21 réponses
voila le rapport :
ComboFix 11-02-24.05 - gerard 03/03/2011 22:44:23.4.4 - x64
Microsoft Windows 7 Édition Familiale Premium 6.1.7600.0.1252.32.1036.18.3957.2605 [GMT 1:00]
Lancé depuis: c:\users\gerard\Desktop\ComboFix.exe
Commutateurs utilisés :: c:\users\gerard\Desktop\CFScript.txt
AV: AntiVir Desktop *Disabled/Outdated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
FW: ZoneAlarm Firewall *Enabled* {D17DF357-CFF5-F001-D1C1-FCD21DFE3D5E}
SP: AntiVir Desktop *Disabled/Outdated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
- Mode FONCTIONNALITES REDUITES -
FILE ::
"c:\windows\SysWOW64\ntoskrnl.exe"
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files (x86)\facemoods.com
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoods.crx
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoods.png
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsApp.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsEng.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsTlbr.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\uninstall.exe
c:\program files (x86)\facemoods.com\sqlite3.dll
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-02-03 au 2011-03-03 ))))))))))))))))))))))))))))))))))))
.
2011-03-03 21:45 . 2011-03-03 21:45 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-03-02 11:16 . 2011-03-02 11:21 -------- d-----w- c:\programdata\NOS
2011-03-02 11:16 . 2011-03-02 11:16 -------- d-----w- c:\program files (x86)\NOS
2011-03-02 11:09 . 2011-03-02 11:09 -------- d-----w- c:\programdata\FLEXnet
2011-03-02 10:58 . 2011-03-02 10:58 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2011-03-02 10:56 . 2011-03-02 11:02 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2011-03-02 10:56 . 2011-03-02 10:56 -------- d-----w- c:\users\gerard\AppData\Local\Autodesk
2011-03-02 10:56 . 2011-03-02 10:56 -------- d-----w- c:\program files\Autodesk
2011-03-02 10:55 . 2011-03-02 10:57 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared
2011-03-02 10:53 . 2011-03-02 11:10 -------- d-----w- c:\users\gerard\AppData\Roaming\Autodesk
2011-03-02 10:53 . 2011-03-02 11:09 -------- d-----w- c:\programdata\Autodesk
2011-03-02 10:43 . 2011-03-02 10:43 -------- d-----w- C:\Autodesk
2011-03-02 09:04 . 2011-03-02 09:04 -------- d-----w- c:\programdata\InstallMate
2011-03-02 09:02 . 2011-03-02 09:02 191488 ----a-w- c:\users\gerard\BflixInstaller.exe
2011-02-28 00:02 . 2011-02-28 00:02 -------- d-----w- c:\program files (x86)\SEAF
2011-02-27 23:14 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll
2011-02-27 23:14 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll
2011-02-27 23:12 . 2011-02-11 07:30 7947600 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{45D8239A-7F0E-4248-A881-A92EA5545B2E}\mpengine.dll
2011-02-25 07:24 . 2011-02-25 07:24 -------- d-----w- c:\program files (x86)\Ad-Remover
2011-02-24 22:11 . 2011-02-24 22:11 -------- d-----w- c:\windows\Sun
2011-02-24 21:28 . 2011-02-24 21:31 -------- d-----w- c:\program files (x86)\ZHPDiag
2011-02-24 00:54 . 2011-03-02 11:03 -------- d-----w- c:\users\gerard\AppData\Roaming\codeblocks
2011-02-23 23:27 . 2011-02-23 23:27 -------- d-----w- c:\program files (x86)\Common Files\Java
2011-02-23 19:02 . 2011-02-02 16:11 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-02-23 12:04 . 2011-02-23 12:04 -------- d-----w- c:\users\gerard\AppData\Roaming\Steinberg
2011-02-22 19:14 . 2011-02-22 19:14 -------- d-----w- c:\windows\SysWow64\Adobe
2011-02-19 23:00 . 2011-02-19 23:00 -------- d-----w- c:\program files (x86)\CodeBlocks
2011-02-19 03:07 . 2011-02-19 03:07 -------- d-----w- c:\users\Mcx1-GERARD-PC
2011-02-19 02:22 . 2011-02-19 02:24 -------- d--h--w- c:\windows\msdownld.tmp
2011-02-19 02:22 . 2011-02-19 02:26 -------- d-----w- c:\users\gerard\AppData\Roaming\XBMC
2011-02-18 13:59 . 2011-02-18 13:59 -------- d-----w- c:\users\gerard\AppData\Local\Mozilla
2011-02-18 13:58 . 2011-02-28 12:26 -------- d-----w- c:\program files (x86)\Mozilla Firefox 4.0 Beta 11
2011-02-18 07:39 . 2011-02-18 07:39 -------- d-----w- C:\Python27
2011-02-15 03:33 . 2011-02-15 03:33 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2011-02-15 03:33 . 2011-02-15 03:33 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2011-02-14 12:25 . 2011-02-14 12:25 -------- d-----w- c:\users\gerard\.thumbnails
2011-02-14 12:25 . 2011-02-14 12:25 -------- d-----w- c:\users\gerard\AppData\Roaming\Blender Foundation
2011-02-14 10:34 . 2011-02-14 10:34 -------- d-----w- c:\users\gerard\.idlerc
2011-02-14 09:47 . 2011-02-27 22:56 -------- d-----w- C:\Documents
2011-02-14 06:23 . 2011-02-14 06:23 -------- d-----w- c:\users\gerard\AppData\Roaming\LolClient
2011-02-14 00:05 . 2008-07-31 09:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2011-02-14 00:05 . 2008-07-31 09:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2011-02-14 00:05 . 2008-07-12 07:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2011-02-14 00:05 . 2008-07-12 07:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2011-02-14 00:05 . 2008-07-12 07:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2011-02-14 00:00 . 2011-02-14 00:00 -------- d-----w- C:\Riot Games
2011-02-13 18:05 . 2011-02-14 06:23 -------- d-----w- c:\users\gerard\AppData\Local\PMB Files
2011-02-13 18:05 . 2011-02-13 18:58 -------- d-----w- c:\programdata\PMB Files
2011-02-13 18:04 . 2011-02-13 18:04 -------- d-----w- c:\program files (x86)\Pando Networks
2011-02-02 13:31 . 2011-02-02 13:31 499712 ----a-w- c:\windows\SysWow64\msvcp71.dll
2011-02-02 13:31 . 2011-02-02 13:31 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-03 21:40 . 2011-03-03 21:40 1991492 ----a-w- C:\ntoskrnl.zip
2011-02-26 10:20 . 2011-01-14 19:11 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2011-02-02 20:40 . 2010-10-22 10:35 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
2011-01-14 19:11 . 2011-01-14 19:11 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-12-20 17:09 . 2010-12-27 20:54 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2010-12-20 17:08 . 2010-12-27 20:54 24152 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-12-19 17:40 . 2010-12-19 17:40 1548080 ----a-w- c:\windows\SysWow64\install.scr
2010-12-13 07:40 . 2010-12-27 21:20 83120 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-12-13 07:40 . 2010-12-27 21:20 116568 ----a-w- c:\windows\system32\drivers\avipbb.sys
.
