Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

I is a takeover

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Re: I is a takeover

Unread postby Eli » June 25th, 2008, 9:21 am

Herewith latest Hijackthis log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:14:17 PM, on 6/25/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Dassault Systemes\B16\intel_a\code\bin\CATSysDemon.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY
O4 - HKLM\..\Run: [UADCcw] "C:\Program Files\AdvancedCleaner Free\UADCcw.exe" -c
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\AntivirusOrdi\bm.exe" dm=http://antivirusordi.com ad=http://antivirusordi.com sd=http://gregistre.antivirusordi.com
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files\Dassault Systemes\B16\intel_a\code\bin\CATSysDemon.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe (file missing)
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Unknown owner - C:\Program Files\Symantec AntiVirus\DefWatch.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LiveUpdate - Unknown owner - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE (file missing)
O23 - Service: SAVRoam (SavRoam) - Unknown owner - C:\Program Files\Symantec AntiVirus\SavRoam.exe (file missing)
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe (file missing)
O23 - Service: SPBBCSvc - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing)
O23 - Service: Symantec AntiVirus - Unknown owner - C:\Program Files\Symantec AntiVirus\Rtvscan.exe (file missing)
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe

--
End of file - 7328 bytes
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am
Advertisement
Register to Remove

Re: I is a takeover

Unread postby Shaba » June 25th, 2008, 9:32 am

Hi

Are both Symantec and Trend up-to-date?
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 26th, 2008, 6:26 am

Trend is up to date but Symantec does not work, there is some files missing and it gives a lot of errors.
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am

Re: I is a takeover

Unread postby Shaba » June 26th, 2008, 7:22 am

Hi

I see.

Follow these instructions and post back a fresh HijackThis log after that, please.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 27th, 2008, 4:55 am

I tried Norton's 08 and it gives me the following error:

The following programs were found on this computer. These must be removed through “Add/Remove programs” before removal tool can proceed.

Symantec-AntiVirus 9 or later.

When I go to Add/Remove programs it does not give me the option to remove Symantec?
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am

Re: I is a takeover

Unread postby Shaba » June 27th, 2008, 5:19 am

Hi

Your Norton is likely 06 or 07; please try those :)
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 27th, 2008, 5:27 am

No I still gives me the same error on both.
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am

Re: I is a takeover

Unread postby Shaba » June 27th, 2008, 6:30 am

Hi

OK, then we remove them manually.

Please click Start > Run and type in: services.msc
Click OK
In the Services window find: Symantec Settings Manager (ccSetMgr)
Select/highlight and right click the entry, and choose: Properties
On the General tab, under Service Status click the Stop button
Beside: Startup Type, in the drop menu, select: Disabled
Click Apply, then OK

Repeat step for these:

Symantec AntiVirus Definition Watcher (DefWatch)
LiveUpdate
SAVRoam (SavRoam)
Symantec Network Drivers Service (SNDSrvc)
SPBBCSvc
Symantec AntiVirus

Now, go to Start > Run, and copy/paste the following into the Open box:
sc delete ccSetMgr
Click: OK

Repeat step for these:

DefWatch
LiveUpdate
SavRoam
SNDSrvc
SPBBCSvc
"Symantec AntiVirus" (include " ")

Reboot.

Post back a fresh HijackThis log.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 27th, 2008, 10:16 am

Herewith latest Hijack report

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:07:15 PM, on 6/27/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Dassault Systemes\B16\intel_a\code\bin\CATSysDemon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY
O4 - HKLM\..\Run: [UADCcw] "C:\Program Files\AdvancedCleaner Free\UADCcw.exe" -c
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\AntivirusOrdi\bm.exe" dm=http://antivirusordi.com ad=http://antivirusordi.com sd=http://gregistre.antivirusordi.com
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files\Dassault Systemes\B16\intel_a\code\bin\CATSysDemon.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe

--
End of file - 6354 bytes
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am

Re: I is a takeover

Unread postby Shaba » June 27th, 2008, 11:56 am

Hi

Looks better :)

Open HijackThis, click do a system scan only and checkmark these:

O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKLM\..\Run: [UADCcw] "C:\Program Files\AdvancedCleaner Free\UADCcw.exe" -c
O4 - HKLM\..\Run: [BMN] "C:\Program Files\Fichiers communs\AntivirusOrdi\bm.exe" dm=http://antivirusordi.com ad=http://antivirusordi.com sd=http://gregistre.antivirusordi.com


Close all windows including browser and press fix checked.

Reboot.

Please go to Kaspersky website and perform an online antivirus scan.

  1. Read through the requirements and privacy statement and click on Accept button.
  2. It will start downloading and installing the scanner and virus definitions. You will be prompted to install an application from Kaspersky. Click Run.
  3. When the downloads have finished, click on Settings.
  4. Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
      Spyware, Adware, Dialers, and other potentially dangerous programs
      Archives
  5. Click on My Computer under Scan.
  6. Once the scan is complete, it will display the results. Click on View Scan Report.
  7. You will see a list of infected items there. Click on Save Report As....
  8. Save this report to a convenient place. Change the Files of type to Text file (.txt) before clicking on the Save button.
  9. Please post this log in your next reply along with a fresh HijackThis log.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 28th, 2008, 10:21 am

Kaspersky report:

--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7 REPORT
Saturday, June 28, 2008
Operating System: Microsoft Windows XP Professional Service Pack 2 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Saturday, June 28, 2008 09:44:45
Records in database: 894810
--------------------------------------------------------------------------------

Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes

Scan area - My Computer:
C:\
D:\
F:\

Scan statistics:
Files scanned: 208120
Threat name: 6
Infected objects: 28
Suspicious objects: 2
Duration of the scan: 02:47:47


File name / Threat name / Threats count
C:\Documents and Settings\Hassib\.housecall6.6\Quarantine\cmdow.exe.bac_a02856 Infected: not-a-virus:RiskTool.Win32.HideWindows 1
C:\Documents and Settings\Hassib\Bureau\Reader 8.0\Reader\AcroRd32Info.exe Suspicious: Type_Win32 1
C:\Documents and Settings\Hassib\Bureau\Videos\ADCFreeInstaller_fr.exe Infected: not-a-virus:Downloader.Win32.AdvancedCleaner.c 1
C:\Documents and Settings\Hassib\Bureau\Videos\setup_fr.exe Infected: not-a-virus:Downloader.Win32.WinFixer.ha 1
C:\Documents and Settings\Hassib\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Infected: Worm.Win32.Mabezat.b 23
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32Info.exe Suspicious: Type_Win32 1
C:\QooBox\Quarantine\catchme2008-06-17_ 34249.17.zip Infected: Trojan.Win32.Monderb.gen 1
D:\I386\SVCPACK\system32.exe Infected: not-a-virus:RiskTool.Win32.HideWindows 1

The selected area was scanned.


