hd​Audio.sys [2004-03-18 113664]
 S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HP​Zid412.sys [2004-12-15 51120]
 S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HP​Zipr12.sys [2005-10-21 16496]
 S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HP​Zius12.sys [2005-10-21 21568]
 S3 L8042pr2;Logitech PS/2 Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\L8​042pr2.Sys [2003-12-11 51582]
 S3 LMouFlt2;Logitech Mouse Class Filter Driver; C:\WINDOWS\system32\DRIVERS\LM​ouFlt2.Sys [2003-12-11 70894]
 S3 ltmodem5;LT Modem Driver; C:\WINDOWS\system32\DRIVERS\lt​mdmnt.sys [2004-08-04 607452]
 S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; \??\C:\PROGRA~1\COMMON~1\Motiv​e\MRENDIS5.SYS []
 S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MS​TEE.sys [2008-04-13 5504]
 S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NA​BTSFEC.sys [2008-04-13 85248]
 S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\Nd​isIP.sys [2008-04-13 10880]
 S3 PcdrNdisuio;PCDRNDISUIO Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\pc​drndisuio.sys [2005-01-19 12416]
 S3 PCTFW-DNS;PCTools Firewall - DNS driver; \??\C:\WINDOWS\system32\driver​s\pctNdis-DNS.sys []
 S3 Ps2;PS2; C:\WINDOWS\system32\DRIVERS\PS​2.sys [2001-06-04 14112]
 S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RT​L8139.SYS [2004-08-04 20992]
 S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SL​IP.sys [2008-04-13 11136]
 S3 sony_ssm.sys;sony_ssm.sys; \??\C:\DOCUME~1\HP_PRO~1\LOCAL​S~1\Temp\sony_ssm.sys []
 S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ss​m_bus.sys [2005-08-30 58320]
 S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ss​m_mdfl.sys [2005-08-30 8336]
 S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ss​m_mdm.sys [2005-08-30 94000]
 S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\St​reamIP.sys [2008-04-13 15232]
 S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\us​bprint.sys [2008-04-13 25856]
 S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\us​bscan.sys [2008-04-13 15104]
 S3 VNUSB;VN Series Device; C:\WINDOWS\system32\DRIVERS\VN​USB.sys [2003-12-15 38448]
 S3 WmFilter;Logitech Gaming HID Filter Driver; C:\WINDOWS\system32\drivers\Wm​Filter.sys [2005-04-12 22240]
 S3 WmHidLo;Logitech Gaming USB Filter Driver; C:\WINDOWS\system32\drivers\Wm​HidLo.sys [2005-04-12 17632]
 S3 WmVirHid;Logitech Virtual Hid Device Driver; C:\WINDOWS\system32\drivers\Wm​VirHid.sys [2005-04-12 5600]
 S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WS​TCODEC.SYS [2008-04-13 19200]
 S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\Wu​dfPf.sys [2006-09-28 77568]
 S4 dacFips;dacFips; \??\C:\WINDOWS\system32\driver​s\amdcmcia.sys []
 S4 InCDFs;InCD File System; C:\WINDOWS\system32\drivers\In​CDFs.sys []

 ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

 R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-12-26 108289]
 R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-12-26 185089]
 R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe [2009-07-09 144712]
 R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.e​xe [2007-08-17 483328]
 R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.ex​e [2008-12-12 238888]
 R2 Crypkey License;Crypkey License; C:\WINDOWS\system32\crypserv.e​xe [2007-02-02 122880]
 R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe [2003-06-20 322120]
 R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2009-11-09 818432]
 R2 TomTomHOMEService;TomTomHOMESe​rvice; C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [2009-11-13 92008]
 R2 UserAccess7;SecuROM User Access Service (V7); C:\WINDOWS\system32\UAService7​.exe [2006-03-16 225280]
 R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-09-08 545568]
 S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.e​xe [2007-08-16 593920]
 S2 gupdate1c9b4ada1869164;Service Google Update (gupdate1c9b4ada1869164); C:\Program Files\Google\Update\GoogleUpda​te.exe [2009-04-04 133104]
 S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe []
 S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.e​xe [2004-09-29 69632]
 S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Frame​work\v2.0.50727\aspnet_state.e​xe [2008-07-25 34312]
 S3 clr_optimization_v2.0.50727_32​;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Frame​work\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
 S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
 S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.​exe [2008-03-29 654848]
 S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Frame​work\v3.0\WPF\PresentationFont​Cache.exe [2008-07-29 46104]
 S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1​1\Intel 32\IDriverT.exe [2005-04-04 69632]
 S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Frame​work\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
 S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
 S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.ex​e [2008-04-14 14336]
 S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Frame​work\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

 -----------------EOF----------​-------


 merci encore pour ton aide!!!!

