Est-ce une attaque et que faire ?

Résolu
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention   -  
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour à tous,

Je viens de recevoir ce message de la part de yahoo sur mon compte :
"Détection d'une activité inhabituelle

Dans le but de protéger votre compte, celui-ci a été suspendu pendant 48h ; vous ne pourrez ni envoyer, ni sauvegarder, ni recevoir de messages."

Le vendredi soir, j'avais reçu le même message et je ne pouvais plus ni envoyer ni recevoir mes messages.

La situation s'est débloquée hier dimanche sans aucune intervention de ma part et sans une explication plus explicite.

Voici qu'au moment où je vous écrit ce message, je viens de recevoir encore le même message.

Quelqu'un pourrait non seulement m'expliquer et mieux me donner des conseils pratiques pour que je ne me retrouve plus dans cette situation.

Je suis membre d'une dizaine de forum d'échanges et une interruption de transfert de message me pénalise grandement.

Merci d'avance
Andochanga
A voir également:

13 réponses

jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
slt,



Télécharge ici :

http://images.malwareremoval.com/random/RSIT.exe

random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.

Double-clique sur RSIT.exe afin de lancer RSIT.

Clique Continue à l'écran Disclaimer.

Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

Poste le contenu de log.txt (<<qui sera affiché)
ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

NB : Les rapports sont sauvegardés dans le dossier C:\rsit
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
Merci pour votre réponse et voici les informations demandées :




Logfile of random's system information tool 1.05 (written by random/random)
Run by la famille at 2009-03-17 22:54:20
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 2 GB (5%) free of 38 GB
Total RAM: 1535 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:54:37, on 17/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ASUSKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\Mixer.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Labtec\Desktop\V5.1\moffice.exe
C:\Program Files\Labtec\Desktop\V5.1\kbdap32a.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Neuf\Widget Neuf\9widget.exe
C:\Program Files\Labtec\Desktop\V5.1\MOUSE32A.EXE
C:\Program Files\Club-Internet\Lanceur\lanceur.exe
D:\Mozilla Firefox\firefox.exe
G:\radhort.exe
g:\pub\wordview.EXE
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
C:\Documents and Settings\la famille\Bureau\RSIT.exe
C:\Documents and Settings\la famille\Bureau\la famille.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\MEDIAC~1.5FO\STREAM~1\ARCURL~1.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\logiciel\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: EoBho - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: AdvancedAdvisor - {7141E838-7BE0-F63D-6939-29A2CC9FBB15} - C:\Program Files\AdvancedAdvisor\AdvancedAdvisor-2.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: Video Speedy - {E74B0A8E-68C0-4866-8288-53EFF8ECBC28} - D:\VideoSpeedy\VSpeed.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] C:\Program Files\Labtec\Desktop\V5.1\moffice.exe
O4 - HKLM\..\Run: [OFFICEKB] C:\Program Files\Labtec\Desktop\V5.1\kbdap32a.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [Widget Neuf] "C:\Program Files\Neuf\Widget Neuf\9widget.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] "C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe" (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Editeur audio basic - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\Program Files\Akimania\Editeur Audio Basic\Studio enregistrement (file missing)
O9 - Extra 'Tools' menuitem: &Editeur audio basic - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\Program Files\Akimania\Editeur Audio Basic\Studio enregistrement (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - http://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASUS Keyboard Service (ASUSKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ASUSKBService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CT Device Query service (CTDevice_Srv) - Unknown owner - C:\Program Files\Creative\Shared Files\CTDevSrv.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
c'est quoi ces deux fichiers:

G:\radhort.exe
g:\pub\wordview.EXE

__________


Pour fusionner:

http://img.photobucket.com/albums/v666/sUBs/CFScript.gif

_______________

telecharge combofix:

http://download.bleepingcomputer.com/sUBs/ComboFix.exe
Sauvegarde le sur ton bureau et pas ailleurs !

_________________

Ferme tous tes navigateurs (donc copie ou imprime les instructions avant)

Crée un nouveau document texte : clic droit de souris sur le bureau > Nouveau > Document Texte, et copie dedans les lignes suivantes :





File::
H:\fooool.exe
E:\start.exe
Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{27011f1d-0889-11dd-bd98-0020ed9c0b35}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{df2c9b99-234d-11dc-b486-0020ed9c0b35}]


Enregistre ce fichier sous le nom CFscript


Fait un glisser/déposer de ce fichier CFscrïpt sur le fichier ComboFix.exe

Clique sur le fichier CFScript, maintient le doigt enfoncé et glisse la souris pour que l'icône du CFScript vienne recouvrir l'icône de Combofix. Relache la souris. Combofix va démarrer.

Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.

Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!

Ne touche à rien tant que le scan n'est pas terminé.

Une fois le scan achevé, un rapport va s'afficher: poste son contenu.


Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt

__________



Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

* Lance l'installation du programme en exécutant le fichier téléchargé.
* Double-clique maintenant sur le raccourci de Toolbar-S&D.
* Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
* Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
* Poste le rapport généré. (C:\TB.txt)
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
ComboFix 09-03-15.01 - la famille 2009-03-18 14:01:26.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.1.1036.18.1535.1014 [GMT 1:00]
Lancé depuis: c:\documents and settings\la famille\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\la famille\Bureau\CFscript.txt
AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Updated)
FW: ZoneAlarm Firewall *enabled*

FILE ::
E:\start.exe
H:\fooool.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Conditions générales.url
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Confidentialité.url
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Désinstaller.lnk
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\MessengerSkinner.lnk
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Website.url
c:\documents and settings\All Users\Menu Démarrer\Programmes\VideoSpeedy
c:\documents and settings\All Users\Menu Démarrer\Programmes\VideoSpeedy\Uninstall.lnk
c:\documents and settings\All Users\Menu Démarrer\Programmes\VideoSpeedy\VSpeedClient.lnk
c:\documents and settings\ANDO Administrateur\Application Data\MessengerSkinner
c:\documents and settings\ANDO Administrateur\Application Data\MessengerSkinner\Userdata\pack1.cab
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk.dat
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk.exe
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk_nav.dat
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk_navps.dat
c:\documents and settings\Memini\Local Settings\Application Data\ecbxomdb.dat
c:\documents and settings\Memini\Local Settings\Application Data\ecbxomdb_nav.dat
c:\documents and settings\Memini\Local Settings\Application Data\ecbxomdb_navps.dat

.
((((((((((((((((((((((((((((( Fichiers créés du 2009-02-18 au 2009-03-18 ))))))))))))))))))))))))))))))))))))
.

2009-03-18 12:56 . 2009-03-18 12:56 <REP> d--hs---- c:\documents and settings\TEMP
2009-03-17 22:54 . 2009-03-17 22:54 <REP> d----c--- C:\rsit
2009-03-17 20:46 . 2009-03-17 20:46 <REP> d-------- c:\program files\radhort
2009-03-17 20:46 . 1998-05-15 21:01 604,432 --a------ c:\windows\system32\COMCTL32.OCX
2009-03-17 20:46 . 1997-07-19 19:00 193,296 --a------ c:\windows\system32\MCI32.OCX
2009-03-17 20:46 . 1997-01-16 01:00 60,688 --a------ c:\windows\system32\SYSINFO.OCX
2009-03-16 22:03 . 2009-03-16 22:03 <REP> d-------- c:\documents and settings\Mamu Mujinga\Tracing
2009-03-08 13:09 . 2009-03-17 17:52 <REP> d-------- c:\documents and settings\T. Jérémie\Tracing
2009-03-08 13:09 . 2009-03-17 17:52 <REP> d-------- c:\documents and settings\T. Jérémie\Tracing
2009-03-08 13:01 . 2009-03-14 10:49 <REP> d-------- c:\documents and settings\Kilongo {HustleKing}\Tracing
2009-03-08 09:57 . 2009-03-15 18:48 <REP> d-------- c:\documents and settings\K. Joseph\Tracing
2009-03-07 15:59 . 2009-03-17 15:22 <REP> d-------- c:\documents and settings\Memini\Tracing
2009-03-05 17:36 . 2009-03-05 17:37 <REP> d-------- c:\program files\Conference
2009-03-04 21:44 . 2009-03-15 17:09 <REP> d-------- c:\documents and settings\Furaha\Tracing
2009-03-04 21:28 . 2009-03-13 19:37 <REP> d-------- c:\documents and settings\la famille\Tracing
2009-03-04 21:27 . 2009-03-06 09:26 <REP> d-------- c:\program files\Microsoft Silverlight
2009-03-04 21:26 . 2009-03-04 21:26 <REP> d-------- c:\program files\Microsoft Office Outlook Connector
2009-03-04 21:19 . 2009-03-04 21:19 <REP> d-------- c:\program files\Microsoft Sync Framework
2009-03-04 21:13 . 2009-03-04 21:26 <REP> d-------- c:\program files\Microsoft
2009-03-04 21:12 . 2009-03-04 21:12 <REP> d-------- c:\program files\Windows Live SkyDrive
2009-03-04 20:50 . 2009-03-04 20:50 <REP> d-------- c:\program files\Fichiers communs\Windows Live
2009-03-04 20:27 . 2009-03-04 20:27 <REP> d-------- c:\documents and settings\Furaha\Messenger Plus! Live

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-18 12:43 --------- d-----w c:\program files\AdvancedAdvisor
2009-03-18 11:56 8,939,244 ----a-w c:\windows\Internet Logs\tvDebug.zip
2009-03-17 01:42 238,532 --sha-w c:\windows\system32\drivers\fidbox.idx
2009-03-17 01:42 20,084,768 --sha-w c:\windows\system32\drivers\fidbox.dat
2009-03-13 21:24 --------- d-----w c:\documents and settings\la famille\Application Data\LimeWire
2009-03-11 16:21 --------- d-----w c:\documents and settings\All Users\Application Data\Microsoft Help
2009-03-04 20:26 --------- d-----w c:\program files\Windows Live
2009-03-04 20:19 --------- d-----w c:\program files\Windows Live Toolbar
2009-02-27 10:48 --------- d-----w c:\program files\Safari
2009-02-21 15:57 --------- d-----w c:\documents and settings\Kilongo {HustleKing}\Application Data\LimeWire
2009-02-15 20:27 --------- d-----w c:\documents and settings\Memini\Application Data\LimeWire
2009-02-15 08:45 --------- d-----w c:\documents and settings\K. Joseph\Application Data\Apple Computer
2009-02-09 14:05 1,846,912 ----a-w c:\windows\system32\win32k.sys
2009-02-08 16:33 --------- d-----w c:\documents and settings\Memini\Application Data\CyberLink
2009-02-06 18:39 308,600 ----a-w c:\windows\WLXPGSS.SCR
2009-02-06 17:52 49,504 ----a-w c:\windows\system32\sirenacm.dll
2009-02-06 12:30 2,066,944 ----a-w c:\windows\Internet Logs\xDBC.tmp
2009-01-30 20:08 --------- d-----w c:\documents and settings\Furaha\Application Data\Apple Computer
2009-01-29 18:02 --------- d-----w c:\documents and settings\A. Sandrine\Application Data\Ahead
2009-01-29 17:59 --------- d-----w c:\documents and settings\A. Sandrine\Application Data\Apple Computer
2009-01-18 15:10 --------- d-----w c:\documents and settings\T. Jérémie\Application Data\LimeWire
2008-12-20 22:47 826,368 ----a-w c:\windows\system32\wininet.dll
2008-04-22 18:24 32 ----a-w c:\documents and settings\All Users\Application Data\ezsid.dat
2007-08-18 14:37 245,760 ----a-w c:\program files\Uninstall Ask Toolbar.dll
2004-07-22 08:51 3,432,656 -c--a-w c:\program files\ManagedDX.CAB
2004-07-19 20:58 1,156,363 -c--a-w c:\program files\BDANT.cab
2004-07-19 20:53 976,020 -c--a-w c:\program files\BDAXP.cab
2004-07-09 12:17 13,265,040 -c--a-w c:\program files\dxnt.cab
2004-07-09 07:13 703,080 -c--a-w c:\program files\BDA.cab
2004-07-09 07:13 15,493,481 -c--a-w c:\program files\DirectX.cab
2004-07-09 02:08 472,576 ----a-w c:\program files\dxsetup.exe
2004-07-09 02:08 2,242,560 ----a-w c:\program files\dsetup32.dll
2004-07-09 01:03 62,976 ----a-w c:\program files\DSETUP.dll
2001-11-23 04:08 712,704 -c--a-w c:\windows\inf\OTHER\AUDIO3D.DLL
2008-10-16 10:23 32,768 -csha-w c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012008101620081017\index.dat
.