HiJackthis report:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:13:12 PM, on 6/28/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Dassault Systemes\B16\intel_a\code\bin\CATSysDemon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Backbone Service (BBDemon) - Dassault Systemes - C:\Program Files\Dassault Systemes\B16\intel_a\code\bin\CATSysDemon.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe

--
End of file - 5832 bytes
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am

Re: I is a takeover

Unread postby Shaba » June 28th, 2008, 10:42 am

Hi

Empty these folders:

C:\Documents and Settings\Hassib\.housecall6.6\Quarantine
C:\QooBox\Quarantine

Delete these:

C:\Documents and Settings\Hassib\Bureau\Videos\ADCFreeInstaller_fr.exe
C:\Documents and Settings\Hassib\Bureau\Videos\setup_fr.exe

Empty Recycle Bin.

Still problems?
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 30th, 2008, 8:02 am

Hi, Thank you for the help, it seems as tough the virus is gone no problems in the department, but Symantec is still giving me problems. Whenever I right click on anythink A popup appears and wants to reinstaal Symantec? I did go back to the service folder to check if I did't maybe miss something but it doesn't look like it. And also I still can't remove it through Add/Remove programs.
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am

Re: I is a takeover

Unread postby Shaba » June 30th, 2008, 9:10 am

Hi

Please download the Registry Search tool by clicking on the "hard drive" icon halfway down this page:
http://www.billsway.com/vbspage/
Save it to the desktop and run it. If you get an alert from your antivirus about scripting, choose to allow the script to run. Search for symantec and click OK. Post the logfile from the tool here for me.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: I is a takeover

Unread postby Eli » June 30th, 2008, 1:27 pm

REGEDIT4
; RegSrch.vbs © Bill James

; Registry search results for string "Symantec" 6/30/2008 7:17:40 PM

; NOTE: This file will be deleted when you close WordPad.
; You must manually save this file to a new location if you want to refer to it again later.
; (If you save the file with a .reg extension, you can use it to restore any Registry changes you make to these values.)


"DeviceItem0053"="[Pilotes non Plug-and-Play] -> [Symantec Eraser Control driver] (0x00000000)"

"ProgramItem0005"="[LiveUpdate 3.1 (Symantec Corporation)] (0x00000000)"