((((((((((((((((((((((((((((( SnapShot@2011-02-25_18.03.53 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-02-27 23:10 . 2010-12-21 05:38 51200 c:\windows\SysWOW64\wscapi.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 14336 c:\windows\SysWOW64\slwga.dll
+ 2000-04-04 01:52 . 2000-04-04 01:52 94208 c:\windows\SysWOW64\msstkprp.dll
- 2010-12-27 23:50 . 2010-11-04 05:49 67072 c:\windows\SysWOW64\mshtmled.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 67072 c:\windows\SysWOW64\mshtmled.dll
- 2010-12-27 23:49 . 2010-11-04 05:46 12800 c:\windows\SysWOW64\msfeedssync.exe
+ 2011-02-27 23:10 . 2010-12-18 05:26 12800 c:\windows\SysWOW64\msfeedssync.exe
- 2010-12-27 23:50 . 2010-11-04 05:49 64512 c:\windows\SysWOW64\msfeedsbs.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 64512 c:\windows\SysWOW64\msfeedsbs.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 44544 c:\windows\SysWOW64\licmgr10.dll
- 2010-12-27 23:49 . 2010-11-04 05:48 44544 c:\windows\SysWOW64\licmgr10.dll
+ 2011-02-27 23:10 . 2010-12-21 05:34 80384 c:\windows\SysWOW64\davclnt.dll
+ 2010-11-15 08:19 . 2011-03-03 18:59 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2010-11-15 08:19 . 2011-02-25 17:27 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-07-14 04:54 . 2011-02-25 17:27 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2011-03-03 21:46 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-02-25 17:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-03-03 21:46 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-03-03 21:46 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-02-25 17:27 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-12-27 23:51 . 2010-10-20 04:54 34304 c:\windows\SysWOW64\atmlib.dll
+ 2011-02-27 23:10 . 2011-01-07 07:27 34304 c:\windows\SysWOW64\atmlib.dll
- 2009-07-13 23:48 . 2009-07-14 01:41 97280 c:\windows\system32\wscsvc.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 97280 c:\windows\system32\wscsvc.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 62976 c:\windows\system32\wscapi.dll
+ 2010-10-22 11:16 . 2011-03-02 09:24 49452 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-03-03 20:14 34222 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-11-12 01:18 . 2011-03-03 20:14 15304 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-118899141-2189773999-3650851856-1001_UserData.bin
+ 2011-02-27 23:10 . 2010-12-21 06:15 15360 c:\windows\system32\slwga.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 97280 c:\windows\system32\mshtmled.dll
- 2010-12-27 23:50 . 2010-11-04 06:32 97280 c:\windows\system32\mshtmled.dll
+ 2011-02-27 23:10 . 2010-12-18 06:08 12288 c:\windows\system32\msfeedssync.exe
- 2010-12-27 23:49 . 2010-11-04 06:28 12288 c:\windows\system32\msfeedssync.exe
+ 2011-02-27 23:10 . 2010-12-18 06:12 82944 c:\windows\system32\msfeedsbs.dll
- 2010-12-27 23:50 . 2010-11-04 06:32 82944 c:\windows\system32\msfeedsbs.dll
- 2010-12-27 23:49 . 2010-11-04 06:31 57856 c:\windows\system32\licmgr10.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 57856 c:\windows\system32\licmgr10.dll
- 2010-11-11 20:19 . 2011-02-23 10:19 49152 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 20:19 . 2011-02-27 23:53 49152 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-11-11 20:19 . 2011-02-23 10:19 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-11-11 20:19 . 2011-02-27 23:53 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-02-27 23:53 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-02-23 10:19 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-12-27 23:51 . 2010-10-20 05:20 46080 c:\windows\system32\atmlib.dll
+ 2011-02-27 23:10 . 2011-01-07 08:06 46080 c:\windows\system32\atmlib.dll
+ 2010-02-10 06:16 . 2010-02-10 06:16 45280 c:\windows\system32\AcSignIcon.dll
+ 2010-02-16 13:45 . 2010-02-16 13:45 17224 c:\windows\system32\AcSignExtRes.dll
+ 2010-02-10 06:16 . 2010-02-10 06:16 35040 c:\windows\system32\AcSignExt.dll
+ 2010-11-11 18:59 . 2011-03-03 20:14 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-11-11 18:59 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:46 . 2011-03-02 18:03 78720 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2010-11-11 18:59 . 2011-03-03 20:14 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-11-11 18:59 . 2011-02-25 17:27 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-11-11 18:59 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-11 18:59 . 2011-03-03 20:14 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 21:04 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 21:04 . 2011-03-03 21:13 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 22:08 . 2011-02-27 23:14 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\index.dat
- 2010-11-11 22:08 . 2011-02-25 18:03 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\index.dat
- 2010-11-11 21:04 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-11 21:04 . 2011-03-03 21:13 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 17:50 . 2010-12-28 03:58 34144 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\oisicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 34144 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\oisicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 42848 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\msouc.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 42848 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\msouc.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 19296 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 19296 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-11-13 05:27 . 2011-02-27 23:13 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
- 2010-11-13 05:27 . 2010-11-13 05:27 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2010-02-16 13:46 . 2010-02-16 13:46 25416 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\CustomRes.dll
+ 2010-02-16 13:46 . 2010-02-16 13:46 25416 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\CustomRes.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 12512 c:\windows\assembly\GAC_MSIL\Ac32BitAppServer\1.0.0.0__7208edf2a10162b1\Ac32BitAppServer.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2011-02-26 19:04 . 2011-02-26 19:04 9560 c:\windows\system32\NetworkList\Icons\{4C29A6C2-59BF-4C3E-BCBC-657493B90C93}_48.bin
+ 2011-02-26 19:04 . 2011-02-26 19:04 4280 c:\windows\system32\NetworkList\Icons\{4C29A6C2-59BF-4C3E-BCBC-657493B90C93}_32.bin
+ 2011-02-26 19:04 . 2011-02-26 19:04 2456 c:\windows\system32\NetworkList\Icons\{4C29A6C2-59BF-4C3E-BCBC-657493B90C93}_24.bin
- 2011-02-25 17:25 . 2011-02-25 17:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-03-03 21:46 . 2011-03-03 21:46 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-03-03 21:46 . 2011-03-03 21:46 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2011-02-25 17:25 . 2011-02-25 17:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-02-27 23:10 . 2010-11-02 04:41 135168 c:\windows\SysWOW64\XpsRasterService.dll
- 2009-07-14 00:15 . 2009-07-14 01:16 135168 c:\windows\SysWOW64\XpsRasterService.dll
+ 2011-02-27 23:10 . 2011-01-07 07:31 442880 c:\windows\SysWOW64\XpsPrint.dll
+ 2011-02-27 23:10 . 2011-01-07 07:31 288256 c:\windows\SysWOW64\XpsGdiConverter.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 981504 c:\windows\SysWOW64\wininet.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 350720 c:\windows\SysWOW64\winhttp.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 204800 c:\windows\SysWOW64\WebClnt.dll
+ 2011-02-27 23:10 . 2011-01-05 05:37 428032 c:\windows\SysWOW64\vbscript.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 204288 c:\windows\SysWOW64\upnp.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 606208 c:\windows\SysWOW64\mstime.dll
- 2010-12-27 23:50 . 2010-11-04 05:49 606208 c:\windows\SysWOW64\mstime.dll
- 2010-12-27 23:50 . 2010-11-04 05:49 599040 c:\windows\SysWOW64\msfeeds.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 599040 c:\windows\SysWOW64\msfeeds.dll
+ 2011-03-02 11:18 . 2011-03-02 11:18 234656 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.exe
+ 2011-03-02 11:18 . 2011-03-02 11:18 311456 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.dll
+ 2011-02-28 07:31 . 2011-02-28 07:31 234656 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10m_Plugin.exe
+ 2011-02-27 23:10 . 2010-12-18 05:29 541184 c:\windows\SysWOW64\kerberos.dll
- 2009-07-13 23:35 . 2009-07-14 01:15 541184 c:\windows\SysWOW64\kerberos.dll
+ 2011-02-27 23:10 . 2011-01-05 05:34 716800 c:\windows\SysWOW64\jscript.dll
- 2010-10-22 13:07 . 2010-10-22 13:07 716800 c:\windows\SysWOW64\jscript.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 185856 c:\windows\SysWOW64\iepeers.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 185856 c:\windows\SysWOW64\iepeers.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 381440 c:\windows\SysWOW64\iedkcs32.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 381440 c:\windows\SysWOW64\iedkcs32.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 218624 c:\windows\SysWOW64\d3d10_1core.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 161792 c:\windows\SysWOW64\d3d10_1.dll
- 2009-07-13 23:27 . 2009-07-14 01:15 161792 c:\windows\SysWOW64\d3d10_1.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 739840 c:\windows\SysWOW64\d2d1.dll
+ 2011-02-27 23:10 . 2011-01-07 05:33 294400 c:\windows\SysWOW64\atmfd.dll
- 2010-12-27 23:51 . 2010-10-20 02:58 294400 c:\windows\SysWOW64\atmfd.dll
+ 2011-02-27 23:10 . 2010-11-02 05:18 229888 c:\windows\system32\XpsRasterService.dll
- 2009-07-14 00:37 . 2009-07-14 01:41 229888 c:\windows\system32\XpsRasterService.dll
+ 2011-02-27 23:10 . 2011-01-07 08:07 662528 c:\windows\system32\XpsPrint.dll
+ 2011-02-27 23:10 . 2011-01-07 08:07 475648 c:\windows\system32\XpsGdiConverter.dll
- 2009-07-13 23:38 . 2009-07-14 01:41 214016 c:\windows\system32\winsrv.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 214016 c:\windows\system32\winsrv.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 442880 c:\windows\system32\winhttp.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 258048 c:\windows\system32\WebClnt.dll
+ 2010-11-12 01:28 . 2011-03-03 09:08 275022 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2010-11-12 01:12 . 2011-03-03 20:12 298276 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2010-10-22 13:07 . 2010-10-22 13:07 612352 c:\windows\system32\vbscript.dll
+ 2011-02-27 23:10 . 2011-01-05 06:20 612352 c:\windows\system32\vbscript.dll
+ 2011-02-27 23:10 . 2010-12-21 06:15 264192 c:\windows\system32\upnp.dll
- 2009-07-14 15:24 . 2011-02-17 21:41 695004 c:\windows\system32\perfh00C.dat
+ 2009-07-14 15:24 . 2011-03-02 18:45 695004 c:\windows\system32\perfh00C.dat
+ 2009-07-14 02:36 . 2011-03-02 18:45 607190 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2011-02-17 21:41 607190 c:\windows\system32\perfh009.dat
+ 2009-07-14 15:24 . 2011-03-02 18:45 127684 c:\windows\system32\perfc00C.dat
- 2009-07-14 15:24 . 2011-02-17 21:41 127684 c:\windows\system32\perfc00C.dat
- 2009-07-14 02:36 . 2011-02-17 21:41 103568 c:\windows\system32\perfc009.dat
+ 2009-07-14 02:36 . 2011-03-02 18:45 103568 c:\windows\system32\perfc009.dat
