Pc lent besoin de l avis d un expert

eric77 -  
 eric77 -
Bonjour,

je croi que mon pc est infecter encor meme apret desinfection de plusieur trojan

30 réponses

  • 1
  • 2
  1. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    slt
    colles les rapports des logiciels de désinfections utilisés pour voir les noms des infections et le fichiers infectés

    puis

    Télécharge ZHPDiag ( de Nicolas coolman ).
    https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

    (outil de diagnostic)

    Double clique sur le fichier d'installation, puis installe le avec les paramètres par défaut ( N'oublie pas de cocher " Créer une icône sur le bureau " )

    Lance ZHPDiag en double cliquant sur l'icône présente sur ton bureau (Clique droit -> Executer en tant qu'admin ( vista )

    Clique sur la loupe en haut à gauche, puis laisse l'outil scanner.

    Une fois le scan terminé, clique sur l'icône en forme de disquette et enregistre le fichier sur ton bureau.

    Rend toi sur Cjoint : http://www.cijoint.fr/

    Clique sur "Parcourir " dans la partie " Joindre un fichier[...] "

    Sélectionne le rapport ZHPdiag.txt qui se trouve sur ton bureau

    Clique ensuite sur "Cliquez ici pour déposer le fichier " et copie/colle le lien dans ton prochain message
    0
    1. eric77
       
      merci de bien vouloir m aider
      voici le rapport que j ai trouver
      Malwarebytes' Anti-Malware 1.50.1.1100
      www.malwarebytes.org

      Version de la base de données: 5758

      Windows 5.1.2600 Service Pack 3
      Internet Explorer 8.0.6001.18702

      14/02/2011 00:53:54
      mbam-log-2011-02-14 (00-53-54).txt

      Type d'examen: Examen complet (C:\|)
      Elément(s) analysé(s): 297215
      Temps écoulé: 39 minute(s), 6 seconde(s)

      Processus mémoire infecté(s): 0
      Module(s) mémoire infecté(s): 0
      Clé(s) du Registre infectée(s): 0
      Valeur(s) du Registre infectée(s): 0
      Elément(s) de données du Registre infecté(s): 0
      Dossier(s) infecté(s): 0
      Fichier(s) infecté(s): 4

      Processus mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Module(s) mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Clé(s) du Registre infectée(s):
      (Aucun élément nuisible détecté)

      Valeur(s) du Registre infectée(s):
      (Aucun élément nuisible détecté)

      Elément(s) de données du Registre infecté(s):
      (Aucun élément nuisible détecté)

      Dossier(s) infecté(s):
      (Aucun élément nuisible détecté)

      Fichier(s) infecté(s):
      c:\documents and settings\eric\Bureau\ik.multimedia.t-racks.vst.rtas.v1.3.incl.keygen-air\Keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
      c:\documents and settings\eric\Bureau\toontrack.ezdrummer.ezx.claustrophobic.hybrid.dvdr-airiso\Keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
      c:\documents and settings\eric\Bureau\toontrack.ezdrummer.ezx.nashville ( full ) by team darkstudio\Keygen.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
      c:\system volume information\_restore{79a68f20-6764-42c2-ae0a-0bc49d71149b}\RP42\A0004655.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
      0
  2. eric77
     
    voici le lien que tu ma demander
    http://www.cijoint.fr/cjlink.php?file=cj201102/cijFx3lts7.txt
    0
  3. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    ce sont des cracks trouvés par malwarebyte ....

    colle un rapport avec un des 4 premiers antivirus en ligne <= ici
    0
  4. eric77
     
    voici le raport
    uickScan Beta 32-bit v0.9.9.52
    -------------------------------
    Date de l'analyse : Wed Feb 23 15:27:16 2011
    ID de la machine : D01AFA96

    Aucune infection détectée.
    --------------------------

    Processus
    ---------
    CLEDX 1996 C:\Program Files\Syncrosoft\POS\H2O\cledx.exe
    Firefox 2692 C:\Program Files\Mozilla Firefox\firefox.exe
    Firefox 1688 C:\Program Files\Mozilla Firefox\plugin-container.exe
    IJPLMSVC 316 C:\Program Files\Canon\IJPLM\ijplmsvc.exe
    Microsoft® Windows® Operating System 3144 C:\WINDOWS\system32\alg.exe
    Microsoft® Windows® Operating System 684 C:\WINDOWS\system32\csrss.exe
    Microsoft® Windows® Operating System 2040 C:\WINDOWS\system32\ctfmon.exe
    Microsoft® Windows® Operating System 764 C:\WINDOWS\system32\lsass.exe
    Microsoft® Windows® Operating System 1428 C:\WINDOWS\system32\spoolsv.exe
    Microsoft® Windows® Operating System 936 C:\WINDOWS\system32\svchost.exe
    Microsoft® Windows® Operating System 1000 C:\WINDOWS\system32\svchost.exe
    Microsoft® Windows® Operating System 1120 C:\WINDOWS\system32\svchost.exe
    Microsoft® Windows® Operating System 1240 C:\WINDOWS\system32\svchost.exe
    Microsoft® Windows® Operating System 2880 C:\WINDOWS\system32\svchost.exe
    Microsoft® Windows® Operating System 3636 C:\WINDOWS\system32\wbem\wmiprvse.exe
    Microsoft® Windows® Operating System 1424 C:\WINDOWS\system32\wdfmgr.exe
    Microsoft® Windows® Operating System 2740 C:\WINDOWS\system32\wscntfy.exe
    RegistryBooster Monitor 1772 C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
    SpeedUpMyPC Monitor 1752 C:\Program Files\Uniblue\SpeedUpMyPC\spmonitor.exe
    Système d'exploitation Microsoft® Windo 1824 C:\WINDOWS\explorer.exe
    Système d'exploitation Microsoft® Windo 2020 C:\WINDOWS\system32\rundll32.exe
    Système d'exploitation Microsoft® Windo 752 C:\WINDOWS\system32\services.exe
    Système d'exploitation Microsoft® Windo 636 C:\WINDOWS\system32\smss.exe
    Système d'exploitation Microsoft® Windo 708 C:\WINDOWS\system32\winlogon.exe
    TaskBarIconApplet 1988 C:\WINDOWS\system32\M-AudioTaskBarIcon.exe
    Threat Expert Ltd. Browser Defender 196 C:\Program Files\PC Tools Security\BDT\BDTUpdateService.exe
    Threat Expert Ltd. Browser Defender 2004 C:\Program Files\PC Tools Security\BDT\FGuard.exe

    Activité du réseau
    ------------------
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 91.103.142.129
    Processus firefox.exe (2692) connecté sur le port 443 (HTTP over SSL) --> 72.14.204.103
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 69.31.16.24
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 91.103.142.129
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 91.199.104.31
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 24.200.238.152
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 69.31.16.24
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 69.31.16.24
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 74.119.118.79
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 72.14.204.101
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 69.31.16.24
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 72.0.220.132
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 72.14.204.101
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 69.31.16.24
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 69.31.16.24
    Processus firefox.exe (2692) connecté sur le port 443 (HTTP over SSL) --> 72.14.204.100
    Processus firefox.exe (2692) connecté sur le port 443 (HTTP over SSL) --> 72.14.204.18
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 66.235.143.121
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 66.220.149.11
    Processus firefox.exe (2692) connecté sur le port 80 (HTTP) --> 72.14.204.101

    Processus svchost.exe (1000) écoute sur les ports: 135 (RPC)

    Fichiers critiques et Autorun
    -----------------------------
    Apple Software Update C:\Program Files\Apple Software Update\SoftwareUpdate.exe
    CLEDX C:\Program Files\Syncrosoft\POS\H2O\cledx.exe
    Google Update C:\Program Files\Google\Update\GoogleUpdate.exe
    Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
    Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
    Microsoft® Windows® Operating System C:\WINDOWS\system32\dimsntfy.dll
    NVIDIA Compatible Windows 2000 Display C:\WINDOWS\system32\NvCpl.dll
    NVIDIA Media Center Library C:\WINDOWS\system32\nvmctray.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\browseui.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\crypt32.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\cscdll.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\logonui.exe
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\sclgntfy.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\shell32.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\stobject.dll
    Système d'exploitation Microsoft® Windo c:\windows\system32\userinit.exe
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\wlnotify.dll
    TaskBarIconApplet C:\WINDOWS\system32\M-AudioTaskBarIcon.exe
    Threat Expert Ltd. Browser Defender C:\Program Files\PC Tools Security\BDT\FGuard.exe
    Uniblue Launcher C:\Program Files\Uniblue\RegistryBooster\launcher.exe
    Uniblue Launcher C:\Program Files\Uniblue\SpeedUpMyPC\launcher.exe
    Windows® Internet Explorer C:\WINDOWS\system32\msfeedssync.exe
    Windows® Internet Explorer C:\WINDOWS\system32\webcheck.dll

    Plugins du navigateur
    ---------------------
    2007 Microsoft Office system C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
    AcroIEHelperShim Library c:\program files\fichiers communs\adobe\acrobat\activex\acroiehelpershim.dll
    Adobe Acrobat C:\Program Files\Internet Explorer\plugins\nppdf32.dll
    asusTek_sys_ctrl Module C:\WINDOWS\Downloaded Program Files\asusTek_sys_ctrl.dll
    BitDefender QuickScan C:\Documents and Settings\eric\Application Data\Mozilla\Firefox\Profiles\3bbdb37k.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\qscanff.dll
    BitDefender QuickScan C:\Documents and Settings\eric\Application Data\Mozilla\Firefox\Profiles\3bbdb37k.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
    CANON iMAGE GATEWAY Album Plugin Utilit C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
    Easy-WebPrint EX c:\program files\canon\easy-webprint ex\ewpexbho.dll
    Easy-WebPrint EX c:\program files\canon\easy-webprint ex\ewpexhlp.dll
    Flash® Player Installer/Uninstaller C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
    Google Toolbar for Internet Explorer c:\program files\google\google toolbar\googletoolbar_32.dll
    Google Update C:\Program Files\Google\Update\1.2.183.39\npGoogleOneClick8.dll
    GoogleToolbarNotifier c:\program files\google\googletoolbarnotifier\5.6.5805.1910\swg.dll
    Ma-Config.com plugin C:\Program Files\ma-config.com\nphardwaredetection.dll
    Messenger C:\Program Files\Messenger\msmsgs.exe
    Microsoft® Windows® Operating System C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
    Microsoft® Windows® Operating System C:\WINDOWS\system32\winrnr.dll
    Mozilla Default Plug-in C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
    nppdf32.FRA C:\Program Files\Internet Explorer\plugins\nppdf32.FRA
    NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
    Panda ActiveScan 2.0 C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll
    PC Tools Content Filter C:\Program Files\Fichiers communs\PC Tools\Lsp\PCTLsp.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
    QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
    Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\mswsock.dll
    Threat Expert Ltd. Browser Defender c:\program files\pc tools security\bdt\pctbrowserdefender.dll
    Windows® Internet Explorer C:\WINDOWS\system32\ieframe.dll

    Fichiers manquants
    ------------------
    Fichier non trouvé : C:\DOCUME~1\eric\LOCALS~1\Temp\mbr.sys
    --> HKLM\System\ControlSet001\services\mbr\"ImagePath"

    Fichier non trouvé : C:\WINDOWS\System32\appmgmts.dll
    --> HKLM\System\ControlSet001\services\AppMgmt\Parameters\"ServiceDll"

    Analyse
    -------

    Aucun fichier téléchargé vers le serveur.

    Analyse terminée - la communication a duré 7 secondes
    Trafic total - 0.05 Mo envoyés, 636.26 Ko reçus
    879 fichiers et modules analysés - 15 seconds

    ==============================================================================
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. eric77
     
    il ne detecte pas rien c bizare pense tu que je doi formter mon ordi
    0
  7. eric77
     
    merci je vais voir pour autre chose une reponse aurais ete apprecier
    0
  8. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    télécharge combofix (par sUBs) ici :

    http://download.bleepingcomputer.com/sUBs/ComboFix.exe

    et enregistre le sur le bureau.

    déconnecte toi d'internet et ferme toutes tes applications.

    désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)

    double-clique sur combofix.exe et suis les instructions

    à la fin, il va produire un rapport C:\ComboFix.txt

    réactive ton parefeu, ton antivirus, la garde de ton antispyware

    copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

    Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

    Tu as un tutoriel complet ici :

    https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
    0
  9. eric77
     
    merci de bien vouloir me donné un coup de main voila le rapport
    ComboFix 11-02-23.05 - eric 23/02/2011 22:16:12.3.2 - x86
    Microsoft Windows XP Édition familiale 5.1.2600.2.1252.33.1036.18.2047.1756 [GMT -5:00]
    Lancé depuis: c:\documents and settings\eric\Mes documents\Téléchargements\ComboFix.exe
    AV: Spyware Doctor with AntiVirus *Enabled/Updated* {D3C23B96-C9DC-477F-8EF1-69AF17A6EFF6}
    .
    /wow section - STAGE 25
    Le chemin d'accès spécifié est introuvable.
    grep: temp2401: No such file or directory
    @DO était inattendu.

    ((((((((((((((((((((((((((((( Fichiers créés du 2011-01-24 au 2011-02-24 ))))))))))))))))))))))))))))))))))))
    .

    2011-02-22 13:36 . 2011-02-22 13:36 -------- d-----w- C:\NVIDIA
    2011-02-15 19:49 . 2011-02-15 19:49 -------- d-----r- C:\MSOCache

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2011-01-06 10:54 . 2011-02-22 04:15 2125 ----a-w- c:\windows\UDB.zip
    2010-11-29 16:38 . 2010-11-29 16:38 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
    2010-11-29 16:38 . 2010-11-29 16:38 69632 ----a-w- c:\windows\system32\QuickTime.qts
    .

