Bonjour,
Combofix Report
ComboFix 09-04-29.06 - Administrateur 2009-09-24 16:58.7 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1256.213.1036.18.503.263 [GMT 1:00]
Running from: c:\documents and settings\Administrateur\Bureau\ComboFix.exe
AV: ESET Smart Security 3.0 *On-access scanning enabled* (Updated)
FW: ESET Personal firewall *enabled*
* Resident AV is active
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
- REDUCED FUNCTIONALITY MODE -
.
((((((((((((((((((((((((( Files Created from 2009-10-24 to 2009-9-24 )))))))))))))))))))))))))))))))
.
2009-09-24 15:56 . 2009-09-24 15:57 -------- d-----w C:\ToolBar SD
2009-09-24 15:50 . 2009-09-24 15:50 -------- d-----w c:\windows\system32\avraiscanne
2009-09-24 15:50 . 2009-09-24 15:59 25170 ----a-w c:\documents and settings\Administrateur\Application Data\addons.dat
2009-09-24 10:34 . 2002-09-07 00:00 19456 -c--a-w c:\windows\system32\dllcache\agt0804.dll
2009-09-24 10:33 . 2004-08-04 04:54 68608 -c--a-w c:\windows\system32\dllcache\isatq.dll
2009-09-24 10:29 . 2008-11-02 15:35 11776 ----a-w c:\windows\unlockProtectedFeatures.exe
2009-09-22 10:26 . 2009-09-22 10:28 -------- d-----w c:\program files\The KMPlayer
2009-09-22 09:29 . 2009-09-22 09:29 -------- d-----w c:\documents and settings\Administrateur\Application Data\SiteRanker
2009-09-22 08:46 . 2009-09-22 08:46 159872 ----a-w c:\windows\Marsu-Fix Uninstaller.exe
2009-09-22 08:46 . 2009-09-22 08:46 -------- d-----w c:\program files\Marsu-Fix
2009-09-18 11:23 . 2008-01-07 13:29 352 ---ha-w c:\windows\nod32fixtemdono.reg
2009-09-18 09:28 . 2007-04-24 16:34 -------- d-----w c:\program files\WWE Raw vs Smackdown 2007
2009-09-18 09:27 . 2005-12-28 21:20 3991928 ----a-w c:\windows\system32\StringLib.dll
2009-09-18 09:27 . 2005-12-29 11:21 7062292 ----a-w c:\windows\system32\Data.bin
2009-09-18 09:27 . 2002-08-12 10:00 1126400 ----a-w c:\windows\system32\ANIKINFO.exe
2009-09-18 09:27 . 2005-12-29 11:33 -------- d-----w c:\windows\system32\DATA
2009-09-17 20:34 . 2009-09-17 20:34 -------- d-sh--w c:\documents and settings\NetworkService\IETldCache
2009-09-16 21:34 . 2009-09-16 21:36 -------- d-----w c:\program files\Canon
2009-09-16 12:26 . 2009-09-09 10:43 210352 ----a-w c:\windows\system32\idmmbc.dll
2009-09-15 14:52 . 2009-09-15 14:58 -------- d-----w c:\documents and settings\Administrateur\Application Data\AlMAdinahMushaf
2009-09-15 10:32 . 2009-09-15 10:32 -------- d-----w c:\program files\Fichiers communs\Corel
2009-09-15 10:32 . 2009-09-15 10:32 -------- d-----w c:\program files\Corel
2009-09-12 12:51 . 2009-09-12 12:51 -------- d-----w c:\program files\Quran_in_Word
2009-09-03 13:46 . 2009-09-03 13:46 -------- d--h--w c:\windows\PIF
2009-09-02 13:54 . 2006-04-19 02:00 62976 ----a-w c:\windows\system32\E_FD4BCAR.DLL
2009-09-02 13:54 . 2006-12-08 02:04 76800 ----a-w c:\windows\system32\E_FLBCAR.DLL
2009-09-02 13:52 . 2006-12-27 23:00 208896 ----a-w c:\windows\system32\esint7e.dll
2009-09-02 13:52 . 2006-12-27 23:00 66560 ----a-w c:\windows\system32\eswia7e.dll
2009-09-02 13:52 . 2006-03-09 23:00 3584 ----a-w c:\windows\system32\eswiaml.dll
2009-09-02 13:52 . 2004-08-03 21:58 15104 -c--a-w c:\windows\system32\dllcache\usbscan.sys
2009-09-02 13:52 . 2004-08-03 21:58 15104 ----a-w c:\windows\system32\drivers\usbscan.sys
2009-08-29 23:12 . 2009-08-29 23:12 -------- d-----w c:\documents and settings\Administrateur\Application Data\DivX
2009-08-29 23:07 . 2009-08-30 08:11 -------- d-----w c:\program files\DivX
2009-08-29 13:12 . 2009-08-29 13:57 -------- d-----w c:\program files\War Chess
2009-08-29 13:06 . 2009-08-29 13:06 -------- d-----w c:\documents and settings\Administrateur\Application Data\PlayFirst
2009-08-29 13:06 . 2009-08-29 13:06 -------- d-----w c:\documents and settings\All Users\Application Data\PlayFirst
2009-08-29 13:04 . 2009-08-29 13:04 -------- d-----w c:\program files\Fichiers communs\Oberon Media
2009-08-29 13:04 . 2009-08-29 13:12 -------- d-----w c:\program files\Oberon Media
2009-08-29 09:56 . 2009-08-29 09:57 -------- d-----w c:\documents and settings\Administrateur\Application Data\GetRightToGo
2009-08-28 10:16 . 2009-08-28 10:16 -------- d-----w c:\documents and settings\Administrateur\Local Settings\Application Data\Identities
2009-08-28 10:07 . 2009-08-28 10:07 -------- d-----w c:\program files\Managed DirectX (0900)
2009-08-27 09:57 . 2009-08-27 09:58 -------- d-----w c:\program files\3D Canvas 7
2009-08-26 10:48 . 2009-09-12 23:35 -------- d-----w c:\documents and settings\Administrateur\Application Data\Desktopicon
2009-08-26 10:02 . 2009-08-26 10:02 -------- d-----w c:\program files\SlySoft
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-24 10:29 . 2009-07-07 17:01 1036288 ----a-w c:\windows\explorer.exe
2009-09-23 08:55 . 2009-06-05 23:19 2568 --sha-w c:\windows\system32\KGyGaAvL.sys
2009-09-22 15:43 . 2009-07-21 09:55 -------- d-----w c:\program files\Internet Download Manager
2009-09-19 13:06 . 2009-06-05 18:15 -------- d-----w c:\program files\Fichiers communs\Wise Installation Wizard
2009-09-18 10:48 . 2009-06-05 17:54 966872 ----a-w c:\documents and settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-09-18 08:43 . 2009-06-05 17:56 -------- d--h--w c:\program files\InstallShield Installation Information
2009-09-16 11:50 . 2009-07-21 09:59 -------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-09-12 14:08 . 2009-07-26 07:43 -------- d-----w c:\program files\Java
2009-09-12 10:47 . 2009-06-05 17:56 -------- d-----w c:\program files\Fichiers communs\InstallShield
2009-09-10 13:54 . 2009-07-21 09:59 38224 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 13:53 . 2009-07-21 09:59 19160 ----a-w c:\windows\system32\drivers\mbam.sys
2009-09-06 11:24 . 2009-06-05 18:32 -------- d-----w c:\program files\Your Uninstaller 2008
2009-09-06 11:12 . 2009-06-05 18:05 -------- d-----w c:\program files\Fichiers communs\Adobe
2009-09-03 09:53 . 2009-08-21 09:23 -------- d-----w c:\program files\uTorrent