- 2010-12-27 23:50 . 2010-11-04 06:32 703488 c:\windows\system32\msfeeds.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 703488 c:\windows\system32\msfeeds.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 714752 c:\windows\system32\kerberos.dll
- 2010-10-22 13:07 . 2010-10-22 13:07 852480 c:\windows\system32\jscript.dll
+ 2011-02-27 23:10 . 2011-01-05 06:16 852480 c:\windows\system32\jscript.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 256000 c:\windows\system32\iepeers.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 256000 c:\windows\system32\iepeers.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 445952 c:\windows\system32\iedkcs32.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 445952 c:\windows\system32\iedkcs32.dll
+ 2009-07-14 04:45 . 2011-03-02 11:07 489192 c:\windows\system32\FNTCACHE.DAT
+ 2011-02-27 23:10 . 2011-01-26 06:53 265088 c:\windows\system32\drivers\dxgmms1.sys
+ 2011-02-27 23:10 . 2011-01-26 06:53 982912 c:\windows\system32\drivers\dxgkrnl.sys
+ 2011-02-27 23:10 . 2010-12-21 06:10 100864 c:\windows\system32\davclnt.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 320512 c:\windows\system32\d3d10_1core.dll
- 2009-07-13 23:41 . 2009-07-14 01:40 197120 c:\windows\system32\d3d10_1.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 197120 c:\windows\system32\d3d10_1.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 902656 c:\windows\system32\d2d1.dll
+ 2011-02-27 23:10 . 2011-01-26 06:31 144384 c:\windows\system32\cdd.dll
- 2010-10-22 13:07 . 2010-10-22 13:07 144384 c:\windows\system32\cdd.dll
+ 2011-02-27 23:10 . 2011-01-07 05:49 366080 c:\windows\system32\atmfd.dll
+ 2010-02-10 06:16 . 2010-02-10 06:16 432864 c:\windows\system32\AcSignOpt.exe
+ 2010-11-12 01:13 . 2011-03-02 12:45 632728 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2009-07-14 05:01 . 2011-03-03 21:46 430720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-02-25 07:26 . 2011-03-03 12:46 813632 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-118899141-2189773999-3650851856-1001-12288.dat
+ 2009-07-21 23:23 . 2009-07-21 23:23 199680 c:\windows\Installer\d3e2c.msi
+ 2009-07-12 15:43 . 2009-07-12 15:43 231936 c:\windows\Installer\56fef3.msi
+ 2009-08-27 20:39 . 2009-08-27 20:39 223232 c:\windows\Installer\56feed.msi
+ 2011-03-02 10:56 . 2011-03-02 10:56 458752 c:\windows\Installer\{CD1E078C-A6B9-47DA-B035-6365C85C7832}\ARPPRODUCTICON.exe
+ 2011-03-02 10:55 . 2011-03-02 10:55 458752 c:\windows\Installer\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}\ARPPRODUCTICON.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 415584 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pubs.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 415584 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pubs.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 303456 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\outicon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 303456 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\outicon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 571232 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\misc.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 571232 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\misc.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 326496 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\joticon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 326496 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\joticon.exe
+ 2010-02-16 13:46 . 2010-02-16 13:46 299336 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\InstRes.dll
+ 2010-02-10 07:36 . 2010-02-10 07:36 310496 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\InstBasicUI.dll
+ 2011-03-02 11:02 . 2011-03-02 11:02 460288 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\Acad162_icon.exe
+ 2010-02-16 13:46 . 2010-02-16 13:46 299336 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\InstRes.dll
+ 2010-02-10 07:36 . 2010-02-10 07:36 310496 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\InstBasicUI.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 460288 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\Acad162_icon.exe
+ 2010-02-16 13:46 . 2010-02-16 13:46 116040 c:\windows\Downloaded Program Files\IDropFRA.dll
+ 2010-02-10 06:17 . 2010-02-10 06:17 113888 c:\windows\Downloaded Program Files\IDropENU.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 150896 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop\18.1.0.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 153336 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop\17.1.51.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 145144 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop\17.0.54.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 820984 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop.Common\17.0.54.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.Common.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 1228288 c:\windows\SysWOW64\urlmon.dll
+ 2011-02-27 23:10 . 2010-10-27 04:43 3901824 c:\windows\SysWOW64\ntoskrnl.exe
+ 2011-02-27 23:10 . 2010-10-27 04:43 3957120 c:\windows\SysWOW64\ntkrnlpa.exe
+ 2011-02-27 23:10 . 2010-10-27 04:40 1293120 c:\windows\SysWOW64\ntdll.dll
+ 2011-02-27 23:10 . 2010-12-21 05:36 1389568 c:\windows\SysWOW64\msxml6.dll
+ 2011-02-27 23:10 . 2010-12-21 05:36 1236992 c:\windows\SysWOW64\msxml3.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 5980672 c:\windows\SysWOW64\mshtml.dll
+ 2010-10-22 10:34 . 2011-02-28 07:31 6053536 c:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 2063360 c:\windows\SysWOW64\iertutil.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 2063360 c:\windows\SysWOW64\iertutil.dll
- 2009-07-13 23:44 . 2009-07-14 01:15 1495040 c:\windows\SysWOW64\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-06-26 05:14 1495040 c:\windows\SysWOW64\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 1074176 c:\windows\SysWOW64\DWrite.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 1170944 c:\windows\SysWOW64\d3d10warp.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 1197056 c:\windows\system32\wininet.dll
+ 2011-02-27 23:10 . 2011-01-05 04:00 3127808 c:\windows\system32\win32k.sys
+ 2011-02-27 23:10 . 2010-12-21 06:15 1498112 c:\windows\system32\urlmon.dll
+ 2011-02-27 23:10 . 2010-10-27 05:18 5510528 c:\windows\system32\ntoskrnl.exe
+ 2011-02-27 23:10 . 2010-10-27 05:16 1739176 c:\windows\system32\ntdll.dll
+ 2011-02-27 23:10 . 2010-12-21 06:13 2003968 c:\windows\system32\msxml6.dll
+ 2011-02-27 23:10 . 2010-12-21 06:13 1880576 c:\windows\system32\msxml3.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 1026560 c:\windows\system32\mstime.dll
- 2010-12-27 23:50 . 2010-11-04 06:32 1026560 c:\windows\system32\mstime.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 9302528 c:\windows\system32\mshtml.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 2447872 c:\windows\system32\iertutil.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 2447872 c:\windows\system32\iertutil.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 1133568 c:\windows\system32\FntCache.dll
- 2009-07-13 23:57 . 2009-07-14 01:40 1863680 c:\windows\system32\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-06-26 05:31 1863680 c:\windows\system32\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 1540608 c:\windows\system32\DWrite.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 1837568 c:\windows\system32\d3d10warp.dll
+ 2009-07-14 04:45 . 2011-03-02 11:10 3802522 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
- 2009-07-14 04:45 . 2011-02-18 09:11 3802522 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2011-01-14 10:56 . 2011-01-14 10:56 3458560 c:\windows\Installer\d3e4a.msp
+ 2010-02-16 14:28 . 2010-02-16 14:28 5034496 c:\windows\Installer\56ff97.msi
+ 2010-02-10 08:03 . 2010-02-10 08:03 8354816 c:\windows\Installer\56ff0a.msi
+ 2010-01-10 21:02 . 2010-01-10 21:02 1152408 c:\windows\Installer\56ff02.msi
+ 2010-01-10 21:02 . 2010-01-10 21:02 1122816 c:\windows\Installer\56fefd.msi
+ 2009-10-12 08:29 . 2009-10-12 08:29 8010752 c:\windows\Installer\56fef8.msi
+ 2010-11-11 17:50 . 2011-02-27 23:15 1479520 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\xlicons.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 1479520 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\xlicons.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 1858400 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 1858400 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 4520288 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\promoicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 4520288 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\promoicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 3792736 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pptico.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 3792736 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pptico.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 1449312 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\accicons.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 1449312 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\accicons.exe
+ 2011-03-02 10:59 . 2011-03-02 10:59 5742592 c:\windows\assembly\NativeImages_v2.0.50727_64\AdWindows\ad91dd7972b96b4fa7f39297d255474d\AdWindows.ni.dll
+ 2011-03-02 10:59 . 2011-03-02 10:59 2654208 c:\windows\assembly\NativeImages_v2.0.50727_64\AcWindows\0e86d9d363b544842e715e6bbcb67ce5\AcWindows.ni.dll
+ 2011-03-02 10:59 . 2011-03-02 10:59 7741952 c:\windows\assembly\NativeImages_v2.0.50727_64\acmgd\5f9f2f1ccdb9a332756b297a3a6902f5\acmgd.ni.dll
+ 2011-03-02 10:59 . 2011-03-02 10:59 1817088 c:\windows\assembly\NativeImages_v2.0.50727_64\AcLayer\883d3c9c3bdc60d5bef5049743225ebd\AcLayer.ni.dll
+ 2011-03-02 10:58 . 2011-03-02 10:58 2169344 c:\windows\assembly\NativeImages_v2.0.50727_64\AcCui\a4acba33c1be8959b19f318ad77ecda8\AcCui.ni.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 1846640 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop.Common\18.1.0.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.Common.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 1103608 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop.Common\17.1.51.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.Common.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-02-27 23:10 . 2010-12-21 05:35 10989056 c:\windows\SysWOW64\ieframe.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 10989056 c:\windows\SysWOW64\ieframe.dll
- 2009-07-14 02:34 . 2011-02-25 07:40 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2009-07-14 02:34 . 2011-03-03 16:46 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2010-11-14 17:55 . 2011-02-04 16:51 39403464 c:\windows\system32\MRT.exe
+ 2011-02-27 23:10 . 2010-12-21 06:11 12369408 c:\windows\system32\ieframe.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 12369408 c:\windows\system32\ieframe.dll
+ 2011-02-27 23:12 . 2011-02-27 23:12 20304384 c:\windows\Installer\d3e36.msp
+ 2011-03-02 10:58 . 2011-03-02 10:58 14931968 c:\windows\assembly\NativeImages_v2.0.50727_64\acdbmgd\8f837b9cd6ed2c5599119eac23782497\acdbmgd.ni.dll
.
