Mon pc rame à fond[resolu]
Re: Mon pc rame à fond
Re,
J'ai donc fait tout ce que vous m'aviez recommandé.
Pour MalwareByte's Anti-Malware, il ne me trouve rien de suspect.
Je n'arrive toujours pas à enlever avast même avec l'utilitaire de désinstallation et toujours pas avec hijackthis. J'ai fais aussi un nettoyage avec AD-Remover, désinstaller "bonjour" ect..
Ensuite, voici le rapport de zhpdiag (il est long didonc) ^^ :
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\NetworkCrawler\Objects\WorkgroupCrawler]
"CLSID"="{72b3882f-453a-4633-aac9-8c3dced62aff}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\AppID\bandoocore.exe]
"AppID"="{1301A8A5-3DFB-4731-A162-B357D00C9644}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr]
@="SettingsMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr\CLSID]
@="{B543EF05-9758-464E-9F37-4C28525B4A4C}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr\CurVer]
@="BandooCore.SettingsMngr.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr.1]
@="SettingsMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr.1\CLSID]
@="{B543EF05-9758-464E-9F37-4C28525B4A4C}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr]
@="StatisticMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr\CLSID]
@="{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr\CurVer]
@="BandooCore.StatisticMngr.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr.1]
@="StatisticMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr.1\CLSID]
@="{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent]
@="LinkToContent Class"
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent\CLSID]
@="{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}"
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent\CurVer]
@="IminentLinkToContent.LinkToContent.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent.1]
@="LinkToContent Class"
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent.1\CLSID]
@="{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}\iexplore]
"Type"=dword:00000000
"Flags"=dword:00000000
"Count"=dword:00000002
"Time"=hex:da,07,06,00,01,00,1c,00,07,00,0b,00,1b,00,0f,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}]
@="IGetResourceCallback"
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}\TypeLib]
@="{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}]
"DisplayName"="Search the web (Babylon)"
"URL"="http://search.babylon.com/web/{searchTe ... wsersearch"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\AppID\{1301a8a5-3dfb-4731-a162-b357d00c9644}]
@="BandooCore"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\EoEngine_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,f0,ff,00,00,00,00,00,12,c1,b3,\
e8,c3,6a,c9,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,45,00,6f,00,52,00,65,\
00,7a,00,6f,00,5c,00,45,00,6f,00,57,00,65,00,61,00,74,00,68,00,65,00,72,00,\
5c,00,75,00,6e,00,69,00,6e,00,73,00,30,00,30,00,31,00,2e,00,65,00,78,00,65,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}]
"DisplayName"="Ask Search"
"URL"="http://websearch.ask.com/redirect?clien ... cale=fr_FR"
"FaviconPath"="C:\\Program Files\\Ask.com\\favicon.ico"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}]
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}\Implemented Categories]
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}\Implemented Categories\{CF02C05C-6EA2-4094-B2F4-122ADD0FEAE2}]
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}\TrayMenuItem2]
@="LLogTray.dll,726"
"RegFormat"=dword:00000002
"ItemText"="LLogTray.dll,726"
"ItemImage"=""
"CommandLine"="LogiTray"
"CommandLineOEM"=""
"Order"=dword:000000c8
"Group"=dword:0000001e
"ByRegKey"=""
"ByAsking"=""
"ByOSVersion"=""
"ByCameraFeature"=dword:00000000
"ByCameraFunction"=dword:00000000
"ByCameraCategory"=dword:00000000
"ByPluggedInCameraFeature"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{346de098-61f9-4b42-89da-6dfba7091bb6}]
"VerCache"=hex:a4,e2,ca,fc,58,9b,ca,01,60,f1,a1,9f,6a,ef,ca,01,00,00,00,00,60,\
62,26,00,05,00,05,00,0a,00,00,00,05,00,05,00,0a,00,00,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624f4-c5dd-4e1d-bdd0-1e9c9b7799cc}]
"AppName"="BndCore.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}]
@="IBandooCore"
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}\TypeLib]
@="{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}]
@="IxpEmphszr"
[HKEY_CLASSES_ROOT\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}]
@="IwebAtrbts"
[HKEY_CLASSES_ROOT\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}]
@="IXmlCnfg"
[HKEY_CLASSES_ROOT\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486b-A045-B233BD0DA8FC}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486b-A045-B233BD0DA8FC}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000004
"Count"=dword:00000098
"Time"=hex:db,07,06,00,04,00,02,00,07,00,26,00,29,00,bf,02
"LoadTime"=dword:000000ba
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}]
@="IXtrnlBsc"
[HKEY_CLASSES_ROOT\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\EoRezo_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,80,20,01,00,00,00,00,b0,a0,b2,\
c6,9a,00,cb,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,45,00,6f,00,52,00,65,\
00,7a,00,6f,00,5c,00,45,00,6f,00,57,00,65,00,61,00,74,00,68,00,65,00,72,00,\
5c,00,49,00,74,00,73,00,54,00,56,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\CLSID\{72B3882F-453A-4633-AAC9-8C3DCED62AFF}]
@="Partages locaux et objet d'analyse des imprimantes"
[HKEY_CLASSES_ROOT\CLSID\{72B3882F-453A-4633-AAC9-8C3DCED62AFF}\InProcServer32]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,53,00,48,00,\
45,00,4c,00,4c,00,33,00,32,00,2e,00,64,00,6c,00,6c,00,00,00
"ThreadingModel"="Apartment"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}]
@="Ixtrnlmain"
[HKEY_CLASSES_ROOT\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B840956-64ED-11DE-B890-694956D89593}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B840956-64ED-11DE-B890-694956D89593}\iexplore]
"Type"=dword:00000002
"Count"=dword:00000003
"Time"=hex:da,07,07,00,05,00,09,00,0a,00,2d,00,2b,00,ec,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12}]
"AppName"="ExtensionsManager.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FF99715-3016-4381-84CE-E4E4C9673020}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FF99715-3016-4381-84CE-E4E4C9673020}\iexplore]
"Type"=dword:00000003
"Count"=dword:00000001
"Time"=hex:da,07,07,00,05,00,02,00,09,00,1d,00,22,00,71,02
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{8a96af9e-4074-43b7-bea3-87217bda74c8}]
"DisplayName"="Web Search"
"Deleted"=dword:00000000
"URL"="http://www.searchqu.com/web?src=ieb&q={searchTerms}"
"ShowSearchSuggestions"=dword:00000001
"SuggestionsURL_JSON"="http://www.searchqu.com/suggest.php?src ... s}&ft=json"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{8a96af9e-4074-43b7-bea3-87217bda74c8}]
"DisplayName"="Web Search"
"Deleted"=dword:00000000
@=""
"URL"="http://www.searchqu.com/web?src=ieb&q={searchTerms}"
"ShowSearchSuggestions"=dword:00000001
"SuggestionsURL_JSON"="http://www.searchqu.com/suggest.php?src ... s}&ft=json"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}]
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0]
@="BandooCore 1.0 Type Library"
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\0]
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\0\win32]
@="C:\\PROGRA~1\\Bandoo\\BndCore.exe"
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\FLAGS]
@="0"
