Virus ukash

Résolu/Fermé
DockerJeckyll Messages postés 4 Date d'inscription dimanche 11 décembre 2011 Statut Membre Dernière intervention 14 juillet 2012 - 14 juil. 2012 à 10:10
DockerJeckyll Messages postés 4 Date d'inscription dimanche 11 décembre 2011 Statut Membre Dernière intervention 14 juillet 2012 - 14 juil. 2012 à 10:14
Bonjour,
j'ai choppé le virus ukash, j'ai donc fait un scan avec otple comme indiqué sur le forum de malekal mais mes capacités à me débrouiller s'arrètent ici, voici mon rapport, si quelqu'un peut m'aider à partir de là, je l'en remercie d'avance.


OTL logfile created on: 7/14/2012 10:49:57 AM - Run
OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE
Microsoft Windows XP Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM
Internet Explorer (Version = 6.0.2900.5512)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 86.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 95.00% Paging File free
Paging file location(s): c:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 43.99 Gb Total Space | 15.14 Gb Free Space | 34.42% Space Free | Partition Type: NTFS
Drive D: | 67.80 Gb Total Space | 54.75 Gb Free Space | 80.76% Space Free | Partition Type: NTFS
Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: REATOGO | User Name: SYSTEM
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
Using ControlSet: ControlSet002

[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled] -- -- (HidServ)
SRV - File not found [On_Demand] -- -- (AppMgmt)
SRV - [2012/07/13 09:57:30 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/06/19 13:43:30 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2011/09/18 18:34:25 | 000,269,480 | ---- | M] (Avira GmbH) [Auto] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011/05/11 17:08:46 | 000,136,360 | ---- | M] (Avira GmbH) [Auto] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2010/11/26 18:55:42 | 000,398,176 | ---- | M] (Sony Corporation) [Auto] -- C:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2010/02/19 07:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\Program Files\Fichiers communs\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/09/06 07:38:06 | 000,071,096 | ---- | M] () [Disabled] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU)
SRV - [2009/08/24 06:22:34 | 000,069,632 | ---- | M] (France Telecom SA) [Disabled] -- C:\Program Files\Fichiers communs\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC)
SRV - [2009/05/29 11:13:20 | 000,234,864 | ---- | M] (CybelSoft) [Disabled] -- C:\Program Files\ma-config.com\maconfservice.exe -- (maconfservice)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP)
DRV - File not found [Kernel | System] -- -- (PCIDump)
DRV - File not found [Kernel | System] -- -- (lbrtfdc)
DRV - File not found [Kernel | System] -- -- (i2omgmt)
DRV - File not found [Kernel | System] -- -- (Changer)
DRV - [2011/09/18 18:34:26 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2011/09/18 18:34:26 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2011/03/08 09:29:23 | 000,000,000 | ---- | M] () [Kernel | Boot] -- C:\WINDOWS\System32\drivers\pdmbirkax.sys -- (pdmbirkax)
DRV - [2010/06/17 10:28:02 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010/06/17 10:27:52 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2009/11/09 11:01:28 | 000,691,696 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2009/09/28 15:57:28 | 000,007,168 | ---- | M] () [File_System | On_Demand] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009/08/24 06:22:58 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5)
DRV - [2009/08/24 06:22:58 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5)
DRV - [2009/05/29 11:16:48 | 000,014,336 | ---- | M] (CybelSoft) [Kernel | On_Demand] -- C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys -- (driverhardwarev2)
DRV - [2009/03/31 05:08:50 | 004,202,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Intel(R)
DRV - [2008/02/15 12:01:18 | 000,046,592 | ---- | M] (REDC) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007/07/30 05:54:02 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007/07/30 04:42:58 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto] -- C:\WINDOWS\system32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2006/12/21 06:56:44 | 000,988,800 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\HSF_DPV.sys -- (HSF_DPV)
DRV - [2006/12/21 06:56:00 | 000,209,664 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys -- (HSFHWAZL)
DRV - [2006/12/21 06:55:56 | 000,730,112 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf)
DRV - [2005/05/31 10:40:20 | 000,020,480 | ---- | M] (IVT Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio)
DRV - [2005/05/31 04:42:28 | 000,023,000 | ---- | M] (IVT Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb)
DRV - [2005/04/30 09:50:20 | 000,011,860 | ---- | M] () [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\vbtenum.sys -- (BTHidEnum)
DRV - [2005/04/30 09:50:10 | 000,028,271 | ---- | M] (IVT Corporation) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\BTHidMgr.sys -- (BTHidMgr)
DRV - [2005/04/30 09:48:58 | 000,010,804 | ---- | M] (IVT Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\BtNetDrv.sys -- (BT)
DRV - [2005/03/25 12:18:48 | 000,082,148 | ---- | M] (IVT Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr)
DRV - [2004/10/19 08:37:38 | 000,061,312 | ---- | M] (IVT Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\VComm.sys -- (VComm)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\Administrateur_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0




IE - HKU\Yoann_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
IE - HKU\Yoann_ON_C\..\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - Reg Error: Key error. File not found
IE - HKU\Yoann_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "Fast Browser Search"
FF - prefs.js..browser.search.defaulturl: "http://www.fastbrowsersearch.com/results/results.aspx?s=DEF&v=18&q="
FF - prefs.js..browser.search.order.1: "Fast Browser Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "https://www.google.fr/?gws_rd=ssl"
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.6.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..network.proxy.type: 4

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@ma-config.com/HardwareDetection: C:\Program Files\ma-config.com\nphardwaredetection.dll (Cybelsoft)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=0.8.6b: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN Team)
FF - HKLM\Software\MozillaPlugins\@zylom.com/ZylomGamesPlayer: C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll (Zylom)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/06/19 13:43:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/04/24 13:49:11 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 9.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012/02/17 18:18:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins

[2010/11/24 17:13:07 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Yoann\Application Data\Mozilla\Extensions
[2010/11/24 17:13:07 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Yoann\Application Data\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2012/05/20 10:49:02 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Yoann\Application Data\Mozilla\Firefox\Profiles\ar5nghsi.default\extensions
[2011/03/18 16:18:24 | 000,000,000 | ---D | M] (Personas) -- C:\Documents and Settings\Yoann\Application Data\Mozilla\Firefox\Profiles\ar5nghsi.default\extensions\personas@christopher.beard
[2012/04/24 22:09:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010/09/15 11:23:05 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
File not found (No name found) --
[2012/06/19 13:43:31 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012/04/03 12:45:16 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2009/03/24 05:10:44 | 000,114,688 | ---- | M] (Zylom) -- C:\Program Files\mozilla firefox\plugins\npzylomgamesplayer.dll
[2012/06/08 19:49:48 | 000,001,516 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
[2012/06/08 19:49:48 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/06/08 19:49:48 | 000,001,822 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\cnrtl-tlfi-fr.xml
[2012/06/08 19:49:48 | 000,001,154 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
[2009/08/30 17:06:33 | 000,003,700 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fast.png
[2009/08/30 17:06:33 | 000,001,963 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fast.xml
[2012/06/08 19:49:48 | 000,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
[2012/06/08 19:49:48 | 000,000,956 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml

O1 HOSTS File: ([2006/03/02 08:00:00 | 000,000,790 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\Yoann_ON_C\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files\Fichiers communs\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files\Fichiers communs\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Fichiers communs\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKU\Yoann_ON_C..\Run: [AdobeBridge] File not found
O4 - HKU\Yoann_ON_C..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()
O4 - HKU\Yoann_ON_C..\Run: [ViOrb] C:\Program Files\ViOrb\ViOrb.exe (Lee-Soft.com)
O4 - Startup: C:\Documents and Settings\Yoann\Menu Démarrer\Programmes\Démarrage\ctfmon.lnk = X:\I386\SYSTEM32\RUNDLL32.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Yoann\Menu Démarrer\Programmes\Démarrage\Lanceur.lnk = C:\Program Files\Micro Application\LauncherMA.exe (Micro Application)
O4 - Startup: C:\Documents and Settings\Yoann\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Administrateur_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\Yoann_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Fichiers communs\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: TaskMan - (C:\RECYCLER\S-1-5-21-6435278136-8512676154-754693282-2711\djwi2kcew.exe) - File not found
O20 - HKU\Yoann_ON_C Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKU\Yoann_ON_C Winlogon: Shell - (C:\Documents and Settings\Yoann\fxmdk.exe) - File not found
O20 - HKU\Yoann_ON_C Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/08/12 11:54:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (aswBoot.exe /M:2493392b2) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: HidServ - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

MsConfig - Services: "NVSvc"
MsConfig - Services: "NMSAccessU"
MsConfig - Services: "maconfservice"
MsConfig - Services: "JavaQuickStarterService"
MsConfig - Services: "idsvc"
MsConfig - Services: "IBMPMSVC"
MsConfig - Services: "FTRTSVC"
MsConfig - Services: "AntiVirService"
MsConfig - Services: "AntiVirSchedulerService"
MsConfig - State: "system.ini" - 0
MsConfig - State: "win.ini" - 0
MsConfig - State: "bootini" - 0
MsConfig - State: "services" - 1
MsConfig - State: "startup" - 0

SafeBootMin: AppMgmt - File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: AppMgmt - File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Rendu VML (Vector Graphics Rendering)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Lecteur Windows Media Microsoft 6.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Liaison de données Dynamic HTML pour Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Logiciel de navigation hors connexion
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Création avancée
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Aide sur Internet Explorer
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - Classes Java DirectAnimation
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.7
ActiveX: {5056b317-8d4c-43ee-8543-b9d1e234b8f4} - Mise à jour de sécurité pour Windows XP (KB923789)
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Outils d'installation Internet Explorer
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Améliorations pour la navigation
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - Accès au site MSN
ActiveX: {72AD53CC-CCC0-3757-8480-9EE176866A7C} - .NET Framework
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - %SystemRoot%\system32\ie4uinit.exe
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Liaison de données Dynamic HTML
ActiveX: {ACC563BC-4266-43f0-B6ED-9D38C4202C7E} -
ActiveX: {C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Polices de base Internet Explorer
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Planificateur de tâches
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Macromedia Shockwave Flash
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - Aide HTML
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\WINDOWS\system32\ieudinit.exe
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\inf\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE

Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2012/07/13 09:12:46 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Yoann\Recent
[2012/07/07 16:07:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yoann\Application Data\Google
[2012/07/07 16:07:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google
[2012/07/07 16:06:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google SketchUp 8
[2012/07/07 16:05:58 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2012/07/07 15:54:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Yoann\Application Data\RibbonSoft
[2009/12/16 15:58:46 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Yoann\Application Data\pcouffin.sys
[9 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2012/07/14 03:13:57 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012/07/14 03:13:19 | 004,503,728 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\go_0molg.pad
[2012/07/14 03:13:10 | 000,027,839 | ---- | M] () -- C:\WINDOWS\System32\nvModes.001
[2012/07/14 03:13:04 | 000,185,449 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2012/07/13 20:02:31 | 000,001,610 | ---- | M] () -- C:\Documents and Settings\Yoann\Menu Démarrer\Programmes\Démarrage\ctfmon.lnk
[2012/07/13 20:00:00 | 000,000,350 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-YOANN-91A4140E8-Yoann.job
[2012/07/13 19:57:00 | 000,001,002 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2012/07/13 09:57:29 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2012/07/13 09:57:29 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2012/07/13 09:08:35 | 000,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012/07/10 08:55:01 | 000,048,412 | ---- | M] () -- C:\Documents and Settings\Yoann\Bureau\180386155.jpg
[2012/07/07 16:06:19 | 000,001,762 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Google SketchUp 8.lnk
[2012/07/07 16:06:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google SketchUp 8
[2012/07/03 07:46:13 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2012/07/02 14:38:51 | 000,023,791 | ---- | M] () -- C:\Documents and Settings\Yoann\Bureau\paie pour calc 2012.ods
[2012/06/30 21:10:17 | 001,285,976 | ---- | M] () -- C:\Documents and Settings\Yoann\Bureau\marshall-jcm2000-tsl-100w.JPG
[2012/06/21 14:25:36 | 015,251,690 | ---- | M] () -- C:\Documents and Settings\Yoann\Bureau\Dossier-HQ.pdf
[2012/06/15 16:48:36 | 000,016,757 | ---- | M] () -- C:\Documents and Settings\Yoann\Bureau\invit.odt
[2012/06/15 16:19:04 | 000,139,648 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012/06/15 16:17:07 | 000,564,489 | ---- | M] () -- C:\Documents and Settings\Yoann\Mes documents\respective.zip
[2012/06/15 16:13:31 | 000,402,210 | ---- | M] () -- C:\Documents and Settings\Yoann\Mes documents\before_the_rain.zip
[2012/06/14 18:58:56 | 000,184,320 | ---- | M] () -- C:\Documents and Settings\Yoann\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[9 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2012/07/13 20:02:31 | 000,001,610 | ---- | C] () -- C:\Documents and Settings\Yoann\Menu Démarrer\Programmes\Démarrage\ctfmon.lnk
[2012/07/13 20:02:30 | 004,503,728 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\go_0molg.pad
[2012/07/10 08:55:00 | 000,048,412 | ---- | C] () -- C:\Documents and Settings\Yoann\Bureau\180386155.jpg
[2012/07/07 16:06:19 | 000,001,762 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Google SketchUp 8.lnk
[2012/07/02 14:28:25 | 000,023,791 | ---- | C] () -- C:\Documents and Settings\Yoann\Bureau\paie pour calc 2012.ods
[2012/06/30 21:10:16 | 001,285,976 | ---- | C] () -- C:\Documents and Settings\Yoann\Bureau\marshall-jcm2000-tsl-100w.JPG
[2012/06/21 14:25:35 | 015,251,690 | ---- | C] () -- C:\Documents and Settings\Yoann\Bureau\Dossier-HQ.pdf
[2012/06/15 16:17:06 | 000,564,489 | ---- | C] () -- C:\Documents and Settings\Yoann\Mes documents\respective.zip
[2012/06/15 16:14:38 | 000,016,757 | ---- | C] () -- C:\Documents and Settings\Yoann\Bureau\invit.odt
[2012/06/15 16:13:29 | 000,402,210 | ---- | C] () -- C:\Documents and Settings\Yoann\Mes documents\before_the_rain.zip
[2012/03/31 14:25:03 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\Yoann\Application Data\Adobe PNG Format CS6 Prefs
[2012/01/05 15:44:37 | 000,012,692 | -HS- | C] () -- C:\Documents and Settings\Yoann\Local Settings\Application Data\giiembgt3u3g
[2012/01/05 15:44:37 | 000,012,692 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\giiembgt3u3g
[2011/03/07 13:58:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\drivers\pdmbirkax.sys
[2010/09/29 13:48:20 | 000,000,029 | ---- | C] () -- C:\WINDOWS\DEBUGSM.INI
[2010/09/29 13:23:27 | 000,111,932 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat
[2010/09/29 13:23:27 | 000,031,053 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern131.dat
[2010/09/29 13:23:27 | 000,027,417 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern121.dat
[2010/09/29 13:23:27 | 000,026,154 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat
[2010/09/29 13:23:27 | 000,024,903 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern3.dat
[2010/09/29 13:23:27 | 000,021,390 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern5.dat
[2010/09/29 13:23:27 | 000,020,148 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat
[2010/09/29 13:23:27 | 000,011,811 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern4.dat
[2010/09/29 13:23:27 | 000,004,943 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern6.dat
[2010/09/29 13:23:27 | 000,001,146 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_DU.dat
[2010/09/29 13:23:27 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_PT.dat
[2010/09/29 13:23:27 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_BP.dat
[2010/09/29 13:23:27 | 000,001,136 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_ES.dat
[2010/09/29 13:23:27 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_FR.dat
[2010/09/29 13:23:27 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_CF.dat
[2010/09/29 13:23:27 | 000,001,120 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_IT.dat
[2010/09/29 13:23:27 | 000,001,107 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_GE.dat
[2010/09/29 13:23:27 | 000,001,104 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_EN.dat
[2010/09/29 13:23:27 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini
[2010/09/29 13:21:27 | 000,000,025 | ---- | C] () -- C:\WINDOWS\CDE SX200DEFGIPS.ini
[2010/09/15 12:29:05 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010/04/19 10:02:31 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2009/12/16 15:58:46 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Yoann\Application Data\inst.exe
[2009/12/16 15:58:46 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Yoann\Application Data\pcouffin.cat
[2009/12/16 15:58:46 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Yoann\Application Data\pcouffin.inf
[2009/12/16 15:50:05 | 000,000,040 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
[2009/12/07 12:00:08 | 000,013,304 | ---- | C] () -- C:\WINDOWS\System32\drivers\BTNetFilter.sys
[2009/12/07 12:00:08 | 000,011,860 | ---- | C] () -- C:\WINDOWS\System32\drivers\vbtenum.sys
[2009/11/09 07:57:21 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2009/11/09 07:52:17 | 001,061,072 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2009/08/25 14:35:42 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Yoann\PUTTY.RND
[2009/08/13 08:20:42 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2009/08/12 17:35:13 | 000,184,320 | ---- | C] () -- C:\Documents and Settings\Yoann\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/08/12 17:32:42 | 000,027,839 | ---- | C] () -- C:\WINDOWS\System32\nvModes.dat
[2009/08/12 13:41:56 | 000,004,205 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2009/08/12 13:40:32 | 000,139,648 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2009/08/12 11:57:26 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2009/08/12 11:51:03 | 000,023,032 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2009/01/14 11:37:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2009/01/14 11:37:00 | 001,630,208 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2009/01/14 11:37:00 | 001,486,848 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2009/01/14 11:37:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2009/01/14 11:37:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2009/01/14 11:37:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2009/01/14 11:37:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2009/01/14 11:37:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2008/04/14 08:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008/04/14 08:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008/04/14 08:00:00 | 000,322,810 | ---- | C] () -- C:\WINDOWS\System32\perfi00C.dat
[2008/04/14 08:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008/04/14 08:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008/04/14 08:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008/04/14 08:00:00 | 000,034,108 | ---- | C] () -- C:\WINDOWS\System32\perfd00C.dat
[2008/04/14 08:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008/04/14 08:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008/04/14 08:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008/04/14 08:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2006/03/02 08:00:00 | 000,501,110 | ---- | C] () -- C:\WINDOWS\System32\perfh00C.dat
[2006/03/02 08:00:00 | 000,432,690 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006/03/02 08:00:00 | 000,080,946 | ---- | C] () -- C:\WINDOWS\System32\perfc00C.dat
[2006/03/02 08:00:00 | 000,067,646 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006/03/02 08:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2003/07/02 19:25:00 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ibmpmsvc.exe
[2003/07/02 19:25:00 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\tpinspm.dll