-- Instantané actualisé --
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{91da5e8a-3318-4f8c-b67e-5964de3ab546}"= "c:\program files (x86)\ZoneAlarm_Security\tbZone.dll" [2010-12-01 2735200]
[HKEY_CLASSES_ROOT\clsid\{91da5e8a-3318-4f8c-b67e-5964de3ab546}]
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{91da5e8a-3318-4f8c-b67e-5964de3ab546}]
2010-12-01 10:27 2735200 ----a-w- c:\program files (x86)\ZoneAlarm_Security\tbZone.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{91da5e8a-3318-4f8c-b67e-5964de3ab546}"= "c:\program files (x86)\ZoneAlarm_Security\tbZone.dll" [2010-12-01 2735200]
[HKEY_CLASSES_ROOT\clsid\{91da5e8a-3318-4f8c-b67e-5964de3ab546}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-11-11 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-18 98304]
"Dell DataSafe Online"="c:\program files (x86)\Dell DataSafe Online\DataSafeOnline.exe" [2010-02-09 1807680]
"Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2009-06-24 409744]
"Desktop Disc Tool"="c:\program files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe" [2009-10-15 498160]
"DellSupportCenter"="c:\program files (x86)\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-09-08 421888]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-01-30 35736]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 932288]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2010-12-13 281768]
"ZoneAlarm Client"="c:\program files (x86)\Zone Labs\ZoneAlarm\zlclient.exe" [2010-11-16 1043968]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2010-09-24 421160]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
c:\users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2010 - Capture d''cran et lancement.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2010-3-29 227712]
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock First Run.lnk - c:\program files\Dell\DellDock\DellDock.exe [2009-12-16 1324384]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]
@="Service"
R2 gupdate;Service Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-11 136176]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-03-02 1436424]
R3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe [2009-07-14 27136]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2010-04-19 50688]
R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-11-13 1255736]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
S0 stdflt;Disk Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdflt.sys [2009-07-23 18792]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_0057cbec48a2d7cf\AESTSr64.exe [2009-03-02 89600]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-18 202752]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2010-12-13 135336]
S2 DockLoginService;Dock Login Service;c:\program files\Dell\DellDock\DockLogin.exe [2009-06-09 155648]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 InstallFilterService;FF Install Filter Service;c:\program files (x86)\STMicroelectronics\Accelerometer\InstallFilterService.exe [2009-06-23 60928]
S2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\CheckPoint\ZAForceField\ISWKL.sys [2010-11-05 33528]
S2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\CheckPoint\ZAForceField\IswSvc.exe [2010-11-05 822264]
S2 rimspci;rimspci;c:\windows\system32\DRIVERS\rimspe64.sys [2009-07-02 60416]
S2 risdpcie;risdpcie;c:\windows\system32\DRIVERS\risdpe64.sys [2009-07-01 80896]
S2 rixdpcie;rixdpcie;c:\windows\system32\DRIVERS\rixdpe64.sys [2009-07-04 55808]
S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [2010-08-20 689472]
S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2320920]
S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Acceler.sys [2009-07-24 23912]
S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [2009-06-15 172704]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2009-10-12 151040]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-08-20 239616]
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
Contenu du dossier 'Tâches planifiées'
2011-03-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-11 21:17]
2011-03-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-11 21:17]
.
--------- x86-64 -----------
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-01-20 487424]
"Broadcom Wireless Manager UI"="c:\program files\Dell\DW WLAN Card\WLTRAY.exe" [2009-12-16 5470208]
"FreeFallProtection"="c:\program files (x86)\STMicroelectronics\Accelerometer\FF_Protection.exe" [2009-07-22 2384896]
"ISW"="c:\program files\CheckPoint\ZAForceField\ForceField.exe" [2010-11-05 1123320]
.
------- Examen supplémentaire -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://start.facemoods.com/?a=bfus
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: &Envoyer à OneNote - c:\progra~2\MIF5BA~1\Office14\ONBttnIE.dll/105
IE: E&xporter vers Microsoft Excel - c:\progra~2\MIF5BA~1\Office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - ProfilePath - c:\users\gerard\AppData\Roaming\Mozilla\Firefox\Profiles\137ic6bd.default\
FF - prefs.js: browser.search.selectedEngine - Facemoods Search
FF - prefs.js: browser.startup.homepage - hxxp://start.facemoods.com/?a=bfus
.
- - - - ORPHELINS SUPPRIMES - - - -
BHO-{64182481-4F71-486b-A045-B233BD0DA8FC} - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll
Toolbar-Locked - (no file)
Toolbar-{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsTlbr.dll
Wow6432Node-HKLM-Run-facemoods - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe
WebBrowser-{91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - (no file)
AddRemove-facemoods - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\uninstall.exe
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx, 1"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx, 1"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{6EF568F4-D437-4466-AA63-A3645136D93E}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}]
@Denied: (A 2) (Everyone)
@="IFlashBroker"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib]
@="{6EF568F4-D437-4466-AA63-A3645136D93E}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}]
@Denied: (A 2) (Everyone)
@="IFlashBroker2"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\TypeLib]
@="{6EF568F4-D437-4466-AA63-A3645136D93E}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Autres processus actifs ------------------------
.
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Bonjour\mDNSResponder.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Dell Support Center\bin\sprtsvc.exe
.
**************************************************************************
.
Heure de fin: 2011-03-03 22:52:09 - La machine a redémarré
ComboFix-quarantined-files.txt 2011-03-03 21:52
ComboFix2.txt 2011-02-26 09:21
ComboFix3.txt 2011-02-25 18:06
Avant-CF: 225.479.483.392 octets libres
Après-CF: 225.378.615.296 octets libres
- - End Of File - - B3259593CBD5506E0FB40B3B921E9972
ComboFix 11-02-24.05 - gerard 03/03/2011 22:44:23.4.4 - x64
Microsoft Windows 7 Édition Familiale Premium 6.1.7600.0.1252.32.1036.18.3957.2605 [GMT 1:00]
Lancé depuis: c:\users\gerard\Desktop\ComboFix.exe
Commutateurs utilisés :: c:\users\gerard\Desktop\CFScript.txt
AV: AntiVir Desktop *Disabled/Outdated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
FW: ZoneAlarm Firewall *Enabled* {D17DF357-CFF5-F001-D1C1-FCD21DFE3D5E}
SP: AntiVir Desktop *Disabled/Outdated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
- Mode FONCTIONNALITES REDUITES -
FILE ::
"c:\windows\SysWOW64\ntoskrnl.exe"
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files (x86)\facemoods.com
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoods.crx
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoods.png
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsApp.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsEng.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsTlbr.dll
c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\uninstall.exe
c:\program files (x86)\facemoods.com\sqlite3.dll
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-02-03 au 2011-03-03 ))))))))))))))))))))))))))))))))))))
.