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\HELPDIR]
@="C:\\PROGRA~1\\Bandoo"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}]
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0]
@="WMHelper 1.0 Type Library"
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\0]
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\0\win32]
@="C:\\Program Files\\Lphant Applications\\Lphant\\WMHelper.dll"
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\FLAGS]
@="0"
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\HELPDIR]
@="C:\\Program Files\\Lphant Applications\\Lphant\\"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}]
@="IReporter"
[HKEY_CLASSES_ROOT\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,20,b4,00,00,00,00,00,82,2f,8e,\
8a,8c,9b,ca,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,49,00,6d,00,69,00,6e,\
00,65,00,6e,00,74,00,5c,00,49,00,4d,00,42,00,6f,00,6f,00,73,00,74,00,65,00,\
72,00,5c,00,46,00,6c,00,76,00,45,00,6e,00,63,00,6f,00,64,00,65,00,72,00,2e,\
00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9c8a3ca5-889e-4554-beec-ec0876e4e96a}]
"AppName"="Bandoo.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:000003be
"Time"=hex:da,07,08,00,03,00,04,00,0b,00,10,00,0b,00,3c,03
"LoadTime"=dword:00000bd4
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
"VerCache"=hex:2e,16,f5,01,34,ab,ca,01,2e,16,f5,01,34,ab,ca,01,00,00,00,00,f8,\
8a,03,00,00,00,03,00,00,00,ef,03,00,00,03,00,00,00,ef,03,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:0000046b
"Time"=hex:db,07,06,00,04,00,02,00,07,00,26,00,29,00,7a,03
"LoadTime"=dword:00000001
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\AppID\{A7DDCBDE-5C86-415c-8A37-763AE183E7E4}]
@="WMHelper"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}]
@="IescrtHlpr"
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}\TypeLib]
@="{09C554C3-109B-483C-A06B-F14172F1A947}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}]
@="IEoBho"
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}\TypeLib]
@="{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}]
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0]
@="EoRezoBHO 1.0 Type Library"
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\0]
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\0\win32]
@="C:\\Program Files\\EoRezo\\EoAdv\\EoRezoBHO.dll"
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\FLAGS]
@="0"
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\HELPDIR]
@="C:\\Program Files\\EoRezo\\EoAdv\\"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:000000c5
"Time"=hex:da,07,0a,00,05,00,08,00,05,00,1e,00,29,00,22,02
"LoadTime"=dword:000000cd
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}]
"VerCache"=hex:52,c0,de,41,36,fc,ca,01,00,14,35,ac,db,62,ca,01,00,00,00,00,00,\
60,03,00,00,00,01,00,01,00,00,00,00,00,01,00,01,00,00,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SoftwareUpdate_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,00,1b,00,00,00,00,00,06,fa,63,\
57,b8,4c,ca,01,00,00,00,00,43,00,3a,00,5c,00,44,00,6f,00,63,00,75,00,6d,00,\
65,00,6e,00,74,00,73,00,20,00,61,00,6e,00,64,00,20,00,53,00,65,00,74,00,74,\
00,69,00,6e,00,67,00,73,00,5c,00,62,00,6f,00,6e,00,6a,00,6f,00,75,00,72,00,\
5c,00,41,00,70,00,70,00,6c,00,69,00,63,00,61,00,74,00,69,00,6f,00,6e,00,20,\
00,44,00,61,00,74,00,61,00,5c,00,65,00,6f,00,52,00,65,00,7a,00,6f,00,5c,00,\
53,00,6f,00,66,00,74,00,77,00,61,00,72,00,65,00,55,00,70,00,64,00,61,00,74,\
00,65,00,5c,00,53,00,6f,00,66,00,74,00,77,00,61,00,72,00,65,00,5c,00,69,00,\
74,00,73,00,54,00,56,00,5c,00,33,00,2e,00,30,00,2e,00,31,00,2e,00,39,00,5c,\
00,69,00,74,00,73,00,74,00,76,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}]
@="IRegmapDisp"
[HKEY_CLASSES_ROOT\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c7b76b90-3455-4ae6-a752-eac4d19689e5}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c7b76b90-3455-4ae6-a752-eac4d19689e5}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:000008c5
"Time"=hex:da,07,0a,00,05,00,08,00,05,00,1e,00,29,00,51,02
"Blocked"=dword:00000027
"LoadTime"=dword:0000037c
"LoadTimeCount"=dword:0000008a
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{c7b76b90-3455-4ae6-a752-eac4d19689e5}]
"VerCache"=hex:82,04,90,73,af,69,c9,01,00,ad,c5,74,90,49,c9,01,00,00,00,00,28,\
a7,00,00,00,00,03,00,01,00,00,00,00,00,03,00,01,00,00,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}]
@="IEHostWnd"
[HKEY_CLASSES_ROOT\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:00000251
"Time"=hex:da,07,0a,00,05,00,08,00,05,00,1e,00,2b,00,9c,00
"LoadTime"=dword:00000183
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}]
"VerCache"=hex:00,25,da,62,a9,a5,ca,01,00,25,da,62,a9,a5,ca,01,00,00,00,00,88,\
45,12,00,06,00,05,00,75,00,06,00,06,00,05,00,75,00,06,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA35911C-1B6A-4AF3-B803-913BA025C271}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA35911C-1B6A-4AF3-B803-913BA025C271}\iexplore]
"Type"=dword:00000003
"Count"=dword:00000001
"Time"=hex:da,07,06,00,06,00,13,00,0b,00,0d,00,0e,00,fa,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}]
@="IescrtBtn"
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}\TypeLib]
@="{09C554C3-109B-483C-A06B-F14172F1A947}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}]
@="IEvntCntr"
[HKEY_CLASSES_ROOT\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f9189560-573a-4fde-b055-ae7b0f4cf080}]
"AppName"="BandooUI.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore]
@="BandooCore Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore\CLSID]
@="{BB76A90B-2B4C-4378-8506-9A2B6E16943C}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore\CurVer]
@="BandooCore.BandooCore.1"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:0000003e
"Time"=hex:da,07,09,00,03,00,0f,00,0f,00,15,00,15,00,5b,03
"LoadTime"=dword:0000044e
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}]
"VerCache"=hex:00,66,3f,53,d5,28,cb,01,00,66,3f,53,d5,28,cb,01,00,00,00,00,58,\
0f,02,00,01,00,02,00,29,00,35,0a,01,00,02,00,29,00,35,0a,0a,0c,00,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}]
@="_IBandooCoreEvents"
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}\ProxyStubClsid]
@="{00020420-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}\ProxyStubClsid32]
@="{00020420-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}\TypeLib]
@="{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Conduit]
[HKEY_CURRENT_USER\Software\Conduit\Communicator]
[HKEY_CURRENT_USER\Software\Conduit\Communicator\RegisteredSources]
"CT2032792"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels]
"LastCheckTime"=dword:4c58187e
"Interval"=dword:0000003c
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496665]
"LastUpdateTime"="1229888024"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496665\Feeds]
"492535"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496680]
"LastUpdateTime"="1229892424"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496680\Feeds]
"492550"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496682]
"LastUpdateTime"="1246634230"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496682\Feeds]
"492552"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\499277]
"LastUpdateTime"="1246634529"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\499277\Feeds]
"495147"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\492535]
"Url"="http://alert.services.conduit.com/Alert ... dId=492535"
"Title"="iminent-fr Alerts"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\492550]