[color=#E56717]========== LOP Check ==========[/color]

[2009/11/09 07:57:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\Canneverbe_Limited
[2009/11/09 11:06:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\DAEMON Tools Lite
[2010/09/19 11:23:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\EA
[2010/09/29 13:48:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\EPSON
[2010/01/25 07:08:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\lpd
[2011/11/19 10:51:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\Micro Application
[2009/09/11 11:20:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\OpenOffice.org
[2012/03/31 13:14:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\PDAppFlex
[2010/08/14 10:39:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\PhotoFiltre
[2012/07/07 15:54:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\RibbonSoft
[2011/01/27 14:18:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\Sports Interactive
[2012/02/01 09:09:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\System
[2012/02/02 11:19:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\Systenance
[2010/11/24 17:13:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\Thunderbird
[2009/09/15 14:36:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\ViSplore
[2009/12/16 15:58:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Yoann\Application Data\Vso
[2011/03/07 16:10:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/11/09 07:57:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
[2009/11/09 11:01:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2010/10/13 07:44:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EPSON
[2009/10/11 10:24:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GameHouse
[2009/08/12 12:41:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ma-config.com
[2011/11/19 10:50:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Micro Application
[2009/12/07 11:53:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2012/03/31 13:15:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2009/12/16 15:50:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SlySoft
[2011/01/27 14:32:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sports Interactive
[2010/09/29 13:29:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\UDL
[2009/08/13 14:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Zylom

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]


[color=#A23BEC]< MD5 for: ACPI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:acpi.sys
[2008/04/14 08:00:00 | 000,188,672 | ---- | M] (Microsoft Corporation) MD5=E5E6DBFC41EA8AAD005CB9A57A96B43B -- C:\WINDOWS\system32\dllcache\acpi.sys
[2008/04/14 08:00:00 | 000,188,672 | ---- | M] (Microsoft Corporation) MD5=E5E6DBFC41EA8AAD005CB9A57A96B43B -- C:\WINDOWS\system32\drivers\acpi.sys

[color=#A23BEC]< MD5 for: ACPIEC.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=E4ABC1212B70BB03D35E60681C447210 -- C:\WINDOWS\system32\dllcache\acpiec.sys
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=E4ABC1212B70BB03D35E60681C447210 -- C:\WINDOWS\system32\drivers\acpiec.sys

[color=#A23BEC]< MD5 for: AEC.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:aec.sys
[2008/04/14 08:00:00 | 000,142,592 | ---- | M] (Microsoft Corporation) MD5=8BED39E3C35D6A489438B8141717A557 -- C:\WINDOWS\system32\dllcache\aec.sys
[2008/04/14 08:00:00 | 000,142,592 | ---- | M] (Microsoft Corporation) MD5=8BED39E3C35D6A489438B8141717A557 -- C:\WINDOWS\system32\drivers\aec.sys

[color=#A23BEC]< MD5 for: AFD.SYS >[/color]
[2008/04/14 08:00:00 | 000,138,112 | ---- | M] (Microsoft Corporation) MD5=322D0E36693D6E24A2398BEE62A268CD -- C:\WINDOWS\system32\dllcache\afd.sys
[2008/04/14 08:00:00 | 000,138,112 | ---- | M] (Microsoft Corporation) MD5=322D0E36693D6E24A2398BEE62A268CD -- C:\WINDOWS\system32\drivers\afd.sys
[2008/08/14 06:34:26 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=4D43E74F2A1239D53929B82600F1971C -- C:\WINDOWS\$hf_mig$\KB956803\SP3QFE\afd.sys
[2006/03/02 08:00:00 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=5AC495F4CB807B2B98AD2AD591E6D92E -- C:\WINDOWS\$NtUninstallKB951748_0$\afd.sys
[2008/08/14 05:48:52 | 000,138,368 | ---- | M] (Microsoft Corporation) MD5=6A0397376853E604DE8E1E7A87FC08AC -- C:\WINDOWS\$hf_mig$\KB956803\SP2QFE\afd.sys
[2008/08/14 06:04:36 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=7E775010EF291DA96AD17CA4B17137D7 -- C:\WINDOWS\$hf_mig$\KB956803\SP3GDR\afd.sys
[2008/06/20 06:44:38 | 000,138,368 | ---- | M] (Microsoft Corporation) MD5=944CA435BFCFC82CC1ED9E3A7D731AA9 -- C:\WINDOWS\$NtUninstallKB956803_0$\afd.sys
[2008/06/20 07:48:03 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=D6EE6014241D034E63C49A50CB2B442A -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\afd.sys
[2008/06/20 06:44:08 | 000,138,368 | ---- | M] (Microsoft Corporation) MD5=D99DDFFB33DEACDCF20717CB520379F6 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\afd.sys
[2008/06/20 07:40:08 | 000,138,496 | ---- | M] (Microsoft Corporation) MD5=E3049B90FE06F3F740B7CFDA44995E2C -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\afd.sys

[color=#A23BEC]< MD5 for: AMDK6.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:amdk6.sys
[2008/04/14 08:00:00 | 000,041,472 | ---- | M] (Microsoft Corporation) MD5=C6C0F974AB7E825813F8E6B4E5581750 -- C:\WINDOWS\system32\dllcache\amdk6.sys
[2008/04/14 08:00:00 | 000,041,472 | ---- | M] (Microsoft Corporation) MD5=C6C0F974AB7E825813F8E6B4E5581750 -- C:\WINDOWS\system32\drivers\amdk6.sys

[color=#A23BEC]< MD5 for: AMDK7.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:amdk7.sys
[2008/04/14 08:00:00 | 000,041,856 | ---- | M] (Microsoft Corporation) MD5=D3DABC57BE6D456DFD4BC026CFA582FF -- C:\WINDOWS\system32\dllcache\amdk7.sys
[2008/04/14 08:00:00 | 000,041,856 | ---- | M] (Microsoft Corporation) MD5=D3DABC57BE6D456DFD4BC026CFA582FF -- C:\WINDOWS\system32\drivers\amdk7.sys

[color=#A23BEC]< MD5 for: ARP1394.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:arp1394.sys
[2008/04/14 08:00:00 | 000,060,800 | ---- | M] (Microsoft Corporation) MD5=B5B8A80875C1DEDEDA8B02765642C32F -- C:\WINDOWS\system32\drivers\arp1394.sys

[color=#A23BEC]< MD5 for: ASYNCMAC.SYS >[/color]
[2008/04/14 08:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=B153AFFAC761E7F5FCFA822B9C4E97BC -- C:\WINDOWS\system32\dllcache\asyncmac.sys
[2008/04/14 08:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=B153AFFAC761E7F5FCFA822B9C4E97BC -- C:\WINDOWS\system32\drivers\asyncmac.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008/04/14 08:00:00 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys

[color=#A23BEC]< MD5 for: ATMARPC.SYS >[/color]
[2008/04/14 08:00:00 | 000,059,904 | ---- | M] (Microsoft Corporation) MD5=9916C1225104BA14794209CFA8012159 -- C:\WINDOWS\system32\dllcache\atmarpc.sys
[2008/04/14 08:00:00 | 000,059,904 | ---- | M] (Microsoft Corporation) MD5=9916C1225104BA14794209CFA8012159 -- C:\WINDOWS\system32\drivers\atmarpc.sys

[color=#A23BEC]< MD5 for: ATMEPVC.SYS >[/color]
[2008/04/14 08:00:00 | 000,031,360 | ---- | M] (Microsoft Corporation) MD5=39A0A59180F19946374275745B21AEBA -- C:\WINDOWS\system32\dllcache\atmepvc.sys
[2008/04/14 08:00:00 | 000,031,360 | ---- | M] (Microsoft Corporation) MD5=39A0A59180F19946374275745B21AEBA -- C:\WINDOWS\system32\drivers\atmepvc.sys

[color=#A23BEC]< MD5 for: ATMLANE.SYS >[/color]
[2008/04/14 08:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=AE76348A2605FB197FA8FF1D6F547836 -- C:\WINDOWS\system32\dllcache\atmlane.sys
[2008/04/14 08:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=AE76348A2605FB197FA8FF1D6F547836 -- C:\WINDOWS\system32\drivers\atmlane.sys

[color=#A23BEC]< MD5 for: ATMUNI.SYS >[/color]
[2008/04/14 08:00:00 | 000,352,256 | ---- | M] (Microsoft Corporation) MD5=E7EF69B38D17BA01F914AE8F66216A38 -- C:\WINDOWS\system32\dllcache\atmuni.sys
[2008/04/14 08:00:00 | 000,352,256 | ---- | M] (Microsoft Corporation) MD5=E7EF69B38D17BA01F914AE8F66216A38 -- C:\WINDOWS\system32\drivers\atmuni.sys

[color=#A23BEC]< MD5 for: AUDSTUB.SYS >[/color]
[2001/08/17 17:59:44 | 000,003,072 | ---- | M] (Microsoft Corporation) MD5=D9F724AA26C010A217C97606B160ED68 -- C:\WINDOWS\system32\drivers\audstub.sys

[color=#A23BEC]< MD5 for: AVGNTDD.SYS >[/color]
[2010/06/17 10:28:03 | 000,045,416 | ---- | M] (Avira GmbH) MD5=5B44C214F9CD9F590BE9125347610380 -- C:\WINDOWS\system32\drivers\avgntdd.sys

[color=#A23BEC]< MD5 for: AVGNTFLT.SYS >[/color]
[2011/09/18 18:34:26 | 000,066,616 | ---- | M] (Avira GmbH) MD5=1E4114685DE1FFA9675E09C6A1FB3F4B -- C:\WINDOWS\system32\drivers\avgntflt.sys

[color=#A23BEC]< MD5 for: AVGNTMGR.SYS >[/color]
[2010/06/17 10:28:03 | 000,022,360 | ---- | M] (Avira GmbH) MD5=87451AA7CC6B6A590EBCEA05E755075A -- C:\WINDOWS\system32\drivers\avgntmgr.sys