2009-08-13 17:37 . 2009-08-01 11:17 10 ----a-w c:\windows\popcinfo.dat
2009-08-07 09:09 . 2009-08-07 09:09 -------- d-----w c:\program files\USB Disk Security
2009-08-05 07:06 . 2009-06-05 18:26 -------- d-----w c:\program files\SuperCopier2
2009-07-30 08:21 . 2009-07-30 08:21 0 ----a-w c:\windows\nsreg.dat
2009-07-29 20:00 . 2009-07-29 20:00 -------- d-----w c:\program files\Fichiers communs\xing shared
2009-07-29 20:00 . 2009-07-29 20:00 -------- d-----w c:\program files\Fichiers communs\Real
2009-07-29 20:00 . 2009-06-05 18:07 499712 ----a-w c:\windows\system32\msvcp71.dll
2009-07-29 20:00 . 2009-07-29 20:00 -------- d-----w c:\program files\Real
2009-07-25 04:23 . 2009-07-26 07:43 411368 ----a-w c:\windows\system32\deploytk.dll
2009-07-24 19:36 . 2002-09-07 00:00 72222 ----a-w c:\windows\system32\perfc00C.dat
2009-07-24 19:36 . 2002-09-07 00:00 459846 ----a-w c:\windows\system32\perfh00C.dat
2009-07-13 04:48 . 2009-06-13 08:04 219648 ----a-w c:\windows\PEV.exe
.
------- Sigcheck -------
[-] 2009-09-24 10:29 1036288 E3A793B84CF1FF783642FA4F90A3518F c:\windows\explorer.exe
[7] 2004-08-04 03:54 1036288 4C33E5B9A6197B6ED215F6CFBA0A2DAA c:\windows\system32\dllcache\cache\explorer.exe
.
((((((((((((((((((((((((((((( SnapShot_2009-09-19_09.09.58 )))))))))))))))))))))))))))))))))))))))))
.
+ 2004-08-04 04:54 . 2004-08-04 04:54 30749 c:\windows\system32\dllcache\vbajet32.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 25600 c:\windows\system32\dllcache\twunk_32.exe
+ 2002-09-07 00:00 . 2002-09-07 00:00 49680 c:\windows\system32\dllcache\twunk_16.exe
+ 2009-09-24 10:34 . 2003-04-14 19:29 16384 c:\windows\system32\dllcache\tcptsat.dll
+ 2009-09-24 10:34 . 2003-03-24 14:52 32827 c:\windows\system32\dllcache\tcptest.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 25600 c:\windows\system32\dllcache\slayerxp.dll
+ 2009-09-24 10:34 . 2003-03-24 14:52 16437 c:\windows\system32\dllcache\shtml.exe
+ 2009-09-24 10:34 . 2003-03-24 14:52 20536 c:\windows\system32\dllcache\shtml.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 65536 c:\windows\system32\dllcache\shimeng.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 10240 c:\windows\system32\dllcache\sfc.exe
+ 2004-08-04 04:55 . 2004-08-04 04:55 78848 c:\windows\system32\dllcache\sdbinst.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 64000 c:\windows\system32\dllcache\samlib.dll
+ 2009-09-24 10:34 . 2001-08-23 16:46 66048 c:\windows\system32\dllcache\s3legacy.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 83456 c:\windows\system32\dllcache\olepro32.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 77824 c:\windows\system32\dllcache\oledb32r.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 20511 c:\windows\system32\dllcache\odtext32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 20510 c:\windows\system32\dllcache\odpdx32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 20510 c:\windows\system32\dllcache\odfox32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 20510 c:\windows\system32\dllcache\odexl32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 20511 c:\windows\system32\dllcache\oddbse32.dll
+ 2004-08-04 04:53 . 2004-08-04 04:53 61712 c:\windows\system32\dllcache\odbcji32.dll
+ 2004-08-04 04:53 . 2004-08-04 04:53 98304 c:\windows\system32\dllcache\odbcint.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 65536 c:\windows\system32\dllcache\odbccu32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 65536 c:\windows\system32\dllcache\odbccr32.dll
+ 2004-08-04 04:55 . 2004-08-04 04:55 69632 c:\windows\system32\dllcache\odbcconf.exe
+ 2004-08-04 04:55 . 2004-08-04 04:55 32768 c:\windows\system32\dllcache\odbcad32.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 16384 c:\windows\system32\dllcache\odbc32gt.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 62976 c:\windows\system32\dllcache\ocmanage.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 58880 c:\windows\system32\dllcache\nwapi32.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 17408 c:\windows\system32\dllcache\nwapi16.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 10240 c:\windows\system32\dllcache\npwmsdrm.dll
+ 2004-08-04 03:14 . 2004-08-04 03:14 91776 c:\windows\system32\dllcache\ndiswan.sys
+ 2009-06-05 17:46 . 2004-08-04 04:54 24576 c:\windows\system32\dllcache\msxactps.dll
+ 2004-08-04 02:58 . 2004-08-04 02:58 61440 c:\windows\system32\dllcache\msvcrt40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 53279 c:\windows\system32\dllcache\msjter40.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 36864 c:\windows\system32\dllcache\msdfmap.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 20480 c:\windows\system32\dllcache\msdatt.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 16384 c:\windows\system32\dllcache\msdasqlr.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 16384 c:\windows\system32\dllcache\msdaremr.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 16384 c:\windows\system32\dllcache\msdaprsr.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 77824 c:\windows\system32\dllcache\msdaosp.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 36864 c:\windows\system32\dllcache\mscpxl32.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 57344 c:\windows\system32\dllcache\msadrh15.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 57344 c:\windows\system32\dllcache\msador15.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 28672 c:\windows\system32\dllcache\msader15.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 24576 c:\windows\system32\dllcache\msaddsr.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 53248 c:\windows\system32\dllcache\msadcs.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 16384 c:\windows\system32\dllcache\msadcor.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 16384 c:\windows\system32\dllcache\msadcfr.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 61440 c:\windows\system32\dllcache\msadcf.dll
