AIDE réinstallation SVP SVP HELP

Bonjour,

Voilà j'ai vista 32bits Hp s3005 slimline j'ai un virus je ne sais pas lequel et j'aimerai mettre mon pc en réinstallent en sortie d'usine mais en formatant mon disque dur. Pour que le virus soit détruit pouvez vous me donnez la marche à suivre svp.

Merci de répondre vite car il se plante souvent et donc grignote peut etre ma mémoire

VITE SVP MERCI D'AVANCE
Configuration: Windows Vista Internet Explorer 7.0

27 réponses

Résumé de la discussion

Un utilisateur équipé de Windows Vista 32 bits sur un HP s3005 slimline est confronté à un virus et souhaite réinstaller l’ordinateur en sortie d’usine en formatant le disque dur. Plusieurs répondants recommandent d'utiliser les CD de récupération fournis par HP ou de créer soi-même ces CD via Démarrer > Tous les Programmes, afin de réinstaller le système sans risque et sans perte de données utilisateur. En cas de plantage, il est préférable d'avoir ces CD et un plan de sauvegarde, car la réinstallation passe par ces médias plutôt que par un simple formatage. D'autres éléments utiles consistent à préparer les CD de restauration, vérifier que la partition de récupération est intacte et, après réinstallation, réinstaller les pilotes et logiciels essentiels.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    le cd avec hp c'est a toi de le cré en allant dans démarrer puis tous les programmes

    si tu sais pas regarde ton manuel

    mais effectivement plutôt que formater , après avoir fais les cd car il est important d'en avoir au cas où l'ordi plante complètement

    fais le message 1
    1. Pas forcé de reformater , télécharge RSIT ici : http://images.malwareremoval.com/random/RSIT.exe sur ton bureau

      ▶ Double clique sur RSIT.exe pour lancer l'outil.

      ▶ Clique sur ' continue ' à l'écran Disclaimer.

      ▶ Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.

      ▶ Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports séparément.
      ( log.txt & info.txt )

      (CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

      Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
      1. Merci de vos réponses

        J'ai déjà crée les 2 cd. Mes c juste une remise de commencer c'était à ce moment la ce ne sont pas des sortie d'usine ???

        J'ai déjà fait une sortie d'usine avec le logiciel installé sur le pc dejà mes ca n'a rien changé à mon probleme qui est le suivant :

        DRIVER_IROL_NOT_LESS_OR_EQUAL

        ***STOP: 0x000000D1 (0x8C3FFD04, 0x00000002, 0x00000000, 0x8ADD9A9F)
        ***bdfndisf.sys-adress 8ADD9A9F base at 8ADD8000, datestamp 49942988

        Collecting data for crash dump...
        Initializing disk for crash dump...
        Beginning dump of physical memory.
        Dumping physical memory to disk: 100
        Physical memory dump complete.

        Qu'est ce que cela veut dire?

        Moi je veux le supprimer ce truc et donc faire une sortie d'usine en formatant mon disque dur mais comment faire cela ???

        Merci bcp d'avance
        1. Pour qu'on puise te dire ce qu'il faut faire il faut qu'on sache d'ou vient le probleme donc fais ce que je t'ai dit dans le message 1 sinon on pourra pas t'aider .

          Ou alors reformate ton pc avec un cd original de windows et voilà !
          1. Logfile of random's system information tool 1.06 (written by random/random)
            Run by Jérôme et Gaëlle at 2009-05-13 15:31:01
            Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
            System drive C: has 190 GB (82%) free of 232 GB
            Total RAM: 894 MB (17% free)

            ======Registry dump======

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
            Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
            Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
            Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-05-10 35840]

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
            {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - BitDefender Toolbar - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll [2008-02-28 86016]

            [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
            "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
            "hpsysdrv"=c:\hp\support\hpsysdrv.exe [2006-09-28 65536]
            "KBD"=C:\HP\KBD\KbdStub.EXE [2006-12-08 65536]
            "OsdMaestro"=C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [2006-11-20 155648]
            "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-15 4874240]
            "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
            ""= []
            "SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe [2007-09-25 132496]
            "BitDefender Antiphishing Helper"=C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe [2007-10-09 61440]
            "BDAgent"=C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe [2009-05-07 368640]
            "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-05-22 13539872]
            "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-05-22 92704]
            "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]

            [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
            "Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-24 44136]

            [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
            "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-19 1233920]
            "BTBFirstRun"=C:\Program Files\Hewlett-Packard\SDP\hprun.exe [2006-11-14 20480]
            "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-02-06 3885408]
            "WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []

            C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
            HP Digital Imaging Monitor.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
            ZDWLan Utility.lnk - C:\Program Files\ZyDAS Technology Corporation\ZyDAS_802.11g_Utility\ZDWlan.exe

            C:\Users\Jérôme et Gaëlle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
            OpenOffice.org 2.3.lnk - C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe

            [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
            "dontdisplaylastusername"=0
            "legalnoticecaption"=
            "legalnoticetext"=
            "shutdownwithoutlogon"=1
            "undockwithoutlogon"=1
            "EnableUIADesktopToggle"=0