    ((((((((((((((((((((((((((((( SnapShot@2011-02-23_18.09.10 )))))))))))))))))))))))))))))))))))))))))
    .
    - 2004-08-05 12:00 . 2008-04-14 02:33 50688 c:\windows\twain_32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 50688 c:\windows\twain_32.dll
    + 2011-02-24 03:18 . 2011-02-24 03:18 16384 c:\windows\temp\Perflib_Perfdata_70c.dat
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\taskman.exe
    - 2011-02-12 14:44 . 2004-08-05 12:00 15872 c:\windows\TASKMAN.EXE
    - 2011-02-12 14:03 . 2008-04-14 02:33 11776 c:\windows\system32\xolehlp.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 11776 c:\windows\system32\xolehlp.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 50176 c:\windows\system32\xmlprovi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 50176 c:\windows\system32\xmlprovi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 30720 c:\windows\system32\xcopy.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 30720 c:\windows\system32\xcopy.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 91648 c:\windows\system32\xactsrv.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 91648 c:\windows\system32\xactsrv.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 51712 c:\windows\system32\wzcsapi.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 36864 c:\windows\system32\wups.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18432 c:\windows\system32\wtsapi32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 18432 c:\windows\system32\wtsapi32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 51200 c:\windows\system32\wstdecod.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 51200 c:\windows\system32\wstdecod.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25088 c:\windows\system32\wsock32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 25088 c:\windows\system32\wsock32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 42496 c:\windows\system32\wsnmp32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 19968 c:\windows\system32\wshtcpip.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 11776 c:\windows\system32\WshRm.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 14336 c:\windows\system32\wship6.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14336 c:\windows\system32\wship6.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 65536 c:\windows\system32\wshext.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 28672 c:\windows\system32\wshcon.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 81408 c:\windows\system32\wscsvc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 13824 c:\windows\system32\wscntfy.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 13824 c:\windows\system32\wscntfy.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 19968 c:\windows\system32\ws2help.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 19968 c:\windows\system32\ws2help.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 82944 c:\windows\system32\ws2_32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 32768 c:\windows\system32\wpnpinst.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 32256 c:\windows\system32\wpabaln.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 32256 c:\windows\system32\wpabaln.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 20480 c:\windows\system32\wmpui.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20480 c:\windows\system32\wmpui.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20480 c:\windows\system32\wmpcore.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20480 c:\windows\system32\wmpcore.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20480 c:\windows\system32\wmpcd.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20480 c:\windows\system32\wmpcd.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 94208 c:\windows\system32\wlnotify.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 94208 c:\windows\system32\wlnotify.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 53760 c:\windows\system32\winsta.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 53760 c:\windows\system32\winsta.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 17408 c:\windows\system32\winshfhc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 17408 c:\windows\system32\winshfhc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 16896 c:\windows\system32\winrnr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16896 c:\windows\system32\winrnr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 32768 c:\windows\system32\winipsec.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 75776 c:\windows\system32\wiascr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 75776 c:\windows\system32\wiascr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 66560 c:\windows\system32\wextract.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 66560 c:\windows\system32\wextract.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 67584 c:\windows\system32\webclnt.dll
    - 2004-08-04 00:55 . 2008-04-14 02:34 23552 c:\windows\system32\wdmaud.drv
    + 2004-08-04 00:55 . 2004-08-05 12:00 23552 c:\windows\system32\wdmaud.drv
    + 2004-08-05 12:00 . 2004-08-05 12:00 49152 c:\windows\system32\wdigest.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 99328 c:\windows\system32\wbem\wmiutils.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 99328 c:\windows\system32\wbem\wmiutils.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 41472 c:\windows\system32\wbem\wmipsess.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 41472 c:\windows\system32\wbem\wmipsess.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 62976 c:\windows\system32\wbem\wmipjobj.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 62464 c:\windows\system32\wbem\wmipiprt.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 60928 c:\windows\system32\wbem\wmicookr.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 60928 c:\windows\system32\wbem\wmicookr.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 89088 c:\windows\system32\wbem\wmiaprpl.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 43520 c:\windows\system32\wbem\wbemsvc.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 43520 c:\windows\system32\wbem\wbemsvc.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 18944 c:\windows\system32\wbem\wbemprox.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 18944 c:\windows\system32\wbem\wbemprox.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 44544 c:\windows\system32\wbem\wbemperf.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 44544 c:\windows\system32\wbem\wbemperf.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 71680 c:\windows\system32\wbem\wbemcons.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 71680 c:\windows\system32\wbem\wbemcons.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 86528 c:\windows\system32\wbem\stdprov.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 86528 c:\windows\system32\wbem\stdprov.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 36864 c:\windows\system32\wbem\scrcons.exe
    - 2011-02-12 14:03 . 2008-04-14 02:33 47104 c:\windows\system32\wbem\ncprov.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 47104 c:\windows\system32\wbem\ncprov.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 16896 c:\windows\system32\wbem\mofcomp.exe
    - 2011-02-12 14:03 . 2008-04-14 02:34 16896 c:\windows\system32\wbem\mofcomp.exe
    - 2011-02-12 14:03 . 2008-04-14 02:33 24576 c:\windows\system32\wbem\krnlprov.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 24576 c:\windows\system32\wbem\krnlprov.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 22016 c:\windows\system32\wbem\evntrprv.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 17664 c:\windows\system32\watchdog.sys
    - 2004-08-05 12:00 . 2008-04-13 18:44 17664 c:\windows\system32\watchdog.sys
    - 2004-08-05 12:00 . 2008-04-14 02:33 15872 c:\windows\system32\w3ssl.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\w3ssl.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 18944 c:\windows\system32\version.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\version.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 13312 c:\windows\system32\verifier.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 51712 c:\windows\system32\vdmredir.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 51712 c:\windows\system32\vdmredir.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 26112 c:\windows\system32\vdmdbg.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 26112 c:\windows\system32\vdmdbg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 30749 c:\windows\system32\vbajet32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 30749 c:\windows\system32\vbajet32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 50176 c:\windows\system32\utilman.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 50176 c:\windows\system32\utilman.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 19968 c:\windows\system32\usmt\log.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 19968 c:\windows\system32\usmt\log.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25088 c:\windows\system32\userinit.exe
    + 2004-08-04 00:54 . 2004-08-05 12:00 77312 c:\windows\system32\usbui.dll
    - 2011-02-12 14:45 . 2008-04-14 02:33 77312 c:\windows\system32\usbui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16896 c:\windows\system32\usbmon.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 16896 c:\windows\system32\usbmon.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 37888 c:\windows\system32\url.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 18432 c:\windows\system32\ups.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 18432 c:\windows\system32\ups.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 16896 c:\windows\system32\upnpcont.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 16896 c:\windows\system32\upnpcont.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 13824 c:\windows\system32\uniplat.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 13824 c:\windows\system32\uniplat.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 78848 c:\windows\system32\unimdmat.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 78848 c:\windows\system32\unimdmat.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 36864 c:\windows\system32\umandlg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 36864 c:\windows\system32\umandlg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25600 c:\windows\system32\udhisapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 44032 c:\windows\system32\twext.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 12168 c:\windows\system32\tsddd.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 12168 c:\windows\system32\tsddd.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 94208 c:\windows\system32\tscfgwmi.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 94208 c:\windows\system32\tscfgwmi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 90624 c:\windows\system32\trkwks.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 11264 c:\windows\system32\tree.com
    - 2004-08-05 12:00 . 2008-04-14 02:34 13312 c:\windows\system32\tracert.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 13312 c:\windows\system32\tracert.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 77824 c:\windows\system32\telnet.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 47104 c:\windows\system32\tcpmonui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 47104 c:\windows\system32\tcpmonui.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 46592 c:\windows\system32\tcpmon.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 46592 c:\windows\system32\tcpmon.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 14848 c:\windows\system32\tcpmib.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14848 c:\windows\system32\tcpmib.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 57856 c:\windows\system32\synceng.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 57856 c:\windows\system32\synceng.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14336 c:\windows\system32\svchost.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 14336 c:\windows\system32\svchost.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 75776 c:\windows\system32\strmfilt.dll
    - 2004-08-05 12:00 . 2009-10-21 05:39 75776 c:\windows\system32\strmfilt.dll
    + 2011-02-12 14:44 . 2004-08-04 05:54 76800 c:\windows\system32\storprop.dll
    - 2011-02-12 14:44 . 2008-04-14 02:33 76800 c:\windows\system32\storprop.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 14848 c:\windows\system32\stimon.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 14848 c:\windows\system32\stimon.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 68096 c:\windows\system32\sti.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 54272 c:\windows\system32\stclient.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14336 c:\windows\system32\ssstars.scr
    - 2004-08-05 12:00 . 2008-04-14 02:34 14336 c:\windows\system32\ssstars.scr
    - 2004-08-05 12:00 . 2008-04-14 02:34 18944 c:\windows\system32\ssmyst.scr
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\ssmyst.scr
    - 2004-08-05 12:00 . 2008-04-14 02:34 47104 c:\windows\system32\ssmypics.scr
    + 2004-08-05 12:00 . 2004-08-05 12:00 47104 c:\windows\system32\ssmypics.scr
    + 2004-08-05 12:00 . 2004-08-05 12:00 20992 c:\windows\system32\ssmarque.scr
    - 2004-08-05 12:00 . 2008-04-14 02:34 20992 c:\windows\system32\ssmarque.scr
    - 2004-08-05 12:00 . 2008-04-14 02:33 71680 c:\windows\system32\ssdpsrv.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 71680 c:\windows\system32\ssdpsrv.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 34816 c:\windows\system32\ssdpapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 34816 c:\windows\system32\ssdpapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 19968 c:\windows\system32\ssbezier.scr
    - 2004-08-05 12:00 . 2008-04-14 02:34 19968 c:\windows\system32\ssbezier.scr
    + 2004-08-05 12:00 . 2004-08-05 12:00 96768 c:\windows\system32\srvsvc.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 67584 c:\windows\system32\srclient.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 67584 c:\windows\system32\srclient.dll
    + 2011-02-24 02:04 . 2004-08-05 12:00 24661 c:\windows\system32\spxcoins.dll
    - 2011-02-12 14:44 . 2004-08-05 12:00 24661 c:\windows\system32\spxcoins.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 57856 c:\windows\system32\spoolsv.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 74752 c:\windows\system32\spoolss.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 11776 c:\windows\system32\spnpinst.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 25088 c:\windows\system32\sort.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 18944 c:\windows\system32\snmpapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\snmpapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 50688 c:\windows\system32\smss.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 50688 c:\windows\system32\smss.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 93184 c:\windows\system32\smlogsvc.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 93184 c:\windows\system32\smlogsvc.exe
    - 2008-04-14 02:34 . 2008-04-14 02:34 73796 c:\windows\system32\slserv.exe
    + 2008-04-14 02:34 . 2004-08-04 05:55 73796 c:\windows\system32\slserv.exe
    + 2008-04-14 02:33 . 2004-08-04 05:54 73832 c:\windows\system32\slcoinst.dll
    - 2008-04-14 02:33 . 2008-04-14 02:33 73832 c:\windows\system32\slcoinst.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 98304 c:\windows\system32\slbiop.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 98304 c:\windows\system32\slbiop.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25600 c:\windows\system32\slayerxp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 25600 c:\windows\system32\slayerxp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 26112 c:\windows\system32\skeys.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 26112 c:\windows\system32\skeys.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 71168 c:\windows\system32\sigverif.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 71168 c:\windows\system32\sigverif.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 13824 c:\windows\system32\sigtab.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 13824 c:\windows\system32\sigtab.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 20480 c:\windows\system32\shutdown.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 20480 c:\windows\system32\shutdown.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 28160 c:\windows\system32\shscrap.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 28160 c:\windows\system32\shscrap.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 78848 c:\windows\system32\shrpubw.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 78848 c:\windows\system32\shrpubw.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 42496 c:\windows\system32\shmgrate.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 65536 c:\windows\system32\shimeng.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 68096 c:\windows\system32\shgina.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 68096 c:\windows\system32\shgina.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 25088 c:\windows\system32\shfolder.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25088 c:\windows\system32\shfolder.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 22016 c:\windows\system32\Setup\startoc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 17408 c:\windows\system32\Setup\ocmsn.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 17408 c:\windows\system32\Setup\ocmsn.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\Setup\ocgen.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 15872 c:\windows\system32\Setup\ocgen.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 63488 c:\windows\system32\Setup\ntoc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 63488 c:\windows\system32\Setup\ntoc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 78336 c:\windows\system32\Setup\netoc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 78336 c:\windows\system32\Setup\netoc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\Setup\msgrocm.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 82432 c:\windows\system32\Setup\msdtcstp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 32828 c:\windows\system32\Setup\fp40ext.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 32828 c:\windows\system32\Setup\fp40ext.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 23040 c:\windows\system32\setup.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 23040 c:\windows\system32\setup.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 32768 c:\windows\system32\sethc.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 32768 c:\windows\system32\sethc.exe
    + 2011-02-12 14:02 . 2004-08-05 12:00 56320 c:\windows\system32\servdeps.dll
    - 2011-02-12 14:02 . 2008-04-14 02:33 56320 c:\windows\system32\servdeps.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 38912 c:\windows\system32\sens.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 55296 c:\windows\system32\sendmail.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 55296 c:\windows\system32\sendmail.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 29696 c:\windows\system32\sendcmsg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 29696 c:\windows\system32\sendcmsg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 55808 c:\windows\system32\secur32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\seclogon.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 18944 c:\windows\system32\seclogon.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 29184 c:\windows\system32\sdhcinst.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 29184 c:\windows\system32\sdhcinst.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 78848 c:\windows\system32\sdbinst.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 78848 c:\windows\system32\sdbinst.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 22016 c:\windows\system32\sclgntfy.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 22016 c:\windows\system32\sclgntfy.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 71168 c:\windows\system32\scarddlg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 71168 c:\windows\system32\scarddlg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 31232 c:\windows\system32\sc.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 13824 c:\windows\system32\savedump.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 13824 c:\windows\system32\savedump.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 64000 c:\windows\system32\samlib.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 64000 c:\windows\system32\samlib.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 45568 c:\windows\system32\safrslv.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 45568 c:\windows\system32\safrslv.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 29696 c:\windows\system32\safrdm.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 29696 c:\windows\system32\safrdm.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 43520 c:\windows\system32\safrcdlg.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 43520 c:\windows\system32\safrcdlg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14336 c:\windows\system32\runonce.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 14336 c:\windows\system32\runonce.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 33792 c:\windows\system32\rundll32.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 33792 c:\windows\system32\rundll32.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 44032 c:\windows\system32\rtutils.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 44032 c:\windows\system32\rtutils.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 31744 c:\windows\system32\rtipxmib.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 31744 c:\windows\system32\rtipxmib.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 78336 c:\windows\system32\rtcshare.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 78336 c:\windows\system32\rtcshare.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 90112 c:\windows\system32\rsvpsp.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\rsmps.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 18944 c:\windows\system32\rsmps.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 40960 c:\windows\system32\rshx32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 40960 c:\windows\system32\rshx32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 15872 c:\windows\system32\rsh.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\rsh.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 14848 c:\windows\system32\rexec.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 14848 c:\windows\system32\rexec.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 58880 c:\windows\system32\resutils.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 58880 c:\windows\system32\resutils.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 61952 c:\windows\system32\remotepg.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 61952 c:\windows\system32\remotepg.dll
    + 2011-02-24 02:10 . 2011-02-16 01:09 67568 c:\windows\system32\ReinstallBackups\0010\DriverFiles\usbhub20.sys
    + 2011-02-24 02:10 . 2004-08-05 12:00 26624 c:\windows\system32\ReinstallBackups\0010\DriverFiles\usbehci.sys
    + 2004-08-05 12:00 . 2004-08-05 12:00 12288 c:\windows\system32\regsvr32.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 12288 c:\windows\system32\regsvr32.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 59904 c:\windows\system32\regsvc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 59904 c:\windows\system32\regsvc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 49664 c:\windows\system32\regapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 49664 c:\windows\system32\regapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 53248 c:\windows\system32\reg.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 53248 c:\windows\system32\reg.exe
    - 2011-02-12 14:03 . 2008-04-14 02:34 67072 c:\windows\system32\rdshost.exe
    + 2011-02-12 14:03 . 2004-08-05 12:00 67072 c:\windows\system32\rdshost.exe
    + 2011-02-12 14:03 . 2004-08-05 12:00 13824 c:\windows\system32\rdsaddin.exe
    - 2011-02-12 14:03 . 2008-04-14 02:34 13824 c:\windows\system32\rdsaddin.exe
    - 2011-02-12 14:03 . 2008-04-14 02:34 87176 c:\windows\system32\rdpwsx.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 87176 c:\windows\system32\rdpwsx.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 19968 c:\windows\system32\rdpsnd.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 19968 c:\windows\system32\rdpsnd.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 92168 c:\windows\system32\rdpdd.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 62464 c:\windows\system32\rdpclip.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 23040 c:\windows\system32\rcp.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 23040 c:\windows\system32\rcp.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 35840 c:\windows\system32\rcimlby.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 35840 c:\windows\system32\rcimlby.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 58880 c:\windows\system32\rastapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16896 c:\windows\system32\rassapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 57344 c:\windows\system32\rasphone.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 57344 c:\windows\system32\rasphone.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 61440 c:\windows\system32\rasman.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 61440 c:\windows\system32\rasman.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 69632 c:\windows\system32\raschap.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 89088 c:\windows\system32\rasauto.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 43520 c:\windows\system32\racpldlg.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 43520 c:\windows\system32\racpldlg.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 20992 c:\windows\system32\qprocess.exe
    - 2011-02-12 14:03 . 2008-04-14 02:34 20992 c:\windows\system32\qprocess.exe
    - 2011-02-12 14:09 . 2008-04-14 02:33 18944 c:\windows\system32\qmgrprxy.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 18944 c:\windows\system32\qmgrprxy.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 34304 c:\windows\system32\pstorsvc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 34304 c:\windows\system32\pstorsvc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 43520 c:\windows\system32\pstorec.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 43520 c:\windows\system32\pstorec.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 98816 c:\windows\system32\psbase.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 98816 c:\windows\system32\psbase.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 23040 c:\windows\system32\psapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 23040 c:\windows\system32\psapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 50688 c:\windows\system32\proquota.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 50688 c:\windows\system32\proquota.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 27648 c:\windows\system32\profmap.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 27648 c:\windows\system32\profmap.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 17408 c:\windows\system32\powrprof.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 17408 c:\windows\system32\powrprof.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 49152 c:\windows\system32\powercfg.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 49152 c:\windows\system32\powercfg.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 48640 c:\windows\system32\pnrpnsp.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 39424 c:\windows\system32\pngfilt.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 15360 c:\windows\system32\pjlmon.dll