((((((((((((((((((((((((((((( snapshot@2008-06-02_21.56.05,54 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB938464\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
+ 2008-05-02 13:33:12 83,968 -c--a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
+ 2008-05-02 14:01:52 83,968 -c--a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
+ 2008-05-02 13:44:40 83,968 -c--a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-04-23 07:19:26 124,928 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\advpack.dll
+ 2008-04-23 07:19:26 347,136 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\dxtmsft.dll
+ 2008-04-23 07:19:26 214,528 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\dxtrans.dll
+ 2008-04-23 07:19:26 132,608 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\extmgr.dll
+ 2008-04-23 07:19:26 63,488 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\icardie.dll
+ 2008-04-22 08:02:19 70,656 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ie4uinit.exe
+ 2008-04-23 07:19:26 153,088 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieakeng.dll
+ 2008-04-23 07:19:26 230,400 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieaksie.dll
+ 2008-04-20 05:07:38 161,792 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dat
+ 2008-04-23 07:19:26 383,488 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dll
+ 2008-04-23 07:19:26 388,608 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iedkcs32.dll
+ 2008-04-23 07:19:26 6,068,224 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieframe.dll
+ 2008-04-23 07:19:26 44,544 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iernonce.dll
+ 2008-04-23 07:19:26 267,776 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iertutil.dll
+ 2008-04-22 08:02:19 13,824 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieudinit.exe
+ 2008-04-22 08:02:46 625,664 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iexplore.exe
+ 2008-04-23 07:19:26 27,648 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\jsproxy.dll
+ 2008-04-23 07:19:27 459,264 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msfeeds.dll
+ 2008-04-23 07:19:27 52,224 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msfeedsbs.dll
+ 2008-04-23 07:19:27 3,593,728 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mshtml.dll
+ 2008-04-23 07:19:27 478,208 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mshtmled.dll
+ 2008-04-23 07:19:27 193,024 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msrating.dll
+ 2008-04-23 07:19:27 671,232 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mstime.dll
+ 2008-04-23 07:19:27 102,912 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\occache.dll
+ 2008-04-23 07:19:27 44,544 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\pngfilt.dll
+ 2008-04-23 07:19:27 105,984 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\url.dll
+ 2008-04-23 07:19:27 1,162,752 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\urlmon.dll
+ 2008-04-23 07:19:27 233,472 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\webcheck.dll
+ 2008-04-23 07:19:27 827,392 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB950760\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB950760\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB950760\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB950760\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB950760\update\updspapi.dll
+ 2008-05-08 12:14:51 203,008 -c--a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2008-05-08 14:02:52 203,136 -c--a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2008-05-08 13:58:17 203,136 -c--a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-07-07 20:18:27 253,952 -c--a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
+ 2008-07-07 20:28:20 253,952 -c--a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
+ 2008-07-07 20:24:11 253,952 -c--a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 -c--a-w c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2008-04-11 18:40:33 683,520 -c--a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
+ 2008-04-11 19:05:22 691,712 -c--a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
+ 2008-04-11 22:23:04 691,712 -c--a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2007-12-03 15:25:43 767,352 -c--a-w c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2008-07-14 11:03:00 62,976 -c--a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
+ 2008-07-11 12:42:28 62,976 -c--a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
+ 2008-07-11 12:51:51 62,976 -c--a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
+ 2008-06-14 18:03:13 272,768 -c--a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
+ 2008-06-14 17:33:37 272,768 -c--a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
+ 2008-06-14 17:40:19 272,768 -c--a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-04-14 16:17:04 272,768 -c--a-w c:\windows\$hf_mig$\KB951376\SP2QFE\bthport.sys
+ 2008-04-14 15:59:30 272,768 -c--a-w c:\windows\$hf_mig$\KB951376\SP3GDR\bthport.sys
+ 2008-04-14 16:22:05 272,768 -c--a-w c:\windows\$hf_mig$\KB951376\SP3QFE\bthport.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951376\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951376\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951376\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB951376\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB951376\update\updspapi.dll
+ 2008-05-07 04:55:47 1,294,336 -c--a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
+ 2008-05-07 05:11:24 1,294,336 -c--a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
+ 2008-05-07 05:04:59 1,294,336 -c--a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
+ 2006-08-16 12:13:24 100,352 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
+ 2008-06-20 10:44:08 138,368 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
+ 2008-06-20 17:37:01 147,968 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
+ 2008-06-20 17:37:01 247,808 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
+ 2008-06-20 10:44:42 360,960 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
+ 2008-06-20 09:32:39 225,920 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
+ 2008-06-20 11:40:08 138,496 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
+ 2008-06-20 17:47:22 147,968 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
+ 2008-06-20 17:47:22 247,808 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
+ 2008-06-20 11:51:12 361,600 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
+ 2008-06-20 11:08:27 225,856 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
+ 2008-06-20 11:48:03 138,496 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 17:44:02 147,968 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 17:44:02 247,808 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 11:59:02 361,600 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 11:16:44 225,856 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 -c--a-w c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2008-05-07 09:07:23 135,168 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\cscript.exe
+ 2008-05-09 10:51:45 512,000 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\jscript.dll
+ 2008-05-09 10:51:45 180,224 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\scrobj.dll
+ 2008-05-09 10:51:45 172,032 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\scrrun.dll
+ 2008-05-09 10:51:45 430,080 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\vbscript.dll
+ 2008-05-08 11:24:44 155,648 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\wscript.exe
+ 2008-05-09 10:51:45 90,112 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\wshext.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB951978\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB951978\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB951978\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 -c--a-w c:\windows\$hf_mig$\KB951978\update\update.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$hf_mig$\KB951978\update\updspapi.dll
+ 2008-05-01 15:04:51 331,776 -c--a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
+ 2008-05-01 14:36:26 331,776 -c--a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
+ 2008-05-01 14:39:23 331,776 -c--a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2008-06-24 16:30:27 74,240 -c--a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
+ 2008-06-24 16:44:02 74,240 -c--a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
+ 2008-06-24 16:53:52 74,240 -c--a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
+ 2008-06-23 15:40:01 124,928 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\advpack.dll
+ 2008-06-23 15:40:01 347,136 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtmsft.dll
+ 2008-06-23 15:40:01 214,528 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtrans.dll
+ 2008-06-23 15:40:01 132,608 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\extmgr.dll
+ 2008-06-23 15:40:01 63,488 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\icardie.dll
+ 2008-06-23 08:23:18 70,656 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
+ 2008-06-23 15:40:01 153,088 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakeng.dll
+ 2008-06-23 15:40:01 230,400 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieaksie.dll
+ 2008-06-21 05:23:53 161,792 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dat
+ 2008-06-23 15:40:02 383,488 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dll
+ 2008-06-23 15:40:02 388,608 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iedkcs32.dll
+ 2008-06-23 15:40:04 6,068,736 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieframe.dll
+ 2008-06-23 15:40:04 44,544 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iernonce.dll
+ 2008-06-23 15:40:04 267,776 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iertutil.dll
+ 2008-06-23 08:23:18 13,824 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
+ 2008-06-23 08:23:52 625,664 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
+ 2008-06-23 15:40:05 27,648 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\jsproxy.dll
+ 2008-06-23 15:40:05 459,264 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeeds.dll
+ 2008-06-23 15:40:05 52,224 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeedsbs.dll
+ 2008-06-23 15:40:07 3,594,240 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtml.dll
+ 2008-06-23 15:40:07 477,696 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtmled.dll
+ 2008-06-23 15:40:07 193,024 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msrating.dll
+ 2008-06-23 15:40:07 671,232 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mstime.dll
+ 2008-06-23 15:40:07 102,912 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\occache.dll
+ 2008-06-23 15:40:07 44,544 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\pngfilt.dll
+ 2008-06-23 15:40:07 105,984 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\url.dll
+ 2008-06-23 15:40:08 1,162,752 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\urlmon.dll
+ 2008-06-23 15:40:08 233,472 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\webcheck.dll
+ 2008-06-23 15:40:08 827,904 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\update\updspapi.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB953839\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
+ 2008-09-15 15:20:39 1,847,040 -c--a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 -c--a-w c:\windows\$hf_mig$\KB954211\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
+ 2008-09-10 01:12:14 1,379,840 -c--a-w c:\windows\$hf_mig$\KB954459\SP3QFE\msxml6.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB954459\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB954459\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB954459\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB954459\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB954459\update\updspapi.dll
+ 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
+ 2008-09-04 17:12:47 1,106,944 -c--a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2008-07-09 12:10:36 406,392 -c--a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
+ 2008-08-26 09:10:25 124,928 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\advpack.dll
+ 2008-08-26 09:10:25 347,136 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtmsft.dll
+ 2008-08-26 09:10:25 214,528 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtrans.dll
+ 2008-08-26 09:10:25 132,608 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\extmgr.dll
+ 2008-08-26 09:10:25 63,488 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\icardie.dll
+ 2008-08-25 08:43:21 70,656 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
+ 2008-08-26 09:10:26 153,088 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakeng.dll
+ 2008-08-26 09:10:26 230,400 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieaksie.dll
+ 2008-08-23 05:54:50 161,792 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dat
+ 2008-08-26 09:10:26 380,928 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dll
+ 2008-08-26 09:10:26 388,608 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-03 16:22:30 6,068,224 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieframe.dll
+ 2008-08-26 09:10:27 44,544 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iernonce.dll
+ 2008-08-26 09:10:27 267,776 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iertutil.dll
+ 2008-08-25 08:43:21 13,824 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
+ 2008-08-23 05:56:16 635,848 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iexplore.exe
+ 2008-08-26 09:10:27 27,648 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\jsproxy.dll
+ 2008-08-26 09:10:27 459,264 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeeds.dll
+ 2008-08-26 09:10:27 52,224 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeedsbs.dll
+ 2008-08-26 09:10:28 3,594,752 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll
+ 2008-08-26 09:10:28 477,696 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtmled.dll
+ 2008-08-26 09:10:28 193,024 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msrating.dll
+ 2008-08-26 09:10:29 671,232 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mstime.dll
+ 2008-08-26 09:10:29 102,912 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\occache.dll
+ 2008-08-26 09:10:29 44,544 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\pngfilt.dll
+ 2008-08-26 09:10:29 105,984 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\url.dll
+ 2008-08-26 09:10:29 1,162,752 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\urlmon.dll
+ 2008-08-26 09:10:29 233,472 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\webcheck.dll
+ 2008-08-26 09:10:29 827,904 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB956391\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
+ 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2008-08-14 10:34:26 138,496 -c--a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
+ 2008-08-14 13:55:54 2,147,328 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-08-14 17:26:00 2,068,096 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
+ 2008-08-14 13:55:47 2,025,984 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-08-14 17:26:02 2,191,232 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB956841\update\update.exe
+ 2008-07-09 07:40:35 406,392 -c--a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
+ 2008-09-08 11:37:19 333,824 -c--a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB957095\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
+ 2008-10-24 11:41:11 455,936 -c--a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
+ 2008-07-08 13:03:54 18,296 -c--a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
+ 2008-07-08 13:03:55 234,872 -c--a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2008-07-08 13:03:54 26,488 -c--a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
+ 2008-07-08 13:03:57 767,352 -c--a-w c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2008-07-08 13:04:05 406,392 -c--a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
+ 2008-10-16 19:33:14 124,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\advpack.dll
+ 2008-10-16 19:33:14 347,136 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtmsft.dll
+ 2008-10-16 19:33:14 214,528 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtrans.dll
+ 2008-10-16 19:33:14 132,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\extmgr.dll
+ 2008-10-16 19:33:14 63,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\icardie.dll
+ 2008-10-16 12:46:08 70,656 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe
+ 2008-10-16 19:33:14 153,088 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakeng.dll
+ 2008-10-16 19:33:14 230,400 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieaksie.dll
+ 2008-10-15 06:33:26 161,792 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dat
+ 2008-10-16 19:33:15 380,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dll
+ 2008-10-16 19:33:15 388,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-16 19:33:16 6,068,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieframe.dll
+ 2008-10-16 19:33:16 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iernonce.dll
+ 2008-10-16 19:33:16 267,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iertutil.dll
+ 2008-10-16 12:46:08 13,824 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe
+ 2008-10-15 06:34:58 633,632 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iexplore.exe
+ 2008-10-16 19:33:17 27,648 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\jsproxy.dll
+ 2008-10-16 19:33:18 459,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeeds.dll
+ 2008-10-16 19:33:18 52,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeedsbs.dll
+ 2008-10-16 19:33:19 3,595,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
+ 2008-10-16 19:33:20 477,696 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtmled.dll
+ 2008-10-16 19:33:20 193,024 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msrating.dll
+ 2008-10-16 19:33:21 671,232 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mstime.dll
+ 2008-10-16 19:33:21 102,912 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\occache.dll
+ 2008-10-16 19:33:21 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\pngfilt.dll
+ 2008-10-16 19:33:21 105,984 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\url.dll
+ 2008-10-16 19:33:21 1,163,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\urlmon.dll
+ 2008-10-16 19:33:22 233,472 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\webcheck.dll
+ 2008-10-16 19:33:22 827,904 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\updspapi.dll
+ 2008-10-15 16:31:32 339,456 -c--a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2008-12-11 12:33:59 333,952 ----a-w c:\windows\$hf_mig$\KB958687\SP3QFE\srv.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958687\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958687\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958687\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958687\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958687\update\updspapi.dll
+ 2008-12-13 06:27:45 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
+ 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
+ 2008-07-09 07:40:22 18,296 ----a-w c:\windows\$hf_mig$\KB960715\spmsg.dll
+ 2008-07-09 07:40:24 234,872 ----a-w c:\windows\$hf_mig$\KB960715\spuninst.exe
+ 2008-07-09 07:40:22 26,488 ----a-w c:\windows\$hf_mig$\KB960715\update\spcustom.dll
+ 2008-11-15 17:18:14 767,352 ----a-w c:\windows\$hf_mig$\KB960715\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB960715\update\updspapi.dll
+ 2008-12-20 23:47:28 124,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\advpack.dll
+ 2008-12-20 23:47:28 347,136 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\dxtmsft.dll
+ 2008-12-20 23:47:28 214,528 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\dxtrans.dll
+ 2008-12-20 23:47:28 132,608 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\extmgr.dll
+ 2008-12-20 23:47:28 63,488 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\icardie.dll
+ 2008-12-19 09:41:51 70,656 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ie4uinit.exe
+ 2008-12-20 23:47:28 153,088 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieakeng.dll
+ 2008-12-20 23:47:28 230,400 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieaksie.dll
+ 2008-12-19 05:24:02 161,792 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieapfltr.dat
+ 2008-12-20 23:47:29 380,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieapfltr.dll
+ 2008-12-20 23:47:29 388,608 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iedkcs32.dll
+ 2008-12-20 23:47:30 6,068,736 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieframe.dll
+ 2008-12-20 23:47:30 44,544 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iernonce.dll
+ 2008-12-20 23:47:31 267,776 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iertutil.dll
+ 2008-12-19 09:41:52 13,824 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieudinit.exe
+ 2008-12-19 05:25:30 634,024 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iexplore.exe
+ 2008-12-20 23:47:31 27,648 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\jsproxy.dll
+ 2008-12-20 23:47:31 459,264 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msfeeds.dll
+ 2008-12-20 23:47:31 52,224 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msfeedsbs.dll
+ 2009-01-16 16:20:14 3,596,288 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll
+ 2008-12-20 23:47:33 477,696 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtmled.dll
+ 2008-12-20 23:47:33 193,024 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msrating.dll
+ 2008-12-20 23:47:34 671,232 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mstime.dll
+ 2008-12-20 23:47:34 102,912 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\occache.dll
+ 2008-12-20 23:47:34 44,544 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\pngfilt.dll
+ 2008-12-20 23:47:34 105,984 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\url.dll
+ 2008-12-20 23:47:35 1,163,264 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\urlmon.dll
+ 2008-12-20 23:47:35 233,472 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\webcheck.dll
+ 2008-12-20 23:47:36 827,904 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB961260-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB961260-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\updspapi.dll
+ 2008-06-17 19:04:03 8,518,144 ----a-w c:\windows\$hf_mig$\KB967715\SP3QFE\shell32.dll
+ 2008-07-09 07:40:22 18,296 ----a-w c:\windows\$hf_mig$\KB967715\spmsg.dll
+ 2008-07-09 07:40:24 234,872 ----a-w c:\windows\$hf_mig$\KB967715\spuninst.exe
+ 2008-07-09 07:40:22 26,488 ----a-w c:\windows\$hf_mig$\KB967715\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB967715\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB967715\update\updspapi.dll
+ 2008-04-08 21:27:50 2,232 -c----w c:\windows\$NtServicePackUninstall$\1zfj13dz.dat
+ 2006-08-16 11:59:27 100,352 -c----w c:\windows\$NtServicePackUninstall$\6to4svc.dll
+ 2006-10-04 14:05:26 39,424 -c----w c:\windows\$NtServicePackUninstall$\acadproc.dll
+ 2006-10-04 14:05:26 39,424 -c----w c:\windows\$NtServicePackUninstall$\acadproc.dll.000
+ 2004-08-19 14:09:52 189,952 -c----w c:\windows\$NtServicePackUninstall$\accwiz.exe
+ 2004-08-19 14:09:20 1,852,416 -c----w c:\windows\$NtServicePackUninstall$\acgenral.dll
+ 2004-08-19 14:09:20 1,852,416 -c----w c:\windows\$NtServicePackUninstall$\acgenral.dll.000
+ 2004-08-19 14:09:20 450,048 -c----w c:\windows\$NtServicePackUninstall$\aclayers.dll
+ 2004-08-19 14:09:20 450,048 -c----w c:\windows\$NtServicePackUninstall$\aclayers.dll.000
+ 2004-08-19 14:09:20 137,728 -c----w c:\windows\$NtServicePackUninstall$\aclua.dll
+ 2004-08-19 14:09:20 137,728 -c----w c:\windows\$NtServicePackUninstall$\aclua.dll.000
+ 2004-08-19 14:09:20 119,296 -c----w c:\windows\$NtServicePackUninstall$\aclui.dll
+ 2004-08-19 13:51:56 188,672 -c----w c:\windows\$NtServicePackUninstall$\acpi.sys
+ 2004-08-19 14:09:20 244,736 -c----w c:\windows\$NtServicePackUninstall$\acspecfc.dll
+ 2004-08-19 14:09:20 244,736 -c----w c:\windows\$NtServicePackUninstall$\acspecfc.dll.000
+ 2004-08-19 14:09:20 194,048 -c----w c:\windows\$NtServicePackUninstall$\activeds.dll
+ 2004-08-19 14:09:52 4,096 -c----w c:\windows\$NtServicePackUninstall$\actmovie.exe
+ 2004-08-19 14:09:20 101,888 -c----w c:\windows\$NtServicePackUninstall$\actxprxy.dll
+ 2004-08-19 14:09:20 116,224 -c----w c:\windows\$NtServicePackUninstall$\acxtrnal.dll
+ 2004-08-19 14:09:20 116,224 -c----w c:\windows\$NtServicePackUninstall$\acxtrnal.dll.000
+ 2004-08-19 14:09:20 29,696 -c----w c:\windows\$NtServicePackUninstall$\admexs.dll
+ 2003-03-24 13:52:04 20,540 -c----w c:\windows\$NtServicePackUninstall$\admin.dll
+ 2003-03-24 13:52:04 16,439 -c----w c:\windows\$NtServicePackUninstall$\admin.exe
+ 2004-08-19 14:09:20 43,520 -c----w c:\windows\$NtServicePackUninstall$\admwprox.dll
+ 2004-08-19 14:09:20 290,816 -c----w c:\windows\$NtServicePackUninstall$\adsiis51.dll
+ 2004-08-19 14:09:20 175,616 -c----w c:\windows\$NtServicePackUninstall$\adsldp.dll
+ 2004-08-19 14:09:20 143,360 -c----w c:\windows\$NtServicePackUninstall$\adsldpc.dll
+ 2004-08-19 14:09:20 68,096 -c----w c:\windows\$NtServicePackUninstall$\adsmsext.dll
+ 2004-08-19 14:09:20 263,680 -c----w c:\windows\$NtServicePackUninstall$\adsnt.dll
+ 2001-08-28 12:00:00 109,568 -c----w c:\windows\$NtServicePackUninstall$\adsnw.dll
+ 2004-08-19 14:09:20 685,056 -c----w c:\windows\$NtServicePackUninstall$\advapi32.dll
+ 2006-02-15 00:22:26 142,464 -c----w c:\windows\$NtServicePackUninstall$\aec.sys
+ 2006-02-15 00:22:26 142,464 -c----w c:\windows\$NtServicePackUninstall$\aec.sys.000
+ 2008-06-20 10:44:38 138,368 -c----w c:\windows\$NtServicePackUninstall$\afd.sys
+ 2004-08-19 14:09:20 24,064 -c----w c:\windows\$NtServicePackUninstall$\agentanm.dll
+ 2004-08-19 14:09:20 214,016 -c----w c:\windows\$NtServicePackUninstall$\agentctl.dll
+ 2006-10-12 14:04:13 42,496 -c----w c:\windows\$NtServicePackUninstall$\agentdp2.dll
+ 2007-03-09 13:48:06 57,344 -c----w c:\windows\$NtServicePackUninstall$\agentdpv.dll
+ 2004-08-19 14:09:20 49,152 -c----w c:\windows\$NtServicePackUninstall$\agentmpx.dll
+ 2004-08-19 14:09:20 24,064 -c----w c:\windows\$NtServicePackUninstall$\agentpsh.dll
+ 2004-08-19 14:09:20 44,032 -c----w c:\windows\$NtServicePackUninstall$\agentsr.dll
+ 2006-10-12 11:09:53 256,512 -c----w c:\windows\$NtServicePackUninstall$\agentsvr.exe
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0401.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0404.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0405.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0406.dll
+ 2001-08-28 12:00:00 21,504 -c----w c:\windows\$NtServicePackUninstall$\agt0407.dll
+ 2001-08-28 12:00:00 22,016 -c----w c:\windows\$NtServicePackUninstall$\agt0408.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0409.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt040b.dll
+ 2001-08-28 12:00:00 21,504 -c----w c:\windows\$NtServicePackUninstall$\agt040c.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt040d.dll
+ 2001-08-28 12:00:00 19,968 -c----w c:\windows\$NtServicePackUninstall$\agt040e.dll
+ 2001-08-28 12:00:00 20,992 -c----w c:\windows\$NtServicePackUninstall$\agt0410.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0411.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0412.dll
+ 2001-08-28 12:00:00 20,992 -c----w c:\windows\$NtServicePackUninstall$\agt0413.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0414.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0415.dll
+ 2001-08-28 12:00:00 20,480 -c----w c:\windows\$NtServicePackUninstall$\agt0416.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0419.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt041d.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt041f.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0804.dll
+ 2001-08-28 12:00:00 20,992 -c----w c:\windows\$NtServicePackUninstall$\agt0816.dll
+ 2001-08-28 12:00:00 20,480 -c----w c:\windows\$NtServicePackUninstall$\agt0c0a.dll
+ 2004-08-19 14:09:20 24,064 -c----w c:\windows\$NtServicePackUninstall$\agtintl.dll
+ 2004-08-19 14:09:52 98,304 -c----w c:\windows\$NtServicePackUninstall$\ahui.exe
+ 2004-08-19 14:09:52 44,544 -c----w c:\windows\$NtServicePackUninstall$\alg.exe
+ 2004-08-19 14:09:20 17,408 -c----w c:\windows\$NtServicePackUninstall$\alrsvc.dll
+ 2004-08-19 14:20:54 41,216 -c----w c:\windows\$NtServicePackUninstall$\amdk6.sys
+ 2004-08-19 14:20:54 41,600 -c----w c:\windows\$NtServicePackUninstall$\amdk7.sys
+ 2004-08-19 14:09:20 70,656 -c----w c:\windows\$NtServicePackUninstall$\amstream.dll
+ 2004-08-19 14:09:20 110,080 -c----w c:\windows\$NtServicePackUninstall$\appconf.dll
+ 2004-08-19 14:09:20 126,976 -c----w c:\windows\$NtServicePackUninstall$\apphelp.dll
+ 2004-08-19 14:09:20 176,640 -c----w c:\windows\$NtServicePackUninstall$\appmgmts.dll
+ 2004-08-19 14:09:20 302,592 -c----w c:\windows\$NtServicePackUninstall$\appmgr.dll
+ 2004-08-19 14:09:20 334,336 -c----w c:\windows\$NtServicePackUninstall$\aqueue.dll
+ 2004-08-19 14:20:54 60,800 -c----w c:\windows\$NtServicePackUninstall$\arp1394.sys
+ 1999-08-09 12:39:20 14,832 -c----w c:\windows\$NtServicePackUninstall$\asfsipc.dll
+ 2004-08-19 14:09:20 377,344 -c----w c:\windows\$NtServicePackUninstall$\asp51.dll
+ 2004-08-19 14:09:52 30,720 -c----w c:\windows\$NtServicePackUninstall$\asr_fmt.exe
+ 2004-08-19 14:09:52 32,768 -c----w c:\windows\$NtServicePackUninstall$\asr_pfu.exe
+ 2004-08-19 14:09:20 65,024 -c----w c:\windows\$NtServicePackUninstall$\asycfilt.dll
+ 2004-08-03 21:05:04 14,336 -c----w c:\windows\$NtServicePackUninstall$\asyncmac.sys
+ 2004-08-19 14:09:52 25,088 -c----w c:\windows\$NtServicePackUninstall$\at.exe
+ 2004-08-03 20:59:44 95,360 -c----w c:\windows\$NtServicePackUninstall$\atapi.sys
+ 2004-08-19 15:09:20 870,784 -c----w c:\windows\$NtServicePackUninstall$\ati3d1ag.dll
+ 2004-08-19 14:09:20 58,880 -c----w c:\windows\$NtServicePackUninstall$\atl.dll
+ 2004-08-19 14:09:52 11,264 -c----w c:\windows\$NtServicePackUninstall$\atmadm.exe
+ 2004-08-03 20:58:32 59,904 -c----w c:\windows\$NtServicePackUninstall$\atmarpc.sys
+ 2004-08-19 14:08:02 285,696 -c----w c:\windows\$NtServicePackUninstall$\atmfd.dll
+ 2004-08-03 20:58:36 55,936 -c----w c:\windows\$NtServicePackUninstall$\atmlane.sys
+ 2004-08-19 14:09:22 30,208 -c----w c:\windows\$NtServicePackUninstall$\atmlib.dll
+ 2001-08-28 12:00:00 11,264 -c----w c:\windows\$NtServicePackUninstall$\attrib.exe
+ 2004-08-19 14:09:22 42,496 -c----w c:\windows\$NtServicePackUninstall$\audiosrv.dll
+ 2004-08-19 14:09:52 14,336 -c----w c:\windows\$NtServicePackUninstall$\auditusr.exe
+ 2003-03-24 13:52:04 20,540 -c----w c:\windows\$NtServicePackUninstall$\author.dll
+ 2003-03-24 13:52:04 16,439 -c----w c:\windows\$NtServicePackUninstall$\author.exe
+ 2005-03-02 18:10:36 56,832 -c----w c:\windows\$NtServicePackUninstall$\authz.dll
+ 2004-08-19 14:09:52 625,152 -c----w c:\windows\$NtServicePackUninstall$\autochk.exe
+ 2004-08-19 14:09:52 638,976 -c----w c:\windows\$NtServicePackUninstall$\autoconv.exe
+ 2004-08-19 14:09:52 616,960 -c----w c:\windows\$NtServicePackUninstall$\autofmt.exe
+ 2004-08-19 14:09:52 11,264 -c----w c:\windows\$NtServicePackUninstall$\autolfn.exe
+ 2004-08-19 14:09:22 85,504 -c----w c:\windows\$NtServicePackUninstall$\avifil32.dll
+ 2004-08-19 14:09:22 52,736 -c----w c:\windows\$NtServicePackUninstall$\basesrv.dll
+ 2004-08-19 14:09:22 28,672 -c----w c:\windows\$NtServicePackUninstall$\batmeter.dll
+ 2004-08-19 14:09:22 8,704 -c----w c:\windows\$NtServicePackUninstall$\batt.dll
+ 2004-08-19 14:09:22 17,408 -c----w c:\windows\$NtServicePackUninstall$\bidispl.dll
+ 2004-08-19 14:09:22 8,192 -c----w c:\windows\$NtServicePackUninstall$\bitsprx2.dll
+ 2004-08-19 14:09:22 7,168 -c----w c:\windows\$NtServicePackUninstall$\bitsprx3.dll
+ 2004-08-19 14:09:52 71,680 -c----w c:\windows\$NtServicePackUninstall$\blastcln.exe
+ 2001-08-28 12:00:00 152,064 -c----w c:\windows\$NtServicePackUninstall$\bootcfg.exe
+ 2004-08-03 20:59:58 71,552 -c----w c:\windows\$NtServicePackUninstall$\bridge.sys
+ 2004-08-19 14:08:04 70,144 -c----w c:\windows\$NtServicePackUninstall$\browselc.dll
+ 2004-08-19 14:09:22 77,312 -c----w c:\windows\$NtServicePackUninstall$\browser.dll
+ 2008-02-16 09:02:34 1,024,000 -c----w c:\windows\$NtServicePackUninstall$\browseui.dll
+ 2004-08-19 14:09:22 78,336 -c----w c:\windows\$NtServicePackUninstall$\browsewm.dll
+ 2004-08-19 14:09:22 20,992 -c----w c:\windows\$NtServicePackUninstall$\bthci.dll
+ 2008-06-14 17:59:52 272,768 -c----w c:\windows\$NtServicePackUninstall$\bthport.sys
+ 2008-06-14 17:59:52 272,768 -c----w c:\windows\$NtServicePackUninstall$\bthport.sys.000
+ 2004-08-19 14:09:22 30,208 -c----w c:\windows\$NtServicePackUninstall$\bthserv.dll
+ 2004-08-19 14:09:22 50,688 -c----w c:\windows\$NtServicePackUninstall$\btpanui.dll
+ 2001-08-28 12:00:00 218,112 -c----w c:\windows\$NtServicePackUninstall$\c_g18030.dll
+ 2004-08-19 14:09:22 59,904 -c----w c:\windows\$NtServicePackUninstall$\cabinet.dll
+ 2004-08-19 14:09:22 85,504 -c----w c:\windows\$NtServicePackUninstall$\cabview.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\cacls.exe
+ 2004-08-19 14:09:22 385,024 -c----w c:\windows\$NtServicePackUninstall$\callcont.dll
+ 2004-08-19 14:09:22 50,688 -c----w c:\windows\$NtServicePackUninstall$\camocx.dll
+ 2001-08-28 12:00:00 146,432 -c----w c:\windows\$NtServicePackUninstall$\capesnpn.dll
+ 2005-07-26 04:39:54 225,792 -c----w c:\windows\$NtServicePackUninstall$\catsrv.dll
+ 2004-08-19 14:09:22 85,504 -c----w c:\windows\$NtServicePackUninstall$\catsrvps.dll
+ 2005-07-26 04:39:54 625,152 -c----w c:\windows\$NtServicePackUninstall$\catsrvut.dll
+ 2004-08-03 21:10:18 17,024 -c----w c:\windows\$NtServicePackUninstall$\ccdecode.sys
+ 2004-08-03 21:14:12 63,744 -c----w c:\windows\$NtServicePackUninstall$\cdfs.sys
+ 2008-02-16 09:02:34 152,064 -c----w c:\windows\$NtServicePackUninstall$\cdfview.dll
+ 2005-09-10 01:55:14 2,067,968 -c----w c:\windows\$NtServicePackUninstall$\cdosys.dll
+ 2004-08-03 20:59:54 49,536 -c----w c:\windows\$NtServicePackUninstall$\cdrom.sys
+ 2004-08-19 14:09:22 200,192 -c----w c:\windows\$NtServicePackUninstall$\certcli.dll
+ 2004-08-19 14:09:22 467,968 -c----w c:\windows\$NtServicePackUninstall$\certmgr.dll
+ 2004-08-19 14:09:22 39,424 -c----w c:\windows\$NtServicePackUninstall$\cfgbkend.dll
+ 2004-08-19 14:08:04 16,896 -c----w c:\windows\$NtServicePackUninstall$\cfgmgr32.dll
+ 2003-03-24 13:52:04 188,480 -c----w c:\windows\$NtServicePackUninstall$\cfgwiz.exe
+ 2004-08-03 20:31:52 97,792 -c----w c:\windows\$NtServicePackUninstall$\chtmbx.dll
+ 2004-08-03 20:31:54 56,320 -c----w c:\windows\$NtServicePackUninstall$\chtskdic.dll
+ 2004-08-03 20:31:54 173,568 -c----w c:\windows\$NtServicePackUninstall$\chtskf.dll
+ 2001-08-28 12:00:00 109,568 -c----w c:\windows\$NtServicePackUninstall$\cic.dll
+ 2004-08-19 14:09:22 1,352,704 -c----w c:\windows\$NtServicePackUninstall$\cimwin32.dll
+ 2004-08-03 20:31:54 198,656 -c----w c:\windows\$NtServicePackUninstall$\cintime.dll
+ 2006-06-22 05:13:45 69,120 -c----w c:\windows\$NtServicePackUninstall$\ciodm.dll
+ 2004-08-19 14:09:52 56,832 -c----w c:\windows\$NtServicePackUninstall$\cipher.exe
+ 2004-08-19 14:09:52 5,632 -c----w c:\windows\$NtServicePackUninstall$\cisvc.exe
+ 2004-08-03 21:14:28 49,664 -c----w c:\windows\$NtServicePackUninstall$\classpnp.sys
+ 2005-07-26 04:39:55 110,080 -c----w c:\windows\$NtServicePackUninstall$\clbcatex.dll
+ 2005-07-26 04:39:55 498,688 -c----w c:\windows\$NtServicePackUninstall$\clbcatq.dll
+ 2004-08-19 14:09:52 65,536 -c----w c:\windows\$NtServicePackUninstall$\cleanmgr.exe
+ 2004-08-19 14:09:22 77,824 -c----w c:\windows\$NtServicePackUninstall$\cliconfg.dll
+ 2004-08-19 14:09:52 20,480 -c----w c:\windows\$NtServicePackUninstall$\cliconfg.exe
+ 2004-08-19 14:09:52 104,448 -c----w c:\windows\$NtServicePackUninstall$\clipbrd.exe
+ 2004-08-19 14:09:52 33,280 -c----w c:\windows\$NtServicePackUninstall$\clipsrv.exe
+ 2004-08-19 14:09:22 57,856 -c----w c:\windows\$NtServicePackUninstall$\clusapi.dll
+ 2004-08-19 14:09:22 15,872 -c----w c:\windows\$NtServicePackUninstall$\cmcfg32.dll
+ 2004-08-19 14:09:52 400,896 -c----w c:\windows\$NtServicePackUninstall$\cmd.exe
+ 2004-08-19 14:09:26 45,568 -c----w c:\windows\$NtServicePackUninstall$\cmdevtgprov.dll
+ 2004-08-19 14:09:22 352,256 -c----w c:\windows\$NtServicePackUninstall$\cmdial32.dll
+ 2004-08-19 14:09:52 47,104 -c----w c:\windows\$NtServicePackUninstall$\cmdl32.exe
+ 2004-08-19 14:09:52 40,448 -c----w c:\windows\$NtServicePackUninstall$\cmmon32.exe
+ 2004-08-19 14:09:22 191,488 -c----w c:\windows\$NtServicePackUninstall$\cmprops.dll
+ 2004-08-19 14:09:22 13,824 -c----w c:\windows\$NtServicePackUninstall$\cmsetacl.dll
+ 2004-08-19 14:09:52 65,536 -c----w c:\windows\$NtServicePackUninstall$\cmstp.exe
+ 2004-08-19 14:09:22 40,960 -c----w c:\windows\$NtServicePackUninstall$\cmutil.dll
+ 2004-08-19 14:20:54 50,688 -c----w c:\windows\$NtServicePackUninstall$\cnbjmon.dll
+ 2004-08-19 14:09:22 47,104 -c----w c:\windows\$NtServicePackUninstall$\coadmin.dll
+ 2008-04-12 11:50:01 2,678 -c----w c:\windows\$NtServicePackUninstall$\cojft3lf.dat
+ 2005-07-26 04:39:55 60,416 -c----w c:\windows\$NtServicePackUninstall$\colbact.dll
+ 2001-08-28 12:00:00 25,600 -c----w c:\windows\$NtServicePackUninstall$\comaddin.dll
+ 2005-07-26 04:39:56 195,072 -c----w c:\windows\$NtServicePackUninstall$\comadmin.dll
+ 2006-08-25 15:51:14 617,472 -c----w c:\windows\$NtServicePackUninstall$\comctl32.dll
+ 2004-08-19 14:09:22 281,088 -c----w c:\windows\$NtServicePackUninstall$\comdlg32.dll
+ 2004-08-19 14:09:22 253,440 -c----w c:\windows\$NtServicePackUninstall$\compatui.dll
+ 2004-08-19 14:09:22 24,064 -c----w c:\windows\$NtServicePackUninstall$\compfilt.dll
+ 2004-08-19 14:09:22 230,912 -c----w c:\windows\$NtServicePackUninstall$\compstui.dll
+ 2005-07-26 04:39:56 97,792 -c----w c:\windows\$NtServicePackUninstall$\comrepl.dll
+ 2004-08-19 14:09:52 9,728 -c----w c:\windows\$NtServicePackUninstall$\comrepl.exe
+ 2001-08-28 12:00:00 5,120 -c----w c:\windows\$NtServicePackUninstall$\comrereg.exe
+ 2004-08-19 14:09:22 851,968 -c----w c:\windows\$NtServicePackUninstall$\comres.dll
+ 2001-08-28 12:00:00 259,584 -c----w c:\windows\$NtServicePackUninstall$\comsetup.dll
+ 2001-08-28 12:00:00 147,456 -c----w c:\windows\$NtServicePackUninstall$\comsnap.dll
+ 2005-07-26 04:39:57 1,267,200 -c----w c:\windows\$NtServicePackUninstall$\comsvcs.dll
+ 2005-07-26 04:39:57 540,160 -c----w c:\windows\$NtServicePackUninstall$\comuid.dll
+ 2004-08-19 14:09:52 1,044,480 -c----w c:\windows\$NtServicePackUninstall$\conf.exe
+ 2004-08-19 14:09:22 45,056 -c----w c:\windows\$NtServicePackUninstall$\confmrsl.dll
+ 2001-08-28 12:00:00 346,112 -c----w c:\windows\$NtServicePackUninstall$\confmsp.dll
+ 2004-08-19 14:09:52 27,648 -c----w c:\windows\$NtServicePackUninstall$\conime.exe
+ 2004-08-19 14:09:22 35,328 -c----w c:\windows\$NtServicePackUninstall$\corpol.dll
+ 2004-08-19 14:09:22 165,888 -c----w c:\windows\$NtServicePackUninstall$\credui.dll
+ 2004-08-19 14:20:54 40,704 -c----w c:\windows\$NtServicePackUninstall$\crusoe.sys
+ 2004-08-19 14:09:22 604,672 -c----w c:\windows\$NtServicePackUninstall$\crypt32.dll
+ 2004-08-19 14:09:22 75,776 -c----w c:\windows\$NtServicePackUninstall$\cryptdlg.dll
+ 2004-08-19 14:09:22 33,280 -c----w c:\windows\$NtServicePackUninstall$\cryptdll.dll
+ 2004-08-19 14:09:22 54,784 -c----w c:\windows\$NtServicePackUninstall$\cryptext.dll
+ 2004-08-19 14:09:22 63,488 -c----w c:\windows\$NtServicePackUninstall$\cryptnet.dll
+ 2004-08-19 14:09:22 60,416 -c----w c:\windows\$NtServicePackUninstall$\cryptsvc.dll
+ 2004-08-19 14:09:22 530,432 -c----w c:\windows\$NtServicePackUninstall$\cryptui.dll
+ 2004-08-19 14:09:22 102,912 -c----w c:\windows\$NtServicePackUninstall$\cscdll.dll
+ 2004-08-19 14:09:52 98,304 -c----w c:\windows\$NtServicePackUninstall$\cscript.exe
+ 2004-08-19 14:09:22 337,920 -c----w c:\windows\$NtServicePackUninstall$\cscui.dll
+ 2004-08-19 14:09:22 32,768 -c----w c:\windows\$NtServicePackUninstall$\csrsrv.dll
+ 2004-08-19 14:09:52 6,144 -c----w c:\windows\$NtServicePackUninstall$\csrss.exe
+ 2004-08-19 14:09:52 15,360 -c----w c:\windows\$NtServicePackUninstall$\ctfmon.exe
+ 2006-06-02 19:32:20 33,792 -c----w c:\windows\$NtServicePackUninstall$\custsat.dll
+ 2004-08-19 14:09:22 1,179,648 -c----w c:\windows\$NtServicePackUninstall$\d3d8.dll
+ 2004-08-19 14:09:22 8,192 -c----w c:\windows\$NtServicePackUninstall$\d3d8thk.dll
+ 2004-08-19 14:09:22 1,689,088 -c----w c:\windows\$NtServicePackUninstall$\d3d9.dll
+ 2004-08-19 14:09:24 825,344 -c----w c:\windows\$NtServicePackUninstall$\d3dim700.dll
+ 2008-02-16 09:02:34 1,056,768 -c----w c:\windows\$NtServicePackUninstall$\danim.dll
+ 2004-08-19 14:09:24 55,296 -c----w c:\windows\$NtServicePackUninstall$\dataclen.dll
+ 2001-08-28 12:00:00 152,064 -c----w
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
Merci pour tou et voici l'autre rapport :