            [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

            [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

            ======List of files/folders created in the last 1 months======

            2009-05-13 15:31:04 ----D---- C:\Program Files\trend micro
            2009-05-13 15:31:01 ----D---- C:\rsit
            2009-05-13 14:47:28 ----D---- C:\Windows\Minidump
            2009-05-12 16:03:39 ----A---- C:\Windows\system32\msshooks.dll
            2009-05-12 16:03:38 ----A---- C:\Windows\system32\msscb.dll
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\SearchFilterHost.exe
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\propsys.dll
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\propdefs.dll
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\msstrc.dll
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\mssprxy.dll
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\mssitlb.dll
            2009-05-12 16:03:22 ----A---- C:\Windows\system32\msshsq.dll
            2009-05-12 16:03:21 ----A---- C:\Windows\system32\thawbrkr.dll
            2009-05-12 16:03:21 ----A---- C:\Windows\system32\srchadmin.dll
            2009-05-12 16:03:21 ----A---- C:\Windows\system32\korwbrkr.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\xmlfilter.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\wsepno.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\rtffilt.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\offfilt.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\nlhtml.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\msscntrs.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\mimefilt.dll
            2009-05-12 16:03:20 ----A---- C:\Windows\system32\chsbrkr.dll
            2009-05-12 16:03:19 ----A---- C:\Windows\system32\SearchProtocolHost.exe
            2009-05-12 16:03:19 ----A---- C:\Windows\system32\SearchIndexer.exe
            2009-05-12 16:03:19 ----A---- C:\Windows\system32\chtbrkr.dll
            2009-05-12 16:03:18 ----A---- C:\Windows\system32\tquery.dll
            2009-05-12 16:03:18 ----A---- C:\Windows\system32\mssvp.dll
            2009-05-12 16:03:18 ----A---- C:\Windows\system32\mssrch.dll
            2009-05-12 16:03:18 ----A---- C:\Windows\system32\mssphtb.dll
            2009-05-12 16:03:18 ----A---- C:\Windows\system32\mssph.dll
            2009-05-12 12:45:07 ----D---- C:\ProgramData\HP Product Assistant
            2009-05-12 12:41:28 ----A---- C:\Windows\RTKAUDIOSERVICE.EXE
            2009-05-12 12:39:19 ----A---- C:\Windows\system32\SRSWOW.dll
            2009-05-12 12:39:18 ----A---- C:\Windows\RtlUpd.exe
            2009-05-12 12:39:17 ----A---- C:\Windows\system32\RtkPgExt.dll
            2009-05-12 12:39:17 ----A---- C:\Windows\system32\RtkCoInst.dll
            2009-05-12 12:39:16 ----A---- C:\Windows\RtHDVCpl.exe
            2009-05-12 12:39:00 ----D---- C:\Users\Jérôme et Gaëlle\AppData\Roaming\WinBatch
            2009-05-12 11:57:16 ----D---- C:\ProgramData\WEBREG
            2009-05-12 11:52:16 ----D---- C:\Users\Jérôme et Gaëlle\AppData\Roaming\HP
            2009-05-12 11:50:45 ----D---- C:\ProgramData\HPSSUPPLY
            2009-05-12 11:44:29 ----D---- C:\Program Files\Common Files\Hewlett-Packard
            2009-05-12 11:43:55 ----D---- C:\Program Files\Common Files\HP
            2009-05-12 05:53:23 ----A---- C:\Windows\system32\rpcrt4.dll
            2009-05-12 05:53:20 ----A---- C:\Windows\system32\pacerprf.dll
            2009-05-12 05:53:16 ----A---- C:\Windows\system32\wersvc.dll
            2009-05-12 05:53:16 ----A---- C:\Windows\system32\Faultrep.dll
            2009-05-12 05:53:13 ----A---- C:\Windows\system32\emdmgmt.dll
            2009-05-12 05:53:12 ----A---- C:\Windows\system32\dataclen.dll
            2009-05-12 05:53:02 ----A---- C:\Windows\system32\cdd.dll
            2009-05-12 05:52:52 ----A---- C:\Windows\system32\wshext.dll
            2009-05-12 05:52:52 ----A---- C:\Windows\system32\wscript.exe
            2009-05-12 05:52:52 ----A---- C:\Windows\system32\vbscript.dll
            2009-05-12 05:52:52 ----A---- C:\Windows\system32\scrobj.dll
            2009-05-12 05:52:52 ----A---- C:\Windows\system32\jscript.dll
            2009-05-12 05:52:52 ----A---- C:\Windows\system32\cscript.exe
            2009-05-12 05:52:51 ----A---- C:\Windows\system32\scrrun.dll
            2009-05-11 22:09:12 ----D---- C:\ProgramData\WindowsSearch
            2009-05-11 11:07:58 ----D---- C:\ProgramData\Adobe
            2009-05-11 11:06:40 ----D---- C:\Program Files\Common Files\Adobe
            2009-05-11 11:00:34 ----D---- C:\Users\Jérôme et Gaëlle\AppData\Roaming\OpenOffice.org2
            2009-05-11 09:49:24 ----D---- C:\PerfLogs
            2009-05-10 19:05:51 ----A---- C:\Windows\system32\deploytk.dll
            2009-05-10 19:05:50 ----A---- C:\Windows\system32\javaws.exe
            2009-05-10 19:05:50 ----A---- C:\Windows\system32\javaw.exe
            2009-05-10 19:05:49 ----A---- C:\Windows\system32\java.exe
            2009-05-09 17:05:42 ----D---- C:\Users\Jérôme et Gaëlle\AppData\Roaming\dvdcss
            2009-05-09 12:31:43 ----A---- C:\Windows\system32\SLsvc.exe
            2009-05-09 12:31:43 ----A---- C:\Windows\system32\onex.dll
            2009-05-09 12:31:31 ----A---- C:\Windows\system32\PSHED.DLL
            2009-05-09 12:31:30 ----A---- C:\Windows\system32\imagesp1.dll
            2009-05-09 12:31:27 ----A---- C:\Windows\system32\dfsr.exe
            2009-05-09 12:31:26 ----A---- C:\Windows\system32\pidgenx.dll
            2009-05-09 12:31:25 ----A---- C:\Windows\system32\sstpsvc.dll
            2009-05-09 12:31:20 ----A---- C:\Windows\system32\mstscax.dll
            2009-05-09 12:31:18 ----A---- C:\Windows\system32\WsmSvc.dll
            2009-05-09 12:31:18 ----A---- C:\Windows\system32\winrscmd.dll
            2009-05-09 12:31:17 ----A---- C:\Windows\system32\sysmain.dll
            2009-05-09 12:31:17 ----A---- C:\Windows\system32\RMActivate.exe
            2009-05-09 12:31:16 ----A---- C:\Windows\system32\VSSVC.exe
            2009-05-09 12:31:16 ----A---- C:\Windows\system32\vssapi.dll
            2009-05-09 12:31:14 ----A---- C:\Windows\system32\secproc.dll
            2009-05-09 12:31:14 ----A---- C:\Windows\system32\RMActivate_isv.exe
            2009-05-09 12:31:14 ----A---- C:\Windows\system32\iesetup.dll
            2009-05-09 12:31:10 ----A---- C:\Windows\system32\secproc_isv.dll
            2009-05-09 12:31:09 ----A---- C:\Windows\system32\drmv2clt.dll
            2009-05-09 12:31:07 ----A---- C:\Windows\system32\xpssvcs.dll
            2009-05-09 12:31:07 ----A---- C:\Windows\system32\blackbox.dll
            2009-05-09 12:31:06 ----A---- C:\Windows\system32\RacEngn.dll
            2009-05-09 12:31:04 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
            2009-05-09 12:31:04 ----A---- C:\Windows\system32\RMActivate_ssp.exe
            2009-05-09 12:31:04 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
            2009-05-09 12:31:03 ----A---- C:\Windows\system32\spwizimg.dll
            2009-05-09 12:31:03 ----A---- C:\Windows\system32\rdpencom.dll
            2009-05-09 12:31:02 ----A---- C:\Windows\system32\lpremove.exe
            2009-05-09 12:31:02 ----A---- C:\Windows\bfsvc.exe
            2009-05-09 12:31:01 ----A---- C:\Windows\system32\ntdll.dll
            2009-05-09 12:31:01 ----A---- C:\Windows\system32\msjet40.dll
            2009-05-09 12:31:00 ----A---- C:\Windows\system32\qmgr.dll
            2009-05-09 12:31:00 ----A---- C:\Windows\system32\localspl.dll
            2009-05-09 12:30:59 ----A---- C:\Windows\system32\wevtsvc.dll
            2009-05-09 12:30:59 ----A---- C:\Windows\system32\wcncsvc.dll
            2009-05-09 12:30:59 ----A---- C:\Windows\system32\IKEEXT.DLL
            2009-05-09 12:30:58 ----A---- C:\Windows\system32\TsWpfWrp.exe
            2009-05-09 12:30:58 ----A---- C:\Windows\system32\recdisc.exe
            2009-05-09 12:30:54 ----A---- C:\Windows\system32\vds.exe
            2009-05-09 12:30:54 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
            2009-05-09 12:30:52 ----A---- C:\Windows\system32\wcnwiz.dll
            2009-05-09 12:30:52 ----A---- C:\Windows\system32\SMBHelperClass.dll
            2009-05-09 12:30:52 ----A---- C:\Windows\system32\msvbvm60.dll
            2009-05-09 12:30:52 ----A---- C:\Windows\system32\mstsc.exe
            2009-05-09 12:30:50 ----A---- C:\Windows\system32\termsrv.dll
            2009-05-09 12:30:50 ----A---- C:\Windows\system32\msdtctm.dll
            2009-05-09 12:30:49 ----A---- C:\Windows\system32\advapi32.dll
            2009-05-09 12:30:48 ----A---- C:\Windows\system32\kerberos.dll
            2009-05-09 12:30:48 ----A---- C:\Windows\system32\IMJP10K.DLL
            2009-05-09 12:30:45 ----A---- C:\Windows\system32\mmcndmgr.dll
            2009-05-09 12:30:44 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL
            2009-05-09 12:30:44 ----A---- C:\Windows\system32\CertEnroll.dll
            2009-05-09 12:30:43 ----A---- C:\Windows\system32\Query.dll
            2009-05-09 12:30:43 ----A---- C:\Windows\system32\MPSSVC.dll
            2009-05-09 12:30:41 ----A---- C:\Windows\system32\ole32.dll
            2009-05-09 12:30:34 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
            2009-05-09 12:30:33 ----A---- C:\Windows\system32\netlogon.dll
            2009-05-09 12:30:32 ----A---- C:\Windows\system32\msvcrt.dll
            2009-05-09 12:30:31 ----A---- C:\Windows\system32\SSShim.dll
            2009-05-09 12:30:31 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
            2009-05-09 12:30:31 ----A---- C:\Windows\system32\DfsShlEx.dll
            2009-05-09 12:30:30 ----A---- C:\Windows\system32\schedsvc.dll
            2009-05-09 12:30:30 ----A---- C:\Windows\system32\nlmgp.dll
            2009-05-09 12:30:29 ----A---- C:\Windows\system32\user32.dll
            2009-05-09 12:30:29 ----A---- C:\Windows\system32\shlwapi.dll
            2009-05-09 12:30:29 ----A---- C:\Windows\system32\sdclt.exe
            2009-05-09 12:30:29 ----A---- C:\Windows\system32\milcore.dll
            2009-05-09 12:30:29 ----A---- C:\Windows\system32\IasMigPlugin.dll
            2009-05-09 12:30:28 ----A---- C:\Windows\system32\wer.dll
            2009-05-09 12:30:28 ----A---- C:\Windows\system32\clusapi.dll
            2009-05-09 12:30:27 ----A---- C:\Windows\system32\WSDApi.dll
            2009-05-09 12:30:27 ----A---- C:\Windows\system32\vdsdyn.dll
            2009-05-09 12:30:27 ----A---- C:\Windows\system32\QAGENTRT.DLL
            2009-05-09 12:30:27 ----A---- C:\Windows\system32\diagperf.dll
            2009-05-09 12:30:27 ----A---- C:\Windows\system32\d3d9.dll
            2009-05-09 12:30:26 ----A---- C:\Windows\system32\winrsmgr.dll
            2009-05-09 12:30:25 ----A---- C:\Windows\system32\mtxclu.dll
            2009-05-09 12:30:25 ----A---- C:\Windows\system32\mmc.exe
            2009-05-09 12:30:24 ----A---- C:\Windows\system32\vdsbas.dll
            2009-05-09 12:30:24 ----A---- C:\Windows\system32\SLC.dll
            2009-05-09 12:30:23 ----A---- C:\Windows\system32\swprv.dll
            2009-05-09 12:30:23 ----A---- C:\Windows\system32\msi.dll
            2009-05-09 12:30:23 ----A---- C:\Windows\system32\comctl32.dll
            2009-05-09 12:30:21 ----A---- C:\Windows\system32\MSVidCtl.dll
            2009-05-09 12:30:20 ----A---- C:\Windows\system32\XPSSHHDR.dll
            2009-05-09 12:30:20 ----A---- C:\Windows\system32\msdtckrm.dll
            2009-05-09 12:30:20 ----A---- C:\Windows\system32\gpsvc.dll
            2009-05-09 12:30:20 ----A---- C:\Windows\system32\FWPUCLNT.DLL
            2009-05-09 12:30:19 ----A---- C:\Windows\system32\sbe.dll
            2009-05-09 12:30:19 ----A---- C:\Windows\system32\samsrv.dll
            2009-05-09 12:30:19 ----A---- C:\Windows\system32\mfc42u.dll
            2009-05-09 12:30:19 ----A---- C:\Windows\system32\esent.dll
            2009-05-09 12:30:18 ----A---- C:\Windows\system32\wecutil.exe
            2009-05-09 12:30:18 ----A---- C:\Windows\system32\usp10.dll
            2009-05-09 12:30:18 ----A---- C:\Windows\system32\sdengin2.dll
            2009-05-09 12:30:18 ----A---- C:\Windows\system32\gacinstall.dll
            2009-05-09 12:30:18 ----A---- C:\Windows\system32\cmipnpinstall.dll
            2009-05-09 12:30:18 ----A---- C:\Windows\system32\cmicryptinstall.dll
            2009-05-09 12:30:17 ----A---- C:\Windows\system32\mfc42.dll
            2009-05-09 12:30:16 ----A---- C:\Windows\system32\crypt32.dll
            2009-05-09 12:30:16 ----A---- C:\Windows\system32\comsvcs.dll
            2009-05-09 12:30:15 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