[color=#A23BEC]< MD5 for: AVIPBB.SYS >[/color]
[2011/09/18 18:34:26 | 000,138,192 | ---- | M] (Avira GmbH) MD5=0F78D3DAE6DEDD99AE54C9491C62ADF2 -- C:\WINDOWS\system32\drivers\avipbb.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2008/04/14 08:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2008/04/14 08:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: BRIDGE.SYS >[/color]
[2008/04/14 08:00:00 | 000,071,552 | ---- | M] (Microsoft Corporation) MD5=F934D1B230F84E1D19DD00AC5A7A83ED -- C:\WINDOWS\system32\dllcache\bridge.sys
[2008/04/14 08:00:00 | 000,071,552 | ---- | M] (Microsoft Corporation) MD5=F934D1B230F84E1D19DD00AC5A7A83ED -- C:\WINDOWS\system32\drivers\bridge.sys

[color=#A23BEC]< MD5 for: BTHPORT.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:bthport.sys
[2008/06/14 14:03:13 | 000,272,768 | ---- | M] (Microsoft Corporation) MD5=09713BC3FB4AB92CBA6E758E315E469C -- C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
[2008/04/14 08:00:00 | 000,273,664 | ---- | M] (Microsoft Corporation) MD5=B6DCFA596E97C3964F9148D5D9198EF8 -- C:\WINDOWS\system32\dllcache\bthport.sys
[2008/04/14 08:00:00 | 000,273,664 | ---- | M] (Microsoft Corporation) MD5=B6DCFA596E97C3964F9148D5D9198EF8 -- C:\WINDOWS\system32\drivers\bthport.sys
[2008/06/14 13:40:19 | 000,272,768 | ---- | M] (Microsoft Corporation) MD5=E928A210EA18CE1857888EAE2D195252 -- C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
[2008/06/14 13:33:37 | 000,272,768 | ---- | M] (Microsoft Corporation) MD5=EF26202FEE56F7607C6B794059DF347A -- C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys

[color=#A23BEC]< MD5 for: CBIDF2K.SYS >[/color]
[2008/04/14 08:00:00 | 000,013,952 | ---- | M] (Microsoft Corporation) MD5=90A673FC8E12A79AFBED2576F6A7AAF9 -- C:\WINDOWS\system32\dllcache\cbidf2k.sys
[2008/04/14 08:00:00 | 000,013,952 | ---- | M] (Microsoft Corporation) MD5=90A673FC8E12A79AFBED2576F6A7AAF9 -- C:\WINDOWS\system32\drivers\cbidf2k.sys

[color=#A23BEC]< MD5 for: CDAUDIO.SYS >[/color]
[2008/04/14 08:00:00 | 000,018,688 | ---- | M] (Microsoft Corporation) MD5=C1B486A7658353D33A10CC15211A873B -- C:\WINDOWS\system32\drivers\cdaudio.sys

[color=#A23BEC]< MD5 for: CDFS.SYS >[/color]
[2008/04/14 08:00:00 | 000,063,744 | ---- | M] (Microsoft Corporation) MD5=C885B02847F5D2FD45A24E219ED93B32 -- C:\WINDOWS\system32\dllcache\cdfs.sys
[2008/04/14 08:00:00 | 000,063,744 | ---- | M] (Microsoft Corporation) MD5=C885B02847F5D2FD45A24E219ED93B32 -- C:\WINDOWS\system32\drivers\cdfs.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008/04/14 08:00:00 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys

[color=#A23BEC]< MD5 for: CINEMST2.SYS >[/color]
[2008/04/14 08:00:00 | 000,262,528 | ---- | M] (RAVISENT Technologies Inc.) MD5=C9B25AE9B8ABD983C5AD3F8CBFAB0F9C -- C:\WINDOWS\system32\dllcache\cinemst2.sys
[2008/04/14 08:00:00 | 000,262,528 | ---- | M] (RAVISENT Technologies Inc.) MD5=C9B25AE9B8ABD983C5AD3F8CBFAB0F9C -- C:\WINDOWS\system32\drivers\cinemst2.sys

[color=#A23BEC]< MD5 for: CLASSPNP.SYS >[/color]
[2008/04/14 08:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=FE47DD8FE6D7768FF94EBEC6C74B2719 -- C:\WINDOWS\system32\dllcache\classpnp.sys
[2008/04/14 08:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=FE47DD8FE6D7768FF94EBEC6C74B2719 -- C:\WINDOWS\system32\drivers\classpnp.sys

[color=#A23BEC]< MD5 for: CPQDAP01.SYS >[/color]
[2008/04/14 08:00:00 | 000,011,776 | ---- | M] (Compaq Computer Corporation) MD5=9624293E55AD405415862B504CA95B73 -- C:\WINDOWS\system32\dllcache\cpqdap01.sys
[2008/04/14 08:00:00 | 000,011,776 | ---- | M] (Compaq Computer Corporation) MD5=9624293E55AD405415862B504CA95B73 -- C:\WINDOWS\system32\drivers\cpqdap01.sys

[color=#A23BEC]< MD5 for: CRUSOE.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:crusoe.sys
[2008/04/14 08:00:00 | 000,040,960 | ---- | M] (Microsoft Corporation) MD5=D68AE021109A74E491B83F3F69FB92CD -- C:\WINDOWS\system32\dllcache\crusoe.sys
[2008/04/14 08:00:00 | 000,040,960 | ---- | M] (Microsoft Corporation) MD5=D68AE021109A74E491B83F3F69FB92CD -- C:\WINDOWS\system32\drivers\crusoe.sys

[color=#A23BEC]< MD5 for: DISK.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:disk.sys
[2008/04/14 08:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\dllcache\disk.sys
[2008/04/14 08:00:00 | 000,036,352 | ---- | M] (Microsoft Corporation) MD5=044452051F3E02E7963599FC8F4F3E25 -- C:\WINDOWS\system32\drivers\disk.sys

[color=#A23BEC]< MD5 for: DISKDUMP.SYS >[/color]
[2008/04/14 08:00:00 | 000,014,208 | ---- | M] (Microsoft Corporation) MD5=E65E2353A5D74EA89971CB918EEEB2F6 -- C:\WINDOWS\system32\dllcache\diskdump.sys
[2008/04/14 08:00:00 | 000,014,208 | ---- | M] (Microsoft Corporation) MD5=E65E2353A5D74EA89971CB918EEEB2F6 -- C:\WINDOWS\system32\drivers\diskdump.sys

[color=#A23BEC]< MD5 for: DMBOOT.SYS >[/color]
[2008/04/14 08:00:00 | 000,800,256 | ---- | M] (Microsoft Corp., Veritas Software) MD5=F5DEADD42335FB33EDCA74ECB2F36CBA -- C:\WINDOWS\system32\dllcache\dmboot.sys
[2008/04/14 08:00:00 | 000,800,256 | ---- | M] (Microsoft Corp., Veritas Software) MD5=F5DEADD42335FB33EDCA74ECB2F36CBA -- C:\WINDOWS\system32\drivers\dmboot.sys

[color=#A23BEC]< MD5 for: DMIO.SYS >[/color]
[2008/04/14 08:00:00 | 000,154,496 | ---- | M] (Microsoft Corp., Veritas Software) MD5=5A7C47C9B3F9FB92A66410A7509F0C71 -- C:\WINDOWS\system32\dllcache\dmio.sys
[2008/04/14 08:00:00 | 000,154,496 | ---- | M] (Microsoft Corp., Veritas Software) MD5=5A7C47C9B3F9FB92A66410A7509F0C71 -- C:\WINDOWS\system32\drivers\dmio.sys

[color=#A23BEC]< MD5 for: DMLOAD.SYS >[/color]
[2008/04/14 08:00:00 | 000,005,888 | ---- | M] (Microsoft Corp., Veritas Software.) MD5=E9317282A63CA4D188C0DF5E09C6AC5F -- C:\WINDOWS\system32\dllcache\dmload.sys
[2008/04/14 08:00:00 | 000,005,888 | ---- | M] (Microsoft Corp., Veritas Software.) MD5=E9317282A63CA4D188C0DF5E09C6AC5F -- C:\WINDOWS\system32\drivers\dmload.sys

[color=#A23BEC]< MD5 for: DMUSIC.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:DMusic.sys
[2008/04/13 14:45:01 | 000,052,864 | ---- | M] (Microsoft Corporation) MD5=8A208DFCF89792A484E76C40E5F50B45 -- C:\WINDOWS\system32\drivers\dmusic.sys

[color=#A23BEC]< MD5 for: DRMK.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:drmk.sys
[2008/04/14 08:00:00 | 000,060,160 | ---- | M] (Microsoft Corporation) MD5=6CB08593487F5701D2D2254E693EAFCE -- C:\WINDOWS\system32\drivers\drmk.sys

[color=#A23BEC]< MD5 for: DRMKAUD.SYS >[/color]
A voir également:

2 réponses

DockerJeckyll Messages postés 4 Date d'inscription dimanche 11 décembre 2011 Statut Membre Dernière intervention 14 juillet 2012
14 juil. 2012 à 10:12
(suite)

[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:drmkaud.sys
[2008/04/14 08:00:00 | 000,002,944 | ---- | M] (Microsoft Corporation) MD5=8F5FCFF8E8848AFAC920905FBD9D33C8 -- C:\WINDOWS\system32\drivers\drmkaud.sys

[color=#A23BEC]< MD5 for: DXAPI.SYS >[/color]
[2008/04/14 08:00:00 | 000,010,496 | ---- | M] (Microsoft Corporation) MD5=FE97D0343ACFDEBDD578FC67CC91FA87 -- C:\WINDOWS\system32\dllcache\dxapi.sys
[2008/04/14 08:00:00 | 000,010,496 | ---- | M] (Microsoft Corporation) MD5=FE97D0343ACFDEBDD578FC67CC91FA87 -- C:\WINDOWS\system32\drivers\dxapi.sys

[color=#A23BEC]< MD5 for: DXG.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:dxg.sys
[2008/04/14 08:00:00 | 000,071,168 | ---- | M] (Microsoft Corporation) MD5=AC7280566A7BB85CB3291F04DDC1198E -- C:\WINDOWS\system32\drivers\dxg.sys

[color=#A23BEC]< MD5 for: DXGTHK.SYS >[/color]
[2008/04/14 08:00:00 | 000,003,328 | ---- | M] (Microsoft Corporation) MD5=A73F5D6705B1D820C19B18782E176EFD -- C:\WINDOWS\system32\dllcache\dxgthk.sys
[2008/04/14 08:00:00 | 000,003,328 | ---- | M] (Microsoft Corporation) MD5=A73F5D6705B1D820C19B18782E176EFD -- C:\WINDOWS\system32\drivers\dxgthk.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2008/04/14 08:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4EC800BDF80521B0207BD2301DFC7D14 -- C:\WINDOWS\system32\dllcache\eventlog.dll
[2008/04/14 08:00:00 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=4EC800BDF80521B0207BD2301DFC7D14 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color]
[2008/04/14 08:00:00 | 001,037,824 | ---- | M] (Microsoft Corporation) MD5=F2317622D29F9FF0F88AEECD5F60F0DD -- C:\WINDOWS\explorer.exe
[2008/04/14 08:00:00 | 001,037,824 | ---- | M] (Microsoft Corporation) MD5=F2317622D29F9FF0F88AEECD5F60F0DD -- C:\WINDOWS\system32\dllcache\explorer.exe

[color=#A23BEC]< MD5 for: FASTFAT.SYS >[/color]
[2008/04/14 08:00:00 | 000,143,744 | ---- | M] (Microsoft Corporation) MD5=38D332A6D56AF32635675F132548343E -- C:\WINDOWS\system32\dllcache\fastfat.sys
[2008/04/14 08:00:00 | 000,143,744 | ---- | M] (Microsoft Corporation) MD5=38D332A6D56AF32635675F132548343E -- C:\WINDOWS\system32\drivers\fastfat.sys

[color=#A23BEC]< MD5 for: FDC.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:fdc.sys
[2008/04/14 08:00:00 | 000,027,392 | ---- | M] (Microsoft Corporation) MD5=92CDD60B6730B9F50F6A1A0C1F8CDC81 -- C:\WINDOWS\system32\drivers\fdc.sys

[color=#A23BEC]< MD5 for: FIPS.SYS >[/color]
[2008/04/14 08:00:00 | 000,044,672 | ---- | M] (Microsoft Corporation) MD5=31F923EB2170FC172C81ABDA0045D18C -- C:\WINDOWS\system32\dllcache\fips.sys
[2008/04/14 08:00:00 | 000,044,672 | ---- | M] (Microsoft Corporation) MD5=31F923EB2170FC172C81ABDA0045D18C -- C:\WINDOWS\system32\drivers\fips.sys

[color=#A23BEC]< MD5 for: FLPYDISK.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:flpydisk.sys
[2008/04/14 08:00:00 | 000,020,480 | ---- | M] (Microsoft Corporation) MD5=9D27E7B80BFCDF1CDD9B555862D5E7F0 -- C:\WINDOWS\system32\drivers\flpydisk.sys

[color=#A23BEC]< MD5 for: FLTMGR.SYS >[/color]
[2008/04/13 14:32:59 | 000,129,792 | ---- | M] (Microsoft Corporation) MD5=B2CF4B0786F8212CB92ED2B50C6DB6B0 -- C:\WINDOWS\system32\dllcache\fltmgr.sys
[2008/04/13 14:32:59 | 000,129,792 | ---- | M] (Microsoft Corporation) MD5=B2CF4B0786F8212CB92ED2B50C6DB6B0 -- C:\WINDOWS\system32\drivers\fltmgr.sys

[color=#A23BEC]< MD5 for: FS_REC.SYS >[/color]
[2008/04/14 08:00:00 | 000,007,936 | ---- | M] (Microsoft Corporation) MD5=3E1E2BD4F39B0E2B7DC4F4D2BCC2779A -- C:\WINDOWS\system32\dllcache\fs_rec.sys
[2008/04/14 08:00:00 | 000,007,936 | ---- | M] (Microsoft Corporation) MD5=3E1E2BD4F39B0E2B7DC4F4D2BCC2779A -- C:\WINDOWS\system32\drivers\fs_rec.sys

[color=#A23BEC]< MD5 for: FSVGA.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,416 | ---- | M] (Microsoft Corporation) MD5=B71A69BB9CC88803F455341BD3992E0C -- C:\WINDOWS\system32\dllcache\fsvga.sys
[2008/04/14 08:00:00 | 000,012,416 | ---- | M] (Microsoft Corporation) MD5=B71A69BB9CC88803F455341BD3992E0C -- C:\WINDOWS\system32\drivers\fsvga.sys