    - 2004-08-04 00:54 . 2008-04-14 02:33 15360 c:\windows\system32\pjlmon.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 19456 c:\windows\system32\ping.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 19456 c:\windows\system32\ping.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 24064 c:\windows\system32\pidgen.dll
    - 2004-08-05 12:00 . 2008-04-13 18:35 24064 c:\windows\system32\pidgen.dll
    - 2004-08-04 00:54 . 2008-04-14 02:33 35328 c:\windows\system32\pid.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 35328 c:\windows\system32\pid.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 35840 c:\windows\system32\perfproc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 35840 c:\windows\system32\perfproc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 26624 c:\windows\system32\perfos.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 26624 c:\windows\system32\perfos.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 17408 c:\windows\system32\perfnet.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 15872 c:\windows\system32\perfmon.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\perfmon.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 27136 c:\windows\system32\perfdisk.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 27136 c:\windows\system32\perfdisk.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 42496 c:\windows\system32\perfctrs.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 42496 c:\windows\system32\perfctrs.dll
    - 2004-08-05 12:00 . 2011-02-12 15:34 48616 c:\windows\system32\perfc00C.dat
    + 2004-08-05 12:00 . 2011-02-24 03:02 48616 c:\windows\system32\perfc00C.dat
    - 2004-08-05 12:00 . 2011-02-12 15:34 39992 c:\windows\system32\perfc009.dat
    + 2004-08-05 12:00 . 2011-02-24 03:02 39992 c:\windows\system32\perfc009.dat
    + 2004-08-05 12:00 . 2004-08-05 12:00 65024 c:\windows\system32\pautoenr.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 59904 c:\windows\system32\packager.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 59904 c:\windows\system32\packager.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 88064 c:\windows\system32\p2pnetsh.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 86016 c:\windows\system32\p2pgasvc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 68096 c:\windows\system32\osuninst.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 68096 c:\windows\system32\osuninst.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 51712 c:\windows\system32\oobe\oobebaln.exe
    - 2011-02-12 14:09 . 2008-04-14 02:34 51712 c:\windows\system32\oobe\oobebaln.exe
    + 2011-02-12 14:10 . 2004-08-05 12:00 28160 c:\windows\system32\oobe\msoobe.exe
    + 2011-02-12 14:09 . 2004-08-05 12:00 18944 c:\windows\system32\oobe\msobweb.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 30720 c:\windows\system32\oobe\msobshel.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 30720 c:\windows\system32\oobe\msobshel.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 16384 c:\windows\system32\oobe\msobdl.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 16384 c:\windows\system32\oobe\msobdl.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 83456 c:\windows\system32\olepro32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 34304 c:\windows\system32\olecnv32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 69120 c:\windows\system32\olecli32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20511 c:\windows\system32\odtext32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20511 c:\windows\system32\odtext32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20510 c:\windows\system32\odpdx32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20510 c:\windows\system32\odpdx32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20510 c:\windows\system32\odfox32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20510 c:\windows\system32\odfox32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20510 c:\windows\system32\odexl32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20510 c:\windows\system32\odexl32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20511 c:\windows\system32\oddbse32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20511 c:\windows\system32\oddbse32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 12288 c:\windows\system32\odbcp32r.dll
    - 2004-08-05 12:00 . 2008-04-13 17:26 12288 c:\windows\system32\odbcp32r.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 61712 c:\windows\system32\odbcji32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 98304 c:\windows\system32\odbcint.dll
    - 2004-08-05 12:00 . 2007-03-28 12:56 98304 c:\windows\system32\odbcint.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 65536 c:\windows\system32\odbccu32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 65536 c:\windows\system32\odbccu32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 65536 c:\windows\system32\odbccr32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 65536 c:\windows\system32\odbccr32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 69632 c:\windows\system32\odbcconf.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 69632 c:\windows\system32\odbcconf.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 24576 c:\windows\system32\odbcbcp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 24576 c:\windows\system32\odbcbcp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 32768 c:\windows\system32\odbcad32.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 32768 c:\windows\system32\odbcad32.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 16384 c:\windows\system32\odbc32gt.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16384 c:\windows\system32\odbc32gt.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 62976 c:\windows\system32\ocmanage.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 97280 c:\windows\system32\occache.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 13312 c:\windows\system32\ntvdmd.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 91648 c:\windows\system32\ntprint.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 91648 c:\windows\system32\ntprint.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 40960 c:\windows\system32\ntmsapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 40960 c:\windows\system32\ntmsapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 43520 c:\windows\system32\ntlanman.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 67072 c:\windows\system32\ntdsapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 67072 c:\windows\system32\ntdsapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 79360 c:\windows\system32\nslookup.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 79360 c:\windows\system32\nslookup.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 55296 c:\windows\system32\npptools.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 55296 c:\windows\system32\npptools.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 15360 c:\windows\system32\npp\nppagent.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 15360 c:\windows\system32\npp\nppagent.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 57344 c:\windows\system32\npp\ndisnpp.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 57344 c:\windows\system32\npp\ndisnpp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 70656 c:\windows\system32\notepad.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 70656 c:\windows\system32\notepad.exe
    - 2011-02-12 14:09 . 2008-04-14 02:33 28672 c:\windows\system32\nmmkcert.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 28672 c:\windows\system32\nmmkcert.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 83456 c:\windows\system32\netui0.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 83456 c:\windows\system32\netui0.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 37888 c:\windows\system32\netstat.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 37888 c:\windows\system32\netstat.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 88576 c:\windows\system32\netsh.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 88576 c:\windows\system32\netsh.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 12288 c:\windows\system32\netrap.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 42496 c:\windows\system32\net.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 42496 c:\windows\system32\net.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 19456 c:\windows\system32\nddenb32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 19456 c:\windows\system32\nddenb32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 18432 c:\windows\system32\nddeapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18432 c:\windows\system32\nddeapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 36352 c:\windows\system32\ncobjapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 36352 c:\windows\system32\ncobjapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 55296 c:\windows\system32\narrator.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 55296 c:\windows\system32\narrator.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 91648 c:\windows\system32\mydocs.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 91648 c:\windows\system32\mydocs.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 90112 c:\windows\system32\mtxoci.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 25088 c:\windows\system32\mtxlegih.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 20480 c:\windows\system32\mtxdm.dll
    - 2004-08-05 12:00 . 2008-06-12 14:22 66560 c:\windows\system32\mtxclu.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 66560 c:\windows\system32\mtxclu.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 17408 c:\windows\system32\msyuv.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 72704 c:\windows\system32\msw3prt.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 72704 c:\windows\system32\msw3prt.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25600 c:\windows\system32\msvidc32.dll
    - 2004-08-05 12:00 . 2008-04-13 18:30 61440 c:\windows\system32\msvcrt40.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 61440 c:\windows\system32\msvcrt40.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 54784 c:\windows\system32\msvcirt.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 12288 c:\windows\system32\mstinit.exe
    - 2011-02-12 14:09 . 2008-04-14 02:34 12288 c:\windows\system32\mstinit.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 11264 c:\windows\system32\msrle32.dll
    - 2004-08-05 12:00 . 2009-11-27 16:08 11264 c:\windows\system32\msrle32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 48128 c:\windows\system32\msprivs.dll
    - 2004-08-05 12:00 . 2008-04-13 16:23 48128 c:\windows\system32\msprivs.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 30208 c:\windows\system32\mspatcha.dll
    - 2004-08-05 12:00 . 2007-03-28 12:56 24576 c:\windows\system32\msorc32r.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 24576 c:\windows\system32\msorc32r.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 25600 c:\windows\system32\mslbui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 25600 c:\windows\system32\mslbui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 53279 c:\windows\system32\msjter40.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 44032 c:\windows\system32\msisip.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 40960 c:\windows\system32\msiregmv.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 77312 c:\windows\system32\msiexec.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 51712 c:\windows\system32\msident.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 51712 c:\windows\system32\msident.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 57344 c:\windows\system32\mshtmler.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 29184 c:\windows\system32\mshta.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 33792 c:\windows\system32\msgsvc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 33792 c:\windows\system32\msgsvc.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 58880 c:\windows\system32\msdtclog.dll
    - 2011-02-12 14:03 . 2008-06-12 14:22 58880 c:\windows\system32\msdtclog.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 14336 c:\windows\system32\msdmo.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14336 c:\windows\system32\msdmo.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 69120 c:\windows\system32\MSCTFP.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 36864 c:\windows\system32\mscpxl32.dLL
    - 2004-08-05 12:00 . 2008-04-14 02:33 36864 c:\windows\system32\mscpxl32.dll
    - 2004-08-05 12:00 . 2008-04-13 17:26 12288 c:\windows\system32\mscpx32r.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 12288 c:\windows\system32\mscpx32r.dLL
    + 2011-02-12 14:09 . 2004-08-05 12:00 69632 c:\windows\system32\msconf.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 69632 c:\windows\system32\msconf.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 73728 c:\windows\system32\mscms.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 57344 c:\windows\system32\msasn1.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 86016 c:\windows\system32\msapsspc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 86016 c:\windows\system32\msapsspc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 72192 c:\windows\system32\msacm32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 72192 c:\windows\system32\msacm32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 49152 c:\windows\system32\mprdim.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 87040 c:\windows\system32\mprapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 87040 c:\windows\system32\mprapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 59904 c:\windows\system32\mpr.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 59904 c:\windows\system32\mpr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\more.com
    - 2011-02-12 14:09 . 2008-04-14 02:34 32768 c:\windows\system32\mnmsrvc.exe
    + 2011-02-12 14:09 . 2004-08-05 12:00 32768 c:\windows\system32\mnmsrvc.exe
    + 2011-02-12 14:09 . 2004-08-05 12:00 34560 c:\windows\system32\mnmdd.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 34560 c:\windows\system32\mnmdd.dll
    - 2011-02-12 14:02 . 2008-04-14 02:33 17920 c:\windows\system32\mmfutil.dll
    + 2011-02-12 14:02 . 2004-08-05 12:00 17920 c:\windows\system32\mmfutil.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 50688 c:\windows\system32\mmcshext.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 79872 c:\windows\system32\mmcbase.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\mimefilt.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 60928 c:\windows\system32\miglibnt.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 60928 c:\windows\system32\miglibnt.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\midimap.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 18944 c:\windows\system32\midimap.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14848 c:\windows\system32\mgmtapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 14848 c:\windows\system32\mgmtapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 22528 c:\windows\system32\mfcsubs.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 22528 c:\windows\system32\mfcsubs.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 39936 c:\windows\system32\mf3216.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 23552 c:\windows\system32\mciwave.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 23552 c:\windows\system32\mciwave.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 23040 c:\windows\system32\mciseq.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 23040 c:\windows\system32\mciseq.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 35328 c:\windows\system32\mciqtz32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 35328 c:\windows\system32\mciqtz32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 85504 c:\windows\system32\mciavi32.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 85504 c:\windows\system32\mciavi32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14848 c:\windows\system32\mcastmib.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 85504 c:\windows\system32\makecab.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 73216 c:\windows\system32\magnify.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 73216 c:\windows\system32\magnify.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 13312 c:\windows\system32\lsass.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 13312 c:\windows\system32\lsass.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 10240 c:\windows\system32\lprhelp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 10240 c:\windows\system32\lprhelp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 22016 c:\windows\system32\lpk.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 22016 c:\windows\system32\lpk.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 61952 c:\windows\system32\logman.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 61952 c:\windows\system32\logman.exe
    + 2004-08-05 12:00 . 2004-08-11 00:45 96768 c:\windows\system32\logagent.exe
    - 2004-08-05 12:00 . 2008-06-10 08:17 96768 c:\windows\system32\logagent.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 75264 c:\windows\system32\locator.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 75264 c:\windows\system32\locator.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 11776 c:\windows\system32\localui.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 11776 c:\windows\system32\localui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 13824 c:\windows\system32\lmhsvc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 13824 c:\windows\system32\lmhsvc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 18944 c:\windows\system32\linkinfo.dll
    - 2011-02-12 14:02 . 2008-04-14 02:33 58880 c:\windows\system32\licwmi.dll
    + 2011-02-12 14:02 . 2004-08-05 12:00 58880 c:\windows\system32\licwmi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 22528 c:\windows\system32\licmgr10.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 15872 c:\windows\system32\jsproxy.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 42496 c:\windows\system32\jgpl400.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 47616 c:\windows\system32\iyuv_32.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 54784 c:\windows\system32\ixsso.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 54784 c:\windows\system32\ixsso.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 32768 c:\windows\system32\isrdbg32.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 32768 c:\windows\system32\isrdbg32.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 86016 c:\windows\system32\isign32.dll
    - 2011-02-12 14:09 . 2010-11-18 18:12 86016 c:\windows\system32\isign32.dll
    - 2011-02-12 14:44 . 2004-08-05 12:00 13312 c:\windows\system32\irclass.dll
    + 2011-02-24 02:04 . 2004-08-05 12:00 13312 c:\windows\system32\irclass.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20992 c:\windows\system32\ipxwan.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 24576 c:\windows\system32\ipxroute.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 24576 c:\windows\system32\ipxroute.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 59904 c:\windows\system32\ipv6mon.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 59904 c:\windows\system32\ipv6mon.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 53760 c:\windows\system32\ipv6.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 53760 c:\windows\system32\ipv6.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 95744 c:\windows\system32\iphlpapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 95744 c:\windows\system32\iphlpapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 58368 c:\windows\system32\ipconfig.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 58368 c:\windows\system32\ipconfig.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 96768 c:\windows\system32\inseng.dll
    - 2011-02-12 14:09 . 2008-04-14 02:02 50688 c:\windows\system32\inetres.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 50688 c:\windows\system32\inetres.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16384 c:\windows\system32\inetppui.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 16384 c:\windows\system32\inetppui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 75264 c:\windows\system32\inetpp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 75264 c:\windows\system32\inetpp.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 33280 c:\windows\system32\inetmib1.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 35840 c:\windows\system32\imgutil.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 36921 c:\windows\system32\imeshare.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 36921 c:\windows\system32\imeshare.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 81920 c:\windows\system32\ils.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 81920 c:\windows\system32\ils.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 63488 c:\windows\system32\iesetup.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 49152 c:\windows\system32\iernonce.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 81920 c:\windows\system32\ieencode.dll
    - 2008-04-14 02:33 . 2008-04-14 02:33 81920 c:\windows\system32\ieencode.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 34304 c:\windows\system32\ie4uinit.exe
    - 2011-02-12 14:09 . 2008-04-14 02:33 65536 c:\windows\system32\icwphbk.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 65536 c:\windows\system32\icwphbk.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 73728 c:\windows\system32\icwdial.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 73728 c:\windows\system32\icwdial.dll
    - 2004-08-05 12:00 . 2010-06-17 14:03 80384 c:\windows\system32\iccvid.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 80384 c:\windows\system32\iccvid.dll
    + 2011-02-12 14:03 . 2004-08-05 12:00 11264 c:\windows\system32\icaapi.dll
    - 2011-02-12 14:03 . 2008-04-14 02:33 11264 c:\windows\system32\icaapi.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 43008 c:\windows\system32\htui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 43008 c:\windows\system32\htui.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 24576 c:\windows\system32\httpapi.dll
    - 2008-04-14 02:33 . 2008-04-14 02:33 32285 c:\windows\system32\hsfcisp2.dll
    + 2008-04-14 02:33 . 2004-08-04 05:54 32285 c:\windows\system32\hsfcisp2.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 77850 c:\windows\system32\hlink.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 21504 c:\windows\system32\hidserv.dll
    - 2011-02-12 14:48 . 2008-04-14 02:33 21504 c:\windows\system32\hidserv.dll
    - 2004-08-04 00:54 . 2008-04-14 02:33 20992 c:\windows\system32\hid.dll
    + 2004-08-04 00:54 . 2004-08-05 12:00 20992 c:\windows\system32\hid.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 38912 c:\windows\system32\hhsetup.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16384 c:\windows\system32\help.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 39424 c:\windows\system32\grpconv.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 39424 c:\windows\system32\grpconv.exe
    - 2004-08-05 12:00 . 2008-04-14 01:59 10240 c:\windows\system32\gpkrsrc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 10240 c:\windows\system32\gpkrsrc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 60416 c:\windows\system32\fwcfg.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 60416 c:\windows\system32\fwcfg.dll
    - 2004-08-05 12:00 . 2008-04-14 02:34 46080 c:\windows\system32\ftp.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 46080 c:\windows\system32\ftp.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 25600 c:\windows\system32\format.com
    + 2004-08-05 12:00 . 2004-08-05 12:00 21504 c:\windows\system32\fontview.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 21504 c:\windows\system32\fontview.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 79360 c:\windows\system32\fontsub.dll
    + 2011-02-12 14:09 . 2004-08-05 12:00 22528 c:\windows\system32\fltMc.exe
    + 2011-02-12 14:09 . 2004-08-05 12:00 16896 c:\windows\system32\fltlib.dll
    - 2011-02-12 14:09 . 2008-04-14 02:33 16896 c:\windows\system32\fltlib.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 88064 c:\windows\system32\fldrclnr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 88064 c:\windows\system32\fldrclnr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 29184 c:\windows\system32\findstr.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 29184 c:\windows\system32\findstr.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 21504 c:\windows\system32\feclient.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 21504 c:\windows\system32\feclient.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 80896 c:\windows\system32\faultrep.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 80896 c:\windows\system32\faultrep.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 45568 c:\windows\system32\extrac32.exe
    - 2004-08-05 12:00 . 2008-04-14 02:33 55808 c:\windows\system32\extmgr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 55808 c:\windows\system32\extmgr.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 55808 c:\windows\system32\eventlog.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 23040 c:\windows\system32\ersvc.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 23040 c:\windows\system32\ersvc.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 20480 c:\windows\system32\encapi.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 20480 c:\windows\system32\encapi.dll
    + 2011-02-12 14:09 . 2011-02-24 02:52 23032 c:\windows\system32\emptyregdb.dat
    - 2004-08-05 12:00 . 2008-04-14 02:34 17920 c:\windows\system32\dvdupgrd.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 17920 c:\windows\system32\dvdupgrd.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 10752 c:\windows\system32\dumprep.exe
    - 2004-08-05 12:00 . 2008-04-14 02:34 10752 c:\windows\system32\dumprep.exe
    + 2004-08-05 12:00 . 2004-08-05 12:00 19456 c:\windows\system32\dswave.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 19456 c:\windows\system32\dswave.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 52736 c:\windows\system32\dssec.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 52736 c:\windows\system32\dssec.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 93696 c:\windows\system32\dskquota.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 93696 c:\windows\system32\dskquota.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 72192 c:\windows\system32\dsdmoprp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 72192 c:\windows\system32\dsdmoprp.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 16384 c:\windows\system32\ds32gt.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 16384 c:\windows\system32\ds32gt.dll
    - 2004-08-05 12:00 . 2008-04-14 02:33 14336 c:\windows\system32\drprov.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 14336 c:\windows\system32\drprov.dll
    + 2004-08-05 12:00 . 2004-08-05 12:00 87040 c:\windows\system32\drmstor.dll
    + 2004-08-03 23:15 . 2004-08-05 12:00 82944 c:\windows\system32\drivers\wdmaud.sys
    - 2004-08-05 12:00 . 2008-04-13 18:57 34560 c:\windows\system32\drivers\wanarp.sys
    + 2004-08-05 12:00 . 2004-08-05 12:00 34560 c:\windows\system32\drivers\wanarp.sys
    + 2008-04-13 18:43 . 2004-08-04 04:04 13568 c:\windows\system32\drivers\wacompen.sys
    - 2004-08-05 12:00 . 2008-04-14 01:56 53376 c:\windows\system32\drivers\volsnap.sys
    + 2004-08-05 12:00 . 2004-08-05 12:00 53376 c:\windows\system32\drivers\volsnap.sys
    + 2004-08-05 12:00 . 2004-08-05 12:00 79744 c:\windows\system32\drivers\videoprt.sys
    - 2008-04-13 18:36 . 2008-04-13 18:36 42240 c:\windows\system32\drivers\viaagp.sys
    + 2008-04-13 18:36 . 2004-08-04 04:07 42240 c:\windows\system32\drivers\viaagp.sys
    - 2004-08-05 12:00 . 2008-04-13 18:44 20992 c:\windows\system32\drivers\vga.sys
    + 2004-08-05 12:00 . 2004-08-05 12:00 20992 c:\windows\system32\drivers\vga.sys
    - 2008-04-14 02:33 . 2008-04-14 02:33 11325 c:\windows\system32\drivers\v
    0
  10. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    il manque la fin du rapport