+ 2009-06-05 17:46 . 2004-08-04 04:53 20480 c:\windows\system32\dllcache\msadcer.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 22528 c:\windows\system32\dllcache\mfcsubs.dll
+ 2004-08-04 04:54 . 2009-03-08 03:33 25600 c:\windows\system32\dllcache\jsproxy.dll
+ 2004-08-04 03:14 . 2004-08-04 03:14 74752 c:\windows\system32\dllcache\ipsec.sys
+ 2009-09-24 10:33 . 2004-08-04 04:54 13312 c:\windows\system32\dllcache\infoadmn.dll
+ 2009-09-24 10:33 . 2002-09-07 00:00 19968 c:\windows\system32\dllcache\inetsloc.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 36921 c:\windows\system32\dllcache\imeshare.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 31232 c:\windows\system32\dllcache\iisrstas.exe
+ 2009-09-24 10:33 . 2002-09-07 00:00 14848 c:\windows\system32\dllcache\iisreset.exe
+ 2009-09-24 10:33 . 2004-08-04 04:54 64512 c:\windows\system32\dllcache\iismap.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 68608 c:\windows\system32\dllcache\iisext51.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 20538 c:\windows\system32\dllcache\fpremadm.exe
+ 2009-09-24 10:33 . 2003-03-24 14:52 20541 c:\windows\system32\dllcache\fpexedll.dll
+ 2009-09-24 10:33 . 2002-05-14 12:08 14608 c:\windows\system32\dllcache\fp98sadm.exe
+ 2009-09-24 10:33 . 2003-03-24 14:52 49212 c:\windows\system32\dllcache\fp4awebs.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 32826 c:\windows\system32\dllcache\fp4avss.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 41020 c:\windows\system32\dllcache\fp4avnb.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 49210 c:\windows\system32\dllcache\fp4areg.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 82035 c:\windows\system32\dllcache\fp4anscp.dll
+ 2009-09-24 10:35 . 2001-08-23 16:46 45056 c:\windows\system32\dllcache\EXCH_aqadmin.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 16384 c:\windows\system32\dllcache\ds32gt.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 87040 c:\windows\system32\dllcache\drmstor.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 45083 c:\windows\system32\dllcache\dispex.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 27136 c:\windows\system32\dllcache\ctl3d32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 60416 c:\windows\system32\dllcache\cryptsvc.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 63488 c:\windows\system32\dllcache\cryptnet.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 54784 c:\windows\system32\dllcache\cryptext.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 33280 c:\windows\system32\dllcache\cryptdll.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 75776 c:\windows\system32\dllcache\cryptdlg.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 47104 c:\windows\system32\dllcache\coadmin.dll
+ 2004-08-04 04:52 . 2004-08-04 04:52 16896 c:\windows\system32\dllcache\cfgmgr32.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 16439 c:\windows\system32\dllcache\author.exe
+ 2009-09-24 10:33 . 2003-03-24 14:52 20540 c:\windows\system32\dllcache\author.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 30208 c:\windows\system32\dllcache\atmlib.dll
+ 2009-09-24 10:35 . 2001-08-17 19:49 17152 c:\windows\system32\dllcache\atitunep.sys
+ 2009-09-24 10:35 . 2001-08-17 19:49 26880 c:\windows\system32\dllcache\atirtsnd.sys
+ 2009-09-24 10:35 . 2001-08-17 19:49 49920 c:\windows\system32\dllcache\atirtcap.sys
+ 2009-09-24 10:35 . 2001-08-23 15:59 70784 c:\windows\system32\dllcache\atiragem.sys
+ 2009-09-24 10:35 . 2001-08-17 19:49 10240 c:\windows\system32\dllcache\atipcxxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 63488 c:\windows\system32\dllcache\atinxsxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 31744 c:\windows\system32\dllcache\atinxbxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 73216 c:\windows\system32\dllcache\atintuxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 13824 c:\windows\system32\dllcache\atinttxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 28672 c:\windows\system32\dllcache\atinsnxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 52224 c:\windows\system32\dllcache\atinraxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 14336 c:\windows\system32\dllcache\atinpdxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 13824 c:\windows\system32\dllcache\atinmdxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 57856 c:\windows\system32\dllcache\atinbtxx.sys
+ 2009-09-24 10:35 . 2001-08-23 15:59 75392 c:\windows\system32\dllcache\atimpae.sys
+ 2009-09-24 10:35 . 2001-08-23 16:47 37376 c:\windows\system32\dllcache\atievxx.exe
+ 2009-09-24 10:35 . 2001-08-17 19:49 46464 c:\windows\system32\dllcache\atibt829.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 34735 c:\windows\system32\dllcache\ati1xsxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 29455 c:\windows\system32\dllcache\ati1xbxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 36463 c:\windows\system32\dllcache\ati1tuxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 21343 c:\windows\system32\dllcache\ati1ttxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 26367 c:\windows\system32\dllcache\ati1snxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 63663 c:\windows\system32\dllcache\ati1rvxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 30671 c:\windows\system32\dllcache\ati1raxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 12047 c:\windows\system32\dllcache\ati1pdxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 11615 c:\windows\system32\dllcache\ati1mdxx.sys
+ 2009-09-24 10:35 . 2004-08-03 21:29 56623 c:\windows\system32\dllcache\ati1btxx.sys
+ 2009-09-24 10:35 . 2001-08-23 15:59 77824 c:\windows\system32\dllcache\ati.sys
+ 2009-09-24 10:35 . 2001-08-23 16:46 96128 c:\windows\system32\dllcache\ati.dll
