Voila je colle
C:\Windows\System32\commo.dll.exe 23/11/2005,20:06:59 ---------------------------------------------------------
23/11/2005,20:06:59 [INIT] The AVGuard Service is starting.
23/11/2005,20:07:00 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
23/11/2005,20:07:01 [INFO] Start Filter Device.
23/11/2005,20:07:01 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.14.17
23/11/2005,20:07:01 AVGuard has been started successfully!
23/11/2005,20:07:03 [LOGON] Connection request by remote computer. Establishing secure communication channel.
23/11/2005,20:07:03 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaa26f732.
23/11/2005,20:08:43 [INFO] Stop Filter Device.
23/11/2005,20:08:44 AVGuard service has been stopped!
23/11/2005,20:08:49 ---------------------------------------------------------
23/11/2005,20:08:49 [INIT] The AVGuard Service is starting.
23/11/2005,20:08:49 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
23/11/2005,20:08:50 [INFO] Start Filter Device.
23/11/2005,20:08:50 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
23/11/2005,20:08:50 AVGuard has been started successfully!
23/11/2005,20:09:29 [INFO] Stop Filter Device.
23/11/2005,20:09:30 AVGuard service has been stopped!
23/11/2005,20:10:45 ---------------------------------------------------------
23/11/2005,20:10:45 [INIT] The AVGuard Service is starting.
23/11/2005,20:10:46 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
23/11/2005,20:10:48 [INFO] Start Filter Device.
23/11/2005,20:10:48 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
23/11/2005,20:10:48 AVGuard has been started successfully!
23/11/2005,20:10:49 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:10:49 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:11:29 [LOGON] Connection request by remote computer. Establishing secure communication channel.
23/11/2005,20:11:29 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaab829e.
23/11/2005,20:11:27 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:11:28 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:38:16 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:39:47 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:40:45 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,20:48:40 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,21:04:08 [INFO] Stop Filter Device.
23/11/2005,21:04:16 AVGuard service has been stopped!
23/11/2005,21:05:24 ---------------------------------------------------------
23/11/2005,21:05:24 [INIT] The AVGuard Service is starting.
23/11/2005,21:05:25 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
23/11/2005,21:05:27 [INFO] Start Filter Device.
23/11/2005,21:05:27 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
23/11/2005,21:05:27 AVGuard has been started successfully!
23/11/2005,21:05:34 [LOGON] Connection request by remote computer. Establishing secure communication channel.
23/11/2005,21:05:34 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa071e.
23/11/2005,21:05:34 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,21:05:33 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,21:33:40 [INFO] Stop Filter Device.
23/11/2005,21:33:40 AVGuard service has been stopped!
23/11/2005,22:52:56 ---------------------------------------------------------
23/11/2005,22:52:56 [INIT] The AVGuard Service is starting.
23/11/2005,22:52:57 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
23/11/2005,22:52:59 [INFO] Start Filter Device.
23/11/2005,22:52:59 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
23/11/2005,22:52:59 AVGuard has been started successfully!
23/11/2005,22:53:09 [LOGON] Connection request by remote computer. Establishing secure communication channel.
23/11/2005,22:53:09 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa180c.
23/11/2005,22:53:07 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,22:53:07 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
23/11/2005,22:53:42 [INFO] Stop Filter Device.
23/11/2005,22:53:42 AVGuard service has been stopped!
24/11/2005,08:12:03 ---------------------------------------------------------
24/11/2005,08:12:03 [INIT] The AVGuard Service is starting.
24/11/2005,08:12:04 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,08:12:06 [INFO] Start Filter Device.
24/11/2005,08:12:06 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,08:12:06 AVGuard has been started successfully!
24/11/2005,08:12:07 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,08:12:55 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,08:12:55 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaabe3e2.
24/11/2005,08:12:55 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,08:12:55 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:13:46 [INFO] Stop Filter Device.
24/11/2005,14:13:47 AVGuard service has been stopped!
24/11/2005,14:15:03 ---------------------------------------------------------
24/11/2005,14:15:03 [INIT] The AVGuard Service is starting.
24/11/2005,14:15:04 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,14:15:06 [INFO] Start Filter Device.
24/11/2005,14:15:06 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,14:15:06 AVGuard has been started successfully!
24/11/2005,14:15:08 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:15:41 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,14:15:41 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaabb653.
24/11/2005,14:15:41 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:19:24 [INFO] Stop Filter Device.
24/11/2005,14:19:24 AVGuard service has been stopped!