    sinon comment va le pc?
    0
  11. eric77
     
    pas bien mon pc a planter avec le premier scan avec combofix le message ntldr manquant mon pc ne voulait plus demarrer il a fallu que je répart windows pour redemarer et j ai relancer combofix qui ma detecter des rootkits et ma demander de redemarer se que j ai fais et refait voir si il etais pour detecter encor des rootkits il ma encor detecter des rootkits je ne sais plus quoi faire et toi a tu un idée
    0
  12. Tigzy Messages postés 7983 Statut Contributeur sécurité 582
     
    Salut

    il est là le virus :)

    AV: Spyware Doctor with AntiVirus *Enabled/Updated* {D3C23B96-C9DC-477F-8EF1-69AF17A6EFF6}
    0
  13. eric77
     
    a oui je vien de suprimer spyware doctor comment faire pour suprimer le virus merci pour ton aide
    0
  14. Tigzy Messages postés 7983 Statut Contributeur sécurité 582
     
    Je vais prendre la suite en attendant qu'il revienne.

    Télécharger et dézipper sur le bureau TDSSKiller

    = Lancer TDSSKiller en faisant un double clique
    = Une fois le scan fini, un rapport s'ouvre
    = Copier coller le contenu dans la prochaine réponse
    = Le rapport se trouve également dans C:\TDSSKiller.XXXXXX_log.txt.( X correspondant a la version, la date et l'heure )

    0
  15. eric77
     
    voici le rapport
    2011/02/24 08:37:36.0812 3420 TDSS rootkit removing tool 2.4.18.0 Feb 21 2011 11:08:08
    2011/02/24 08:37:36.0968 3420 ================================================================================
    2011/02/24 08:37:36.0968 3420 SystemInfo:
    2011/02/24 08:37:36.0968 3420
    2011/02/24 08:37:36.0968 3420 OS Version: 5.1.2600 ServicePack: 2.0
    2011/02/24 08:37:36.0968 3420 Product type: Workstation
    2011/02/24 08:37:36.0968 3420 ComputerName: ERIC-1608369C36
    2011/02/24 08:37:36.0968 3420 UserName: eric
    2011/02/24 08:37:36.0968 3420 Windows directory: C:\WINDOWS
    2011/02/24 08:37:36.0968 3420 System windows directory: C:\WINDOWS
    2011/02/24 08:37:36.0968 3420 Processor architecture: Intel x86
    2011/02/24 08:37:36.0968 3420 Number of processors: 2
    2011/02/24 08:37:36.0968 3420 Page size: 0x1000
    2011/02/24 08:37:36.0968 3420 Boot type: Normal boot
    2011/02/24 08:37:36.0968 3420 ================================================================================
    2011/02/24 08:37:37.0187 3420 Initialize success
    2011/02/24 08:37:41.0906 3448 ================================================================================
    2011/02/24 08:37:41.0906 3448 Scan started
    2011/02/24 08:37:41.0906 3448 Mode: Manual;
    2011/02/24 08:37:41.0906 3448 ================================================================================
    2011/02/24 08:37:43.0234 3448 ACPI (0bd94fbfc14ea3606cd6ca4c0255baa3) C:\WINDOWS\system32\DRIVERS\ACPI.sys
    2011/02/24 08:37:43.0281 3448 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
    2011/02/24 08:37:43.0406 3448 aec (841f385c6cfaf66b58fbd898722bb4f0) C:\WINDOWS\system32\drivers\aec.sys
    2011/02/24 08:37:43.0453 3448 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
    2011/02/24 08:37:43.0718 3448 ALCXWDM (dd8520280304b6145a6be31008748c7c) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
    2011/02/24 08:37:43.0890 3448 AmdK8 (31ffde1be912d7cbd3f189feb61f86b6) C:\WINDOWS\system32\DRIVERS\AmdK8.sys
    2011/02/24 08:37:44.0109 3448 ASInsHelp (33c171de483ee145f31234d93b078919) C:\WINDOWS\system32\drivers\AsInsHelp32.sys
    2011/02/24 08:37:44.0140 3448 AsIO (c959989e2ce8da9bde8cafddba84badf) C:\WINDOWS\system32\drivers\AsIO.sys
    2011/02/24 08:37:44.0187 3448 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    2011/02/24 08:37:44.0218 3448 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
    2011/02/24 08:37:44.0328 3448 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    2011/02/24 08:37:44.0359 3448 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
    2011/02/24 08:37:44.0437 3448 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
    2011/02/24 08:37:44.0656 3448 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
    2011/02/24 08:37:44.0734 3448 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
    2011/02/24 08:37:44.0781 3448 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
    2011/02/24 08:37:44.0828 3448 Cdrom (af9c19b3100fe010496b1a27181fbf72) C:\WINDOWS\system32\DRIVERS\cdrom.sys
    2011/02/24 08:37:44.0937 3448 CLEDX (b53f9635457b56dcffef750e18aec6cb) C:\WINDOWS\system32\DRIVERS\cledx.sys
    2011/02/24 08:37:45.0187 3448 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
    2011/02/24 08:37:45.0296 3448 dmboot (e2d3b7620310fe56685f9b15a6b404b3) C:\WINDOWS\system32\drivers\dmboot.sys
    2011/02/24 08:37:45.0390 3448 dmio (c77f5c20aa70197a69aa84baa9de43c8) C:\WINDOWS\system32\drivers\dmio.sys
    2011/02/24 08:37:45.0437 3448 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
    2011/02/24 08:37:45.0515 3448 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
    2011/02/24 08:37:45.0687 3448 driverhardwarev2 (a694d8db6d360a3bbb0bd1517f1c1aee) C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
    2011/02/24 08:37:45.0718 3448 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
    2011/02/24 08:37:45.0812 3448 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
    2011/02/24 08:37:45.0859 3448 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\DRIVERS\fdc.sys
    2011/02/24 08:37:45.0921 3448 FET5X86V (92cbce0913661ff966f9fb696a1775a5) C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys
    2011/02/24 08:37:45.0984 3448 Fips (8b121ff880683607ab2aef0340721718) C:\WINDOWS\system32\drivers\Fips.sys
    2011/02/24 08:37:46.0015 3448 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    2011/02/24 08:37:46.0062 3448 FltMgr (157754f0df355a9e0a6f54721914f9c6) C:\WINDOWS\system32\drivers\fltmgr.sys
    2011/02/24 08:37:46.0093 3448 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
    2011/02/24 08:37:46.0140 3448 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    2011/02/24 08:37:46.0187 3448 gagp30kx (4216cd545e5c30807b560c5dcaa812e6) C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
    2011/02/24 08:37:46.0218 3448 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
    2011/02/24 08:37:46.0296 3448 hidusb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
    2011/02/24 08:37:46.0390 3448 HTTP (c19b522a9ae0bbc3293397f3055e80a1) C:\WINDOWS\system32\Drivers\HTTP.sys
    2011/02/24 08:37:46.0515 3448 i8042prt (d1efcbd693b5ba21314d06368c471070) C:\WINDOWS\system32\drivers\i8042prt.sys
    2011/02/24 08:37:46.0578 3448 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
    2011/02/24 08:37:46.0718 3448 Ip6Fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\drivers\ip6fw.sys
    2011/02/24 08:37:46.0765 3448 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    2011/02/24 08:37:46.0812 3448 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
    2011/02/24 08:37:46.0859 3448 IpNat (b5a8e215ac29d24d60b4d1250ef05ace) C:\WINDOWS\system32\DRIVERS\ipnat.sys
    2011/02/24 08:37:46.0890 3448 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
    2011/02/24 08:37:46.0937 3448 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
    2011/02/24 08:37:46.0984 3448 isapnp (54632f1a7de61dc3615d756f2a90fa72) C:\WINDOWS\system32\DRIVERS\isapnp.sys
    2011/02/24 08:37:47.0015 3448 Kbdclass (e798705e8dc7fab596ef6bfdf167e007) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    2011/02/24 08:37:47.0046 3448 kbdhid (62dd5eefcec4ef4163f1168d4262a9e4) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
    2011/02/24 08:37:47.0093 3448 kmixer (d93cad07c5683db066b0b2d2d3790ead) C:\WINDOWS\system32\drivers\kmixer.sys
    2011/02/24 08:37:47.0140 3448 KSecDD (674d3e5a593475915dc6643317192403) C:\WINDOWS\system32\drivers\KSecDD.sys
    2011/02/24 08:37:47.0187 3448 L6PODHD4 (0e2e3cabb4723b78441e58e5899d82d9) C:\WINDOWS\system32\Drivers\L6PODHD4.sys
    2011/02/24 08:37:47.0375 3448 MAUSBFASTTRACKULTRA (80f6391a9a5412074f43acc91e770b4e) C:\WINDOWS\system32\DRIVERS\MAudioFastTrackUltra.sys
    2011/02/24 08:37:47.0437 3448 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
    2011/02/24 08:37:47.0500 3448 Modem (5ac7e16f5b40a6da14b5f2b3ada4693e) C:\WINDOWS\system32\drivers\Modem.sys
    2011/02/24 08:37:47.0546 3448 Mouclass (7d4f19411bd941e1d432a99e24230386) C:\WINDOWS\system32\DRIVERS\mouclass.sys
    2011/02/24 08:37:47.0593 3448 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
    2011/02/24 08:37:47.0625 3448 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
    2011/02/24 08:37:47.0703 3448 MRxDAV (46edcc8f2db2f322c24f48785cb46366) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    2011/02/24 08:37:47.0765 3448 MRxSmb (fb6c89bb3ce282b08bdb1e3c179e1c39) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    2011/02/24 08:37:47.0812 3448 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
    2011/02/24 08:37:47.0875 3448 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
    2011/02/24 08:37:47.0921 3448 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    2011/02/24 08:37:47.0953 3448 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
    2011/02/24 08:37:47.0984 3448 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    2011/02/24 08:37:48.0031 3448 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
    2011/02/24 08:37:48.0062 3448 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
    2011/02/24 08:37:48.0125 3448 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
    2011/02/24 08:37:48.0171 3448 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    2011/02/24 08:37:48.0218 3448 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    2011/02/24 08:37:48.0250 3448 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    2011/02/24 08:37:48.0296 3448 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
    2011/02/24 08:37:48.0328 3448 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
    2011/02/24 08:37:48.0390 3448 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
    2011/02/24 08:37:48.0468 3448 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
    2011/02/24 08:37:48.0562 3448 Ntfs (b78be402c3f63dd55521f73876951cdd) C:\WINDOWS\system32\drivers\Ntfs.sys
    2011/02/24 08:37:48.0609 3448 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
    2011/02/24 08:37:48.0812 3448 nv (9f4384aa43548ddd438f7b7825d11699) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
    2011/02/24 08:37:48.0984 3448 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    2011/02/24 08:37:49.0031 3448 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    2011/02/24 08:37:49.0125 3448 Parport (318696359ac7df48d1e51974ec527dd2) C:\WINDOWS\system32\DRIVERS\parport.sys
    2011/02/24 08:37:49.0156 3448 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
    2011/02/24 08:37:49.0203 3448 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
    2011/02/24 08:37:49.0250 3448 pavboot (3adb8bd6154a3ef87496e8fce9c22493) C:\WINDOWS\system32\drivers\pavboot.sys
    2011/02/24 08:37:49.0281 3448 PCI (7c5da5c1ed801ad8b0309d5514f0b75e) C:\WINDOWS\system32\DRIVERS\pci.sys
    2011/02/24 08:37:49.0359 3448 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
    2011/02/24 08:37:49.0421 3448 Pcmcia (641da274e163617ea7a33506bc6da8e3) C:\WINDOWS\system32\drivers\Pcmcia.sys
    2011/02/24 08:37:49.0734 3448 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
    2011/02/24 08:37:49.0765 3448 Processor (f480712b761e538bc8e44ede60f3a3c3) C:\WINDOWS\system32\DRIVERS\processr.sys
    2011/02/24 08:37:49.0828 3448 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
    2011/02/24 08:37:49.0859 3448 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
    2011/02/24 08:37:50.0093 3448 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
    2011/02/24 08:37:50.0125 3448 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    2011/02/24 08:37:50.0171 3448 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    2011/02/24 08:37:50.0218 3448 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
    2011/02/24 08:37:50.0250 3448 Rdbss (29d66245adba878fff574cd66abd2884) C:\WINDOWS\system32\DRIVERS\rdbss.sys
    2011/02/24 08:37:50.0296 3448 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    2011/02/24 08:37:50.0406 3448 RDPWD (d4f5643d7714ef499ae9527fdcd50894) C:\WINDOWS\system32\drivers\RDPWD.sys
    2011/02/24 08:37:50.0453 3448 redbook (2cc30b68dd62b73d444a41322cd7fc4c) C:\WINDOWS\system32\DRIVERS\redbook.sys
    2011/02/24 08:37:50.0578 3448 SCDEmu (ee7a1b6e155258288d99be61190e1112) C:\WINDOWS\system32\drivers\SCDEmu.sys
    2011/02/24 08:37:50.0640 3448 Secdrv (d26e26ea516450af9d072635c60387f4) C:\WINDOWS\system32\DRIVERS\secdrv.sys
    2011/02/24 08:37:50.0703 3448 serenum (a2d868aeeff612e70e213c451a70cafb) C:\WINDOWS\system32\DRIVERS\serenum.sys
    2011/02/24 08:37:50.0734 3448 Serial (653201755ca96ab4aaa4131daf6da356) C:\WINDOWS\system32\DRIVERS\serial.sys
    2011/02/24 08:37:50.0781 3448 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
    2011/02/24 08:37:50.0890 3448 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
    2011/02/24 08:37:50.0968 3448 splitter (8e186b8f23295d1e42c573b82b80d548) C:\WINDOWS\system32\drivers\splitter.sys
    2011/02/24 08:37:51.0031 3448 sr (b52181023b827acda36c1b76751ebffd) C:\WINDOWS\system32\DRIVERS\sr.sys
    2011/02/24 08:37:51.0093 3448 Srv (7a4f147cc6b133f905f6e65e2f8669fb) C:\WINDOWS\system32\DRIVERS\srv.sys
    2011/02/24 08:37:51.0156 3448 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
    2011/02/24 08:37:51.0203 3448 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
    2011/02/24 08:37:51.0437 3448 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
    2011/02/24 08:37:51.0515 3448 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
    2011/02/24 08:37:51.0562 3448 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
    2011/02/24 08:37:51.0640 3448 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
    2011/02/24 08:37:51.0796 3448 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
    2011/02/24 08:37:52.0093 3448 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
    2011/02/24 08:37:52.0171 3448 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
    2011/02/24 08:37:52.0250 3448 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    2011/02/24 08:37:52.0281 3448 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
    2011/02/24 08:37:52.0312 3448 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
    2011/02/24 08:37:52.0343 3448 usbstor (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    2011/02/24 08:37:52.0390 3448 usbuhci (f8fd1400092e23c8f2f31406ef06167b) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    2011/02/24 08:37:52.0437 3448 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
    2011/02/24 08:37:52.0468 3448 ViaIde (59cb1338ad3654417bea49636457f65d) C:\WINDOWS\system32\DRIVERS\viaide.sys
    2011/02/24 08:37:52.0515 3448 videX32 (c147afa614b9925479d47cd173329789) C:\WINDOWS\system32\DRIVERS\videX32.sys
    2011/02/24 08:37:52.0546 3448 VolSnap (313b1a0d5db26dfe1c34a6c13b2ce0a7) C:\WINDOWS\system32\drivers\VolSnap.sys
    2011/02/24 08:37:52.0640 3448 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
    2011/02/24 08:37:52.0703 3448 wdmaud (2797f33ebf50466020c430ee4f037933) C:\WINDOWS\system32\drivers\wdmaud.sys
    2011/02/24 08:37:52.0859 3448 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
    2011/02/24 08:37:53.0078 3448 ================================================================================
    2011/02/24 08:37:53.0078 3448 Scan finished
    2011/02/24 08:37:53.0078 3448 ================================================================================
    2011/02/24 08:38:09.0328 3460 ================================================================================
    2011/02/24 08:38:09.0328 3460 Scan started
    2011/02/24 08:38:09.0328 3460 Mode: Manual;
    2011/02/24 08:38:09.0328 3460 ================================================================================
    2011/02/24 08:38:09.0593 3460 ACPI (0bd94fbfc14ea3606cd6ca4c0255baa3) C:\WINDOWS\system32\DRIVERS\ACPI.sys
    2011/02/24 08:38:09.0656 3460 ACPIEC (e4abc1212b70bb03d35e60681c447210) C:\WINDOWS\system32\drivers\ACPIEC.sys
    2011/02/24 08:38:09.0765 3460 aec (841f385c6cfaf66b58fbd898722bb4f0) C:\WINDOWS\system32\drivers\aec.sys
    2011/02/24 08:38:09.0812 3460 AFD (55e6e1c51b6d30e54335750955453702) C:\WINDOWS\System32\drivers\afd.sys
    2011/02/24 08:38:10.0078 3460 ALCXWDM (dd8520280304b6145a6be31008748c7c) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
    2011/02/24 08:38:10.0187 3460 AmdK8 (31ffde1be912d7cbd3f189feb61f86b6) C:\WINDOWS\system32\DRIVERS\AmdK8.sys
    2011/02/24 08:38:10.0406 3460 ASInsHelp (33c171de483ee145f31234d93b078919) C:\WINDOWS\system32\drivers\AsInsHelp32.sys
    2011/02/24 08:38:10.0421 3460 AsIO (c959989e2ce8da9bde8cafddba84badf) C:\WINDOWS\system32\drivers\AsIO.sys
    2011/02/24 08:38:10.0468 3460 AsyncMac (02000abf34af4c218c35d257024807d6) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
    2011/02/24 08:38:10.0515 3460 atapi (cdfe4411a69c224bd1d11b2da92dac51) C:\WINDOWS\system32\DRIVERS\atapi.sys
    2011/02/24 08:38:10.0593 3460 Atmarpc (ec88da854ab7d7752ec8be11a741bb7f) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
    2011/02/24 08:38:10.0640 3460 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
    2011/02/24 08:38:10.0718 3460 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
    2011/02/24 08:38:10.0937 3460 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
    2011/02/24 08:38:11.0015 3460 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
    2011/02/24 08:38:11.0062 3460 Cdfs (cd7d5152df32b47f4e36f710b35aae02) C:\WINDOWS\system32\drivers\Cdfs.sys
    2011/02/24 08:38:11.0109 3460 Cdrom (af9c19b3100fe010496b1a27181fbf72) C:\WINDOWS\system32\DRIVERS\cdrom.sys
    2011/02/24 08:38:11.0203 3460 CLEDX (b53f9635457b56dcffef750e18aec6cb) C:\WINDOWS\system32\DRIVERS\cledx.sys
    2011/02/24 08:38:11.0468 3460 Disk (00ca44e4534865f8a3b64f7c0984bff0) C:\WINDOWS\system32\DRIVERS\disk.sys
    2011/02/24 08:38:11.0578 3460 dmboot (e2d3b7620310fe56685f9b15a6b404b3) C:\WINDOWS\system32\drivers\dmboot.sys
    2011/02/24 08:38:11.0656 3460 dmio (c77f5c20aa70197a69aa84baa9de43c8) C:\WINDOWS\system32\drivers\dmio.sys
    2011/02/24 08:38:11.0687 3460 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
    2011/02/24 08:38:11.0750 3460 DMusic (a6f881284ac1150e37d9ae47ff601267) C:\WINDOWS\system32\drivers\DMusic.sys
    2011/02/24 08:38:11.0921 3460 driverhardwarev2 (a694d8db6d360a3bbb0bd1517f1c1aee) C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys
    2011/02/24 08:38:11.0968 3460 drmkaud (1ed4dbbae9f5d558dbba4cc450e3eb2e) C:\WINDOWS\system32\drivers\drmkaud.sys
    2011/02/24 08:38:12.0046 3460 Fastfat (3117f595e9615e04f05a54fc15a03b20) C:\WINDOWS\system32\drivers\Fastfat.sys
    2011/02/24 08:38:12.0093 3460 Fdc (ced2e8396a8838e59d8fd529c680e02c) C:\WINDOWS\system32\DRIVERS\fdc.sys
    2011/02/24 08:38:12.0156 3460 FET5X86V (92cbce0913661ff966f9fb696a1775a5) C:\WINDOWS\system32\DRIVERS\fetnd5bv.sys
    2011/02/24 08:38:12.0234 3460 Fips (8b121ff880683607ab2aef0340721718) C:\WINDOWS\system32\drivers\Fips.sys
    2011/02/24 08:38:12.0250 3460 Flpydisk (0dd1de43115b93f4d85e889d7a86f548) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
    2011/02/24 08:38:12.0312 3460 FltMgr (157754f0df355a9e0a6f54721914f9c6) C:\WINDOWS\system32\drivers\fltmgr.sys
    2011/02/24 08:38:12.0343 3460 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
    2011/02/24 08:38:12.0375 3460 Ftdisk (a86859b77b908c18c2657f284aa29fe3) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
    2011/02/24 08:38:12.0421 3460 gagp30kx (4216cd545e5c30807b560c5dcaa812e6) C:\WINDOWS\system32\DRIVERS\gagp30kx.sys
    2011/02/24 08:38:12.0453 3460 Gpc (c0f1d4a21de5a415df8170616703debf) C:\WINDOWS\system32\DRIVERS\msgpc.sys
    2011/02/24 08:38:12.0546 3460 hidusb (1de6783b918f540149aa69943bdfeba8) C:\WINDOWS\system32\DRIVERS\hidusb.sys
    2011/02/24 08:38:12.0656 3460 HTTP (c19b522a9ae0bbc3293397f3055e80a1) C:\WINDOWS\system32\Drivers\HTTP.sys
    2011/02/24 08:38:12.0781 3460 i8042prt (d1efcbd693b5ba21314d06368c471070) C:\WINDOWS\system32\drivers\i8042prt.sys
    2011/02/24 08:38:12.0812 3460 Imapi (f8aa320c6a0409c0380e5d8a99d76ec6) C:\WINDOWS\system32\DRIVERS\imapi.sys
    2011/02/24 08:38:12.0984 3460 Ip6Fw (4448006b6bc60e6c027932cfc38d6855) C:\WINDOWS\system32\drivers\ip6fw.sys
    2011/02/24 08:38:13.0015 3460 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
    2011/02/24 08:38:13.0062 3460 IpInIp (e1ec7f5da720b640cd8fb8424f1b14bb) C:\WINDOWS\system32\DRIVERS\ipinip.sys
    2011/02/24 08:38:13.0109 3460 IpNat (b5a8e215ac29d24d60b4d1250ef05ace) C:\WINDOWS\system32\DRIVERS\ipnat.sys
    2011/02/24 08:38:13.0125 3460 IPSec (64537aa5c003a6afeee1df819062d0d1) C:\WINDOWS\system32\DRIVERS\ipsec.sys
    2011/02/24 08:38:13.0187 3460 IRENUM (50708daa1b1cbb7d6ac1cf8f56a24410) C:\WINDOWS\system32\DRIVERS\irenum.sys
    2011/02/24 08:38:13.0218 3460 isapnp (54632f1a7de61dc3615d756f2a90fa72) C:\WINDOWS\system32\DRIVERS\isapnp.sys
    2011/02/24 08:38:13.0265 3460 Kbdclass (e798705e8dc7fab596ef6bfdf167e007) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
    2011/02/24 08:38:13.0312 3460 kbdhid (62dd5eefcec4ef4163f1168d4262a9e4) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
    2011/02/24 08:38:13.0343 3460 kmixer (d93cad07c5683db066b0b2d2d3790ead) C:\WINDOWS\system32\drivers\kmixer.sys
    2011/02/24 08:38:13.0390 3460 KSecDD (674d3e5a593475915dc6643317192403) C:\WINDOWS\system32\drivers\KSecDD.sys
    2011/02/24 08:38:13.0453 3460 L6PODHD4 (0e2e3cabb4723b78441e58e5899d82d9) C:\WINDOWS\system32\Drivers\L6PODHD4.sys
    2011/02/24 08:38:13.0609 3460 MAUSBFASTTRACKULTRA (80f6391a9a5412074f43acc91e770b4e) C:\WINDOWS\system32\DRIVERS\MAudioFastTrackUltra.sys
    2011/02/24 08:38:13.0671 3460 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
    2011/02/24 08:38:13.0734 3460 Modem (5ac7e16f5b40a6da14b5f2b3ada4693e) C:\WINDOWS\system32\drivers\Modem.sys
    2011/02/24 08:38:13.0765 3460 Mouclass (7d4f19411bd941e1d432a99e24230386) C:\WINDOWS\system32\DRIVERS\mouclass.sys
    2011/02/24 08:38:13.0812 3460 mouhid (124d6846040c79b9c997f78ef4b2a4e5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
    2011/02/24 08:38:13.0843 3460 MountMgr (65653f3b4477f3c63e68a9659f85ee2e) C:\WINDOWS\system32\drivers\MountMgr.sys
    2011/02/24 08:38:13.0906 3460 MRxDAV (46edcc8f2db2f322c24f48785cb46366) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
    2011/02/24 08:38:13.0984 3460 MRxSmb (fb6c89bb3ce282b08bdb1e3c179e1c39) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
    2011/02/24 08:38:14.0015 3460 Msfs (561b3a4333ca2dbdba28b5b956822519) C:\WINDOWS\system32\drivers\Msfs.sys
    2011/02/24 08:38:14.0093 3460 MSKSSRV (ae431a8dd3c1d0d0610cdbac16057ad0) C:\WINDOWS\system32\drivers\MSKSSRV.sys
    2011/02/24 08:38:14.0125 3460 MSPCLOCK (13e75fef9dfeb08eeded9d0246e1f448) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
    2011/02/24 08:38:14.0156 3460 MSPQM (1988a33ff19242576c3d0ef9ce785da7) C:\WINDOWS\system32\drivers\MSPQM.sys
    2011/02/24 08:38:14.0187 3460 mssmbios (469541f8bfd2b32659d5d463a6714bce) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
    2011/02/24 08:38:14.0250 3460 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
    2011/02/24 08:38:14.0281 3460 Mup (82035e0f41c2dd05ae41d27fe6cf7de1) C:\WINDOWS\system32\drivers\Mup.sys
    2011/02/24 08:38:14.0328 3460 NDIS (558635d3af1c7546d26067d5d9b6959e) C:\WINDOWS\system32\drivers\NDIS.sys
    2011/02/24 08:38:14.0390 3460 NdisTapi (08d43bbdacdf23f34d79e44ed35c1b4c) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
    2011/02/24 08:38:14.0421 3460 Ndisuio (34d6cd56409da9a7ed573e1c90a308bf) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
    2011/02/24 08:38:14.0453 3460 NdisWan (0b90e255a9490166ab368cd55a529893) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
    2011/02/24 08:38:14.0500 3460 NDProxy (59fc3fb44d2669bc144fd87826bb571f) C:\WINDOWS\system32\drivers\NDProxy.sys
    2011/02/24 08:38:14.0531 3460 NetBIOS (3a2aca8fc1d7786902ca434998d7ceb4) C:\WINDOWS\system32\DRIVERS\netbios.sys
    2011/02/24 08:38:14.0593 3460 NetBT (0c80e410cd2f47134407ee7dd19cc86b) C:\WINDOWS\system32\DRIVERS\netbt.sys
    2011/02/24 08:38:14.0687 3460 Npfs (4f601bcb8f64ea3ac0994f98fed03f8e) C:\WINDOWS\system32\drivers\Npfs.sys
    2011/02/24 08:38:14.0750 3460 Ntfs (b78be402c3f63dd55521f73876951cdd) C:\WINDOWS\system32\drivers\Ntfs.sys
    2011/02/24 08:38:14.0812 3460 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
    2011/02/24 08:38:15.0015 3460 nv (9f4384aa43548ddd438f7b7825d11699) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
    2011/02/24 08:38:15.0093 3460 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
    2011/02/24 08:38:15.0140 3460 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
    2011/02/24 08:38:15.0203 3460 Parport (318696359ac7df48d1e51974ec527dd2) C:\WINDOWS\system32\DRIVERS\parport.sys
    2011/02/24 08:38:15.0250 3460 PartMgr (3334430c29dc338092f79c38ef7b4cd0) C:\WINDOWS\system32\drivers\PartMgr.sys
    2011/02/24 08:38:15.0296 3460 ParVdm (9575c5630db8fb804649a6959737154c) C:\WINDOWS\system32\drivers\ParVdm.sys
    2011/02/24 08:38:15.0328 3460 pavboot (3adb8bd6154a3ef87496e8fce9c22493) C:\WINDOWS\system32\drivers\pavboot.sys
    2011/02/24 08:38:15.0375 3460 PCI (7c5da5c1ed801ad8b0309d5514f0b75e) C:\WINDOWS\system32\DRIVERS\pci.sys
    2011/02/24 08:38:15.0437 3460 PCIIde (f4bfde7209c14a07aaa61e4d6ae69eac) C:\WINDOWS\system32\DRIVERS\pciide.sys
    2011/02/24 08:38:15.0500 3460 Pcmcia (641da274e163617ea7a33506bc6da8e3) C:\WINDOWS\system32\drivers\Pcmcia.sys
    2011/02/24 08:38:15.0828 3460 PptpMiniport (1c5cc65aac0783c344f16353e60b72ac) C:\WINDOWS\system32\DRIVERS\raspptp.sys
    2011/02/24 08:38:15.0859 3460 Processor (f480712b761e538bc8e44ede60f3a3c3) C:\WINDOWS\system32\DRIVERS\processr.sys
    2011/02/24 08:38:15.0906 3460 PSched (48671f327553dcf1d27f6197f622a668) C:\WINDOWS\system32\DRIVERS\psched.sys
    2011/02/24 08:38:15.0937 3460 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
    2011/02/24 08:38:16.0187 3460 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
    2011/02/24 08:38:16.0250 3460 Rasl2tp (98faeb4a4dcf812ba1c6fca4aa3e115c) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
    2011/02/24 08:38:16.0281 3460 RasPppoe (7306eeed8895454cbed4669be9f79faa) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
    2011/02/24 08:38:16.0312 3460 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
    2011/02/24 08:38:16.0359 3460 Rdbss (29d66245adba878fff574cd66abd2884) C:\WINDOWS\system32\DRIVERS\rdbss.sys
    2011/02/24 08:38:16.0406 3460 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
    2011/02/24 08:38:16.0500 3460 RDPWD (d4f5643d7714ef499ae9527fdcd50894) C:\WINDOWS\system32\drivers\RDPWD.sys
    2011/02/24 08:38:16.0531 3460 redbook (2cc30b68dd62b73d444a41322cd7fc4c) C:\WINDOWS\system32\DRIVERS\redbook.sys
    2011/02/24 08:38:16.0640 3460 SCDEmu (ee7a1b6e155258288d99be61190e1112) C:\WINDOWS\system32\drivers\SCDEmu.sys
    2011/02/24 08:38:16.0718 3460 Secdrv (d26e26ea516450af9d072635c60387f4) C:\WINDOWS\system32\DRIVERS\secdrv.sys
    2011/02/24 08:38:16.0781 3460 serenum (a2d868aeeff612e70e213c451a70cafb) C:\WINDOWS\system32\DRIVERS\serenum.sys
    2011/02/24 08:38:16.0812 3460 Serial (653201755ca96ab4aaa4131daf6da356) C:\WINDOWS\system32\DRIVERS\serial.sys
    2011/02/24 08:38:16.0859 3460 Sfloppy (0d13b6df6e9e101013a7afb0ce629fe0) C:\WINDOWS\system32\drivers\Sfloppy.sys
    2011/02/24 08:38:16.0968 3460 SONYPVU1 (a1eceeaa5c5e74b2499eb51d38185b84) C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS
    2011/02/24 08:38:17.0046 3460 splitter (8e186b8f23295d1e42c573b82b80d548) C:\WINDOWS\system32\drivers\splitter.sys
    2011/02/24 08:38:17.0109 3460 sr (b52181023b827acda36c1b76751ebffd) C:\WINDOWS\system32\DRIVERS\sr.sys
    2011/02/24 08:38:17.0171 3460 Srv (7a4f147cc6b133f905f6e65e2f8669fb) C:\WINDOWS\system32\DRIVERS\srv.sys
    2011/02/24 08:38:17.0234 3460 swenum (03c1bae4766e2450219d20b993d6e046) C:\WINDOWS\system32\DRIVERS\swenum.sys
    2011/02/24 08:38:17.0281 3460 swmidi (94abc808fc4b6d7d2bbf42b85e25bb4d) C:\WINDOWS\system32\drivers\swmidi.sys
    2011/02/24 08:38:17.0500 3460 sysaudio (650ad082d46bac0e64c9c0e0928492fd) C:\WINDOWS\system32\drivers\sysaudio.sys
    2011/02/24 08:38:17.0578 3460 Tcpip (2a5554fc5b1e04e131230e3ce035c3f9) C:\WINDOWS\system32\DRIVERS\tcpip.sys
    2011/02/24 08:38:17.0625 3460 TDPIPE (38d437cf2d98965f239b0abcd66dcb0f) C:\WINDOWS\system32\drivers\TDPIPE.sys
    2011/02/24 08:38:17.0656 3460 TDTCP (ed0580af02502d00ad8c4c066b156be9) C:\WINDOWS\system32\drivers\TDTCP.sys
    2011/02/24 08:38:17.0718 3460 TermDD (a540a99c281d933f3d69d55e48727f47) C:\WINDOWS\system32\DRIVERS\termdd.sys
    2011/02/24 08:38:17.0968 3460 Udfs (12f70256f140cd7d52c58c7048fde657) C:\WINDOWS\system32\drivers\Udfs.sys
    2011/02/24 08:38:18.0046 3460 Update (aff2e5045961bbc0a602bb6f95eb1345) C:\WINDOWS\system32\DRIVERS\update.sys
    2011/02/24 08:38:18.0109 3460 usbccgp (bffd9f120cc63bcbaa3d840f3eef9f79) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
    2011/02/24 08:38:18.0156 3460 usbehci (15e993ba2f6946b2bfbbfcd30398621e) C:\WINDOWS\system32\DRIVERS\usbehci.sys
    2011/02/24 08:38:18.0187 3460 usbhub (c72f40947f92cea56a8fb532edf025f1) C:\WINDOWS\system32\DRIVERS\usbhub.sys
    2011/02/24 08:38:18.0234 3460 usbstor (6cd7b22193718f1d17a47a1cd6d37e75) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
    2011/02/24 08:38:18.0265 3460 usbuhci (f8fd1400092e23c8f2f31406ef06167b) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
    2011/02/24 08:38:18.0296 3460 VgaSave (8a60edd72b4ea5aea8202daf0e427925) C:\WINDOWS\System32\drivers\vga.sys
    2011/02/24 08:38:18.0328 3460 ViaIde (59cb1338ad3654417bea49636457f65d) C:\WINDOWS\system32\DRIVERS\viaide.sys
    2011/02/24 08:38:18.0375 3460 videX32 (c147afa614b9925479d47cd173329789) C:\WINDOWS\system32\DRIVERS\videX32.sys
    2011/02/24 08:38:18.0421 3460 VolSnap (313b1a0d5db26dfe1c34a6c13b2ce0a7) C:\WINDOWS\system32\drivers\VolSnap.sys
    2011/02/24 08:38:18.0484 3460 Wanarp (984ef0b9788abf89974cfed4bfbaacbc) C:\WINDOWS\system32\DRIVERS\wanarp.sys
    2011/02/24 08:38:18.0578 3460 wdmaud (2797f33ebf50466020c430ee4f037933) C:\WINDOWS\system32\drivers\wdmaud.sys
    2011/02/24 08:38:18.0718 3460 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
    2011/02/24 08:38:18.0937 3460 ================================================================================
    2011/02/24 08:38:18.0937 3460 Scan finished
    2011/02/24 08:38:18.0937 3460 ================================================================================
    0
  16. Tigzy Messages postés 7983 Statut Contributeur sécurité 582
     