-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 1.80GHz )
BIOS : Default System BIOS
USER : la famille ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
Firewall : ZoneAlarm Firewall 7.0.362.000 (Activated)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:1 Go)
D:\ (Local Disk) - NTFS - Total:149 Go (Free:58 Go)
F:\ (CD or DVD)
G:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 18/03/2009|14:22 )

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\AskSBar
C:\Program Files\AskSBar\bar
C:\Program Files\AskSBar\SrchAstt
C:\Program Files\AskSBar\bar\1.bin
C:\Program Files\AskSBar\bar\Cache
C:\Program Files\AskSBar\bar\History
C:\Program Files\AskSBar\bar\Settings
C:\Program Files\AskSBar\bar\1.bin\A2FFXTBR.JAR
C:\Program Files\AskSBar\bar\1.bin\A2FFXTBR.MANIFEST
C:\Program Files\AskSBar\bar\1.bin\A2HIGHIN.EXE
C:\Program Files\AskSBar\bar\1.bin\A2NTSTBR.JAR
C:\Program Files\AskSBar\bar\1.bin\A2NTSTBR.MANIFEST
C:\Program Files\AskSBar\bar\1.bin\A2PLUGIN.DLL
C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
C:\Program Files\AskSBar\bar\1.bin\NPASKSBR.DLL
C:\Program Files\AskSBar\bar\Cache\000DDB5D
C:\Program Files\AskSBar\bar\Cache\02BA0CBE
C:\Program Files\AskSBar\bar\Cache\02BA1A3B.bin
C:\Program Files\AskSBar\bar\Cache\02BA1DF4.bin
C:\Program Files\AskSBar\bar\Cache\02BA215F.bin
C:\Program Files\AskSBar\bar\Cache\files.ini
C:\Program Files\AskSBar\bar\History\search2
C:\Program Files\AskSBar\bar\Settings\prevcfg2.htm
C:\Program Files\AskSBar\SrchAstt\1.bin
C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
C:\Program Files\AskTBar
C:\Program Files\AskTBar\bar
C:\Program Files\AskTBar\PopSwatr
C:\Program Files\AskTBar\bar\History
C:\Program Files\AskTBar\bar\Settings
C:\Program Files\AskTBar\bar\History\search2
C:\Program Files\AskTBar\PopSwatr\History
C:\Program Files\AskTBar\PopSwatr\History\allowed
C:\Program Files\AskTBar\PopSwatr\History\notallow
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\resFF
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\temp
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\alerts.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\alerts_over.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\chevron-small.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\DealioSearch.html
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\deal_report.jpg
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\err_toolbar.html
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\global_scripts.js
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\highlight-bg.png
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\logo.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\logo_over.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\man_toolbar.css
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\man_toolbar.html
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\man_toolbar.js
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\scripts.js
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\scroller.js
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\search-chevron.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\separator.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\settings.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\settings_over.gif
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\res\yahoo-search.png
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\resFF\deal_report.jpg
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\resFF\ebay_login.jpg
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\index.76.35
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.386.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.387.59
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.388.59
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.389.59
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.390.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.391.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.392.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.393.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.394.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.396.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.397.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.398.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.399.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.403.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.404.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.405.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.406.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.407.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.408.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.409.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.412.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.413.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.414.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.415.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.416.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.417.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.418.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.419.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.420.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.421.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.423.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.424.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.425.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.426.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.427.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.428.65
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.429.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.430.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.432.65
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.433.64
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.434.65
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.435.64
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.436.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.437.64
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.438.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.439.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.440.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.442.73
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.443.73
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.444.73
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.445.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.446.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.450.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.451.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.452.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.453.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.454.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.456.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.457.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.458.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.459.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.460.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.462.74
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.463.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.464.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.465.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.468.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.469.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.470.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.471.73
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.472.70
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.478.74
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.479.73
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.480.68
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.481.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.482.74
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.49.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.50.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.500.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.501.74
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.502.71
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.51.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.52.72
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.520.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.521.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.522.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.53.51
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.531.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.532.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.534.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.54.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.55.45
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.56.69
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.57.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.58.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.593.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.595.76
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.63.57
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.66.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.70.75
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rules\rules.1.71.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\index.3.67.22
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.109.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.178.66
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.198.56
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.245.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.247.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.279.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.283.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.284.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.289.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.290.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.297.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.315.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.319.49
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.335.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.337.44
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.340.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.360.53
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.386.59
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.388.59
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.391.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.398.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.399.60
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.403.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.404.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.405.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.406.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.407.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.408.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.409.61
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.412.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.413.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.414.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.415.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.416.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.417.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.418.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.419.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.420.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.421.62
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.424.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.427.63
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.432.65
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.49.67
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.51.46
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.52.57
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.53.51
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.54.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.57.43
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.58.47
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\temp\dealio-14050.log
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\temp\dealio-14051.log
C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127\temp\dod_cache.xml
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\resFF
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\temp
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\resFF\deal_report.jpg
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\resFF\ebay_login.jpg
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\index.3.67.22
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.109.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.178.66
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.198.56
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.245.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.247.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.279.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.283.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.284.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.289.67
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.290.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.297.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.315.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.319.49
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.335.60
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.337.44
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.340.47
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.360.53
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.386.59
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.388.59
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.391.60
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.398.60
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.399.60
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.403.61
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.404.63
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.405.61
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.406.61
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.407.61
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.408.63
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.409.61
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.412.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.413.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.414.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.415.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.416.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.417.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.418.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.419.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.420.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.421.62
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.424.63
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.427.63
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.432.65
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.49.67
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.51.46
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.52.57
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.53.51
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.54.47
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.57.43
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.58.47
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\temp\dealio-14047.log
C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127\temp\dod_cache.xml
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\resFF
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\temp
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\alerts.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\alerts_over.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\chevron-small.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\DealioSearch.html
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\deal_report.jpg
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\err_toolbar.html
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\global_scripts.js
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\highlight-bg.png
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\logo.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\logo_over.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\man_toolbar.css
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\man_toolbar.html
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\man_toolbar.js
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\scripts.js
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\scroller.js
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\search-chevron.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\separator.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\settings.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\settings_over.gif
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\res\yahoo-search.png
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\resFF\deal_report.jpg
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\resFF\ebay_login.jpg
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\index.76.35
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.386.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.387.59
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.388.59
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.389.59
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.390.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.391.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.392.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.393.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.394.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.396.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.397.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.398.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.399.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.403.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.404.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.405.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.406.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.407.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.408.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.409.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.412.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.413.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.414.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.415.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.416.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.417.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.418.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.419.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.420.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.421.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.423.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.424.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.425.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.426.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.427.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.428.65
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.429.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.430.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.432.65
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.433.64
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.434.65
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.435.64
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.436.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.437.64
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.438.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.439.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.440.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.442.73
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.443.73
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.444.73
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.445.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.446.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.450.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.451.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.452.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.453.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.454.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.456.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.457.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.458.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.459.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.460.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.462.74
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.463.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.464.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.465.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.468.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.469.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.470.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.471.73
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.472.70
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.478.74
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.479.73
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.480.68
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.481.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.482.74
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.49.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.50.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.500.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.501.74
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.502.71
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.51.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.52.72
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.520.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.521.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.522.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.53.51
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.531.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.532.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.534.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.54.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.55.45
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.56.69
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.57.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.58.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.593.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.595.76
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.63.57
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.66.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.70.75
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rules\rules.1.71.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\index.3.67.22
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.109.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.178.66
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.198.56
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.245.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.247.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.279.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.283.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.284.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.289.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.290.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.297.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.315.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.319.49
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.335.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.337.44
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.340.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.360.53
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.386.59
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.388.59
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.391.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.398.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.399.60
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.403.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.404.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.405.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.406.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.407.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.408.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.409.61
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.412.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.413.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.414.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.415.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.416.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.417.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.418.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.419.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.420.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.421.62
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.424.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.427.63
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.432.65
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.49.67
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.51.46
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.52.57
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.53.51
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.54.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.57.43
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\rulesFF\rules.3.58.47
C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127\temp\dod_cache.xml
C:\DOCUME~1\Memini\APPLIC~1\Dealio
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\resFF
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rulesFF
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\temp
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\alerts.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\alerts_over.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\chevron-small.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\DealioSearch.html
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\deal_report.jpg
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\err_toolbar.html
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\global_scripts.js
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\highlight-bg.png
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\logo.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\logo_over.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\man_toolbar.css
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\man_toolbar.html
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\man_toolbar.js
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\scripts.js
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\scroller.js
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\search-chevron.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\separator.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\settings.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\settings_over.gif
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\res\yahoo-search.png
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\resFF\deal_report.jpg
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\resFF\ebay_login.jpg
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\index.76.35
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127\rul
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
C'est quoi ces deux fichiers:

G:\radhort.exe

Radhort (Réseau Africain pour le Développement de l'horticulture) et j'ai un Cdrom qu'il faut exécuter pour lire le contenu.

g:\pub\wordview.EXE
Je ne sais pas ce que c'est mais il doit s'agir d'un logiciel installé par mon fils.

Merci pour tout et je tiens à préciser que le message est très spécifique à un compte et non pas à l'ordinateur. En effet, j'ai une autre adresse mail sur yahoo qui fonctionne sans aucun problème alors que mon adresse principale connaît ce dysfonctionnement.

Andochanga
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
refais toolbar sd choisi l'option 2 et colle le rapport entier cette fois

______________


le rapport combofix est incomplet tu peux en mettre un complet

_________________

remets un rapport RSIT

a plus
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
ComboFix 09-03-15.01 - la famille 2009-03-18 14:01:26.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.1.1036.18.1535.1014 [GMT 1:00]
Lancé depuis: c:\documents and settings\la famille\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\la famille\Bureau\CFscript.txt
AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Updated)
FW: ZoneAlarm Firewall *enabled*

FILE ::
E:\start.exe
H:\fooool.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Conditions générales.url
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Confidentialité.url
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Désinstaller.lnk
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\MessengerSkinner.lnk
c:\documents and settings\All Users\Menu Démarrer\Programmes\MessengerSkinner\Website.url
c:\documents and settings\All Users\Menu Démarrer\Programmes\VideoSpeedy
c:\documents and settings\All Users\Menu Démarrer\Programmes\VideoSpeedy\Uninstall.lnk
c:\documents and settings\All Users\Menu Démarrer\Programmes\VideoSpeedy\VSpeedClient.lnk
c:\documents and settings\ANDO Administrateur\Application Data\MessengerSkinner
c:\documents and settings\ANDO Administrateur\Application Data\MessengerSkinner\Userdata\pack1.cab
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk.dat
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk.exe
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk_nav.dat
c:\documents and settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk_navps.dat
c:\documents and settings\Memini\Local Settings\Application Data\ecbxomdb.dat
c:\documents and settings\Memini\Local Settings\Application Data\ecbxomdb_nav.dat
c:\documents and settings\Memini\Local Settings\Application Data\ecbxomdb_navps.dat

.
((((((((((((((((((((((((((((( Fichiers créés du 2009-02-18 au 2009-03-18 ))))))))))))))))))))))))))))))))))))
.

2009-03-18 12:56 . 2009-03-18 12:56 <REP> d--hs---- c:\documents and settings\TEMP
2009-03-17 22:54 . 2009-03-17 22:54 <REP> d----c--- C:\rsit
2009-03-17 20:46 . 2009-03-17 20:46 <REP> d-------- c:\program files\radhort
2009-03-17 20:46 . 1998-05-15 21:01 604,432 --a------ c:\windows\system32\COMCTL32.OCX
2009-03-17 20:46 . 1997-07-19 19:00 193,296 --a------ c:\windows\system32\MCI32.OCX
2009-03-17 20:46 . 1997-01-16 01:00 60,688 --a------ c:\windows\system32\SYSINFO.OCX
2009-03-16 22:03 . 2009-03-16 22:03 <REP> d-------- c:\documents and settings\Mamu Mujinga\Tracing
2009-03-08 13:09 . 2009-03-17 17:52 <REP> d-------- c:\documents and settings\T. Jérémie\Tracing
2009-03-08 13:09 . 2009-03-17 17:52 <REP> d-------- c:\documents and settings\T. Jérémie\Tracing
2009-03-08 13:01 . 2009-03-14 10:49 <REP> d-------- c:\documents and settings\Kilongo {HustleKing}\Tracing
2009-03-08 09:57 . 2009-03-15 18:48 <REP> d-------- c:\documents and settings\K. Joseph\Tracing
2009-03-07 15:59 . 2009-03-17 15:22 <REP> d-------- c:\documents and settings\Memini\Tracing
2009-03-05 17:36 . 2009-03-05 17:37 <REP> d-------- c:\program files\Conference
2009-03-04 21:44 . 2009-03-15 17:09 <REP> d-------- c:\documents and settings\Furaha\Tracing
2009-03-04 21:28 . 2009-03-13 19:37 <REP> d-------- c:\documents and settings\la famille\Tracing
2009-03-04 21:27 . 2009-03-06 09:26 <REP> d-------- c:\program files\Microsoft Silverlight
2009-03-04 21:26 . 2009-03-04 21:26 <REP> d-------- c:\program files\Microsoft Office Outlook Connector
2009-03-04 21:19 . 2009-03-04 21:19 <REP> d-------- c:\program files\Microsoft Sync Framework
2009-03-04 21:13 . 2009-03-04 21:26 <REP> d-------- c:\program files\Microsoft
2009-03-04 21:12 . 2009-03-04 21:12 <REP> d-------- c:\program files\Windows Live SkyDrive
2009-03-04 20:50 . 2009-03-04 20:50 <REP> d-------- c:\program files\Fichiers communs\Windows Live
2009-03-04 20:27 . 2009-03-04 20:27 <REP> d-------- c:\documents and settings\Furaha\Messenger Plus! Live