24/11/2005,14:20:39 ---------------------------------------------------------
24/11/2005,14:20:39 [INIT] The AVGuard Service is starting.
24/11/2005,14:20:39 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,14:20:42 [INFO] Start Filter Device.
24/11/2005,14:20:42 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,14:20:42 AVGuard has been started successfully!
24/11/2005,14:20:48 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,14:20:48 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa094b.
24/11/2005,14:20:50 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:20:50 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:21:08 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:22:34 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:22:47 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:24:44 [INFO] Stop Filter Device.
24/11/2005,14:24:44 AVGuard service has been stopped!
24/11/2005,14:26:01 ---------------------------------------------------------
24/11/2005,14:26:01 [INIT] The AVGuard Service is starting.
24/11/2005,14:26:02 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,14:26:05 [INFO] Start Filter Device.
24/11/2005,14:26:05 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,14:26:05 AVGuard has been started successfully!
24/11/2005,14:28:30 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:28:38 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:28:54 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,14:28:54 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaa98ecb.
24/11/2005,14:28:53 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:30:50 [INFO] Stop Filter Device.
24/11/2005,14:30:51 AVGuard service has been stopped!
24/11/2005,14:32:07 ---------------------------------------------------------
24/11/2005,14:32:07 [INIT] The AVGuard Service is starting.
24/11/2005,14:32:07 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,14:32:10 [INFO] Start Filter Device.
24/11/2005,14:32:10 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,14:32:10 AVGuard has been started successfully!
24/11/2005,14:34:39 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:34:45 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:35:04 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,14:35:04 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaa99695.
24/11/2005,14:35:05 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,14:48:37 [INFO] Stop Filter Device.
24/11/2005,14:48:38 AVGuard service has been stopped!
24/11/2005,14:49:53 ---------------------------------------------------------
24/11/2005,14:49:53 [INIT] The AVGuard Service is starting.
24/11/2005,14:49:53 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,14:49:56 [INFO] Start Filter Device.
24/11/2005,14:49:56 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,14:49:56 AVGuard has been started successfully!
24/11/2005,14:52:33 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:52:40 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,14:52:59 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,14:52:59 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaa9f069.
24/11/2005,14:52:56 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,15:52:36 [INFO] Stop Filter Device.
24/11/2005,15:52:38 AVGuard service has been stopped!
24/11/2005,15:53:51 ---------------------------------------------------------
24/11/2005,15:53:51 [INIT] The AVGuard Service is starting.
24/11/2005,15:53:52 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,15:53:54 [INFO] Start Filter Device.
24/11/2005,15:53:54 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,15:53:54 AVGuard has been started successfully!
24/11/2005,15:56:32 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,15:56:43 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,15:56:59 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,15:56:59 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaa9f53c.
24/11/2005,15:56:59 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,16:51:59 [INFO] Stop Filter Device.
24/11/2005,16:52:00 AVGuard service has been stopped!
24/11/2005,16:53:02 ---------------------------------------------------------
24/11/2005,16:53:02 [INIT] The AVGuard Service is starting.
24/11/2005,16:53:03 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,16:53:05 [INFO] Start Filter Device.
24/11/2005,16:53:05 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,16:53:05 AVGuard has been started successfully!
24/11/2005,16:55:47 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,16:56:07 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,16:56:22 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,16:56:22 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaa9c1b5.
24/11/2005,16:56:23 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,17:23:40 [INFO] Stop Filter Device.
24/11/2005,17:23:40 AVGuard service has been stopped!
24/11/2005,17:55:23 ---------------------------------------------------------
24/11/2005,17:55:23 [INIT] The AVGuard Service is starting.
24/11/2005,17:55:24 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,17:55:26 [INFO] Start Filter Device.
24/11/2005,17:55:26 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,17:55:26 AVGuard has been started successfully!
24/11/2005,17:55:26 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been deleted!
24/11/2005,17:57:09 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,17:57:10 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaa89b9d.
24/11/2005,17:57:13 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been deleted!
24/11/2005,17:58:01 [INFO] Stop Filter Device.
24/11/2005,17:58:01 AVGuard service has been stopped!
24/11/2005,17:59:18 ---------------------------------------------------------
24/11/2005,17:59:18 [INIT] The AVGuard Service is starting.
24/11/2005,17:59:19 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,17:59:21 [INFO] Start Filter Device.
24/11/2005,17:59:21 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,17:59:21 AVGuard has been started successfully!
24/11/2005,17:59:22 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been deleted!
24/11/2005,17:59:59 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,17:59:59 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa5448.
24/11/2005,17:59:59 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been deleted!