    ok.

    supprime ta version de Combofix, télécharge une nouvelle.
    Cette fois ci, lance le depuis le bureau et envoi le rapport
    0
  17. Tigzy Messages postés 7983 Statut Contributeur sécurité 582
     
    EDIT.

    Contributeur SECURITE *** Développeur de RogueKiller ***
    Pas de rapports par MP, hébergez les sur www.cijoint.fr. Pas de désinfection par MP, merci d'ouvrir un fil
    0
  18. eric77
     
    ok j ai fais un autre scan avec le nouveau cobofix ia detecter ecor des rootkit ma demander de redemarer ce que j ai fait mais la toutea figer jai du faire un reset p
    our redemarer et la cobofix a fai son scan voici le rapport
    ComboFix 11-02-23.08 - eric 24/02/2011 9:02.4.2 - x86
    Microsoft Windows XP Édition familiale 5.1.2600.2.1252.33.1036.18.2047.1739 [GMT -5:00]
    Lancé depuis: c:\documents and settings\eric\Bureau\ComboFix.exe
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\documents and settings\eric\Proc_end.exe

    .
    ((((((((((((((((((((((((((((( Fichiers créés du 2011-01-24 au 2011-02-24 ))))))))))))))))))))))))))))))))))))
    .

    2011-02-22 13:36 . 2011-02-22 13:36 -------- d-----w- C:\NVIDIA
    2011-02-15 19:49 . 2011-02-15 19:49 -------- d-----r- C:\MSOCache

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-11-29 16:38 . 2010-11-29 16:38 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
    2010-11-29 16:38 . 2010-11-29 16:38 69632 ----a-w- c:\windows\system32\QuickTime.qts
    .