[color=#A23BEC]< MD5 for: FTDISK.SYS >[/color]
[2008/04/14 08:00:00 | 000,126,080 | ---- | M] (Microsoft Corporation) MD5=A86859B77B908C18C2657F284AA29FE3 -- C:\WINDOWS\system32\dllcache\ftdisk.sys
[2008/04/14 08:00:00 | 000,126,080 | ---- | M] (Microsoft Corporation) MD5=A86859B77B908C18C2657F284AA29FE3 -- C:\WINDOWS\system32\drivers\ftdisk.sys

[color=#A23BEC]< MD5 for: GM.DLS >[/color]
[2008/04/14 08:00:00 | 003,440,660 | ---- | M] () MD5=7F29903CB8F5590D52DB0C9F97049A25 -- C:\WINDOWS\system32\dllcache\gm.dls
[2008/04/14 08:00:00 | 003,440,660 | ---- | M] () MD5=7F29903CB8F5590D52DB0C9F97049A25 -- C:\WINDOWS\system32\drivers\gm.dls

[color=#A23BEC]< MD5 for: GMREADME.TXT >[/color]
[2008/04/14 08:00:00 | 000,000,646 | ---- | M] () MD5=7111BFA692A22E4B3C07F1E6C6FF6F72 -- C:\WINDOWS\system32\drivers\gmreadme.txt

[color=#A23BEC]< MD5 for: HDAUDBUS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hdaudbus.sys
[2008/04/14 08:00:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) MD5=573C7D0A32852B48F3058CFD8026F511 -- C:\WINDOWS\system32\drivers\hdaudbus.sys

[color=#A23BEC]< MD5 for: HIDCLASS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hidclass.sys
[2008/04/14 08:00:00 | 000,036,864 | ---- | M] (Microsoft Corporation) MD5=1AF592532532A402ED7C060F6954004F -- C:\WINDOWS\system32\dllcache\hidclass.sys
[2008/04/14 08:00:00 | 000,036,864 | ---- | M] (Microsoft Corporation) MD5=1AF592532532A402ED7C060F6954004F -- C:\WINDOWS\system32\drivers\hidclass.sys

[color=#A23BEC]< MD5 for: HIDPARSE.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hidparse.sys
[2008/04/14 08:00:00 | 000,024,960 | ---- | M] (Microsoft Corporation) MD5=96ECCF28FDBF1B2CC12725818A63628D -- C:\WINDOWS\system32\dllcache\hidparse.sys
[2008/04/14 08:00:00 | 000,024,960 | ---- | M] (Microsoft Corporation) MD5=96ECCF28FDBF1B2CC12725818A63628D -- C:\WINDOWS\system32\drivers\hidparse.sys

[color=#A23BEC]< MD5 for: HIDUSB.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hidusb.sys
[2008/04/14 08:00:00 | 000,010,368 | ---- | M] (Microsoft Corporation) MD5=CCF82C5EC8A7326C3066DE870C06DAF1 -- C:\WINDOWS\system32\dllcache\hidusb.sys
[2008/04/14 08:00:00 | 000,010,368 | ---- | M] (Microsoft Corporation) MD5=CCF82C5EC8A7326C3066DE870C06DAF1 -- C:\WINDOWS\system32\drivers\hidusb.sys

[color=#A23BEC]< MD5 for: HTTP.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:http.sys
[2008/04/14 08:00:00 | 000,264,832 | ---- | M] (Microsoft Corporation) MD5=F6AACF5BCE2893E0C1754AFEB672E5C9 -- C:\WINDOWS\system32\drivers\http.sys

[color=#A23BEC]< MD5 for: I8042PRT.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:i8042prt.sys
[2008/04/14 08:00:00 | 000,054,144 | ---- | M] (Microsoft Corporation) MD5=A09BDC4ED10E3B2E0EC27BB94AF32516 -- C:\WINDOWS\system32\drivers\i8042prt.sys

[color=#A23BEC]< MD5 for: IMAPI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:imapi.sys
[2008/04/14 08:00:00 | 000,042,112 | ---- | M] (Microsoft Corporation) MD5=083A052659F5310DD8B6A6CB05EDCF8E -- C:\WINDOWS\system32\drivers\imapi.sys

[color=#A23BEC]< MD5 for: INTELPPM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:intelppm.sys
[2008/04/14 08:00:00 | 000,040,576 | ---- | M] (Microsoft Corporation) MD5=AD340800C35A42D4DE1641A37FEEA34C -- C:\WINDOWS\system32\drivers\intelppm.sys

[color=#A23BEC]< MD5 for: IP6FW.SYS >[/color]
[2008/04/14 08:00:00 | 000,036,608 | ---- | M] (Microsoft Corporation) MD5=3BB22519A194418D5FEC05D800A19AD0 -- C:\WINDOWS\system32\dllcache\ip6fw.sys
[2008/04/14 08:00:00 | 000,036,608 | ---- | M] (Microsoft Corporation) MD5=3BB22519A194418D5FEC05D800A19AD0 -- C:\WINDOWS\system32\drivers\ip6fw.sys

[color=#A23BEC]< MD5 for: IPFLTDRV.SYS >[/color]
[2008/04/14 08:00:00 | 000,032,896 | ---- | M] (Microsoft Corporation) MD5=731F22BA402EE4B62748ADAF6363C182 -- C:\WINDOWS\system32\dllcache\ipfltdrv.sys
[2008/04/14 08:00:00 | 000,032,896 | ---- | M] (Microsoft Corporation) MD5=731F22BA402EE4B62748ADAF6363C182 -- C:\WINDOWS\system32\drivers\ipfltdrv.sys

[color=#A23BEC]< MD5 for: IPINIP.SYS >[/color]
[2008/04/14 08:00:00 | 000,020,864 | ---- | M] (Microsoft Corporation) MD5=B87AB476DCF76E72010632B5550955F5 -- C:\WINDOWS\system32\dllcache\ipinip.sys
[2008/04/14 08:00:00 | 000,020,864 | ---- | M] (Microsoft Corporation) MD5=B87AB476DCF76E72010632B5550955F5 -- C:\WINDOWS\system32\drivers\ipinip.sys

[color=#A23BEC]< MD5 for: IPNAT.SYS >[/color]
[2008/04/14 08:00:00 | 000,152,832 | ---- | M] (Microsoft Corporation) MD5=CC748EA12C6EFFDE940EE98098BF96BB -- C:\WINDOWS\system32\dllcache\ipnat.sys
[2008/04/14 08:00:00 | 000,152,832 | ---- | M] (Microsoft Corporation) MD5=CC748EA12C6EFFDE940EE98098BF96BB -- C:\WINDOWS\system32\drivers\ipnat.sys

[color=#A23BEC]< MD5 for: IPSEC.SYS >[/color]
[2008/04/14 08:00:00 | 000,075,264 | ---- | M] (Microsoft Corporation) MD5=23C74D75E36E7158768DD63D92789A91 -- C:\WINDOWS\system32\dllcache\ipsec.sys
[2008/04/14 08:00:00 | 000,075,264 | ---- | M] (Microsoft Corporation) MD5=23C74D75E36E7158768DD63D92789A91 -- C:\WINDOWS\system32\drivers\ipsec.sys

[color=#A23BEC]< MD5 for: IRENUM.SYS >[/color]
[2008/04/13 14:54:28 | 000,011,264 | ---- | M] (Microsoft Corporation) MD5=C93C9FF7B04D772627A3646D89F7BF89 -- C:\WINDOWS\system32\dllcache\irenum.sys
[2008/04/13 14:54:28 | 000,011,264 | ---- | M] (Microsoft Corporation) MD5=C93C9FF7B04D772627A3646D89F7BF89 -- C:\WINDOWS\system32\drivers\irenum.sys

[color=#A23BEC]< MD5 for: ISAPNP.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008/04/14 08:00:00 | 000,037,632 | ---- | M] (Microsoft Corporation) MD5=355836975A67B6554BCA60328CD6CB74 -- C:\WINDOWS\system32\dllcache\isapnp.sys
[2008/04/14 08:00:00 | 000,037,632 | ---- | M] (Microsoft Corporation) MD5=355836975A67B6554BCA60328CD6CB74 -- C:\WINDOWS\system32\drivers\isapnp.sys

[color=#A23BEC]< MD5 for: KBDCLASS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:kbdclass.sys
[2008/04/14 08:00:00 | 000,025,216 | ---- | M] (Microsoft Corporation) MD5=16813155807C6881F4BFBF6657424659 -- C:\WINDOWS\system32\drivers\kbdclass.sys

[color=#A23BEC]< MD5 for: KBDHID.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:kbdhid.sys

[color=#A23BEC]< MD5 for: KMIXER.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:kmixer.sys
[2008/04/14 08:00:00 | 000,172,416 | ---- | M] (Microsoft Corporation) MD5=692BCF44383D056AED41B045A323D378 -- C:\WINDOWS\system32\drivers\kmixer.sys

[color=#A23BEC]< MD5 for: KS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:ks.sys
[2008/04/14 08:00:00 | 000,141,056 | ---- | M] (Microsoft Corporation) MD5=0753515F78DF7F271A5E61C20BCD36A1 -- C:\WINDOWS\system32\drivers\ks.sys

[color=#A23BEC]< MD5 for: KSECDD.SYS >[/color]
[2008/04/14 08:00:00 | 000,092,288 | ---- | M] (Microsoft Corporation) MD5=1705745D900DABF2D89F90EBADDC7517 -- C:\WINDOWS\system32\dllcache\ksecdd.sys
[2008/04/14 08:00:00 | 000,092,288 | ---- | M] (Microsoft Corporation) MD5=1705745D900DABF2D89F90EBADDC7517 -- C:\WINDOWS\system32\drivers\ksecdd.sys
[2009/06/22 07:35:44 | 000,092,544 | ---- | M] (Microsoft Corporation) MD5=1BE7CC2535D760AE4D481576EB789F24 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\ksecdd.sys
[2009/06/24 07:18:41 | 000,092,928 | ---- | M] (Microsoft Corporation) MD5=B467646C54CC746128904E1654C750C1 -- C:\WINDOWS\$hf_mig$\KB968389\SP3GDR\ksecdd.sys
[2009/06/24 06:28:51 | 000,092,928 | ---- | M] (Microsoft Corporation) MD5=C6EBF1D6AD71DF30DB49B8D3287E1368 -- C:\WINDOWS\$hf_mig$\KB968389\SP3QFE\ksecdd.sys
[2006/03/02 08:00:00 | 000,092,032 | ---- | M] (Microsoft Corporation) MD5=EB7FFE87FD367EA8FCA0506F74A87FBB -- C:\WINDOWS\$NtUninstallKB968389_0$\ksecdd.sys

[color=#A23BEC]< MD5 for: MCD.SYS >[/color]
[2008/04/14 08:00:00 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=D1F8BE91ED4DDB671D42E473E3FE71AB -- C:\WINDOWS\system32\dllcache\mcd.sys
[2008/04/14 08:00:00 | 000,007,680 | ---- | M] (Microsoft Corporation) MD5=D1F8BE91ED4DDB671D42E473E3FE71AB -- C:\WINDOWS\system32\drivers\mcd.sys

[color=#A23BEC]< MD5 for: MF.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:mf.sys
[2008/04/14 08:00:00 | 000,063,744 | ---- | M] (Microsoft Corporation) MD5=A7DA20AB18A1BDAE28B0F349E57DA0D1 -- C:\WINDOWS\system32\dllcache\mf.sys
[2008/04/14 08:00:00 | 000,063,744 | ---- | M] (Microsoft Corporation) MD5=A7DA20AB18A1BDAE28B0F349E57DA0D1 -- C:\WINDOWS\system32\drivers\mf.sys

[color=#A23BEC]< MD5 for: MNMDD.SYS >[/color]
[2008/04/14 08:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=4AE068242760A1FB6E1A44BF4E16AFA6 -- C:\WINDOWS\system32\dllcache\mnmdd.sys
[2008/04/14 08:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=4AE068242760A1FB6E1A44BF4E16AFA6 -- C:\WINDOWS\system32\drivers\mnmdd.sys

[color=#A23BEC]< MD5 for: MODEM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:modem.sys
[2008/04/14 08:00:00 | 000,030,336 | ---- | M] (Microsoft Corporation) MD5=510ADE9327FE84C10254E1902697E25F -- C:\WINDOWS\system32\drivers\modem.sys

[color=#A23BEC]< MD5 for: MOUCLASS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:mouclass.sys
[2008/04/14 08:00:00 | 000,023,680 | ---- | M] (Microsoft Corporation) MD5=027C01BD7EF3349AAEBC883D8A799EFB -- C:\WINDOWS\system32\drivers\mouclass.sys

[color=#A23BEC]< MD5 for: MOUHID.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=124D6846040C79B9C997F78EF4B2A4E5 -- C:\WINDOWS\system32\dllcache\mouhid.sys
[2008/04/14 08:00:00 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=124D6846040C79B9C997F78EF4B2A4E5 -- C:\WINDOWS\system32\drivers\mouhid.sys

[color=#A23BEC]< MD5 for: MOUNTMGR.SYS >[/color]
[2008/04/14 08:00:00 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=A80B9A0BAD1B73637DBCBBA7DF72D3FD -- C:\WINDOWS\system32\dllcache\mountmgr.sys
[2008/04/14 08:00:00 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=A80B9A0BAD1B73637DBCBBA7DF72D3FD -- C:\WINDOWS\system32\drivers\mountmgr.sys

[color=#A23BEC]< MD5 for: MRXDAV.SYS >[/color]
[2008/04/14 08:00:00 | 000,180,608 | ---- | M] (Microsoft Corporation) MD5=11D42BB6206F33FBB3BA0288D3EF81BD -- C:\WINDOWS\system32\dllcache\mrxdav.sys
[2008/04/14 08:00:00 | 000,180,608 | ---- | M] (Microsoft Corporation) MD5=11D42BB6206F33FBB3BA0288D3EF81BD -- C:\WINDOWS\system32\drivers\mrxdav.sys

[color=#A23BEC]< MD5 for: MRXSMB.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:mrxsmb.sys
[2006/03/02 08:00:00 | 000,451,456 | ---- | M] (Microsoft Corporation) MD5=1FD607FC67F7F7C633C3DA65BFC53D18 -- C:\WINDOWS\$NtUninstallKB957097_0$\mrxsmb.sys
[2008/10/24 07:21:09 | 000,455,296 | ---- | M] (Microsoft Corporation) MD5=60AE98742484E7AB80C3C1450E708148 -- C:\WINDOWS\$hf_mig$\KB957097\SP3GDR\mrxsmb.sys
[2008/04/14 08:00:00 | 000,456,576 | ---- | M] (Microsoft Corporation) MD5=68755F0FF16070178B54674FE5B847B0 -- C:\WINDOWS\system32\drivers\mrxsmb.sys
[2008/10/24 07:41:11 | 000,455,936 | ---- | M] (Microsoft Corporation) MD5=7170AB42B51954DEF2781A4D1CCE65F4 -- C:\WINDOWS\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
[2008/10/24 07:25:29 | 000,455,936 | ---- | M] (Microsoft Corporation) MD5=D07DA410091143336DAE419A921AAE2B -- C:\WINDOWS\$hf_mig$\KB957097\SP2QFE\mrxsmb.sys