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-18 12:43 --------- d-----w c:\program files\AdvancedAdvisor
2009-03-18 11:56 8,939,244 ----a-w c:\windows\Internet Logs\tvDebug.zip
2009-03-17 01:42 238,532 --sha-w c:\windows\system32\drivers\fidbox.idx
2009-03-17 01:42 20,084,768 --sha-w c:\windows\system32\drivers\fidbox.dat
2009-03-13 21:24 --------- d-----w c:\documents and settings\la famille\Application Data\LimeWire
2009-03-11 16:21 --------- d-----w c:\documents and settings\All Users\Application Data\Microsoft Help
2009-03-04 20:26 --------- d-----w c:\program files\Windows Live
2009-03-04 20:19 --------- d-----w c:\program files\Windows Live Toolbar
2009-02-27 10:48 --------- d-----w c:\program files\Safari
2009-02-21 15:57 --------- d-----w c:\documents and settings\Kilongo {HustleKing}\Application Data\LimeWire
2009-02-15 20:27 --------- d-----w c:\documents and settings\Memini\Application Data\LimeWire
2009-02-15 08:45 --------- d-----w c:\documents and settings\K. Joseph\Application Data\Apple Computer
2009-02-09 14:05 1,846,912 ----a-w c:\windows\system32\win32k.sys
2009-02-08 16:33 --------- d-----w c:\documents and settings\Memini\Application Data\CyberLink
2009-02-06 18:39 308,600 ----a-w c:\windows\WLXPGSS.SCR
2009-02-06 17:52 49,504 ----a-w c:\windows\system32\sirenacm.dll
2009-02-06 12:30 2,066,944 ----a-w c:\windows\Internet Logs\xDBC.tmp
2009-01-30 20:08 --------- d-----w c:\documents and settings\Furaha\Application Data\Apple Computer
2009-01-29 18:02 --------- d-----w c:\documents and settings\A. Sandrine\Application Data\Ahead
2009-01-29 17:59 --------- d-----w c:\documents and settings\A. Sandrine\Application Data\Apple Computer
2009-01-18 15:10 --------- d-----w c:\documents and settings\T. Jérémie\Application Data\LimeWire
2008-12-20 22:47 826,368 ----a-w c:\windows\system32\wininet.dll
2008-04-22 18:24 32 ----a-w c:\documents and settings\All Users\Application Data\ezsid.dat
2007-08-18 14:37 245,760 ----a-w c:\program files\Uninstall Ask Toolbar.dll
2004-07-22 08:51 3,432,656 -c--a-w c:\program files\ManagedDX.CAB
2004-07-19 20:58 1,156,363 -c--a-w c:\program files\BDANT.cab
2004-07-19 20:53 976,020 -c--a-w c:\program files\BDAXP.cab
2004-07-09 12:17 13,265,040 -c--a-w c:\program files\dxnt.cab
2004-07-09 07:13 703,080 -c--a-w c:\program files\BDA.cab
2004-07-09 07:13 15,493,481 -c--a-w c:\program files\DirectX.cab
2004-07-09 02:08 472,576 ----a-w c:\program files\dxsetup.exe
2004-07-09 02:08 2,242,560 ----a-w c:\program files\dsetup32.dll
2004-07-09 01:03 62,976 ----a-w c:\program files\DSETUP.dll
2001-11-23 04:08 712,704 -c--a-w c:\windows\inf\OTHER\AUDIO3D.DLL
2008-10-16 10:23 32,768 -csha-w c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012008101620081017\index.dat
.