  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 14/05/2010 à 12:10:45  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Impec  :super:

 Maintenant :

 Télécharge USBFix ( El Desaparecido , C_XX & Chimay8 ) Depuis un des lien suivant sur ton bureau.

 1.>> http://pagesperso-orange.fr/No [...] UsbFix.exe

 2.>> Ou ici


 (!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) sans les ouvrir
 1.
 --> Double clic (Clique droit executer en tant qu'administrateur"POUR VISTA/7) sur UsbFix.exe présent sur ton bureau .
 --> Au menu principal choisis l'option " F " pour français et tape sur [entrée] .
 --> Au second menu Choisis l'option " 1 " (recherche) et tape sur [entrée]
 -> Laisse travailler l'outil.
 --> Ensuite post le rapport UsbFix.txt qui apparaitra.
 (!) Le menu démarrer et les icônes Risque de disparaître, ou de s'intiller.. c'est normal (!)

 Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

(Publicité)
damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 14/05/2010 à 14:45:19  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Mes parents n'en ont pas :)

  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 14/05/2010 à 15:05:21  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bien,

 Lance le mode recherche quant meme ! :fume:

damien1984
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 14/05/2010 à 20:25:46  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
d'accord d'accord d'accord :)

 ############################## | UsbFix V6.113 |

 User : HP_Propriétaire (Administrateurs) # CHRISTIAN
 Update on 13/05/2010 by El Desaparecido , C_XX & Chimay8
 Start at: 21:24:12 | 14/05/2010
 Website : http://pagesperso-orange.fr/NosTools/index.html
 Contact : FindyKill.Contact@gmail.com

Intel(R) Pentium(R) 4 CPU 3.20GHz
 Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
 Internet Explorer 7.0.5730.13
 Windows Firewall Status : Disabled
 AV : AntiVir Desktop 9.0.1.26 [ (!) Disabled | (!) Outdated ]
 FW : PC Tools Firewall Plus[ Enabled ]6.0.0

 C:\ -> Disque fixe local # 225,9 Go (107,13 Go free) [HP_PAVILION] # NTFS
 D:\ -> Disque fixe local # 6,96 Go (2,47 Go free) [HP_RECOVERY] # FAT32
 E:\ -> Disque CD-ROM
 F:\ -> Disque CD-ROM
 G:\ -> Disque CD-ROM
 I:\ -> Disque amovible
 J:\ -> Disque amovible
 K:\ -> Disque amovible
 L:\ -> Disque amovible
 M:\ -> Disque amovible

 ################## | Elements infectieux |

 C:\install1.log  

 ################## | Registre |

 [HKLM\Software\Microsoft\Window​s\CurrentVersion\Policies\Expl​orer] "NoDrives"  
 [HKCU\Software\Microsoft\Window​s\CurrentVersion\Policies\Expl​orer] "NoDrives"  

 ################## | Mountpoints2 |


 ################## | Vaccin |

 (!) Cet ordinateur n'est pas vacciné !  

 ################## | ! Fin du rapport # UsbFix V6.113 ! |

  1. homepage
hacker-tool
Débutant confirmé (de 1 000 à 4 999 messages postés)
  1. Posté le 14/05/2010 à 20:27:48  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Bien , :super:


 2.
 --> Double clic (clique "droit executer en tant qu'administrateur pour VISTA/7) Sur USBfix.exe présent sur ton bureau
 --> Au menu principale choisis l'option "F" pour français, et tape sur [entrée]
 --> Au second menu choisis l'option "2" (Supression) et tape sur [entrée]
 -> Laisse travailler l'outil
 --> Ensuite post le rapport qui apparaitra
 (!) Le menu démarrer et les icônes vont disparaître.. c'est normal (!)

 Page :
1

Aller à :
 

Sujets relatifs
trojan horse!!!! [résolu]trojan dans win32 album photo 2007
Infecté par un trojan Win32:Agent-ISI[trj] besoin d'aide pour supprimer Trojan Win32
encor ce trojan  
Plus de sujets relatifs à : Trojan Katusha

Les 5 sujets de discussion précédents Nombre de réponses Dernier message
Virus sur mon PC 0
Infecté par Security essentials + toolbar 18
Envoi de mail en grand nombre par mon ordinateur 0
Your system is infected 0
Your system is infected 0