[color=#A23BEC]< MD5 for: MSFS.SYS >[/color]
[2008/04/14 08:00:00 | 000,019,072 | ---- | M] (Microsoft Corporation) MD5=C941EA2454BA8350021D774DAF0F1027 -- C:\WINDOWS\system32\dllcache\msfs.sys
[2008/04/14 08:00:00 | 000,019,072 | ---- | M] (Microsoft Corporation) MD5=C941EA2454BA8350021D774DAF0F1027 -- C:\WINDOWS\system32\drivers\msfs.sys

[color=#A23BEC]< MD5 for: MSGPC.SYS >[/color]
[2008/04/14 08:00:00 | 000,035,072 | ---- | M] (Microsoft Corporation) MD5=0A02C63C8B144BD8C86B103DEE7C86A2 -- C:\WINDOWS\system32\dllcache\msgpc.sys
[2008/04/14 08:00:00 | 000,035,072 | ---- | M] (Microsoft Corporation) MD5=0A02C63C8B144BD8C86B103DEE7C86A2 -- C:\WINDOWS\system32\drivers\msgpc.sys

[color=#A23BEC]< MD5 for: MSKSSRV.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:MSKSSRV.sys
[2008/04/14 08:00:00 | 000,007,552 | ---- | M] (Microsoft Corporation) MD5=D1575E71568F4D9E14CA56B7B0453BF1 -- C:\WINDOWS\system32\dllcache\mskssrv.sys
[2008/04/14 08:00:00 | 000,007,552 | ---- | M] (Microsoft Corporation) MD5=D1575E71568F4D9E14CA56B7B0453BF1 -- C:\WINDOWS\system32\drivers\mskssrv.sys

[color=#A23BEC]< MD5 for: MSPCLOCK.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:MSPCLOCK.sys
[2008/04/14 08:00:00 | 000,005,376 | ---- | M] (Microsoft Corporation) MD5=325BB26842FC7CCC1FCCE2C457317F3E -- C:\WINDOWS\system32\drivers\mspclock.sys

[color=#A23BEC]< MD5 for: MSPQM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:MSPQM.sys
[2008/04/14 08:00:00 | 000,004,992 | ---- | M] (Microsoft Corporation) MD5=BAD59648BA099DA4A17680B39730CB3D -- C:\WINDOWS\system32\drivers\mspqm.sys

[color=#A23BEC]< MD5 for: MSSMBIOS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:mssmbios.sys
[2008/04/14 08:00:00 | 000,015,488 | ---- | M] (Microsoft Corporation) MD5=AF5F4F3F14A8EA2C26DE30F7A1E17136 -- C:\WINDOWS\system32\drivers\mssmbios.sys

[color=#A23BEC]< MD5 for: MUP.SYS >[/color]
[2008/04/14 08:00:00 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=2F625D11385B1A94360BFC70AAEFDEE1 -- C:\WINDOWS\system32\dllcache\mup.sys
[2008/04/14 08:00:00 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=2F625D11385B1A94360BFC70AAEFDEE1 -- C:\WINDOWS\system32\drivers\mup.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008/04/14 08:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\dllcache\ndis.sys
[2008/04/14 08:00:00 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys

[color=#A23BEC]< MD5 for: NDISTAPI.SYS >[/color]
[2008/04/14 08:00:00 | 000,010,112 | ---- | M] (Microsoft Corporation) MD5=1AB3D00C991AB086E69DB84B6C0ED78F -- C:\WINDOWS\system32\dllcache\ndistapi.sys
[2008/04/14 08:00:00 | 000,010,112 | ---- | M] (Microsoft Corporation) MD5=1AB3D00C991AB086E69DB84B6C0ED78F -- C:\WINDOWS\system32\drivers\ndistapi.sys

[color=#A23BEC]< MD5 for: NDISUIO.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:ndisuio.sys
[2008/04/14 08:00:00 | 000,014,592 | ---- | M] (Microsoft Corporation) MD5=F927A4434C5028758A842943EF1A3849 -- C:\WINDOWS\system32\drivers\ndisuio.sys

[color=#A23BEC]< MD5 for: NDISWAN.SYS >[/color]
[2008/04/14 08:00:00 | 000,091,520 | ---- | M] (Microsoft Corporation) MD5=EDC1531A49C80614B2CFDA43CA8659AB -- C:\WINDOWS\system32\dllcache\ndiswan.sys
[2008/04/14 08:00:00 | 000,091,520 | ---- | M] (Microsoft Corporation) MD5=EDC1531A49C80614B2CFDA43CA8659AB -- C:\WINDOWS\system32\drivers\ndiswan.sys

[color=#A23BEC]< MD5 for: NDPROXY.SYS >[/color]
[2008/04/14 08:00:00 | 000,040,576 | ---- | M] (Microsoft Corporation) MD5=6215023940CFD3702B46ABC304E1D45A -- C:\WINDOWS\system32\dllcache\ndproxy.sys
[2008/04/14 08:00:00 | 000,040,576 | ---- | M] (Microsoft Corporation) MD5=6215023940CFD3702B46ABC304E1D45A -- C:\WINDOWS\system32\drivers\ndproxy.sys

[color=#A23BEC]< MD5 for: NETBIOS.SYS >[/color]
[2008/04/14 08:00:00 | 000,034,688 | ---- | M] (Microsoft Corporation) MD5=5D81CF9A2F1A3A756B66CF684911CDF0 -- C:\WINDOWS\system32\dllcache\netbios.sys
[2008/04/14 08:00:00 | 000,034,688 | ---- | M] (Microsoft Corporation) MD5=5D81CF9A2F1A3A756B66CF684911CDF0 -- C:\WINDOWS\system32\drivers\netbios.sys

[color=#A23BEC]< MD5 for: NETBT.SYS >[/color]
[2008/04/14 08:00:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=74B2B2F5BEA5E9A3DC021D685551BD3D -- C:\WINDOWS\system32\dllcache\netbt.sys
[2008/04/14 08:00:00 | 000,162,816 | ---- | M] (Microsoft Corporation) MD5=74B2B2F5BEA5E9A3DC021D685551BD3D -- C:\WINDOWS\system32\drivers\netbt.sys

[color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
[2008/04/14 08:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=04821179C3171554C1BD1F9888A113E2 -- C:\WINDOWS\system32\dllcache\netlogon.dll
[2008/04/14 08:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=04821179C3171554C1BD1F9888A113E2 -- C:\WINDOWS\system32\netlogon.dll
[2009/02/06 14:46:49 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=ECD7791E0E9246CA5F218A19F3911EB9 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll

[color=#A23BEC]< MD5 for: NIC1394.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:nic1394.sys
[2008/04/14 08:00:00 | 000,061,824 | ---- | M] (Microsoft Corporation) MD5=E9E47CFB2D461FA0FC75B7A74C6383EA -- C:\WINDOWS\system32\drivers\nic1394.sys

[color=#A23BEC]< MD5 for: NIKEDRV.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (S3/Diamond Multimedia Systems) MD5=BE984D604D91C217355CDD3737AAD25D -- C:\WINDOWS\system32\dllcache\nikedrv.sys
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (S3/Diamond Multimedia Systems) MD5=BE984D604D91C217355CDD3737AAD25D -- C:\WINDOWS\system32\drivers\nikedrv.sys

[color=#A23BEC]< MD5 for: NMNT.SYS >[/color]
[2008/04/14 08:00:00 | 000,040,320 | ---- | M] (Microsoft Corporation) MD5=1E421A6BCF2203CC61B821ADA9DE878B -- C:\WINDOWS\system32\dllcache\nmnt.sys
[2008/04/14 08:00:00 | 000,040,320 | ---- | M] (Microsoft Corporation) MD5=1E421A6BCF2203CC61B821ADA9DE878B -- C:\WINDOWS\system32\drivers\nmnt.sys

[color=#A23BEC]< MD5 for: NPFS.SYS >[/color]
[2008/04/14 08:00:00 | 000,030,848 | ---- | M] (Microsoft Corporation) MD5=3182D64AE053D6FB034F44B6DEF8034A -- C:\WINDOWS\system32\dllcache\npfs.sys
[2008/04/14 08:00:00 | 000,030,848 | ---- | M] (Microsoft Corporation) MD5=3182D64AE053D6FB034F44B6DEF8034A -- C:\WINDOWS\system32\drivers\npfs.sys

[color=#A23BEC]< MD5 for: NTFS.SYS >[/color]
[2008/04/14 08:00:00 | 000,574,976 | ---- | M] (Microsoft Corporation) MD5=78A08DD6A8D65E697C18E1DB01C5CDCA -- C:\WINDOWS\system32\dllcache\ntfs.sys
[2008/04/14 08:00:00 | 000,574,976 | ---- | M] (Microsoft Corporation) MD5=78A08DD6A8D65E697C18E1DB01C5CDCA -- C:\WINDOWS\system32\drivers\ntfs.sys

[color=#A23BEC]< MD5 for: NULL.SYS >[/color]
[2008/04/14 08:00:00 | 000,002,944 | ---- | M] (Microsoft Corporation) MD5=73C1E1F395918BC2C6DD67AF7591A3AD -- C:\WINDOWS\system32\dllcache\null.sys
[2008/04/14 08:00:00 | 000,002,944 | ---- | M] (Microsoft Corporation) MD5=73C1E1F395918BC2C6DD67AF7591A3AD -- C:\WINDOWS\system32\drivers\null.sys

[color=#A23BEC]< MD5 for: NV4_MINI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:nv4_mini.sys
[2009/01/14 11:37:00 | 006,620,064 | ---- | M] (NVIDIA Corporation) MD5=8F91D713EBB1682F36DD93525861149F -- C:\WINDOWS\system32\drivers\nv4_mini.sys

[color=#A23BEC]< MD5 for: NWLNKFLT.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,416 | ---- | M] (Microsoft Corporation) MD5=B305F3FAD35083837EF46A0BBCE2FC57 -- C:\WINDOWS\system32\dllcache\nwlnkflt.sys
[2008/04/14 08:00:00 | 000,012,416 | ---- | M] (Microsoft Corporation) MD5=B305F3FAD35083837EF46A0BBCE2FC57 -- C:\WINDOWS\system32\drivers\nwlnkflt.sys

[color=#A23BEC]< MD5 for: NWLNKFWD.SYS >[/color]
[2008/04/14 08:00:00 | 000,032,512 | ---- | M] (Microsoft Corporation) MD5=C99B3415198D1AAB7227F2C88FD664B9 -- C:\WINDOWS\system32\dllcache\nwlnkfwd.sys
[2008/04/14 08:00:00 | 000,032,512 | ---- | M] (Microsoft Corporation) MD5=C99B3415198D1AAB7227F2C88FD664B9 -- C:\WINDOWS\system32\drivers\nwlnkfwd.sys

[color=#A23BEC]< MD5 for: NWLNKIPX.SYS >[/color]
[2008/04/14 08:00:00 | 000,088,320 | ---- | M] (Microsoft Corporation) MD5=8B8B1BE2DBA4025DA6786C645F77F123 -- C:\WINDOWS\system32\dllcache\nwlnkipx.sys
[2008/04/14 08:00:00 | 000,088,320 | ---- | M] (Microsoft Corporation) MD5=8B8B1BE2DBA4025DA6786C645F77F123 -- C:\WINDOWS\system32\drivers\nwlnkipx.sys

[color=#A23BEC]< MD5 for: NWLNKNB.SYS >[/color]
[2008/04/14 08:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) MD5=56D34A67C05E94E16377C60609741FF8 -- C:\WINDOWS\system32\dllcache\nwlnknb.sys
[2008/04/14 08:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) MD5=56D34A67C05E94E16377C60609741FF8 -- C:\WINDOWS\system32\drivers\nwlnknb.sys

[color=#A23BEC]< MD5 for: NWLNKSPX.SYS >[/color]
[2008/04/14 08:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) MD5=C0BB7D1615E1ACBDC99757F6CEAF8CF0 -- C:\WINDOWS\system32\dllcache\nwlnkspx.sys
[2008/04/14 08:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) MD5=C0BB7D1615E1ACBDC99757F6CEAF8CF0 -- C:\WINDOWS\system32\drivers\nwlnkspx.sys

[color=#A23BEC]< MD5 for: OPRGHDLR.SYS >[/color]
[2008/04/14 08:00:00 | 000,003,456 | ---- | M] (Microsoft Corporation) MD5=4BB30DDC53EBC76895E38694580CDFE9 -- C:\WINDOWS\system32\dllcache\oprghdlr.sys
[2008/04/14 08:00:00 | 000,003,456 | ---- | M] (Microsoft Corporation) MD5=4BB30DDC53EBC76895E38694580CDFE9 -- C:\WINDOWS\system32\drivers\oprghdlr.sys

[color=#A23BEC]< MD5 for: P3.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:p3.sys
[2008/04/14 08:00:00 | 000,046,848 | ---- | M] (Microsoft Corporation) MD5=CECB679633523AC5EB7EB85F92DCD806 -- C:\WINDOWS\system32\dllcache\p3.sys
[2008/04/14 08:00:00 | 000,046,848 | ---- | M] (Microsoft Corporation) MD5=CECB679633523AC5EB7EB85F92DCD806 -- C:\WINDOWS\system32\drivers\p3.sys

[color=#A23BEC]< MD5 for: PARPORT.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:parport.sys
[2008/04/14 08:00:00 | 000,080,384 | ---- | M] (Microsoft Corporation) MD5=8FD0BDBEA875D06CCF6C945CA9ABAF75 -- C:\WINDOWS\system32\drivers\parport.sys

[color=#A23BEC]< MD5 for: PARTMGR.SYS >[/color]
[2008/04/14 08:00:00 | 000,019,712 | ---- | M] (Microsoft Corporation) MD5=BEB3BA25197665D82EC7065B724171C6 -- C:\WINDOWS\system32\dllcache\partmgr.sys
[2008/04/14 08:00:00 | 000,019,712 | ---- | M] (Microsoft Corporation) MD5=BEB3BA25197665D82EC7065B724171C6 -- C:\WINDOWS\system32\drivers\partmgr.sys