((((((((((((((((((((((((((((( snapshot@2008-06-02_21.56.05,54 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB938464\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
+ 2008-05-02 13:33:12 83,968 -c--a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
+ 2008-05-02 14:01:52 83,968 -c--a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
+ 2008-05-02 13:44:40 83,968 -c--a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-04-23 07:19:26 124,928 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\advpack.dll
+ 2008-04-23 07:19:26 347,136 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\dxtmsft.dll
+ 2008-04-23 07:19:26 214,528 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\dxtrans.dll
+ 2008-04-23 07:19:26 132,608 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\extmgr.dll
+ 2008-04-23 07:19:26 63,488 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\icardie.dll
+ 2008-04-22 08:02:19 70,656 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ie4uinit.exe
+ 2008-04-23 07:19:26 153,088 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieakeng.dll
+ 2008-04-23 07:19:26 230,400 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieaksie.dll
+ 2008-04-20 05:07:38 161,792 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dat
+ 2008-04-23 07:19:26 383,488 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dll
+ 2008-04-23 07:19:26 388,608 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iedkcs32.dll
+ 2008-04-23 07:19:26 6,068,224 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieframe.dll
+ 2008-04-23 07:19:26 44,544 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iernonce.dll
+ 2008-04-23 07:19:26 267,776 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iertutil.dll
+ 2008-04-22 08:02:19 13,824 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\ieudinit.exe
+ 2008-04-22 08:02:46 625,664 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\iexplore.exe
+ 2008-04-23 07:19:26 27,648 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\jsproxy.dll
+ 2008-04-23 07:19:27 459,264 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msfeeds.dll
+ 2008-04-23 07:19:27 52,224 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msfeedsbs.dll
+ 2008-04-23 07:19:27 3,593,728 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mshtml.dll
+ 2008-04-23 07:19:27 478,208 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mshtmled.dll
+ 2008-04-23 07:19:27 193,024 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\msrating.dll
+ 2008-04-23 07:19:27 671,232 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\mstime.dll
+ 2008-04-23 07:19:27 102,912 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\occache.dll
+ 2008-04-23 07:19:27 44,544 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\pngfilt.dll
+ 2008-04-23 07:19:27 105,984 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\url.dll
+ 2008-04-23 07:19:27 1,162,752 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\urlmon.dll
+ 2008-04-23 07:19:27 233,472 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\webcheck.dll
+ 2008-04-23 07:19:27 827,392 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$hf_mig$\KB950759-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB950760\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB950760\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB950760\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB950760\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB950760\update\updspapi.dll
+ 2008-05-08 12:14:51 203,008 -c--a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2008-05-08 14:02:52 203,136 -c--a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2008-05-08 13:58:17 203,136 -c--a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-07-07 20:18:27 253,952 -c--a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
+ 2008-07-07 20:28:20 253,952 -c--a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
+ 2008-07-07 20:24:11 253,952 -c--a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 -c--a-w c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2008-04-11 18:40:33 683,520 -c--a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
+ 2008-04-11 19:05:22 691,712 -c--a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
+ 2008-04-11 22:23:04 691,712 -c--a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2007-12-03 15:25:43 767,352 -c--a-w c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2008-07-14 11:03:00 62,976 -c--a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
+ 2008-07-11 12:42:28 62,976 -c--a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
+ 2008-07-11 12:51:51 62,976 -c--a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
+ 2008-06-14 18:03:13 272,768 -c--a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
+ 2008-06-14 17:33:37 272,768 -c--a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
+ 2008-06-14 17:40:19 272,768 -c--a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-04-14 16:17:04 272,768 -c--a-w c:\windows\$hf_mig$\KB951376\SP2QFE\bthport.sys
+ 2008-04-14 15:59:30 272,768 -c--a-w c:\windows\$hf_mig$\KB951376\SP3GDR\bthport.sys
+ 2008-04-14 16:22:05 272,768 -c--a-w c:\windows\$hf_mig$\KB951376\SP3QFE\bthport.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951376\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951376\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951376\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB951376\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB951376\update\updspapi.dll
+ 2008-05-07 04:55:47 1,294,336 -c--a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
+ 2008-05-07 05:11:24 1,294,336 -c--a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
+ 2008-05-07 05:04:59 1,294,336 -c--a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
+ 2006-08-16 12:13:24 100,352 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
+ 2008-06-20 10:44:08 138,368 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
+ 2008-06-20 17:37:01 147,968 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
+ 2008-06-20 17:37:01 247,808 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
+ 2008-06-20 10:44:42 360,960 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
+ 2008-06-20 09:32:39 225,920 -c--a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
+ 2008-06-20 11:40:08 138,496 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
+ 2008-06-20 17:47:22 147,968 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
+ 2008-06-20 17:47:22 247,808 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
+ 2008-06-20 11:51:12 361,600 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
+ 2008-06-20 11:08:27 225,856 -c--a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
+ 2008-06-20 11:48:03 138,496 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 17:44:02 147,968 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 17:44:02 247,808 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 11:59:02 361,600 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 11:16:44 225,856 -c--a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 -c--a-w c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2008-05-07 09:07:23 135,168 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\cscript.exe
+ 2008-05-09 10:51:45 512,000 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\jscript.dll
+ 2008-05-09 10:51:45 180,224 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\scrobj.dll
+ 2008-05-09 10:51:45 172,032 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\scrrun.dll
+ 2008-05-09 10:51:45 430,080 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\vbscript.dll
+ 2008-05-08 11:24:44 155,648 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\wscript.exe
+ 2008-05-09 10:51:45 90,112 -c--a-w c:\windows\$hf_mig$\KB951978\SP3QFE\wshext.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB951978\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB951978\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB951978\update\spcustom.dll
+ 2007-11-30 12:39:26 767,352 -c--a-w c:\windows\$hf_mig$\KB951978\update\update.exe
+ 2007-11-30 12:39:29 406,392 -c--a-w c:\windows\$hf_mig$\KB951978\update\updspapi.dll
+ 2008-05-01 15:04:51 331,776 -c--a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
+ 2008-05-01 14:36:26 331,776 -c--a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
+ 2008-05-01 14:39:23 331,776 -c--a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2008-06-24 16:30:27 74,240 -c--a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
+ 2008-06-24 16:44:02 74,240 -c--a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
+ 2008-06-24 16:53:52 74,240 -c--a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
+ 2008-06-23 15:40:01 124,928 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\advpack.dll
+ 2008-06-23 15:40:01 347,136 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtmsft.dll
+ 2008-06-23 15:40:01 214,528 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\dxtrans.dll
+ 2008-06-23 15:40:01 132,608 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\extmgr.dll
+ 2008-06-23 15:40:01 63,488 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\icardie.dll
+ 2008-06-23 08:23:18 70,656 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ie4uinit.exe
+ 2008-06-23 15:40:01 153,088 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakeng.dll
+ 2008-06-23 15:40:01 230,400 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieaksie.dll
+ 2008-06-21 05:23:53 161,792 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dat
+ 2008-06-23 15:40:02 383,488 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieapfltr.dll
+ 2008-06-23 15:40:02 388,608 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iedkcs32.dll
+ 2008-06-23 15:40:04 6,068,736 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieframe.dll
+ 2008-06-23 15:40:04 44,544 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iernonce.dll
+ 2008-06-23 15:40:04 267,776 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iertutil.dll
+ 2008-06-23 08:23:18 13,824 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\ieudinit.exe
+ 2008-06-23 08:23:52 625,664 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\iexplore.exe
+ 2008-06-23 15:40:05 27,648 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\jsproxy.dll
+ 2008-06-23 15:40:05 459,264 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeeds.dll
+ 2008-06-23 15:40:05 52,224 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msfeedsbs.dll
+ 2008-06-23 15:40:07 3,594,240 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtml.dll
+ 2008-06-23 15:40:07 477,696 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mshtmled.dll
+ 2008-06-23 15:40:07 193,024 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\msrating.dll
+ 2008-06-23 15:40:07 671,232 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\mstime.dll
+ 2008-06-23 15:40:07 102,912 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\occache.dll
+ 2008-06-23 15:40:07 44,544 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\pngfilt.dll
+ 2008-06-23 15:40:07 105,984 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\url.dll
+ 2008-06-23 15:40:08 1,162,752 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\urlmon.dll
+ 2008-06-23 15:40:08 233,472 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\webcheck.dll
+ 2008-06-23 15:40:08 827,904 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$hf_mig$\KB953838-IE7\update\updspapi.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB953839\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
+ 2008-09-15 15:20:39 1,847,040 -c--a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 -c--a-w c:\windows\$hf_mig$\KB954211\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
+ 2008-09-10 01:12:14 1,379,840 -c--a-w c:\windows\$hf_mig$\KB954459\SP3QFE\msxml6.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB954459\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB954459\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB954459\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB954459\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB954459\update\updspapi.dll
+ 2008-10-03 09:50:27 247,326 ----a-w c:\windows\$hf_mig$\KB954600\SP3QFE\strmdll.dll
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB954600\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB954600\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB954600\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB954600\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB954600\update\updspapi.dll
+ 2008-09-04 17:12:47 1,106,944 -c--a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2008-07-09 12:10:36 406,392 -c--a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
+ 2008-08-26 09:10:25 124,928 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\advpack.dll
+ 2008-08-26 09:10:25 347,136 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtmsft.dll
+ 2008-08-26 09:10:25 214,528 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\dxtrans.dll
+ 2008-08-26 09:10:25 132,608 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\extmgr.dll
+ 2008-08-26 09:10:25 63,488 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\icardie.dll
+ 2008-08-25 08:43:21 70,656 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ie4uinit.exe
+ 2008-08-26 09:10:26 153,088 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakeng.dll
+ 2008-08-26 09:10:26 230,400 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieaksie.dll
+ 2008-08-23 05:54:50 161,792 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dat
+ 2008-08-26 09:10:26 380,928 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieapfltr.dll
+ 2008-08-26 09:10:26 388,608 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-03 16:22:30 6,068,224 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieframe.dll
+ 2008-08-26 09:10:27 44,544 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iernonce.dll
+ 2008-08-26 09:10:27 267,776 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iertutil.dll
+ 2008-08-25 08:43:21 13,824 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\ieudinit.exe
+ 2008-08-23 05:56:16 635,848 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\iexplore.exe
+ 2008-08-26 09:10:27 27,648 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\jsproxy.dll
+ 2008-08-26 09:10:27 459,264 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeeds.dll
+ 2008-08-26 09:10:27 52,224 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msfeedsbs.dll
+ 2008-08-26 09:10:28 3,594,752 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtml.dll
+ 2008-08-26 09:10:28 477,696 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mshtmled.dll
+ 2008-08-26 09:10:28 193,024 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\msrating.dll
+ 2008-08-26 09:10:29 671,232 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\mstime.dll
+ 2008-08-26 09:10:29 102,912 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\occache.dll
+ 2008-08-26 09:10:29 44,544 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\pngfilt.dll
+ 2008-08-26 09:10:29 105,984 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\url.dll
+ 2008-08-26 09:10:29 1,162,752 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\urlmon.dll
+ 2008-08-26 09:10:29 233,472 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\webcheck.dll
+ 2008-08-26 09:10:29 827,904 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 -c--a-w c:\windows\$hf_mig$\KB956390-IE7\update\updspapi.dll
+ 2007-11-30 12:39:29 18,296 -c--a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
+ 2007-11-30 12:39:29 234,872 -c--a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
+ 2007-11-30 12:39:29 26,488 -c--a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB956391\update\update.exe
+ 2007-11-30 12:39:31 406,392 -c--a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
+ 2008-10-23 12:44:51 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-07-08 13:03:54 18,296 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2008-07-08 13:03:55 234,872 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-07-08 13:03:54 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2008-08-14 10:34:26 138,496 -c--a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
+ 2008-08-14 13:55:54 2,147,328 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-08-14 17:26:00 2,068,096 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
+ 2008-08-14 13:55:47 2,025,984 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-08-14 17:26:02 2,191,232 -c--a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 -c--a-w c:\windows\$hf_mig$\KB956841\update\update.exe
+ 2008-07-09 07:40:35 406,392 -c--a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
+ 2008-09-08 11:37:19 333,824 -c--a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB957095\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
+ 2008-10-24 11:41:11 455,936 -c--a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
+ 2008-07-08 13:03:54 18,296 -c--a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
+ 2008-07-08 13:03:55 234,872 -c--a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2008-07-08 13:03:54 26,488 -c--a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
+ 2008-07-08 13:03:57 767,352 -c--a-w c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2008-07-08 13:04:05 406,392 -c--a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
+ 2008-10-16 19:33:14 124,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\advpack.dll
+ 2008-10-16 19:33:14 347,136 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtmsft.dll
+ 2008-10-16 19:33:14 214,528 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\dxtrans.dll
+ 2008-10-16 19:33:14 132,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\extmgr.dll
+ 2008-10-16 19:33:14 63,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\icardie.dll
+ 2008-10-16 12:46:08 70,656 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ie4uinit.exe
+ 2008-10-16 19:33:14 153,088 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakeng.dll
+ 2008-10-16 19:33:14 230,400 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieaksie.dll
+ 2008-10-15 06:33:26 161,792 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dat
+ 2008-10-16 19:33:15 380,928 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieapfltr.dll
+ 2008-10-16 19:33:15 388,608 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iedkcs32.dll
+ 2008-10-16 19:33:16 6,068,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieframe.dll
+ 2008-10-16 19:33:16 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iernonce.dll
+ 2008-10-16 19:33:16 267,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iertutil.dll
+ 2008-10-16 12:46:08 13,824 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\ieudinit.exe
+ 2008-10-15 06:34:58 633,632 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\iexplore.exe
+ 2008-10-16 19:33:17 27,648 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\jsproxy.dll
+ 2008-10-16 19:33:18 459,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeeds.dll
+ 2008-10-16 19:33:18 52,224 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msfeedsbs.dll
+ 2008-10-16 19:33:19 3,595,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtml.dll
+ 2008-10-16 19:33:20 477,696 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mshtmled.dll
+ 2008-10-16 19:33:20 193,024 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\msrating.dll
+ 2008-10-16 19:33:21 671,232 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\mstime.dll
+ 2008-10-16 19:33:21 102,912 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\occache.dll
+ 2008-10-16 19:33:21 44,544 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\pngfilt.dll
+ 2008-10-16 19:33:21 105,984 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\url.dll
+ 2008-10-16 19:33:21 1,163,264 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\urlmon.dll
+ 2008-10-16 19:33:22 233,472 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\webcheck.dll
+ 2008-10-16 19:33:22 827,904 ----a-w c:\windows\$hf_mig$\KB958215-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB958215-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB958215-IE7\update\updspapi.dll
+ 2008-10-15 16:31:32 339,456 -c--a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2007-11-30 11:19:06 18,296 -c--a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2007-11-30 11:19:06 234,872 -c--a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2007-11-30 11:19:06 26,488 -c--a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 -c--a-w c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2007-11-30 11:19:10 406,392 -c--a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2008-12-11 12:33:59 333,952 ----a-w c:\windows\$hf_mig$\KB958687\SP3QFE\srv.sys
+ 2007-11-30 11:19:06 18,296 ----a-w c:\windows\$hf_mig$\KB958687\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w c:\windows\$hf_mig$\KB958687\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w c:\windows\$hf_mig$\KB958687\update\spcustom.dll
+ 2007-11-30 11:19:06 767,352 ----a-w c:\windows\$hf_mig$\KB958687\update\update.exe
+ 2007-11-30 11:19:10 406,392 ----a-w c:\windows\$hf_mig$\KB958687\update\updspapi.dll
+ 2008-12-13 06:27:45 3,594,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\SP2QFE\mshtml.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB960714-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\update.exe
+ 2007-03-06 01:35:47 394,976 ----a-w c:\windows\$hf_mig$\KB960714-IE7\update\updspapi.dll
+ 2008-07-09 07:40:22 18,296 ----a-w c:\windows\$hf_mig$\KB960715\spmsg.dll
+ 2008-07-09 07:40:24 234,872 ----a-w c:\windows\$hf_mig$\KB960715\spuninst.exe
+ 2008-07-09 07:40:22 26,488 ----a-w c:\windows\$hf_mig$\KB960715\update\spcustom.dll
+ 2008-11-15 17:18:14 767,352 ----a-w c:\windows\$hf_mig$\KB960715\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB960715\update\updspapi.dll
+ 2008-12-20 23:47:28 124,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\advpack.dll
+ 2008-12-20 23:47:28 347,136 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\dxtmsft.dll