24/11/2005,18:00:34 [INFO] Stop Filter Device.
24/11/2005,18:00:35 AVGuard service has been stopped!
24/11/2005,18:01:39 ---------------------------------------------------------
24/11/2005,18:01:39 [INIT] The AVGuard Service is starting.
24/11/2005,18:01:39 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,18:01:42 [INFO] Start Filter Device.
24/11/2005,18:01:42 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,18:01:42 AVGuard has been started successfully!
24/11/2005,18:01:49 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,18:01:49 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa2db8.
24/11/2005,18:01:47 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been deleted!
24/11/2005,18:01:46 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
Unable to delete the file:
0x00000002 - Le fichier spécifié est introuvable.
24/11/2005,18:05:31 [INFO] Stop Filter Device.
24/11/2005,18:05:31 AVGuard service has been stopped!
24/11/2005,18:06:43 ---------------------------------------------------------
24/11/2005,18:06:43 [INIT] The AVGuard Service is starting.
24/11/2005,18:06:44 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,18:06:46 [INFO] Start Filter Device.
24/11/2005,18:06:46 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,18:06:46 AVGuard has been started successfully!
24/11/2005,18:06:52 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,18:06:52 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa2e8e.
24/11/2005,18:06:54 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,18:07:30 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
24/11/2005,18:08:46 [INFO] Stop Filter Device.
24/11/2005,18:08:46 AVGuard service has been stopped!
24/11/2005,19:59:20 ---------------------------------------------------------
24/11/2005,19:59:20 [INIT] The AVGuard Service is starting.
24/11/2005,19:59:21 [INIT] Keyfile contains a valid license. The AVGuard service will run as a fully functional version!
24/11/2005,19:59:23 [INFO] Start Filter Device.
24/11/2005,19:59:23 AntiVirService Version: 6.32.00.12 AVE Version 6.32.0.57 VDF Version: 6.32.18.37
24/11/2005,19:59:23 AVGuard has been started successfully!
24/11/2005,19:59:23 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
24/11/2005,19:59:57 [LOGON] Connection request by remote computer. Establishing secure communication channel.
24/11/2005,19:59:57 [LOGON] Connection to computer 127.0.0.1 established successfully. Session ID = 0xaaaa5d34.
24/11/2005,19:59:59 WARNING: Is the Trojan horse TR/Click.Delf.CU.2!
C:\WINDOWS\SYSTEM32\COMMON32.DLL
File has been moved to quarantine directory!
"Silent Runners.vbs", revision 41, http://www.silentrunners.org/
Operating System: Windows XP
Output limited to non-default values, except where indicated by "{++}"
Startup items buried in registry:
---------------------------------
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"MSMSGS" = ""C:\Program Files\Messenger\msmsgs.exe" /background" [MS]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"SoundMan" = "SOUNDMAN.EXE" ["Realtek Semiconductor Corp."]
"NvCplDaemon" = "RUNDLL32.EXE NvQTwk,NvCplDaemon initialize" [MS]
"nwiz" = "nwiz.exe /install" ["NVIDIA Corporation"]
"NeroCheck" = "C:\WINDOWS\system32\NeroCheck.exe" ["Ahead Software Gmbh"]
"InCD" = "C:\Program Files\Ahead\InCD\InCD.exe" ["Ahead Software AG"]
"MS Critical Security Installer" = "%Windir%\game.exe" [file not found]
"Network Interface Device Driver" = "C:\WINDOWS\System32\mcm.exe" [null data]
"Printer Driver" = "C:\WINDOWS\System32\accessdb.exe" [null data]
"AVGCtrl" = ""C:\Program Files\AVPersonal\AVGNT.EXE" /min" ["H+BEDV Datentechnik GmbH"]
HKLM\Software\Microsoft\Active Setup\Installed Components\
{460BB7AC-4C41-49F2-8BF2-34270F15ED74}\(Default) = (no title provided)
\StubPath = "C:\WINDOWS\System32\rtp.exe" [null data]
{87D6584F-729D-4302-9192-9549AE2EA38B}\(Default) = (no title provided)
\StubPath = "C:\WINDOWS\MS VerNet.exe" [null data]
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = "AcroIEHlprObj Class" [from CLSID]
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]
{EE5C363D-7627-4F21-98AE-4CBCC1DBD650}\(Default) = (no title provided)
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\common32.dll" [file not found]
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Extension Affichage Panorama du Panneau de configuration"
-> {CLSID}\InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "Extension icône HyperTerminal"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\System32\hticons.dll" ["Hilgraeve, Inc."]