    ((((((((((((((((((((((((((((( SnapShot_2011-02-24_03.25.26 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2011-02-12 14:09 . 2009-08-06 18:24 35552 c:\windows\system32\wups.dll
    + 2011-02-12 14:09 . 2009-08-07 00:24 53472 c:\windows\system32\wuauclt.exe
    + 2004-08-05 12:00 . 2009-06-25 08:44 59392 c:\windows\system32\wdigest.dll
    + 2004-08-05 12:00 . 2009-06-15 11:33 78848 c:\windows\system32\telnet.exe
    - 2011-02-12 14:20 . 2009-01-07 17:21 26144 c:\windows\system32\spupdsvc.exe
    + 2011-02-12 14:20 . 2009-01-07 23:21 26144 c:\windows\system32\spupdsvc.exe
    + 2011-02-12 14:20 . 2009-01-07 23:21 17952 c:\windows\system32\spmsg.dll
    - 2011-02-12 14:20 . 2009-01-07 17:21 17952 c:\windows\system32\spmsg.dll
    + 2004-08-05 12:00 . 2009-06-25 08:44 56320 c:\windows\system32\secur32.dll
    + 2004-08-05 12:00 . 2009-02-06 16:54 35328 c:\windows\system32\sc.exe
    - 2004-08-05 12:00 . 2004-08-05 12:00 69632 c:\windows\system32\raschap.dll
    + 2004-08-05 12:00 . 2009-10-12 13:52 69632 c:\windows\system32\raschap.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 46592 c:\windows\system32\pngfilt.dll
    + 2004-08-05 12:00 . 2011-02-24 12:20 48616 c:\windows\system32\perfc00C.dat
    - 2004-08-05 12:00 . 2011-02-24 03:02 48616 c:\windows\system32\perfc00C.dat
    + 2004-08-05 12:00 . 2011-02-24 12:20 39992 c:\windows\system32\perfc009.dat
    - 2004-08-05 12:00 . 2011-02-24 03:02 39992 c:\windows\system32\perfc009.dat
    - 2009-01-07 17:20 . 2009-01-07 17:20 23552 c:\windows\system32\normaliz.dll
    + 2009-01-07 17:20 . 2009-01-07 23:20 23552 c:\windows\system32\normaliz.dll
    - 2009-01-07 17:20 . 2009-01-07 17:20 24576 c:\windows\system32\nlsdl.dll
    + 2009-01-07 17:20 . 2009-01-07 23:20 24576 c:\windows\system32\nlsdl.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 91648 c:\windows\system32\mtxoci.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 66560 c:\windows\system32\mtxclu.dll
    + 2004-08-05 12:00 . 2008-06-12 14:18 66560 c:\windows\system32\mtxclu.dll
    + 2004-08-04 00:54 . 2009-11-27 17:34 17920 c:\windows\system32\msyuv.dll
    + 2004-08-05 12:00 . 2008-08-28 08:03 74752 c:\windows\system32\msw3prt.dll
    + 2004-08-05 12:00 . 2009-11-27 16:38 28672 c:\windows\system32\msvidc32.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 11264 c:\windows\system32\msrle32.dll
    + 2004-08-05 12:00 . 2009-11-27 16:38 11264 c:\windows\system32\msrle32.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 15360 c:\windows\system32\msisip.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 78848 c:\windows\system32\msiexec.exe
    + 2004-08-05 12:00 . 2009-03-08 09:31 48128 c:\windows\system32\mshtmler.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 66560 c:\windows\system32\mshtmled.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 45568 c:\windows\system32\mshta.exe
    - 2011-02-12 14:03 . 2004-08-05 12:00 58880 c:\windows\system32\msdtclog.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 58880 c:\windows\system32\msdtclog.dll
    + 2004-08-05 12:00 . 2008-06-24 16:23 74240 c:\windows\system32\mscms.dll
    + 2004-08-05 12:00 . 2009-09-04 20:46 58880 c:\windows\system32\msasn1.dll
    - 2004-08-05 12:00 . 2004-08-11 00:45 96768 c:\windows\system32\logagent.exe
    + 2004-08-05 12:00 . 2008-06-10 14:17 96768 c:\windows\system32\logagent.exe
    + 2004-08-05 12:00 . 2009-03-08 09:34 43008 c:\windows\system32\licmgr10.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 25600 c:\windows\system32\jsproxy.dll
    + 2004-08-04 00:54 . 2009-11-27 16:38 48128 c:\windows\system32\iyuv_32.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 94720 c:\windows\system32\inseng.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 34816 c:\windows\system32\imgutil.dll
    + 2009-03-08 03:32 . 2009-03-08 09:32 36864 c:\windows\system32\ieudinit.exe
    - 2009-03-08 03:32 . 2009-03-08 03:32 36864 c:\windows\system32\ieudinit.exe
    + 2004-08-05 12:00 . 2009-03-08 09:32 71680 c:\windows\system32\iesetup.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 55808 c:\windows\system32\iernonce.dll
    + 2009-01-07 17:20 . 2009-01-07 23:20 26112 c:\windows\system32\idndl.dll
    - 2009-01-07 17:20 . 2009-01-07 17:20 26112 c:\windows\system32\idndl.dll
    + 2004-08-05 12:00 . 2009-10-15 17:21 82432 c:\windows\system32\fontsub.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 55808 c:\windows\system32\extmgr.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 55808 c:\windows\system32\extmgr.dll
    + 2004-08-05 12:00 . 2009-06-22 11:34 92544 c:\windows\system32\drivers\ksecdd.sys
    + 2011-02-12 16:12 . 2005-10-22 23:00 33792 c:\windows\system32\drivers\cledx.sys
    - 2011-02-12 16:12 . 2005-05-09 19:08 33792 c:\windows\system32\drivers\cledx.sys
    + 2011-02-24 13:24 . 2010-05-06 10:33 12800 c:\windows\system32\dllcache\xpshims.dll
    + 2011-02-12 14:09 . 2009-08-06 18:24 35552 c:\windows\system32\dllcache\wups.dll
    + 2011-02-12 14:09 . 2009-08-07 00:24 53472 c:\windows\system32\dllcache\wuauclt.exe
    + 2004-08-05 12:00 . 2009-06-25 08:44 59392 c:\windows\system32\dllcache\wdigest.dll
    + 2004-08-05 12:00 . 2009-06-15 11:33 78848 c:\windows\system32\dllcache\telnet.exe
    + 2004-08-05 12:00 . 2009-06-25 08:44 56320 c:\windows\system32\dllcache\secur32.dll
    + 2004-08-05 12:00 . 2009-02-06 16:54 35328 c:\windows\system32\dllcache\sc.exe
    - 2004-08-05 12:00 . 2004-08-05 12:00 69632 c:\windows\system32\dllcache\raschap.dll
    + 2004-08-05 12:00 . 2009-10-12 13:52 69632 c:\windows\system32\dllcache\raschap.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 46592 c:\windows\system32\dllcache\pngfilt.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 91648 c:\windows\system32\dllcache\mtxoci.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 66560 c:\windows\system32\dllcache\mtxclu.dll
    + 2004-08-05 12:00 . 2008-06-12 14:18 66560 c:\windows\system32\dllcache\mtxclu.dll
    + 2009-11-27 17:34 . 2009-11-27 17:34 17920 c:\windows\system32\dllcache\msyuv.dll
    + 2004-08-05 12:00 . 2008-08-28 08:03 74752 c:\windows\system32\dllcache\msw3prt.dll
    + 2004-08-05 12:00 . 2009-11-27 16:38 28672 c:\windows\system32\dllcache\msvidc32.dll
    + 2004-08-05 12:00 . 2009-11-27 16:38 11264 c:\windows\system32\dllcache\msrle32.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 11264 c:\windows\system32\dllcache\msrle32.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 15360 c:\windows\system32\dllcache\msisip.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 78848 c:\windows\system32\dllcache\msiexec.exe
    + 2004-08-05 12:00 . 2009-03-08 09:31 48128 c:\windows\system32\dllcache\mshtmler.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 66560 c:\windows\system32\dllcache\mshtmled.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 45568 c:\windows\system32\dllcache\mshta.exe
    + 2011-02-24 13:24 . 2010-05-06 10:33 55296 c:\windows\system32\dllcache\msfeedsbs.dll
    - 2011-02-12 14:03 . 2004-08-05 12:00 58880 c:\windows\system32\dllcache\msdtclog.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 58880 c:\windows\system32\dllcache\msdtclog.dll
    + 2004-08-05 12:00 . 2008-06-24 16:23 74240 c:\windows\system32\dllcache\mscms.dll
    + 2004-08-05 12:00 . 2009-09-04 20:46 58880 c:\windows\system32\dllcache\msasn1.dll
    - 2004-08-05 12:00 . 2004-08-11 00:45 96768 c:\windows\system32\dllcache\logagent.exe
    + 2004-08-05 12:00 . 2008-06-10 14:17 96768 c:\windows\system32\dllcache\logagent.exe
    + 2004-08-05 12:00 . 2009-03-08 09:34 43008 c:\windows\system32\dllcache\licmgr10.dll
    + 2004-08-05 12:00 . 2009-06-22 11:34 92544 c:\windows\system32\dllcache\ksecdd.sys
    + 2004-08-05 12:00 . 2010-05-06 10:33 25600 c:\windows\system32\dllcache\jsproxy.dll
    + 2009-11-27 16:38 . 2009-11-27 16:38 48128 c:\windows\system32\dllcache\iyuv_32.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 94720 c:\windows\system32\dllcache\inseng.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 34816 c:\windows\system32\dllcache\imgutil.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 71680 c:\windows\system32\dllcache\iesetup.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 55808 c:\windows\system32\dllcache\iernonce.dll
    - 2011-02-12 14:09 . 2004-08-05 12:00 18432 c:\windows\system32\dllcache\iedw.exe
    + 2011-02-12 14:09 . 2010-04-16 13:36 18432 c:\windows\system32\dllcache\iedw.exe
    + 2011-02-12 14:09 . 2009-03-08 09:24 68608 c:\windows\system32\dllcache\hmmapi.dll
    + 2004-08-05 12:00 . 2009-10-15 17:21 82432 c:\windows\system32\dllcache\fontsub.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 55808 c:\windows\system32\dllcache\extmgr.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 55808 c:\windows\system32\dllcache\extmgr.dll
    + 2004-08-05 12:00 . 2009-12-14 07:36 33280 c:\windows\system32\dllcache\csrsrv.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 18944 c:\windows\system32\dllcache\corpol.dll
    + 2011-02-12 14:03 . 2005-07-26 04:39 60416 c:\windows\system32\dllcache\colbact.dll
    + 2004-08-05 12:00 . 2009-08-07 00:24 96480 c:\windows\system32\dllcache\cdm.dll
    + 2004-08-05 12:00 . 2010-01-13 14:09 86528 c:\windows\system32\dllcache\cabview.dll
    + 2004-08-05 12:00 . 2009-11-27 16:38 85504 c:\windows\system32\dllcache\avifil32.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 85504 c:\windows\system32\dllcache\avifil32.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 58880 c:\windows\system32\dllcache\atl.dll
    + 2004-08-05 12:00 . 2009-07-17 18:56 58880 c:\windows\system32\dllcache\atl.dll
    + 2004-08-05 12:00 . 2010-03-05 14:55 65536 c:\windows\system32\dllcache\asycfilt.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 72704 c:\windows\system32\dllcache\admparse.dll
    + 2004-08-05 12:00 . 2009-12-14 07:36 33280 c:\windows\system32\csrsrv.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 18944 c:\windows\system32\corpol.dll
    + 2011-02-12 14:15 . 2011-02-24 12:06 32768 c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat
    - 2011-02-12 14:15 . 2011-02-24 03:01 32768 c:\windows\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat
    - 2011-02-23 22:25 . 2011-02-24 03:01 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
    + 2011-02-24 03:32 . 2011-02-24 12:06 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
    + 2011-02-12 14:03 . 2005-07-26 04:39 60416 c:\windows\system32\colbact.dll
    + 2004-08-05 12:00 . 2009-08-07 00:24 96480 c:\windows\system32\cdm.dll
    + 2004-08-05 12:00 . 2010-01-13 14:09 86528 c:\windows\system32\cabview.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 85504 c:\windows\system32\avifil32.dll
    + 2004-08-05 12:00 . 2009-11-27 16:38 85504 c:\windows\system32\avifil32.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 58880 c:\windows\system32\atl.dll
    + 2004-08-05 12:00 . 2009-07-17 18:56 58880 c:\windows\system32\atl.dll
    + 2004-08-05 12:00 . 2010-03-05 14:55 65536 c:\windows\system32\asycfilt.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 72704 c:\windows\system32\admparse.dll
    - 2011-02-12 14:29 . 2008-07-09 07:40 26488 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\update\spcustom.dll
    - 2011-02-12 14:29 . 2008-07-09 07:40 18296 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\spmsg.dll
    - 2011-02-12 14:40 . 2007-03-06 01:34 22752 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\update\spcustom.dll
    - 2011-02-12 14:40 . 2007-03-06 01:34 15072 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\spmsg.dll
    - 2011-02-12 14:40 . 2008-07-08 13:03 26488 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\update\spcustom.dll
    - 2011-02-12 14:40 . 2008-07-08 13:03 18296 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\spmsg.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 12800 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\xpshims.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 55296 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\msfeedsbs.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 25600 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\jsproxy.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 12800 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\xpshims.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 55296 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\msfeedsbs.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 25600 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\jsproxy.dll
    + 2011-02-24 13:24 . 2008-07-08 13:03 18296 c:\windows\ie8updates\KB982381-IE8\spmsg.dll
    + 2011-02-24 13:24 . 2008-07-08 13:03 26488 c:\windows\ie8updates\KB982381-IE8\spcustom.dll
    + 2011-02-12 14:58 . 2009-03-08 09:33 25600 c:\windows\ie8updates\KB982381-IE8\jsproxy.dll
    - 2011-02-12 14:58 . 2009-03-08 03:33 25600 c:\windows\ie8updates\KB982381-IE8\jsproxy.dll
    + 2011-02-12 14:57 . 2009-03-08 21:14 58448 c:\windows\ie8\spuninst\iecustom.dll
    - 2011-02-12 14:57 . 2009-03-08 15:14 58448 c:\windows\ie8\spuninst\iecustom.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 39424 c:\windows\ie8\pngfilt.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 39424 c:\windows\ie8\pngfilt.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 97280 c:\windows\ie8\occache.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 97280 c:\windows\ie8\occache.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 57344 c:\windows\ie8\mshtmler.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 57344 c:\windows\ie8\mshtmler.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 29184 c:\windows\ie8\mshta.exe
    + 2011-02-24 13:23 . 2004-08-05 12:00 29184 c:\windows\ie8\mshta.exe
    + 2011-02-24 13:23 . 2004-08-05 12:00 22528 c:\windows\ie8\licmgr10.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 22528 c:\windows\ie8\licmgr10.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 16384 c:\windows\ie8\jsproxy.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 16384 c:\windows\ie8\jsproxy.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 96768 c:\windows\ie8\inseng.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 96768 c:\windows\ie8\inseng.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 35840 c:\windows\ie8\imgutil.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 35840 c:\windows\ie8\imgutil.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 93184 c:\windows\ie8\iexplore.exe
    - 2011-02-12 14:57 . 2004-08-05 12:00 93184 c:\windows\ie8\iexplore.exe
    - 2011-02-12 14:57 . 2004-08-05 12:00 63488 c:\windows\ie8\iesetup.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 63488 c:\windows\ie8\iesetup.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 49152 c:\windows\ie8\iernonce.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 49152 c:\windows\ie8\iernonce.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 81920 c:\windows\ie8\ieencode.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 81920 c:\windows\ie8\ieencode.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 34304 c:\windows\ie8\ie4uinit.exe
    + 2011-02-24 13:23 . 2004-08-05 12:00 34304 c:\windows\ie8\ie4uinit.exe
    + 2011-02-24 13:23 . 2004-08-05 12:00 38912 c:\windows\ie8\hmmapi.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 38912 c:\windows\ie8\hmmapi.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 35328 c:\windows\ie8\corpol.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 35328 c:\windows\ie8\corpol.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 61440 c:\windows\ie8\admparse.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 61440 c:\windows\ie8\admparse.dll
    + 2009-11-27 17:34 . 2009-11-27 17:34 17920 c:\windows\Driver Cache\i386\msyuv.dll
    + 2009-11-27 16:38 . 2009-11-27 16:38 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
    + 2001-08-23 17:47 . 2009-11-27 16:38 8704 c:\windows\system32\tsbyuv.dll
    + 2009-11-27 16:38 . 2009-11-27 16:38 8704 c:\windows\system32\dllcache\tsbyuv.dll
    + 2009-11-27 16:38 . 2009-11-27 16:38 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
    - 2009-01-07 17:21 . 2008-04-14 02:33 121856 c:\windows\system32\xmllite.dll
    + 2009-01-07 17:21 . 2009-01-07 23:21 121856 c:\windows\system32\xmllite.dll
    + 2011-02-12 14:09 . 2009-08-07 00:24 209632 c:\windows\system32\wuweb.dll
    + 2011-02-12 14:09 . 2009-08-07 00:24 327896 c:\windows\system32\wucltui.dll
    + 2011-02-12 14:09 . 2009-08-07 00:23 575704 c:\windows\system32\wuapi.dll
    + 2004-08-05 12:00 . 2009-04-10 06:01 530280 c:\windows\system32\wmspdmod.dll
    + 2004-08-05 12:00 . 2009-07-13 07:18 233472 c:\windows\system32\wmpdxm.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 233472 c:\windows\system32\wmpdxm.dll
    + 2004-08-05 12:00 . 2007-10-20 11:01 227328 c:\windows\system32\wmasf.dll
    + 2004-08-05 12:00 . 2009-06-10 06:30 132096 c:\windows\system32\wkssvc.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 132096 c:\windows\system32\wkssvc.dll
    + 2004-08-05 12:00 . 2009-12-24 07:06 177664 c:\windows\system32\wintrust.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 916480 c:\windows\system32\wininet.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 351232 c:\windows\system32\winhttp.dll
    + 2004-08-05 12:00 . 2008-12-16 12:49 351232 c:\windows\system32\winhttp.dll
    + 2004-08-05 12:00 . 2008-08-28 08:03 104960 c:\windows\system32\win32spl.dll
    + 2004-08-05 12:00 . 2009-03-08 09:34 236544 c:\windows\system32\webcheck.dll
    + 2011-02-12 14:03 . 2009-02-06 16:39 227840 c:\windows\system32\wbem\wmiprvse.exe
    + 2011-02-12 14:03 . 2009-02-09 10:20 453120 c:\windows\system32\wbem\wmiprvsd.dll
    + 2011-02-12 14:03 . 2009-02-09 10:20 473088 c:\windows\system32\wbem\fastprox.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 420352 c:\windows\system32\vbscript.dll
    + 2004-08-05 12:00 . 2009-03-08 09:34 105984 c:\windows\system32\url.dll
    + 2004-08-05 12:00 . 2009-10-16 03:51 119808 c:\windows\system32\t2embed.dll
    + 2004-08-05 12:00 . 2009-08-26 08:15 247326 c:\windows\system32\strmdll.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 474624 c:\windows\system32\shlwapi.dll
    + 2004-08-05 12:00 . 2009-02-09 10:08 111104 c:\windows\system32\services.exe
    + 2004-08-05 12:00 . 2009-06-25 08:44 168448 c:\windows\system32\schannel.dll
    + 2004-08-05 12:00 . 2009-02-09 10:20 399360 c:\windows\system32\rpcss.dll
    + 2004-08-05 12:00 . 2009-04-15 15:17 584192 c:\windows\system32\rpcrt4.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 113152 c:\windows\system32\rastls.dll
    + 2004-08-05 12:00 . 2009-10-12 13:52 113152 c:\windows\system32\rastls.dll
    - 2004-08-05 12:00 . 2011-02-24 03:02 367658 c:\windows\system32\perfh00C.dat
    + 2004-08-05 12:00 . 2011-02-24 12:20 367658 c:\windows\system32\perfh00C.dat
    + 2004-08-05 12:00 . 2011-02-24 12:20 311604 c:\windows\system32\perfh009.dat
    - 2004-08-05 12:00 . 2011-02-24 03:02 311604 c:\windows\system32\perfh009.dat
    + 2004-08-05 12:00 . 2009-03-06 14:46 286208 c:\windows\system32\pdh.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 286208 c:\windows\system32\pdh.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 206848 c:\windows\system32\occache.dll
    + 2004-08-05 12:00 . 2009-10-13 10:52 267776 c:\windows\system32\oakley.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 267776 c:\windows\system32\oakley.dll
    + 2004-08-05 12:00 . 2009-02-09 10:20 739840 c:\windows\system32\ntdll.dll
    + 2004-08-05 12:00 . 2008-10-15 16:59 332800 c:\windows\system32\netapi32.dll
    + 2004-08-05 12:00 . 2008-06-20 17:41 247808 c:\windows\system32\mswsock.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 247808 c:\windows\system32\mswsock.dll
    + 2004-08-05 12:00 . 2009-08-05 09:06 205312 c:\windows\system32\mswebdvd.dll
    + 2004-08-05 12:00 . 2009-09-11 14:34 133632 c:\windows\system32\msv1_0.dll
    + 2011-02-12 14:03 . 2009-06-05 07:46 655872 c:\windows\system32\mstscax.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 611840 c:\windows\system32\mstime.dll
    + 2004-08-05 12:00 . 2009-03-08 09:34 193536 c:\windows\system32\msrating.dll
    - 2011-02-12 14:03 . 2004-08-05 12:00 347648 c:\windows\system32\mspaint.exe
    + 2011-02-12 14:03 . 2009-12-17 07:59 347648 c:\windows\system32\mspaint.exe
    + 2004-08-05 12:00 . 2009-03-08 09:22 156160 c:\windows\system32\msls31.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 884736 c:\windows\system32\msimsg.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 884736 c:\windows\system32\msimsg.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 271360 c:\windows\system32\msihnd.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 161792 c:\windows\system32\msdtcuiu.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 956928 c:\windows\system32\msdtctm.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 428032 c:\windows\system32\msdtcprx.dll
    + 2009-01-07 17:20 . 2009-01-07 23:20 265720 c:\windows\system32\msdbg2.dll
    - 2009-01-07 17:20 . 2009-01-07 17:20 265720 c:\windows\system32\msdbg2.dll
    + 2004-08-05 12:00 . 2008-02-26 12:00 294912 c:\windows\system32\msctf.dll
    + 2004-08-05 12:00 . 2009-06-25 08:44 731136 c:\windows\system32\lsasrv.dll
    + 2004-08-05 12:00 . 2009-05-07 15:43 347136 c:\windows\system32\localspl.dll
    + 2004-08-05 12:00 . 2009-06-25 08:44 298496 c:\windows\system32\kerberos.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 726528 c:\windows\system32\jscript.dll
    + 2011-02-12 14:09 . 2010-01-29 15:07 683520 c:\windows\system32\inetcomm.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 184320 c:\windows\system32\iepeers.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 387584 c:\windows\system32\iedkcs32.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 163840 c:\windows\system32\ieakui.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 229376 c:\windows\system32\ieaksie.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 125952 c:\windows\system32\ieakeng.dll
    + 2004-08-05 12:00 . 2010-05-05 13:30 173056 c:\windows\system32\ie4uinit.exe
    + 2004-08-05 12:00 . 2008-10-23 13:00 283648 c:\windows\system32\gdi32.dll
    - 2011-02-12 14:41 . 2011-02-24 03:00 267008 c:\windows\system32\FNTCACHE.DAT
    + 2011-02-12 14:41 . 2011-02-24 13:07 267008 c:\windows\system32\FNTCACHE.DAT
    + 2004-08-05 12:00 . 2008-07-07 20:31 253952 c:\windows\system32\es.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 216064 c:\windows\system32\dxtrans.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 348160 c:\windows\system32\dxtmsft.dll
    + 2004-08-05 12:00 . 2010-02-11 12:01 226880 c:\windows\system32\drivers\tcpip6.sys
    + 2004-08-05 12:00 . 2008-06-20 10:45 360320 c:\windows\system32\drivers\tcpip.sys
    + 2004-08-05 12:00 . 2009-12-31 16:14 352640 c:\windows\system32\drivers\srv.sys
    + 2004-08-05 12:00 . 2008-05-08 12:28 202752 c:\windows\system32\drivers\rmcast.sys
    + 2004-08-05 12:00 . 2010-02-24 12:31 454016 c:\windows\system32\drivers\mrxsmb.sys
    + 2004-08-05 12:00 . 2008-06-14 17:59 272768 c:\windows\system32\drivers\bthport.sys
    + 2004-08-05 12:00 . 2008-08-14 09:51 138368 c:\windows\system32\drivers\afd.sys
    + 2004-08-05 12:00 . 2008-06-20 17:41 148992 c:\windows\system32\dnsapi.dll
    + 2011-02-12 14:09 . 2009-08-07 00:24 209632 c:\windows\system32\dllcache\wuweb.dll
    + 2011-02-12 14:09 . 2009-08-07 00:24 327896 c:\windows\system32\dllcache\wucltui.dll
    + 2011-02-12 14:09 . 2009-08-07 00:23 575704 c:\windows\system32\dllcache\wuapi.dll
    + 2011-02-12 14:03 . 2008-04-21 21:27 219136 c:\windows\system32\dllcache\wordpad.exe
    + 2004-08-05 12:00 . 2009-04-10 06:01 530280 c:\windows\system32\dllcache\wmspdmod.dll
    + 2004-08-05 12:00 . 2009-07-13 07:18 233472 c:\windows\system32\dllcache\wmpdxm.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 233472 c:\windows\system32\dllcache\wmpdxm.dll
    + 2011-02-12 14:03 . 2009-02-06 16:39 227840 c:\windows\system32\dllcache\wmiprvse.exe
    + 2011-02-12 14:03 . 2009-02-09 10:20 453120 c:\windows\system32\dllcache\wmiprvsd.dll