[color=#A23BEC]< MD5 for: PARVDM.SYS >[/color]
[2008/04/14 08:00:00 | 000,006,912 | ---- | M] (Microsoft Corporation) MD5=9575C5630DB8FB804649A6959737154C -- C:\WINDOWS\system32\dllcache\parvdm.sys
[2008/04/14 08:00:00 | 000,006,912 | ---- | M] (Microsoft Corporation) MD5=9575C5630DB8FB804649A6959737154C -- C:\WINDOWS\system32\drivers\parvdm.sys

[color=#A23BEC]< MD5 for: PCI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:pci.sys
[2008/04/14 08:00:00 | 000,068,608 | ---- | M] (Microsoft Corporation) MD5=043410877BDA580C528F45165F7125BC -- C:\WINDOWS\system32\dllcache\pci.sys
[2008/04/14 08:00:00 | 000,068,608 | ---- | M] (Microsoft Corporation) MD5=043410877BDA580C528F45165F7125BC -- C:\WINDOWS\system32\drivers\pci.sys

[color=#A23BEC]< MD5 for: PCIIDE.SYS >[/color]
[2008/04/14 08:00:00 | 000,003,328 | ---- | M] (Microsoft Corporation) MD5=F4BFDE7209C14A07AAA61E4D6AE69EAC -- C:\WINDOWS\system32\dllcache\pciide.sys
[2008/04/14 08:00:00 | 000,003,328 | ---- | M] (Microsoft Corporation) MD5=F4BFDE7209C14A07AAA61E4D6AE69EAC -- C:\WINDOWS\system32\drivers\pciide.sys

[color=#A23BEC]< MD5 for: PCIIDEX.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:pciidex.sys
[2008/04/14 08:00:00 | 000,024,960 | ---- | M] (Microsoft Corporation) MD5=52E60F29221D0D1AC16737E8DBF7C3E9 -- C:\WINDOWS\system32\dllcache\pciidex.sys
[2008/04/14 08:00:00 | 000,024,960 | ---- | M] (Microsoft Corporation) MD5=52E60F29221D0D1AC16737E8DBF7C3E9 -- C:\WINDOWS\system32\drivers\pciidex.sys

[color=#A23BEC]< MD5 for: PCMCIA.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:pcmcia.sys
[2008/04/14 08:00:00 | 000,120,576 | ---- | M] (Microsoft Corporation) MD5=F0406CBC60BDB0394A0E17FFB04CDD3D -- C:\WINDOWS\system32\dllcache\pcmcia.sys
[2008/04/14 08:00:00 | 000,120,576 | ---- | M] (Microsoft Corporation) MD5=F0406CBC60BDB0394A0E17FFB04CDD3D -- C:\WINDOWS\system32\drivers\pcmcia.sys

[color=#A23BEC]< MD5 for: PORTCLS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:portcls.sys
[2008/04/14 08:00:00 | 000,146,048 | ---- | M] (Microsoft Corporation) MD5=E82A496C3961EFC6828B508C310CE98F -- C:\WINDOWS\system32\drivers\portcls.sys

[color=#A23BEC]< MD5 for: PROCESSR.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:processr.sys
[2008/04/14 08:00:00 | 000,040,064 | ---- | M] (Microsoft Corporation) MD5=E19C9632AC828F6F214391E2BDDA11CB -- C:\WINDOWS\system32\dllcache\processr.sys
[2008/04/14 08:00:00 | 000,040,064 | ---- | M] (Microsoft Corporation) MD5=E19C9632AC828F6F214391E2BDDA11CB -- C:\WINDOWS\system32\drivers\processr.sys

[color=#A23BEC]< MD5 for: PSCHED.SYS >[/color]
[2008/04/14 08:00:00 | 000,069,120 | ---- | M] (Microsoft Corporation) MD5=09298EC810B07E5D582CB3A3F9255424 -- C:\WINDOWS\system32\dllcache\psched.sys
[2008/04/14 08:00:00 | 000,069,120 | ---- | M] (Microsoft Corporation) MD5=09298EC810B07E5D582CB3A3F9255424 -- C:\WINDOWS\system32\drivers\psched.sys

[color=#A23BEC]< MD5 for: PTILINK.SYS >[/color]
[2008/04/14 08:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) MD5=80D317BD1C3DBC5D4FE7B1678C60CADD -- C:\WINDOWS\system32\dllcache\ptilink.sys
[2008/04/14 08:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) MD5=80D317BD1C3DBC5D4FE7B1678C60CADD -- C:\WINDOWS\system32\drivers\ptilink.sys

[color=#A23BEC]< MD5 for: RASACD.SYS >[/color]
[2008/04/14 08:00:00 | 000,008,832 | ---- | M] (Microsoft Corporation) MD5=FE0D99D6F31E4FAD8159F690D68DED9C -- C:\WINDOWS\system32\dllcache\rasacd.sys
[2008/04/14 08:00:00 | 000,008,832 | ---- | M] (Microsoft Corporation) MD5=FE0D99D6F31E4FAD8159F690D68DED9C -- C:\WINDOWS\system32\drivers\rasacd.sys

[color=#A23BEC]< MD5 for: RASL2TP.SYS >[/color]
[2008/04/14 08:00:00 | 000,051,328 | ---- | M] (Microsoft Corporation) MD5=11B4A627BC9614B885C4969BFA5FF8A6 -- C:\WINDOWS\system32\dllcache\rasl2tp.sys
[2008/04/14 08:00:00 | 000,051,328 | ---- | M] (Microsoft Corporation) MD5=11B4A627BC9614B885C4969BFA5FF8A6 -- C:\WINDOWS\system32\drivers\rasl2tp.sys

[color=#A23BEC]< MD5 for: RASPPPOE.SYS >[/color]
[2008/04/14 08:00:00 | 000,041,472 | ---- | M] (Microsoft Corporation) MD5=5BC962F2654137C9909C3D4603587DEE -- C:\WINDOWS\system32\dllcache\raspppoe.sys
[2008/04/14 08:00:00 | 000,041,472 | ---- | M] (Microsoft Corporation) MD5=5BC962F2654137C9909C3D4603587DEE -- C:\WINDOWS\system32\drivers\raspppoe.sys

[color=#A23BEC]< MD5 for: RASPPTP.SYS >[/color]
[2008/04/14 08:00:00 | 000,048,384 | ---- | M] (Microsoft Corporation) MD5=EFEEC01B1D3CF84F16DDD24D9D9D8F99 -- C:\WINDOWS\system32\dllcache\raspptp.sys
[2008/04/14 08:00:00 | 000,048,384 | ---- | M] (Microsoft Corporation) MD5=EFEEC01B1D3CF84F16DDD24D9D9D8F99 -- C:\WINDOWS\system32\drivers\raspptp.sys

[color=#A23BEC]< MD5 for: RASPTI.SYS >[/color]
[2008/04/14 08:00:00 | 000,016,512 | ---- | M] (Microsoft Corporation) MD5=FDBB1D60066FCFBB7452FD8F9829B242 -- C:\WINDOWS\system32\dllcache\raspti.sys
[2008/04/14 08:00:00 | 000,016,512 | ---- | M] (Microsoft Corporation) MD5=FDBB1D60066FCFBB7452FD8F9829B242 -- C:\WINDOWS\system32\drivers\raspti.sys

[color=#A23BEC]< MD5 for: RAWWAN.SYS >[/color]
[2008/04/14 08:00:00 | 000,034,432 | ---- | M] (Microsoft Corporation) MD5=01524CD237223B18ADBB48F70083F101 -- C:\WINDOWS\system32\dllcache\rawwan.sys
[2008/04/14 08:00:00 | 000,034,432 | ---- | M] (Microsoft Corporation) MD5=01524CD237223B18ADBB48F70083F101 -- C:\WINDOWS\system32\drivers\rawwan.sys

[color=#A23BEC]< MD5 for: RDBSS.SYS >[/color]
[2008/04/14 08:00:00 | 000,175,744 | ---- | M] (Microsoft Corporation) MD5=7AD224AD1A1437FE28D89CF22B17780A -- C:\WINDOWS\system32\dllcache\rdbss.sys
[2008/04/14 08:00:00 | 000,175,744 | ---- | M] (Microsoft Corporation) MD5=7AD224AD1A1437FE28D89CF22B17780A -- C:\WINDOWS\system32\drivers\rdbss.sys

[color=#A23BEC]< MD5 for: RDPCDD.SYS >[/color]
[2008/04/14 08:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=4912D5B403614CE99C28420F75353332 -- C:\WINDOWS\system32\dllcache\rdpcdd.sys
[2008/04/14 08:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=4912D5B403614CE99C28420F75353332 -- C:\WINDOWS\system32\drivers\rdpcdd.sys

[color=#A23BEC]< MD5 for: RDPDR.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:rdpdr.sys
[2008/04/13 14:32:51 | 000,196,224 | ---- | M] (Microsoft Corporation) MD5=15CABD0F7C00C47C70124907916AF3F1 -- C:\WINDOWS\system32\drivers\rdpdr.sys

[color=#A23BEC]< MD5 for: RDPWD.SYS >[/color]
[2008/04/13 22:34:54 | 000,139,656 | ---- | M] (Microsoft Corporation) MD5=6728E45B66F93C08F11DE2E316FC70DD -- C:\WINDOWS\system32\dllcache\rdpwd.sys
[2008/04/13 22:34:54 | 000,139,656 | ---- | M] (Microsoft Corporation) MD5=6728E45B66F93C08F11DE2E316FC70DD -- C:\WINDOWS\system32\drivers\rdpwd.sys

[color=#A23BEC]< MD5 for: REDBOOK.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:redbook.sys
[2008/04/13 21:57:34 | 000,058,752 | ---- | M] (Microsoft Corporation) MD5=D8EB2A7904DB6C916EB5361878DDCBAE -- C:\WINDOWS\system32\drivers\redbook.sys

[color=#A23BEC]< MD5 for: REGEDIT.EXE >[/color]
[2008/04/14 08:00:00 | 000,153,088 | ---- | M] (Microsoft Corporation) MD5=ADF88D0996A634B5B13EE8FB9595647D -- C:\WINDOWS\regedit.exe
[2008/04/14 08:00:00 | 000,153,088 | ---- | M] (Microsoft Corporation) MD5=ADF88D0996A634B5B13EE8FB9595647D -- C:\WINDOWS\system32\dllcache\regedit.exe

[color=#A23BEC]< MD5 for: RIO8DRV.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (S3/Diamond Multimedia Systems) MD5=A56FE08EC7473E8580A390BB1081CDD7 -- C:\WINDOWS\system32\dllcache\rio8drv.sys
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (S3/Diamond Multimedia Systems) MD5=A56FE08EC7473E8580A390BB1081CDD7 -- C:\WINDOWS\system32\drivers\rio8drv.sys

[color=#A23BEC]< MD5 for: RIODRV.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (S3/Diamond Multimedia Systems) MD5=0A854DF84C77A0BE205BFEAB2AE4F0EC -- C:\WINDOWS\system32\dllcache\riodrv.sys
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (S3/Diamond Multimedia Systems) MD5=0A854DF84C77A0BE205BFEAB2AE4F0EC -- C:\WINDOWS\system32\drivers\riodrv.sys

[color=#A23BEC]< MD5 for: RMCAST.SYS >[/color]
[2006/03/02 08:00:00 | 000,200,064 | ---- | M] (Microsoft Corporation) MD5=35E81B908AE4E97FC7BDF4607C516FF4 -- C:\WINDOWS\$NtUninstallKB950762_0$\rmcast.sys
[2008/05/08 10:02:52 | 000,203,136 | ---- | M] (Microsoft Corporation) MD5=96F7A9A7BF0C9C0440A967440065D33C -- C:\WINDOWS\$hf_mig$\KB950762\SP3GDR\rmcast.sys
[2008/05/08 08:14:51 | 000,203,008 | ---- | M] (Microsoft Corporation) MD5=B1F077190BA1CFA0A2A2AFAE9E7FDE2B -- C:\WINDOWS\$hf_mig$\KB950762\SP2QFE\rmcast.sys
[2008/05/08 09:58:17 | 000,203,136 | ---- | M] (Microsoft Corporation) MD5=C711645C76B8ED87C021BF6165E52795 -- C:\WINDOWS\$hf_mig$\KB950762\SP3QFE\rmcast.sys
[2008/04/14 08:00:00 | 000,202,624 | ---- | M] (Microsoft Corporation) MD5=ECFF394D65671EFDE5A872EB9EF4F2D5 -- C:\WINDOWS\system32\dllcache\rmcast.sys
[2008/04/14 08:00:00 | 000,202,624 | ---- | M] (Microsoft Corporation) MD5=ECFF394D65671EFDE5A872EB9EF4F2D5 -- C:\WINDOWS\system32\drivers\RMCast.sys

[color=#A23BEC]< MD5 for: RNDISMP.SYS >[/color]
[2008/04/14 08:00:00 | 000,030,592 | ---- | M] (Microsoft Corporation) MD5=601844CBCF617FF8C868130CA5B2039D -- C:\WINDOWS\system32\dllcache\rndismp.sys
[2008/04/14 08:00:00 | 000,030,592 | ---- | M] (Microsoft Corporation) MD5=601844CBCF617FF8C868130CA5B2039D -- C:\WINDOWS\system32\drivers\rndismp.sys

[color=#A23BEC]< MD5 for: ROOTMDM.SYS >[/color]
[2008/04/14 08:00:00 | 000,005,888 | ---- | M] (Microsoft Corporation) MD5=D8B0B4ADE32574B2D9C5CC34DC0DBBE7 -- C:\WINDOWS\system32\dllcache\rootmdm.sys
[2008/04/14 08:00:00 | 000,005,888 | ---- | M] (Microsoft Corporation) MD5=D8B0B4ADE32574B2D9C5CC34DC0DBBE7 -- C:\WINDOWS\system32\drivers\rootmdm.sys

[color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
[2008/04/14 08:00:00 | 000,187,392 | ---- | M] (Microsoft Corporation) MD5=973B36634C544948C663E8269AA1B3A3 -- C:\WINDOWS\system32\dllcache\scecli.dll
[2008/04/14 08:00:00 | 000,187,392 | ---- | M] (Microsoft Corporation) MD5=973B36634C544948C663E8269AA1B3A3 -- C:\WINDOWS\system32\scecli.dll