"Url"="http://alert.services.conduit.com/Alert ... dId=492550"
"Title"="iminent-pt Alerts"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\492552]
"Url"="http://alert.services.conduit.com/Alert ... dId=492552"
"Title"="iminent-es Alerts"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\495147]
"Url"="http://alert.services.conduit.com/Alert ... dId=495147"
"Title"="IMBooster News"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Sources]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Sources\FF_TB_CT2032792]
"499277"=dword:00000000
"496665"=dword:00000000
"496682"=dword:00000000
"496680"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\RegisteredSources]
"FF_TB_CT2032792"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Settings]
"UserID"="32D1B41D-B2CB-4926-A404-412580FC4000"
"FirstTimeStamp"=dword:4b596505
"UpdateAllFeedsLastTime"=dword:4c58197d
"LoginMessageLastCheckTime"=dword:4c59421d
"AutoUpdateLastTime"=dword:4c57bab9
"LoginMessageIntervalInMinutes"=dword:000005a0
"LoginMessageLastUpdateTime"="1276093853"
"ShowMessageAfterUserCloseInterval"=dword:0000012c
"MessageAppearTime"=dword:00000014
"DefaultShowIconInSystemTray"="FALSE"
"AutoUpdateIntervalInHours"=dword:000001f8
"AutoUpdateServerName"="http://alert.storage.conduit.com"
"AutoUpdateServerVersion"="1.0.0.0"
"AlertWindowLastUserCloseTime"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Settings\Locales]
"LP_CurrentUILocale"="en"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Settings\Locales\en]
"LP_LastUpdateTime"="1280533307"
"LP_LastCheckTime"=dword:4c535949
"LP_ReloadIntervalInHours"=dword:000000a8
[HKEY_CURRENT_USER\Software\Conduit\Repository]
[HKEY_CURRENT_USER\Software\Conduit\Repository\RegisteredSources]
[HKEY_CURRENT_USER\Software\Conduit\Toolbar]
[HKEY_CURRENT_USER\Software\Conduit\Toolbar\EmailNotifier]
[HKEY_CURRENT_USER\Software\Conduit\Toolbar\EmailNotifier\SourcesLastCheckTimes]
"CT2032792"=dword:4c5942e4
[HKEY_CURRENT_USER\Software\Conduit\Toolbar\RegisteredSources]
"CT2032792"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Conduit]
[HKEY_LOCAL_MACHINE\Software\Conduit\AppPaths]
[HKEY_LOCAL_MACHINE\Software\Conduit\AppPaths\babylon.exe]
"AppPath"="C:\\Program Files\\Babylon\\Babylon-Pro\\Babylon.exe"
[HKEY_LOCAL_MACHINE\Software\Conduit\Community Alerts]
"Path"="C:\\Program Files\\Conduit\\Community Alerts\\Alert0.dll"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Iminent]
[HKEY_CURRENT_USER\Software\Iminent\1]
[HKEY_CURRENT_USER\Software\Iminent\1\Invitations]
"SendCount"=dword:00000000
"LastInvitationDate"="25/02/2010 00:00:00"
[HKEY_CURRENT_USER\Software\Iminent\Members]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036\11d7568f-2919-4c92-a11e-14c8a69fe7e6]
"ScheduleViewedAt"="04/05/2010 22:17:19"
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036\5afd7c4b-1766-4ab3-99b8-51810fe9566a]
"ScheduleViewedAt"="21/03/2010 17:50:02"
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036\fec1396d-f5c5-484c-be04-b6d22ad8a44d]
"ScheduleViewedAt"="31/01/2010 11:55:33"
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7]
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites]
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036]
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036\11d7568f-2919-4c92-a11e-14c8a69fe7e6]
"ScheduleViewedAt"="12/07/2010 23:43:21"
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036\5afd7c4b-1766-4ab3-99b8-51810fe9566a]
"ScheduleViewedAt"="12/07/2010 23:43:16"
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036\d65e0698-44b4-45e0-ad85-d24cf724918d]
"ScheduleViewedAt"="12/07/2010 23:43:27"
[HKEY_CURRENT_USER\Software\Iminent\Notifier]
"Default Search"=dword:00000002
"IminentStartup"=dword:00000001
"IMBooster Startup2"=dword:00000001
"User decision changed"=dword:00000001
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Iminent]
"AppInstanceUid"="5667d8c1-da85-4a28-b021-c32e212ff98a"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\ItsLabel]
[HKEY_CURRENT_USER\Software\ItsLabel\ItsTV]
"XmlVersion"="3.2"
"GUID"="4575E2BF-4F52-490C-AFBA-3493B79971CB"
"ElapsedTime"=dword:00000000
"LastDate"=dword:4add7c39
"ck"=dword:00000001
"Lang"="fr"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\SearchquMediabarTb]
"Folder"="C:\\PROGRA~1\\WI9130~1\\ToolBar"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Trymedia Systems]
[HKEY_LOCAL_MACHINE\Software\Trymedia Systems\ActiveMARK Software]
[HKEY_LOCAL_MACHINE\Software\Trymedia Systems\ActiveMARK Software\FB8DB082E7EEC9B969E29443F52D8BF9]
"path"="C:\\Program Files\\Activision Value\\Monster Garage\\MonsterGarage.exe"
"tracking"=hex:fb,f7,65,03,76,36,86,cb,10,c0,92,3f,59,fd,2f,aa
"affiliate"=hex:74,5f,32,35,6f,61,5f,66,72,63,61,00,00,00,00,00
"currency"=hex:45,55,52,00,00,00
"price"=hex:00,00,00,16,99
"timestamp"=hex:12,13,09,94,28
"installation_time"="2008/06/10@13:11:25"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore.1]
@="BandooCore Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore.1\CLSID]
@="{BB76A90B-2B4C-4378-8506-9A2B6E16943C}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr]
@="ResourcesMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr\CLSID]
@="{27F69C85-64E1-43CE-98B5-3C9F22FB408E}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr\CurVer]
@="BandooCore.ResourcesMngr.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr.1]
@="ResourcesMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr.1\CLSID]
@="{27F69C85-64E1-43CE-98B5-3C9F22FB408E}"
Puis le rapport d' hijackthis :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:44:27, on 06/06/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\MultiKeyboard Driver\KbdDrv.exe
C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Documents and Settings\bonjour\Mes documents\Downloads\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896" onclick="window.open(this.href);return false;
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\RunServices: [djlqou] C:\WINDOWS\system32\djlqou.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard Driver\KbdDrv.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard Driver\KbdDrv.exe (User 'Default user')
O4 - Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard Driver\KbdDrv.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C" onclick="window.open(this.href);return false;:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open in new background tab - res://C" onclick="window.open(this.href);return false;:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/229?0cd1d85aed644678a9cc05ecfc16ebf2
O8 - Extra context menu item: Open in new foreground tab - res://C" onclick="window.open(this.href);return false;:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/230?0cd1d85aed644678a9cc05ecfc16ebf2
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZI ... b56649.cab" onclick="window.open(this.href);return false;
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab" onclick="window.open(this.href);return false;
O20 - Winlogon Notify: iifcdab - iifcdab.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe (file missing)
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (file missing)
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Service Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O24 - Desktop Component 0: (no name) - http://co117w.col117.mail.live.com/mail ... 67c9d08bc9" onclick="window.open(this.href);return false;
--
End of file - 7834 bytes
J'ai donc fait tout ce que vous m'aviez recommandé.
Pour MalwareByte's Anti-Malware, il ne me trouve rien de suspect.
Je n'arrive toujours pas à enlever avast même avec l'utilitaire de désinstallation et toujours pas avec hijackthis. J'ai fais aussi un nettoyage avec AD-Remover, désinstaller "bonjour" ect..
Ensuite, voici le rapport de zhpdiag (il est long didonc) ^^ :
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\NetworkCrawler\Objects\WorkgroupCrawler]
"CLSID"="{72b3882f-453a-4633-aac9-8c3dced62aff}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\AppID\bandoocore.exe]
"AppID"="{1301A8A5-3DFB-4731-A162-B357D00C9644}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr]
@="SettingsMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr\CLSID]
@="{B543EF05-9758-464E-9F37-4C28525B4A4C}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr\CurVer]
@="BandooCore.SettingsMngr.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr.1]
@="SettingsMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.settingsmngr.1\CLSID]
@="{B543EF05-9758-464E-9F37-4C28525B4A4C}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr]
@="StatisticMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr\CLSID]
@="{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr\CurVer]
@="BandooCore.StatisticMngr.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr.1]
@="StatisticMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.statisticmngr.1\CLSID]
@="{C3AB94A4-BFD0-4BBA-A331-DE504F07D2DB}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent]
@="LinkToContent Class"
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent\CLSID]
@="{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}"
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent\CurVer]
@="IminentLinkToContent.LinkToContent.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent.1]
@="LinkToContent Class"
[HKEY_LOCAL_MACHINE\Software\Classes\IminentLinktocontent.linktocontent.1\CLSID]
@="{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}\iexplore]
"Type"=dword:00000000
"Flags"=dword:00000000
"Count"=dword:00000002
"Time"=hex:da,07,06,00,01,00,1c,00,07,00,0b,00,1b,00,0f,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}]
@="IGetResourceCallback"
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{06DE5702-44CF-4B79-B4EF-3DDF653358F5}\TypeLib]
@="{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}]
"DisplayName"="Search the web (Babylon)"
"URL"="http://search.babylon.com/web/{searchTe ... wsersearch"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\AppID\{1301a8a5-3dfb-4731-a162-b357d00c9644}]
@="BandooCore"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\EoEngine_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,f0,ff,00,00,00,00,00,12,c1,b3,\
e8,c3,6a,c9,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,45,00,6f,00,52,00,65,\
00,7a,00,6f,00,5c,00,45,00,6f,00,57,00,65,00,61,00,74,00,68,00,65,00,72,00,\
5c,00,75,00,6e,00,69,00,6e,00,73,00,30,00,30,00,31,00,2e,00,65,00,78,00,65,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}]
"DisplayName"="Ask Search"
"URL"="http://websearch.ask.com/redirect?clien ... cale=fr_FR"
"FaviconPath"="C:\\Program Files\\Ask.com\\favicon.ico"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}]
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}\Implemented Categories]
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}\Implemented Categories\{CF02C05C-6EA2-4094-B2F4-122ADD0FEAE2}]
[HKEY_CLASSES_ROOT\CLSID\{1a03f196-9617-4ca0-842b-a83ceecb022b}\TrayMenuItem2]
@="LLogTray.dll,726"
"RegFormat"=dword:00000002
"ItemText"="LLogTray.dll,726"
"ItemImage"=""
"CommandLine"="LogiTray"
"CommandLineOEM"=""
"Order"=dword:000000c8
"Group"=dword:0000001e
"ByRegKey"=""
"ByAsking"=""
"ByOSVersion"=""
"ByCameraFeature"=dword:00000000
"ByCameraFunction"=dword:00000000
"ByCameraCategory"=dword:00000000
"ByPluggedInCameraFeature"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{346de098-61f9-4b42-89da-6dfba7091bb6}]
"VerCache"=hex:a4,e2,ca,fc,58,9b,ca,01,60,f1,a1,9f,6a,ef,ca,01,00,00,00,00,60,\
62,26,00,05,00,05,00,0a,00,00,00,05,00,05,00,0a,00,00,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{424624f4-c5dd-4e1d-bdd0-1e9c9b7799cc}]
"AppName"="BndCore.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}]
@="IBandooCore"
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{477f210a-2a86-4666-9c4b-1189634d2c84}\TypeLib]
@="{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}]
@="IxpEmphszr"
[HKEY_CLASSES_ROOT\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{542FA950-C57A-4E17-B3E1-D935DFE15DEE}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}]
@="IwebAtrbts"
[HKEY_CLASSES_ROOT\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{5B035F86-41B5-40F1-AAAD-3D219F30244E}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}]
@="IXmlCnfg"
[HKEY_CLASSES_ROOT\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{6365AC7B-9920-4D8B-AF5D-3BDFEAC340A8}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486b-A045-B233BD0DA8FC}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64182481-4F71-486b-A045-B233BD0DA8FC}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000004
"Count"=dword:00000098
"Time"=hex:db,07,06,00,04,00,02,00,07,00,26,00,29,00,bf,02
"LoadTime"=dword:000000ba
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}]
@="IXtrnlBsc"
[HKEY_CLASSES_ROOT\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{6A934270-717F-4BC3-BA59-BC9BED47A8D2}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\EoRezo_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,80,20,01,00,00,00,00,b0,a0,b2,\
c6,9a,00,cb,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,45,00,6f,00,52,00,65,\
00,7a,00,6f,00,5c,00,45,00,6f,00,57,00,65,00,61,00,74,00,68,00,65,00,72,00,\
5c,00,49,00,74,00,73,00,54,00,56,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\CLSID\{72B3882F-453A-4633-AAC9-8C3DCED62AFF}]
@="Partages locaux et objet d'analyse des imprimantes"
[HKEY_CLASSES_ROOT\CLSID\{72B3882F-453A-4633-AAC9-8C3DCED62AFF}\InProcServer32]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,53,00,48,00,\
45,00,4c,00,4c,00,33,00,32,00,2e,00,64,00,6c,00,6c,00,00,00
"ThreadingModel"="Apartment"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}]
@="Ixtrnlmain"
[HKEY_CLASSES_ROOT\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{79B13431-CCAC-4097-8889-D0289E5E924F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B840956-64ED-11DE-B890-694956D89593}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7B840956-64ED-11DE-B890-694956D89593}\iexplore]
"Type"=dword:00000002
"Count"=dword:00000003
"Time"=hex:da,07,07,00,05,00,09,00,0a,00,2d,00,2b,00,ec,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7f000001-db8e-f89c-2fec-49bf726f8c12}]
"AppName"="ExtensionsManager.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FF99715-3016-4381-84CE-E4E4C9673020}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7FF99715-3016-4381-84CE-E4E4C9673020}\iexplore]
"Type"=dword:00000003
"Count"=dword:00000001
"Time"=hex:da,07,07,00,05,00,02,00,09,00,1d,00,22,00,71,02
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{8a96af9e-4074-43b7-bea3-87217bda74c8}]
"DisplayName"="Web Search"
"Deleted"=dword:00000000
"URL"="http://www.searchqu.com/web?src=ieb&q={searchTerms}"
"ShowSearchSuggestions"=dword:00000001
"SuggestionsURL_JSON"="http://www.searchqu.com/suggest.php?src ... s}&ft=json"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{8a96af9e-4074-43b7-bea3-87217bda74c8}]
"DisplayName"="Web Search"
"Deleted"=dword:00000000
@=""
"URL"="http://www.searchqu.com/web?src=ieb&q={searchTerms}"
"ShowSearchSuggestions"=dword:00000001
"SuggestionsURL_JSON"="http://www.searchqu.com/suggest.php?src ... s}&ft=json"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}]
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0]
@="BandooCore 1.0 Type Library"
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\0]
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\0\win32]
@="C:\\PROGRA~1\\Bandoo\\BndCore.exe"
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\FLAGS]
@="0"
[HKEY_CLASSES_ROOT\TypeLib\{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}\1.0\HELPDIR]
@="C:\\PROGRA~1\\Bandoo"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}]
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0]
@="WMHelper 1.0 Type Library"
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\0]
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\0\win32]
@="C:\\Program Files\\Lphant Applications\\Lphant\\WMHelper.dll"
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\FLAGS]
@="0"
[HKEY_CLASSES_ROOT\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\HELPDIR]
@="C:\\Program Files\\Lphant Applications\\Lphant\\"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}]
@="IReporter"
[HKEY_CLASSES_ROOT\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{981334CB-7B8B-431F-B86D-67B7426B125B}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,20,b4,00,00,00,00,00,82,2f,8e,\
8a,8c,9b,ca,01,00,00,00,00,43,00,3a,00,5c,00,50,00,72,00,6f,00,67,00,72,00,\
61,00,6d,00,20,00,46,00,69,00,6c,00,65,00,73,00,5c,00,49,00,6d,00,69,00,6e,\
00,65,00,6e,00,74,00,5c,00,49,00,4d,00,42,00,6f,00,6f,00,73,00,74,00,65,00,\
72,00,5c,00,46,00,6c,00,76,00,45,00,6e,00,63,00,6f,00,64,00,65,00,72,00,2e,\
00,65,00,78,00,65,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9c8a3ca5-889e-4554-beec-ec0876e4e96a}]
"AppName"="Bandoo.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:000003be
"Time"=hex:da,07,08,00,03,00,04,00,0b,00,10,00,0b,00,3c,03
"LoadTime"=dword:00000bd4
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
"VerCache"=hex:2e,16,f5,01,34,ab,ca,01,2e,16,f5,01,34,ab,ca,01,00,00,00,00,f8,\
8a,03,00,00,00,03,00,00,00,ef,03,00,00,03,00,00,00,ef,03,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:0000046b
"Time"=hex:db,07,06,00,04,00,02,00,07,00,26,00,29,00,7a,03
"LoadTime"=dword:00000001
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\AppID\{A7DDCBDE-5C86-415c-8A37-763AE183E7E4}]
@="WMHelper"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}]
@="IescrtHlpr"
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{A9379648-F6EB-4F65-A624-1C10411A15D0}\TypeLib]
@="{09C554C3-109B-483C-A06B-F14172F1A947}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}]
@="IEoBho"
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{b0d071a1-36b3-4757-a126-14c89c56013a}\TypeLib]
@="{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}]
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0]
@="EoRezoBHO 1.0 Type Library"
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\0]
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\0\win32]
@="C:\\Program Files\\EoRezo\\EoAdv\\EoRezoBHO.dll"
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\FLAGS]
@="0"
[HKEY_CLASSES_ROOT\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}\1.0\HELPDIR]
@="C:\\Program Files\\EoRezo\\EoAdv\\"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:000000c5
"Time"=hex:da,07,0a,00,05,00,08,00,05,00,1e,00,29,00,22,02
"LoadTime"=dword:000000cd
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C10DC1F4-CCDF-4224-A24D-B23AFC3573C8}]
"VerCache"=hex:52,c0,de,41,36,fc,ca,01,00,14,35,ac,db,62,ca,01,00,00,00,00,00,\
60,03,00,00,00,01,00,01,00,00,00,00,00,01,00,01,00,00,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SoftwareUpdate_is1]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,00,1b,00,00,00,00,00,06,fa,63,\
57,b8,4c,ca,01,00,00,00,00,43,00,3a,00,5c,00,44,00,6f,00,63,00,75,00,6d,00,\
65,00,6e,00,74,00,73,00,20,00,61,00,6e,00,64,00,20,00,53,00,65,00,74,00,74,\
00,69,00,6e,00,67,00,73,00,5c,00,62,00,6f,00,6e,00,6a,00,6f,00,75,00,72,00,\
5c,00,41,00,70,00,70,00,6c,00,69,00,63,00,61,00,74,00,69,00,6f,00,6e,00,20,\
00,44,00,61,00,74,00,61,00,5c,00,65,00,6f,00,52,00,65,00,7a,00,6f,00,5c,00,\
53,00,6f,00,66,00,74,00,77,00,61,00,72,00,65,00,55,00,70,00,64,00,61,00,74,\
00,65,00,5c,00,53,00,6f,00,66,00,74,00,77,00,61,00,72,00,65,00,5c,00,69,00,\
74,00,73,00,54,00,56,00,5c,00,33,00,2e,00,30,00,2e,00,31,00,2e,00,39,00,5c,\
00,69,00,74,00,73,00,74,00,76,00,2e,00,65,00,78,00,65,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00
"Changed"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}]
@="IRegmapDisp"
[HKEY_CLASSES_ROOT\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{C1C2FC43-F042-4F17-AEDB-C5ABF3B42E4B}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c7b76b90-3455-4ae6-a752-eac4d19689e5}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{c7b76b90-3455-4ae6-a752-eac4d19689e5}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:000008c5
"Time"=hex:da,07,0a,00,05,00,08,00,05,00,1e,00,29,00,51,02
"Blocked"=dword:00000027
"LoadTime"=dword:0000037c
"LoadTimeCount"=dword:0000008a
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{c7b76b90-3455-4ae6-a752-eac4d19689e5}]
"VerCache"=hex:82,04,90,73,af,69,c9,01,00,ad,c5,74,90,49,c9,01,00,00,00,00,28,\
a7,00,00,00,00,03,00,01,00,00,00,00,00,03,00,01,00,00,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}]
@="IEHostWnd"
[HKEY_CLASSES_ROOT\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:00000251
"Time"=hex:da,07,0a,00,05,00,08,00,05,00,1e,00,2b,00,9c,00
"LoadTime"=dword:00000183
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}]
"VerCache"=hex:00,25,da,62,a9,a5,ca,01,00,25,da,62,a9,a5,ca,01,00,00,00,00,88,\
45,12,00,06,00,05,00,75,00,06,00,06,00,05,00,75,00,06,00,09,04,00,00
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA35911C-1B6A-4AF3-B803-913BA025C271}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA35911C-1B6A-4AF3-B803-913BA025C271}\iexplore]
"Type"=dword:00000003
"Count"=dword:00000001
"Time"=hex:da,07,06,00,06,00,13,00,0b,00,0d,00,0e,00,fa,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}]
@="IescrtBtn"
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2}\TypeLib]
@="{09C554C3-109B-483C-A06B-F14172F1A947}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}]
@="IEvntCntr"
[HKEY_CLASSES_ROOT\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}\ProxyStubClsid]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{F7EC6286-297C-4981-9DCC-FD7F57BC24C9}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f9189560-573a-4fde-b055-ae7b0f4cf080}]
"AppName"="BandooUI.exe"
"AppPath"="C:\\Program Files\\Bandoo"
"Policy"=dword:00000003
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore]
@="BandooCore Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore\CLSID]
@="{BB76A90B-2B4C-4378-8506-9A2B6E16943C}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore\CurVer]
@="BandooCore.BandooCore.1"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}\iexplore]
"Type"=dword:00000003
"Flags"=dword:00000000
"Count"=dword:0000003e
"Time"=hex:da,07,09,00,03,00,0f,00,0f,00,15,00,15,00,5b,03
"LoadTime"=dword:0000044e
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}]
"VerCache"=hex:00,66,3f,53,d5,28,cb,01,00,66,3f,53,d5,28,cb,01,00,00,00,00,58,\
0f,02,00,01,00,02,00,29,00,35,0a,01,00,02,00,29,00,35,0a,0a,0c,00,00
Windows Registry Editor Version 5.00
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}]
@="_IBandooCoreEvents"
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}\ProxyStubClsid]
@="{00020420-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}\ProxyStubClsid32]
@="{00020420-0000-0000-C000-000000000046}"
[HKEY_CLASSES_ROOT\Interface\{ff871e51-2655-4d06-aed5-745962a96b32}\TypeLib]
@="{8F5F1CB6-EA9E-40AF-A5CA-C7FD63CC1971}"
"Version"="1.0"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Conduit]
[HKEY_CURRENT_USER\Software\Conduit\Communicator]
[HKEY_CURRENT_USER\Software\Conduit\Communicator\RegisteredSources]
"CT2032792"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels]
"LastCheckTime"=dword:4c58187e
"Interval"=dword:0000003c
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496665]
"LastUpdateTime"="1229888024"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496665\Feeds]
"492535"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496680]
"LastUpdateTime"="1229892424"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496680\Feeds]
"492550"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496682]
"LastUpdateTime"="1246634230"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\496682\Feeds]
"492552"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\499277]
"LastUpdateTime"="1246634529"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Channels\499277\Feeds]
"495147"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\492535]
"Url"="http://alert.services.conduit.com/Alert ... dId=492535"
"Title"="iminent-fr Alerts"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\492550]
"Url"="http://alert.services.conduit.com/Alert ... dId=492550"
"Title"="iminent-pt Alerts"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\492552]
"Url"="http://alert.services.conduit.com/Alert ... dId=492552"
"Title"="iminent-es Alerts"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Feeds\495147]
"Url"="http://alert.services.conduit.com/Alert ... dId=495147"
"Title"="IMBooster News"
"UpdateFeedInterval"=dword:000000f0
"LastCheckTime"=dword:4c58187f
"IsFeedModified"="FALSE"
"DownloadErrorCount"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Sources]
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Data\Sources\FF_TB_CT2032792]
"499277"=dword:00000000
"496665"=dword:00000000
"496682"=dword:00000000
"496680"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\RegisteredSources]
"FF_TB_CT2032792"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Settings]
"UserID"="32D1B41D-B2CB-4926-A404-412580FC4000"
"FirstTimeStamp"=dword:4b596505
"UpdateAllFeedsLastTime"=dword:4c58197d
"LoginMessageLastCheckTime"=dword:4c59421d
"AutoUpdateLastTime"=dword:4c57bab9
"LoginMessageIntervalInMinutes"=dword:000005a0
"LoginMessageLastUpdateTime"="1276093853"
"ShowMessageAfterUserCloseInterval"=dword:0000012c
"MessageAppearTime"=dword:00000014
"DefaultShowIconInSystemTray"="FALSE"
"AutoUpdateIntervalInHours"=dword:000001f8
"AutoUpdateServerName"="http://alert.storage.conduit.com"
"AutoUpdateServerVersion"="1.0.0.0"
"AlertWindowLastUserCloseTime"=dword:00000000
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Settings\Locales]
"LP_CurrentUILocale"="en"
[HKEY_CURRENT_USER\Software\Conduit\Community Alerts\Settings\Locales\en]
"LP_LastUpdateTime"="1280533307"
"LP_LastCheckTime"=dword:4c535949
"LP_ReloadIntervalInHours"=dword:000000a8
[HKEY_CURRENT_USER\Software\Conduit\Repository]
[HKEY_CURRENT_USER\Software\Conduit\Repository\RegisteredSources]
[HKEY_CURRENT_USER\Software\Conduit\Toolbar]
[HKEY_CURRENT_USER\Software\Conduit\Toolbar\EmailNotifier]
[HKEY_CURRENT_USER\Software\Conduit\Toolbar\EmailNotifier\SourcesLastCheckTimes]
"CT2032792"=dword:4c5942e4
[HKEY_CURRENT_USER\Software\Conduit\Toolbar\RegisteredSources]
"CT2032792"=dword:00000000
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Conduit]
[HKEY_LOCAL_MACHINE\Software\Conduit\AppPaths]
[HKEY_LOCAL_MACHINE\Software\Conduit\AppPaths\babylon.exe]
"AppPath"="C:\\Program Files\\Babylon\\Babylon-Pro\\Babylon.exe"
[HKEY_LOCAL_MACHINE\Software\Conduit\Community Alerts]
"Path"="C:\\Program Files\\Conduit\\Community Alerts\\Alert0.dll"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Iminent]
[HKEY_CURRENT_USER\Software\Iminent\1]
[HKEY_CURRENT_USER\Software\Iminent\1\Invitations]
"SendCount"=dword:00000000
"LastInvitationDate"="25/02/2010 00:00:00"
[HKEY_CURRENT_USER\Software\Iminent\Members]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036]
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036\11d7568f-2919-4c92-a11e-14c8a69fe7e6]
"ScheduleViewedAt"="04/05/2010 22:17:19"
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036\5afd7c4b-1766-4ab3-99b8-51810fe9566a]
"ScheduleViewedAt"="21/03/2010 17:50:02"
[HKEY_CURRENT_USER\Software\Iminent\Members\4547fe59-2835-43c1-89c4-631141e630be\Composites\1036\fec1396d-f5c5-484c-be04-b6d22ad8a44d]
"ScheduleViewedAt"="31/01/2010 11:55:33"
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7]
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites]
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036]
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036\11d7568f-2919-4c92-a11e-14c8a69fe7e6]
"ScheduleViewedAt"="12/07/2010 23:43:21"
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036\5afd7c4b-1766-4ab3-99b8-51810fe9566a]
"ScheduleViewedAt"="12/07/2010 23:43:16"
[HKEY_CURRENT_USER\Software\Iminent\Members\9e7bb114-a2e5-4a46-9e88-ff4c9e99a0d7\Composites\1036\d65e0698-44b4-45e0-ad85-d24cf724918d]
"ScheduleViewedAt"="12/07/2010 23:43:27"
[HKEY_CURRENT_USER\Software\Iminent\Notifier]
"Default Search"=dword:00000002
"IminentStartup"=dword:00000001
"IMBooster Startup2"=dword:00000001
"User decision changed"=dword:00000001
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Iminent]
"AppInstanceUid"="5667d8c1-da85-4a28-b021-c32e212ff98a"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\ItsLabel]
[HKEY_CURRENT_USER\Software\ItsLabel\ItsTV]
"XmlVersion"="3.2"
"GUID"="4575E2BF-4F52-490C-AFBA-3493B79971CB"
"ElapsedTime"=dword:00000000
"LastDate"=dword:4add7c39
"ck"=dword:00000001
"Lang"="fr"
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\SearchquMediabarTb]
"Folder"="C:\\PROGRA~1\\WI9130~1\\ToolBar"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Trymedia Systems]
[HKEY_LOCAL_MACHINE\Software\Trymedia Systems\ActiveMARK Software]
[HKEY_LOCAL_MACHINE\Software\Trymedia Systems\ActiveMARK Software\FB8DB082E7EEC9B969E29443F52D8BF9]
"path"="C:\\Program Files\\Activision Value\\Monster Garage\\MonsterGarage.exe"
"tracking"=hex:fb,f7,65,03,76,36,86,cb,10,c0,92,3f,59,fd,2f,aa
"affiliate"=hex:74,5f,32,35,6f,61,5f,66,72,63,61,00,00,00,00,00
"currency"=hex:45,55,52,00,00,00
"price"=hex:00,00,00,16,99
"timestamp"=hex:12,13,09,94,28
"installation_time"="2008/06/10@13:11:25"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore.1]
@="BandooCore Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.bandoocore.1\CLSID]
@="{BB76A90B-2B4C-4378-8506-9A2B6E16943C}"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr]
@="ResourcesMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr\CLSID]
@="{27F69C85-64E1-43CE-98B5-3C9F22FB408E}"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr\CurVer]
@="BandooCore.ResourcesMngr.1"
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr.1]
@="ResourcesMngr Class"
[HKEY_LOCAL_MACHINE\Software\Classes\bandoocore.resourcesmngr.1\CLSID]
@="{27F69C85-64E1-43CE-98B5-3C9F22FB408E}"
Puis le rapport d' hijackthis :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:44:27, on 06/06/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\MultiKeyboard Driver\KbdDrv.exe
C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Documents and Settings\bonjour\Mes documents\Downloads\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896" onclick="window.open(this.href);return false;
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/" onclick="window.open(this.href);return false;
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54896" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/" onclick="window.open(this.href);return false;
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\RunServices: [djlqou] C:\WINDOWS\system32\djlqou.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-18 Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard Driver\KbdDrv.exe (User 'SYSTEM')
O4 - .DEFAULT Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard Driver\KbdDrv.exe (User 'Default user')
O4 - Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard Driver\KbdDrv.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C" onclick="window.open(this.href);return false;:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open in new background tab - res://C" onclick="window.open(this.href);return false;:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/229?0cd1d85aed644678a9cc05ecfc16ebf2
O8 - Extra context menu item: Open in new foreground tab - res://C" onclick="window.open(this.href);return false;:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/230?0cd1d85aed644678a9cc05ecfc16ebf2
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZI ... b56649.cab" onclick="window.open(this.href);return false;
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab" onclick="window.open(this.href);return false;
O20 - Winlogon Notify: iifcdab - iifcdab.dll (file missing)
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe (file missing)
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (file missing)
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Service Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O24 - Desktop Component 0: (no name) - http://co117w.col117.mail.live.com/mail ... 67c9d08bc9" onclick="window.open(this.href);return false;
--
End of file - 7834 bytes
- Nash
- Administrateur du site
- Messages : 4403
- Enregistré le : sam. 6 nov. 2010 14:19
- Localisation : 89
Re: Mon pc rame à fond
re ca va pas mieux ?
d'apres ton dernier rapport , tu n'as plus d'infections (deja ca
) , les toolbars ont bien ete virées et les clés obsoletes aussi !
peut etre un probleme materiel ?? voir pour tester memoire ?
deja vire avast avec ca , ca devrait le faire !
http://qnw7xg.1fichier.com/" onclick="window.open(this.href);return false;
si ca le vire pas , et l'utilitaire non plus , alors la !! je sais plus lol
ps: tu as bien fait un nettoyage avec ATF ? as tu beaucoup de place sur ton DD ? une defrag ?
tiens au courant
d'apres ton dernier rapport , tu n'as plus d'infections (deja ca

peut etre un probleme materiel ?? voir pour tester memoire ?
deja vire avast avec ca , ca devrait le faire !
http://qnw7xg.1fichier.com/" onclick="window.open(this.href);return false;
si ca le vire pas , et l'utilitaire non plus , alors la !! je sais plus lol
ps: tu as bien fait un nettoyage avec ATF ? as tu beaucoup de place sur ton DD ? une defrag ?