+ 2004-08-04 02:59 . 2004-08-04 02:59 95360 c:\windows\system32\dllcache\atapi.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 25088 c:\windows\system32\dllcache\at.exe
+ 2004-08-04 03:05 . 2004-08-04 03:05 14336 c:\windows\system32\dllcache\asyncmac.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 65024 c:\windows\system32\dllcache\asycfilt.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 32768 c:\windows\system32\dllcache\asr_pfu.exe
+ 2002-09-07 00:00 . 2002-09-07 00:00 37888 c:\windows\system32\dllcache\asr_ldm.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 30720 c:\windows\system32\dllcache\asr_fmt.exe
+ 2009-09-24 10:35 . 2002-09-07 00:00 29184 c:\windows\system32\dllcache\asptxn.dll
+ 2009-09-24 10:35 . 2002-09-07 00:00 10240 c:\windows\system32\dllcache\aspperf.dll
+ 2009-09-24 10:35 . 2001-08-17 19:12 97354 c:\windows\system32\dllcache\aspndis3.sys
+ 2009-09-24 10:35 . 2001-08-17 20:51 14848 c:\windows\system32\dllcache\asc3550.sys
+ 2009-09-24 10:35 . 2001-08-17 20:52 22400 c:\windows\system32\dllcache\asc3350p.sys
+ 2009-09-24 10:35 . 2001-08-17 20:52 26496 c:\windows\system32\dllcache\asc.sys
+ 2004-08-03 22:58 . 2004-08-04 05:05 60800 c:\windows\system32\dllcache\arp1394.sys
+ 2002-09-07 00:00 . 2002-09-07 00:00 19968 c:\windows\system32\dllcache\arp.exe
+ 2002-09-07 00:00 . 2002-09-07 00:00 12642 c:\windows\system32\dllcache\append.exe
+ 2009-09-24 10:35 . 2004-08-03 21:31 36224 c:\windows\system32\dllcache\an983.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 70656 c:\windows\system32\dllcache\amstream.dll
+ 2009-09-24 10:35 . 2001-08-17 20:52 12032 c:\windows\system32\dllcache\amsint.sys
+ 2004-08-04 00:37 . 2004-08-04 05:05 41600 c:\windows\system32\dllcache\amdk7.sys
+ 2004-08-04 00:37 . 2004-08-04 05:05 41216 c:\windows\system32\dllcache\amdk6.sys
+ 2009-09-24 10:35 . 2004-08-03 22:07 43008 c:\windows\system32\dllcache\amdagp.sys
+ 2009-09-24 10:35 . 2001-08-17 19:11 16969 c:\windows\system32\dllcache\amb8002.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 17408 c:\windows\system32\dllcache\alrsvc.dll
+ 2009-09-24 10:35 . 2004-08-03 22:07 42752 c:\windows\system32\dllcache\alim1541.sys
+ 2009-09-24 10:35 . 2001-08-17 20:49 26624 c:\windows\system32\dllcache\alifir.sys
+ 2009-09-24 10:35 . 2001-08-17 19:11 27678 c:\windows\system32\dllcache\ali5261.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 44544 c:\windows\system32\dllcache\alg.exe
+ 2009-09-24 10:35 . 2001-08-17 21:07 56960 c:\windows\system32\dllcache\aic78xx.sys
+ 2009-09-24 10:35 . 2001-08-17 21:07 55168 c:\windows\system32\dllcache\aic78u2.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 98304 c:\windows\system32\dllcache\ahui.exe
+ 2009-09-24 10:35 . 2001-08-17 20:52 12800 c:\windows\system32\dllcache\aha154x.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 24064 c:\windows\system32\dllcache\agtintl.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 20480 c:\windows\system32\dllcache\agt0c0a.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 20992 c:\windows\system32\dllcache\agt0816.dll
+ 2009-06-05 19:36 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt041f.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt041d.dll
+ 2009-06-05 19:36 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0419.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 20480 c:\windows\system32\dllcache\agt0416.dll
+ 2009-06-05 19:36 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0415.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0414.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 20992 c:\windows\system32\dllcache\agt0413.dll
+ 2009-09-24 10:34 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0412.dll
+ 2009-09-24 10:34 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0411.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 20992 c:\windows\system32\dllcache\agt0410.dll
+ 2009-06-05 19:36 . 2002-09-07 00:00 19968 c:\windows\system32\dllcache\agt040e.dll
+ 2009-06-05 19:41 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt040d.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 21504 c:\windows\system32\dllcache\agt040c.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt040b.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0409.dll
+ 2009-06-05 19:36 . 2002-09-07 00:00 22016 c:\windows\system32\dllcache\agt0408.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 21504 c:\windows\system32\dllcache\agt0407.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0406.dll
+ 2009-06-05 19:36 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0405.dll
+ 2009-09-24 10:34 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0404.dll
+ 2009-06-05 19:41 . 2002-09-07 00:00 19456 c:\windows\system32\dllcache\agt0401.dll
+ 2009-09-24 10:34 . 2004-08-03 22:07 44928 c:\windows\system32\dllcache\agpcpq.sys
+ 2009-07-01 08:59 . 2004-08-03 22:07 42368 c:\windows\system32\dllcache\agp440.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 44032 c:\windows\system32\dllcache\agentsr.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 24064 c:\windows\system32\dllcache\agentpsh.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 49152 c:\windows\system32\dllcache\agentmpx.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 58880 c:\windows\system32\dllcache\agentdpv.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 41984 c:\windows\system32\dllcache\agentdp2.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 24064 c:\windows\system32\dllcache\agentanm.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 68096 c:\windows\system32\dllcache\adsmsext.dll
+ 2009-09-24 10:34 . 2002-09-07 00:00 50176 c:\windows\system32\dllcache\adrot.dll
+ 2009-09-24 10:34 . 2001-08-17 19:11 46112 c:\windows\system32\dllcache\adptsf50.sys
+ 2002-09-07 00:00 . 2002-09-07 00:00 26112 c:\windows\system32\dllcache\adptif.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 43520 c:\windows\system32\dllcache\admwprox.dll