    + 2004-08-05 12:00 . 2007-10-20 11:01 227328 c:\windows\system32\dllcache\wmasf.dll
    + 2004-08-05 12:00 . 2009-06-10 06:30 132096 c:\windows\system32\dllcache\wkssvc.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 132096 c:\windows\system32\dllcache\wkssvc.dll
    + 2004-08-05 12:00 . 2009-12-24 07:06 177664 c:\windows\system32\dllcache\wintrust.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 916480 c:\windows\system32\dllcache\wininet.dll
    + 2004-08-05 12:00 . 2008-12-16 12:49 351232 c:\windows\system32\dllcache\winhttp.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 351232 c:\windows\system32\dllcache\winhttp.dll
    + 2004-08-05 12:00 . 2008-08-28 08:03 104960 c:\windows\system32\dllcache\win32spl.dll
    + 2004-08-05 12:00 . 2009-03-08 09:34 236544 c:\windows\system32\dllcache\webcheck.dll
    + 2011-02-12 14:09 . 2009-03-08 09:33 759296 c:\windows\system32\dllcache\VGX.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 420352 c:\windows\system32\dllcache\vbscript.dll
    + 2004-08-05 12:00 . 2009-03-08 09:34 105984 c:\windows\system32\dllcache\url.dll
    - 2011-02-12 14:09 . 2004-08-05 12:00 153088 c:\windows\system32\dllcache\triedit.dll
    + 2011-02-12 14:09 . 2009-06-21 22:06 153088 c:\windows\system32\dllcache\triedit.dll
    + 2004-08-05 12:00 . 2010-02-11 12:01 226880 c:\windows\system32\dllcache\tcpip6.sys
    + 2004-08-05 12:00 . 2008-06-20 10:45 360320 c:\windows\system32\dllcache\tcpip.sys
    + 2004-08-05 12:00 . 2009-10-16 03:51 119808 c:\windows\system32\dllcache\t2embed.dll
    + 2004-08-05 12:00 . 2009-08-26 08:15 247326 c:\windows\system32\dllcache\strmdll.dll
    + 2004-08-05 12:00 . 2009-12-31 16:14 352640 c:\windows\system32\dllcache\srv.sys
    + 2009-01-07 23:20 . 2009-01-07 23:20 134144 c:\windows\system32\dllcache\sqmapi.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 474624 c:\windows\system32\dllcache\shlwapi.dll
    + 2004-08-05 12:00 . 2009-02-09 10:08 111104 c:\windows\system32\dllcache\services.exe
    + 2004-08-05 12:00 . 2009-06-25 08:44 168448 c:\windows\system32\dllcache\schannel.dll
    + 2004-08-05 12:00 . 2009-02-09 10:20 399360 c:\windows\system32\dllcache\rpcss.dll
    + 2004-08-05 12:00 . 2009-04-15 15:17 584192 c:\windows\system32\dllcache\rpcrt4.dll
    + 2004-08-05 12:00 . 2008-05-08 12:28 202752 c:\windows\system32\dllcache\rmcast.sys
    + 2004-08-05 12:00 . 2009-10-12 13:52 113152 c:\windows\system32\dllcache\rastls.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 113152 c:\windows\system32\dllcache\rastls.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 286208 c:\windows\system32\dllcache\pdh.dll
    + 2004-08-05 12:00 . 2009-03-06 14:46 286208 c:\windows\system32\dllcache\pdh.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 206848 c:\windows\system32\dllcache\occache.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 267776 c:\windows\system32\dllcache\oakley.dll
    + 2004-08-05 12:00 . 2009-10-13 10:52 267776 c:\windows\system32\dllcache\oakley.dll
    + 2004-08-05 12:00 . 2009-02-09 10:20 739840 c:\windows\system32\dllcache\ntdll.dll
    + 2004-08-05 12:00 . 2008-10-15 16:59 332800 c:\windows\system32\dllcache\netapi32.dll
    + 2004-08-05 12:00 . 2008-06-20 17:41 247808 c:\windows\system32\dllcache\mswsock.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 247808 c:\windows\system32\dllcache\mswsock.dll
    + 2004-08-05 12:00 . 2009-08-05 09:06 205312 c:\windows\system32\dllcache\mswebdvd.dll
    + 2004-08-05 12:00 . 2009-09-11 14:34 133632 c:\windows\system32\dllcache\msv1_0.dll
    + 2011-02-12 14:03 . 2009-06-05 07:46 655872 c:\windows\system32\dllcache\mstscax.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 611840 c:\windows\system32\dllcache\mstime.dll
    + 2004-08-05 12:00 . 2009-03-08 09:34 193536 c:\windows\system32\dllcache\msrating.dll
    + 2011-02-12 14:03 . 2009-12-17 07:59 347648 c:\windows\system32\dllcache\mspaint.exe
    - 2011-02-12 14:03 . 2004-08-05 12:00 347648 c:\windows\system32\dllcache\mspaint.exe
    + 2004-08-05 12:00 . 2009-03-08 09:22 156160 c:\windows\system32\dllcache\msls31.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 884736 c:\windows\system32\dllcache\msimsg.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 884736 c:\windows\system32\dllcache\msimsg.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 271360 c:\windows\system32\dllcache\msihnd.dll
    + 2011-02-24 13:24 . 2010-05-06 10:33 599040 c:\windows\system32\dllcache\msfeeds.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 161792 c:\windows\system32\dllcache\msdtcuiu.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 956928 c:\windows\system32\dllcache\msdtctm.dll
    + 2011-02-12 14:03 . 2008-06-12 14:18 428032 c:\windows\system32\dllcache\msdtcprx.dll
    + 2004-08-05 12:00 . 2008-02-26 12:00 294912 c:\windows\system32\dllcache\msctf.dll
    - 2011-02-12 14:09 . 2004-08-05 12:00 331776 c:\windows\system32\dllcache\msadce.dll
    + 2011-02-12 14:09 . 2008-05-01 14:31 331776 c:\windows\system32\dllcache\msadce.dll
    + 2011-02-24 03:50 . 2010-02-24 12:31 454016 c:\windows\system32\dllcache\mrxsmb.sys
    + 2004-08-05 12:00 . 2009-06-25 08:44 731136 c:\windows\system32\dllcache\lsasrv.dll
    + 2004-08-05 12:00 . 2009-05-07 15:43 347136 c:\windows\system32\dllcache\localspl.dll
    + 2004-08-05 12:00 . 2009-06-25 08:44 298496 c:\windows\system32\dllcache\kerberos.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 726528 c:\windows\system32\dllcache\jscript.dll
    + 2011-02-12 14:09 . 2010-01-29 15:07 683520 c:\windows\system32\dllcache\inetcomm.dll
    + 2011-02-12 14:09 . 2009-03-08 19:09 638816 c:\windows\system32\dllcache\iexplore.exe
    + 2011-02-24 13:24 . 2010-05-06 10:33 247808 c:\windows\system32\dllcache\ieproxy.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 184320 c:\windows\system32\dllcache\iepeers.dll
    + 2011-02-24 13:24 . 2010-05-06 10:33 743424 c:\windows\system32\dllcache\iedvtool.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 387584 c:\windows\system32\dllcache\iedkcs32.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 163840 c:\windows\system32\dllcache\ieakui.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 229376 c:\windows\system32\dllcache\ieaksie.dll
    + 2004-08-05 12:00 . 2009-03-08 09:33 125952 c:\windows\system32\dllcache\ieakeng.dll
    + 2004-08-05 12:00 . 2010-05-05 13:30 173056 c:\windows\system32\dllcache\ie4uinit.exe
    - 2011-02-12 14:09 . 2004-08-05 12:00 743936 c:\windows\system32\dllcache\helpsvc.exe
    + 2011-02-12 14:09 . 2010-06-14 14:30 743936 c:\windows\system32\dllcache\helpsvc.exe
    + 2004-08-05 12:00 . 2008-10-23 13:00 283648 c:\windows\system32\dllcache\gdi32.dll
    + 2011-02-12 14:03 . 2009-02-09 10:20 473088 c:\windows\system32\dllcache\fastprox.dll
    + 2004-08-05 12:00 . 2008-07-07 20:31 253952 c:\windows\system32\dllcache\es.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 216064 c:\windows\system32\dllcache\dxtrans.dll
    + 2004-08-05 12:00 . 2009-03-08 09:31 348160 c:\windows\system32\dllcache\dxtmsft.dll
    + 2004-08-05 12:00 . 2008-06-20 17:41 148992 c:\windows\system32\dllcache\dnsapi.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 152064 c:\windows\system32\dllcache\cdfview.dll
    + 2011-02-24 12:16 . 2008-06-14 17:59 272768 c:\windows\system32\dllcache\bthport.sys
    + 2004-08-05 12:00 . 2010-04-20 05:47 285696 c:\windows\system32\dllcache\atmfd.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 285696 c:\windows\system32\dllcache\atmfd.dll
    + 2004-08-05 12:00 . 2008-08-14 09:51 138368 c:\windows\system32\dllcache\afd.sys
    + 2004-08-05 12:00 . 2009-03-08 09:32 128512 c:\windows\system32\dllcache\advpack.dll
    + 2004-08-05 12:00 . 2009-02-09 10:20 685056 c:\windows\system32\dllcache\advapi32.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 685056 c:\windows\system32\dllcache\advapi32.dll
    + 2004-08-05 12:00 . 2009-11-21 16:42 470528 c:\windows\system32\dllcache\aclayers.dll
    + 2004-08-05 12:00 . 2010-02-12 04:46 100864 c:\windows\system32\dllcache\6to4svc.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 152064 c:\windows\system32\cdfview.dll
    + 2004-08-05 12:00 . 2010-04-20 05:47 285696 c:\windows\system32\atmfd.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 285696 c:\windows\system32\atmfd.dll
    + 2004-08-05 12:00 . 2009-03-08 09:32 128512 c:\windows\system32\advpack.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 685056 c:\windows\system32\advapi32.dll
    + 2004-08-05 12:00 . 2009-02-09 10:20 685056 c:\windows\system32\advapi32.dll
    + 2004-08-05 12:00 . 2010-02-12 04:46 100864 c:\windows\system32\6to4svc.dll
    - 2011-02-12 14:29 . 2008-07-09 07:40 406392 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\update\updspapi.dll
    - 2011-02-12 14:29 . 2008-07-09 07:40 767352 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\update\update.exe
    - 2011-02-12 14:29 . 2008-07-09 07:40 234872 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\spuninst.exe
    - 2008-02-15 22:03 . 2008-02-15 22:03 370176 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\sp2qfe\spru040c.dll
    - 2011-02-12 14:40 . 2007-03-06 01:35 394976 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\update\updspapi.dll
    - 2011-02-12 14:40 . 2007-03-06 01:34 727776 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\update\update.exe
    - 2011-02-12 14:40 . 2007-03-06 01:34 216800 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\spuninst.exe
    - 2008-02-26 11:49 . 2008-02-26 11:49 297984 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\sp2qfe\msctf.dll
    - 2008-02-26 12:00 . 2008-02-26 12:00 294912 c:\windows\SoftwareDistribution\Download\84038f12b67b8dc8dad77010a3ebfdc7\sp2gdr\msctf.dll
    - 2011-02-12 14:40 . 2010-02-22 14:25 406392 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\update\updspapi.dll
    - 2011-02-12 14:40 . 2009-05-26 11:40 767352 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\update\update.exe
    - 2011-02-12 14:40 . 2008-07-08 13:03 234872 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\spuninst.exe
    - 2011-02-12 14:40 . 2010-05-06 10:27 919040 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\wininet.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 206848 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\occache.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 611840 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\mstime.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 599040 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\msfeeds.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 247808 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\ieproxy.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 184320 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\iepeers.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 743424 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\iedvtool.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 387584 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\iedkcs32.dll
    - 2011-02-12 14:40 . 2010-05-05 13:55 173056 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\ie4uinit.exe
    - 2011-02-12 14:40 . 2010-05-06 10:33 916480 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\wininet.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 206848 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\occache.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 611840 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\mstime.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 599040 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\msfeeds.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 247808 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\ieproxy.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 184320 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\iepeers.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 743424 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\iedvtool.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 387584 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\iedkcs32.dll
    - 2011-02-12 14:40 . 2010-05-05 13:30 173056 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\ie4uinit.exe
    + 2011-02-12 14:09 . 2010-06-14 14:30 743936 c:\windows\pchealth\helpctr\binaries\helpsvc.exe
    - 2011-02-12 14:09 . 2004-08-05 12:00 743936 c:\windows\pchealth\helpctr\binaries\HelpSvc.exe
    + 2011-02-24 13:05 . 2011-02-24 13:05 886784 c:\windows\Installer\2fe33c.msi
    - 2011-02-12 14:58 . 2009-03-08 03:34 914944 c:\windows\ie8updates\KB982381-IE8\wininet.dll
    + 2011-02-12 14:58 . 2009-03-08 09:34 914944 c:\windows\ie8updates\KB982381-IE8\wininet.dll
    + 2011-02-24 13:24 . 2010-02-22 14:25 406392 c:\windows\ie8updates\KB982381-IE8\updspapi.dll
    + 2011-02-24 13:24 . 2009-05-26 11:40 767352 c:\windows\ie8updates\KB982381-IE8\update.exe
    + 2011-02-24 13:24 . 2008-07-08 13:03 234872 c:\windows\ie8updates\KB982381-IE8\spuninst.exe
    + 2011-02-12 14:58 . 2009-03-08 09:34 109568 c:\windows\ie8updates\KB982381-IE8\occache.dll
    - 2011-02-12 14:58 . 2009-03-08 03:34 109568 c:\windows\ie8updates\KB982381-IE8\occache.dll
    + 2011-02-12 14:58 . 2009-03-08 09:32 611840 c:\windows\ie8updates\KB982381-IE8\mstime.dll
    - 2011-02-12 14:58 . 2009-03-08 03:32 611840 c:\windows\ie8updates\KB982381-IE8\mstime.dll
    - 2011-02-12 14:58 . 2009-03-08 03:31 183808 c:\windows\ie8updates\KB982381-IE8\iepeers.dll
    + 2011-02-12 14:58 . 2009-03-08 09:31 183808 c:\windows\ie8updates\KB982381-IE8\iepeers.dll
    + 2011-02-12 14:58 . 2009-03-08 19:09 391536 c:\windows\ie8updates\KB982381-IE8\iedkcs32.dll
    - 2011-02-12 14:58 . 2009-03-08 13:09 391536 c:\windows\ie8updates\KB982381-IE8\iedkcs32.dll
    - 2011-02-12 14:58 . 2009-03-08 03:32 173056 c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
    + 2011-02-12 14:58 . 2009-03-08 09:32 173056 c:\windows\ie8updates\KB982381-IE8\ie4uinit.exe
    + 2011-02-12 14:57 . 2009-01-07 23:21 406048 c:\windows\ie8\spuninst\updspapi.dll
    - 2011-02-12 14:57 . 2009-01-07 17:21 406048 c:\windows\ie8\spuninst\updspapi.dll
    + 2011-02-12 14:57 . 2009-01-07 23:21 235040 c:\windows\ie8\spuninst\spuninst.exe
    - 2011-02-12 14:57 . 2009-01-07 17:21 235040 c:\windows\ie8\spuninst\spuninst.exe
    + 2011-02-24 13:23 . 2010-04-16 15:36 532480 c:\windows\ie8\mstime.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 532480 c:\windows\ie8\mstime.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 146432 c:\windows\ie8\msrating.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 146432 c:\windows\ie8\msrating.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 146432 c:\windows\ie8\msls31.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 146432 c:\windows\ie8\msls31.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 449024 c:\windows\ie8\mshtmled.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 449024 c:\windows\ie8\mshtmled.dll
    + 2011-02-24 13:23 . 2009-08-21 06:51 450560 c:\windows\ie8\jscript.dll
    - 2011-02-12 14:57 . 2009-08-21 06:51 450560 c:\windows\ie8\jscript.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 251392 c:\windows\ie8\iepeers.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 251392 c:\windows\ie8\iepeers.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 323584 c:\windows\ie8\iedkcs32.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 323584 c:\windows\ie8\iedkcs32.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 245760 c:\windows\ie8\ieakui.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 245760 c:\windows\ie8\ieakui.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 221696 c:\windows\ie8\ieaksie.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 221696 c:\windows\ie8\ieaksie.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 139264 c:\windows\ie8\ieakeng.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 139264 c:\windows\ie8\ieakeng.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 205312 c:\windows\ie8\dxtrans.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 205312 c:\windows\ie8\dxtrans.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 357888 c:\windows\ie8\dxtmsft.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 357888 c:\windows\ie8\dxtmsft.dll
    + 2011-02-24 13:23 . 2004-08-05 12:00 101888 c:\windows\ie8\advpack.dll
    - 2011-02-12 14:57 . 2004-08-05 12:00 101888 c:\windows\ie8\advpack.dll
    + 2011-02-24 03:50 . 2010-02-24 12:31 454016 c:\windows\Driver Cache\i386\mrxsmb.sys
    + 2011-02-24 12:16 . 2008-06-14 17:59 272768 c:\windows\Driver Cache\i386\bthport.sys
    + 2004-08-05 12:00 . 2009-11-21 16:42 470528 c:\windows\AppPatch\aclayers.dll
    - 2011-02-12 14:21 . 2005-05-04 13:45 395488 c:\windows\$MSI31Uninstall_KB893803v2$\spuninst\updspapi.dll
    - 2011-02-12 14:21 . 2005-05-04 13:45 213216 c:\windows\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe
    - 2011-02-12 14:39 . 2009-05-26 16:11 406392 c:\windows\$hf_mig$\KB975561\update\updspapi.dll
    - 2011-02-12 14:41 . 2009-05-26 16:11 406392 c:\windows\$hf_mig$\KB955759\update\updspapi.dll
    - 2011-02-12 14:40 . 2010-02-22 18:55 406392 c:\windows\$hf_mig$\KB2229593\update\updspapi.dll
    - 2011-02-12 14:26 . 2009-08-13 13:56 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
    + 2011-02-24 12:18 . 2009-08-13 13:56 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
    + 2011-02-12 14:26 . 2009-08-13 13:56 1748992 c:\windows\WinSxS\InstallTemp\1699536\GdiPlus.dll
    + 2011-02-12 14:09 . 2009-08-07 00:23 1929952 c:\windows\system32\wuaueng.dll
    + 2004-08-05 12:00 . 2010-04-03 08:33 2365288 c:\windows\system32\WMVCore.dll
    + 2004-08-05 12:00 . 2010-02-16 12:27 4734976 c:\windows\system32\wmp.dll
    + 2004-08-05 12:00 . 2008-06-10 16:37 1026048 c:\windows\system32\WMNetmgr.dll
    + 2004-08-05 12:00 . 2010-05-02 08:26 1851008 c:\windows\system32\win32k.sys
    + 2004-08-05 12:00 . 2010-05-06 10:33 1209344 c:\windows\system32\urlmon.dll
    + 2004-08-05 12:00 . 2008-07-03 13:15 8510976 c:\windows\system32\shell32.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 1506816 c:\windows\system32\shdocvw.dll
    + 2004-08-05 12:00 . 2009-07-17 16:26 1440768 c:\windows\system32\query.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 1440768 c:\windows\system32\query.dll
    + 2004-08-05 12:00 . 2010-02-05 18:39 1297408 c:\windows\system32\quartz.dll
    + 2004-08-05 12:00 . 2010-02-16 19:32 2139136 c:\windows\system32\ntoskrnl.exe
    + 2004-08-04 00:49 . 2010-02-16 19:32 2018816 c:\windows\system32\ntkrnlpa.exe
    + 2009-08-19 22:07 . 2009-08-19 22:07 1415000 c:\windows\system32\msxml6.dll
    + 2004-08-05 12:00 . 2009-07-31 04:58 1172480 c:\windows\system32\msxml3.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 2890240 c:\windows\system32\msi.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 5950976 c:\windows\system32\mshtml.dll
    + 2004-08-05 12:00 . 2009-03-21 14:20 1051136 c:\windows\system32\kernel32.dll
    + 2011-02-12 14:09 . 2009-08-07 00:23 1929952 c:\windows\system32\dllcache\wuaueng.dll
    + 2004-08-05 12:00 . 2010-04-03 08:33 2365288 c:\windows\system32\dllcache\WMVCore.dll
    + 2004-08-05 12:00 . 2010-02-16 12:27 4734976 c:\windows\system32\dllcache\wmp.dll
    + 2004-08-05 12:00 . 2008-06-10 16:37 1026048 c:\windows\system32\dllcache\WMNetmgr.dll
    + 2004-08-05 12:00 . 2010-05-02 08:26 1851008 c:\windows\system32\dllcache\win32k.sys
    + 2004-08-05 12:00 . 2010-05-06 10:33 1209344 c:\windows\system32\dllcache\urlmon.dll
    + 2004-08-05 12:00 . 2008-07-03 13:15 8510976 c:\windows\system32\dllcache\shell32.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 1506816 c:\windows\system32\dllcache\shdocvw.dll
    - 2004-08-05 12:00 . 2004-08-05 12:00 1440768 c:\windows\system32\dllcache\query.dll
    + 2004-08-05 12:00 . 2009-07-17 16:26 1440768 c:\windows\system32\dllcache\query.dll
    + 2004-08-05 12:00 . 2010-02-05 18:39 1297408 c:\windows\system32\dllcache\quartz.dll
    + 2011-02-24 03:49 . 2010-02-16 19:33 2183424 c:\windows\system32\dllcache\ntoskrnl.exe
    + 2011-02-24 03:49 . 2010-02-16 19:32 2018816 c:\windows\system32\dllcache\ntkrpamp.exe
    + 2011-02-24 03:49 . 2010-02-16 19:33 2060416 c:\windows\system32\dllcache\ntkrnlpa.exe
    + 2011-02-24 03:49 . 2010-02-16 19:32 2139136 c:\windows\system32\dllcache\ntkrnlmp.exe
    + 2004-08-05 12:00 . 2009-07-31 04:58 1172480 c:\windows\system32\dllcache\msxml3.dll
    + 2011-02-12 14:09 . 2010-01-29 15:07 1315840 c:\windows\system32\dllcache\msoe.dll
    + 2004-08-05 12:00 . 2005-05-04 19:45 2890240 c:\windows\system32\dllcache\msi.dll
    + 2004-08-05 12:00 . 2010-05-06 10:33 5950976 c:\windows\system32\dllcache\mshtml.dll
    + 2011-02-12 14:09 . 2009-10-23 14:27 3555328 c:\windows\system32\dllcache\moviemk.exe
    - 2011-02-12 14:09 . 2004-08-05 12:00 3555328 c:\windows\system32\dllcache\moviemk.exe
    + 2004-08-05 12:00 . 2009-03-21 14:20 1051136 c:\windows\system32\dllcache\kernel32.dll
    + 2011-02-24 13:24 . 2010-05-06 10:33 1985536 c:\windows\system32\dllcache\iertutil.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 1056768 c:\windows\system32\dllcache\danim.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 1024000 c:\windows\system32\dllcache\browseui.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 1056768 c:\windows\system32\danim.dll
    + 2004-08-05 12:00 . 2010-04-16 15:36 1024000 c:\windows\system32\browseui.dll
    - 2008-06-17 19:04 . 2008-06-17 19:04 8518144 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\sp3qfe\shell32.dll
    - 2008-06-17 19:02 . 2008-06-17 19:02 8517632 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\sp3gdr\shell32.dll
    - 2008-07-03 13:03 . 2008-07-03 13:03 8517120 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\sp2qfe\shell32.dll
    - 2008-07-03 13:15 . 2008-07-03 13:15 8510976 c:\windows\SoftwareDistribution\Download\b4ee48f88dd9a2d8b18d0f229604ffc3\sp2gdr\shell32.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 1209856 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\urlmon.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 5953024 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\mshtml.dll
    - 2011-02-12 14:40 . 2010-05-06 10:27 1986048 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\iertutil.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 1209344 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\urlmon.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 5950976 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\mshtml.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 1985536 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\iertutil.dll
    - 2011-02-12 14:58 . 2009-03-08 03:34 1206784 c:\windows\ie8updates\KB982381-IE8\urlmon.dll
    + 2011-02-12 14:58 . 2009-03-08 09:34 1206784 c:\windows\ie8updates\KB982381-IE8\urlmon.dll
    + 2011-02-12 14:58 . 2009-03-08 09:41 5937152 c:\windows\ie8updates\KB982381-IE8\mshtml.dll
    - 2011-02-12 14:58 . 2009-03-08 03:41 5937152 c:\windows\ie8updates\KB982381-IE8\mshtml.dll
    - 2011-02-12 14:57 . 2010-04-16 15:36 3086336 c:\windows\ie8\mshtml.dll
    + 2011-02-24 13:23 . 2010-04-16 15:36 3086336 c:\windows\ie8\mshtml.dll
    + 2011-02-24 03:49 . 2010-02-16 19:33 2183424 c:\windows\Driver Cache\i386\ntoskrnl.exe
    + 2011-02-24 03:49 . 2010-02-16 19:32 2018816 c:\windows\Driver Cache\i386\ntkrpamp.exe
    + 2011-02-24 03:49 . 2010-02-16 19:33 2060416 c:\windows\Driver Cache\i386\ntkrnlpa.exe
    + 2011-02-24 03:49 . 2010-02-16 19:32 2139136 c:\windows\Driver Cache\i386\ntkrnlmp.exe
    + 2011-02-24 13:24 . 2010-05-06 10:33 11076096 c:\windows\system32\dllcache\ieframe.dll
    - 2010-05-06 14:57 . 2010-05-06 14:57 11078144 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3QFE\ieframe.dll
    - 2011-02-12 14:40 . 2010-05-06 10:33 11076096 c:\windows\SoftwareDistribution\Download\20e9dcb0bb08e135c6a58fb5643a8e2d\SP3GDR\ieframe.dll
    .
    -- Instantané actualisé --
    .
    ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
    REGEDIT4