tiens au courant

• Ryzen 9 5900x
• B550 AORUS PRO
• RTX 3060ti phoenix
• thermaltake core p8 tg
• 1 x SSD 500GB PCIe4 M.2 SEA
• 32 G DDR4 3600 corsaire
• Corsaire 1000w full modulaire passive
• MasterLiquid ML240R RGB
•1 to stockage NVME.M2 PCIe
-
- Membre Officiel
- Messages : 155
- Enregistré le : dim. 5 juin 2011 18:01
- A remercié : 3 fois
- A été remercié : 2 fois
Re: Mon pc rame à fond
salut deja moi je rajouterai de la ram minimun un go
ensuite quand ton pc est formate il fonctionne mieux o u pas
pour voir quel logiciel fait buggue ton pc
essaye rstauration systeme
a tu tester des versions modifies de windows style trust
ensuite quand ton pc est formate il fonctionne mieux o u pas
pour voir quel logiciel fait buggue ton pc
essaye rstauration systeme
a tu tester des versions modifies de windows style trust
- Nash
- Administrateur du site
- Messages : 4403
- Enregistré le : sam. 6 nov. 2010 14:19
- Localisation : 89
Re: Mon pc rame à fond
oups oui quel con jai meme pas regardé sa config , je viens de voir qu'il etait sous xp lolllll ! oui 512 de ram un peu juste 


• Ryzen 9 5900x
• B550 AORUS PRO
• RTX 3060ti phoenix
• thermaltake core p8 tg
• 1 x SSD 500GB PCIe4 M.2 SEA
• 32 G DDR4 3600 corsaire
• Corsaire 1000w full modulaire passive
• MasterLiquid ML240R RGB
•1 to stockage NVME.M2 PCIe
-
- Membre Officiel
- Messages : 155
- Enregistré le : dim. 5 juin 2011 18:01
- A remercié : 3 fois
- A été remercié : 2 fois
Re: Mon pc rame à fond
a la base les pc etait livre sous xp avec peu de ram
sur les tours neuve que j ai eu sous xp mon premier geste etait de supprimer les logiciels inutiles au lancement et rajouter de la ram
et c est ce que je conseille a diamant ou une version optimise de xp
sur les tours neuve que j ai eu sous xp mon premier geste etait de supprimer les logiciels inutiles au lancement et rajouter de la ram
et c est ce que je conseille a diamant ou une version optimise de xp
Re: Mon pc rame à fond
Hello Diamant,
Bon... tu n'es pas infectée mais tu as un joli adware du nom de bandoo, à la base des émoticones, mais qui te rajoutent pleins de cochoncetés... (cf ton log avec toutes les lignes type bandoocore)
C'est peut être ça qui fait tout ramer ^^'
Essaye de désinstaller via CCleaner :
- Bandoo
- Windows Searchqu Toolbar.
J'ai remarqué que tu avais aussi eoRezo sur ton PC, tout plein de jolis widgets, mais bourrés de pub ^^''
(cf les lignes EoRezoBHO)
http://forum.telecharger.01net.com/tele ... ges-1.html
Avec l'aide de tout le monde (bienvenue à jacques et djoel en passant
), on va transformer ton mulet en cheval de course ! 
Bon... tu n'es pas infectée mais tu as un joli adware du nom de bandoo, à la base des émoticones, mais qui te rajoutent pleins de cochoncetés... (cf ton log avec toutes les lignes type bandoocore)
C'est peut être ça qui fait tout ramer ^^'
Essaye de désinstaller via CCleaner :
- Bandoo
- Windows Searchqu Toolbar.
J'ai remarqué que tu avais aussi eoRezo sur ton PC, tout plein de jolis widgets, mais bourrés de pub ^^''
(cf les lignes EoRezoBHO)
http://forum.telecharger.01net.com/tele ... ges-1.html
Avec l'aide de tout le monde (bienvenue à jacques et djoel en passant


- Nash
- Administrateur du site
- Messages : 4403
- Enregistré le : sam. 6 nov. 2010 14:19
- Localisation : 89
Re: Mon pc rame à fond
?? c justement le rapport de desinfection de zhpfix qu'il a posté je crois 
d'apres son dernier rapport hijackthis , il est vraiment clean je crois

d'apres son dernier rapport hijackthis , il est vraiment clean je crois


• Ryzen 9 5900x
• B550 AORUS PRO
• RTX 3060ti phoenix
• thermaltake core p8 tg
• 1 x SSD 500GB PCIe4 M.2 SEA
• 32 G DDR4 3600 corsaire
• Corsaire 1000w full modulaire passive
• MasterLiquid ML240R RGB
•1 to stockage NVME.M2 PCIe
Re: Mon pc rame à fond
Nash bonjour , je voudrais pas parraitre rabajoie , mais je pense pas que c'est avec un hijacthis ou un zhpdiag pas complet que l'on puisse dire que le pc est clean avec un zhpdiag COMPLET on y verrais plus claire sur le pc ??
Diamant si Nash le veut bien j'aimerais voir le rapport de zhpdiag pour être presque sur que plus de problémes , merci , désolé si je suis chiant !! lol !!
• Télécharge ZHPDiag (de Nicolas Coolman)
• Laisse toi guider lors de l'installation (pense à cocher la case pour créer un raccourci sur le Bureau)
• Il se lancera automatiquement à la fin de l'installation
• Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
• Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
• Héberge le rapport ZHPDiag.txt sur cjoint.com, car toujours trop long pour les forum !! puis copie/colle le lien fourni dans ta prochaine réponse sur le forum
Diamant si Nash le veut bien j'aimerais voir le rapport de zhpdiag pour être presque sur que plus de problémes , merci , désolé si je suis chiant !! lol !!
• Télécharge ZHPDiag (de Nicolas Coolman)
• Laisse toi guider lors de l'installation (pense à cocher la case pour créer un raccourci sur le Bureau)
• Il se lancera automatiquement à la fin de l'installation
• Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
• Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
• Héberge le rapport ZHPDiag.txt sur cjoint.com, car toujours trop long pour les forum !! puis copie/colle le lien fourni dans ta prochaine réponse sur le forum
Re: Mon pc rame à fond
Re tout le monde,
Alors donc d'abord pour répondre à "Nash" je n'arrive toujours pas à enlever avast meme avec le dernier utilitaire proposé il me dit carrément qu'il ne trouve pas avast lol je comprends rien; ensuite j'ai fait une defrag mais toujours pareil.
Ensuite pour répondre à "djoel" donc il faudrai que je rajoute de la ram?. J'ai pensée à le formater comme ça c'est plus simple mais je n'ai pas de cd d'installation
. Non je n'ai jamais testé de versions modifiés.
"tAran" je fais ça de suite. lol j'espère bien alors que vous allez réussir à me le transformer en cheval de course
Pas de problème jacques.gache je fais ça de suite également ^^
Alors donc d'abord pour répondre à "Nash" je n'arrive toujours pas à enlever avast meme avec le dernier utilitaire proposé il me dit carrément qu'il ne trouve pas avast lol je comprends rien; ensuite j'ai fait une defrag mais toujours pareil.
Ensuite pour répondre à "djoel" donc il faudrai que je rajoute de la ram?. J'ai pensée à le formater comme ça c'est plus simple mais je n'ai pas de cd d'installation

"tAran" je fais ça de suite. lol j'espère bien alors que vous allez réussir à me le transformer en cheval de course

Pas de problème jacques.gache je fais ça de suite également ^^
- Nash
- Administrateur du site
- Messages : 4403
- Enregistré le : sam. 6 nov. 2010 14:19
- Localisation : 89
Re: Mon pc rame à fond
bien sur que je veux bien lollll et non tu n'es pas chiant , toute aide est la bienvenue ....je suis loin d'etre expert en desinfectionDiamant si Nash le veut bien j'aimerais voir le rapport de zhpdiag pour être presque sur que plus de problémes , merci , désolé si je suis chiant !! lol !!

merci de ton aide

• Ryzen 9 5900x
• B550 AORUS PRO
• RTX 3060ti phoenix
• thermaltake core p8 tg
• 1 x SSD 500GB PCIe4 M.2 SEA
• 32 G DDR4 3600 corsaire
• Corsaire 1000w full modulaire passive
• MasterLiquid ML240R RGB
•1 to stockage NVME.M2 PCIe