+ 2004-08-04 04:54 . 2009-03-08 03:32 72704 c:\windows\system32\dllcache\admparse.dll
+ 2009-09-24 10:34 . 2004-08-03 21:32 10880 c:\windows\system32\dllcache\admjoy.sys
+ 2009-09-24 10:33 . 2003-03-24 14:52 16439 c:\windows\system32\dllcache\admin.exe
+ 2009-09-24 10:33 . 2003-03-24 14:52 20540 c:\windows\system32\dllcache\admin.dll
+ 2009-09-24 10:34 . 2004-08-04 04:54 29696 c:\windows\system32\dllcache\admexs.dll
+ 2009-09-24 10:34 . 2001-08-17 19:11 20160 c:\windows\system32\dllcache\adm8511.sys
+ 2002-09-07 00:00 . 2002-09-07 00:00 12032 c:\windows\system32\dllcache\acpiec.sys
+ 2009-09-24 10:34 . 2001-08-23 16:46 61952 c:\windows\system32\dllcache\acerscad.dll
+ 2009-06-05 17:47 . 2002-09-07 00:00 72192 c:\windows\system32\dllcache\acctres.dll
+ 2009-09-24 10:34 . 2004-08-03 21:32 84480 c:\windows\system32\dllcache\ac97via.sys
+ 2009-09-24 10:34 . 2001-08-17 19:20 96256 c:\windows\system32\dllcache\ac97intc.sys
+ 2009-09-24 10:34 . 2001-08-17 20:52 23552 c:\windows\system32\dllcache\abp480n5.sys
+ 2002-09-07 00:00 . 2002-09-07 00:00 26624 c:\windows\system32\dllcache\aaaamon.dll
+ 2009-09-24 10:34 . 2001-08-23 16:46 38400 c:\windows\system32\dllcache\8514a.dll
+ 2009-09-24 10:34 . 2004-08-03 22:10 48128 c:\windows\system32\dllcache\61883.sys
+ 2009-09-24 10:34 . 2004-08-03 22:00 12288 c:\windows\system32\dllcache\4mmdat.sys
+ 2009-09-24 10:34 . 2001-08-17 21:06 11264 c:\windows\system32\dllcache\1394vdbg.sys
+ 2009-09-24 10:34 . 2004-08-03 22:10 53248 c:\windows\system32\dllcache\1394bus.sys
+ 2009-09-24 15:50 . 2009-09-24 13:51 84435 c:\windows\system32\avraiscanne\avirascann.exe
+ 2009-09-24 10:34 . 2002-09-07 00:00 7168 c:\windows\system32\dllcache\wamregps.dll
+ 2009-09-24 10:34 . 2004-08-04 04:54 8192 c:\windows\system32\dllcache\staxmem.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 5120 c:\windows\system32\dllcache\sfc.dll
+ 2004-08-02 18:20 . 2004-08-02 18:20 4569 c:\windows\system32\dllcache\secupd.dat
+ 2002-09-07 00:00 . 2002-09-07 00:00 3584 c:\windows\system32\dllcache\riched32.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 4463 c:\windows\system32\dllcache\oembios.dat
+ 2002-09-07 00:00 . 2002-09-07 00:00 4608 c:\windows\system32\dllcache\mssip32.dll
+ 2004-08-04 04:53 . 2004-08-04 04:53 4126 c:\windows\system32\dllcache\msdxmlc.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 4096 c:\windows\system32\dllcache\msdaurl.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 4096 c:\windows\system32\dllcache\msdasc.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 4096 c:\windows\system32\dllcache\msdaer.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 4096 c:\windows\system32\dllcache\msdaenum.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 4096 c:\windows\system32\dllcache\msdadc.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 4639 c:\windows\system32\dllcache\mplayer2.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 6656 c:\windows\system32\dllcache\laprxy.dll
+ 2009-09-24 10:33 . 2002-09-07 00:00 7680 c:\windows\system32\dllcache\inetmgr.exe
+ 2009-09-24 10:33 . 2002-09-07 00:00 5632 c:\windows\system32\dllcache\iisrstap.dll
+ 2009-09-24 10:33 . 2002-09-07 00:00 6144 c:\windows\system32\dllcache\ftpsapi2.dll
+ 2009-09-24 10:34 . 2001-08-23 16:46 5632 c:\windows\system32\dllcache\EXCH_adsiisex.dll
+ 2004-08-04 04:52 . 2004-08-04 04:52 8704 c:\windows\system32\dllcache\asferror.dll
+ 2009-09-24 10:35 . 2001-08-17 20:47 6272 c:\windows\system32\dllcache\apmbatt.sys
+ 2002-09-07 00:00 . 2002-09-07 00:00 9037 c:\windows\system32\dllcache\ansi.sys
+ 2009-09-24 10:35 . 2001-08-17 20:51 5248 c:\windows\system32\dllcache\aliide.sys
+ 2009-09-24 10:34 . 2004-08-03 23:54 3775 c:\windows\system32\dllcache\adv11nt5.dll
+ 2009-09-24 10:34 . 2004-08-03 23:54 3711 c:\windows\system32\dllcache\adv09nt5.dll
+ 2009-09-24 10:34 . 2004-08-03 23:54 3135 c:\windows\system32\dllcache\adv08nt5.dll
+ 2009-09-24 10:34 . 2004-08-03 23:54 3647 c:\windows\system32\dllcache\adv07nt5.dll
+ 2009-09-24 10:34 . 2004-08-03 23:54 3615 c:\windows\system32\dllcache\adv05nt5.dll
+ 2009-09-24 10:34 . 2004-08-03 23:54 3967 c:\windows\system32\dllcache\adv02nt5.dll
+ 2009-09-24 10:34 . 2004-08-03 23:54 4255 c:\windows\system32\dllcache\adv01nt5.dll
+ 2009-09-24 10:34 . 2002-09-07 00:00 6144 c:\windows\system32\dllcache\admxprox.dll
+ 2009-09-24 10:34 . 2001-08-17 20:53 7424 c:\windows\system32\dllcache\adicvls.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 4096 c:\windows\system32\dllcache\actmovie.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 176640 c:\windows\system32\dllcache\wintrust.dll
+ 2004-08-04 04:55 . 2004-08-04 04:55 506368 c:\windows\system32\dllcache\winlogon.exe
+ 2004-08-04 04:54 . 2009-03-08 03:34 914944 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-04 04:54 . 2009-03-08 03:33 420352 c:\windows\system32\dllcache\vbscript.dll
+ 2004-08-04 04:54 . 2009-03-08 03:34 105984 c:\windows\system32\dllcache\url.dll
+ 2004-08-04 04:55 . 2004-08-04 04:55 208896 c:\windows\system32\dllcache\unregmp2.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 119808 c:\windows\system32\dllcache\umpnpmgr.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 177856 c:\windows\system32\dllcache\typelib.dll
+ 2004-08-04 04:55 . 2004-08-04 04:55 107520 c:\windows\system32\dllcache\sysocmgr.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 246302 c:\windows\system32\dllcache\strmdll.dll
+ 2009-09-24 10:34 . 2004-08-04 04:54 189440 c:\windows\system32\dllcache\smtpadm.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 151552 c:\windows\system32\dllcache\scrrun.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 159744 c:\windows\system32\dllcache\scrobj.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 144896 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 431104 c:\windows\system32\dllcache\samsrv.dll