"ProgramItem0013"="[Symantec AntiVirus] (0x00000000)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cliproxy.objects]
@="Symantec AntiVirus Client Proxy Services"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cliproxy.objects.1]
@="Symantec AntiVirus Client Proxy Services"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cliscan.objects]
@="Symantec AntiVirus Client Services"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cliscan.objects.1]
@="Symantec AntiVirus Client Services"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\ProgID]
@="Symantec.stCheckForUpdates.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{03E0E6C2-363B-11D3-B536-00902771A435}\VersionIndependentProgID]
@="Symantec.stCheckForUpdates"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{04661FE8-877E-4157-A08A-A1152B880817}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\SymProtectUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{05E5AC44-F7C0-48AB-98AA-EFC9CE2C1B2C}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{09FA8089-EE3E-4362-B8C0-1B0F4FD0505D}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C17-24F8-11D3-B530-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C17-24F8-11D3-B530-00902771A435}\ProgID]
@="Symantec.stInetTransferItem.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C17-24F8-11D3-B530-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetTransferItem"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C19-24F8-11D3-B530-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C19-24F8-11D3-B530-00902771A435}\ProgID]
@="Symantec.stInetBatchGet.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A577C19-24F8-11D3-B530-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetBatchGet"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A7F500B-53C6-4071-9526-6FFBD444F0B2}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C24DE64-1295-4C57-92EC-B8BE1CF9BF06}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C8903E0-E32F-4035-B798-50C0BBCA42B6}\ProgID]
@="Symantec.SymNeti.SymNetiProviderProxy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C8903E0-E32F-4035-B798-50C0BBCA42B6}\VersionIndependentProgID]
@="Symantec.SymNeti.SymNetiProviderProxy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A1-6BD0-11D3-B542-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A1-6BD0-11D3-B542-00902771A435}\ProgID]
@="Symantec.stLUProgressCallback.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A1-6BD0-11D3-B542-00902771A435}\VersionIndependentProgID]
@="Symantec.stLUProgressCallback"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A3-6BD0-11D3-B542-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A3-6BD0-11D3-B542-00902771A435}\ProgID]
@="Symantec.stCallbackManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D4C11A3-6BD0-11D3-B542-00902771A435}\VersionIndependentProgID]
@="Symantec.stCallbackManager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40801-D38D-11D3-B562-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40801-D38D-11D3-B562-00902771A435}\ProgID]
@="Symantec.stLog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ED40801-D38D-11D3-B562-00902771A435}\VersionIndependentProgID]
@="Symantec.stLog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F0E0EE0-760F-11D2-8E55-72C9EE000000}\InProcServer32]
@="C:\\Program Files\\Symantec AntiVirus\\nnewdefs.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1548EF25-7E2B-49D5-ABA2-64677C5B86E1}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\InprocServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegCom_3_1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\ProgID]
@="Symantec.luProductReg.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17580E5F-7B07-11D2-BF1F-00A024D73444}\VersionIndependentProgID]
@="Symantec.luProductReg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1CEFD16C-91C2-4953-986E-EE77DE2DCF94}\InprocServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\NetDetectController_3_1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1E549524-B12E-44A0-B985-D95166BB2200}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FBEF3C8-45A0-42E0-8C68-681C4EB26DF7}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\InprocServer32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegCom_3_1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\ProgID]
@="Symantec.luGroup.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2045EFE5-99CF-11D2-B40A-00600831DD76}\VersionIndependentProgID]
@="Symantec.luGroup"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2707AAC5-C268-11D1-8263-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LotNtsUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2707AAC6-C268-11D1-8263-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\IMailUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\ProgID]
@="Symantec.stSettings.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2B83B324-49FD-11D3-B538-00902771A435}\VersionIndependentProgID]
@="Symantec.stSettings"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C23BB49-5FBA-498C-AD3B-DB98FF545061}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\ProgID]
@="Symantec.stHostCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C5B6502-5731-11D3-B53D-00902771A435}\VersionIndependentProgID]
@="Symantec.stHostCatalog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E76B2BF-C603-11D1-826C-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E76B2C0-C603-11D1-826C-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E76B2C3-C603-11D1-826C-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2E76B2C4-C603-11D1-826C-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EDB00AE-E262-4077-9D81-F7A1FD2D6A6E}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{311CF1A1-872A-4ED5-943F-058C886E2F7F}\ProgID]
@="Symantec.CommonClient.ccEvtMgr.ModuleManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{311CF1A1-872A-4ED5-943F-058C886E2F7F}\VersionIndependentProgID]
@="Symantec.CommonClient.ccEvtMgr.ModuleManager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{327C5962-08E2-4EC6-A21A-340838D6EDB5}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3495C104-E46A-4281-8671-C900A47B23E6}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3D376FDD-253E-453D-978B-653578A0E679}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3F357106-780C-4D3E-BCBA-989D59D3C807}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40C57BF5-CA86-11D1-B782-00A0C99C7131}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{40C57BF6-CA86-11D1-B782-00A0C99C7131}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4128E694-4BB9-11D1-8190-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4128E695-4BB9-11D1-8190-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{43943CCA-883C-11D1-83A4-00A0C9749EEF}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\webshell.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49BB73EE-2C2F-445E-82E3-E6E3380285BF}\ProgID]
@="Symantec.CommonClient.ccEvtMgr.EventManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{49BB73EE-2C2F-445E-82E3-E6E3380285BF}\VersionIndependentProgID]
@="Symantec.CommonClient.ccEvtMgr.EventManager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AD49C8A-B8DC-45A5-AB1B-22AC6BCD7E13}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4C34B690-D1B7-11D1-B041-00104B252EEA}\InprocServer32]
@="C:\\Program Files\\Symantec AntiVirus\\SCANDLVR.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4DEF8DD1-C4D1-11D1-82DA-00A0C9749EEF}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\scandlgs.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52C9737F-226B-4B3F-8828-1993553DBD5A}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{536604C2-B82E-11D1-8252-00A0C95C0756}]
@="Symantec AntiVirus UI"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{536604C2-B82E-11D1-8252-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ldvpui.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{536604C3-B82E-11D1-8252-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ldvpui.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5480886A-1BD6-4ECB-A3D5-AF4B3BFA82C1}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{592DC44C-4977-11D1-818D-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{592DC44F-4977-11D1-818D-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5CB6585D-8634-46A9-B4E2-5B32EFABC54F}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5F8413FD-245A-476B-8F01-D69E6202DAA4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64B4A5AE-0799-11D1-812A-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPTask.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6628157E-EBAB-4c1d-A3DB-468DB60F890D}\ProgID]
@="Symantec.SymNeti.SubscriberProxy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6628157E-EBAB-4c1d-A3DB-468DB60F890D}\VersionIndependentProgID]
@="Symantec.SymNeti.SymNetiSubscriberProxy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72864BE2-6234-45AA-952D-00C10C34BEEE}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\ProgID]
@="Symantec.stPatchCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C2714F-4478-11D3-B537-00902771A435}\VersionIndependentProgID]
@="Symantec.stPatchCatalog"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\ProgID]
@="Symantec.stPatch.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72C27151-4478-11D3-B537-00902771A435}\VersionIndependentProgID]
@="Symantec.stPatch"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72E2440E-EBEA-49E6-A185-1BE03F723E28}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\IMailUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F365837-F578-11D1-B7B2-00A0C99C7131}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7F365838-F578-11D1-B7B2-00A0C99C7131}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8548E3D6-2B50-4033-9D6E-120E08031C95}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\ProgID]
@="Symantec.stDisScriptEngine.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{87D37EC8-8342-11D3-B54C-00902771A435}\VersionIndependentProgID]
@="Symantec.stDisScriptEngine"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E9145BD-703D-11D1-81C9-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPView.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EC217F4-3428-4881-8019-AA8A19C2F07F}\ProgID]
@="Symantec.CommonClient.ccSetMgr.SettingsService.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8EC217F4-3428-4881-8019-AA8A19C2F07F}\VersionIndependentProgID]
@="Symantec.CommonClient.ccSetMgr.SettingsService"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8F6F6788-4009-11D1-8184-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90CEA603-F2D7-44E2-ABE0-96EA1FC61C0B}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{91581CB1-0E7B-11D1-9D93-00A0C95C1762}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\webshell.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{921BD9FB-4963-11D1-818D-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94C42A62-3DB3-4145-8F72-4AAC10CF213C}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A6BCDF39-8909-45B1-B614-1231B027E78F}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccErrDsp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB560A21-D4E4-405D-842D-AB129D90C64A}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABBAB8BD-E4F1-11D1-A42C-00A0C9A243C6}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABBAB8BE-E4F1-11D1-A42C-00A0C9A243C6}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF34864C-8A06-4F3A-84B1-898129F5420B}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFBBB9C6-8A99-11D1-8892-0080C75FFCC4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AFBBB9C7-8A99-11D1-8892-0080C75FFCC4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8E914C1-A516-421F-B413-B32B3FA3F18F}\ProgID]
@="Symantec.CommonClient.ccEvtMgr.LogManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B8E914C1-A516-421F-B413-B32B3FA3F18F}\VersionIndependentProgID]
@="Symantec.CommonClient.ccEvtMgr.LogManager"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B91B0CAD-D866-11D1-B78C-00A0C99C7131}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B91B0CAE-D866-11D1-B78C-00A0C99C7131}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA0C6365-7218-11D0-8865-444553540000}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPView.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BC3FF212-3F70-40EA-B15F-5AA3CE63D5B2}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BD94CF3C-95B7-48CF-A805-FC32EFBD3117}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\SymProtectUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BDA77241-42F6-11D0-85E2-00AA001FE28C}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\vpshell2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE12BC9F-46F3-483D-838D-124C99F7B6FF}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE70B0B7-25AF-46E2-AF30-ED4EBBC1F149}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BEE62D80-4A07-11D1-818E-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\ProgID]
@="Symantec.stInetGetFile.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C10E2CC6-1525-11D3-B527-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetGetFile"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5412659-ED0F-403A-A296-176C31026B0E}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C859248A-513E-11D1-8194-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C859248B-513E-11D1-8194-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9A87C58-9683-4644-80BC-90D8462CE326}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccWebWnd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D47C595F-B09E-4C75-A474-238CCE151335}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccProSub.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D47C595F-B09E-4C75-A474-238CCE151335}\ProgID]
@="Symantec.CommonClient.ccProSub.SubscriberProxy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D47C595F-B09E-4C75-A474-238CCE151335}\VersionIndependentProgID]
@="Symantec.CommonClient.ccProSub.SubscriberProxy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DA7581F3-1D43-4688-9FD9-14D42DC7B52A}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2174502-8CC3-4EEF-8457-7904D618FE0A}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E381F1C0-910E-11D1-AB1E-00A0C90F8F6F}]
@="Symantec AntiVirus Client Proxy Services"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E381F1C0-910E-11D1-AB1E-00A0C90F8F6F}\InprocServer32]
@="C:\\Program Files\\Symantec AntiVirus\\Cliproxy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E381F1D0-910E-11D1-AB1E-00A0C90F8F6F}]
@="Symantec AntiVirus Client Services"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E381F1D0-910E-11D1-AB1E-00A0C90F8F6F}\InprocServer32]
@="C:\\Program Files\\Symantec AntiVirus\\Cliscan.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E381F1E0-910E-11D1-AB1E-00A0C90F8F6F}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\Transman.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8DEB7D4-EAE2-45AF-B0F5-0B6D9ADF2850}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8DEB7D4-EAE2-45AF-B0F5-0B6D9ADF2850}\ProgID]
@="Symantec.CommonClient.ccSetEvt.SettingsChangeEvent.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E8DEB7D4-EAE2-45AF-B0F5-0B6D9ADF2850}\VersionIndependentProgID]