+ 2008-12-20 23:47:28 214,528 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\dxtrans.dll
+ 2008-12-20 23:47:28 132,608 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\extmgr.dll
+ 2008-12-20 23:47:28 63,488 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\icardie.dll
+ 2008-12-19 09:41:51 70,656 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ie4uinit.exe
+ 2008-12-20 23:47:28 153,088 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieakeng.dll
+ 2008-12-20 23:47:28 230,400 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieaksie.dll
+ 2008-12-19 05:24:02 161,792 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieapfltr.dat
+ 2008-12-20 23:47:29 380,928 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieapfltr.dll
+ 2008-12-20 23:47:29 388,608 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iedkcs32.dll
+ 2008-12-20 23:47:30 6,068,736 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieframe.dll
+ 2008-12-20 23:47:30 44,544 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iernonce.dll
+ 2008-12-20 23:47:31 267,776 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iertutil.dll
+ 2008-12-19 09:41:52 13,824 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\ieudinit.exe
+ 2008-12-19 05:25:30 634,024 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\iexplore.exe
+ 2008-12-20 23:47:31 27,648 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\jsproxy.dll
+ 2008-12-20 23:47:31 459,264 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msfeeds.dll
+ 2008-12-20 23:47:31 52,224 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msfeedsbs.dll
+ 2009-01-16 16:20:14 3,596,288 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll
+ 2008-12-20 23:47:33 477,696 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtmled.dll
+ 2008-12-20 23:47:33 193,024 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\msrating.dll
+ 2008-12-20 23:47:34 671,232 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mstime.dll
+ 2008-12-20 23:47:34 102,912 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\occache.dll
+ 2008-12-20 23:47:34 44,544 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\pngfilt.dll
+ 2008-12-20 23:47:34 105,984 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\url.dll
+ 2008-12-20 23:47:35 1,163,264 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\urlmon.dll
+ 2008-12-20 23:47:35 233,472 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\webcheck.dll
+ 2008-12-20 23:47:36 827,904 ----a-w c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:34:33 15,072 ----a-w c:\windows\$hf_mig$\KB961260-IE7\spmsg.dll
+ 2007-03-06 01:34:38 216,800 ----a-w c:\windows\$hf_mig$\KB961260-IE7\spuninst.exe
+ 2007-03-06 01:34:31 22,752 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\spcustom.dll
+ 2007-03-06 01:34:56 727,776 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\update.exe
+ 2007-03-06 01:35:48 394,976 ----a-w c:\windows\$hf_mig$\KB961260-IE7\update\updspapi.dll
+ 2008-06-17 19:04:03 8,518,144 ----a-w c:\windows\$hf_mig$\KB967715\SP3QFE\shell32.dll
+ 2008-07-09 07:40:22 18,296 ----a-w c:\windows\$hf_mig$\KB967715\spmsg.dll
+ 2008-07-09 07:40:24 234,872 ----a-w c:\windows\$hf_mig$\KB967715\spuninst.exe
+ 2008-07-09 07:40:22 26,488 ----a-w c:\windows\$hf_mig$\KB967715\update\spcustom.dll
+ 2008-07-09 07:40:26 767,352 ----a-w c:\windows\$hf_mig$\KB967715\update\update.exe
+ 2008-07-09 07:40:35 406,392 ----a-w c:\windows\$hf_mig$\KB967715\update\updspapi.dll
+ 2008-04-08 21:27:50 2,232 -c----w c:\windows\$NtServicePackUninstall$\1zfj13dz.dat
+ 2006-08-16 11:59:27 100,352 -c----w c:\windows\$NtServicePackUninstall$\6to4svc.dll
+ 2006-10-04 14:05:26 39,424 -c----w c:\windows\$NtServicePackUninstall$\acadproc.dll
+ 2006-10-04 14:05:26 39,424 -c----w c:\windows\$NtServicePackUninstall$\acadproc.dll.000
+ 2004-08-19 14:09:52 189,952 -c----w c:\windows\$NtServicePackUninstall$\accwiz.exe
+ 2004-08-19 14:09:20 1,852,416 -c----w c:\windows\$NtServicePackUninstall$\acgenral.dll
+ 2004-08-19 14:09:20 1,852,416 -c----w c:\windows\$NtServicePackUninstall$\acgenral.dll.000
+ 2004-08-19 14:09:20 450,048 -c----w c:\windows\$NtServicePackUninstall$\aclayers.dll
+ 2004-08-19 14:09:20 450,048 -c----w c:\windows\$NtServicePackUninstall$\aclayers.dll.000
+ 2004-08-19 14:09:20 137,728 -c----w c:\windows\$NtServicePackUninstall$\aclua.dll
+ 2004-08-19 14:09:20 137,728 -c----w c:\windows\$NtServicePackUninstall$\aclua.dll.000
+ 2004-08-19 14:09:20 119,296 -c----w c:\windows\$NtServicePackUninstall$\aclui.dll
+ 2004-08-19 13:51:56 188,672 -c----w c:\windows\$NtServicePackUninstall$\acpi.sys
+ 2004-08-19 14:09:20 244,736 -c----w c:\windows\$NtServicePackUninstall$\acspecfc.dll
+ 2004-08-19 14:09:20 244,736 -c----w c:\windows\$NtServicePackUninstall$\acspecfc.dll.000
+ 2004-08-19 14:09:20 194,048 -c----w c:\windows\$NtServicePackUninstall$\activeds.dll
+ 2004-08-19 14:09:52 4,096 -c----w c:\windows\$NtServicePackUninstall$\actmovie.exe
+ 2004-08-19 14:09:20 101,888 -c----w c:\windows\$NtServicePackUninstall$\actxprxy.dll
+ 2004-08-19 14:09:20 116,224 -c----w c:\windows\$NtServicePackUninstall$\acxtrnal.dll
+ 2004-08-19 14:09:20 116,224 -c----w c:\windows\$NtServicePackUninstall$\acxtrnal.dll.000
+ 2004-08-19 14:09:20 29,696 -c----w c:\windows\$NtServicePackUninstall$\admexs.dll
+ 2003-03-24 13:52:04 20,540 -c----w c:\windows\$NtServicePackUninstall$\admin.dll
+ 2003-03-24 13:52:04 16,439 -c----w c:\windows\$NtServicePackUninstall$\admin.exe
+ 2004-08-19 14:09:20 43,520 -c----w c:\windows\$NtServicePackUninstall$\admwprox.dll
+ 2004-08-19 14:09:20 290,816 -c----w c:\windows\$NtServicePackUninstall$\adsiis51.dll
+ 2004-08-19 14:09:20 175,616 -c----w c:\windows\$NtServicePackUninstall$\adsldp.dll
+ 2004-08-19 14:09:20 143,360 -c----w c:\windows\$NtServicePackUninstall$\adsldpc.dll
+ 2004-08-19 14:09:20 68,096 -c----w c:\windows\$NtServicePackUninstall$\adsmsext.dll
+ 2004-08-19 14:09:20 263,680 -c----w c:\windows\$NtServicePackUninstall$\adsnt.dll
+ 2001-08-28 12:00:00 109,568 -c----w c:\windows\$NtServicePackUninstall$\adsnw.dll
+ 2004-08-19 14:09:20 685,056 -c----w c:\windows\$NtServicePackUninstall$\advapi32.dll
+ 2006-02-15 00:22:26 142,464 -c----w c:\windows\$NtServicePackUninstall$\aec.sys
+ 2006-02-15 00:22:26 142,464 -c----w c:\windows\$NtServicePackUninstall$\aec.sys.000
+ 2008-06-20 10:44:38 138,368 -c----w c:\windows\$NtServicePackUninstall$\afd.sys
+ 2004-08-19 14:09:20 24,064 -c----w c:\windows\$NtServicePackUninstall$\agentanm.dll
+ 2004-08-19 14:09:20 214,016 -c----w c:\windows\$NtServicePackUninstall$\agentctl.dll
+ 2006-10-12 14:04:13 42,496 -c----w c:\windows\$NtServicePackUninstall$\agentdp2.dll
+ 2007-03-09 13:48:06 57,344 -c----w c:\windows\$NtServicePackUninstall$\agentdpv.dll
+ 2004-08-19 14:09:20 49,152 -c----w c:\windows\$NtServicePackUninstall$\agentmpx.dll
+ 2004-08-19 14:09:20 24,064 -c----w c:\windows\$NtServicePackUninstall$\agentpsh.dll
+ 2004-08-19 14:09:20 44,032 -c----w c:\windows\$NtServicePackUninstall$\agentsr.dll
+ 2006-10-12 11:09:53 256,512 -c----w c:\windows\$NtServicePackUninstall$\agentsvr.exe
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0401.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0404.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0405.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0406.dll
+ 2001-08-28 12:00:00 21,504 -c----w c:\windows\$NtServicePackUninstall$\agt0407.dll
+ 2001-08-28 12:00:00 22,016 -c----w c:\windows\$NtServicePackUninstall$\agt0408.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0409.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt040b.dll
+ 2001-08-28 12:00:00 21,504 -c----w c:\windows\$NtServicePackUninstall$\agt040c.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt040d.dll
+ 2001-08-28 12:00:00 19,968 -c----w c:\windows\$NtServicePackUninstall$\agt040e.dll
+ 2001-08-28 12:00:00 20,992 -c----w c:\windows\$NtServicePackUninstall$\agt0410.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0411.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0412.dll
+ 2001-08-28 12:00:00 20,992 -c----w c:\windows\$NtServicePackUninstall$\agt0413.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0414.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0415.dll
+ 2001-08-28 12:00:00 20,480 -c----w c:\windows\$NtServicePackUninstall$\agt0416.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0419.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt041d.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt041f.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\agt0804.dll
+ 2001-08-28 12:00:00 20,992 -c----w c:\windows\$NtServicePackUninstall$\agt0816.dll
+ 2001-08-28 12:00:00 20,480 -c----w c:\windows\$NtServicePackUninstall$\agt0c0a.dll
+ 2004-08-19 14:09:20 24,064 -c----w c:\windows\$NtServicePackUninstall$\agtintl.dll
+ 2004-08-19 14:09:52 98,304 -c----w c:\windows\$NtServicePackUninstall$\ahui.exe
+ 2004-08-19 14:09:52 44,544 -c----w c:\windows\$NtServicePackUninstall$\alg.exe
+ 2004-08-19 14:09:20 17,408 -c----w c:\windows\$NtServicePackUninstall$\alrsvc.dll
+ 2004-08-19 14:20:54 41,216 -c----w c:\windows\$NtServicePackUninstall$\amdk6.sys
+ 2004-08-19 14:20:54 41,600 -c----w c:\windows\$NtServicePackUninstall$\amdk7.sys
+ 2004-08-19 14:09:20 70,656 -c----w c:\windows\$NtServicePackUninstall$\amstream.dll
+ 2004-08-19 14:09:20 110,080 -c----w c:\windows\$NtServicePackUninstall$\appconf.dll
+ 2004-08-19 14:09:20 126,976 -c----w c:\windows\$NtServicePackUninstall$\apphelp.dll
+ 2004-08-19 14:09:20 176,640 -c----w c:\windows\$NtServicePackUninstall$\appmgmts.dll
+ 2004-08-19 14:09:20 302,592 -c----w c:\windows\$NtServicePackUninstall$\appmgr.dll
+ 2004-08-19 14:09:20 334,336 -c----w c:\windows\$NtServicePackUninstall$\aqueue.dll
+ 2004-08-19 14:20:54 60,800 -c----w c:\windows\$NtServicePackUninstall$\arp1394.sys
+ 1999-08-09 12:39:20 14,832 -c----w c:\windows\$NtServicePackUninstall$\asfsipc.dll
+ 2004-08-19 14:09:20 377,344 -c----w c:\windows\$NtServicePackUninstall$\asp51.dll
+ 2004-08-19 14:09:52 30,720 -c----w c:\windows\$NtServicePackUninstall$\asr_fmt.exe
+ 2004-08-19 14:09:52 32,768 -c----w c:\windows\$NtServicePackUninstall$\asr_pfu.exe
+ 2004-08-19 14:09:20 65,024 -c----w c:\windows\$NtServicePackUninstall$\asycfilt.dll
+ 2004-08-03 21:05:04 14,336 -c----w c:\windows\$NtServicePackUninstall$\asyncmac.sys
+ 2004-08-19 14:09:52 25,088 -c----w c:\windows\$NtServicePackUninstall$\at.exe
+ 2004-08-03 20:59:44 95,360 -c----w c:\windows\$NtServicePackUninstall$\atapi.sys
+ 2004-08-19 15:09:20 870,784 -c----w c:\windows\$NtServicePackUninstall$\ati3d1ag.dll
+ 2004-08-19 14:09:20 58,880 -c----w c:\windows\$NtServicePackUninstall$\atl.dll
+ 2004-08-19 14:09:52 11,264 -c----w c:\windows\$NtServicePackUninstall$\atmadm.exe
+ 2004-08-03 20:58:32 59,904 -c----w c:\windows\$NtServicePackUninstall$\atmarpc.sys
+ 2004-08-19 14:08:02 285,696 -c----w c:\windows\$NtServicePackUninstall$\atmfd.dll
+ 2004-08-03 20:58:36 55,936 -c----w c:\windows\$NtServicePackUninstall$\atmlane.sys
+ 2004-08-19 14:09:22 30,208 -c----w c:\windows\$NtServicePackUninstall$\atmlib.dll
+ 2001-08-28 12:00:00 11,264 -c----w c:\windows\$NtServicePackUninstall$\attrib.exe
+ 2004-08-19 14:09:22 42,496 -c----w c:\windows\$NtServicePackUninstall$\audiosrv.dll
+ 2004-08-19 14:09:52 14,336 -c----w c:\windows\$NtServicePackUninstall$\auditusr.exe
+ 2003-03-24 13:52:04 20,540 -c----w c:\windows\$NtServicePackUninstall$\author.dll
+ 2003-03-24 13:52:04 16,439 -c----w c:\windows\$NtServicePackUninstall$\author.exe
+ 2005-03-02 18:10:36 56,832 -c----w c:\windows\$NtServicePackUninstall$\authz.dll
+ 2004-08-19 14:09:52 625,152 -c----w c:\windows\$NtServicePackUninstall$\autochk.exe
+ 2004-08-19 14:09:52 638,976 -c----w c:\windows\$NtServicePackUninstall$\autoconv.exe
+ 2004-08-19 14:09:52 616,960 -c----w c:\windows\$NtServicePackUninstall$\autofmt.exe
+ 2004-08-19 14:09:52 11,264 -c----w c:\windows\$NtServicePackUninstall$\autolfn.exe
+ 2004-08-19 14:09:22 85,504 -c----w c:\windows\$NtServicePackUninstall$\avifil32.dll
+ 2004-08-19 14:09:22 52,736 -c----w c:\windows\$NtServicePackUninstall$\basesrv.dll
+ 2004-08-19 14:09:22 28,672 -c----w c:\windows\$NtServicePackUninstall$\batmeter.dll
+ 2004-08-19 14:09:22 8,704 -c----w c:\windows\$NtServicePackUninstall$\batt.dll
+ 2004-08-19 14:09:22 17,408 -c----w c:\windows\$NtServicePackUninstall$\bidispl.dll
+ 2004-08-19 14:09:22 8,192 -c----w c:\windows\$NtServicePackUninstall$\bitsprx2.dll
+ 2004-08-19 14:09:22 7,168 -c----w c:\windows\$NtServicePackUninstall$\bitsprx3.dll
+ 2004-08-19 14:09:52 71,680 -c----w c:\windows\$NtServicePackUninstall$\blastcln.exe
+ 2001-08-28 12:00:00 152,064 -c----w c:\windows\$NtServicePackUninstall$\bootcfg.exe
+ 2004-08-03 20:59:58 71,552 -c----w c:\windows\$NtServicePackUninstall$\bridge.sys
+ 2004-08-19 14:08:04 70,144 -c----w c:\windows\$NtServicePackUninstall$\browselc.dll
+ 2004-08-19 14:09:22 77,312 -c----w c:\windows\$NtServicePackUninstall$\browser.dll
+ 2008-02-16 09:02:34 1,024,000 -c----w c:\windows\$NtServicePackUninstall$\browseui.dll
+ 2004-08-19 14:09:22 78,336 -c----w c:\windows\$NtServicePackUninstall$\browsewm.dll
+ 2004-08-19 14:09:22 20,992 -c----w c:\windows\$NtServicePackUninstall$\bthci.dll
+ 2008-06-14 17:59:52 272,768 -c----w c:\windows\$NtServicePackUninstall$\bthport.sys
+ 2008-06-14 17:59:52 272,768 -c----w c:\windows\$NtServicePackUninstall$\bthport.sys.000
+ 2004-08-19 14:09:22 30,208 -c----w c:\windows\$NtServicePackUninstall$\bthserv.dll
+ 2004-08-19 14:09:22 50,688 -c----w c:\windows\$NtServicePackUninstall$\btpanui.dll
+ 2001-08-28 12:00:00 218,112 -c----w c:\windows\$NtServicePackUninstall$\c_g18030.dll
+ 2004-08-19 14:09:22 59,904 -c----w c:\windows\$NtServicePackUninstall$\cabinet.dll
+ 2004-08-19 14:09:22 85,504 -c----w c:\windows\$NtServicePackUninstall$\cabview.dll
+ 2001-08-28 12:00:00 19,456 -c----w c:\windows\$NtServicePackUninstall$\cacls.exe
+ 2004-08-19 14:09:22 385,024 -c----w c:\windows\$NtServicePackUninstall$\callcont.dll
+ 2004-08-19 14:09:22 50,688 -c----w c:\windows\$NtServicePackUninstall$\camocx.dll
+ 2001-08-28 12:00:00 146,432 -c----w c:\windows\$NtServicePackUninstall$\capesnpn.dll
+ 2005-07-26 04:39:54 225,792 -c----w c:\windows\$NtServicePackUninstall$\catsrv.dll
+ 2004-08-19 14:09:22 85,504 -c----w c:\windows\$NtServicePackUninstall$\catsrvps.dll
+ 2005-07-26 04:39:54 625,152 -c----w c:\windows\$NtServicePackUninstall$\catsrvut.dll
+ 2004-08-03 21:10:18 17,024 -c----w c:\windows\$NtServicePackUninstall$\ccdecode.sys
+ 2004-08-03 21:14:12 63,744 -c----w c:\windows\$NtServicePackUninstall$\cdfs.sys
+ 2008-02-16 09:02:34 152,064 -c----w c:\windows\$NtServicePackUninstall$\cdfview.dll
+ 2005-09-10 01:55:14 2,067,968 -c----w c:\windows\$NtServicePackUninstall$\cdosys.dll
+ 2004-08-03 20:59:54 49,536 -c----w c:\windows\$NtServicePackUninstall$\cdrom.sys
+ 2004-08-19 14:09:22 200,192 -c----w c:\windows\$NtServicePackUninstall$\certcli.dll
+ 2004-08-19 14:09:22 467,968 -c----w c:\windows\$NtServicePackUninstall$\certmgr.dll
+ 2004-08-19 14:09:22 39,424 -c----w c:\windows\$NtServicePackUninstall$\cfgbkend.dll
+ 2004-08-19 14:08:04 16,896 -c----w c:\windows\$NtServicePackUninstall$\cfgmgr32.dll
+ 2003-03-24 13:52:04 188,480 -c----w c:\windows\$NtServicePackUninstall$\cfgwiz.exe
+ 2004-08-03 20:31:52 97,792 -c----w c:\windows\$NtServicePackUninstall$\chtmbx.dll
+ 2004-08-03 20:31:54 56,320 -c----w c:\windows\$NtServicePackUninstall$\chtskdic.dll
+ 2004-08-03 20:31:54 173,568 -c----w c:\windows\$NtServicePackUninstall$\chtskf.dll
+ 2001-08-28 12:00:00 109,568 -c----w c:\windows\$NtServicePackUninstall$\cic.dll
+ 2004-08-19 14:09:22 1,352,704 -c----w c:\windows\$NtServicePackUninstall$\cimwin32.dll
+ 2004-08-03 20:31:54 198,656 -c----w c:\windows\$NtServicePackUninstall$\cintime.dll
+ 2006-06-22 05:13:45 69,120 -c----w c:\windows\$NtServicePackUninstall$\ciodm.dll
+ 2004-08-19 14:09:52 56,832 -c----w c:\windows\$NtServicePackUninstall$\cipher.exe
+ 2004-08-19 14:09:52 5,632 -c----w c:\windows\$NtServicePackUninstall$\cisvc.exe
+ 2004-08-03 21:14:28 49,664 -c----w c:\windows\$NtServicePackUninstall$\classpnp.sys
+ 2005-07-26 04:39:55 110,080 -c----w c:\windows\$NtServicePackUninstall$\clbcatex.dll
+ 2005-07-26 04:39:55 498,688 -c----w c:\windows\$NtServicePackUninstall$\clbcatq.dll
+ 2004-08-19 14:09:52 65,536 -c----w c:\windows\$NtServicePackUninstall$\cleanmgr.exe
+ 2004-08-19 14:09:22 77,824 -c----w c:\windows\$NtServicePackUninstall$\cliconfg.dll
+ 2004-08-19 14:09:52 20,480 -c----w c:\windows\$NtServicePackUninstall$\cliconfg.exe
+ 2004-08-19 14:09:52 104,448 -c----w c:\windows\$NtServicePackUninstall$\clipbrd.exe
+ 2004-08-19 14:09:52 33,280 -c----w c:\windows\$NtServicePackUninstall$\clipsrv.exe
+ 2004-08-19 14:09:22 57,856 -c----w c:\windows\$NtServicePackUninstall$\clusapi.dll
+ 2004-08-19 14:09:22 15,872 -c----w c:\windows\$NtServicePackUninstall$\cmcfg32.dll
+ 2004-08-19 14:09:52 400,896 -c----w c:\windows\$NtServicePackUninstall$\cmd.exe
+ 2004-08-19 14:09:26 45,568 -c----w c:\windows\$NtServicePackUninstall$\cmdevtgprov.dll
+ 2004-08-19 14:09:22 352,256 -c----w c:\windows\$NtServicePackUninstall$\cmdial32.dll
+ 2004-08-19 14:09:52 47,104 -c----w c:\windows\$NtServicePackUninstall$\cmdl32.exe
+ 2004-08-19 14:09:52 40,448 -c----w c:\windows\$NtServicePackUninstall$\cmmon32.exe
+ 2004-08-19 14:09:22 191,488 -c----w c:\windows\$NtServicePackUninstall$\cmprops.dll
+ 2004-08-19 14:09:22 13,824 -c----w c:\windows\$NtServicePackUninstall$\cmsetacl.dll
+ 2004-08-19 14:09:52 65,536 -c----w c:\windows\$NtServicePackUninstall$\cmstp.exe
+ 2004-08-19 14:09:22 40,960 -c----w c:\windows\$NtServicePackUninstall$\cmutil.dll
+ 2004-08-19 14:20:54 50,688 -c----w c:\windows\$NtServicePackUninstall$\cnbjmon.dll
+ 2004-08-19 14:09:22 47,104 -c----w c:\windows\$NtServicePackUninstall$\coadmin.dll
+ 2008-04-12 11:50:01 2,678 -c----w c:\windows\$NtServicePackUninstall$\cojft3lf.dat
+ 2005-07-26 04:39:55 60,416 -c----w c:\windows\$NtServicePackUninstall$\colbact.dll
+ 2001-08-28 12:00:00 25,600 -c----w c:\windows\$NtServicePackUninstall$\comaddin.dll
+ 2005-07-26 04:39:56 195,072 -c----w c:\windows\$NtServicePackUninstall$\comadmin.dll
+ 2006-08-25 15:51:14 617,472 -c----w c:\windows\$NtServicePackUninstall$\comctl32.dll
+ 2004-08-19 14:09:22 281,088 -c----w c:\windows\$NtServicePackUninstall$\comdlg32.dll
+ 2004-08-19 14:09:22 253,440 -c----w c:\windows\$NtServicePackUninstall$\compatui.dll
+ 2004-08-19 14:09:22 24,064 -c----w c:\windows\$NtServicePackUninstall$\compfilt.dll
+ 2004-08-19 14:09:22 230,912 -c----w c:\windows\$NtServicePackUninstall$\compstui.dll
+ 2005-07-26 04:39:56 97,792 -c----w c:\windows\$NtServicePackUninstall$\comrepl.dll
+ 2004-08-19 14:09:52 9,728 -c----w c:\windows\$NtServicePackUninstall$\comrepl.exe
+ 2001-08-28 12:00:00 5,120 -c----w c:\windows\$NtServicePackUninstall$\comrereg.exe
+ 2004-08-19 14:09:22 851,968 -c----w c:\windows\$NtServicePackUninstall$\comres.dll
+ 2001-08-28 12:00:00 259,584 -c----w c:\windows\$NtServicePackUninstall$\comsetup.dll
+ 2001-08-28 12:00:00 147,456 -c----w c:\windows\$NtServicePackUninstall$\comsnap.dll
+ 2005-07-26 04:39:57 1,267,200 -c----w c:\windows\$NtServicePackUninstall$\comsvcs.dll
+ 2005-07-26 04:39:57 540,160 -c----w c:\windows\$NtServicePackUninstall$\comuid.dll
+ 2004-08-19 14:09:52 1,044,480 -c----w c:\windows\$NtServicePackUninstall$\conf.exe
+ 2004-08-19 14:09:22 45,056 -c----w c:\windows\$NtServicePackUninstall$\confmrsl.dll
+ 2001-08-28 12:00:00 346,112 -c----w c:\windows\$NtServicePackUninstall$\confmsp.dll
+ 2004-08-19 14:09:52 27,648 -c----w c:\windows\$NtServicePackUninstall$\conime.exe
+ 2004-08-19 14:09:22 35,328 -c----w c:\windows\$NtServicePackUninstall$\corpol.dll
+ 2004-08-19 14:09:22 165,888 -c----w c:\windows\$NtServicePackUninstall$\credui.dll
+ 2004-08-19 14:20:54 40,704 -c----w c:\windows\$NtServicePackUninstall$\crusoe.sys
+ 2004-08-19 14:09:22 604,672 -c----w c:\windows\$NtServicePackUninstall$\crypt32.dll
+ 2004-08-19 14:09:22 75,776 -c----w c:\windows\$NtServicePackUninstall$\cryptdlg.dll
+ 2004-08-19 14:09:22 33,280 -c----w c:\windows\$NtServicePackUninstall$\cryptdll.dll
+ 2004-08-19 14:09:22 54,784 -c----w c:\windows\$NtServicePackUninstall$\cryptext.dll
+ 2004-08-19 14:09:22 63,488 -c----w c:\windows\$NtServicePackUninstall$\cryptnet.dll
+ 2004-08-19 14:09:22 60,416 -c----w c:\windows\$NtServicePackUninstall$\cryptsvc.dll
+ 2004-08-19 14:09:22 530,432 -c----w c:\windows\$NtServicePackUninstall$\cryptui.dll
+ 2004-08-19 14:09:22 102,912 -c----w c:\windows\$NtServicePackUninstall$\cscdll.dll
+ 2004-08-19 14:09:52 98,304 -c----w c:\windows\$NtServicePackUninstall$\cscript.exe
+ 2004-08-19 14:09:22 337,920 -c----w c:\windows\$NtServicePackUninstall$\cscui.dll
+ 2004-08-19 14:09:22 32,768 -c----w c:\windows\$NtServicePackUninstall$\csrsrv.dll
+ 2004-08-19 14:09:52 6,144 -c----w c:\windows\$NtServicePackUninstall$\csrss.exe
+ 2004-08-19 14:09:52 15,360 -c----w c:\windows\$NtServicePackUninstall$\ctfmon.exe
+ 2006-06-02 19:32:20 33,792 -c----w c:\windows\$NtServicePackUninstall$\custsat.dll
+ 2004-08-19 14:09:22 1,179,648 -c----w c:\windows\$NtServicePackUninstall$\d3d8.dll
+ 2004-08-19 14:09:22 8,192 -c----w c:\windows\$NtServicePackUninstall$\d3d8thk.dll
+ 2004-08-19 14:09:22 1,689,088 -c----w c:\windows\$NtServicePackUninstall$\d3d9.dll
+ 2004-08-19 14:09:24 825,344 -c----w c:\windows\$NtServicePackUninstall$\d3dim700.dll
+ 2008-02-16 09:02:34 1,056,768 -c----w c:\windows\$NtServicePackUninstall$\danim.dll
+ 2004-08-19 14:09:24 55,296 -c----w c:\windows\$NtServicePackUninstall$\dataclen.dll
+ 2001-08-28 12:00:00 152,064 -c----w
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
rapport toujours incomplet , mets la fin
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 1.80GHz )
BIOS : Default System BIOS
USER : la famille ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
Firewall : ZoneAlarm Firewall 7.0.362.000 (Activated)
C:\ (Local Disk) - NTFS - Total:37 Go (Free:1 Go)
D:\ (Local Disk) - NTFS - Total:149 Go (Free:58 Go)
F:\ (CD or DVD)
G:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 18/03/2009|17:48 )

-----------\\ SUPPRESSION

Supprime! - C:\Program Files\AskSBar\bar
Supprime! - C:\Program Files\AskSBar\SrchAstt
Supprime! - C:\Program Files\AskTBar\bar
Supprime! - C:\Program Files\AskTBar\PopSwatr
Supprime! - C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio\kb127
Supprime! - C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio\kb127
Supprime! - C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio\kb127
Supprime! - C:\DOCUME~1\Memini\APPLIC~1\Dealio\kb127
Supprime! - C:\Program Files\Dealio\kb127
Supprime! - C:\DOCUME~1\ANDOAD~1\APPLIC~1\Search Settings\kb127
Supprime! - C:\DOCUME~1\Furaha\APPLIC~1\Search Settings\kb127
Supprime! - C:\DOCUME~1\INVIT~1\APPLIC~1\Search Settings\kb127
Supprime! - C:\DOCUME~1\KILONG~1\APPLIC~1\Search Settings\kb127
Supprime! - C:\DOCUME~1\Memini\APPLIC~1\Search Settings\kb127
Supprime! - C:\Program Files\AskSBar
Supprime! - C:\Program Files\AskTBar
Supprime! - C:\DOCUME~1\ANDOAD~1\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\INVIT~1\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\KILONG~1\APPLIC~1\Dealio
Supprime! - C:\DOCUME~1\Memini\APPLIC~1\Dealio
Supprime! - C:\Program Files\Dealio
Supprime! - C:\DOCUME~1\ANDOAD~1\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\Furaha\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\INVIT~1\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\KILONG~1\APPLIC~1\Search Settings
Supprime! - C:\DOCUME~1\Memini\APPLIC~1\Search Settings

-----------\\ Recherche de Fichiers / Dossiers ...


-----------\\ Extensions

(ANDO Administrateur) - {0F4F7F5C-C791-4951-8D9C-A0847AD03A7B} => chrome
(ANDO Administrateur) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar

(Furaha) - {5A170DD3-63CA-4c58-93B7-DE9FF536C2FF} => walnut
(Furaha) - {d9284e50-81fc-11da-a72b-0800200c9a66} => yoono
(Furaha) - {d9284e50-81fc-11da-a72b-0800200c9a66} => sidebar
(Furaha) - {EF522540-89F5-46b9-B6FE-1829E2B572C6} => googlepreview

(K. Joseph) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper

(Kilongo {HustleKing}) - {HustleKing} =>

(la famille) - {0F4F7F5C-C791-4951-8D9C-A0847AD03A7B} => chrome
(la famille) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
(la famille) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper

(T. Jérémie) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="https://actus.sfr.fr"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
"Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.msn.com/fr-fr/"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\LAFAMI~1\Mes documents\Crack_up_boom.pdf



1 - "C:\ToolBar SD\TB_1.txt" - 18/03/2009|14:31 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 18/03/2009|17:52 - Option : [2]

-----------\\ Fin du rapport a 17:52:22,09
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
vire ce crack:
C:\DOCUME~1\LAFAMI~1\Mes documents\Crack_up_boom.pdf


______________

colle un rapport avec antivir que tu as

puis remets un rapport RSIt et dis si encore des soucis
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
Avira AntiVir Personal
Report file date: mercredi 18 mars 2009 19:24

Scanning for 1306790 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: MAISON-09A01824

Version information:
BUILD.DAT : 8.2.0.347 16934 Bytes 16/03/2009 14:45:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 25/11/2008 23:21:58
AVSCAN.DLL : 8.1.4.0 40705 Bytes 18/07/2008 10:16:37
LUKE.DLL : 8.1.4.5 164097 Bytes 18/07/2008 10:16:38
LUKERES.DLL : 8.1.4.0 12033 Bytes 18/07/2008 10:16:38
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 12:17:01
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 19:47:26
ANTIVIR2.VDF : 7.1.2.152 749568 Bytes 11/03/2009 12:39:06
ANTIVIR3.VDF : 7.1.2.187 212480 Bytes 18/03/2009 12:38:11
Engineversion : 8.2.0.116
AEVDF.DLL : 8.1.1.0 106868 Bytes 30/01/2009 17:29:41
AESCRIPT.DLL : 8.1.1.63 364923 Bytes 13/03/2009 12:38:06
AESCN.DLL : 8.1.1.8 127346 Bytes 06/03/2009 12:27:34
AERDL.DLL : 8.1.1.3 438645 Bytes 05/11/2008 17:31:33
AEPACK.DLL : 8.1.3.10 397686 Bytes 05/03/2009 12:27:19
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 27/02/2009 12:20:23
AEHEUR.DLL : 8.1.0.104 1634679 Bytes 06/03/2009 12:27:32
AEHELP.DLL : 8.1.2.2 119158 Bytes 27/02/2009 12:20:15
AEGEN.DLL : 8.1.1.29 336245 Bytes 17/03/2009 12:38:15
AEEMU.DLL : 8.1.0.9 393588 Bytes 15/10/2008 22:01:21
AECORE.DLL : 8.1.6.6 176501 Bytes 18/02/2009 12:19:04
AEBB.DLL : 8.1.0.3 53618 Bytes 15/10/2008 22:01:14
AVWINLL.DLL : 1.0.0.12 15105 Bytes 18/07/2008 10:16:37
AVPREF.DLL : 8.0.2.0 38657 Bytes 18/07/2008 10:16:37
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 16:07:56
AVREG.DLL : 8.0.0.1 33537 Bytes 18/07/2008 10:16:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 18/07/2008 10:16:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 18/07/2008 10:16:39
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 18/07/2008 10:16:29
RCTEXT.DLL : 8.0.52.0 86273 Bytes 18/07/2008 10:16:29

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: mercredi 18 mars 2009 19:24

Starting search for hidden objects.
'119979' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'ShowTime.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'NMIndexingService.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'notepad.exe' - '1' Module(s) have been scanned
Scan process 'wltuser.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'notepad.exe' - '1' Module(s) have been scanned
Scan process 'OfficeLiveSignIn.exe' - '1' Module(s) have been scanned
Scan process 'WINWORD.EXE' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process '9widget.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'ACDaemon.exe' - '1' Module(s) have been scanned
Scan process 'realsched.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'zlclient.exe' - '0' Module(s) have been scanned
Scan process 'CFD.exe' - '1' Module(s) have been scanned
Scan process 'Res.exe' - '1' Module(s) have been scanned
Scan process 'mouse32a.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'KBDAP32A.EXE' - '1' Module(s) have been scanned
Scan process 'MOffice.exe' - '1' Module(s) have been scanned
Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
Scan process 'PDVDServ.exe' - '1' Module(s) have been scanned
Scan process 'mixer.exe' - '1' Module(s) have been scanned
Scan process 'WgaTray.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SeaPort.exe' - '1' Module(s) have been scanned
Scan process 'RichVideo.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
Scan process 'ASUSKBService.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'ACService.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'vsmon.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
53 processes with 53 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '64' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\ANDO Administrateur\Bureau\install_LimeWire Basic_.exe
[DETECTION] Contains recognition pattern of the PHISH/FraudTool.CCleaner.AZ phishing file/email
[NOTE] The file was moved to '4a343f49.qua'!
C:\Documents and Settings\la famille\Mes documents\LimeWire\Saved\ambiance tropical decibel.mp3
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a23516c.qua'!
C:\Documents and Settings\la famille\Mes documents\LimeWire\Saved\ambiance tropical decibel.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.2 Trojan
[NOTE] The file was moved to '4a23516f.qua'!
C:\Documents and Settings\Memini\Mes documents\LimeWire\Incomplete\Preview-T-5088466-monk soundtrack.snd
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a26582e.qua'!
C:\Documents and Settings\T. Jérémie\Mes documents\LimeWire\Saved\les liaisons dangereuses 1989.mpg
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a345acc.qua'!
C:\Documents and Settings\T. Jérémie\Mes documents\LimeWire\Saved\salete yong c ft s2key.mp3
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a2d5ace.qua'!
C:\Program Files\Lopxp\Sauvegardes\bike bold move shim\Show Safe.exe
[DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
[NOTE] The file was moved to '4a305f6e.qua'!
C:\QooBox\Quarantine\C\Documents and Settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk.exe.vir
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '4a2c625b.qua'!
C:\System Volume Information\_restore{54AF7CEF-EEB6-4FAC-BEA4-7B8807D53A6E}\RP671\A0274958.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '49f36297.qua'!
C:\System Volume Information\_restore{54AF7CEF-EEB6-4FAC-BEA4-7B8807D53A6E}\RP671\A0275034.exe
[DETECTION] Contains recognition pattern of the PHISH/FraudTool.CCleaner.AZ phishing file/email
[NOTE] The file was moved to '49f3629b.qua'!
C:\System Volume Information\_restore{54AF7CEF-EEB6-4FAC-BEA4-7B8807D53A6E}\RP671\A0275035.exe
[DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
[NOTE] The file was moved to '48fa8c2c.qua'!
Begin scan in 'D:\'
D:\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a376897.qua'!
D:\andochanga\jouvenel_fichiers\count.htm
[DETECTION] Contains recognition pattern of the HTML/Crypted.Gen HTML script virus
[NOTE] The file was moved to '4a366ced.qua'!
D:\andochanga\jouvenel_fichiers\count_002.htm
[DETECTION] Contains recognition pattern of the HTML/Crypted.Gen HTML script virus
[NOTE] The file was moved to '4b3e8bfe.qua'!
D:\babies\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a376e05.qua'!
D:\Kilongo\MUSIC\soulja boy j squad - greatest hits.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a366f79.qua'!
D:\mems\RnB\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a376fcb.qua'!
D:\Tshiala {{JesCoast}}\Mes documents\Ma musique\jesus song\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a3772c5.qua'!


End of the scan: mercredi 18 mars 2009 23:15
Used time: 3:51:14 Hour(s)

The scan has been done completely.

22180 Scanning directories
636951 Files were scanned
18 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
18 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
636932 Files not concerned
8190 Archives were scanned
1 Warnings
18 Notes
119979 Objects were scanned with rootkit scan
0 Hidden objects were found
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
Avira AntiVir Personal
Report file date: mercredi 18 mars 2009 19:24

Scanning for 1306790 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 3) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: MAISON-09A01824

Version information:
BUILD.DAT : 8.2.0.347 16934 Bytes 16/03/2009 14:45:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 25/11/2008 23:21:58
AVSCAN.DLL : 8.1.4.0 40705 Bytes 18/07/2008 10:16:37
LUKE.DLL : 8.1.4.5 164097 Bytes 18/07/2008 10:16:38
LUKERES.DLL : 8.1.4.0 12033 Bytes 18/07/2008 10:16:38
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 12:17:01
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 19:47:26
ANTIVIR2.VDF : 7.1.2.152 749568 Bytes 11/03/2009 12:39:06
ANTIVIR3.VDF : 7.1.2.187 212480 Bytes 18/03/2009 12:38:11
Engineversion : 8.2.0.116
AEVDF.DLL : 8.1.1.0 106868 Bytes 30/01/2009 17:29:41
AESCRIPT.DLL : 8.1.1.63 364923 Bytes 13/03/2009 12:38:06
AESCN.DLL : 8.1.1.8 127346 Bytes 06/03/2009 12:27:34
AERDL.DLL : 8.1.1.3 438645 Bytes 05/11/2008 17:31:33
AEPACK.DLL : 8.1.3.10 397686 Bytes 05/03/2009 12:27:19
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 27/02/2009 12:20:23
AEHEUR.DLL : 8.1.0.104 1634679 Bytes 06/03/2009 12:27:32
AEHELP.DLL : 8.1.2.2 119158 Bytes 27/02/2009 12:20:15
AEGEN.DLL : 8.1.1.29 336245 Bytes 17/03/2009 12:38:15
AEEMU.DLL : 8.1.0.9 393588 Bytes 15/10/2008 22:01:21
AECORE.DLL : 8.1.6.6 176501 Bytes 18/02/2009 12:19:04
AEBB.DLL : 8.1.0.3 53618 Bytes 15/10/2008 22:01:14
AVWINLL.DLL : 1.0.0.12 15105 Bytes 18/07/2008 10:16:37
AVPREF.DLL : 8.0.2.0 38657 Bytes 18/07/2008 10:16:37
AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 16:07:56
AVREG.DLL : 8.0.0.1 33537 Bytes 18/07/2008 10:16:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 18/07/2008 10:16:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 18/07/2008 10:16:39
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 18/07/2008 10:16:29
RCTEXT.DLL : 8.0.52.0 86273 Bytes 18/07/2008 10:16:29

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: mercredi 18 mars 2009 19:24

Starting search for hidden objects.
'119979' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'ShowTime.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'NMIndexingService.exe' - '1' Module(s) have been scanned
Scan process 'iexplore.exe' - '1' Module(s) have been scanned
Scan process 'notepad.exe' - '1' Module(s) have been scanned
Scan process 'wltuser.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'notepad.exe' - '1' Module(s) have been scanned
Scan process 'OfficeLiveSignIn.exe' - '1' Module(s) have been scanned
Scan process 'WINWORD.EXE' - '1' Module(s) have been scanned
Scan process 'iPodService.exe' - '1' Module(s) have been scanned
Scan process '9widget.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned
Scan process 'ACDaemon.exe' - '1' Module(s) have been scanned
Scan process 'realsched.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'zlclient.exe' - '0' Module(s) have been scanned
Scan process 'CFD.exe' - '1' Module(s) have been scanned
Scan process 'Res.exe' - '1' Module(s) have been scanned
Scan process 'mouse32a.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'KBDAP32A.EXE' - '1' Module(s) have been scanned
Scan process 'MOffice.exe' - '1' Module(s) have been scanned
Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
Scan process 'PDVDServ.exe' - '1' Module(s) have been scanned
Scan process 'mixer.exe' - '1' Module(s) have been scanned
Scan process 'WgaTray.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'SeaPort.exe' - '1' Module(s) have been scanned
Scan process 'RichVideo.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
Scan process 'ASUSKBService.exe' - '1' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'ACService.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'vsmon.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
53 processes with 53 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '64' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\ANDO Administrateur\Bureau\install_LimeWire Basic_.exe
[DETECTION] Contains recognition pattern of the PHISH/FraudTool.CCleaner.AZ phishing file/email
[NOTE] The file was moved to '4a343f49.qua'!
C:\Documents and Settings\la famille\Mes documents\LimeWire\Saved\ambiance tropical decibel.mp3
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a23516c.qua'!
C:\Documents and Settings\la famille\Mes documents\LimeWire\Saved\ambiance tropical decibel.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.2 Trojan
[NOTE] The file was moved to '4a23516f.qua'!
C:\Documents and Settings\Memini\Mes documents\LimeWire\Incomplete\Preview-T-5088466-monk soundtrack.snd
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a26582e.qua'!
C:\Documents and Settings\T. Jérémie\Mes documents\LimeWire\Saved\les liaisons dangereuses 1989.mpg
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a345acc.qua'!
C:\Documents and Settings\T. Jérémie\Mes documents\LimeWire\Saved\salete yong c ft s2key.mp3
[DETECTION] Contains recognition pattern of the EXP/ASF.GetCodec.Gen exploit
[NOTE] The file was moved to '4a2d5ace.qua'!
C:\Program Files\Lopxp\Sauvegardes\bike bold move shim\Show Safe.exe
[DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
[NOTE] The file was moved to '4a305f6e.qua'!
C:\QooBox\Quarantine\C\Documents and Settings\ANDO Administrateur\Local Settings\Application Data\ykkyqmk.exe.vir
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '4a2c625b.qua'!
C:\System Volume Information\_restore{54AF7CEF-EEB6-4FAC-BEA4-7B8807D53A6E}\RP671\A0274958.exe
[DETECTION] Is the TR/Dropper.Gen Trojan
[NOTE] The file was moved to '49f36297.qua'!
C:\System Volume Information\_restore{54AF7CEF-EEB6-4FAC-BEA4-7B8807D53A6E}\RP671\A0275034.exe
[DETECTION] Contains recognition pattern of the PHISH/FraudTool.CCleaner.AZ phishing file/email
[NOTE] The file was moved to '49f3629b.qua'!
C:\System Volume Information\_restore{54AF7CEF-EEB6-4FAC-BEA4-7B8807D53A6E}\RP671\A0275035.exe
[DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan
[NOTE] The file was moved to '48fa8c2c.qua'!
Begin scan in 'D:\'
D:\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a376897.qua'!
D:\andochanga\jouvenel_fichiers\count.htm
[DETECTION] Contains recognition pattern of the HTML/Crypted.Gen HTML script virus
[NOTE] The file was moved to '4a366ced.qua'!
D:\andochanga\jouvenel_fichiers\count_002.htm
[DETECTION] Contains recognition pattern of the HTML/Crypted.Gen HTML script virus
[NOTE] The file was moved to '4b3e8bfe.qua'!
D:\babies\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a376e05.qua'!
D:\Kilongo\MUSIC\soulja boy j squad - greatest hits.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a366f79.qua'!
D:\mems\RnB\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a376fcb.qua'!
D:\Tshiala {{JesCoast}}\Mes documents\Ma musique\jesus song\revolution kirk franklin.wma
[DETECTION] Is the TR/Dldr.WMA.Wimad.N.3 Trojan
[NOTE] The file was moved to '4a3772c5.qua'!


End of the scan: mercredi 18 mars 2009 23:15
Used time: 3:51:14 Hour(s)

The scan has been done completely.

22180 Scanning directories
636951 Files were scanned
18 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
18 files were moved to quarantine
0 files were renamed
1 Files cannot be scanned
636932 Files not concerned
8190 Archives were scanned
1 Warnings
18 Notes
119979 Objects were scanned with rootkit scan
0 Hidden objects were found
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
Logfile of random's system information tool 1.05 (written by random/random)
Run by la famille at 2009-03-19 00:12:23
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 2 GB (5%) free of 38 GB
Total RAM: 1535 MB (37% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:12:49, on 19/03/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ASUSKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Mixer.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Labtec\Desktop\V5.1\moffice.exe
C:\Program Files\Labtec\Desktop\V5.1\kbdap32a.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Labtec\Desktop\V5.1\MOUSE32A.EXE
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Neuf\Widget Neuf\9widget.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
D:\Mozilla Firefox\firefox.exe
C:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\Documents and Settings\la famille\Bureau\RSIT.exe
C:\Documents and Settings\la famille\Bureau\la famille.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~1\ArcSoft\MEDIAC~1.5FO\STREAM~1\ARCURL~1.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\logiciel\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: EoBho - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: Video Speedy - {E74B0A8E-68C0-4866-8288-53EFF8ECBC28} - D:\VideoSpeedy\VSpeed.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] C:\Program Files\Labtec\Desktop\V5.1\moffice.exe
O4 - HKLM\..\Run: [OFFICEKB] C:\Program Files\Labtec\Desktop\V5.1\kbdap32a.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [Widget Neuf] "C:\Program Files\Neuf\Widget Neuf\9widget.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Editeur audio basic - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\Program Files\Akimania\Editeur Audio Basic\Studio enregistrement (file missing)
O9 - Extra 'Tools' menuitem: &Editeur audio basic - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\Program Files\Akimania\Editeur Audio Basic\Studio enregistrement (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - http://www.creative.com/softwareupdate/su2/ocx/15035/CTPID.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Fichiers communs\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASUS Keyboard Service (ASUSKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ASUSKBService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CT Device Query service (CTDevice_Srv) - Unknown owner - C:\Program Files\Creative\Shared Files\CTDevSrv.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
andochanga Messages postés 17 Date d'inscription   Statut Membre Dernière intervention  
 
Merci beaucoup à jlpjl,
Pour la patience et les conseils très clairs et surtout efficaces.
J'espère que ce problème se trouve maintenant résolu. Toutefois, pouvez-vous me donner quelques détails quant aux causes de mon "malheur".
Je réitère mes remerciements
Andochanga
0
jlpjlp Messages postés 51580 Date d'inscription   Statut Contributeur sécurité Dernière intervention   5 040
 
ok

tu avais des fichiers téléchargés illégalement infectés ...

tu avais mis des rootkits: comme ceci: http://www.malekal.com/Adware.Magic_Control.php

tu avais des infections transitant par les clés usb , disques externes...

alors pense déjà a éviter de télécharger n'importe quoi et scanne reguliermeent ton ordi avec antivir


_________________

ajoute spybot en complément de tes protections: (ne pas activer les tea timer

https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/26157.html

__________________

Télécharge ToolsCleaner sur ton bureau.
--> http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).

__________________
désactive ta restauration puis redemarre ton ordi puis réactive là











encore des soucis??

https://forums.cnetfrance.fr
0