+ 2004-08-04 02:31 . 2004-08-04 02:31 152576 c:\windows\system32\dllcache\rsaenh.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 431616 c:\windows\system32\dllcache\riched20.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 487424 c:\windows\system32\dllcache\oledb32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 553472 c:\windows\system32\dllcache\oleaut32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 147456 c:\windows\system32\dllcache\odbctrac.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 278559 c:\windows\system32\dllcache\odbcjt32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 106496 c:\windows\system32\dllcache\odbccp32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 135168 c:\windows\system32\dllcache\odbcconf.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 249856 c:\windows\system32\dllcache\odbc32.dll
+ 2004-08-04 03:15 . 2004-08-04 03:15 574592 c:\windows\system32\dllcache\ntfs.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 733184 c:\windows\system32\dllcache\ntdll.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 364544 c:\windows\system32\dllcache\npdsplay.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 332288 c:\windows\system32\dllcache\netapi32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 348189 c:\windows\system32\dllcache\msxbde40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 614429 c:\windows\system32\dllcache\mswstr10.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 831519 c:\windows\system32\dllcache\mswdat10.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 343040 c:\windows\system32\dllcache\msvcrt.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 258077 c:\windows\system32\dllcache\mstext40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 552989 c:\windows\system32\dllcache\msrepl40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 315423 c:\windows\system32\dllcache\msrd3x40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 421919 c:\windows\system32\dllcache\msrd2x40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 348189 c:\windows\system32\dllcache\mspbde40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 143360 c:\windows\system32\dllcache\msorcl32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 213023 c:\windows\system32\dllcache\msltus40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 241693 c:\windows\system32\dllcache\msjtes40.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 102400 c:\windows\system32\dllcache\msjro.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 184351 c:\windows\system32\dllcache\msjint40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 319517 c:\windows\system32\dllcache\msexcl40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 512029 c:\windows\system32\dllcache\msexch40.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 315392 c:\windows\system32\dllcache\msdasql.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 118784 c:\windows\system32\dllcache\msdarem.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 204800 c:\windows\system32\dllcache\msdaps.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 200704 c:\windows\system32\dllcache\msdaprst.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 233472 c:\windows\system32\dllcache\msdaora.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 200704 c:\windows\system32\dllcache\msadox.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 180224 c:\windows\system32\dllcache\msadomd.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 536576 c:\windows\system32\dllcache\msado15.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 155648 c:\windows\system32\dllcache\msadds.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 143360 c:\windows\system32\dllcache\msadco.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 331776 c:\windows\system32\dllcache\msadce.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 924432 c:\windows\system32\dllcache\mfc40u.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 924432 c:\windows\system32\dllcache\mfc40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 728576 c:\windows\system32\dllcache\lsasrv.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 103936 c:\windows\system32\dllcache\logagent.exe
+ 2004-08-04 04:54 . 2009-03-08 03:33 726528 c:\windows\system32\dllcache\jscript.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 134144 c:\windows\system32\dllcache\itss.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 143872 c:\windows\system32\dllcache\itircl.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 842240 c:\windows\system32\dllcache\inetmgr.dll
+ 2009-09-24 10:33 . 2002-09-07 00:00 173056 c:\windows\system32\dllcache\iisui.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 133632 c:\windows\system32\dllcache\iisrtl.dll
+ 2009-09-24 10:33 . 2003-04-14 19:29 217088 c:\windows\system32\dllcache\fpmmcsat.dll
+ 2009-09-24 10:33 . 2004-05-12 23:39 598071 c:\windows\system32\dllcache\fpmmc.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 188494 c:\windows\system32\dllcache\fpcount.exe
+ 2009-09-24 10:33 . 2002-05-14 12:08 109328 c:\windows\system32\dllcache\fp98swin.exe
+ 2009-09-24 10:33 . 2004-05-12 23:39 876653 c:\windows\system32\dllcache\fp4awel.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 102509 c:\windows\system32\dllcache\fp4atxt.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 147513 c:\windows\system32\dllcache\fp4apws.dll
+ 2009-09-24 10:33 . 2004-05-12 23:39 184435 c:\windows\system32\dllcache\fp4amsft.dll
+ 2004-08-04 03:14 . 2004-08-04 03:14 143360 c:\windows\system32\dllcache\fastfat.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 380957 c:\windows\system32\dllcache\expsrv.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 499741 c:\windows\system32\dllcache\dxmasf.dll
+ 2004-08-04 02:31 . 2004-08-04 02:31 137216 c:\windows\system32\dllcache\dssenh.dll