@="Symantec.CommonClient.ccSetEvt.SettingsChangeEvent"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F32F2026-8607-11D1-8892-0080C75FFCC4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F32F2027-8607-11D1-8892-0080C75FFCC4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F32F202A-8607-11D1-8892-0080C75FFCC4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F32F202B-8607-11D1-8892-0080C75FFCC4}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7A11338-B5E2-4A97-9151-2FB65FDB5BC0}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccProSub.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7A11338-B5E2-4A97-9151-2FB65FDB5BC0}\ProgID]
@="Symantec.CommonClient.ccProSub.ProviderProxy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F7A11338-B5E2-4A97-9151-2FB65FDB5BC0}\VersionIndependentProgID]
@="Symantec.CommonClient.ccProSub.ProviderProxy"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\ProgID]
@="Symantec.stHost.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F8E2BDBE-5723-11D3-B53D-00902771A435}\VersionIndependentProgID]
@="Symantec.stHost"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC894628-B91D-11D1-8254-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FC894629-B91D-11D1-8254-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD49B8C4-41FE-498D-95A0-BD12BADE43A9}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\LocalServer32]
@="\"C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\ProgID]
@="Symantec.stInetConnParms.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE207EB8-122B-11D3-B527-00902771A435}\VersionIndependentProgID]
@="Symantec.stInetConnParms"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF1C1AB8-C27D-11D1-8263-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ExchngUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF1C1AB9-C27D-11D1-8263-00A0C95C0756}\InprocServer32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ExchngUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\89FCFC336D8F94544B96F6245976D638]
"ProductName"="Symantec AntiVirus"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\89FCFC336D8F94544B96F6245976D638\SourceList]
"PackageName"="SYMANTEC ANTIVIRUS.MSI"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\89FCFC336D8F94544B96F6245976D638\SourceList\Media]
"MediaPackage"="\\25 - Symantec Antivirus v10.2.298\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LDVPUI.LDVPUICtrl.1]
@="Symantec AntiVirus UI"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LiveupdateFile\DefaultIcon]
@="C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE,0"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.EventManager]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.EventManager\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.EventManager\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.EventManager\CurVer]
@="Symantec.CommonClient.ccEvtMgr.EventManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.EventManager.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.EventManager.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.LogManager]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.LogManager\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.LogManager\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.LogManager\CurVer]
@="Symantec.CommonClient.ccEvtMgr.LogManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.LogManager.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.LogManager.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.ModuleManager]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.ModuleManager\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.ModuleManager\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.ModuleManager\CurVer]
@="Symantec.CommonClient.ccEvtMgr.ModuleManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.ModuleManager.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccEvtMgr.ModuleManager.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.ProviderProxy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.ProviderProxy\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.ProviderProxy\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.ProviderProxy\CurVer]
@="Symantec.CommonClient.ccProSub.ProviderProxy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.ProviderProxy.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.ProviderProxy.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.SubscriberProxy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.SubscriberProxy\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.SubscriberProxy\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.SubscriberProxy\CurVer]
@="Symantec.CommonClient.ccProSub.SubscriberProxy.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.SubscriberProxy.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccProSub.SubscriberProxy.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetEvt.SettingsChangeEvent]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetEvt.SettingsChangeEvent\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetEvt.SettingsChangeEvent\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetEvt.SettingsChangeEvent\CurVer]
@="Symantec.CommonClient.ccSetEvt.SettingsChangeEvent.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetEvt.SettingsChangeEvent.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetEvt.SettingsChangeEvent.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetMgr.SettingsService]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetMgr.SettingsService\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetMgr.SettingsService\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetMgr.SettingsService\CurVer]
@="Symantec.CommonClient.ccSetMgr.SettingsService.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetMgr.SettingsService.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.CommonClient.ccSetMgr.SettingsService.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup\CurVer]
@="Symantec.luGroup.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luGroup.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg\CurVer]
@="Symantec.luProductReg.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.luProductReg.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager\CurVer]
@="Symantec.stCallbackManager.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCallbackManager.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates\CurVer]
@="Symantec.stCheckForUpdates.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stCheckForUpdates.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine\CurVer]
@="Symantec.stDisScriptEngine.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stDisScriptEngine.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost\CurVer]
@="Symantec.stHost.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHost.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog\CurVer]
@="Symantec.stHostCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stHostCatalog.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet\CurVer]
@="Symantec.stInetBatchGet.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetBatchGet.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms\CurVer]
@="Symantec.stInetConnParms.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetConnParms.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile\CurVer]
@="Symantec.stInetGetFile.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetGetFile.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem\CurVer]
@="Symantec.stInetTransferItem.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stInetTransferItem.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog\CurVer]
@="Symantec.stLog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLog.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback\CurVer]
@="Symantec.stLUProgressCallback.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stLUProgressCallback.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch\CurVer]
@="Symantec.stPatch.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatch.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog\CurVer]
@="Symantec.stPatchCatalog.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stPatchCatalog.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings\CurVer]
@="Symantec.stSettings.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.stSettings.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiProviderProxy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiProviderProxy\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiProviderProxy.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiProviderProxy.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiSubscriberProxy]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiSubscriberProxy\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiSubscriberProxy.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Symantec.SymNeti.SymNetiSubscriberProxy.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{17580E52-7B07-11D2-BF1F-00A024D73444}\1.0\0\win32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\ProductRegCom_3_1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{17580E52-7B07-11D2-BF1F-00A024D73444}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec\\LiveUpdate\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2149B26D-55C9-4DC3-BD03-B982AAA1733A}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\IMailUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2149B26D-55C9-4DC3-BD03-B982AAA1733A}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{226CDAFB-819C-4298-89FA-8A018BB188B5}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccErrDsp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{226CDAFB-819C-4298-89FA-8A018BB188B5}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2707AAC2-C268-11D1-8263-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LotNtsUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2707AAC2-C268-11D1-8263-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2E76B2B4-C603-11D1-826C-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2E76B2B4-C603-11D1-826C-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51B9BCA6-4A06-11D3-B538-00902771A435}\1.0\0\win32]
@="C:\\PROGRA~1\\Symantec\\LIVEUP~1\\LUCOMS~1.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51B9BCA6-4A06-11D3-B538-00902771A435}\1.0\HELPDIR]
@="C:\\PROGRA~1\\Symantec\\LIVEUP~1\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{536604BF-B82E-11D1-8252-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ldvpui.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{536604BF-B82E-11D1-8252-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{592DC449-4977-11D1-818D-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{592DC449-4977-11D1-818D-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{60681DC5-21B2-4264-B1F1-E1289819E023}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccEvtMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{60681DC5-21B2-4264-B1F1-E1289819E023}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{64B4A5AB-0799-11D1-812A-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPTask.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{64B4A5AB-0799-11D1-812A-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6F952B50-BCEE-11D1-82D6-00A0C9749EEF}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\vpshell2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6F952B50-BCEE-11D1-82D6-00A0C9749EEF}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E9145BE-703D-11D1-81C9-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPView.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E9145BE-703D-11D1-81C9-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E9CD170-B967-47E8-AB36-9B310732B481}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\SymProtectUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8E9CD170-B967-47E8-AB36-9B310732B481}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{941F23D1-BD56-4F90-B99F-134D55D86053}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9F3B84DC-3631-4BCE-90E9-041A6198A2FA}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9F3B84DC-3631-4BCE-90E9-041A6198A2FA}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{ABA89334-36F7-4263-987C-941FF0C3E105}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccWebWnd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{ABA89334-36F7-4263-987C-941FF0C3E105}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C40049E7-5154-40E3-83B5-A94A89A29890}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C40049E7-5154-40E3-83B5-A94A89A29890}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C546DD23-7302-4E47-A4C1-E8417AD4243F}\1.0\0\win32]
@="C:\\Program Files\\Symantec\\LiveUpdate\\NetDetectController_3_1.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C546DD23-7302-4E47-A4C1-E8417AD4243F}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec\\LiveUpdate\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C9C05A42-D571-4B3C-8F11-D6D6A81C90EB}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C9C05A42-D571-4B3C-8F11-D6D6A81C90EB}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E381F1A0-910E-11D1-AB1E-00A0C90F8F6F}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\Transman.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E381F1A0-910E-11D1-AB1E-00A0C90F8F6F}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E381F1B0-910E-11D1-AB1E-00A0C90F8F6F}\1.0\0\win32]
@="C:\\Program Files\\Symantec AntiVirus\\Cliproxy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E381F1B0-910E-11D1-AB1E-00A0C90F8F6F}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E381F1F0-910E-11D1-AB1E-00A0C90F8F6F}\1.0\0\win32]
@="C:\\Program Files\\Symantec AntiVirus\\Cliscan.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E381F1F0-910E-11D1-AB1E-00A0C90F8F6F}\1.0\HELPDIR]
@="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EB54C4A8-F9BE-429F-AA4F-F1FA39EA3537}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccProSub.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{EB54C4A8-F9BE-429F-AA4F-F1FA39EA3537}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F32F2023-8607-11D1-8892-0080C75FFCC4}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F32F2023-8607-11D1-8892-0080C75FFCC4}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAD5CC54-0E68-11D1-9D91-00A0C95C1762}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\webshell.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FAD5CC54-0E68-11D1-9D91-00A0C95C1762}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FF1C1AB5-C27D-11D1-8263-00A0C95C0756}\1.0\0\win32]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ExchngUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FF1C1AB5-C27D-11D1-8263-00A0C95C0756}\1.0\HELPDIR]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBNFile]
@="Symantec AntiVirus Quarantine File"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VBNFile\DefaultIcon]
@="\"C:\\Program Files\\Symantec AntiVirus\\VPTray.exe\",-105"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\DLLUsage\VP6]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"="10.1.5000"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\DLLUsage\VP6]
"C:\\Program Files\\Symantec AntiVirus\\Cliproxy.dll"="10.1.5000"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\DLLUsage\VP6]
"C:\\Program Files\\Symantec AntiVirus\\Cliscan.dll"="10.1.5000"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion]
"Home Directory"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Common]
"WarningMessage"="Symantec AntiVirus found a virus in an attachment from ~D.
[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Common]
"SenderMessage"="Symantec AntiVirus found a virus in an attachment you (~D) sent to ~I.
[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Common]