[color=#A23BEC]< MD5 for: SCSIPORT.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:scsiport.sys
[2008/04/14 08:00:00 | 000,096,384 | ---- | M] (Microsoft Corporation) MD5=76C465F570E90C28942D52CCB2580A10 -- C:\WINDOWS\system32\dllcache\scsiport.sys
[2008/04/14 08:00:00 | 000,096,384 | ---- | M] (Microsoft Corporation) MD5=76C465F570E90C28942D52CCB2580A10 -- C:\WINDOWS\system32\drivers\scsiport.sys

[color=#A23BEC]< MD5 for: SDBUS.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sdbus.sys
[2008/04/14 08:00:00 | 000,079,232 | ---- | M] (Microsoft Corporation) MD5=8D04819A3CE51B9EB47E5689B44D43C4 -- C:\WINDOWS\system32\drivers\sdbus.sys

[color=#A23BEC]< MD5 for: SECDRV.SYS >[/color]
[2008/04/14 08:00:00 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) MD5=90A3935D05B494A5A39D37E71F09A677 -- C:\WINDOWS\system32\drivers\secdrv.sys

[color=#A23BEC]< MD5 for: SERENUM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:serenum.sys
[2008/04/14 08:00:00 | 000,015,744 | ---- | M] (Microsoft Corporation) MD5=0F29512CCD6BEAD730039FB4BD2C85CE -- C:\WINDOWS\system32\dllcache\serenum.sys
[2008/04/14 08:00:00 | 000,015,744 | ---- | M] (Microsoft Corporation) MD5=0F29512CCD6BEAD730039FB4BD2C85CE -- C:\WINDOWS\system32\drivers\serenum.sys

[color=#A23BEC]< MD5 for: SERIAL.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:serial.sys
[2008/04/14 08:00:00 | 000,066,048 | ---- | M] (Microsoft Corporation) MD5=93D313C31F7AD9EA2B75F26075413C7C -- C:\WINDOWS\system32\dllcache\serial.sys
[2008/04/14 08:00:00 | 000,066,048 | ---- | M] (Microsoft Corporation) MD5=93D313C31F7AD9EA2B75F26075413C7C -- C:\WINDOWS\system32\drivers\serial.sys

[color=#A23BEC]< MD5 for: SERVICES.EXE >[/color]
[2009/02/09 05:53:11 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=51A24094F076961A7FF73E5F7E991D68 -- C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\services.exe
[2008/04/14 08:00:00 | 000,109,056 | ---- | M] (Microsoft Corporation) MD5=54CB50058851D95E56EC70D09F70857F -- C:\WINDOWS\system32\dllcache\services.exe
[2008/04/14 08:00:00 | 000,109,056 | ---- | M] (Microsoft Corporation) MD5=54CB50058851D95E56EC70D09F70857F -- C:\WINDOWS\system32\services.exe
[2009/02/09 07:16:53 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=62789101F9C2401ED598AA2CDE7450C0 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe
[2006/03/02 08:00:00 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=63DCDE1A0D86EEB8924D6738FF616EAD -- C:\WINDOWS\$NtUninstallKB956572_0$\services.exe
[2009/02/09 07:23:48 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=C3FB1D70CB88722267949694BA51759E -- C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\services.exe

[color=#A23BEC]< MD5 for: SFFDISK.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sffdisk.sys
[2008/04/14 08:00:00 | 000,011,904 | ---- | M] (Microsoft Corporation) MD5=0FA803C64DF0914B41F807EA276BF2A6 -- C:\WINDOWS\system32\dllcache\sffdisk.sys
[2008/04/14 08:00:00 | 000,011,904 | ---- | M] (Microsoft Corporation) MD5=0FA803C64DF0914B41F807EA276BF2A6 -- C:\WINDOWS\system32\drivers\sffdisk.sys

[color=#A23BEC]< MD5 for: SFFP_MMC.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sffp_mmc.sys
[2008/04/14 08:00:00 | 000,010,240 | ---- | M] (Microsoft Corporation) MD5=D66D22D76878BF3483A6BE30183FB648 -- C:\WINDOWS\system32\drivers\sffp_mmc.sys

[color=#A23BEC]< MD5 for: SFFP_SD.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sffp_sd.sys
[2008/04/14 08:00:00 | 000,011,008 | ---- | M] (Microsoft Corporation) MD5=C17C331E435ED8737525C86A7557B3AC -- C:\WINDOWS\system32\dllcache\sffp_sd.sys
[2008/04/14 08:00:00 | 000,011,008 | ---- | M] (Microsoft Corporation) MD5=C17C331E435ED8737525C86A7557B3AC -- C:\WINDOWS\system32\drivers\sffp_sd.sys

[color=#A23BEC]< MD5 for: SFLOPPY.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sfloppy.sys
[2008/04/14 08:00:00 | 000,011,392 | ---- | M] (Microsoft Corporation) MD5=8E6B8C671615D126FDC553D1E2DE5562 -- C:\WINDOWS\system32\drivers\sfloppy.sys

[color=#A23BEC]< MD5 for: SHELL32.DLL >[/color]
[2006/03/02 08:00:00 | 008,440,320 | ---- | M] (Microsoft Corporation) MD5=6643DD881F306FC09821F184BFA51D82 -- C:\WINDOWS\$NtUninstallKB967715_0$\shell32.dll
[2008/06/17 15:04:03 | 008,518,144 | ---- | M] (Microsoft Corporation) MD5=91FAF8B2E87DCF48DA733D0D1007F304 -- C:\WINDOWS\$hf_mig$\KB967715\SP3QFE\shell32.dll
[2008/04/14 08:00:00 | 008,517,632 | ---- | M] (Microsoft Corporation) MD5=C85E0DF0A6EB047D2DC428C4014E5D58 -- C:\WINDOWS\system32\dllcache\shell32.dll
[2008/07/03 09:03:11 | 008,517,120 | ---- | M] (Microsoft Corporation) MD5=E30049EF26ED773449B2E9D6AED87E26 -- C:\WINDOWS\$hf_mig$\KB967715\SP2QFE\shell32.dll
[2008/06/17 15:02:15 | 008,517,632 | ---- | M] (Microsoft Corporation) MD5=EE8B203B149B0144746E1D8D847C6B7A -- C:\WINDOWS\$hf_mig$\KB967715\SP3GDR\shell32.dll
[2008/04/14 08:00:00 | 008,517,632 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\shell32.dll

[color=#A23BEC]< MD5 for: SMCLIB.SYS >[/color]
[2008/04/14 08:00:00 | 000,014,592 | ---- | M] (Microsoft Corporation) MD5=017DAECF0ED3AA731313433601EC40FA -- C:\WINDOWS\system32\dllcache\smclib.sys
[2008/04/14 08:00:00 | 000,014,592 | ---- | M] (Microsoft Corporation) MD5=017DAECF0ED3AA731313433601EC40FA -- C:\WINDOWS\system32\drivers\smclib.sys

[color=#A23BEC]< MD5 for: SONYDCAM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sonydcam.sys
[2008/04/14 08:00:00 | 000,025,344 | ---- | M] (Microsoft Corporation) MD5=489703624DAC94ED943C2ABDA022A1CD -- C:\WINDOWS\system32\dllcache\sonydcam.sys
[2008/04/14 08:00:00 | 000,025,344 | ---- | M] (Microsoft Corporation) MD5=489703624DAC94ED943C2ABDA022A1CD -- C:\WINDOWS\system32\drivers\sonydcam.sys

[color=#A23BEC]< MD5 for: SPLITTER.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:splitter.sys
[2008/04/13 14:45:07 | 000,006,272 | ---- | M] (Microsoft Corporation) MD5=AB8B92451ECB048A4D1DE7C3FFCB4A9F -- C:\WINDOWS\system32\drivers\splitter.sys

[color=#A23BEC]< MD5 for: SR.SYS >[/color]
[2008/04/13 22:10:03 | 000,073,600 | ---- | M] (Microsoft Corporation) MD5=39626E6DC1FB39434EC40C42722B660A -- C:\WINDOWS\system32\dllcache\sr.sys
[2008/04/13 22:10:03 | 000,073,600 | ---- | M] (Microsoft Corporation) MD5=39626E6DC1FB39434EC40C42722B660A -- C:\WINDOWS\system32\drivers\sr.sys

[color=#A23BEC]< MD5 for: SRV.SYS >[/color]
[2006/03/02 08:00:00 | 000,336,256 | ---- | M] (Microsoft Corporation) MD5=20B7E396720353E4117D64D9DCB926CA -- C:\WINDOWS\$NtUninstallKB958687_0$\srv.sys
[2008/12/11 06:57:09 | 000,333,952 | ---- | M] (Microsoft Corporation) MD5=3BB03F2BA89D2BE417206C373D2AF17C -- C:\WINDOWS\$hf_mig$\KB958687\SP3GDR\srv.sys
[2008/04/14 08:00:00 | 000,334,848 | ---- | M] (Microsoft Corporation) MD5=5252605079810904E31C332E241CD59B -- C:\WINDOWS\system32\dllcache\srv.sys
[2008/04/14 08:00:00 | 000,334,848 | ---- | M] (Microsoft Corporation) MD5=5252605079810904E31C332E241CD59B -- C:\WINDOWS\system32\drivers\srv.sys
[2008/12/11 06:24:44 | 000,333,184 | ---- | M] (Microsoft Corporation) MD5=6BFA2B79451F961D4A3DD896659193DF -- C:\WINDOWS\$hf_mig$\KB958687\SP2QFE\srv.sys
[2008/12/11 08:33:59 | 000,333,952 | ---- | M] (Microsoft Corporation) MD5=E89B42B216BC86ADA4345908284519CB -- C:\WINDOWS\$hf_mig$\KB958687\SP3QFE\srv.sys

[color=#A23BEC]< MD5 for: SSMDRV.SYS >[/color]
[2010/06/17 10:28:02 | 000,028,520 | ---- | M] (Avira GmbH) MD5=A36EE93698802CD899F98BFD553D8185 -- C:\WINDOWS\system32\drivers\ssmdrv.sys

[color=#A23BEC]< MD5 for: STREAM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:stream.sys
[2008/04/14 08:00:00 | 000,049,408 | ---- | M] (Microsoft Corporation) MD5=3E5D89099DED9E86E5639F411693218F -- C:\WINDOWS\system32\dllcache\stream.sys
[2008/04/14 08:00:00 | 000,049,408 | ---- | M] (Microsoft Corporation) MD5=3E5D89099DED9E86E5639F411693218F -- C:\WINDOWS\system32\drivers\stream.sys

[color=#A23BEC]< MD5 for: SWENUM.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:swenum.sys
[2008/04/14 08:00:00 | 000,004,352 | ---- | M] (Microsoft Corporation) MD5=3941D127AEF12E93ADDF6FE6EE027E0F -- C:\WINDOWS\system32\drivers\swenum.sys

[color=#A23BEC]< MD5 for: SWMIDI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:swmidi.sys
[2008/04/14 08:00:00 | 000,056,576 | ---- | M] (Microsoft Corporation) MD5=8CE882BCC6CF8A62F2B2323D95CB3D01 -- C:\WINDOWS\system32\drivers\swmidi.sys

[color=#A23BEC]< MD5 for: SYSAUDIO.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:sysaudio.sys
[2008/04/14 08:00:00 | 000,060,800 | ---- | M] (Microsoft Corporation) MD5=8B83F3ED0F1688B4958F77CD6D2BF290 -- C:\WINDOWS\system32\drivers\sysaudio.sys

[color=#A23BEC]< MD5 for: TAPE.SYS >[/color]
[2008/04/14 08:00:00 | 000,014,976 | ---- | M] (Microsoft Corporation) MD5=FD6093E3DECD925F1CFFC8A0DD539D72 -- C:\WINDOWS\system32\dllcache\tape.sys
[2008/04/14 08:00:00 | 000,014,976 | ---- | M] (Microsoft Corporation) MD5=FD6093E3DECD925F1CFFC8A0DD539D72 -- C:\WINDOWS\system32\drivers\tape.sys

[color=#A23BEC]< MD5 for: TCPIP.SYS >[/color]
[2008/06/20 06:44:42 | 000,360,960 | ---- | M] (Microsoft Corporation) MD5=744E57C99232201AE98C49168B918F48 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[2008/04/14 08:00:00 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008/04/14 08:00:00 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008/06/20 07:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[2006/03/02 08:00:00 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtUninstallKB951748_0$\tcpip.sys
[2008/06/20 07:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

[color=#A23BEC]< MD5 for: TCPIP6.SYS >[/color]
[2008/06/20 07:16:44 | 000,225,856 | ---- | M] (Microsoft Corporation) MD5=026A94E4EB2960FDC96A447B5391D56A -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
[2006/03/02 08:00:00 | 000,223,616 | ---- | M] (Microsoft Corporation) MD5=4D58BB1AE8841AAFD8790AD7E1E3B8EA -- C:\WINDOWS\$NtUninstallKB951748_0$\tcpip6.sys
[2008/06/20 05:32:39 | 000,225,920 | ---- | M] (Microsoft Corporation) MD5=7195E0CE397545E657A81ECE9DFBC1C9 -- C:\WINDOWS\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
[2008/04/14 08:00:00 | 000,225,664 | ---- | M] (Microsoft Corporation) MD5=AA7A55536096D646DC7AB0AC5641E9E8 -- C:\WINDOWS\system32\dllcache\tcpip6.sys
[2008/04/14 08:00:00 | 000,225,664 | ---- | M] (Microsoft Corporation) MD5=AA7A55536096D646DC7AB0AC5641E9E8 -- C:\WINDOWS\system32\drivers\tcpip6.sys
[2008/06/20 07:08:27 | 000,225,856 | ---- | M] (Microsoft Corporation) MD5=FB9F32ACC1D3AD523F7EC900B66FC1BB -- C:\WINDOWS\$hf_mig$\KB951748\SP3GDR\tcpip6.sys

[color=#A23BEC]< MD5 for: TDI.SYS >[/color]
[2008/04/14 08:00:00 | 000,019,072 | ---- | M] (Microsoft Corporation) MD5=0539D5E53587F82D1B4FD74C5BE205CF -- C:\WINDOWS\system32\dllcache\tdi.sys
[2008/04/14 08:00:00 | 000,019,072 | ---- | M] (Microsoft Corporation) MD5=0539D5E53587F82D1B4FD74C5BE205CF -- C:\WINDOWS\system32\drivers\tdi.sys