2011-03-03 21:45 . 2011-03-03 21:45 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-03-02 11:16 . 2011-03-02 11:21 -------- d-----w- c:\programdata\NOS
2011-03-02 11:16 . 2011-03-02 11:16 -------- d-----w- c:\program files (x86)\NOS
2011-03-02 11:09 . 2011-03-02 11:09 -------- d-----w- c:\programdata\FLEXnet
2011-03-02 10:58 . 2011-03-02 10:58 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2011-03-02 10:56 . 2011-03-02 11:02 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2011-03-02 10:56 . 2011-03-02 10:56 -------- d-----w- c:\users\gerard\AppData\Local\Autodesk
2011-03-02 10:56 . 2011-03-02 10:56 -------- d-----w- c:\program files\Autodesk
2011-03-02 10:55 . 2011-03-02 10:57 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared
2011-03-02 10:53 . 2011-03-02 11:10 -------- d-----w- c:\users\gerard\AppData\Roaming\Autodesk
2011-03-02 10:53 . 2011-03-02 11:09 -------- d-----w- c:\programdata\Autodesk
2011-03-02 10:43 . 2011-03-02 10:43 -------- d-----w- C:\Autodesk
2011-03-02 09:04 . 2011-03-02 09:04 -------- d-----w- c:\programdata\InstallMate
2011-03-02 09:02 . 2011-03-02 09:02 191488 ----a-w- c:\users\gerard\BflixInstaller.exe
2011-02-28 00:02 . 2011-02-28 00:02 -------- d-----w- c:\program files (x86)\SEAF
2011-02-27 23:14 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll
2011-02-27 23:14 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll
2011-02-27 23:12 . 2011-02-11 07:30 7947600 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{45D8239A-7F0E-4248-A881-A92EA5545B2E}\mpengine.dll
2011-02-25 07:24 . 2011-02-25 07:24 -------- d-----w- c:\program files (x86)\Ad-Remover
2011-02-24 22:11 . 2011-02-24 22:11 -------- d-----w- c:\windows\Sun
2011-02-24 21:28 . 2011-02-24 21:31 -------- d-----w- c:\program files (x86)\ZHPDiag
2011-02-24 00:54 . 2011-03-02 11:03 -------- d-----w- c:\users\gerard\AppData\Roaming\codeblocks
2011-02-23 23:27 . 2011-02-23 23:27 -------- d-----w- c:\program files (x86)\Common Files\Java
2011-02-23 19:02 . 2011-02-02 16:11 270720 ------w- c:\windows\system32\MpSigStub.exe
2011-02-23 12:04 . 2011-02-23 12:04 -------- d-----w- c:\users\gerard\AppData\Roaming\Steinberg
2011-02-22 19:14 . 2011-02-22 19:14 -------- d-----w- c:\windows\SysWow64\Adobe
2011-02-19 23:00 . 2011-02-19 23:00 -------- d-----w- c:\program files (x86)\CodeBlocks
2011-02-19 03:07 . 2011-02-19 03:07 -------- d-----w- c:\users\Mcx1-GERARD-PC
2011-02-19 02:22 . 2011-02-19 02:24 -------- d--h--w- c:\windows\msdownld.tmp
2011-02-19 02:22 . 2011-02-19 02:26 -------- d-----w- c:\users\gerard\AppData\Roaming\XBMC
2011-02-18 13:59 . 2011-02-18 13:59 -------- d-----w- c:\users\gerard\AppData\Local\Mozilla
2011-02-18 13:58 . 2011-02-28 12:26 -------- d-----w- c:\program files (x86)\Mozilla Firefox 4.0 Beta 11
2011-02-18 07:39 . 2011-02-18 07:39 -------- d-----w- C:\Python27
2011-02-15 03:33 . 2011-02-15 03:33 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll
2011-02-15 03:33 . 2011-02-15 03:33 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2011-02-14 12:25 . 2011-02-14 12:25 -------- d-----w- c:\users\gerard\.thumbnails
2011-02-14 12:25 . 2011-02-14 12:25 -------- d-----w- c:\users\gerard\AppData\Roaming\Blender Foundation
2011-02-14 10:34 . 2011-02-14 10:34 -------- d-----w- c:\users\gerard\.idlerc
2011-02-14 09:47 . 2011-02-27 22:56 -------- d-----w- C:\Documents
2011-02-14 06:23 . 2011-02-14 06:23 -------- d-----w- c:\users\gerard\AppData\Roaming\LolClient
2011-02-14 00:05 . 2008-07-31 09:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2011-02-14 00:05 . 2008-07-31 09:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2011-02-14 00:05 . 2008-07-12 07:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2011-02-14 00:05 . 2008-07-12 07:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2011-02-14 00:05 . 2008-07-12 07:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2011-02-14 00:00 . 2011-02-14 00:00 -------- d-----w- C:\Riot Games
2011-02-13 18:05 . 2011-02-14 06:23 -------- d-----w- c:\users\gerard\AppData\Local\PMB Files
2011-02-13 18:05 . 2011-02-13 18:58 -------- d-----w- c:\programdata\PMB Files
2011-02-13 18:04 . 2011-02-13 18:04 -------- d-----w- c:\program files (x86)\Pando Networks
2011-02-02 13:31 . 2011-02-02 13:31 499712 ----a-w- c:\windows\SysWow64\msvcp71.dll
2011-02-02 13:31 . 2011-02-02 13:31 348160 ----a-w- c:\windows\SysWow64\msvcr71.dll
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-03 21:40 . 2011-03-03 21:40 1991492 ----a-w- C:\ntoskrnl.zip
2011-02-26 10:20 . 2011-01-14 19:11 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2011-02-02 20:40 . 2010-10-22 10:35 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
2011-01-14 19:11 . 2011-01-14 19:11 704320 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2010-12-20 17:09 . 2010-12-27 20:54 38224 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2010-12-20 17:08 . 2010-12-27 20:54 24152 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-12-19 17:40 . 2010-12-19 17:40 1548080 ----a-w- c:\windows\SysWow64\install.scr
2010-12-13 07:40 . 2010-12-27 21:20 83120 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-12-13 07:40 . 2010-12-27 21:20 116568 ----a-w- c:\windows\system32\drivers\avipbb.sys
.
((((((((((((((((((((((((((((( SnapShot@2011-02-25_18.03.53 )))))))))))))))))))))))))))))))))))))))))
.
+ 2011-02-27 23:10 . 2010-12-21 05:38 51200 c:\windows\SysWOW64\wscapi.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 14336 c:\windows\SysWOW64\slwga.dll
+ 2000-04-04 01:52 . 2000-04-04 01:52 94208 c:\windows\SysWOW64\msstkprp.dll
- 2010-12-27 23:50 . 2010-11-04 05:49 67072 c:\windows\SysWOW64\mshtmled.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 67072 c:\windows\SysWOW64\mshtmled.dll
- 2010-12-27 23:49 . 2010-11-04 05:46 12800 c:\windows\SysWOW64\msfeedssync.exe
+ 2011-02-27 23:10 . 2010-12-18 05:26 12800 c:\windows\SysWOW64\msfeedssync.exe
- 2010-12-27 23:50 . 2010-11-04 05:49 64512 c:\windows\SysWOW64\msfeedsbs.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 64512 c:\windows\SysWOW64\msfeedsbs.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 44544 c:\windows\SysWOW64\licmgr10.dll
- 2010-12-27 23:49 . 2010-11-04 05:48 44544 c:\windows\SysWOW64\licmgr10.dll
+ 2011-02-27 23:10 . 2010-12-21 05:34 80384 c:\windows\SysWOW64\davclnt.dll
+ 2010-11-15 08:19 . 2011-03-03 18:59 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2010-11-15 08:19 . 2011-02-25 17:27 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
- 2009-07-14 04:54 . 2011-02-25 17:27 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2011-03-03 21:46 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2011-02-25 17:27 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-03-03 21:46 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-03-03 21:46 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-02-25 17:27 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-12-27 23:51 . 2010-10-20 04:54 34304 c:\windows\SysWOW64\atmlib.dll
+ 2011-02-27 23:10 . 2011-01-07 07:27 34304 c:\windows\SysWOW64\atmlib.dll
- 2009-07-13 23:48 . 2009-07-14 01:41 97280 c:\windows\system32\wscsvc.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 97280 c:\windows\system32\wscsvc.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 62976 c:\windows\system32\wscapi.dll
+ 2010-10-22 11:16 . 2011-03-02 09:24 49452 c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2011-03-03 20:14 34222 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-11-12 01:18 . 2011-03-03 20:14 15304 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-118899141-2189773999-3650851856-1001_UserData.bin
+ 2011-02-27 23:10 . 2010-12-21 06:15 15360 c:\windows\system32\slwga.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 97280 c:\windows\system32\mshtmled.dll
- 2010-12-27 23:50 . 2010-11-04 06:32 97280 c:\windows\system32\mshtmled.dll
+ 2011-02-27 23:10 . 2010-12-18 06:08 12288 c:\windows\system32\msfeedssync.exe
- 2010-12-27 23:49 . 2010-11-04 06:28 12288 c:\windows\system32\msfeedssync.exe
+ 2011-02-27 23:10 . 2010-12-18 06:12 82944 c:\windows\system32\msfeedsbs.dll
- 2010-12-27 23:50 . 2010-11-04 06:32 82944 c:\windows\system32\msfeedsbs.dll
- 2010-12-27 23:49 . 2010-11-04 06:31 57856 c:\windows\system32\licmgr10.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 57856 c:\windows\system32\licmgr10.dll
- 2010-11-11 20:19 . 2011-02-23 10:19 49152 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 20:19 . 2011-02-27 23:53 49152 c:\windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-11-11 20:19 . 2011-02-23 10:19 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2010-11-11 20:19 . 2011-02-27 23:53 32768 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2011-02-27 23:53 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-02-23 10:19 16384 c:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-12-27 23:51 . 2010-10-20 05:20 46080 c:\windows\system32\atmlib.dll
+ 2011-02-27 23:10 . 2011-01-07 08:06 46080 c:\windows\system32\atmlib.dll
+ 2010-02-10 06:16 . 2010-02-10 06:16 45280 c:\windows\system32\AcSignIcon.dll
+ 2010-02-16 13:45 . 2010-02-16 13:45 17224 c:\windows\system32\AcSignExtRes.dll
+ 2010-02-10 06:16 . 2010-02-10 06:16 35040 c:\windows\system32\AcSignExt.dll
+ 2010-11-11 18:59 . 2011-03-03 20:14 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-11-11 18:59 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:46 . 2011-03-02 18:03 78720 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\Cache\cache.dat