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "M-Audio Taskbar Icon"="c:\windows\system32\M-AudioTaskBarIcon.exe" [2009-09-25 643592]
    "H2O"="c:\program files\SyncroSoft\Pos\H2O\cledx.exe" [2005-10-22 385024]
    "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-16 13529088]
    "SoundMan"="SOUNDMAN.EXE" [2011-02-16 577536]
    "nwiz"="nwiz.exe" [2008-05-16 1630208]
    "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-16 86016]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-05 15360]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "tscuninstall"="c:\windows\system32\tscupgrd.exe" [2004-08-05 44544]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
    BootExecute REG_MULTI_SZ autocheck autochk *\0sasnative32

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
    2011-02-13 15:30 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "c:\\Program Files\\uTorrent\\uTorrent.exe"=
    "c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=

    R0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [15/02/2011 07:41 28552]
    R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [12/02/2011 11:12 33792]
    S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?]
    S0 TFSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?]
    S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [13/02/2011 10:30 136176]
    S3 ADASPROT;SYSTWEAKASO; [x]
    S3 L6PODHD4;Service - Line 6 POD HD400;c:\windows\system32\drivers\L6PODHD4.sys [12/02/2011 10:38 579456]
    S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [24/01/2011 08:49 310640]
    S3 MAUSBFASTTRACKULTRA;Service for M-Audio Fast Track Ultra;c:\windows\system32\drivers\MAudioFastTrackUltra.sys [12/02/2011 10:34 135816]
    S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?]
    .
    Contenu du dossier 'Tâches planifiées'

    2011-02-18 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

    2011-02-24 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2011-02-13 15:30]

    2011-02-24 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2011-02-13 15:30]
    .
    .
    ------- Examen supplémentaire -------
    .
    IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
    IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
    FF - ProfilePath - c:\documents and settings\eric\Application Data\Mozilla\Firefox\Profiles\3bbdb37k.default\
    FF - prefs.js: browser.startup.homepage - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    FF - prefs.js: network.proxy.type - 0
    FF - Ext: Anti-bannière: KavAntiBanner@Kaspersky.ru - c:\program files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru
    FF - Ext: Analyse des liens (URL Advisor): linkfilter@kaspersky.ru - c:\program files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
    FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
    FF - Ext: Google Toolbar for Firefox: {3112ca9c-de6d-4884-a869-9855de68056c} - c:\documents and settings\All Users\Application Data\Google\Toolbar for Firefox\{3112ca9c-de6d-4884-a869-9855de68056c}
    FF - Ext: BitDefender QuickScan: {e001c731-5e37-4538-a5cb-8168736a2360} - %profile%\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}
    .

    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2011-02-24 09:06
    Windows 5.1.2600 Service Pack 2 NTFS

    Recherche de processus cachés ...

    Recherche d'éléments en démarrage automatique cachés ...

    Recherche de fichiers cachés ...

    Scan terminé avec succès
    Fichiers cachés: 0

    **************************************************************************
    .
    --------------------- CLES DE REGISTRE BLOQUEES ---------------------

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe,-101"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10m_ActiveX.exe"

    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"

    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    Heure de fin: 2011-02-24 09:08:06
    ComboFix-quarantined-files.txt 2011-02-24 14:08
    ComboFix2.txt 2011-02-24 03:30
    ComboFix3.txt 2011-02-23 18:13

    Avant-CF: 475 518 832 640 octets libres
    Après-CF: 475 500 507 136 octets libres

    - - End Of File - - 65580A9C2E7FDC9A3A299A5EEBC549E0
    0
  19. eric77
     
    ok maitenant je fais unscan avec roguekiller
    0
  20. eric77
     
    bon desoller le scan ne trouve rien
    RogueKiller V4.0.0 by Tigzy
    contact at https://www.luanagames.com/index.fr.html
    mail: tigzyRK<at>gmail<dot>com
    Feedback: https://www.luanagames.com/index.fr.html

    Operating System: Windows XP (5.1.2600 Service Pack 2) 32 bits version
    Started in : Normal mode
    User: eric [Admin rights]
    Mode: Scan -- Time : 24/02/2011 09:21:58

    Bad processes: 0

    Registry Entries: 0

    HOSTS File:
    127.0.0.1 localhost

    Finished

    RogueKiller V4.0.0 by Tigzy
    contact at https://www.luanagames.com/index.fr.html
    mail: tigzyRK<at>gmail<dot>com
    Feedback: https://www.luanagames.com/index.fr.html

    Operating System: Windows XP (5.1.2600 Service Pack 2) 32 bits version
    Started in : Normal mode
    User: eric [Admin rights]
    Mode: Scan -- Time : 24/02/2011 09:24:26

    Bad processes: 0

    Registry Entries: 0

    HOSTS File:
    127.0.0.1 localhost

    Finished
    0
    1. Tigzy Messages postés 7983 Statut Contributeur sécurité 582
       
      Désolé, je m'était trompé de personne... :)

      Télécharger sur le bureau
      Gmer
      = Clic sur ==> GMER Application: Gmer.zip
      = Clic-droit sur l'archive Gmer
      = Extraire ici ( ou extraire sans confirmation ou tout ou unzip)
      = Double-clic sur Gmer qui vient de se créer
      = Une fenêtre s'ouvre, clic Scan
      Patienter jusqu'à la fin du scan
      = Clic Save
      = Choisir => bureau => nommer : rapport
      0
  21. eric77
     
    salut enfin le scan est fini voici le rapport
    GMER 1.0.15.15530 - http://www.gmer.net
    Rootkit scan 2011-02-24 12:45:12
    Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-4 WDC_WD5000AACS-00G8B1 rev.05.04C05
    Running: i4cy9gwq.exe; Driver: C:\DOCUME~1\eric\LOCALS~1\Temp\kwtiykoc.sys

    ---- System - GMER 1.0.15 ----

    Code \??\C:\DOCUME~1\eric\LOCALS~1\Temp\catchme.sys pIofCallDriver

    ---- Kernel code sections - GMER 1.0.15 ----

    .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB9127360, 0x37388D, 0xE8000020]
    ? C:\DOCUME~1\eric\LOCALS~1\Temp\catchme.sys Le fichier spécifié est introuvable. !
    ? C:\WINDOWS\system32\Drivers\PROCEXP113.SYS Le fichier spécifié est introuvable. !

    ---- EOF - GMER 1.0.15 ----
    0
  • 1
  • 2