"SelectedMessage"="Symantec AntiVirus found a virus in an attachment from ~D.
[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\LiveUpdate\CmdLines\CmdLine4]
"ProductName"="Symantec AntiVirus Corporate Client"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Storages\InternetMail]
"ServiceDLLPath"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Storages\LotusNotes]
"ServiceDLLPath"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Storages\MicrosoftExchangeClient]
"ServiceDLLPath"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Storages\SymProtect]
"ServiceDLLPath"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Storages\SymProtect\RealTimeScan]
"LogInfectionText"="SYMANTEC TAMPER PROTECTION ALERT
[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\Storages\SymProtect\RealTimeScan]
"MessageText"="SYMANTEC TAMPER PROTECTION ALERT
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Exchange\Client\Extensions]
"Symantec AntiVirus 10.1"="4.0;C:\\Program Files\\Symantec AntiVirus\\vpmsece4.dll;1;00000011111"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ccApp.exe]
"PATH"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\;"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ccApp.exe]
@="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\LUALL.EXE]
@="C:\\Program Files\\Symantec\\LiveUpdate\\LUALL.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\LUALL.EXE]
"Path"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VPC32.exe]
@="C:\\Program Files\\Symantec AntiVirus\\VPC32.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VPC32.exe]
"Path"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\vptray.exe]
"path"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cpls]
"SYMLIVE"="C:\\Program Files\\Symantec\\LiveUpdate\\S32LUCP2.CPL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\"="1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Symantec AntiVirus\\"="1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\Help\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"C:\\Documents and Settings\\All Users\\Menu Démarrer\\Programmes\\Symantec Client Security\\"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0007E264C66416743963D7BDD4E2B7C8]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\LDVPREG.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01110A84106428F40880B93192013FC2]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\DWHWizrd.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\01ABD917955355D4A84144CA3CB609AA]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Cliscan.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\022AFE82A764D864A8CD9B23D4A38F57]
"89FCFC336D8F94544B96F6245976D638"="C:\\Documents and Settings\\All Users\\Application Data\\Symantec\\Symantec AntiVirus Corporate Edition\\7.5\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\075603C1A0A349649BF01150129CC6A5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Documents and Settings\\All Users\\Application Data\\Symantec\\Common Client\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\099321B84C2C2BB41851CA389FB70165]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\Snd.spm"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0DC310B120C02754683F563C5C11B7CC]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Validate.dat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E84B0475F3B7F84292D8B8BF4A0FAD3]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\DefUtDCD.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\121A95866D8C3E147A73AF2FE040249B]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\VPDN_LU.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\122816F5C0076634F990FEB6F5A5A349]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Symantec AntiVirus\\GenMar.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\125695B83FF3EF745AE8D42E41D1E368]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\sevinst.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1320C6D5FEC04214982C98A35FC1FF6D]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\ccCommon.grd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\150FA3B991BBEBA41BF609AB43273898]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15BCFAB3580A39841A2C9288D55C21DF]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SDPCK32I.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6AE69D474F3F4CA40C97240884521]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccErrDsp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\16808795F439F7E488DF599DE0F71CC7]
"89FCFC336D8F94544B96F6245976D638"="C:\\Documents and Settings\\All Users\\Application Data\\Symantec\\Common Client\\Temp\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\16C012D884E53D740B21CDCB21A4BC2E]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\SymProtectUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\17BAD0AD61B75B64398F0A2154B4E93A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\DefWatch.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\17BB044F72BE9FE41B64ABA5EB3AA419]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\scs-sav.spm"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1AB755D80FE34914080C323F73F3F7F8]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1D0E4A28D2B91874D8BFAAF0D7D48C94]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DE10FC25DE814440ADCDF53E037BC5E]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ExchngUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F1CD0F52203E4041B8C1F49ED12DAC2]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\vpmsece4.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F77298863CF8F449A01B1CD959B1FE1]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\COUNTRY.DAT"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\203F9F5F4F3B1FE499FFF39DD06E0DDA]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SAVCProd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A894AB0F40A174EB0A93E99D63C893]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SavRoam.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\283297D4051DAB44D96C32993D40E6C9]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\scs-sav.sig"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D9D7AAD9879F4886C8064178770E3]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E53A294F83182D45A3785356A851754]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccInst.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E53A294F83182D45A3785356A851754]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccInst.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2F7E90858B8A6DF45B6174B9CA82E9A6]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\UpdMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\31E285710D82D0C4FADFF97B867F2BB8]
"89FCFC336D8F94544B96F6245976D638"="C:\\Documents and Settings\\All Users\\Application Data\\Symantec\\Symantec AntiVirus Corporate Edition\\7.5\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\320A69A94DB9F36488B915AC4F80E442]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\VPTray.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3367E791451477646B9249964CC6D835]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\scs-sav.grd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3571CAAE9CB99C142A2C016A1D3371A6]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcAlert.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3571CAAE9CB99C142A2C016A1D3371A6]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcAlert.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\35E89152EB5CD1D4CAB72A216BA94B6F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SavEmail.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\36509426D2A5F93419B575FEC08752DD]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ldvpui.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3788C4FD67E8D6D40904D6D11A66A982]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Symantec AntiVirus\\DoScan.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\388D826CF7E34364E9E2E22C076A5D56]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BC9D74C044014644BC3BC66A22EFCBE]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Symantec AntiVirus\\Dec3.cfg"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3C9A2AED576F5544193A0C5A8DC65BE7]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\Snd.sig"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DEE68F0FC3313E4CAD8E4C3EBCBEC40]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2Text.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DEE68F0FC3313E4CAD8E4C3EBCBEC40]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2Text.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E2AF2B8461F9B341AE996F816488D03]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E81A4DC21026924FB5FAF933085D236]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccVrTrst.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3E81A4DC21026924FB5FAF933085D236]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccVrTrst.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4104FC2402715CE48B5F76E86269EAFA]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SCANDLVR.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42D6411304FCB364DB63B5F4A94C6FFA]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42F8EEA8F11FD0A40AFF0C7B3907AC62]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43BE7E834BB89F74EA8045BE46CCB3F5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\Snd.grd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\441567AAA28618C46A8BACAAC9BD2047]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ecmldr32.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4506881C8147E5C4898473908F999A6A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savrt.dat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\452F176D393D2E842B78F854DF5D9D56]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccLgView.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4604A1142ADFCCF47913A0AD3FE29D43]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\bbRGen.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\461CB5CCD4AE6B4438CE56243372952A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SDSOK32I.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4650327CD3FFB8644A07B95EF08E1533]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\47392C1A5E73AEE44B9D8F8AC022C023]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\cert-signing-requests\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\486376AD35E5B3D49940144BC46211F4]
"89FCFC336D8F94544B96F6245976D638"="02:\\SOFTWARE\\Symantec\\InstalledApps\\SAV Install Directory"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CB829E5237898741983A2C0FB59BAEF]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\500C428F27559F748B4DAB4D8BBF6C92]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\notesext.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50BBD0A1CB1FD3648A16157120DF2829]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2TNEF.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50BBD0A1CB1FD3648A16157120DF2829]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2TNEF.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50C154874C6F14B48AE0F5068BC7E626]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\DefUtDCD.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50C154874C6F14B48AE0F5068BC7E626]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\DefUtDCD.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50E357748DE0DD840851872431DDB49B]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2RTF.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50E357748DE0DD840851872431DDB49B]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2RTF.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\52329A5967EA7BE4396C59CEA602DECC]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccProSub.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5246FBA0D2725974B98D2F241801CE59]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\vpshell2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5549159AC4062D54397934DF6950AE35]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\IMail.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\55E9E653F7808584F981C286C1D58AD5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SystemSnapshotRules.bin"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\57AF24B79C312884C90C5F0CE3586D3F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\patch25d.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5A2056846AAAD9942A856A1CE096C9D1]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\SPBBC.spm"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D5E3CA2F6ABC7843ACCA3FE7FA5C2C9]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccSet.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6591A502E6CED1F48BF7C76C53CBF8F2]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SCANDRES.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6699168B17FDA8C40A62687CD8156AD6]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcErrDsp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6699168B17FDA8C40A62687CD8156AD6]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcErrDsp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6925106EE9D0AF740BCCD43F8907862F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2TAR.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6925106EE9D0AF740BCCD43F8907862F]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2TAR.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C5E2D3E1513C9D42A518129D20C01B2]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\dwLdPntScan.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6D5912863A58F564D9C3E467E3BE0785]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\cert-signing-requests\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6D76C6ABFAF9F254CAD7F9B63039538C]