+ 2010-11-11 18:59 . 2011-03-03 20:14 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-11-11 18:59 . 2011-02-25 17:27 32768 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2010-11-11 18:59 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-11 18:59 . 2011-03-03 20:14 16384 c:\windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 21:04 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 21:04 . 2011-03-03 21:13 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-11-11 22:08 . 2011-02-27 23:14 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\index.dat
- 2010-11-11 22:08 . 2011-02-25 18:03 32768 c:\windows\ServiceProfiles\LocalService\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\index.dat
- 2010-11-11 21:04 . 2011-02-25 17:27 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-11-11 21:04 . 2011-03-03 21:13 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2010-11-11 17:50 . 2010-12-28 03:58 34144 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\oisicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 34144 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\oisicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 42848 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\msouc.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 42848 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\msouc.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 19296 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 19296 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\cagicon.exe
+ 2010-11-13 05:27 . 2011-02-27 23:13 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
- 2010-11-13 05:27 . 2010-11-13 05:27 49152 c:\windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ConfigIcon.dll
+ 2010-02-16 13:46 . 2010-02-16 13:46 25416 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\CustomRes.dll
+ 2010-02-16 13:46 . 2010-02-16 13:46 25416 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\CustomRes.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 12512 c:\windows\assembly\GAC_MSIL\Ac32BitAppServer\1.0.0.0__7208edf2a10162b1\Ac32BitAppServer.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2011-02-26 19:04 . 2011-02-26 19:04 9560 c:\windows\system32\NetworkList\Icons\{4C29A6C2-59BF-4C3E-BCBC-657493B90C93}_48.bin
+ 2011-02-26 19:04 . 2011-02-26 19:04 4280 c:\windows\system32\NetworkList\Icons\{4C29A6C2-59BF-4C3E-BCBC-657493B90C93}_32.bin
+ 2011-02-26 19:04 . 2011-02-26 19:04 2456 c:\windows\system32\NetworkList\Icons\{4C29A6C2-59BF-4C3E-BCBC-657493B90C93}_24.bin
- 2011-02-25 17:25 . 2011-02-25 17:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-03-03 21:46 . 2011-03-03 21:46 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-03-03 21:46 . 2011-03-03 21:46 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2011-02-25 17:25 . 2011-02-25 17:25 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-02-27 23:10 . 2010-11-02 04:41 135168 c:\windows\SysWOW64\XpsRasterService.dll
- 2009-07-14 00:15 . 2009-07-14 01:16 135168 c:\windows\SysWOW64\XpsRasterService.dll
+ 2011-02-27 23:10 . 2011-01-07 07:31 442880 c:\windows\SysWOW64\XpsPrint.dll
+ 2011-02-27 23:10 . 2011-01-07 07:31 288256 c:\windows\SysWOW64\XpsGdiConverter.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 981504 c:\windows\SysWOW64\wininet.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 350720 c:\windows\SysWOW64\winhttp.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 204800 c:\windows\SysWOW64\WebClnt.dll
+ 2011-02-27 23:10 . 2011-01-05 05:37 428032 c:\windows\SysWOW64\vbscript.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 204288 c:\windows\SysWOW64\upnp.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 606208 c:\windows\SysWOW64\mstime.dll
- 2010-12-27 23:50 . 2010-11-04 05:49 606208 c:\windows\SysWOW64\mstime.dll
- 2010-12-27 23:50 . 2010-11-04 05:49 599040 c:\windows\SysWOW64\msfeeds.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 599040 c:\windows\SysWOW64\msfeeds.dll
+ 2011-03-02 11:18 . 2011-03-02 11:18 234656 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.exe
+ 2011-03-02 11:18 . 2011-03-02 11:18 311456 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10n_ActiveX.dll
+ 2011-02-28 07:31 . 2011-02-28 07:31 234656 c:\windows\SysWOW64\Macromed\Flash\FlashUtil10m_Plugin.exe
+ 2011-02-27 23:10 . 2010-12-18 05:29 541184 c:\windows\SysWOW64\kerberos.dll
- 2009-07-13 23:35 . 2009-07-14 01:15 541184 c:\windows\SysWOW64\kerberos.dll
+ 2011-02-27 23:10 . 2011-01-05 05:34 716800 c:\windows\SysWOW64\jscript.dll
- 2010-10-22 13:07 . 2010-10-22 13:07 716800 c:\windows\SysWOW64\jscript.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 185856 c:\windows\SysWOW64\iepeers.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 185856 c:\windows\SysWOW64\iepeers.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 381440 c:\windows\SysWOW64\iedkcs32.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 381440 c:\windows\SysWOW64\iedkcs32.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 218624 c:\windows\SysWOW64\d3d10_1core.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 161792 c:\windows\SysWOW64\d3d10_1.dll
- 2009-07-13 23:27 . 2009-07-14 01:15 161792 c:\windows\SysWOW64\d3d10_1.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 739840 c:\windows\SysWOW64\d2d1.dll
+ 2011-02-27 23:10 . 2011-01-07 05:33 294400 c:\windows\SysWOW64\atmfd.dll
- 2010-12-27 23:51 . 2010-10-20 02:58 294400 c:\windows\SysWOW64\atmfd.dll
+ 2011-02-27 23:10 . 2010-11-02 05:18 229888 c:\windows\system32\XpsRasterService.dll
- 2009-07-14 00:37 . 2009-07-14 01:41 229888 c:\windows\system32\XpsRasterService.dll
+ 2011-02-27 23:10 . 2011-01-07 08:07 662528 c:\windows\system32\XpsPrint.dll
+ 2011-02-27 23:10 . 2011-01-07 08:07 475648 c:\windows\system32\XpsGdiConverter.dll
- 2009-07-13 23:38 . 2009-07-14 01:41 214016 c:\windows\system32\winsrv.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 214016 c:\windows\system32\winsrv.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 442880 c:\windows\system32\winhttp.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 258048 c:\windows\system32\WebClnt.dll
+ 2010-11-12 01:28 . 2011-03-03 09:08 275022 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S4.bin
+ 2010-11-12 01:12 . 2011-03-03 20:12 298276 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
- 2010-10-22 13:07 . 2010-10-22 13:07 612352 c:\windows\system32\vbscript.dll
+ 2011-02-27 23:10 . 2011-01-05 06:20 612352 c:\windows\system32\vbscript.dll
+ 2011-02-27 23:10 . 2010-12-21 06:15 264192 c:\windows\system32\upnp.dll
- 2009-07-14 15:24 . 2011-02-17 21:41 695004 c:\windows\system32\perfh00C.dat
+ 2009-07-14 15:24 . 2011-03-02 18:45 695004 c:\windows\system32\perfh00C.dat
+ 2009-07-14 02:36 . 2011-03-02 18:45 607190 c:\windows\system32\perfh009.dat
- 2009-07-14 02:36 . 2011-02-17 21:41 607190 c:\windows\system32\perfh009.dat
+ 2009-07-14 15:24 . 2011-03-02 18:45 127684 c:\windows\system32\perfc00C.dat
- 2009-07-14 15:24 . 2011-02-17 21:41 127684 c:\windows\system32\perfc00C.dat
- 2009-07-14 02:36 . 2011-02-17 21:41 103568 c:\windows\system32\perfc009.dat
+ 2009-07-14 02:36 . 2011-03-02 18:45 103568 c:\windows\system32\perfc009.dat
- 2010-12-27 23:50 . 2010-11-04 06:32 703488 c:\windows\system32\msfeeds.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 703488 c:\windows\system32\msfeeds.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 714752 c:\windows\system32\kerberos.dll
- 2010-10-22 13:07 . 2010-10-22 13:07 852480 c:\windows\system32\jscript.dll
+ 2011-02-27 23:10 . 2011-01-05 06:16 852480 c:\windows\system32\jscript.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 256000 c:\windows\system32\iepeers.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 256000 c:\windows\system32\iepeers.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 445952 c:\windows\system32\iedkcs32.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 445952 c:\windows\system32\iedkcs32.dll
+ 2009-07-14 04:45 . 2011-03-02 11:07 489192 c:\windows\system32\FNTCACHE.DAT
+ 2011-02-27 23:10 . 2011-01-26 06:53 265088 c:\windows\system32\drivers\dxgmms1.sys
+ 2011-02-27 23:10 . 2011-01-26 06:53 982912 c:\windows\system32\drivers\dxgkrnl.sys
+ 2011-02-27 23:10 . 2010-12-21 06:10 100864 c:\windows\system32\davclnt.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 320512 c:\windows\system32\d3d10_1core.dll
- 2009-07-13 23:41 . 2009-07-14 01:40 197120 c:\windows\system32\d3d10_1.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 197120 c:\windows\system32\d3d10_1.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 902656 c:\windows\system32\d2d1.dll
+ 2011-02-27 23:10 . 2011-01-26 06:31 144384 c:\windows\system32\cdd.dll
- 2010-10-22 13:07 . 2010-10-22 13:07 144384 c:\windows\system32\cdd.dll
+ 2011-02-27 23:10 . 2011-01-07 05:49 366080 c:\windows\system32\atmfd.dll
+ 2010-02-10 06:16 . 2010-02-10 06:16 432864 c:\windows\system32\AcSignOpt.exe
+ 2010-11-12 01:13 . 2011-03-02 12:45 632728 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat
+ 2009-07-14 05:01 . 2011-03-03 21:46 430720 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-02-25 07:26 . 2011-03-03 12:46 813632 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-118899141-2189773999-3650851856-1001-12288.dat
+ 2009-07-21 23:23 . 2009-07-21 23:23 199680 c:\windows\Installer\d3e2c.msi
+ 2009-07-12 15:43 . 2009-07-12 15:43 231936 c:\windows\Installer\56fef3.msi
+ 2009-08-27 20:39 . 2009-08-27 20:39 223232 c:\windows\Installer\56feed.msi
+ 2011-03-02 10:56 . 2011-03-02 10:56 458752 c:\windows\Installer\{CD1E078C-A6B9-47DA-B035-6365C85C7832}\ARPPRODUCTICON.exe
+ 2011-03-02 10:55 . 2011-03-02 10:55 458752 c:\windows\Installer\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}\ARPPRODUCTICON.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 415584 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pubs.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 415584 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pubs.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 303456 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\outicon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 303456 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\outicon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 571232 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\misc.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 571232 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\misc.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 326496 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\joticon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 326496 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\joticon.exe
+ 2010-02-16 13:46 . 2010-02-16 13:46 299336 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\InstRes.dll
+ 2010-02-10 07:36 . 2010-02-10 07:36 310496 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\InstBasicUI.dll
+ 2011-03-02 11:02 . 2011-03-02 11:02 460288 c:\windows\Installer\{5783F2D7-9001-040C-1102-0060B0CE6BBA}\Acad162_icon.exe
+ 2010-02-16 13:46 . 2010-02-16 13:46 299336 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\InstRes.dll
+ 2010-02-10 07:36 . 2010-02-10 07:36 310496 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\InstBasicUI.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 460288 c:\windows\Installer\{5783F2D7-9001-040C-0102-0060B0CE6BBA}\Acad162_icon.exe
+ 2010-02-16 13:46 . 2010-02-16 13:46 116040 c:\windows\Downloaded Program Files\IDropFRA.dll
+ 2010-02-10 06:17 . 2010-02-10 06:17 113888 c:\windows\Downloaded Program Files\IDropENU.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 150896 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop\18.1.0.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 153336 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop\17.1.51.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 145144 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop\17.0.54.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 820984 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop.Common\17.0.54.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.Common.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 223232 c:\windows\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 178176 c:\windows\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 364544 c:\windows\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 159232 c:\windows\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 145920 c:\windows\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 578560 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 577536 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 577024 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 576000 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 567296 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 563712 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 473600 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2011-02-27 23:10 . 2010-12-21 05:38 1228288 c:\windows\SysWOW64\urlmon.dll
+ 2011-02-27 23:10 . 2010-10-27 04:43 3901824 c:\windows\SysWOW64\ntoskrnl.exe
+ 2011-02-27 23:10 . 2010-10-27 04:43 3957120 c:\windows\SysWOW64\ntkrnlpa.exe
+ 2011-02-27 23:10 . 2010-10-27 04:40 1293120 c:\windows\SysWOW64\ntdll.dll
+ 2011-02-27 23:10 . 2010-12-21 05:36 1389568 c:\windows\SysWOW64\msxml6.dll
+ 2011-02-27 23:10 . 2010-12-21 05:36 1236992 c:\windows\SysWOW64\msxml3.dll
+ 2011-02-27 23:10 . 2010-12-18 05:30 5980672 c:\windows\SysWOW64\mshtml.dll
+ 2010-10-22 10:34 . 2011-02-28 07:31 6053536 c:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll
+ 2011-02-27 23:10 . 2010-12-18 05:29 2063360 c:\windows\SysWOW64\iertutil.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 2063360 c:\windows\SysWOW64\iertutil.dll
- 2009-07-13 23:44 . 2009-07-14 01:15 1495040 c:\windows\SysWOW64\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-06-26 05:14 1495040 c:\windows\SysWOW64\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 1074176 c:\windows\SysWOW64\DWrite.dll
+ 2011-02-27 23:10 . 2010-11-02 04:35 1170944 c:\windows\SysWOW64\d3d10warp.dll
+ 2011-02-27 23:10 . 2010-12-21 06:16 1197056 c:\windows\system32\wininet.dll
+ 2011-02-27 23:10 . 2011-01-05 04:00 3127808 c:\windows\system32\win32k.sys
+ 2011-02-27 23:10 . 2010-12-21 06:15 1498112 c:\windows\system32\urlmon.dll
+ 2011-02-27 23:10 . 2010-10-27 05:18 5510528 c:\windows\system32\ntoskrnl.exe
+ 2011-02-27 23:10 . 2010-10-27 05:16 1739176 c:\windows\system32\ntdll.dll
+ 2011-02-27 23:10 . 2010-12-21 06:13 2003968 c:\windows\system32\msxml6.dll
+ 2011-02-27 23:10 . 2010-12-21 06:13 1880576 c:\windows\system32\msxml3.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 1026560 c:\windows\system32\mstime.dll
- 2010-12-27 23:50 . 2010-11-04 06:32 1026560 c:\windows\system32\mstime.dll
+ 2011-02-27 23:10 . 2010-12-18 06:12 9302528 c:\windows\system32\mshtml.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 2447872 c:\windows\system32\iertutil.dll
+ 2011-02-27 23:10 . 2010-12-18 06:11 2447872 c:\windows\system32\iertutil.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 1133568 c:\windows\system32\FntCache.dll
- 2009-07-13 23:57 . 2009-07-14 01:40 1863680 c:\windows\system32\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-06-26 05:31 1863680 c:\windows\system32\ExplorerFrame.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 1540608 c:\windows\system32\DWrite.dll
+ 2011-02-27 23:10 . 2010-11-02 05:12 1837568 c:\windows\system32\d3d10warp.dll
+ 2009-07-14 04:45 . 2011-03-02 11:10 3802522 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
- 2009-07-14 04:45 . 2011-02-18 09:11 3802522 c:\windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\SoftwareProtectionPlatform\tokens.dat
+ 2011-01-14 10:56 . 2011-01-14 10:56 3458560 c:\windows\Installer\d3e4a.msp
+ 2010-02-16 14:28 . 2010-02-16 14:28 5034496 c:\windows\Installer\56ff97.msi
+ 2010-02-10 08:03 . 2010-02-10 08:03 8354816 c:\windows\Installer\56ff0a.msi
+ 2010-01-10 21:02 . 2010-01-10 21:02 1152408 c:\windows\Installer\56ff02.msi
+ 2010-01-10 21:02 . 2010-01-10 21:02 1122816 c:\windows\Installer\56fefd.msi
+ 2009-10-12 08:29 . 2009-10-12 08:29 8010752 c:\windows\Installer\56fef8.msi
+ 2010-11-11 17:50 . 2011-02-27 23:15 1479520 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\xlicons.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 1479520 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\xlicons.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 1858400 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 1858400 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\wordicon.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 4520288 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\promoicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 4520288 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\promoicon.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 3792736 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pptico.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 3792736 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\pptico.exe
- 2010-11-11 17:50 . 2010-12-28 03:58 1449312 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\accicons.exe
+ 2010-11-11 17:50 . 2011-02-27 23:15 1449312 c:\windows\Installer\{90140000-003D-0000-0000-0000000FF1CE}\accicons.exe
+ 2011-03-02 10:59 . 2011-03-02 10:59 5742592 c:\windows\assembly\NativeImages_v2.0.50727_64\AdWindows\ad91dd7972b96b4fa7f39297d255474d\AdWindows.ni.dll
+ 2011-03-02 10:59 . 2011-03-02 10:59 2654208 c:\windows\assembly\NativeImages_v2.0.50727_64\AcWindows\0e86d9d363b544842e715e6bbcb67ce5\AcWindows.ni.dll
+ 2011-03-02 10:59 . 2011-03-02 10:59 7741952 c:\windows\assembly\NativeImages_v2.0.50727_64\acmgd\5f9f2f1ccdb9a332756b297a3a6902f5\acmgd.ni.dll
+ 2011-03-02 10:59 . 2011-03-02 10:59 1817088 c:\windows\assembly\NativeImages_v2.0.50727_64\AcLayer\883d3c9c3bdc60d5bef5049743225ebd\AcLayer.ni.dll
+ 2011-03-02 10:58 . 2011-03-02 10:58 2169344 c:\windows\assembly\NativeImages_v2.0.50727_64\AcCui\a4acba33c1be8959b19f318ad77ecda8\AcCui.ni.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 1846640 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop.Common\18.1.0.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.Common.dll
+ 2011-03-02 10:57 . 2011-03-02 10:57 1103608 c:\windows\assembly\GAC_MSIL\Autodesk.AutoCAD.Interop.Common\17.1.51.0__eed84259d7cbf30b\Autodesk.AutoCAD.Interop.Common.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-03-02 10:55 . 2011-03-02 10:55 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-02-19 02:25 . 2011-02-19 02:25 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-02-27 23:10 . 2010-12-21 05:35 10989056 c:\windows\SysWOW64\ieframe.dll
- 2010-12-27 23:50 . 2010-11-04 05:48 10989056 c:\windows\SysWOW64\ieframe.dll
- 2009-07-14 02:34 . 2011-02-25 07:40 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2009-07-14 02:34 . 2011-03-03 16:46 10223616 c:\windows\system32\SMI\Store\Machine\schema.dat
+ 2010-11-14 17:55 . 2011-02-04 16:51 39403464 c:\windows\system32\MRT.exe
+ 2011-02-27 23:10 . 2010-12-21 06:11 12369408 c:\windows\system32\ieframe.dll
- 2010-12-27 23:50 . 2010-11-04 06:31 12369408 c:\windows\system32\ieframe.dll
+ 2011-02-27 23:12 . 2011-02-27 23:12 20304384 c:\windows\Installer\d3e36.msp
+ 2011-03-02 10:58 . 2011-03-02 10:58 14931968 c:\windows\assembly\NativeImages_v2.0.50727_64\acdbmgd\8f837b9cd6ed2c5599119eac23782497\acdbmgd.ni.dll
.
-- Instantané actualisé --
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{91da5e8a-3318-4f8c-b67e-5964de3ab546}"= "c:\program files (x86)\ZoneAlarm_Security\tbZone.dll" [2010-12-01 2735200]
[HKEY_CLASSES_ROOT\clsid\{91da5e8a-3318-4f8c-b67e-5964de3ab546}]
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{91da5e8a-3318-4f8c-b67e-5964de3ab546}]
2010-12-01 10:27 2735200 ----a-w- c:\program files (x86)\ZoneAlarm_Security\tbZone.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{91da5e8a-3318-4f8c-b67e-5964de3ab546}"= "c:\program files (x86)\ZoneAlarm_Security\tbZone.dll" [2010-12-01 2735200]
[HKEY_CLASSES_ROOT\clsid\{91da5e8a-3318-4f8c-b67e-5964de3ab546}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-11-11 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-11-18 98304]
"Dell DataSafe Online"="c:\program files (x86)\Dell DataSafe Online\DataSafeOnline.exe" [2010-02-09 1807680]
"Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" [2009-06-24 409744]
"Desktop Disc Tool"="c:\program files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe" [2009-10-15 498160]
"DellSupportCenter"="c:\program files (x86)\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2010-09-08 421888]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2011-01-30 35736]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 932288]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2010-12-13 281768]
"ZoneAlarm Client"="c:\program files (x86)\Zone Labs\ZoneAlarm\zlclient.exe" [2010-11-16 1043968]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2010-09-24 421160]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
c:\users\gerard\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2010 - Capture d''cran et lancement.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE [2010-3-29 227712]
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock First Run.lnk - c:\program files\Dell\DellDock\DellDock.exe [2009-12-16 1324384]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]
@="Service"
R2 gupdate;Service Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-11 136176]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-03-02 1436424]
R3 nosGetPlusHelper;getPlus(R) Helper 3004;c:\windows\System32\svchost.exe [2009-07-14 27136]
R3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
R3 TurboBoost;TurboBoost;c:\program files\Intel\TurboBoost\TurboBoost.exe [2009-11-02 126352]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2010-04-19 50688]
R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2010-11-13 1255736]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
S0 stdflt;Disk Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdflt.sys [2009-07-23 18792]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_0057cbec48a2d7cf\AESTSr64.exe [2009-03-02 89600]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-18 202752]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2010-12-13 135336]
S2 DockLoginService;Dock Login Service;c:\program files\Dell\DellDock\DockLogin.exe [2009-06-09 155648]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 InstallFilterService;FF Install Filter Service;c:\program files (x86)\STMicroelectronics\Accelerometer\InstallFilterService.exe [2009-06-23 60928]
S2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\CheckPoint\ZAForceField\ISWKL.sys [2010-11-05 33528]
S2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\CheckPoint\ZAForceField\IswSvc.exe [2010-11-05 822264]
S2 rimspci;rimspci;c:\windows\system32\DRIVERS\rimspe64.sys [2009-07-02 60416]
S2 risdpcie;risdpcie;c:\windows\system32\DRIVERS\risdpe64.sys [2009-07-01 80896]
S2 rixdpcie;rixdpcie;c:\windows\system32\DRIVERS\rixdpe64.sys [2009-07-04 55808]
S2 SftService;SoftThinks Agent Service;c:\program files (x86)\Dell DataSafe Local Backup\sftservice.EXE [2010-08-20 689472]
S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys [2009-11-02 13784]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-09-30 2320920]
S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Acceler.sys [2009-07-24 23912]
S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [2009-06-15 172704]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [2009-10-12 151040]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2009-08-20 239616]
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
nosGetPlusHelper REG_MULTI_SZ nosGetPlusHelper
.
Contenu du dossier 'Tâches planifiées'
2011-03-03 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-11 21:17]
2011-03-03 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-11-11 21:17]
.
--------- x86-64 -----------
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="%ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-01-20 487424]
"Broadcom Wireless Manager UI"="c:\program files\Dell\DW WLAN Card\WLTRAY.exe" [2009-12-16 5470208]
"FreeFallProtection"="c:\program files (x86)\STMicroelectronics\Accelerometer\FF_Protection.exe" [2009-07-22 2384896]
"ISW"="c:\program files\CheckPoint\ZAForceField\ForceField.exe" [2010-11-05 1123320]
.
------- Examen supplémentaire -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://start.facemoods.com/?a=bfus
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: &Envoyer à OneNote - c:\progra~2\MIF5BA~1\Office14\ONBttnIE.dll/105
IE: E&xporter vers Microsoft Excel - c:\progra~2\MIF5BA~1\Office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - ProfilePath - c:\users\gerard\AppData\Roaming\Mozilla\Firefox\Profiles\137ic6bd.default\
FF - prefs.js: browser.search.selectedEngine - Facemoods Search
FF - prefs.js: browser.startup.homepage - hxxp://start.facemoods.com/?a=bfus
.
- - - - ORPHELINS SUPPRIMES - - - -
BHO-{64182481-4F71-486b-A045-B233BD0DA8FC} - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\bh\facemoods.dll
Toolbar-Locked - (no file)
Toolbar-{DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodsTlbr.dll
Wow6432Node-HKLM-Run-facemoods - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\facemoodssrv.exe
WebBrowser-{91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - (no file)
AddRemove-facemoods - c:\program files (x86)\facemoods.com\facemoods\1.4.17.5\uninstall.exe
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10n_ActiveX.exe"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx, 1"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10n.ocx, 1"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{6EF568F4-D437-4466-AA63-A3645136D93E}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}]
@Denied: (A 2) (Everyone)
@="IFlashBroker"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{2E4BB6BE-A75F-4DC0-9500-68203655A2C4}\TypeLib]
@="{6EF568F4-D437-4466-AA63-A3645136D93E}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}]
@Denied: (A 2) (Everyone)
@="IFlashBroker2"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{DDF4CE26-4BDA-42BC-B0F0-0E75243AD285}\TypeLib]
@="{6EF568F4-D437-4466-AA63-A3645136D93E}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Autres processus actifs ------------------------
.
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Bonjour\mDNSResponder.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Dell Support Center\bin\sprtsvc.exe
.
**************************************************************************
.
Heure de fin: 2011-03-03 22:52:09 - La machine a redémarré
ComboFix-quarantined-files.txt 2011-03-03 21:52
ComboFix2.txt 2011-02-26 09:21
ComboFix3.txt 2011-02-25 18:06
Avant-CF: 225.479.483.392 octets libres
Après-CF: 225.378.615.296 octets libres
- - End Of File - - B3259593CBD5506E0FB40B3B921E9972