+ 2004-08-04 04:55 . 2004-08-04 04:55 299520 c:\windows\system32\dllcache\drmclien.dll
+ 2009-06-05 17:46 . 2004-08-04 04:54 561179 c:\windows\system32\dllcache\dao360.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 530432 c:\windows\system32\dllcache\cryptui.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 604672 c:\windows\system32\dllcache\crypt32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 253440 c:\windows\system32\dllcache\compatui.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 281088 c:\windows\system32\dllcache\comdlg32.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 611328 c:\windows\system32\dllcache\comctl32.dll
+ 2009-09-24 10:33 . 2003-03-24 14:52 188480 c:\windows\system32\dllcache\cfgwiz.exe
+ 2009-09-24 10:35 . 2001-08-23 16:46 104832 c:\windows\system32\dllcache\atiraged.dll
+ 2009-09-24 10:35 . 2004-08-03 21:29 104960 c:\windows\system32\dllcache\atinrvxx.sys
+ 2009-09-24 10:35 . 2001-08-23 15:59 281728 c:\windows\system32\dllcache\atimtai.sys
+ 2009-09-24 10:35 . 2001-08-23 15:59 289920 c:\windows\system32\dllcache\atimpab.sys
+ 2009-09-24 10:35 . 2001-08-23 16:46 268160 c:\windows\system32\dllcache\atidvai.dll
+ 2009-09-24 10:35 . 2001-08-23 16:46 137216 c:\windows\system32\dllcache\atidrae.dll
+ 2009-09-24 10:35 . 2001-08-23 16:46 382592 c:\windows\system32\dllcache\atidrab.dll
+ 2009-09-24 10:35 . 2004-08-03 23:54 870784 c:\windows\system32\dllcache\ati3d1ag.dll
+ 2009-09-24 10:35 . 2004-08-03 23:38 701440 c:\windows\system32\dllcache\ati2mtag.sys
+ 2009-09-24 10:35 . 2004-08-03 23:38 327168 c:\windows\system32\dllcache\ati2mtaa.sys
+ 2009-09-24 10:35 . 2004-08-03 23:54 201728 c:\windows\system32\dllcache\ati2dvag.dll
+ 2009-09-24 10:35 . 2004-08-03 23:54 377984 c:\windows\system32\dllcache\ati2dvaa.dll
+ 2009-09-24 10:35 . 2004-08-03 23:54 229376 c:\windows\system32\dllcache\ati2cqag.dll
+ 2009-09-24 10:35 . 2004-08-04 04:54 377344 c:\windows\system32\dllcache\asp51.dll
+ 2009-09-24 10:35 . 2004-08-04 04:54 334336 c:\windows\system32\dllcache\aqueue.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 302592 c:\windows\system32\dllcache\appmgr.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 176640 c:\windows\system32\dllcache\appmgmts.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 126976 c:\windows\system32\dllcache\apphelp.dll
+ 2009-09-24 10:35 . 2004-08-04 04:54 110080 c:\windows\system32\dllcache\appconf.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 102912 c:\windows\system32\dllcache\apcups.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 256512 c:\windows\system32\dllcache\agentsvr.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 214016 c:\windows\system32\dllcache\agentctl.dll
+ 2004-08-04 03:14 . 2004-08-04 03:14 138496 c:\windows\system32\dllcache\afd.sys
+ 2009-06-05 17:56 . 2004-08-03 20:39 142464 c:\windows\system32\dllcache\aec.sys
+ 2004-08-04 04:54 . 2009-03-08 03:32 128512 c:\windows\system32\dllcache\advpack.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 685056 c:\windows\system32\dllcache\advapi32.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 109568 c:\windows\system32\dllcache\adsnw.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 263680 c:\windows\system32\dllcache\adsnt.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 163328 c:\windows\system32\dllcache\adsnds.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 143360 c:\windows\system32\dllcache\adsldpc.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 175616 c:\windows\system32\dllcache\adsldp.dll
+ 2009-09-24 10:33 . 2004-08-04 04:54 290816 c:\windows\system32\dllcache\adsiis51.dll
+ 2009-09-24 10:34 . 2001-08-17 21:07 101888 c:\windows\system32\dllcache\adpu160m.sys
+ 2009-09-24 10:34 . 2001-08-17 19:19 747392 c:\windows\system32\dllcache\adm8830.sys
+ 2009-09-24 10:34 . 2001-08-17 19:19 553984 c:\windows\system32\dllcache\adm8820.sys
+ 2009-09-24 10:34 . 2001-08-17 19:19 584448 c:\windows\system32\dllcache\adm8810.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 116224 c:\windows\system32\dllcache\acxtrnal.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 101888 c:\windows\system32\dllcache\actxprxy.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 194048 c:\windows\system32\dllcache\activeds.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 244736 c:\windows\system32\dllcache\acspecfc.dll
+ 2004-08-04 04:36 . 2004-08-04 04:36 188672 c:\windows\system32\dllcache\acpi.sys
+ 2004-08-04 04:54 . 2004-08-04 04:54 119296 c:\windows\system32\dllcache\aclui.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 137728 c:\windows\system32\dllcache\aclua.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 135680 c:\windows\system32\dllcache\acledit.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 450048 c:\windows\system32\dllcache\aclayers.dll
+ 2009-06-05 17:44 . 2004-08-04 04:54 189952 c:\windows\system32\dllcache\accwiz.exe
+ 2009-09-24 10:34 . 2001-08-17 19:20 297728 c:\windows\system32\dllcache\ac97sis.sys
+ 2009-09-24 10:34 . 2004-08-03 21:32 231552 c:\windows\system32\dllcache\ac97ali.sys
+ 2009-09-24 10:34 . 2001-08-23 16:46 462848 c:\windows\system32\dllcache\a3dapi.dll
+ 2009-06-05 17:56 . 2001-09-19 12:32 720896 c:\windows\system32\dllcache\a3d.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 100352 c:\windows\system32\dllcache\6to4svc.dll
+ 2009-09-24 10:34 . 2001-08-17 19:48 148352 c:\windows\system32\dllcache\3dfxvsm.sys
+ 2009-09-24 10:34 . 2001-08-23 16:46 689216 c:\windows\system32\dllcache\3dfxvs.dll
+ 2009-09-24 10:34 . 2001-08-17 20:28 762780 c:\windows\system32\dllcache\3cwmcru.sys
+ 2004-08-04 04:54 . 2009-03-08 03:34 1206784 c:\windows\system32\dllcache\urlmon.dll
+ 2009-09-24 10:34 . 2004-08-04 04:54 2134528 c:\windows\system32\dllcache\smtpsnap.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1548288 c:\windows\system32\dllcache\sfcfiles.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1003520 c:\windows\system32\dllcache\setupapi.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1281024 c:\windows\system32\dllcache\ole32.dll