"89FCFC336D8F94544B96F6245976D638"="02:\\SOFTWARE\\Symantec\\SPBBC\\pccvt"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EEA3CF07EBD65C48A3FE380BC2FF61E]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2LZ.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6EEA3CF07EBD65C48A3FE380BC2FF61E]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2LZ.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6FB241AAAF09D3840BC2241E9AF19C9A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Rec2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\70D2DE21FED8FF34C844F4A31D07101A]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\70F1A44A35ECA3A4E87039D639C5E73A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\VPC32.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\717AB62A0DC6B434EA08A1A45AC41341]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccDec.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71DECD1F77D7E3546ACEC3E68CA8D0D7]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SavRT32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\79768F9785BA38542BCF92E51B008096]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\nnewdefs.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7B50EBD049034D245BACB7DF3D3F0055]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7E0766AE391E7FC46A6253340D25FD6A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savmain.chm"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7ECB3865217942B41AB986B7B99D2538]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\ccOEH.grd"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7F03CD676B6ACF847AB3D33EB025047C]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\810E2895638B5FC42A6F054C71CB01CB]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcSetMgr.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\810E2895638B5FC42A6F054C71CB01CB]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcSetMgr.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\819E87494C4723B45800D6033BCC1761]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccProd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\841AE651E02091243A9B88AFB0AC6C7A]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\LuHstEdt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85A6640347184DE419174A7D938EE4A3]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccEvtMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85B5D06EFCFDB774BA8A2FB6AFE14FAC]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LotNtsUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86095466B37C0E2439C999C8734ACE74]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccAlert.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86E4E3C95A8023E489ECFFAE71451FAB]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SDSNAPSX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89A9407964B17F247A566F608906224F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savhelp.chm"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A63627E758A0A8478B07AB7BC4C9174]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D228C232A0642144B9E752DA344ED76]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\roots\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D52EAF0AAAF7BD4A8C0DD09C174ED5F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DBCFF0A9E5ACC74E89DE920F083C6E0]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\certs\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8EF9EE1FC66940B468785FE27846A4B5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\906E809EEA460C24E9E07BA3848F2529]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savrt.sys"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\91F31ECC41B96D243A45422551C96C23]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2Zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\91F31ECC41B96D243A45422551C96C23]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2Zip.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9284075EBAFA2524A97FE13EB90107F6]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\qspak32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9360D92B1C9484B44B64981388BFCFF2]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savrt.cat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9372E53F9E9D3E542BEFE92078F34B27]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\956B95676BE85A84DA3C38A66DE87EF4]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2RAR.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\956B95676BE85A84DA3C38A66DE87EF4]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2RAR.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9578E1D8BC553FA489248369605AAFA0]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcApp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9578E1D8BC553FA489248369605AAFA0]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcApp.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95AADCB20EDD7A44FA70DA3B6EA3B300]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SNDSrvc.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95F27B56918757849A0200722CE06175]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\qscomm32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\99D9276DA11D28746A7B339E9C3F7010]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savrtpel.inf"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9B3C223B06B98F045B5752D6CF924B69]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SAVRT\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9B9A13DA9C4B1A54C88132F0B47822B4]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SNDunin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D74FFD12EAEF8F4D9E37B6DEA2B1E8B]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E38B3DC8CFB1A847A7BF1DA50E4493D]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Savrtpel.sys"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9F0D5E01FFCBEDD459A7E55164EC51FA]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\clninst.bat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A091DD4AAF052334FA5FB7D21DE5475D]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCDrv.sys"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A23D51D91BC1593468D63B29064215C4]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SDSTP32I.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A2B3FAA88553F6C41AE8BEE4676A444D]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savrt.inf"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A49B22B4BF7F06441B3AF1D1FD9FFB8F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\NAVAPI32.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A54A0A5E2EB288B428823EE49A3FB0E5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Rtvscan.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6AFA04EFD73D69418C4062C5576D74F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A77464867EB9BD8439B0D0E164572155]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccEmlPxy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8DC89FAF3F52B3448C6E06B118C405E]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2AMG.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A8DC89FAF3F52B3448C6E06B118C405E]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2AMG.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AA412B1E7C780EA4BAC8E152E6452281]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcEmlPxy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AA412B1E7C780EA4BAC8E152E6452281]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcEmlPxy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ADC4377FD9FC3734F9AD63CE4955FE71]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcLgView.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ADC4377FD9FC3734F9AD63CE4955FE71]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcLgView.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE842139D531885469A1CDC35A26B1F4]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\DecSDK.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE842139D531885469A1CDC35A26B1F4]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\DecSDK.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF92F8BE6D92F2445A2F09A92F1ECBD1]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B3F6A2DB538BA6E44B9404005AFB41E2]
"89FCFC336D8F94544B96F6245976D638"="C:\\Documents and Settings\\All Users\\Application Data\\Symantec\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B465BB97013CDDB488C6688694AADC47]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Default.hst"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B53334EE7245ABE43A018BD12C5D4C90]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SDSND32I.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B657DA17F4745DF4FB043AFD8A6D8A96]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Cliproxy.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B84D9337F11F8BD40AA93AC699DF1F43]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B9B5013A40151AD41A78BCF1062B8BB4]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB26CE3D008E2FA499FDEE6A7A5B9335]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2CAB.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB26CE3D008E2FA499FDEE6A7A5B9335]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2CAB.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD554A3FBD0ED6B4AAD525CF1D8233AC]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SMSTR32I.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE6AEA47C44CE854791235345CE87CE6]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2LHA.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BE6AEA47C44CE854791235345CE87CE6]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2LHA.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BECD750DA35B2D7419D70D2735AD7219]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ScsComms.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1AC78A74A3296B4BA739BA5E5766344]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2SS.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1AC78A74A3296B4BA739BA5E5766344]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2SS.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1D015D543A678D4088D751CA77430A5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2ARJ.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C1D015D543A678D4088D751CA77430A5]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2ARJ.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C2B94B79B8074CD488640165D1ACA5A6]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCSvc.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C2C0DE96891BD8D47A1C6B99AFFC665A]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetMgr.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5922EEEC20E0AC47A00B13FFA6AD0CD]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\ccWebWnd.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5EB53E2E70016247917D6D2B1A3BF83]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\IMailUI.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6D3108C6C0CBBB4BB528D653EB18E3B]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\webshell.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C70541D73BA95574FAE9CD378E5E3B42]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C73635218DFABF44FA389B3E3BF3D020]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\I2ldvp3.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C7A63E0395E7FB54D91D5CBD898E6E56]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcEvtMgr.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C7A63E0395E7FB54D91D5CBD898E6E56]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\rcEvtMgr.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C8BA9EBC2921A4E49A2C8EB4E7DC7F27]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\nLNVP.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CAE832C2BD80F8041A1ABA2FA9BDE468]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPTask.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CBE21121C920C374E9D780277AD266CD]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\certs\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC3461EC02AF1B74E9527C077C65571C]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CDAF0D299B31D614A997AC7EFF57FE6F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Help\\CCLGVIEW.CHM"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE3BFA88F46D18A49A28938603FC0FC4]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\PATCH32I.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D132B96CE9755DD439B4C163BFB86857]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\DefUtDCS.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D2EEB513BDC48C443B0FFC4606A08DFF]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2ID.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D2EEB513BDC48C443B0FFC4606A08DFF]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2ID.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D400171380C544249A1571058E4B2E45]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\Navap32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D4C317E99F72CD94E80229440898C76B]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Default.rul"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D585AF34227B2154BA7E47561BC1F9B7]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SNDInst.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5C7E0ECE38B2204C81A6CAC7B563C1E]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\OEHeur.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D9C74F83EE4D0A44D80B7D4CAFCC96E8]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPView.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB37AD6F8B343624D8A21F9536E244D0]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccScan.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DBDD9DE3838C78242B0ACAC7E50347A0]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC7387A8D5086344DAA794B917FF9EA5]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\LuaWrap.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC77558AAB3765D42AB9A67B9D465C8A]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\Transman.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDBDE39263120BA48A4447EE2CD07B18]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\NAVNTUTL.DLL"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE6692E1170B7234EB5CFD71486A1C3F]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2GZIP.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DE6692E1170B7234EB5CFD71486A1C3F]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2GZIP.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0B852DA60BA0C04D993E7D25A47A1FA]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccL40.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0B852DA60BA0C04D993E7D25A47A1FA]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccL40.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E530F11EAE069884DAFC1C734C284319]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E73B25152A6C81B4580546FC77150DD9]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\NAVLU.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E744DEBFF8FDE954A84D52480FEAE41C]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\pki\\private-keys\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED493E8950DD165409D85C8C3BD24438]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE0F98722C09AA14AA9F5A6A01600A7B]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\DefFileChanges.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF22F364C1A23C643AE004480F5EA9FE]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\QsInfo.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF45D102C20B4734FAB39D8B3ACC47B1]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SCANCFG.DAT"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F17C3A8AA6513864387A2A2DEDE74860]
"89FCFC336D8F94544B96F6245976D638"="C?\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\scandlgs.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F3A068986CC26724696ED759EE677211]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\PLATFORM.DAT"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F42B98E5315CA254F98CB0E739C7CEA1]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F42B98E5315CA254F98CB0E739C7CEA1]
"00000000000000000000000000000000"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\Dec2.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F5CCD50D15C9D8240B24B2135496BEB9]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\SymProtectStorage.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F640791D6781B144299BC34022526E89]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F890C1DE6479A8044916B360F03F6577]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FCE3BCAFEC46A6E43AB1654ED99FC358]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\savrtpel.cat"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FF8E9DDE80E1E8B4294735D09D0C7473]
"89FCFC336D8F94544B96F6245976D638"="C:\\Program Files\\Symantec AntiVirus\\nlnhook.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"Comments"="Thank you for using Symantec security products."