            2009-05-09 12:30:15 ----A---- C:\Windows\system32\certutil.exe
            2009-05-09 12:30:14 ----A---- C:\Windows\system32\mswsock.dll
            2009-05-09 12:30:13 ----A---- C:\Windows\system32\wmdrmsdk.dll
            2009-05-09 12:30:13 ----A---- C:\Windows\system32\sqlceqp30.dll
            2009-05-09 12:30:13 ----A---- C:\Windows\system32\setupapi.dll
            2009-05-09 12:30:13 ----A---- C:\Windows\system32\oleaut32.dll
            2009-05-09 12:30:13 ----A---- C:\Windows\system32\FirewallAPI.dll
            2009-05-09 12:30:12 ----A---- C:\Windows\system32\wecsvc.dll
            2009-05-09 12:30:12 ----A---- C:\Windows\system32\lsm.exe
            2009-05-09 12:30:12 ----A---- C:\Windows\system32\bcrypt.dll
            2009-05-09 12:30:12 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
            2009-05-09 12:30:11 ----A---- C:\Windows\system32\msv1_0.dll
            2009-05-09 12:30:11 ----A---- C:\Windows\system32\iphlpsvc.dll
            2009-05-09 12:30:10 ----A---- C:\Windows\system32\wmpmde.dll
            2009-05-09 12:30:10 ----A---- C:\Windows\system32\thumbcache.dll
            2009-05-09 12:30:10 ----A---- C:\Windows\system32\p2psvc.dll
            2009-05-09 12:30:10 ----A---- C:\Windows\system32\mcmde.dll
            2009-05-09 12:30:10 ----A---- C:\Windows\system32\eapp3hst.dll
            2009-05-09 12:30:09 ----A---- C:\Windows\system32\riched20.dll
            2009-05-09 12:30:09 ----A---- C:\Windows\system32\autofmt.exe
            2009-05-09 12:30:09 ----A---- C:\Windows\system32\autoconv.exe
            2009-05-09 12:30:09 ----A---- C:\Windows\system32\autochk.exe
            2009-05-09 12:30:08 ----A---- C:\Windows\system32\WinSAT.exe
            2009-05-09 12:30:08 ----A---- C:\Windows\system32\vdsutil.dll
            2009-05-09 12:30:08 ----A---- C:\Windows\system32\imapi2fs.dll
            2009-05-09 12:30:08 ----A---- C:\Windows\system32\d3d10_1.dll
            2009-05-09 12:30:07 ----A---- C:\Windows\system32\authui.dll
            2009-05-09 12:30:07 ----A---- C:\Windows\system32\authfwcfg.dll
            2009-05-09 12:30:06 ----A---- C:\Windows\system32\wevtapi.dll
            2009-05-09 12:30:06 ----A---- C:\Windows\system32\dmvdsitf.dll
            2009-05-09 12:30:06 ----A---- C:\Windows\system32\d3d10_1core.dll
            2009-05-09 12:30:06 ----A---- C:\Windows\system32\comuid.dll
            2009-05-09 12:30:06 ----A---- C:\Windows\system32\comdlg32.dll
            2009-05-09 12:30:06 ----A---- C:\Windows\system32\browseui.dll
            2009-05-09 12:30:05 ----A---- C:\Windows\system32\WSDMon.dll
            2009-05-09 12:30:05 ----A---- C:\Windows\system32\eapphost.dll
            2009-05-09 12:30:04 ----A---- C:\Windows\system32\wevtfwd.dll
            2009-05-09 12:30:04 ----A---- C:\Windows\system32\untfs.dll
            2009-05-09 12:30:04 ----A---- C:\Windows\system32\uexfat.dll
            2009-05-09 12:30:04 ----A---- C:\Windows\system32\rasmans.dll
            2009-05-09 12:30:04 ----A---- C:\Windows\system32\eappcfg.dll
            2009-05-09 12:30:03 ----A---- C:\Windows\system32\sqlcese30.dll
            2009-05-09 12:30:03 ----A---- C:\Windows\system32\pcaui.dll
            2009-05-09 12:30:03 ----A---- C:\Windows\system32\iassam.dll
            2009-05-09 12:30:03 ----A---- C:\Windows\system32\DfrgNtfs.exe
            2009-05-09 12:30:02 ----A---- C:\Windows\system32\wlansvc.dll
            2009-05-09 12:30:02 ----A---- C:\Windows\system32\whealogr.dll
            2009-05-09 12:29:59 ----A---- C:\Windows\system32\dot3svc.dll
            2009-05-09 12:29:55 ----A---- C:\Windows\system32\rdpwsx.dll
            2009-05-09 12:29:54 ----A---- C:\Windows\system32\zipfldr.dll
            2009-05-09 12:29:54 ----A---- C:\Windows\system32\mssha.dll
            2009-05-09 12:29:54 ----A---- C:\Windows\system32\msdrm.dll
            2009-05-09 12:29:54 ----A---- C:\Windows\system32\evr.dll
            2009-05-09 12:29:54 ----A---- C:\Windows\system32\dfrgui.exe
            2009-05-09 12:29:53 ----A---- C:\Windows\system32\WsmAuto.dll
            2009-05-09 12:29:53 ----A---- C:\Windows\system32\rasppp.dll
            2009-05-09 12:29:53 ----A---- C:\Windows\system32\nlasvc.dll
            2009-05-09 12:29:53 ----A---- C:\Windows\system32\BFE.DLL
            2009-05-09 12:29:52 ----A---- C:\Windows\system32\ncrypt.dll
            2009-05-09 12:29:52 ----A---- C:\Windows\system32\msrepl40.dll
            2009-05-09 12:29:52 ----A---- C:\Windows\system32\audiosrv.dll
            2009-05-09 12:29:51 ----A---- C:\Windows\system32\wmdrmdev.dll
            2009-05-09 12:29:51 ----A---- C:\Windows\system32\ddraw.dll
            2009-05-09 12:29:50 ----A---- C:\Windows\system32\WsmWmiPl.dll
            2009-05-09 12:29:50 ----A---- C:\Windows\system32\WebClnt.dll
            2009-05-09 12:29:50 ----A---- C:\Windows\system32\rastls.dll
            2009-05-09 12:29:50 ----A---- C:\Windows\system32\printui.dll
            2009-05-09 12:29:50 ----A---- C:\Windows\system32\objsel.dll
            2009-05-09 12:29:50 ----A---- C:\Windows\system32\dhcpcsvc6.dll
            2009-05-09 12:29:49 ----A---- C:\Windows\system32\themecpl.dll
            2009-05-09 12:29:49 ----A---- C:\Windows\system32\QAGENT.DLL
            2009-05-09 12:29:49 ----A---- C:\Windows\system32\iasnap.dll
            2009-05-09 12:29:49 ----A---- C:\Windows\system32\dbghelp.dll
            2009-05-09 12:29:48 ----A---- C:\Windows\system32\w32time.dll
            2009-05-09 12:29:48 ----A---- C:\Windows\system32\sqlsrv32.dll
            2009-05-09 12:29:47 ----A---- C:\Windows\system32\wmdrmnet.dll
            2009-05-09 12:29:47 ----A---- C:\Windows\system32\WerFaultSecure.exe
            2009-05-09 12:29:47 ----A---- C:\Windows\system32\ncryptui.dll
            2009-05-09 12:29:47 ----A---- C:\Windows\system32\icm32.dll
            2009-05-09 12:29:47 ----A---- C:\Windows\system32\azroles.dll
            2009-05-09 12:29:46 ----A---- C:\Windows\system32\spoolss.dll
            2009-05-09 12:29:46 ----A---- C:\Windows\system32\iprtrmgr.dll
            2009-05-09 12:29:45 ----A---- C:\Windows\system32\winsrv.dll
            2009-05-09 12:29:45 ----A---- C:\Windows\system32\msctf.dll
            2009-05-09 12:29:45 ----A---- C:\Windows\system32\bcdedit.exe
            2009-05-09 12:29:45 ----A---- C:\Windows\system32\basecsp.dll
            2009-05-09 12:29:44 ----A---- C:\Windows\system32\wlangpui.dll
            2009-05-09 12:29:44 ----A---- C:\Windows\system32\taskschd.dll
            2009-05-09 12:29:44 ----A---- C:\Windows\system32\scksp.dll
            2009-05-09 12:29:44 ----A---- C:\Windows\system32\mstlsapi.dll
            2009-05-09 12:29:44 ----A---- C:\Windows\system32\AudioEng.dll
            2009-05-09 12:29:43 ----A---- C:\Windows\system32\winsta.dll
            2009-05-09 12:29:43 ----A---- C:\Windows\system32\netprofm.dll
            2009-05-09 12:29:43 ----A---- C:\Windows\system32\hcrstco.dll
            2009-05-09 12:29:42 ----A---- C:\Windows\system32\rsaenh.dll
            2009-05-09 12:29:42 ----A---- C:\Windows\system32\netcfgx.dll
            2009-05-09 12:29:42 ----A---- C:\Windows\system32\dbgeng.dll
            2009-05-09 12:29:41 ----A---- C:\Windows\system32\taskcomp.dll
            2009-05-09 12:29:41 ----A---- C:\Windows\system32\cdosys.dll
            2009-05-09 12:29:40 ----A---- C:\Windows\system32\winlogon.exe
            2009-05-09 12:29:40 ----A---- C:\Windows\system32\wercon.exe
            2009-05-09 12:29:40 ----A---- C:\Windows\system32\lpksetup.exe
            2009-05-09 12:29:39 ----A---- C:\Windows\system32\wlansec.dll
            2009-05-09 12:29:39 ----A---- C:\Windows\system32\msdtcuiu.dll
            2009-05-09 12:29:39 ----A---- C:\Windows\system32\mprddm.dll
            2009-05-09 12:29:39 ----A---- C:\Windows\system32\certcli.dll
            2009-05-09 12:29:39 ----A---- C:\Windows\system32\apds.dll
            2009-05-09 12:29:38 ----A---- C:\Windows\system32\iasrad.dll
            2009-05-09 12:29:37 ----A---- C:\Windows\system32\tsgqec.dll
            2009-05-09 12:29:37 ----A---- C:\Windows\system32\shdocvw.dll
            2009-05-09 12:29:37 ----A---- C:\Windows\system32\eapsvc.dll
            2009-05-09 12:29:37 ----A---- C:\Windows\system32\AUDIOKSE.dll
            2009-05-09 12:29:37 ----A---- C:\Windows\system32\aaclient.dll
            2009-05-09 12:29:36 ----A---- C:\Windows\system32\Wldap32.dll
            2009-05-09 12:29:36 ----A---- C:\Windows\system32\uDWM.dll
            2009-05-09 12:29:36 ----A---- C:\Windows\system32\certmgr.dll
            2009-05-09 12:29:36 ----A---- C:\Windows\system32\bcdsrv.dll
            2009-05-09 12:29:35 ----A---- C:\Windows\system32\msidcrl30.dll
            2009-05-09 12:29:35 ----A---- C:\Windows\system32\dnsapi.dll
            2009-05-09 12:29:34 ----A---- C:\Windows\system32\WMVDECOD.DLL
            2009-05-09 12:29:34 ----A---- C:\Windows\system32\umpnpmgr.dll
            2009-05-09 12:29:34 ----A---- C:\Windows\system32\pla.dll
            2009-05-09 12:29:33 ----A---- C:\Windows\system32\netshell.dll
            2009-05-09 12:29:33 ----A---- C:\Windows\system32\dxgi.dll
            2009-05-09 12:29:33 ----A---- C:\Windows\system32\dot3gpui.dll
            2009-05-09 12:29:32 ----A---- C:\Windows\system32\wmicmiplugin.dll
            2009-05-09 12:29:31 ----A---- C:\Windows\system32\shsvcs.dll
            2009-05-09 12:29:31 ----A---- C:\Windows\system32\ntprint.dll
            2009-05-09 12:29:31 ----A---- C:\Windows\system32\MMDevAPI.dll
            2009-05-09 12:29:31 ----A---- C:\Windows\system32\cryptnet.dll
            2009-05-09 12:29:31 ----A---- C:\Windows\system32\comsnap.dll
            2009-05-09 12:29:29 ----A---- C:\Windows\system32\winmm.dll
            2009-05-09 12:29:29 ----A---- C:\Windows\system32\services.exe
            2009-05-09 12:29:28 ----A---- C:\Windows\system32\wscsvc.dll
            2009-05-09 12:29:28 ----A---- C:\Windows\system32\synceng.dll
            2009-05-09 12:29:28 ----A---- C:\Windows\system32\pnidui.dll
            2009-05-09 12:29:28 ----A---- C:\Windows\system32\cmifw.dll
            2009-05-09 12:29:27 ----A---- C:\Windows\system32\wscisvif.dll
            2009-05-09 12:29:26 ----A---- C:\Windows\system32\WMVSDECD.DLL
            2009-05-09 12:29:26 ----A---- C:\Windows\system32\taskeng.exe
            2009-05-09 12:29:26 ----A---- C:\Windows\system32\msjtes40.dll
            2009-05-09 12:29:26 ----A---- C:\Windows\system32\msconfig.exe
            2009-05-09 12:29:26 ----A---- C:\Windows\system32\iassdo.dll
            2009-05-09 12:29:26 ----A---- C:\Windows\system32\cipher.exe
            2009-05-09 12:29:25 ----A---- C:\Windows\system32\rasapi32.dll
            2009-05-09 12:29:25 ----A---- C:\Windows\system32\imapi2.dll
            2009-05-09 12:29:24 ----A---- C:\Windows\system32\uxtheme.dll
            2009-05-09 12:29:24 ----A---- C:\Windows\system32\tdh.dll
            2009-05-09 12:29:24 ----A---- C:\Windows\system32\SessEnv.dll
            2009-05-09 12:29:24 ----A---- C:\Windows\system32\dot3api.dll
            2009-05-09 12:29:24 ----A---- C:\Windows\system32\dmdskmgr.dll
            2009-05-09 12:29:23 ----A---- C:\Windows\system32\msscp.dll
            2009-05-09 12:29:23 ----A---- C:\Windows\system32\cmd.exe
            2009-05-09 12:29:23 ----A---- C:\Windows\system32\cbsra.exe
            2009-05-09 12:29:23 ----A---- C:\Windows\system32\AuthFWSnapin.dll
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\wlanmsm.dll
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\wlancfg.dll
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\wkssvc.dll
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\wevtutil.exe
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\srvsvc.dll
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\qdvd.dll
            2009-05-09 12:29:22 ----A---- C:\Windows\system32\loadperf.dll
            2009-05-09 12:29:21 ----A---- C:\Windows\system32\WUDFx.dll
            2009-05-09 12:29:21 ----A---- C:\Windows\system32\msdtcVSp1res.dll
            2009-05-09 12:29:21 ----A---- C:\Windows\system32\diskpart.exe
            2009-05-09 12:29:21 ----A---- C:\Windows\system32\comres.dll
            2009-05-09 12:29:20 ----A---- C:\Windows\system32\rpchttp.dll
            2009-05-09 12:29:20 ----A---- C:\Windows\system32\mshtmled.dll
            2009-05-09 12:29:20 ----A---- C:\Windows\system32\localsec.dll
            2009-05-09 12:29:20 ----A---- C:\Windows\system32\fontext.dll
            2009-05-09 12:29:19 ----A---- C:\Windows\system32\wlanapi.dll
            2009-05-09 12:29:19 ----A---- C:\Windows\system32\rdpdd.dll
            2009-05-09 12:29:19 ----A---- C:\Windows\system32\hnetcfg.dll
            2009-05-09 12:29:18 ----A---- C:\Windows\system32\wsqmcons.exe
            2009-05-09 12:29:18 ----A---- C:\Windows\system32\WMADMOD.DLL
            2009-05-09 12:29:18 ----A---- C:\Windows\system32\WinSATAPI.dll
            2009-05-09 12:29:18 ----A---- C:\Windows\system32\dsound.dll
            2009-05-09 12:29:17 ----A---- C:\Windows\system32\wlanpref.dll
            2009-05-09 12:29:17 ----A---- C:\Windows\system32\RDPENCDD.dll
            2009-05-09 12:29:17 ----A---- C:\Windows\system32\profprov.dll
            2009-05-09 12:29:17 ----A---- C:\Windows\system32\NAPMONTR.DLL
            2009-05-09 12:29:17 ----A---- C:\Windows\system32\filemgmt.dll
            2009-05-09 12:29:17 ----A---- C:\Windows\system32\avifil32.dll
            2009-05-09 12:29:16 ----A---- C:\Windows\system32\dnsrslvr.dll
            2009-05-09 12:29:15 ----A---- C:\Windows\system32\wsecedit.dll
            2009-05-09 12:29:15 ----A---- C:\Windows\system32\tracerpt.exe
            2009-05-09 12:29:15 ----A---- C:\Windows\system32\SLCommDlg.dll
            2009-05-09 12:29:15 ----A---- C:\Windows\system32\MuiUnattend.exe
            2009-05-09 12:29:14 ----A---- C:\Windows\system32\WMSPDMOD.DLL
            2009-05-09 12:29:14 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
            2009-05-09 12:29:14 ----A---- C:\Windows\system32\P2PGraph.dll
            2009-05-09 12:29:14 ----A---- C:\Windows\system32\dwmredir.dll
            2009-05-09 12:29:14 ----A---- C:\Windows\system32\dhcpcsvc.dll
            2009-05-09 12:29:14 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\wininit.exe
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\spp.dll
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\rasdlg.dll
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\QSHVHOST.DLL
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\iassvcs.dll
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\gpresult.exe
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\dwm.exe
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\azroleui.dll
            2009-05-09 12:29:13 ----A---- C:\Windows\system32\apphelp.dll
            2009-05-09 12:29:12 ----A---- C:\Windows\system32\mcbuilder.exe
            2009-05-09 12:29:12 ----A---- C:\Windows\HelpPane.exe
            2009-05-09 12:29:11 ----A---- C:\Windows\system32\srrstr.dll
            2009-05-09 12:29:11 ----A---- C:\Windows\system32\spwizeng.dll
            2009-05-09 12:29:11 ----A---- C:\Windows\system32\SLUI.exe
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\wecapi.dll
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\unbcl.dll
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\tcpmon.dll
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\shrink.dll
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\rasmontr.dll
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\msra.exe
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\lltdsvc.dll
            2009-05-09 12:29:10 ----A---- C:\Windows\system32\IPHLPAPI.DLL
            2009-05-09 12:29:09 ----A---- C:\Windows\system32\WMPEncEn.dll
            2009-05-09 12:29:09 ----A---- C:\Windows\system32\oleacc.dll
            2009-05-09 12:29:09 ----A---- C:\Windows\system32\msdri.dll
            2009-05-09 12:29:09 ----A---- C:\Windows\system32\iashlpr.dll
            2009-05-09 12:29:09 ----A---- C:\Windows\system32\gpedit.dll
            2009-05-09 12:29:09 ----A---- C:\Windows\system32\brcpl.dll
            2009-05-09 12:29:08 ----A---- C:\Windows\system32\raschap.dll
            2009-05-09 12:29:07 ----A---- C:\Windows\system32\regsvc.dll
            2009-05-09 12:29:07 ----A---- C:\Windows\system32\framedynos.dll
            2009-05-09 12:29:07 ----A---- C:\Windows\system32\fdWSD.dll
            2009-05-09 12:29:07 ----A---- C:\Windows\system32\advpack.dll
            2009-05-09 12:29:05 ----A---- C:\Windows\system32\vsstrace.dll
            2009-05-09 12:29:05 ----A---- C:\Windows\system32\PerfCenterCPL.dll
            2009-05-09 12:29:05 ----A---- C:\Windows\system32\ntvdm.exe
            2009-05-09 12:29:05 ----A---- C:\Windows\system32\ipsmsnap.dll
            2009-05-09 12:29:04 ----A---- C:\Windows\system32\wdc.dll
            2009-05-09 12:29:04 ----A---- C:\Windows\system32\ntlanman.dll
            2009-05-09 12:29:03 ----A---- C:\Windows\system32\wpdshext.dll
            2009-05-09 12:29:03 ----A---- C:\Windows\system32\l2nacp.dll
            2009-05-09 12:29:02 ----A---- C:\Windows\system32\Storprop.dll
            2009-05-09 12:29:02 ----A---- C:\Windows\system32\NetProjW.dll
            2009-05-09 12:29:02 ----A---- C:\Windows\system32\netman.dll
            2009-05-09 12:29:02 ----A---- C:\Windows\system32\ieapfltr.dll
            2009-05-09 12:29:02 ----A---- C:\Windows\system32\framedyn.dll
            2009-05-09 12:29:02 ----A---- C:\Windows\system32\dssenh.dll
            2009-05-09 12:29:01 ----A---- C:\Windows\system32\WlanMM.dll
            2009-05-09 12:29:01 ----A---- C:\Windows\system32\certreq.exe
            2009-05-09 12:29:01 ----A---- C:\Windows\system32\adsnt.dll
            2009-05-09 12:29:00 ----A---- C:\Windows\system32\WsmProv.dll
            2009-05-09 12:29:00 ----A---- C:\Windows\system32\WLanConn.dll
            2009-05-09 12:29:00 ----A---- C:\Windows\system32\tcpipcfg.dll
            2009-05-09 12:29:00 ----A---- C:\Windows\system32\sxs.dll
            2009-05-09 12:29:00 ----A---- C:\Windows\system32\profsvc.dll
            2009-05-09 12:29:00 ----A---- C:\Windows\system32\KMSVC.DLL
            2009-05-09 12:28:59 ----A---- C:\Windows\system32\wusa.exe
            2009-05-09 12:28:59 ----A---- C:\Windows\system32\WUDFHost.exe
            2009-05-09 12:28:59 ----A---- C:\Windows\system32\wlanhlp.dll
            2009-05-09 12:28:59 ----A---- C:\Windows\system32\userenv.dll
            2009-05-09 12:28:59 ----A---- C:\Windows\system32\ncsi.dll
            2009-05-09 12:28:59 ----A---- C:\Windows\system32\IPBusEnum.dll
            2009-05-09 12:28:58 ----A---- C:\Windows\system32\WerFault.exe
            2009-05-09 12:28:58 ----A---- C:\Windows\system32\VAN.dll
            2009-05-09 12:28:58 ----A---- C:\Windows\system32\umb.dll
            2009-05-09 12:28:58 ----A---- C:\Windows\system32\ie4uinit.exe
            2009-05-09 12:28:58 ----A---- C:\Windows\system32\fundisc.dll
            2009-05-09 12:28:56 ----A---- C:\Windows\system32\catsrvut.dll
            2009-05-09 12:28:55 ----A---- C:\Windows\system32\puiobj.dll
            2009-05-09 12:28:55 ----A---- C:\Windows\system32\photowiz.dll
            2009-05-09 12:28:55 ----A---- C:\Windows\system32\netid.dll
            2009-05-09 12:28:55 ----A---- C:\Windows\system32\dps.dll
            2009-05-09 12:28:55 ----A---- C:\Windows\system32\cryptui.dll
            2009-05-09 12:28:54 ----A---- C:\Windows\system32\netcenter.dll
            2009-05-09 12:28:54 ----A---- C:\Windows\system32\MdSched.exe
            2009-05-09 12:28:54 ----A---- C:\Windows\system32\InkEd.dll
            2009-05-09 12:28:53 ----A---- C:\Windows\system32\WinSCard.dll
            2009-05-09 12:28:53 ----A---- C:\Windows\system32\ipsecsnp.dll
            2009-05-09 12:28:52 ----A---- C:\Windows\system32\ws2_32.dll
            2009-05-09 12:28:52 ----A---- C:\Windows\system32\winrs.exe
            2009-05-09 12:28:52 ----A---- C:\Windows\system32\spbcd.dll
            2009-05-09 12:28:52 ----A---- C:\Windows\system32\odbcjt32.dll
            2009-05-09 12:28:52 ----A---- C:\Windows\system32\ntdsapi.dll
            2009-05-09 12:28:52 ----A---- C:\Windows\system32\msinfo32.exe
            2009-05-09 12:28:51 ----A---- C:\Windows\system32\prnntfy.dll
            2009-05-09 12:28:51 ----A---- C:\Windows\system32\NAPSTAT.EXE
            2009-05-09 12:28:51 ----A---- C:\Windows\system32\mblctr.exe
            2009-05-09 12:28:50 ----A---- C:\Windows\system32\schtasks.exe
            2009-05-09 12:28:50 ----A---- C:\Windows\system32\RelMon.dll
            2009-05-09 12:28:50 ----A---- C:\Windows\system32\cryptsvc.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\pdh.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\netdiagfx.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\iasacct.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\dmdlgs.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\dhcpsapi.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\catsrv.dll
            2009-05-09 12:28:49 ----A---- C:\Windows\system32\activeds.dll
            2009-05-09 12:28:48 ----A---- C:\Windows\system32\TSpkg.dll
            2009-05-09 12:28:48 ----A---- C:\Windows\system32\dfrgfat.exe
            2009-05-09 12:28:47 ----A---- C:\Windows\system32\wvc.dll
            2009-05-09 12:28:47 ----A---- C:\Windows\system32\FirewallControlPanel.exe
            2009-05-09 12:28:47 ----A---- C:\Windows\system32\fdWCN.dll
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\winrm.vbs
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\qwave.dll
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\netcorehc.dll
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\dot3msm.dll
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\dot3cfg.dll
            2009-05-09 12:28:46 ----A---- C:\Windows\system32\AudioSes.dll
            2009-05-09 12:28:45 ----A---- C:\Windows\system32\wow32.dll
            2009-05-09 12:28:45 ----A---- C:\Windows\system32\rastapi.dll
            2009-05-09 12:28:45 ----A---- C:\Windows\system32\NAPHLPR.DLL
            2009-05-09 12:28:45 ----A---- C:\Windows\system32\msacm32.dll
            2009-05-09 12:28:45 ----A---- C:\Windows\system32\ifmon.dll
            2009-05-09 12:28:45 ----A---- C:\Windows\system32\adsldp.dll
            2009-05-09 12:28:44 ----A---- C:\Windows\system32\shsetup.dll
            2009-05-09 12:28:43 ----A---- C:\Windows\system32\wscntfy.dll
            2009-05-09 12:28:43 ----A---- C:\Windows\system32\ntshrui.dll
            2009-05-09 12:28:43 ----A---- C:\Windows\system32\msdt.dll
            2009-05-09 12:28:43 ----A---- C:\Windows\system32\els.dll
            2009-05-09 12:28:43 ----A---- C:\Windows\system32\clbcatq.dll
            2009-05-09 12:28:42 ----A---- C:\Windows\system32\stobject.dll
            2009-05-09 12:28:42 ----A---- C:\Windows\system32\sdrsvc.dll
            2009-05-09 12:28:42 ----A---- C:\Windows\system32\QUTIL.DLL
            2009-05-09 12:28:42 ----A---- C:\Windows\system32\fdSSDP.dll
            2009-05-09 12:28:41 ----A---- C:\Windows\system32\net1.exe
            2009-05-09 12:28:41 ----A---- C:\Windows\system32\ipnathlp.dll
            2009-05-09 12:28:41 ----A---- C:\Windows\system32\dsprop.dll
            2009-05-09 12:28:40 ----A---- C:\Windows\system32\wlgpclnt.dll
            2009-05-09 12:28:40 ----A---- C:\Windows\system32\wlanui.dll
            2009-05-09 12:28:40 ----A---- C:\Windows\system32\smss.exe
            2009-05-09 12:28:40 ----A---- C:\Windows\system32\nci.dll
            2009-05-09 12:28:40 ----A---- C:\Windows\system32\Defrag.exe
            2009-05-09 12:28:40 ----A---- C:\Windows\system32\adsldpc.dll
            2009-05-09 12:28:39 ----A---- C:\Windows\system32\upnphost.dll
            2009-05-09 12:28:39 ----A---- C:\Windows\system32\systemcpl.dll
            2009-05-09 12:28:39 ----A---- C:\Windows\system32\mprmsg.dll
            2009-05-09 12:28:38 ----A---- C:\Windows\system32\rasman.dll
            2009-05-09 12:28:38 ----A---- C:\Windows\system32\P2P.dll
            2009-05-09 12:28:38 ----A---- C:\Windows\system32\msftedit.dll
            2009-05-09 12:28:38 ----A---- C:\Windows\system32\MSAC3ENC.DLL
            2009-05-09 12:28:38 ----A---- C:\Windows\system32\CompatUI.dll
            2009-05-09 12:28:38 ----A---- C:\Windows\system32\ActiveContentWizard.dll
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\t2embed.dll
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\rascfg.dll
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\PresentationSettings.exe
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\oleprn.dll
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\loghours.dll
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\L2SecHC.dll
            2009-05-09 12:28:37 ----A---- C:\Windows\system32\fde.dll
            2009-05-09 12:28:36 ----A---- C:\Windows\system32\Wpc.dll
            2009-05-09 12:28:36 ----A---- C:\Windows\system32\MigAutoPlay.exe
            2009-05-09 12:28:36 ----A---- C:\Windows\system32\dxdiag.exe
            2009-05-09 12:28:36 ----A---- C:\Windows\system32\DFDWiz.exe
            2009-05-09 12:28:35 ----A---- C:\Windows\system32\wdigest.dll
            2009-05-09 12:28:35 ----A---- C:\Windows\system32\setupcl.exe
            2009-05-09 12:28:35 ----A---- C:\Windows\system32\mprdim.dll
            2009-05-09 12:28:35 ----A---- C:\Windows\system32\gpapi.dll
            2009-05-09 12:28:35 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
            2009-05-09 12:28:34 ----A---- C:\Windows\system32\scansetting.dll
            2009-05-09 12:28:34 ----A---- C:\Windows\system32\rtm.dll
            2009-05-09 12:28:34 ----A---- C:\Windows\system32\msutb.dll
            2009-05-09 12:28:34 ----A---- C:\Windows\system32\devmgr.dll
            2009-05-09 12:28:33 ----A---- C:\Windows\system32\wiaservc.dll
            2009-05-09 12:28:33 ----A---- C:\Windows\system32\NAPCRYPT.DLL
            2009-05-09 12:28:32 ----A---- C:\Windows\system32\msihnd.dll
            2009-05-09 12:28:32 ----A---- C:\Windows\system32\ifsutil.dll
            2009-05-09 12:28:32 ----A---- C:\Windows\system32\CertEnrollUI.dll
            2009-05-09 12:28:31 ----A---- C:\Windows\system32\wdi.dll
            2009-05-09 12:28:31 ----A---- C:\Windows\system32\kdusb.dll
            2009-05-09 12:28:31 ----A---- C:\Windows\system32\dimsroam.dll
            2009-05-09 12:28:31 ----A---- C:\Windows\system32\actxprxy.dll
            2009-05-09 12:28:30 ----A---- C:\Windows\system32\wscapi.dll
            2009-05-09 12:28:30 ----A---- C:\Windows\system32\WinFXDocObj.exe
            2009-05-09 12:28:30 ----A---- C:\Windows\system32\mswmdm.dll
            2009-05-09 12:28:29 ----A---- C:\Windows\system32\usbmon.dll
            2009-05-09 12:28:29 ----A---- C:\Windows\system32\SyncCenter.dll
            2009-05-09 12:28:29 ----A---- C:\Windows\system32\spoolsv.exe
            2009-05-09 12:28:29 ----A---- C:\Windows\system32\imagehlp.dll
            2009-05-09 12:28:29 ----A---- C:\Windows\system32\BOOTVID.DLL
            2009-05-09 12:28:29 ----A---- C:\Windows\system32\audiodg.exe
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\wlandlg.dll
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\vssadmin.exe
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\uudf.dll
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\regapi.dll
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\mycomput.dll
            2009-05-09 12:28:28 ----A---- C:\Windows\system32\msls31.dll
            2009-05-09 12:28:27 ----A---- C:\Windows\system32\scecli.dll
            2009-05-09 12:28:26 ----A---- C:\Windows\system32\SCardSvr.dll
            2009-05-09 12:28:26 ----A---- C:\Windows\system32\newdev.dll
            2009-05-09 12:28:26 ----A---- C:\Windows\system32\mspaint.exe
            2009-05-09 12:28:26 ----A---- C:\Windows\system32\kdcom.dll
            2009-05-09 12:28:25 ----A---- C:\Windows\system32\sud.dll
            2009-05-09 12:28:25 ----A---- C:\Windows\system32\samlib.dll
            2009-05-09 12:28:25 ----A---- C:\Windows\system32\puiapi.dll
            2009-05-09 12:28:25 ----A---- C:\Windows\system32\mstask.dll
            2009-05-09 12:28:24 ----A---- C:\Windows\system32\termmgr.dll
            2009-05-09 12:28:24 ----A---- C:\Windows\system32\tapisrv.dll
            2009-05-09 12:28:24 ----A---- C:\Windows\system32\ssdpsrv.dll
            2009-05-09 12:28:24 ----A---- C:\Windows\system32\mtxoci.dll
            2009-05-09 12:28:24 ----A---- C:\Windows\system32\duser.dll
            2009-05-09 12:28:24 ----A---- C:\Windows\system32\adtschema.dll
            2009-05-09 12:28:23 ----A---- C:\Windows\system32\Robocopy.exe
            2009-05-09 12:28:23 ----A---- C:\Windows\system32\input.dll
            2009-05-09 12:28:23 ----A---- C:\Windows\system32\inetpp.dll
            2009-05-09 12:28:23 ----A---- C:\Windows\system32\cic.dll
            2009-05-09 12:28:23 ----A---- C:\Windows\system32\AzSqlExt.dll
            2009-05-09 12:28:22 ----A---- C:\Windows\system32\wisptis.exe
            2009-05-09 12:28:22 ----A---- C:\Windows\system32\SLUINotify.dll
            2009-05-09 12:28:21 ----A---- C:\Windows\system32\cscapi.dll
            2009-05-09 12:28:21 ----A---- C:\Windows\system32\authz.dll
            2009-05-09 12:28:20 ----A---- C:\Windows\system32\WUDFPlatform.dll
            2009-05-09 12:28:20 ----A---- C:\Windows\system32\sdshext.dll
            2009-05-09 12:28:20 ----A---- C:\Windows\system32\netiohlp.dll
            2009-05-09 12:28:20 ----A---- C:\Windows\system32\msdt.exe
            2009-05-09 12:28:19 ----A---- C:\Windows\system32\webcheck.dll
            2009-05-09 12:28:19 ----A---- C:\Windows\system32\verifier.exe
            2009-05-09 12:28:19 ----A---- C:\Windows\system32\msdtclog.dll
            2009-05-09 12:28:19 ----A---- C:\Windows\system32\d3d8.dll
            2009-05-09 12:28:19 ----A---- C:\Windows\system32\cmdial32.dll
            2009-05-09 12:28:18 ----A---- C:\Windows\system32\wpcsvc.dll
            2009-05-09 12:28:18 ----A---- C:\Windows\system32\themeui.dll
            2009-05-09 12:28:18 ----A---- C:\Windows\system32\slcinst.dll
            2009-05-09 12:28:17 ----A---- C:\Windows\system32\wintrust.dll
            2009-05-09 12:28:17 ----A---- C:\Windows\system32\oledlg.dll
            2009-05-09 12:28:17 ----A---- C:\Windows\system32\dxtmsft.dll
            2009-05-09 12:28:17 ----A---- C:\Windows\system32\clfsw32.dll
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\wpccpl.dll
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\WMPhoto.dll
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\vdsldr.exe
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\SndVol.exe
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\rasgcw.dll
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\ntmarta.dll
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\mmcbase.dll
            2009-05-09 12:28:16 ----A---- C:\Windows\system32\icardie.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\SnippingTool.exe
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\rasqec.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\pnpsetup.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\ncobjapi.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\msaatext.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\mpr.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\mlang.dll
            2009-05-09 12:28:15 ----A---- C:\Windows\system32\icfupgd.dll
            2009-05-09 12:28:14 ----A---- C:\Windows\system32\nslookup.exe
            2009-05-09 12:28:14 ----A---- C:\Windows\system32\msrd3x40.dll
            2009-05-09 12:28:14 ----A---- C:\Windows\system32\diskraid.exe
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\wtsapi32.dll
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\wpd_ci.dll
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\unlodctr.exe
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\syssetup.dll
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\slmgr.vbs
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\mscms.dll
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\lodctr.exe
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\extmgr.dll
            2009-05-09 12:28:13 ----A---- C:\Windows\system32\accessibilitycpl.dll
            2009-05-09 12:28:12 ----A---- C:\Windows\system32\ulib.dll
            2009-05-09 12:28:12 ----A---- C:\Windows\system32\sethc.exe
            2009-05-09 12:28:12 ----A---- C:\Windows\system32\pnpui.dll
            2009-05-09 12:28:12 ----A---- C:\Windows\system32\iaspolcy.dll
            2009-05-09 12:28:12 ----A---- C:\Windows\system32\dxdiagn.dll
            2009-05-09 12:28:11 ----A---- C:\Windows\system32\Utilman.exe
            2009-05-09 12:28:11 ----A---- C:\Windows\system32\oobefldr.dll
            2009-05-09 12:28:11 ----A---- C:\Windows\system32\Mcx2Svc.dll
            2009-05-09 12:28:11 ----A---- C:\Windows\system32\fontsub.dll
            2009-05-09 12:28:11 ----A---- C:\Windows\system32\cabinet.dll
            2009-05-09 12:28:10 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
            2009-05-09 12:28:10 ----A---- C:\Windows\system32\unattend.dll
            2009-05-09 12:28:10 ----A---- C:\Windows\system32\trkwks.dll
            2009-05-09 12:28:10 ----A---- C:\Windows\system32\scesrv.dll
            2009-05-09 12:28:10 ----A---- C:\Windows\system32\lnkstub.exe
            2009-05-09 12:28:09 ----A---- C:\Windows\system32\ogldrv.dll
            2009-05-09 12:28:08 ----A---- C:\Windows\system32\cabview.dll
            2009-05-09 12:28:07 ----A---- C:\Windows\system32\wermgr.exe
            2009-05-09 12:28:07 ----A---- C:\Windows\system32\dfdts.dll
            2009-05-09 12:28:05 ----A---- C:\Windows\system32\wpcao.dll
            2009-05-09 12:28:05 ----A---- C:\Windows\system32\bthci.dll
            2009-05-09 12:28:03 ----A---- C:\Windows\system32\iepeers.dll
            2009-05-09 12:28:03 ----A---- C:\Windows\system32\eappgnui.dll
            2009-05-09 12:28:02 ----A---- C:\Windows\system32\sdspres.dll
            2009-05-09 12:28:02 ----A---- C:\Windows\system32\p2pcollab.dll
            2009-05-09 12:28:02 ----A---- C:\Windows\system32\msnetobj.dll
            2009-05-09 12:28:02 ----A---- C:\Windows\system32\basesrv.dll
            2009-05-09 12:28:01 ----A---- C:\Windows\system32\drvinst.exe
            2009-05-09 12:28:01 ----A---- C:\Windows\system32\dispdiag.exe
            2009-05-09 12:28:01 ----A---- C:\Windows\system32\DHCPQEC.DLL
            2009-05-09 12:28:00 ----A---- C:\Windows\system32\mmcss.dll
            2009-05-09 12:28:00 ----A---- C:\Windows\system32\dsquery.dll
            2009-05-09 12:27:59 ----A---- C:\Windows\system32\verifier.dll
            2009-05-09 12:27:59 ----A---- C:\Windows\system32\RstrtMgr.dll
            2009-05-09 12:27:59 ----A---- C:\Windows\system32\efsadu.dll
            2009-05-09 12:27:58 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
            2009-05-09 12:27:58 ----A---- C:\Windows\system32\secproc_ssp.dll
            2009-05-09 12:27:58 ----A---- C:\Windows\system32\mprapi.dll
            2009-05-09 12:27:57 ----A---- C:\Windows\system32\qedit.dll
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\WPDSp.dll
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\WPDShServiceObj.dll
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\WMVENCOD.DLL
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\wercplsupport.dll
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\setupugc.exe
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\msoeacct.dll
            2009-05-09 12:27:56 ----A---- C:\Windows\system32\d3d10core.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\wiascanprofiles.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\wiaaut.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\QSVRMGMT.DLL
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\pnrpnsp.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\pngfilt.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\p2pnetsh.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\networkmap.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\iscsiexe.dll
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\icacls.exe
            2009-05-09 12:27:55 ----A---- C:\Windows\system32\consent.exe
            2009-05-09 12:27:54 ----A---- C:\Windows\system32\xactsrv.dll
            2009-05-09 12:27:54 ----A---- C:\Windows\system32\usercpl.dll
            2009-05-09 12:27:54 ----A---- C:\Windows\system32\msrdc.dll
            2009-05-09 12:27:54 ----A---- C:\Windows\system32\msdmo.dll
            2009-05-09 12:27:54 ----A---- C:\Windows\system32\conime.exe
            2009-05-09 12:27:53 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
            2009-05-09 12:27:53 ----A---- C:\Windows\system32\PNPXAssoc.dll
            2009-05-09 12:27:53 ----A---- C:\Windows\system32\autoplay.dll
            2009-05-09 12:27:52 ----A---- C:\Windows\system32\pcadm.dll
            2009-05-09 12:27:52 ----A---- C:\Windows\system32\eappprxy.dll
            2009-05-09 12:27:52 ----A---- C:\Windows\system32\drmmgrtn.dll
            2009-05-09 12:27:51 ----A---- C:\Windows\system32\systeminfo.exe
            2009-05-09 12:27:51 ----A---- C:\Windows\system32\netcfg.exe
            2009-05-09 12:27:51 ----A---- C:\Windows\system32\msrating.dll
            2009-05-09 12:27:51 ----A---- C:\Windows\system32\lpk.dll
            2009-05-09 12:27:51 ----A---- C:\Windows\system32\findstr.exe
            2009-05-09 12:27:51 ----A---- C:\Windows\system32\dpapimig.exe
            2009-05-09 12:27:50 ----A---- C:\Windows\system32\xwizards.dll
            2009-05-09 12:27:50 ----A---- C:\Windows\system32\resutils.dll
            2009-05-09 12:27:50 ----A---- C:\Windows\system32\mfplat.dll
            2009-05-09 12:27:50 ----A---- C:\Windows\system32\DWWIN.EXE
            2009-05-09 12:27:50 ----A---- C:\Windows\system32\cmdl32.exe
            2009-05-09 12:27:50 ----A---- C:\Windows\system32\alg.exe
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\powercpl.dll
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\netprof.dll
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\MFWMAAEC.DLL
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\dssec.dll
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\dot3ui.dll
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\dfrgifc.exe
            2009-05-09 12:27:49 ----A---- C:\Windows\system32\dbnetlib.dll
            2009-05-09 12:27:48 ----A---- C:\Windows\system32\odbc32.dll
            2009-05-09 12:27:48 ----A---- C:\Windows\system32\imm32.dll
            2009-05-09 12:27:48 ----A---- C:\Windows\system32\btpanui.dll
            2009-05-09 12:27:48 ----A---- C:\Windows\regedit.exe
            2009-05-09 12:27:47 ----A---- C:\Windows\system32\txflog.dll
            2009-05-09 12:27:47 ----A---- C:\Windows\system32\nshhttp.dll
            2009-05-09 12:27:47 ----A---- C:\Windows\system32\feclient.dll
            2009-05-09 12:27:47 ----A---- C:\Windows\system32\apircl.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\tbssvc.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\taskkill.exe
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\RASMM.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\msieftp.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\iexpress.exe
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\dxva2.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\dwmapi.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\d3d10.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\bcdprov.dll
            2009-05-09 12:27:46 ----A---- C:\Windows\system32\ActionQueue.dll
            2009-05-09 12:27:45 ----A---- C:\Windows\system32\svchost.exe
            2009-05-09 12:27:45 ----A---- C:\Windows\system32\shwebsvc.dll
            2009-05-09 12:27:45 ----A---- C:\Windows\system32\provthrd.dll
            2009-05-09 12:27:45 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
            2009-05-09 12:27:45 ----A---- C:\Windows\system32\EAPQEC.DLL
            2009-05-09 12:27:45 ----A---- C:\Windows\system32\dmocx.dll
            2009-05-09 12:27:44 ----A---- C:\Windows\system32\syncui.dll
            2009-05-09 12:27:44 ----A---- C:\Windows\system32\slwmi.dll
            2009-05-09 12:27:44 ----A---- C:\Windows\system32\SLCExt.dll
            2009-05-09 12:27:44 ----A---- C:\Windows\system32\slcc.dll
            2009-05-09 12:27:43 ----A---- C:\Windows\system32\WMASF.DLL
            2009-05-09 12:27:43 ----A---- C:\Windows\system32\raserver.exe
            2009-05-09 12:27:43 ----A---- C:\Windows\system32\olepro32.dll
            2009-05-09 12:27:43 ----A---- C:\Windows\system32\networkexplorer.dll
            2009-05-09 12:27:43 ----A---- C:\Windows\system32\aclui.dll
            2009-05-09 12:27:42 ----A---- C:\Windows\system32\PnPUnattend.exe
            2009-05-09 12:27:42 ----A---- C:\Windows\system32\dnscacheugc.exe
            2009-05-09 12:27:42 ----A---- C:\Windows\system32\brcplsdw.dll
            2009-05-09 12:27:41 ----A---- C:\Windows\system32\audiodev.dll
            2009-05-09 12:27:39 ----A---- C:\Windows\system32\xcopy.exe
            2009-05-09 12:27:39 ----A---- C:\Windows\system32\uxsms.dll
            2009-05-09 12:27:39 ----A---- C:\Windows\system32\UIHub.dll
            2009-05-09 12:27:39 ----A---- C:\Windows\system32\taskmgr.exe
            2009-05-09 12:27:39 ----A---- C:\Windows\system32\ias.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\upnp.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\reg.exe
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\QCLIPROV.DLL
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\NapiNSP.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\msoert2.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\mmcshext.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\icsfiltr.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\cmstp.exe
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\atl.dll
            2009-05-09 12:27:38 ----A---- C:\Windows\system32\appinfo.dll
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\wlanext.exe
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\perfts.dll
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\msjetoledb40.dll
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\mountvol.exe
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\dskquoui.dll
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\certprop.dll
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\browser.dll
            2009-05-09 12:27:37 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
            2009-05-09 12:27:36 ----A---- C:\Windows\system32\wmpdxm.dll
            2009-05-09 12:27:36 ----A---- C:\Windows\system32\PING.EXE
            2009-05-09 12:27:36 ----A---- C:\Windows\system32\netplwiz.dll
            2009-05-09 12:27:36 ----A---- C:\Windows\system32\inetmib1.dll
            2009-05-09 12:27:36 ----A---- C:\Windows\system32\cewmdm.dll
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\WMVXENCD.DLL
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\SoundRecorder.exe
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\qcap.dll
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\qasf.dll
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\ieakeng.dll
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\httpapi.dll
            2009-05-09 12:27:35 ----A---- C:\Windows\system32\bitsadmin.exe
            2009-05-09 12:27:34 ----A---- C:\Windows\system32\SysFxUI.dll
            2009-05-09 12:27:34 ----A---- C:\Windows\system32\rekeywiz.exe
            2009-05-09 12:27:34 ----A---- C:\Windows\system32\dsuiext.dll
            2009-05-09 12:27:34 ----A---- C:\Windows\system32\dmusic.dll
            2009-05-09 12:27:34 ----A---- C:\Windows\system32\adsmsext.dll
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\WUDFSvc.dll
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\wmpsrcwp.dll
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\Sens.dll
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\SecEdit.exe
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\mtstocom.exe
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\mscandui.dll
            2009-05-09 12:27:33 ----A---- C:\Windows\system32\auditpol.exe
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\xwtpw32.dll
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\WMVSENCD.DLL
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\shimgvw.dll
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\sbeio.dll
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\makecab.exe
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\lsmproxy.dll
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\dot3gpclnt.dll
            2009-05-09 12:27:32 ----A---- C:\Windows\system32\batt.dll
            2009-05-09 12:27:31 ----A---- C:\Windows\system32\wzcdlg.dll
            2009-05-09 12:27:31 ----A---- C:\Windows\system32\sppnp.dll
            2009-05-09 12:27:31 ----A---- C:\Windows\system32\seclogon.dll
            2009-05-09 12:27:31 ----A---- C:\Windows\system32\ndfapi.dll
            2009-05-09 12:27:31 ----A---- C:\Windows\system32\msdadiag.dll
            2009-05-09 12:27:31 ----A---- C:\Windows\system32\dxtrans.dll
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\wscmisetup.dll
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\wiashext.dll
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\wiadefui.dll
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\shacct.dll
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\p2phost.exe
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\msorcl32.dll
            2009-05-09 12:27:30 ----A---- C:\Windows\system32\apss.dll
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\wpdwcn.dll
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\WMSPDMOE.DLL
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\userinit.exe
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\sxstrace.exe
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\perfmon.exe
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\napipsec.dll
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\keymgr.dll
            2009-05-09 12:27:29 ----A---- C:\Windows\system32\HelpPaneProxy.dll
            2009-05-09 12:27:28 ----A---- C:\Windows\system32\winrshost.exe
            2009-05-09 12:27:28 ----A---- C:\Windows\system32\tasklist.exe
            2009-05-09 12:27:28 ----A---- C:\Windows\system32\TapiMigPlugin.dll
            2009-05-09 12:27:28 ----A---- C:\Windows\system32\prntvpt.dll
            2009-05-09 12:27:28 ----A---- C:\Windows\system32\ktmutil.exe
            2009-05-09 12:27:28 ----A---- C:\Windows\system32\csrsrv.dll
            2009-05-09 12:27:27 ----A---- C:\Windows\system32\notepad.exe
            2009-05-09 12:27:27 ----A---- C:\Windows\system32\MP4SDECD.DLL
            2009-05-09 12:27:27 ----A---- C:\Windows\system32\ftp.exe
            2009-05-09 12:27:27 ----A---- C:\Windows\system32\fmifs.dll
            2009-05-09 12:27:27 ----A---- C:\Windows\system32\d3dim700.dll
            2009-05-09 12:27:27 ----A---- C:\Windows\system32\colorui.dll
            2009-05-09 12:27:27 ----A---- C:\Windows\notepad.exe
            2009-05-09 12:27:26 ----A---- C:\Windows\system32\wscproxystub.dll
            2009-05-09 12:27:26 ----A---- C:\Windows\system32\UIAutomationCore.dll
            2009-05-09 12:27:26 ----A---- C:\Windows\system32\netiougc.exe
            2009-05-09 12:27:26 ----A---- C:\Windows\system32\msiexec.exe
            2009-05-09 12:27:26 ----A---- C:\Windows\system32\cryptdll.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\winethc.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\txfw32.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\takeown.exe
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\PnPutil.exe
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\pcasvc.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\nshipsec.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\msimtf.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\inseng.dll
            2009-05-09 12:27:25 ----A---- C:\Windows\system32\driverquery.exe
            2009-05-09 12:27:24 ----A---- C:\Windows\system32\wpdbusenum.dll
            2009-05-09 12:27:24 ----A---- C:\Windows\system32\wmiprop.dll
            2009-05-09 12:27:24 ----A---- C:\Windows\system32\powrprof.dll
            2009-05-09 12:27:24 ----A---- C:\Windows\system32\pots.dll
            2009-05-09 12:27:24 ----A---- C:\Windows\system32\findnetprinters.dll
            2009-05-09 12:27:24 ----A---- C:\Windows\system32\capisp.dll
            2009-05-09 12:27:23 ----A---- C:\Windows\system32\shrpubw.exe
            2009-05-09 12:27:23 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
            2009-05-09 12:27:23 ----A---- C:\Windows\system32\rasplap.dll
            2009-05-09 12:27:23 ----A---- C:\Windows\system32\nsisvc.dll
            2009-05-09 12:27:23 ----A---- C:\Windows\system32\fsutil.exe
            2009-05-09 12:27:23 ----A---- C:\Windows\system32\dnshc.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\WLanHC.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\shgina.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\sfc_os.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\sendmail.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\perfnet.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\olecli32.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\luainstall.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\imapi.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\fdPHost.dll
            2009-05-09 12:27:22 ----A---- C:\Windows\system32\cmmon32.exe
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\wiaacmgr.exe
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\wextract.exe
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\TMM.dll
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\runonce.exe
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\rshx32.dll
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\RpcPing.exe
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\ktmw32.dll
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\d3dim.dll
            2009-05-09 12:27:21 ----A---- C:\Windows\system32\compstui.dll
            2009-05-09 12:27:20 ----A---- C:\Windows\system32\WMADMOE.DLL
            2009-05-09 12:27:20 ----A---- C:\Windows\system32
            1. info.txt logfile of random's system information tool 1.06 2009-05-13 15:31:59

              ======Uninstall list======

              -->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
              -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
              -->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
              32 Bit HP CIO Components Installer-->MsiExec.exe /I{2614F54E-A828-49FA-93BA-45A3F756BFAA}
              Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
              Adobe Flash Player 9 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
              Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
              Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
              BitDefender Internet Security 2008-->MsiExec.exe /I{BF7D87C5-CFC3-40C5-A367-24586EEBB8CA}
              Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
              DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
              DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
              DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
              DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
              Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
              Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
              Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
              HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly
              HP Customer Participation Program 8.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
              HP Easy Setup - Core-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F94234DB-FD06-42C3-B88D-6FC4DC9F988C}\setup.exe" -l0x9
              HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly
              HP Imaging Device Functions 8.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
              HP OCR Software 8.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
              HP On-Screen Caps/Num/Scroll Lock Indicator-->C:\Windows\system32\OsdRemove.exe
              HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
              HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B-->C:\Program Files\Hewlett-Packard\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe -datfile hposcr19.dat -onestop -showdisconnect -forcereboot
              HP Picasso Media Center Add-In-->MsiExec.exe /I{55979C41-7D6A-49CC-B591-64AC1BBE2C8B}
              HP Product Assistant-->MsiExec.exe /I{36FDBE6E-6684-462B-AE98-9A39A1B200CC}
              HP Solution Center 8.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
              HP Update-->MsiExec.exe /X{FE57DE70-95DE-4B64-9266-84DA811053DB}
              HPSSupply-->MsiExec.exe /X{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}
              Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
              Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
              Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216013FF}
              Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
              Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
              Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
              Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
              Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
              Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
              Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
              Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
              Microsoft Works-->MsiExec.exe /I{6B1CB38D-E2E4-4A30-933D-EFDEBA76AD9C}
              Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
              MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
              MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
              NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
              OpenOffice.org 2.3-->MsiExec.exe /I{B087B0C3-F595-485A-B86B-73326BA8693A}
              Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
              Outils de diagnostic du matériel-->C:\Program Files\PC-Doctor 5 for Windows\uninst.exe
              Python 2.4.3-->MsiExec.exe /I{75E71ADD-042C-4F30-BFAC-A9EC42351313}
              RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
              Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
              Roxio Creator Audio-->MsiExec.exe /X{83FFCFC7-88C6-41c6-8752-958A45325C82}
              Roxio Creator Basic v9-->MsiExec.exe /X{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
              Roxio Creator Copy-->MsiExec.exe /X{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
              Roxio Creator Data-->MsiExec.exe /X{0D397393-9B50-4c52-84D5-77E344289F87}
              Roxio Creator EasyArchive-->MsiExec.exe /X{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
              Roxio Creator Tools-->MsiExec.exe /X{0394CDC8-FABD-4ed8-B104-03393876DFDF}
              Roxio Express Labeler 3-->MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
              Roxio MyDVD Basic v9-->MsiExec.exe /X{E4A02A3F-4F8A-4D94-BB99-68BC1D1CF6DB}
              Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
              Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
              Solution de clavier multimédia amélioré-->C:\HP\KBD\Install.exe /u
              Spelling Dictionaries Support For Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}
              VideoLAN VLC media player 0.8.6i-->C:\Program Files\VideoLAN\VLC\uninstall.exe
              Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
              Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
              Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
              Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
              Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
              Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
              Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
              ZyDAS IEEE 802.11 b+g Wireless LAN - USB-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{581CE7EA-A30D-0000-1211-088635773309}\setup.exe" -l0x9

              ======Security center information======

              AV: Bitdefender Antivirus
              FW: Bitdefender Firewall
              AS: BitDefender AntiSpam
              AS: Windows Defender (disabled)

              ======System event log======

              Computer Name: JeromeGaelle
              Event Code: 10016
              Message: Les paramètres d'autorisation spécifiques à l'application n'accordent pas d'autorisation Local Activation pour l'application serveur COM avec le CLSID
              {A47979D2-C419-11D9-A5B4-001185AD2B89}
              au SID JeromeGaelle\Jérôme et Gaëlle de l'utilisateur (S-1-5-21-478402731-692700478-3381333312-1000) depuis l'adresse LocalHost (utilisation de LRPC). Cette autorisation de sécurité peut être modifiée à l'aide de l'outil d'administration Services de composants.
              Record Number: 29123
              Source Name: Microsoft-Windows-DistributedCOM
              Time Written: 20090513092319.000000-000
              Event Type: Erreur
              User: JeromeGaelle\Jérôme et Gaëlle

              Computer Name: JeromeGaelle
              Event Code: 6008
              Message: L'arrêt système précédant à 14:12:53 le 13/05/2009 n'était pas prévu.
              Record Number: 29134
              Source Name: EventLog
              Time Written: 20090513124712.000000-000
              Event Type: Erreur
              User:

              Computer Name: JeromeGaelle
              Event Code: 15016
              Message: Impossible d’initialiser le package de sécurité Kerberos pour l’authentification côté serveur. Le champ de données contient le numéro de l’erreur.
              Record Number: 29141
              Source Name: Microsoft-Windows-HttpEvent
              Time Written: 20090513124735.978016-000
              Event Type: Erreur
              User:

              Computer Name: JeromeGaelle
              Event Code: 7000
              Message: Le service Parallel port driver n'a pas pu démarrer en raison de l'erreur :
              Le service ne peut pas être démarré parce qu'il est désactivé ou qu'aucun périphérique activé ne lui est associé.
              Record Number: 29186
              Source Name: Service Control Manager
              Time Written: 20090513124825.000000-000
              Event Type: Erreur
              User:

              Computer Name: JeromeGaelle
              Event Code: 4374
              Message: Windows Servicing a déterminé que ce package KB905866(Update) n’est pas applicable à ce système.
              Record Number: 29268
              Source Name: Microsoft-Windows-Servicing
              Time Written: 20090513125603.000000-000
              Event Type: Avertissement
              User: AUTORITE NT\SYSTEM

              =====Application event log=====

              Computer Name: JeromeGaelle
              Event Code: 1015
              Message: La connexion au serveur est impossible. Erreur : 0x800401F0
              Record Number: 1414
              Source Name: MsiInstaller
              Time Written: 20090512095207.000000-000
              Event Type: Avertissement
              User: JeromeGaelle\Jérôme et Gaëlle

              Computer Name: JeromeGaelle
              Event Code: 1015
              Message: La connexion au serveur est impossible. Erreur : 0x800401F0
              Record Number: 1421
              Source Name: MsiInstaller
              Time Written: 20090512095210.000000-000
              Event Type: Avertissement
              User: JeromeGaelle\Jérôme et Gaëlle

              Computer Name: JeromeGaelle
              Event Code: 1002
              Message: Le programme soffice.BIN version 2.3.9238.500 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans l’application Rapports et solutions aux problèmes du Panneau de configuration. ID de processus : e48 Heure de début : 01c9d216ef7d648b Heure de fin : 390
              Record Number: 1429
              Source Name: Application Hang
              Time Written: 20090512103041.000000-000
              Event Type: Erreur
              User:

              Computer Name: JeromeGaelle
              Event Code: 1008
              Message: Le service Windows Search tente de supprimer l’ancien catalogue.

              Record Number: 1499
              Source Name: Microsoft-Windows-Search
              Time Written: 20090512144652.000000-000
              Event Type: Avertissement
              User:

              Computer Name: JeromeGaelle
              Event Code: 1000
              Message: Application défaillante Explorer.EXE, version 6.0.6001.18164, horodatage 0x4907e242, module défaillant ntdll.dll, version 6.0.6001.18000, horodatage 0x4791a7a6, code d’exception 0xc0000005, décalage d’erreur 0x000659c3, ID du processus 0xee0, heure de début de l’application 0x01c9d310ab12cf3f.
              Record Number: 1523
              Source Name: Application Error
              Time Written: 20090512145425.000000-000
              Event Type: Erreur
              User:

              =====Security event log=====

              Computer Name: JeromeGaelle
              Event Code: 4624
              Message: L’ouverture de session d’un compte s’est correctement déroulée.

              Sujet :
              ID de sécurité : S-1-5-18
              Nom du compte : JEROMEGAELLE$
              Domaine du compte : WORKGROUP
              ID d’ouverture de session : 0x3e7

              Type d’ouverture de session : 5

              Nouvelle ouverture de session :
              ID de sécurité : S-1-5-18
              Nom du compte : SYSTEM
              Domaine du compte : AUTORITE NT
              ID d’ouverture de session : 0x3e7
              GUID d’ouverture de session : {00000000-0000-0000-0000-000000000000}

              Informations sur le processus :
              ID du processus : 0x29c
              Nom du processus : C:\WINDOWS\System32\services.exe

              Informations sur le réseau :
              Nom de la station de travail :
              Adresse du réseau source : -
              Port source : -

              Informations détaillées sur l’authentification :
              Processus d’ouverture de session : Advapi
              Package d’authentification : Negotiate
              Services en transit : -
              Nom du package (NTLM uniquement) : -
              Longueur de la clé : 0

              Cet événement est généré lors de la création d’une ouverture de session. Il est généré sur l’ordinateur sur lequel l’ouverture de session a été effectuée.

              Le champ Objet indique le compte sur le système local qui a demandé l’ouverture de session. Il s’agit le plus souvent d’un service, comme le service Serveur, ou un processus local tel que Winlogon.exe ou Services.exe.

              Le champ Type d’ouverture de session indique le type d’ouverture de session qui s’est produit. Les types les plus courants sont 2 (interactif) et 3 (réseau).

              Le champ Nouvelle ouverture de session indique le compte pour lequel la nouvelle ouverture de session a été créée, par exemple, le compte qui s’est connecté.

              Les champs relatifs au réseau indiquent la provenance d’une demande d’ouverture de session à distance. Le nom de la station de travail n’étant pas toujours disponible, peut être laissé vide dans certains cas.

              Les champs relatifs aux informations d’authentification fournissent des détails sur cette demande d’ouverture de session spécifique.
              - Le GUID d’ouverture de session est un identificateur unique pouvant servir à associer cet événement à un événement KDC .
              - Les services en transit indiquent les services intermédiaires qui ont participé à cette demande d’ouverture de session.
              - Nom du package indique quel est le sous-protocole qui a été utilisé parmi les protocoles NTLM.
              - La longueur de la clé indique la longueur de la clé de session générée. Elle a la valeur 0 si aucune clé de session n’a été demandée.
              Record Number: 4434
              Source Name: Microsoft-Windows-Security-Auditing
              Time Written: 20090513125547.459616-000
              Event Type: Succès de l'audit
              User:

              Computer Name: JeromeGaelle
              Event Code: 4672
              Message: Privilèges spéciaux attribués à la nouvelle ouverture de session.

              Sujet :
              ID de sécurité : S-1-5-18
              Nom du compte : SYSTEM
              Domaine du compte : AUTORITE NT
              ID d’ouverture de session : 0x3e7

              Privilèges : SeAssignPrimaryTokenPrivilege
              SeTcbPrivilege
              SeSecurityPrivilege
              SeTakeOwnershipPrivilege
              SeLoadDriverPrivilege
              SeBackupPrivilege
              SeRestorePrivilege
              SeDebugPrivilege
              SeAuditPrivilege
              SeSystemEnvironmentPrivilege
              SeImpersonatePrivilege
              Record Number: 4435
              Source Name: Microsoft-Windows-Security-Auditing
              Time Written: 20090513125547.459616-000
              Event Type: Succès de l'audit
              User:

              Computer Name: JeromeGaelle
              Event Code: 4907
              Message: Les paramètres d’audit sur l’objet ont changé.

              Sujet :
              ID de sécurité : S-1-5-18
              Nom du compte : JEROMEGAELLE$
              Domaine du compte : WORKGROUP
              ID d’ouverture de session : 0x3e7

              Objet :
              Serveur de l’objet : Security
              Type d’objet : File
              Nom de l’objet : C:\Program Files\Windows Mail\OESpamFilter.dat
              ID du handle : 0x624

              Informations sur le processus :
              ID du processus : 0xb64
              Nom du processus : C:\WINDOWS\servicing\TrustedInstaller.exe

              Paramètres d’audit :
              Descripteur de sécurité d’origine :
              Nouveau descripteur de sécurité : S:ARAI(AU;SAFA;DCLCRPCRSDWDWO;;;WD)
              Record Number: 4436
              Source Name: Microsoft-Windows-Security-Auditing
              Time Written: 20090513125610.411616-000
              Event Type: Succès de l'audit
              User:

              Computer Name: JeromeGaelle
              Event Code: 4904
              Message: Une tentative d’inscription de la source d’un événement de sécurité a été effectuée.

              Sujet :
              ID de sécurité : S-1-5-18
              Nom du compte : JEROMEGAELLE$
              Domaine du compte : WORKGROUP
              ID d’ouverture de session : 0x3e7

              Processus :
              ID du processus : 0x694
              Nom du processus : C:\WINDOWS\System32\VSSVC.exe

              Source de l’événement :
              Nom de la source : VSSAudit
              ID de la source de l’événement : 0x139db9
              Record Number: 4437
              Source Name: Microsoft-Windows-Security-Auditing
              Time Written: 20090513125725.939416-000
              Event Type: Succès de l'audit
              User:

              Computer Name: JeromeGaelle
              Event Code: 4905
              Message: Une tentative d’annulation d’inscription de la source d’un événement de sécurité a été effectuée.

              Sujet :
              ID de sécurité : S-1-5-18
              Nom du compte : JEROMEGAELLE$
              Domaine du compte : WORKGROUP
              ID d’ouverture de session : 0x3e7

              Processus :
              ID du processus : 0x694
              Nom du processus : C:\WINDOWS\System32\VSSVC.exe

              Source de l’événement :
              Nom de la source : VSSAudit
              ID de la source de l’événement : 0x139db9
              Record Number: 4438
              Source Name: Microsoft-Windows-Security-Auditing
              Time Written: 20090513125725.939416-000
              Event Type: Succès de l'audit
              User:

              ======Environment variables======

              "ComSpec"=%SystemRoot%\system32\cmd.exe
              "FP_NO_HOST_CHECK"=NO
              "OS"=Windows_NT
              "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\hp\bin\Python;c:\Program Files\Common Files\Roxio Shared\DLLShared\;c:\Program Files\Common Files\Roxio Shared\DLLShared\;c:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\
              "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
              "PROCESSOR_ARCHITECTURE"=x86
              "TEMP"=%SystemRoot%\TEMP
              "TMP"=%SystemRoot%\TEMP
              "USERNAME"=SYSTEM
              "windir"=%SystemRoot%
              "PROCESSOR_LEVEL"=15
              "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 75 Stepping 2, AuthenticAMD
              "PROCESSOR_REVISION"=4b02
              "NUMBER_OF_PROCESSORS"=2
              "RoxioCentral"=c:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\
              "PLATFORM"=HPD
              "PCBRAND"=Pavilion
              "OnlineServices"=Services en ligne

              -----------------EOF-----------------
              1. Alors svp dites moi j'ai posté ce qui est demandé dans le message 1

                Dites moi quoi faire svp
                1. Merci jlpjlp

                  Je comprend rien de ce qui faut faire.

                  Que dois je faire.

                  C'est un virus que j'ai ???

                  Où etes vous lesane662 j'ai fait ce que vous m'aviez demandé ds le message 1

                  Merci de répondre

                  HELLLLPPPPP les ami(es)
                  1. Contributeur sécurité
                    le rapport que tu as mis de rsit est incomplet

                    mais a premiere vue tu as un souci materiel ou de conflit logiciel

                    et non un virus

                    as tu mis un nouveau materiel? un nouveau logiciel?
                    1. j'ai mis le truc usb d'un portable d'une amie qui d'ailleurs n'a pas marché du tout c'est à dire mon pc ne reconnaissez pas son portable donc on a pu rien faire avec.

                      Ouf pas de virus.

                      Donc que dois je faire pour que cela cesse car c'est une page bleu qui arrive d'un coup et qui m'écrit ce que j'ai mis plus haut et je suis obligé de redémarrer mon pc.

                      J'ai fais une sortie d'usine, une réinstallation systeme et cela n'a rien changé.

                      On ma dit de faire un formatage du disque dur pour une sorti d'usine c'est pourquoi je vouslais faire ca. C'est les informaticiens de bitdefender quyi mon dit je vous conseil vivement de faire un formatage du disque dur pour une sortie d'usine.

                      Voila please helppppp

                      merci jlpjlp
                      1. Contributeur sécurité
                        vire le truc mis par ta copine

                        si cela persiste:

                        télécharge combofix (par sUBs) ici :

                        http://download.bleepingcomputer.com/sUBs/ComboFix.exe

                        et enregistre le sur le bureau.

                        déconnecte toi d'internet et ferme toutes tes applications.

                        désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)

                        double-clique sur combofix.exe et suis les instructions

                        à la fin, il va produire un rapport C:\ComboFix.txt

                        réactive ton parefeu, ton antivirus, la garde de ton antispyware

                        copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

                        Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

                        Tu as un tutoriel complet ici :

                        https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
                        1. Mais il n'y a rien de ma copine sur mon pc, je n'ai rien installé car mon pc ne la pas reconnu rien ne sais passé quand j'ai mis son cable usb.

                          Je fais comme meme ce que vous avez dit ds le message précédent ???

                          Merci jlpjlp
                          1. Alors à la fin il y a la page bleu qui est encore apparue et qui à étein mon pc au redémarrage rien plus de combofix.

                            Donc ????

                            Merci de répondre

                            Merci jlpjlp
                            1. Contributeur sécurité
                              copie/colle le rapport situé dans psote de travail puis C:\ComboFix.txt dans ta prochaine réponse.
                              • 1
                              • 2