+ 2004-08-04 04:49 . 2004-08-04 04:49 2183040 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2009-09-24 10:34 . 2004-08-03 23:48 2150400 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2004-08-04 04:54 . 2004-08-04 04:54 1507356 c:\windows\system32\dllcache\msjet40.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1024000 c:\windows\system32\dllcache\mfc42u.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1028096 c:\windows\system32\dllcache\mfc42.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1048576 c:\windows\system32\dllcache\kernel32.dll
+ 2009-09-24 10:35 . 2004-08-03 23:54 1888992 c:\windows\system32\dllcache\ati3duag.dll
+ 2004-08-04 04:54 . 2004-08-04 04:54 1852416 c:\windows\system32\dllcache\acgenral.dll
+ 2002-09-07 00:00 . 2002-09-07 00:00 13107200 c:\windows\system32\dllcache\oembios.bin
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SuperCopier2.exe"="c:\program files\SuperCopier2\SuperCopier2.exe" [2006-07-07 1052672]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2009-09-22 3114416]
"EPSON Stylus CX4300 Series"="c:\windows\System32\spool\DRIVERS\W32X86\3\E_FATICAR.EXE" [2007-03-01 180736]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DrvLsnr"="c:\program files\Analog Devices\SoundMAX\DrvLsnr.exe" [2003-05-08 69632]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2005-06-21 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2005-06-21 126976]
"FixCamera"="c:\windows\FixCamera.exe" [2007-07-11 20480]
"tsnpstd3"="c:\windows\tsnpstd3.exe" [2007-04-21 270336]
"snpstd3"="c:\windows\vsnpstd3.exe" [2007-05-10 835584]
"USB Antivirus"="c:\program files\USB Disk Security\USBGuard.exe" [2008-09-23 798720]
"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2005-04-12 45056]
"ZSSnp211"="c:\windows\ZSSnp211.exe" [2007-04-06 57344]
"CloneCDTray"="c:\program files\SlySoft\CloneCD\CloneCDTray.exe" [2004-10-21 57344]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2008-03-13 1443072]
"TkBellExe"="c:\program files\Fichiers communs\Real\Update_OB\realsched.exe" [2009-07-29 198160]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360]
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32
"MIDI1"= SYNCOR11.DLL
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk k:C/ k:D /k:E /k:F /k:G *
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\system32\\fxsclnt.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26185:TCP"= 26185:TCP:BitComet 26185 TCP
"26185:UDP"= 26185:UDP:BitComet 26185 UDP
R1 LIKECDN2;LIKECDN2; [x]
R3 FXDrv32;FXDrv32; [x]
S1 BIOS;BIOS;c:\windows\system32\drivers\BIOS.sys [2005-03-16 13696]
S2 ekrn;Eset Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [2008-03-13 472320]
S3 iadusb;MT882;c:\windows\system32\DRIVERS\glauiad.sys [2007-04-21 29696]
--- Other Services/Drivers In Memory ---
*Deregistered* - mchInjDrv
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{28134e86-a81f-11de-89b0-001d6a8e03d0}]
\Shell\AutoRun\command - H:\SHDAR.EXE
\Shell\LV\COMMAND - H:\LOVE.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9D71D88C-C598-4935-C5D1-43AA4D]
c:\windows\system32\avraiscanne\avirascann.exe s
.
Contents of the 'Scheduled Tasks' folder
2009-09-16 c:\windows\Tasks\Malwarebytes' Scheduled Scan for Administrateur.job
- c:\program files\Malwarebytes' Anti-Malware\mbam.exe [2009-07-21 13:53]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.fr/
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Télécharger avec IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: Télécharger le contenu de video FLV avec IDM - c:\program files\Internet Download Manager\IEGetVL.htm
IE: Télécharger tous les liens avec IDM - c:\program files\Internet Download Manager\IEGetAll.htm
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-09-24 16:59
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
c:\program files\Internet Explorer\iexplore.exe [1476] 0x822F0660
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-1417001333-436374069-725345543-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,b6,bd,6c,43,a3,a3,bb,42,84,bd,3e,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,b6,bd,6c,43,a3,a3,bb,42,84,bd,3e,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{2d57f01a-fe07-44d1-a76e-288f8739f407}]
@Denied: (Full) (Everyone)
"Model"=dword:00000103
"Therad"=dword:0000000c
"MData"=hex(0):73,d5,cf,b8,a4,07,89,80,31,e4,35,6b,2a,ca,fe,43,98,07,ff,fc,5d,
df,1c,2f,3b,8a,0a,32,11,89,01,b5,c1,4c,a5,10,e8,f5,64,b7,6f,a8,d5,f9,8e,50,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):32,fb,bb,93,02,db,49,32,ba,06,0a,39,96,f0,eb,9a,42,6c,f8,61,0c,
19,c1,a8,78,6c,bd,88,f9,fd,a8,28,9a,ad,35,cc,94,57,52,b0,00,00,00,00,00,00,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'explorer.exe'(3616)
c:\program files\SuperCopier2\SC2Hook.dll
c:\windows\system32\shdoclc.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\msi.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\browselc.dll
c:\program files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.dll
c:\program files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.FRA
c:\windows\system32\igfxpph.dll
c:\windows\system32\hccutils.DLL
c:\windows\system32\igfxres.dll
c:\windows\system32\igfxsrvc.dll
c:\windows\system32\igfxdev.dll
c:\program files\WinRAR\rarext.dll
c:\program files\Malwarebytes' Anti-Malware\mbamext.dll
c:\program files\ESET\ESET Smart Security\shellExt.dll
c:\program files\Internet Download Manager\IDMIECC.dll
c:\program files\Internet Download Manager\idmmkb.dll
c:\program files\Microsoft Office\OFFICE11\msohev.dll
.
Completion time: 2009-09-24 17:02
ComboFix-quarantined-files.txt 2009-09-24 16:01
ComboFix2.txt 2009-09-07 21:31
Pre-Run: 7,838,875,648 octets libres
Post-Run: 7,835,738,112 octets libres
611
Afficher la suite