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"InstallLocation"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"InstallSource"="E:\\25 - Symantec Antivirus v10.2.298\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"Publisher"="Symantec Corporation"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"URLInfoAbout"="http://www.symantec.com"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"URLUpdateInfo"="http://www.symantec.com"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89FCFC336D8F94544B96F6245976D638\InstallProperties]
"DisplayName"="Symantec AntiVirus"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
"ccApp"="\"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccAlert.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccProSub.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetEvt.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSet.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\sevinst.exe"=dword:000001f4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec\\LiveUpdate\\S32LIVE1.DLL"=dword:00000064

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec\\LiveUpdate\\S32LUIS1.DLL"=dword:00000064

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec\\S32EVNT1.DLL"="2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec\\SYMEVENT.SYS"="2"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\webshell.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\vpshell2.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\scandlgs.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ldvpui.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\SymProtectUI.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPView.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPTask.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPDlgs.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDVPCtls.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LDDateTm.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\bbRGen.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\UpdMgr.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCSvc.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCEvt.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\SPBBCDrv.sys"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\SPBBC.spm"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ScsComms.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\Transman.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec AntiVirus\\DoScan.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec AntiVirus\\Dec3.cfg"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Symantec AntiVirus\\GenMar.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccWebWnd.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccSetMgr.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccProd.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\ccCommon.grd"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccLgView.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccErrDsp.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccApp.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SNDunin.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SNDInst.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SNDSrvc.exe"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\IMailUI.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests\\ccOEH.grd"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\ccEmlPxy.dll"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\ExchngUI.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"C:\\Program Files\\Fichiers communs\\Symantec Shared\\SSC\\LotNtsUI.ocx"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Common Client]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Common Client\ErrorDisplay]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Common Client\ErrorDisplay\MsgText]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Common Client\ErrorDisplay\MsgText\Default]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"SAV Install Directory"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"Savrt"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"SAVCE"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"NAVNT"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"SPBBC"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"Symantec Shared Directory"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps]
"Common Client Decomposers"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\Decomposers\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\LiveUpdate]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\LiveUpdate\Preferences]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\OEM]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\PatchInst]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\PatchInst\SND]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\PatchInst\SND]
"ImagePath"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SNDunin.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Shared Technology]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Shared Technology\AutoLiveUpdate]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedDefs]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedDefs\DefWatch]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedDefs\DefWatch\DirWatchHandlers]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedDefs\DefWatch\Handlers]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedDefs\MicroDefs]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
"LiveUpdate"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
"LiveUpdate1"="C:\\Program Files\\Symantec\\LiveUpdate"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
@="C:\\Program Files\\Symantec"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SharedUsage]
"Location1"="C:\\Program Files\\Symantec"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SPBBC]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus\Install]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus\Install\7.50]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus\Install\7.50]
"InstallDir"="C:\\Program Files\\Symantec AntiVirus\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus\Install\7.50]
"SharedComponents"="C:\\Program Files\\Symantec"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus\Install\7.50]
"SymantecShared"="C:\\Program Files\\Fichiers communs\\Symantec Shared"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec AntiVirus\Quarantine]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symevent]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symevent\SAVCE]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symevent\SymNetDrv]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symevent\VDD]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symevent\VDD\SAVCE]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symevent\VDD\SymNetDrv]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SymNetDrv]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SymNetDrv\Parameters]