[color=#A23BEC]< MD5 for: TDPIPE.SYS >[/color]
[2008/04/13 22:34:52 | 000,012,040 | ---- | M] (Microsoft Corporation) MD5=6471A66807F5E104E4885F5B67349397 -- C:\WINDOWS\system32\dllcache\tdpipe.sys
[2008/04/13 22:34:52 | 000,012,040 | ---- | M] (Microsoft Corporation) MD5=6471A66807F5E104E4885F5B67349397 -- C:\WINDOWS\system32\drivers\tdpipe.sys

[color=#A23BEC]< MD5 for: TDTCP.SYS >[/color]
[2008/04/13 22:34:53 | 000,021,896 | ---- | M] (Microsoft Corporation) MD5=C56B6D0402371CF3700EB322EF3AAF61 -- C:\WINDOWS\system32\dllcache\tdtcp.sys
[2008/04/13 22:34:53 | 000,021,896 | ---- | M] (Microsoft Corporation) MD5=C56B6D0402371CF3700EB322EF3AAF61 -- C:\WINDOWS\system32\drivers\tdtcp.sys

[color=#A23BEC]< MD5 for: TERMDD.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:termdd.sys
[2008/04/13 22:34:52 | 000,040,840 | ---- | M] (Microsoft Corporation) MD5=88155247177638048422893737429D9E -- C:\WINDOWS\system32\drivers\termdd.sys

[color=#A23BEC]< MD5 for: TOSDVD.SYS >[/color]
[2008/04/14 08:00:00 | 000,051,712 | ---- | M] (Microsoft Corporation) MD5=699450901C5CCFD82357CBC531CEDD23 -- C:\WINDOWS\system32\dllcache\tosdvd.sys
[2008/04/14 08:00:00 | 000,051,712 | ---- | M] (Microsoft Corporation) MD5=699450901C5CCFD82357CBC531CEDD23 -- C:\WINDOWS\system32\drivers\tosdvd.sys

[color=#A23BEC]< MD5 for: TSBVCAP.SYS >[/color]
[2008/04/14 08:00:00 | 000,021,376 | ---- | M] (Toshiba Corporation) MD5=D74A8EC75305F1D3CFDE7C7FC1BD62A9 -- C:\WINDOWS\system32\dllcache\tsbvcap.sys
[2008/04/14 08:00:00 | 000,021,376 | ---- | M] (Toshiba Corporation) MD5=D74A8EC75305F1D3CFDE7C7FC1BD62A9 -- C:\WINDOWS\system32\drivers\tsbvcap.sys

[color=#A23BEC]< MD5 for: TUNMP.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:tunmp.sys
[2008/04/14 08:00:00 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=8F861EDA21C05857EB8197300A92501C -- C:\WINDOWS\system32\dllcache\tunmp.sys
[2008/04/14 08:00:00 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=8F861EDA21C05857EB8197300A92501C -- C:\WINDOWS\system32\drivers\tunmp.sys

[color=#A23BEC]< MD5 for: UDFS.SYS >[/color]
[2008/04/14 08:00:00 | 000,066,048 | ---- | M] (Microsoft Corporation) MD5=5787B80C2E3C5E2F56C2A233D91FA2C9 -- C:\WINDOWS\system32\dllcache\udfs.sys
[2008/04/14 08:00:00 | 000,066,048 | ---- | M] (Microsoft Corporation) MD5=5787B80C2E3C5E2F56C2A233D91FA2C9 -- C:\WINDOWS\system32\drivers\udfs.sys

[color=#A23BEC]< MD5 for: UPDATE.SYS >[/color]
[2008/04/14 08:00:00 | 000,384,768 | ---- | M] (Microsoft Corporation) MD5=402DDC88356B1BAC0EE3DD1580C76A31 -- C:\WINDOWS\system32\dllcache\update.sys
[2008/04/14 08:00:00 | 000,384,768 | ---- | M] (Microsoft Corporation) MD5=402DDC88356B1BAC0EE3DD1580C76A31 -- C:\WINDOWS\system32\drivers\update.sys

[color=#A23BEC]< MD5 for: USB8023.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) MD5=BEE793D4A059CAEA55D6AC20E19B3A8F -- C:\WINDOWS\system32\dllcache\usb8023.sys
[2008/04/14 08:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) MD5=BEE793D4A059CAEA55D6AC20E19B3A8F -- C:\WINDOWS\system32\drivers\usb8023.sys

[color=#A23BEC]< MD5 for: USBCAMD.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbcamd.sys
[2008/04/14 08:00:00 | 000,025,600 | ---- | M] (Microsoft Corporation) MD5=1C1A47B40C23358245AA8D0443B6935E -- C:\WINDOWS\system32\dllcache\usbcamd.sys
[2008/04/14 08:00:00 | 000,025,600 | ---- | M] (Microsoft Corporation) MD5=1C1A47B40C23358245AA8D0443B6935E -- C:\WINDOWS\system32\drivers\usbcamd.sys

[color=#A23BEC]< MD5 for: USBCAMD2.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbcamd2.sys
[2008/04/14 08:00:00 | 000,025,728 | ---- | M] (Microsoft Corporation) MD5=CE97845D2E3F0D274B8BAC1ED07C6149 -- C:\WINDOWS\system32\dllcache\usbcamd2.sys
[2008/04/14 08:00:00 | 000,025,728 | ---- | M] (Microsoft Corporation) MD5=CE97845D2E3F0D274B8BAC1ED07C6149 -- C:\WINDOWS\system32\drivers\usbcamd2.sys

[color=#A23BEC]< MD5 for: USBCCGP.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbccgp.sys
[2008/04/14 08:00:00 | 000,032,128 | ---- | M] (Microsoft Corporation) MD5=173F317CE0DB8E21322E71B7E60A27E8 -- C:\WINDOWS\system32\drivers\usbccgp.sys

[color=#A23BEC]< MD5 for: USBD.SYS >[/color]
[2008/04/14 08:00:00 | 000,004,736 | ---- | M] (Microsoft Corporation) MD5=596EB39B50D6EBD9B734DC4AE0544693 -- C:\WINDOWS\system32\drivers\usbd.sys

[color=#A23BEC]< MD5 for: USBEHCI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbehci.sys
[2008/04/14 08:00:00 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=65DCF09D0E37D4C6B11B5B0B76D470A7 -- C:\WINDOWS\system32\drivers\usbehci.sys

[color=#A23BEC]< MD5 for: USBHUB.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbhub.sys
[2008/04/14 08:00:00 | 000,059,520 | ---- | M] (Microsoft Corporation) MD5=1AB3CDDE553B6E064D2E754EFE20285C -- C:\WINDOWS\system32\drivers\usbhub.sys

[color=#A23BEC]< MD5 for: USBINTEL.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbintel.sys
[2008/04/14 08:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) MD5=290913DC4F1125E5A82DE52579A44C43 -- C:\WINDOWS\system32\dllcache\usbintel.sys
[2008/04/14 08:00:00 | 000,015,872 | ---- | M] (Microsoft Corporation) MD5=290913DC4F1125E5A82DE52579A44C43 -- C:\WINDOWS\system32\drivers\usbintel.sys

[color=#A23BEC]< MD5 for: USBOHCI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbohci.sys

[color=#A23BEC]< MD5 for: USBPORT.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbport.sys
[2008/04/14 08:00:00 | 000,143,872 | ---- | M] (Microsoft Corporation) MD5=791912E524CC2CC6F50B5F2B52D1EB71 -- C:\WINDOWS\system32\drivers\usbport.sys

[color=#A23BEC]< MD5 for: USBPRINT.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbprint.sys
[2008/04/13 14:47:38 | 000,025,856 | ---- | M] (Microsoft Corporation) MD5=A717C8721046828520C9EDF31288FC00 -- C:\WINDOWS\system32\drivers\usbprint.sys

[color=#A23BEC]< MD5 for: USBSCAN.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:usbscan.sys
[2008/04/13 14:45:34 | 000,015,104 | ---- | M] (Microsoft Corporation) MD5=A0B8CF9DEB1184FBDD20784A58FA75D4 -- C:\WINDOWS\system32\drivers\usbscan.sys

[color=#A23BEC]< MD5 for: USBSTOR.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:USBSTOR.SYS
[2008/04/14 08:00:00 | 000,026,368 | ---- | M] (Microsoft Corporation) MD5=A32426D9B14A089
0
DockerJeckyll Messages postés 4 Date d'inscription dimanche 11 décembre 2011 Statut Membre Dernière intervention 14 juillet 2012
14 juil. 2012 à 10:14
(suite et fin)

EAA1D922E0C5801A9 -- C:\WINDOWS\system32\drivers\usbstor.sys

[color=#A23BEC]< MD5 for: USERINIT.EXE >[/color]
[2008/04/14 08:00:00 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=E74DDB12188C2FF57A78624DBF7332FC -- C:\WINDOWS\system32\dllcache\userinit.exe
[2008/04/14 08:00:00 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=E74DDB12188C2FF57A78624DBF7332FC -- C:\WINDOWS\system32\userinit.exe

[color=#A23BEC]< MD5 for: VDMINDVD.SYS >[/color]
[2008/04/14 08:00:00 | 000,058,112 | ---- | M] (RAVISENT Technologies Inc.) MD5=55E01061C74A8CEFFF58DC36114A8D3F -- C:\WINDOWS\system32\dllcache\vdmindvd.sys
[2008/04/14 08:00:00 | 000,058,112 | ---- | M] (RAVISENT Technologies Inc.) MD5=55E01061C74A8CEFFF58DC36114A8D3F -- C:\WINDOWS\system32\drivers\vdmindvd.sys

[color=#A23BEC]< MD5 for: VGA.SYS >[/color]
[2008/04/14 08:00:00 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=0D3A8FAFCEACD8B7625CD549757A7DF1 -- C:\WINDOWS\system32\dllcache\vga.sys
[2008/04/14 08:00:00 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=0D3A8FAFCEACD8B7625CD549757A7DF1 -- C:\WINDOWS\system32\drivers\vga.sys

[color=#A23BEC]< MD5 for: VIDEOPRT.SYS >[/color]
[2008/04/14 08:00:00 | 000,081,664 | ---- | M] (Microsoft Corporation) MD5=E28726B72C46821A28830E077D39A55B -- C:\WINDOWS\system32\dllcache\videoprt.sys
[2008/04/14 08:00:00 | 000,081,664 | ---- | M] (Microsoft Corporation) MD5=E28726B72C46821A28830E077D39A55B -- C:\WINDOWS\system32\drivers\videoprt.sys

[color=#A23BEC]< MD5 for: VOLSNAP.SYS >[/color]
[2008/04/14 08:00:00 | 000,053,376 | ---- | M] (Microsoft Corporation) MD5=46DE1126684369BACE4849E4FC8C43CA -- C:\WINDOWS\system32\dllcache\volsnap.sys
[2008/04/14 08:00:00 | 000,053,376 | ---- | M] (Microsoft Corporation) MD5=46DE1126684369BACE4849E4FC8C43CA -- C:\WINDOWS\system32\drivers\volsnap.sys

[color=#A23BEC]< MD5 for: WANARP.SYS >[/color]
[2008/04/14 08:00:00 | 000,034,560 | ---- | M] (Microsoft Corporation) MD5=E20B95BAEDB550F32DD489265C1DA1F6 -- C:\WINDOWS\system32\dllcache\wanarp.sys
[2008/04/14 08:00:00 | 000,034,560 | ---- | M] (Microsoft Corporation) MD5=E20B95BAEDB550F32DD489265C1DA1F6 -- C:\WINDOWS\system32\drivers\wanarp.sys

[color=#A23BEC]< MD5 for: WDMAUD.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:wdmaud.sys
[2008/04/14 08:00:00 | 000,083,072 | ---- | M] (Microsoft Corporation) MD5=6768ACF64B18196494413695F0C3A00F -- C:\WINDOWS\system32\drivers\wdmaud.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2010/10/29 12:11:13 | 000,512,000 | ---- | M] (Microsoft Corporation) MD5=8D71F28DEB37CC9C2E344095D8BFE1EE -- C:\WINDOWS\system32\winlogon.exe

[color=#A23BEC]< MD5 for: WMIACPI.SYS >[/color]
[2008/04/14 08:00:00 | 020,102,028 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:wmiacpi.sys
[2008/04/14 08:00:00 | 000,008,832 | ---- | M] (Microsoft Corporation) MD5=C42584FD66CE9E17403AEBCA199F7BDB -- C:\WINDOWS\system32\drivers\wmiacpi.sys

[color=#A23BEC]< MD5 for: WMILIB.SYS >[/color]
[2008/04/14 08:00:00 | 000,004,352 | ---- | M] (Microsoft Corporation) MD5=2F31B7F954BED437F2C75026C65CAF7B -- C:\WINDOWS\system32\dllcache\wmilib.sys
[2008/04/14 08:00:00 | 000,004,352 | ---- | M] (Microsoft Corporation) MD5=2F31B7F954BED437F2C75026C65CAF7B -- C:\WINDOWS\system32\drivers\wmilib.sys

[color=#A23BEC]< MD5 for: WS2IFSL.SYS >[/color]
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=6ABE6E225ADB5A751622A9CC3BC19CE8 -- C:\WINDOWS\system32\dllcache\ws2ifsl.sys
[2008/04/14 08:00:00 | 000,012,032 | ---- | M] (Microsoft Corporation) MD5=6ABE6E225ADB5A751622A9CC3BC19CE8 -- C:\WINDOWS\system32\drivers\ws2ifsl.sys

[color=#A23BEC]< %systemroot%\*. /mp /s >[/color]

[color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]
[2008/04/14 08:00:00 | 000,147,968 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\dnsapi.dll
[2009/03/07 22:39:48 | 011,063,808 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\ieframe.dll
[2009/03/07 22:32:22 | 001,985,024 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\iertutil.dll
[2008/04/13 22:33:33 | 000,281,600 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\mstask.dll
[2008/04/14 08:00:00 | 000,067,072 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\ntdsapi.dll
[2008/04/14 08:00:00 | 008,517,632 | ---- | M] (Microsoft Corporation)[b] Unable to obtain MD5[/b] -- C:\WINDOWS\system32\shell32.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

[color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color]
[2010/10/29 07:23:50 | 000,524,288 | ---- | M] () -- C:\WINDOWS\System32\config\default.sav
[2010/10/29 05:06:58 | 000,262,144 | ---- | M] () -- C:\WINDOWS\System32\config\security.sav
[2010/10/29 07:23:50 | 017,301,504 | ---- | M] () -- C:\WINDOWS\System32\config\software.sav
[2010/10/29 07:23:50 | 005,767,168 | ---- | M] () -- C:\WINDOWS\System32\config\system.sav
< End of report >
0