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SymNetDrv\Parameters]
"SettingsPath2"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\SymNetDrv\Parameters]
"SettingsPath"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_CCEVTMGR\0000]
"DeviceDesc"="Symantec Event Manager"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_EECTRL\0000]
"DeviceDesc"="Symantec Eraser Control driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\eeCtrl]
"DisplayName"="Symantec Eraser Control driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\eeCtrl\Parameters]
"SPManifest"="\\??\\C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\EraserUtilRebootDrv]
"ImagePath"="\\??\\C:\\Program Files\\Fichiers communs\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Defwatch]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\DefWatch.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\SavRoam]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\SavRoam.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Symantec AntiVirus]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\System\SAVRT]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\savrt.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SPBBCDrv\Parameters]
"Configuration"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\2008-05-22-74f2.kc"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_CCEVTMGR\0000]
"DeviceDesc"="Symantec Event Manager"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_EECTRL\0000]
"DeviceDesc"="Symantec Eraser Control driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\eeCtrl]
"DisplayName"="Symantec Eraser Control driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\eeCtrl\Parameters]
"SPManifest"="\\??\\C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\EraserUtilRebootDrv]
"ImagePath"="\\??\\C:\\Program Files\\Fichiers communs\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Defwatch]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\DefWatch.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\SavRoam]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\SavRoam.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Symantec AntiVirus]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\System\SAVRT]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\savrt.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SPBBCDrv\Parameters]
"Configuration"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\2008-05-22-74f2.kc"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CCEVTMGR\0000]
"DeviceDesc"="Symantec Event Manager"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_EECTRL\0000]
"DeviceDesc"="Symantec Eraser Control driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\eeCtrl]
"DisplayName"="Symantec Eraser Control driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\eeCtrl\Parameters]
"SPManifest"="\\??\\C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPManifests"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EraserUtilRebootDrv]
"ImagePath"="\\??\\C:\\Program Files\\Fichiers communs\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Defwatch]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\DefWatch.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\SavRoam]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\SavRoam.exe"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Symantec AntiVirus]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\System\SAVRT]
"EventMessageFile"="C:\\Program Files\\Symantec AntiVirus\\savrt.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SPBBCDrv\Parameters]
"Configuration"="C:\\Program Files\\Fichiers communs\\Symantec Shared\\SPBBC\\2008-05-22-74f2.kc"

[HKEY_USERS\S-1-5-21-2000478354-299502267-839522115-1003\SOFTWARE\Microsoft\Search Assistant\ACMru\5603]
"006"="Symantec"

[HKEY_USERS\S-1-5-21-2000478354-299502267-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Symantec Client Security]

[HKEY_USERS\S-1-5-21-2000478354-299502267-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RunMRU]
"h"="sc delete \"Symantec AntiVirus\"\\1"

[HKEY_USERS\S-1-5-21-2000478354-299502267-839522115-1003\SOFTWARE\Microsoft\Windows\ShellNoRoam\MUICache]
"C:\\PROGRA~1\\SYMANT~1\\VPTray.exe"="Symantec AntiVirus"

[HKEY_USERS\S-1-5-21-2000478354-299502267-839522115-1003\SOFTWARE\WinRAR SFX]
"Symantec Ghost Installer"="Symantec Ghost Installer"
Eli
Regular Member
 
Posts: 25
Joined: June 17th, 2008, 7:45 am
Advertisement
Register to Remove

PreviousNext

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 32 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware