Help J'ai marché dans le Trojan

kartman -  
 Kartman -
Bonjour,
J'ai attrapé un virus WIN 32 :KdCrypt [Crypt] et lors du scan d'Avast il detecte aussi un trojan mon PC est un Pentium 4 , Windows 2000 pro, Avast 4 Celui ci n'arrive pas a en venir a bout meme si le scan est fait au demarage.
Je ne suis pas un pro en informatique Merci pour le coup de main .
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:57:46, on 17/08/2008
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\SYS\WINDOWS\System32\smss.exe
C:\SYS\WINDOWS\system32\winlogon.exe
C:\SYS\WINDOWS\system32\services.exe
C:\SYS\WINDOWS\system32\lsass.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\System32\svchost.exe
C:\SYS\WINDOWS\system32\LEXBCES.EXE
C:\SYS\WINDOWS\system32\spoolsv.exe
C:\SYS\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\SYS\WINDOWS\system32\hidserv.exe
C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
C:\SYS\WINDOWS\system32\regsvc.exe
C:\SYS\WINDOWS\system32\MSTask.exe
C:\SYS\WINDOWS\system32\stisvc.exe
C:\SYS\WINDOWS\System32\WBEM\WinMgmt.exe
C:\SYS\WINDOWS\system32\mspmspsv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\SYS\WINDOWS\Explorer.EXE
C:\Program Files\Applications\wcs.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Applications\wcm.exe
C:\Documents and Settings\atelier\Desktop\aswclnr.exe
C:\Documents and Settings\atelier\Desktop\aswclnr.tmp
C:\SYS\WINDOWS\FSX_SC~1.SCR
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O2 - BHO: (no name) - {D46BEAA4-A304-40B3-A9DA-EC7F7F501F25} - C:\Program Files\Applications\iebt.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [Antivirus] C:\Program Files\AAV\aav.exe
O4 - HKCU\..\Run: [Antivirus] C:\Program Files\AAV\aav.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKLM\..\Policies\Explorer\Run: [some] C:\Program Files\Applications\wcs.exe
O4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\Applications\iebtm.exe
O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.iexplorerclue.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.iexplorerclue.com/redirect.php (file missing)
O10 - Unknown file in Winsock LSP: c:\sys\windows\system32\nwprovau.dll
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - C:\Program Files\RXToolBar\sfcont.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\SYS\WINDOWS\System32\dmadmin.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Tivoli Endpoint (lcfd) - Unknown owner - C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\SYS\WINDOWS\system32\LEXBCES.EXE
A voir également:

23 réponses

Utilisateur anonyme
 
bonsoir , execute malwaresbytes anti malwares

1)
Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

2)
Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre le sur ton bureau à partir de ce lien :

http://www.malwarebytes.org/mbam/program/mbam-setup.exe

3)
A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.

4)
Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.

5)
Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.

6)
MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse. Comme MBAM se met automatiquement à jour en fin d'installation, clique sur OK pour fermer la boîte de dialogue. La fenêtre principale de MBAM s'affiche :

7)
Dans l'onglet analyse, slectionne l'analyse complete du pc et clique sur le bouton Rechercher pour démarrer l'analyse.

8)
MBAM analyse ton ordinateur. L'analyse peut prendre un certain temps. Il suffit de vérifier de temps en temps son avancement.

9) A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.

10)
Si des malwares ont été détectés, leur liste s'affiche.
En cliquant sur Suppression , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.

11)
MBAM va ouvrir le bloc-notes et y copier le rapport d'analyse afin de le poster entier sur le forum . Ferme le bloc-note. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)

12)
Ferme MBAM en cliquant sur Quitter.
0
Kartman
 
Bonsoir, j'ai telechargé et installé
alwarebytes mais a peine l'analyse commence qu'un message d'erreur s'affiche : erreur d'execution '9' indice en dehors de la plage. Que dois je faire ?
A plus
0
KERMALIN4 Messages postés 23 Statut Membre
 
Salut
internet explorer n est pas a jours (faille de securité) telecharge et instal la version 7 :
http://www.01net.com/telecharger/windows/Internet/navigateur¬/fiches/33081.html

IE6 VS IE 7 : Pourquoi maintenir son navigateur à jour ?
https://forum.malekal.com/viewtopic.php?f=45&t=12405&start=0&st=0&sk=t&sd=a&sid=65831db50c527d670d9764317d2fb215

Avast n’est pas ce qu’on fait de mieux. Antivir est beaucoup plus performant.
Je te conseil de désinstaller Avast ! et d’installer Antivir.
https://www.malekal.com/avira-free-security-antivirus-gratuit/
Pour t'aider tu peux suivre ce lien :http://forum.malekal.com/ftopic4192.php

"HKLM\..\Run: [Antivirus] C:\Program Files\AAV\aav.exe "
C'est un faux antivirus un rogue un programme qui t'envoie des fausses alertes dans le seul but de
te soutirer de l'argent.

Télécharge également smitfraudfix:
Utilise cette adresse pour télécharger la dernière version du fix (le fichier contient la version anglaise et française):
http://siri.urz.free.fr/Fix/SmitfraudFix.exe

• Double clique sur SmitfraudFix.exe
• Sélectionner 1 et pressez Entrée dans le menu pour créer un rapport des fichiers responsables de l'infection. Le rapport se trouve à la racine du disque système C:\rapport.txt
Aplus...
0
Utilisateur anonyme
 
bonsoir ,

ok , nous allons utiliser un autre outil plus puissant , effectu avec attention ceci :

combofix

Télécharges ComboFix à partir d'un de ces liens :

http://download.bleepingcomputer.com/sUBs/ComboFix.exe
https://forospyware.com
http://www.geekstogo.com/forum/files/file/197-combofix-by-subs/

Et important, enregistre le sur le bureau.

Avant d'utiliser ComboFix :

Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.

Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent géner fortement la procédure de recherche et de nettoyage de l'outil.

Une fois fait, sur ton bureau double-clic sur Combofix.exe.

- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.

/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.

- En fin de scan il est possible que ComboFix ait besoin de redemarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.

- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)

Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.

Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
0
kartman
 
J'ai bien telechargé et installé Combofix, j'ai fais un scan comme tu ma dit, mais ca ma desinstallé Avast que j'avais prealablement deconnecté mais je ne trouve pas le combofix.txt
0
escan Messages postés 53 Statut Membre 13
 
Essaye voir celui-ci .... eScan virus cleaner ... il faut l'utiliser en safe boot ...

http://www.escan-ch.com/downloads/escan_virus_cleaner.exe

Bon Courage
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
regarde ici : C:\Combofix.txt tu clique sur l'icone de ton disc et tu dois trouver combofix.txt

anti virus : antivir

https://www.malekal.com/avira-free-security-antivirus-gratuit/

http://mickael.barroux.free.fr/securite/antivir.php <- tutoriel + complet

instal aussi ce pare feu en complement de ton antivirus

https://www.commentcamarche.net/telecharger/ 34055356 online armor personal firewall

tuto configuration : https://www.malekal.com/tutorial-online-armor-free/
0
kartman
 
le rapport ComComboFix 08-08-17.05 - atelier 18/08/2008 21:46:20.1 - NTFSx86
Microsoft Windows 2000 Professionnel 5.0.2195.4.1252.1.1033.18.564 [GMT 2:00]
Running from: C:\Documents and Settings\atelier\Desktop\ComboFix.exe

[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\07062004.exe
C:\Documents and Settings\atelier\Cookies\atelier@_cqr[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@2o7[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.ifrance[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.yieldmanager[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adnext[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ads.pointroll[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@adserver[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adv.surinter[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@apu0800.audientia[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@as1.falkag[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bestoffersnetworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bizrate[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@bluestreak[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cdiscount[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cliks[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@date.ventivmedia[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@edt02[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@esearchvision[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fastclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fnac[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@fr.msn[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@linternaute[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab58.customers.luna[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab61.customers.luna[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@news.fr.msn[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@offeroptimizer[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@paidmarketingpanel.aavalue[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@photobucket[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmv2[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmyvisites[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@projetwinx.blogspot[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@revsci[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@rueducommerce[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@server.cpmstar[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@serving-sys[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@specificclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stat.dealtime[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats1.reliablestats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stl.p.a1.traceworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tracker.affistats[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tradedoubler[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@trafiz[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tsw0[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.achetezfacile[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.pixmania[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@yahoo[2].txt
C:\Documents and Settings\atelier\My Documents\My Pictures\My Pictures.url
C:\Documents and Settings\atelier\UserData
C:\Documents and Settings\atelier\UserData\CPS3I7UF\advstNetId[1].xml
C:\Documents and Settings\atelier\UserData\CPS3I7UF\historySearchPos[1].xml
C:\Documents and Settings\atelier\UserData\index.dat
C:\Documents and Settings\atelier\UserData\MG5IEBCM\YL[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\historySitePos[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\oXMLStoreUnit[1].xml
C:\Documents and Settings\atelier\UserData\TUGM51Q3\Tdy58[1].xml
C:\Program Files\AAV
C:\Program Files\Altnet
C:\Program Files\Applications\myd.ico
C:\Program Files\Applications\mym.ico
C:\Program Files\Applications\myp.ico
C:\Program Files\Applications\myv.ico
C:\Program Files\ASpyC
C:\Program Files\Need2Find
C:\Program Files\Need2Find\bar\History\search
C:\Program Files\RXToolBar
C:\Program Files\RXToolBar\Cache\CT
C:\Program Files\RXToolBar\Cache\CTwww_laposte_net
C:\Program Files\RXToolBar\Cache\CTwww_roxio_com_
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=naruto%20narutoNC
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=windows%20mediaNC
C:\Program Files\RXToolBar\Cache\RXUpdate
C:\Program Files\RXToolBar\CacheCatalog.rx
C:\Program Files\RXToolBar\graphics\additional.gif
C:\Program Files\RXToolBar\graphics\additional_active.gif
C:\Program Files\RXToolBar\graphics\background.jpg
C:\Program Files\RXToolBar\graphics\blue_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\gray_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\thumbtack.gif
C:\Program Files\RXToolBar\graphics\thumbtack_active.gif
C:\Program Files\RXToolBar\graphics\thumbtack_click.gif
C:\Program Files\RXToolBar\HTML\content.htm
C:\Program Files\RXToolBar\HTML\main.htm
C:\Program Files\RXToolBar\rx.xml
C:\Program Files\RXToolBar\rxtoolbar.cfg
C:\Program Files\RXToolBar\rxwebsearches.xsl
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.sig
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.sig
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.Key
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.sig
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.dat
C:\Program Files\RXToolBar\sfcont.bin
C:\SYS\WINDOWS\BM2f44e4c3.txt
C:\SYS\WINDOWS\BM2f44e4c3.xml
C:\SYS\WINDOWS\cookies.ini
C:\SYS\WINDOWS\Fonts\acrsec.fon
C:\SYS\WINDOWS\Fonts\acrsecB.fon
C:\SYS\WINDOWS\Fonts\acrsecI.fon
C:\SYS\WINDOWS\pskt.ini
C:\SYS\WINDOWS\smdat32a.sys
C:\SYS\WINDOWS\smdat32m.sys
C:\SYS\WINDOWS\system32\AdCache
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449200.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449600.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_454300.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_111600.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_152400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_155300.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_164100.htm
C:\SYS\WINDOWS\system32\awttqNfC.dll
C:\SYS\WINDOWS\system32\CfNqttwa.ini
C:\SYS\WINDOWS\system32\CfNqttwa.ini2
C:\SYS\WINDOWS\system32\cpmsky-uninst.exe
C:\SYS\WINDOWS\system32\ebwxolyi.dll
C:\SYS\WINDOWS\system32\efcBuRJD.dll
C:\SYS\WINDOWS\system32\fbxyngfi.ini
C:\SYS\WINDOWS\system32\gyrkyd.dll
C:\SYS\WINDOWS\system32\hgGaxwvu.dll
C:\SYS\WINDOWS\system32\iwajmz.dll
C:\SYS\WINDOWS\system32\jdxivgjq.ini
C:\SYS\WINDOWS\system32\ldpackage.dll
C:\SYS\WINDOWS\system32\mcrh.tmp
C:\SYS\WINDOWS\system32\model.dat
C:\SYS\WINDOWS\system32\P2P Networking
C:\SYS\WINDOWS\system32\P2P Networking\P2P Networking.eng
C:\SYS\WINDOWS\system32\qjgvixdj.dll
C:\SYS\WINDOWS\system32\tcvawgtm.exe
C:\SYS\WINDOWS\system32\tqlkshoo.dll
C:\SYS\WINDOWS\system32\UpMedia
C:\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\SYS\WINDOWS\system32\wav.cpl
C:\SYS\WINDOWS\system32\wxgyfsib.dll
C:\SYS\WINDOWS\Web\default.htt

.
((((((((((((((((((((((((( Files Created from 2008-07-18 to 2008-08-18 )))))))))))))))))))))))))))))))
.

2008-08-18 22:01 . 08-08-18 22:01 16,384 --a----t- C:\SYS\WINDOWS\system32\Perflib_Perfdata_2a0.dat
2008-08-18 20:23 . 08-08-18 20:45 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-17 15:01 38,472 --a------ C:\SYS\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-18 20:23 . 08-08-17 15:01 17,144 --a------ C:\SYS\WINDOWS\system32\drivers\mbam.sys
2008-08-10 19:03 . 08-08-08 10:44 165,888 --a------ C:\SYS\WINDOWS\system32\aav.cpl
2008-08-06 23:53 . 08-08-10 18:45 <DIR> d-------- C:\Program Files\WAV
2008-08-06 21:12 . 08-08-06 23:52 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Video.url
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Music.url
2008-08-06 21:11 . 08-08-18 21:47 <DIR> d-------- C:\Program Files\Applications

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-12 16:47 --------- d-----w C:\Documents and Settings\atelier\Application Data\AdobeUM
2008-08-10 17:10 --------- d-----w C:\Documents and Settings\atelier\Application Data\LimeWire
2008-08-06 23:53 --------- d-----w C:\Program Files\TBONBin
2008-07-06 11:06 --------- d-----w C:\Program Files\LimeWire
2008-06-27 21:18 --------- d-----w C:\Documents and Settings\atelier\Application Data\XnView
2008-06-27 20:29 --------- d-----w C:\Documents and Settings\atelier\Application Data\gtk-2.0
2008-06-25 20:38 --------- d-----w C:\Program Files\TomTom HOME
2008-06-25 20:24 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-25 20:24 --------- d-----w C:\Documents and Settings\atelier\Application Data\InstallShield
2008-06-25 17:58 --------- d-----w C:\Program Files\TomTom HOME 2
2008-06-18 16:25 --------- d-----w C:\Program Files\Symantec AntiVirus
2008-06-18 16:25 --------- d-----w C:\Program Files\Symantec
2008-06-18 16:25 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-06-18 16:25 --------- d-----w C:\Documents and Settings\All Users\Application Data\Symantec
2008-06-16 18:52 374 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb6334.dat
2008-06-16 18:34 555 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb8467.dat
2008-06-16 18:34 18,432 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb41.dat
2008-05-20 20:11 675,579 ----a-w C:\SYS\WINDOWS\PROGRAM.exe
2008-01-25 20:10 284 ----a-w C:\Documents and Settings\atelier\Application Data\ViewerApp.dat
2006-09-25 19:32 4,793,856 ----a-w C:\Program Files\s3a01frx.exe
2004-05-27 13:48 271 ---h--w C:\Program Files\desktop.ini
2004-05-27 13:48 21,952 ---h--w C:\Program Files\folder.htt
1999-12-07 12:00 32,528 ----a-w C:\SYS\WINDOWS\inf\wbfirdma.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [07-09-04 23:40 6856704]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [03-06-19 13:05 111376 C:\SYS\WINDOWS\system32\mobsync.exe]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceStartMenuLogOff"= 1

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\nwprovau]
03-06-19 13:05 139536 C:\SYS\WINDOWS\system32\NWPROVAU.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=iwajmz.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"= mmdrv.dll
"VIDC.YV12"= yv12vfw.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 TivoliAP nwprovau C:\SYS\WINDOWS\system32\awttqNfC

R0 SONYPVM1;Sony Memory Stick Driver(SONYPVM1);C:\SYS\WINDOWS\system32\DRIVERS\SONYPVM1.SYS [00-05-27 04:37 ]
R1 aswSP;avast! Self Protection;C:\SYS\WINDOWS\system32\drivers\aswSP.sys [08-07-19 16:35 ]
R1 cdudf;cdudf;C:\SYS\WINDOWS\system32\drivers\cdudf.sys [01-10-23 19:50 ]
R1 TGrab;Tivoli Remote Control Text Grabber;C:\SYS\WINDOWS\system32\drivers\TGrab.sys [04-06-07 10:31 ]
R2 aswMon;avast! Standard Shield Support;C:\SYS\WINDOWS\system32\drivers\aswMon.sys [08-01-17 18:34 ]
R2 lcfd;Tivoli Endpoint;C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE [06-01-30 16:46 ]
R2 NsTrcNT;NsTrcNT;C:\SYS\WINDOWS\system32\drivers\nstrcnt.sys [02-12-03 10:51 ]
R3 Eqnmirdd;Eqnmirdd;C:\SYS\WINDOWS\system32\DRIVERS\Eqnmirdd.sys [04-06-07 10:31 ]
R3 KeyEx2;Tivoli Remote Control Keyboard Filter;C:\SYS\WINDOWS\system32\drivers\KeyEx2.sys [04-06-07 10:31 ]
R3 KLOGNT;KLOGNT;C:\SYS\WINDOWS\system32\drivers\klognt.sys [02-12-03 10:51 ]
R3 MouEx2;Tivoli Remote Control Pointer Filter;C:\SYS\WINDOWS\system32\drivers\MouEx2.sys [04-07-19 14:50 ]
R3 Winacpci;Winacpci;C:\SYS\WINDOWS\system32\DRIVERS\winacpci.sys [99-09-25 00:55 ]
S2 AppnApi;AppnApi;C:\SYS\WINDOWS\system32\drivers\appnapi.sys [02-12-03 10:51 ]
S2 pdlnctdl;Twinax CUT Adapter;C:\SYS\WINDOWS\system32\drivers\pdlnctdl.sys [02-12-03 10:51 ]
S2 pdlndldl;IBM Enterprise Extender (HPR/IP);C:\SYS\WINDOWS\system32\drivers\pdlndldl.sys [02-12-03 10:51 ]
S3 Anydlc;Anydlc;C:\SYS\WINDOWS\system32\drivers\anydlc.sys [02-12-03 10:51 ]
S3 Appn;Appn;C:\SYS\WINDOWS\system32\drivers\appn.sys [02-12-03 10:51 ]
S3 AppnBase;AppnBase;C:\SYS\WINDOWS\system32\drivers\AppnBase.sys [02-12-03 10:51 ]
S3 AR5523;NETGEAR WG111T USB2.0 Wireless Card Service;C:\SYS\WINDOWS\system32\DRIVERS\WG11TND5.sys []
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;C:\SYS\WINDOWS\system32\DNINDIS5.SYS [03-07-24 12:10 ]
S3 MBAMSwissArmy;MBAMSwissArmy;C:\SYS\WINDOWS\system32\drivers\mbamswissarmy.sys [08-08-17 15:01 ]
S3 pdlnacom;PDLC Adapter -- COM;C:\SYS\WINDOWS\system32\drivers\pdlnacom.sys [02-12-03 10:51 ]
S3 pdlnafac;PDLC Adapter Factory;C:\SYS\WINDOWS\system32\drivers\pdlnafac.sys [02-12-03 10:51 ]
S3 pdlnatcm;Twinax Adapter Common;C:\SYS\WINDOWS\system32\drivers\pdlnatcm.sys [02-12-03 10:51 ]
S3 pdlnatdl;Twinax Adapter;C:\SYS\WINDOWS\system32\drivers\pdlnatdl.sys [02-12-03 10:51 ]
S3 pdlncbas;PDLC CxM Classes;C:\SYS\WINDOWS\system32\drivers\pdlncbas.sys [02-12-03 10:51 ]
S3 pdlncfwk;PDLC Connection Manager;C:\SYS\WINDOWS\system32\drivers\pdlncfwk.sys [02-12-03 10:51 ]
S3 pdlndint;PDLC DLC Classes;C:\SYS\WINDOWS\system32\drivers\pdlndint.sys [02-12-03 10:51 ]
S3 pdlndlpb;PDLC LAPB;C:\SYS\WINDOWS\system32\drivers\pdlndlpb.sys [02-12-03 10:51 ]
S3 pdlndoem;PDLC OEM Interface;C:\SYS\WINDOWS\system32\drivers\pdlndoem.sys [02-12-03 10:51 ]
S3 pdlndqll;PDLC QLLC;C:\SYS\WINDOWS\system32\drivers\pdlndqll.sys [02-12-03 10:51 ]
S3 pdlndsdl;PDLC SDLC;C:\SYS\WINDOWS\system32\drivers\pdlndsdl.sys [02-12-03 10:51 ]
S3 pdlndtdl;Twinax DLC;C:\SYS\WINDOWS\system32\drivers\pdlndtdl.sys [02-12-03 10:51 ]
S3 pdlnebas;PDLC Environment;C:\SYS\WINDOWS\system32\drivers\pdlnebas.sys [02-12-03 10:51 ]
S3 pdlnecfg;PDLC Configuration;C:\SYS\WINDOWS\system32\drivers\pdlnecfg.sys [02-12-03 10:51 ]
S3 pdlnemap;PDLC Mapper;C:\SYS\WINDOWS\system32\drivers\pdlnemap.sys [02-12-03 10:51 ]
S3 pdlnemsg;PDLC Message Driver;C:\SYS\WINDOWS\system32\drivers\pdlnemsg.sys [02-12-03 10:51 ]
S3 pdlnepkt;PDLC Buffer Manager;C:\SYS\WINDOWS\system32\drivers\pdlnepkt.sys [02-12-03 10:51 ]
S3 pdlnshay;PDLC Hayes At signalling;C:\SYS\WINDOWS\system32\drivers\pdlnshay.sys [02-12-03 10:51 ]
S3 pdlnslea;PDLC SDLC Leased;C:\SYS\WINDOWS\system32\drivers\pdlnslea.sys [02-12-03 10:51 ]
S3 pdlnsv25;PDLC V25bis signalling;C:\SYS\WINDOWS\system32\drivers\pdlnsv25.sys [02-12-03 10:51 ]
S3 pdlnsx25;PDLC X.25;C:\SYS\WINDOWS\system32\drivers\pdlnsx25.sys [02-12-03 10:51 ]
S4 Viewpoint Manager Service;Viewpoint Manager Service;C:\Program Files\Viewpoint\Common\ViewpointService.exe [07-01-04 23:38 ]

*Newly Created Service* - IPNAT
*Newly Created Service* - RASAUTO
*Newly Created Service* - SHAREDACCESS
*Newly Created Service* - WUAUSERV
.
- - - - ORPHANS REMOVED - - - -

HKLM-Run-Antivirus - C:\Program Files\AAV\aav.exe
HKLM-Run-2c77d75f - C:\SYS\WINDOWS\system32\qjgvixdj.dll
HKLM-Run-BM2f44e4c3 - C:\SYS\WINDOWS\system32\ebwxolyi.dll


.
------- Supplementary Scan -------
.
R0 -: HKCU-Main,Start Page = hxxp://www.bingpage.com/?cm=75685<=1&it=2008-08-06%2021%3A11%3A55&dt=2008-08-17%2021%3A38%3A12&q=https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.fr%2fimg%2ffr%2ffr-fr%2fdivertissement%2fcelebrites%2fgalery%2fwentworth02.jpg%3f
R1 -: HKCU-SearchURL,(Default) = hxxp://www.google.com/search?q=%s

O16 -: DirectAnimation Java Classes - file://C:\SYS\WINDOWS\Java\classes\dajava.cab
C:\SYS\WINDOWS\Downloaded Program Files\DirectAnimation Java Classes.osd

O16 -: Microsoft XML Parser for Java - file://C:\SYS\WINDOWS\Java\classes\xmldso.cab
C:\SYS\WINDOWS\Downloaded Program Files\Microsoft XML Parser for Java.osd
.
bofix:
0
Utilisateur anonyme
 
bien joué , ;-)
instal l'antivirus et le pare feu .

relance hijackthis
do a scan systeme and save logfile
copie et colle le rapport dans ta prochaine réponse
0
kartman
 
rapport Hijackthis:Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:58, on 2008-08-18
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\SYS\WINDOWS\System32\smss.exe
C:\SYS\WINDOWS\system32\winlogon.exe
C:\SYS\WINDOWS\system32\services.exe
C:\SYS\WINDOWS\system32\lsass.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\System32\svchost.exe
C:\SYS\WINDOWS\system32\LEXBCES.EXE
C:\SYS\WINDOWS\system32\spoolsv.exe
C:\SYS\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\SYS\WINDOWS\system32\hidserv.exe
C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
C:\SYS\WINDOWS\system32\regsvc.exe
C:\SYS\WINDOWS\system32\stisvc.exe
C:\SYS\WINDOWS\System32\WBEM\WinMgmt.exe
C:\SYS\WINDOWS\system32\mspmspsv.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\SYS\WINDOWS\Explorer.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\SYS\WINDOWS\system32\wuauclt.exe
C:\Program Files\Alwil Software\Avast4\ashChest.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://bingpage.com/?cm=75685<=1&it=2008-08-06%2021%3A11%3A55&dt=2008-08-17%2021%3A38%3A12&q=http://www.msn.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [Antivirus] C:\Program Files\AAV\aav.exe
O4 - HKLM\..\Run: [2c77d75f] rundll32.exe "C:\SYS\WINDOWS\system32\qjgvixdj.dll",b
O4 - HKLM\..\Run: [BM2f44e4c3] Rundll32.exe "C:\SYS\WINDOWS\system32\ebwxolyi.dll",s
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O10 - Unknown file in Winsock LSP: c:\sys\windows\system32\nwprovau.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\SYS\WINDOWS\System32\dmadmin.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Tivoli Endpoint (lcfd) - Unknown owner - C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\SYS\WINDOWS\system32\LEXBCES.EXE
0
Utilisateur anonyme
 
bonjour , c'est un peu mieu , mais il reste pas mal de crasses , reaissai de relancer malwarebytes anti malwares
http://www.commentcamarche.net/forum/affich 7945588 help j ai marche dans le trojan#1
0
kartman
 
Bonjour j'ai relancer Malwarebytes anti malwares voici les rapports mbam et hijackthis , par contre le pc m'affiche le message suivant : erreur de chargement de C:\sys\windows\systeme 32\ebwxly.dll
Le module specifique est introuvable
erreur de chargement de C:\sys\windows\systeme 32\qjgvixdj.dll
Le module specifique est introuvable.
Malwarebytes' Anti-Malware 1.25
Version de la base de données: 1066
Windows 5.0.2195 Service Pack 4

18:52:37 2008-08-19
mbam-log-08-19-2008 (18-52-37).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 84149
Temps écoulé: 18 minute(s), 52 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 6
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 18

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\nn_bar_dummy.nn_bardummy.1 (Adware.Mirar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\spywarning.warningbho.1 (Rogue.AntiSpyCheck) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\antivirus (Rogue.Antivirus) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm2f44e4c3 (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\2c77d75f (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securewebinfo.com (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.safetyincludes.com (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securemanaging.com (Trojan.Zlob) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\WAV (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\awttqNfC.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\gyrkyd.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\iwajmz.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\qjgvixdj.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\tcvawgtm.exe.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\tqlkshoo.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\wxgyfsib.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe.vir (Adware.SmartShopper) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-135547026-1962872455-310601177-1064\Dc2.exe (Rogue.Installer) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\WhoisCL.exe (Adware.BHO) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav.cpl (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav.exe (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav.ooo (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav1.dat (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\aav.cpl (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\zgyhw.dll (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Start Menu\Online Spyware Test.url (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\drivers\etc\SERVICES.NI1 (Heuristics.Reserved.Word.Exploit) -> Quarantined and deleted successfully.
Rapport Hijackthis:Malwarebytes' Anti-Malware 1.25
Version de la base de données: 1066
Windows 5.0.2195 Service Pack 4

18:52:37 2008-08-19
mbam-log-08-19-2008 (18-52-37).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 84149
Temps écoulé: 18 minute(s), 52 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 6
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 1
Fichier(s) infecté(s): 18

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\nn_bar_dummy.nn_bardummy.1 (Adware.Mirar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\spywarning.warningbho.1 (Rogue.AntiSpyCheck) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\antivirus (Rogue.Antivirus) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bm2f44e4c3 (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\2c77d75f (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securewebinfo.com (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.safetyincludes.com (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securemanaging.com (Trojan.Zlob) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\WAV (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\awttqNfC.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\gyrkyd.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\iwajmz.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\qjgvixdj.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\tcvawgtm.exe.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\tqlkshoo.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\wxgyfsib.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\QooBox\Quarantine\C\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe.vir (Adware.SmartShopper) -> Quarantined and deleted successfully.
C:\RECYCLER\S-1-5-21-135547026-1962872455-310601177-1064\Dc2.exe (Rogue.Installer) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\WhoisCL.exe (Adware.BHO) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav.cpl (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav.exe (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav.ooo (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\Program Files\WAV\wav1.dat (Rogue.WindowsAntivirus2008) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\aav.cpl (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\zgyhw.dll (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Start Menu\Online Spyware Test.url (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\SYS\WINDOWS\system32\drivers\etc\SERVICES.NI1 (Heuristics.Reserved.Word.Exploit) -> Quarantined and deleted successfully.
0
Utilisateur anonyme
 
parfait n'ai pas d'inquietude au sujet de l'erreur de chargement de la dll , c'est une dll infectée qui as etait supprimer par mbma donc module specifié introuvable est normal ;-)

en revanche il nous reste du travail sur ton pc car tu as cumulés pas mal d'infections , donc on va continuer ensemble ;-)

poste un nouveau rapport de hijackthis stp
do a scan systeme and save logfile
copie et colle le rapport ici
0
kartman
 
Nouveau rapport Hijackthis Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:21, on 2008-08-19
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\SYS\WINDOWS\System32\smss.exe
C:\SYS\WINDOWS\system32\winlogon.exe
C:\SYS\WINDOWS\system32\services.exe
C:\SYS\WINDOWS\system32\lsass.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\System32\svchost.exe
C:\SYS\WINDOWS\system32\LEXBCES.EXE
C:\SYS\WINDOWS\system32\spoolsv.exe
C:\SYS\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\SYS\WINDOWS\system32\hidserv.exe
C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
C:\SYS\WINDOWS\system32\regsvc.exe
C:\SYS\WINDOWS\system32\stisvc.exe
C:\SYS\WINDOWS\System32\WBEM\WinMgmt.exe
C:\SYS\WINDOWS\system32\mspmspsv.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\SYS\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\internet explorer\iexplore.exe
C:\SYS\WINDOWS\system32\wuauclt.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://bingpage.com/?cm=75685<=1&it=2008-08-06%2021%3A11%3A55&dt=2008-08-17%2021%3A38%3A12&q=http://www.msn.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O10 - Unknown file in Winsock LSP: c:\sys\windows\system32\nwprovau.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\SYS\WINDOWS\System32\dmadmin.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Tivoli Endpoint (lcfd) - Unknown owner - C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\SYS\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
0
Utilisateur anonyme
 
voici qui devrait venir a bout d'une des infections ;-)

# Télécharge le fichier FixVundo.exe à partir de : https://www.broadcom.com/support/security-center
# Enregistre le fichier à un emplacement commode, tel que le bureau Windows.

# Ferme tous les programmes en cours d'exécution.
# Si tu est en réseau ou disposez d'une connexion permanente à Internet, déconnecte l'ordinateur du réseau ou d'Internet.

# Localise le fichier FixVundo.exe
# Clique deux fois sur le fichier FixVundo.exe pour lancer l'outil de suppression.
# Clique sur Démarrer pour commencer la procédure puis laisse l'outil s'exécuter.

Remarque : Si tu rencontre des problèmes lorsque l'outil s'exécute ou s'il ne semble pas supprimer la menace, redémarre l'ordinateur en mode sans échec et relance l'outil.

# Redémarre l’ordinateur.

# Exécute de nouveau l'outil de suppression pour t'assurer que le système est complètement nettoyé.
0
Kartman
 
Scan Fixundo terminé voici le rapport:Symantec Trojan.Vundo Removal Tool 1.5.0

C:\System Volume Information: (not scanned)
Trojan.Vundo has not been found on your computer.
0
Utilisateur anonyme
 
bonjour , bon il faut recommencer avec combofix , suprime ta version de combofix est retelecharge la

http://www.commentcamarche.net/forum/affich 7945588 help j ai marche dans le trojan#4

reexecute combofix
0
Kartman
 
Bonjour j'ai telechargé Combofix et refaisComboFix 08-08-19.02 - atelier 2008-08-20 18:26:42.2 - NTFSx86
Microsoft Windows 2000 Professionnel 5.0.2195.4.1252.1.1033.18.523 [GMT 2:00]
Running from: C:\Documents and Settings\atelier\Desktop\ComboFix.exe

[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\SYS\WINDOWS\system32\_000254_.tmp.dll
C:\SYS\WINDOWS\system32\_000255_.tmp.dll
C:\SYS\WINDOWS\system32\_000258_.tmp.dll
C:\SYS\WINDOWS\system32\_000261_.tmp.dll
C:\SYS\WINDOWS\system32\_000262_.tmp.dll
C:\SYS\WINDOWS\system32\_000263_.tmp.dll
C:\SYS\WINDOWS\system32\_000264_.tmp.dll
C:\SYS\WINDOWS\system32\_000265_.tmp.dll
C:\SYS\WINDOWS\system32\_000269_.tmp.dll
C:\SYS\WINDOWS\system32\_000270_.tmp.dll
C:\SYS\WINDOWS\system32\_000271_.tmp.dll
C:\SYS\WINDOWS\system32\_000272_.tmp.dll
C:\SYS\WINDOWS\system32\_000273_.tmp.dll
C:\SYS\WINDOWS\system32\_000274_.tmp.dll
C:\SYS\WINDOWS\system32\_000275_.tmp.dll
.
---- Previous Run -------
.
C:\07062004.exe
C:\Documents and Settings\atelier\Cookies\atelier@_cqr[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@2o7[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.ifrance[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.yieldmanager[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adnext[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ads.pointroll[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@adserver[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adv.surinter[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@apu0800.audientia[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@as1.falkag[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bestoffersnetworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bizrate[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@bluestreak[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cdiscount[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cliks[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@date.ventivmedia[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@edt02[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@esearchvision[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fastclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fnac[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@fr.msn[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@linternaute[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab58.customers.luna[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab61.customers.luna[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@news.fr.msn[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@offeroptimizer[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@paidmarketingpanel.aavalue[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@photobucket[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmv2[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmyvisites[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@projetwinx.blogspot[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@revsci[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@rueducommerce[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@server.cpmstar[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@serving-sys[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@specificclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stat.dealtime[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats1.reliablestats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stl.p.a1.traceworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tracker.affistats[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tradedoubler[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@trafiz[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tsw0[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.achetezfacile[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.pixmania[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@yahoo[2].txt
C:\Documents and Settings\atelier\My Documents\My Pictures\My Pictures.url
C:\Documents and Settings\atelier\UserData
C:\Documents and Settings\atelier\UserData\CPS3I7UF\advstNetId[1].xml
C:\Documents and Settings\atelier\UserData\CPS3I7UF\historySearchPos[1].xml
C:\Documents and Settings\atelier\UserData\index.dat
C:\Documents and Settings\atelier\UserData\MG5IEBCM\YL[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\historySitePos[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\oXMLStoreUnit[1].xml
C:\Documents and Settings\atelier\UserData\TUGM51Q3\Tdy58[1].xml
C:\Program Files\AAV
C:\Program Files\Altnet
C:\Program Files\Applications\myd.ico
C:\Program Files\Applications\mym.ico
C:\Program Files\Applications\myp.ico
C:\Program Files\Applications\myv.ico
C:\Program Files\ASpyC
C:\Program Files\Need2Find
C:\Program Files\Need2Find\bar\History\search
C:\Program Files\RXToolBar
C:\Program Files\RXToolBar\Cache\CT
C:\Program Files\RXToolBar\Cache\CTwww_laposte_net
C:\Program Files\RXToolBar\Cache\CTwww_roxio_com_
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=naruto%20narutoNC
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=windows%20mediaNC
C:\Program Files\RXToolBar\Cache\RXUpdate
C:\Program Files\RXToolBar\CacheCatalog.rx
C:\Program Files\RXToolBar\graphics\additional.gif
C:\Program Files\RXToolBar\graphics\additional_active.gif
C:\Program Files\RXToolBar\graphics\background.jpg
C:\Program Files\RXToolBar\graphics\blue_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\gray_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\thumbtack.gif
C:\Program Files\RXToolBar\graphics\thumbtack_active.gif
C:\Program Files\RXToolBar\graphics\thumbtack_click.gif
C:\Program Files\RXToolBar\HTML\content.htm
C:\Program Files\RXToolBar\HTML\main.htm
C:\Program Files\RXToolBar\rx.xml
C:\Program Files\RXToolBar\rxtoolbar.cfg
C:\Program Files\RXToolBar\rxwebsearches.xsl
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.sig
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.sig
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.Key
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.sig
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.dat
C:\Program Files\RXToolBar\sfcont.bin
C:\SYS\WINDOWS\BM2f44e4c3.txt
C:\SYS\WINDOWS\BM2f44e4c3.xml
C:\SYS\WINDOWS\cookies.ini
C:\SYS\WINDOWS\Fonts\acrsec.fon
C:\SYS\WINDOWS\Fonts\acrsecB.fon
C:\SYS\WINDOWS\Fonts\acrsecI.fon
C:\SYS\WINDOWS\pskt.ini
C:\SYS\WINDOWS\smdat32a.sys
C:\SYS\WINDOWS\smdat32m.sys
C:\SYS\WINDOWS\system32\AdCache
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449200.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449600.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_454300.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_111600.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_152400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_155300.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_164100.htm
C:\SYS\WINDOWS\system32\awttqNfC.dll
C:\SYS\WINDOWS\system32\CfNqttwa.ini
C:\SYS\WINDOWS\system32\CfNqttwa.ini2
C:\SYS\WINDOWS\system32\cpmsky-uninst.exe
C:\SYS\WINDOWS\system32\ebwxolyi.dll
C:\SYS\WINDOWS\system32\efcBuRJD.dll
C:\SYS\WINDOWS\system32\fbxyngfi.ini
C:\SYS\WINDOWS\system32\gyrkyd.dll
C:\SYS\WINDOWS\system32\hgGaxwvu.dll
C:\SYS\WINDOWS\system32\iwajmz.dll
C:\SYS\WINDOWS\system32\jdxivgjq.ini
C:\SYS\WINDOWS\system32\ldpackage.dll
C:\SYS\WINDOWS\system32\mcrh.tmp
C:\SYS\WINDOWS\system32\model.dat
C:\SYS\WINDOWS\system32\P2P Networking
C:\SYS\WINDOWS\system32\P2P Networking\P2P Networking.eng
C:\SYS\WINDOWS\system32\qjgvixdj.dll
C:\SYS\WINDOWS\system32\tcvawgtm.exe
C:\SYS\WINDOWS\system32\tqlkshoo.dll
C:\SYS\WINDOWS\system32\UpMedia
C:\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\SYS\WINDOWS\system32\wav.cpl
C:\SYS\WINDOWS\system32\wxgyfsib.dll
C:\SYS\WINDOWS\Web\default.htt

.
((((((((((((((((((((((((( Files Created from 2008-07-20 to 2008-08-20 )))))))))))))))))))))))))))))))
.

2008-08-20 18:18 . 08-08-20 18:18 <DIR> d-------- C:\SYS\WINDOWS\system32\Windows Media
2008-08-20 18:16 . 08-08-20 18:16 <DIR> d-------- C:\SYS\WINDOWS\msiinst.tmp
2008-08-20 18:16 . 08-08-20 18:17 <DIR> d--h-c--- C:\SYS\WINDOWS\$NtUpdateRollupPackUninstall$
2008-08-19 23:21 . 03-06-19 13:05 92,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\KRNL386.EXE
2008-08-19 23:21 . 02-08-29 07:14 44,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\msxml3r.dll
2008-08-19 21:08 . 08-08-19 21:08 <DIR> d--h-c--- C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$
2008-08-19 21:03 . 08-08-19 21:03 1,009 --a------ C:\SYS\WINDOWS\setup.inf
2008-08-19 21:03 . 08-08-19 21:03 283 --a------ C:\SYS\WINDOWS\setup.rpt
2008-08-19 21:01 . 08-08-19 21:01 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-08-19 19:37 . 06-07-25 07:08 840,976 -----c--- C:\SYS\WINDOWS\system32\dllcache\mmcndmgr.dll
2008-08-19 19:12 . 08-08-19 19:12 <DIR> d-------- C:\SYS\WINDOWS\system32\BITS
2008-08-18 23:26 . 08-08-18 23:26 <DIR> d-------- C:\Program Files\Tall Emu
2008-08-18 23:26 . 08-08-20 18:37 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\OnlineArmor
2008-08-18 23:26 . 08-08-19 19:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-08-18 23:26 . 08-04-17 05:22 80,584 --a------ C:\SYS\WINDOWS\system32\drivers\OADriver.sys
2008-08-18 23:26 . 08-04-17 05:22 32,456 --a------ C:\SYS\WINDOWS\system32\drivers\OAmon.sys
2008-08-18 23:26 . 08-04-17 05:22 28,872 --a------ C:\SYS\WINDOWS\system32\drivers\oanet.sys
2008-08-18 23:21 . 07-07-30 19:18 34,136 --a------ C:\SYS\WINDOWS\system32\wucltui.dll.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuaucpl.cpl.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuapi.dll.mui
2008-08-18 23:21 . 07-07-30 19:18 20,312 --a------ C:\SYS\WINDOWS\system32\wuaueng.dll.mui
2008-08-18 23:18 . 07-07-30 19:19 549,720 --a------ C:\SYS\WINDOWS\system32\wuapi.dll
2008-08-18 23:18 . 07-07-30 19:19 325,976 --a------ C:\SYS\WINDOWS\system32\wucltui.dll
2008-08-18 23:18 . 07-07-30 19:19 203,096 --a------ C:\SYS\WINDOWS\system32\wuweb.dll
2008-08-18 23:18 . 05-05-26 04:16 194,328 --a------ C:\SYS\WINDOWS\system32\wuaueng1.dll
2008-08-18 23:18 . 05-05-26 04:16 172,312 --a------ C:\SYS\WINDOWS\system32\wuauclt1.exe
2008-08-18 23:18 . 07-07-30 19:19 43,352 --a------ C:\SYS\WINDOWS\system32\wups2.dll
2008-08-18 23:18 . 07-07-30 19:18 33,624 --a------ C:\SYS\WINDOWS\system32\wups.dll
2008-08-18 22:20 . 08-08-18 22:20 <DIR> d---s---- C:\Documents and Settings\atelier\UserData
2008-08-18 20:23 . 08-08-18 20:45 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-17 15:01 38,472 --a------ C:\SYS\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-18 20:23 . 08-08-17 15:01 17,144 --a------ C:\SYS\WINDOWS\system32\drivers\mbam.sys
2008-08-06 21:12 . 08-08-06 23:52 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Video.url
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Music.url
2008-08-06 21:11 . 08-08-18 21:47 <DIR> d-------- C:\Program Files\Applications

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-12 16:47 --------- d-----w C:\Documents and Settings\atelier\Application Data\AdobeUM
2008-08-10 17:10 --------- d-----w C:\Documents and Settings\atelier\Application Data\LimeWire
2008-08-06 23:53 --------- d-----w C:\Program Files\TBONBin
2008-07-06 11:06 --------- d-----w C:\Program Files\LimeWire
2008-06-27 21:18 --------- d-----w C:\Documents and Settings\atelier\Application Data\XnView
2008-06-27 20:29 --------- d-----w C:\Documents and Settings\atelier\Application Data\gtk-2.0
2008-06-25 20:38 --------- d-----w C:\Program Files\TomTom HOME
2008-06-25 20:24 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-25 20:24 --------- d-----w C:\Documents and Settings\atelier\Application Data\InstallShield
2008-06-25 17:58 --------- d-----w C:\Program Files\TomTom HOME 2
2008-06-16 18:52 374 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb6334.dat
2008-06-16 18:34 555 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb8467.dat
2008-06-16 18:34 18,432 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb41.dat
2008-05-20 20:11 675,579 ----a-w C:\SYS\WINDOWS\PROGRAM.exe
2008-01-25 20:10 284 ----a-w C:\Documents and Settings\atelier\Application Data\ViewerApp.dat
2006-09-25 19:32 4,793,856 ----a-w C:\Program Files\s3a01frx.exe
2004-05-27 13:48 271 ---h--w C:\Program Files\desktop.ini
2004-05-27 13:48 21,952 ---h--w C:\Program Files\folder.htt
.

((((((((((((((((((((((((((((( snapshot@lun. 2008-08-18_22.07.26.85 )))))))))))))))))))))))))))))))))))))))))
.
+ 2003-02-20 15:39:04 73,728 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnetlib.dll
+ 2003-02-20 15:39:44 28,672 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnmpntw.dll
+ 2003-02-20 15:38:58 315,392 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadce.dll
+ 2003-02-20 15:39:08 135,168 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadco.dll
+ 2003-02-20 15:39:10 49,152 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadcs.dll
+ 2003-02-20 15:39:00 147,456 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadds.dll
+ 2003-02-20 15:39:00 512,000 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msado15.dll
+ 2003-02-20 15:39:16 163,840 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadomd.dll
+ 2003-02-20 15:39:16 184,320 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadox.dll
+ 2003-02-20 15:39:00 53,248 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadrh15.dll
+ 2003-02-20 15:39:20 225,280 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaora.dll
+ 2003-02-20 15:39:00 192,512 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaprst.dll
+ 2003-02-20 15:39:00 143,360 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdart.dll
+ 2003-02-20 15:39:00 303,104 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdasql.dll
+ 2003-02-20 15:39:30 90,112 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msjro.dll
+ 2003-02-20 15:39:30 139,264 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msorcl32.dll
+ 2003-02-20 15:39:02 221,184 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbc32.dll
+ 2003-02-20 15:39:42 24,576 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbcbcp.dll
+ 2003-02-20 15:39:02 442,368 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\oledb32.dll
+ 2006-12-22 16:55:58 213,216 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\spuninst.exe
+ 2006-12-22 16:56:06 2,290,688 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\SQLSTPCustomDLL.dll
+ 2006-12-22 16:56:06 371,424 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\updspapi.dll
+ 2003-02-20 15:39:06 503,808 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqloledb.dll
+ 2003-02-20 15:39:04 401,408 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlsrv32.dll
+ 2003-02-20 14:28:06 204,800 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlxmlx.dll
- 2006-12-25 00:12:05 7,168 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2008-08-19 19:05:28 8,192 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2006-12-25 00:12:02 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-08-19 19:05:30 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
- 2006-12-25 00:11:56 716,800 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-08-19 19:05:41 720,896 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2006-12-25 00:11:56 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-08-19 19:05:31 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2006-12-25 00:12:05 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2008-08-19 19:05:38 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
- 2006-12-25 00:12:07 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-08-19 19:05:35 303,104 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2006-12-25 00:12:03 1,290,240 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2008-08-19 19:05:38 1,294,336 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
- 2006-12-25 00:12:03 1,699,840 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-08-19 19:05:29 1,703,936 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
- 2006-12-25 00:12:03 86,016 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-08-19 19:05:40 90,112 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2006-12-25 00:12:03 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-08-19 19:05:34 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2008-08-19 19:05:31 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2006-12-25 00:12:03 64,000 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2008-08-19 19:05:31 66,560 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
- 2006-12-25 00:12:03 368,640 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-08-19 19:05:38 372,736 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-08-19 19:05:41 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2006-12-25 00:12:03 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-08-19 19:05:35 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2006-12-25 00:12:03 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-08-19 19:05:32 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2006-12-25 00:12:03 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-08-19 19:05:33 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2006-12-25 00:12:04 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-08-19 19:05:39 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2006-12-25 00:12:06 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-08-19 19:05:28 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2006-12-25 00:12:04 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-08-19 19:05:31 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2006-12-25 00:12:04 569,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-08-19 19:05:30 573,440 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2006-12-25 00:12:04 1,245,184 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-08-19 19:05:40 1,257,472 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2006-12-25 00:12:04 2,039,808 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-08-19 19:05:32 2,052,096 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
- 2006-12-25 00:12:05 1,335,296 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
+ 2008-08-19 19:05:37 1,339,392 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
- 2006-12-25 00:12:03 1,216,512 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:05:43 1,224,704 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:06:24 61,440 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_643b97a4\CustomMarshalers.dll
+ 2008-08-19 19:08:49 3,379,200 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_9e9c4ca6\mscorlib.dll
+ 2008-08-19 19:08:05 1,470,464 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_3932d236\System.Design.dll
+ 2008-08-19 19:06:32 90,112 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_1f4249f9\System.Drawing.Design.dll
+ 2008-08-19 19:08:18 835,584 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_087bb5c5\System.Drawing.dll
+ 2008-08-19 19:06:56 3,014,656 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_3fb9996d\System.Windows.Forms.dll
+ 2008-08-19 19:07:42 2,088,960 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_0051f7f8\System.Xml.dll
+ 2008-08-19 19:06:21 1,953,792 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_3b4f087f\System.dll
+ 2005-01-12 19:39:50 138,000 ------w C:\SYS\WINDOWS\Driver Cache\i386\faxui.dll
+ 2004-12-02 13:00:00 116,400 ------w C:\SYS\WINDOWS\Driver Cache\i386\ftdisk.sys
+ 2004-12-02 12:59:18 85,888 ------w C:\SYS\WINDOWS\Driver Cache\i386\halmacpi.dll
- 2004-03-24 02:17:00 742,160 ------w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
+ 2007-04-16 12:44:08 712,976 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
- 2004-03-24 02:17:00 497,936 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
+ 2005-01-13 09:09:38 483,600 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
- 2004-02-25 23:55:31 1,699,904 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
+ 2007-03-05 15:51:49 1,714,496 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
- 2004-02-25 23:55:48 1,699,264 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
+ 2007-03-05 15:52:06 1,713,536 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
- 2004-02-25 23:55:51 1,720,064 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
+ 2007-03-05 15:52:05 1,735,808 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
- 2004-03-11 02:37:30 1,726,032 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
+ 2007-03-05 15:51:49 1,690,880 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
- 2004-03-11 02:37:49 1,720,368 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
+ 2008-03-19 09:26:34 1,644,080 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
- 2003-09-25 18:08:48 243,984 ------w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
+ 2007-03-13 09:44:49 245,520 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
- 2003-06-19 11:05:04 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2005-04-15 01:08:24 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2008-08-19 19:02:02 32,768 ----a-r C:\SYS\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\icon.exe
+ 2003-02-28 14:35:26 6,550 ----a-w C:\SYS\WINDOWS\jautoexp.dat
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\7BZ5Z9J3.DAT
+ 2008-08-19 19:06:44 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\HRPZXJ1F.DAT
+ 2008-08-19 19:06:37 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\JRZPRZNN.DAT
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\SKZV7P75.DAT
+ 2008-08-19 19:06:39 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\TF17B1JX.DAT
- 2003-02-20 18:19:32 253,952 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2004-07-14 23:49:16 258,048 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2003-02-20 18:19:34 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2004-07-14 23:49:18 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
- 2003-02-20 18:19:38 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2004-07-14 23:49:26 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
- 2003-02-20 18:19:36 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2004-07-14 23:49:22 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2003-02-20 18:09:08 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2004-07-14 22:32:22 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2003-02-21 09:20:44 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2004-07-15 09:23:28 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
- 2003-02-21 09:21:00 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2004-07-15 09:23:44 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
- 2003-02-20 18:06:20 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2004-07-14 22:24:30 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-10-08 12:30:14 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
- 2003-02-16 10:02:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
+ 2004-05-04 09:53:40 1,645,320 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
- 2003-02-21 06:24:38 7,168 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2004-07-15 12:31:00 8,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
- 2003-02-21 06:24:40 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2004-07-15 12:31:04 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
- 2003-02-20 18:09:40 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2004-07-14 22:35:30 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
- 2003-02-21 06:26:36 716,800 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2004-07-15 12:28:58 720,896 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
- 2003-02-21 06:26:38 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2004-07-15 12:28:56 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
- 2003-02-20 18:09:12 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2004-07-14 22:32:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
- 2003-02-20 18:09:12 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2004-07-14 22:32:46 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
- 2003-02-20 18:06:32 311,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2004-07-14 22:25:06 315,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2003-02-20 18:09:16 98,304 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2004-07-14 22:33:04 102,400 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2003-02-21 06:26:34 2,088,960 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2004-07-15 12:29:02 2,138,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2003-02-20 18:09:18 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2004-07-14 22:33:22 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
- 2003-02-20 18:09:18 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2004-07-14 22:33:24 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
- 2003-02-20 18:07:34 2,494,464 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2004-07-14 22:26:52 2,510,848 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2003-02-20 18:08:32 2,482,176 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-07-14 22:28:34 2,502,656 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-08-10 14:20:00 106,496 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
- 2003-02-20 18:09:30 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2004-07-14 22:34:50 94,208 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
- 2003-02-21 06:26:46 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2004-07-15 12:28:48 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
- 2003-02-20 18:09:34 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2004-07-14 22:35:04 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
- 2003-02-21 06:26:38 1,290,240 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2004-07-15 12:32:00 1,294,336 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
- 2003-02-21 06:25:42 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2004-07-15 12:31:14 303,104 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
- 2003-02-21 06:26:42 1,699,840 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2004-07-15 12:29:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
- 2003-02-21 06:26:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2004-07-15 12:28:54 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
- 2003-02-21 06:26:46 1,216,512 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2004-07-15 12:31:16 1,224,704 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2003-02-21 06:26:50 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2004-07-15 12:28:58 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
- 2003-02-21 06:26:50 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2004-07-15 12:28:56 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
- 2003-02-20 18:09:36 64,000 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2004-07-14 22:35:12 66,560 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
- 2003-02-21 06:26:52 368,640 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2004-07-15 12:31:58 372,736 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
- 2003-02-21 06:26:54 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2004-07-15 12:31:12 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
- 2003-02-21 06:26:56 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2004-07-15 12:28:58 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
- 2003-02-21 06:26:56 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2004-07-15 12:31:54 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
- 2003-02-21 06:26:58 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2004-07-15 12:28:52 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2003-02-21 06:27:00 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2004-07-15 12:28:54 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
- 2003-02-21 06:27:02 1,245,184 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2004-07-15 12:29:00 1,257,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2003-02-21 06:27:06 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2004-07-15 12:28:58 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
- 2003-02-21 06:24:18 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2004-07-15 12:28:52 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
- 2003-02-21 06:27:06 569,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2004-07-15 12:31:16 573,440 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
- 2003-02-21 06:27:08 2,039,808 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2004-07-15 12:32:02 2,052,096 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
- 2003-02-21 06:27:10 1,335,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-07-15 12:29:00 1,339,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-06-22 11:51:38 53,248 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
- 2003-02-21 09:20:38 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2004-07-15 09:23:20 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
- 2003-02-21 04:04:18 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2004-07-15 06:15:14 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
- 2003-02-20 19:10:40 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2004-07-15 00:11:56 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
- 1999-12-07 12:00:00 38,160 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
- 1999-12-07 12:00:00 51,984 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
- 1999-12-07 12:00:00 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2003-09-20 04:53:04 64,512 ----a-w C:\SYS\WINDOWS\msiinst.tmp\msiexec.exe
+ 2004-06-18 12:40:50 33,280 ----a-w C:\SYS\WINDOWS\muninst.exe
+ 2003-02-28 16:26:30 46,352 ----a-w C:\SYS\WINDOWS\setdebug.exe
- 2003-06-19 11:05:04 125,712 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
+ 2005-04-08 11:54:34 130,832 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
- 2003-06-19 11:05:04 133,904 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
+ 2005-04-08 11:54:32 134,928 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
- 2003-06-19 11:05:04 62,736 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
+ 2005-01-13 09:09:48 63,760 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
- 2004-03-24 02:17:00 388,368 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
+ 2005-04-21 08:08:44 401,168 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
- 2003-06-19 11:05:04 55,056 ------w C:\SYS\WINDOWS\system32\authz.dll
+ 2005-02-04 05:34:04 55,568 ------w C:\SYS\WINDOWS\system32\authz.dll
- 2003-06-19 11:05:04 576,272 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
+ 2003-12-10 02:47:36 579,856 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
- 2004-03-24 02:17:02 42,256 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2004-10-05 08:43:30 362,496 ------w C:\SYS\WINDOWS\system32\BITS\qmgr.dll
+ 2004-10-05 08:43:28 7,680 ------w C:\SYS\WINDOWS\system32\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 ------w C:\SYS\WINDOWS\system32\bitsprx3.dll
- 2004-03-23 17:17:02 69,904 ----a-w C:\SYS\WINDOWS\system32\browser.dll
+ 2005-04-08 11:54:32 71,440 ----a-w C:\SYS\WINDOWS\system32\browser.dll
- 2004-01-21 14:21:08 1,026,048 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
+ 2005-01-12 19:39:46 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
- 2004-03-11 21:29:22 169,232 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
+ 2005-09-05 08:18:46 165,648 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
- 2004-03-11 21:29:23 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
- 2002-08-29 05:14:40 142,336 ----a-w C:\SYS\WINDOWS\system32\cdfview.dll
+ 2008-06-20 08:59:26 143,360 ----a-w C:\SYS\WINDOWS\system32\CDFVIEW.DLL
- 2003-06-19 11:05:04 18,432 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
+ 2007-07-30 17:19:20 92,504 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
- 2003-06-19 11:05:04 2,531,088 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
+ 2005-08-30 09:29:42 2,532,112 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
- 2003-06-19 11:05:04 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
+ 2003-12-10 02:47:42 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
- 1999-12-07 12:00:00 68,368 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
+ 2005-01-12 19:39:48 68,880 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
- 2004-03-11 21:29:23 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
- 2004-03-11 21:29:21 552,720 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
- 1999-12-07 12:00:00 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
+ 2003-02-28 16:26:26 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
- 2003-09-21 00:45:05 236,304 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
+ 2004-11-02 22:48:18 236,816 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
- 2004-03-11 21:29:23 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
+ 2005-09-05 08:18:46 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
- 2004-03-11 21:29:23 198,416 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
+ 2005-09-05 08:18:46 197,904 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
- 2002-08-29 05:14:40 529,680 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
+ 2006-08-28 08:44:10 530,192 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
- 2004-03-11 21:29:23 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
+ 2005-09-05 08:18:46 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
- 2004-03-11 21:29:24 1,467,664 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
- 2004-03-11 21:29:24 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
+ 2005-09-05 08:18:48 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
- 2004-03-24 02:17:00 543,504 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 ----a-w C:\SYS\WINDOWS\system32\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 ----a-w C:\SYS\WINDOWS\system32\CRYPTDLG.DLL
- 2004-03-24 02:17:01 61,200 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
+ 2005-04-08 11:54:34 63,760 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
- 2004-03-24 02:17:01 76,048 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
+ 2005-01-12 19:39:46 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
- 2003-06-19 11:05:04 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
+ 2005-01-13 09:09:50 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
- 1999-12-07 12:00:00 1,133,840 ----a-w C:\SYS\WINDOWS\system32\danim.dll
+ 2008-04-20 22:03:58 1,054,208 ----a-w C:\SYS\WINDOWS\system32\DANIM.DLL
- 2003-02-20 15:39:04 73,728 ----a-w C:\SYS\WINDOWS\system32\dbnetlib.dll
+ 2006-12-22 16:55:42 73,728 ----a-w C:\SYS\WINDOWS\system32\DBnetlib.dll
- 2003-02-20 15:39:44 28,672 ----a-w C:\SYS\WINDOWS\system32\dbnmpntw.dll
+ 2006-12-22 16:55:42 28,672 ----a-w C:\SYS\WINDOWS\system32\DBnmpntw.dll
- 2003-06-19 11:05:04 92,944 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2006-05-19 09:18:24 89,872 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2005-01-12 19:39:48 248,080 -c----w C:\SYS\WINDOWS\system32\dllcache\adsiis.dll
+ 2005-04-08 11:54:34 130,832 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldp.dll
+ 2005-04-08 11:54:32 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldpc.dll
+ 2005-01-13 09:09:48 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\adsmsext.dll
- 2004-03-24 02:17:00 388,368 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2005-04-21 08:08:44 401,168 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2008-05-08 08:38:06 119,152 -c----w C:\SYS\WINDOWS\system32\dllcache\afd.sys
- 1999-12-07 12:00:00 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
- 1999-12-07 12:00:00 51,984 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
- 1999-12-07 12:00:00 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2005-04-08 11:54:36 356,624 -c----w C:\SYS\WINDOWS\system32\dllcache\ASP.DLL
+ 2005-02-04 05:34:04 55,568 -c----w C:\SYS\WINDOWS\system32\dllcache\authz.dll
+ 2003-12-10 02:47:36 579,856 -c----w C:\SYS\WINDOWS\system32\dllcache\autochk.exe
- 2004-03-24 02:17:02 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2004-10-05 08:43:28 7,680 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx3.dll
- 2004-03-24 02:17:01 69,904 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
+ 2005-04-08 11:54:32 71,440 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
- 2004-01-21 14:21:08 1,026,048 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
+ 2005-01-12 19:39:46 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
- 2004-03-24 02:17:02 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
+ 2005-01-12 19:39:48 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
- 2004-03-11 21:29:22 169,232 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
+ 2005-09-05 08:18:46 165,648 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
- 2004-03-11 21:29:23 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-04-08 11:51:14 63,248 -c----w C:\SYS\WINDOWS\system32\dllcache\cdfs.sys
- 2002-08-29 05:14:40 142,336 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdfview.dll
+ 2008-06-20 08:59:26 143,360 -c--a-w C:\SYS\WINDOWS\system32\dllcache\CDFVIEW.DLL
+ 2007-07-30 17:19:20 92,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdm.dll
+ 2005-08-30 09:29:42 2,532,112 -c----w C:\SYS\WINDOWS\system32\dllcache\cdosys.dll
+ 2003-12-10 02:47:42 13,584 -c----w C:\SYS\WINDOWS\system32\dllcache\chkdsk.exe
- 1999-12-07 12:00:00 68,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
+ 2005-01-12 19:39:48 68,880 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
- 2004-03-11 21:29:23 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
- 2004-03-11 21:29:21 552,720 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2004-12-02 16:38:18 237,840 -c----w C:\SYS\WINDOWS\system32\dllcache\ClusCfg.exe
+ 2004-12-02 16:37:06 693,520 -c----w C:\SYS\WINDOWS\system32\dllcache\clussvc.exe
- 2003-09-21 00:45:05 236,304 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
+ 2004-11-02 22:48:18 236,816 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
- 2004-03-11 21:29:23 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
+ 2005-09-05 08:18:46 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
- 2004-03-11 21:29:23 198,416 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
+ 2005-09-05 08:18:46 197,904 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
- 2002-08-29 05:14:40 529,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
+ 2006-08-28 08:44:10 530,192 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
- 2004-03-11 21:29:23 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
+ 2005-09-05 08:18:46 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
- 2004-03-11 21:29:23 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
+ 2005-09-05 08:18:48 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
- 2004-03-11 21:29:24 1,467,664 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
- 2004-03-11 21:29:24 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
+ 2005-09-05 08:18:48 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
- 2004-03-24 02:17:00 543,504 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
- 2004-03-24 02:17:01 61,200 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
+ 2005-04-08 11:54:34 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
- 2004-03-24 02:17:01 76,048 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-12 19:39:46 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-13 09:09:50 35,088 -c----w C:\SYS\WINDOWS\system32\dllcache\csrsrv.dll
- 1999-12-07 12:00:00 1,133,840 -c--a-w C:\SYS\WINDOWS\system32\dllcache\danim.dll
+ 2008-04-20 22:03:58 1,054,208 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DANIM.DLL
- 2004-03-01 19:58:18 561,424 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2008-03-27 07:00:14 554,008 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2006-12-22 16:55:42 73,728 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnetlib.dll
+ 2006-12-22 16:55:42 28,672 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnmpntw.dll
+ 2006-05-19 09:18:24 89,872 -c----w C:\SYS\WINDOWS\system32\dllcache\dhcpcsvc.dll
- 2002-08-29 05:06:02 76,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\directdb.dll
+ 2008-06-25 13:35:50 75,776 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DIRECTDB.DLL
- 2004-03-24 02:17:00 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
+ 2008-06-25 09:41:54 137,488 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
- 2004-03-24 02:17:01 92,432 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
+ 2008-02-15 13:24:10 96,528 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
- 2002-12-11 23:14:32 217,600 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
+ 2004-04-14 12:56:46 219,648 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
- 2002-12-11 23:14:32 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-04-12 21:11:26 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-12-09 18:52:54 114,960 -c----w C:\SYS\WINDOWS\system32\dllcache\dsexts.dll
+ 2005-01-12 19:39:50 299,792 -c----w C:\SYS\WINDOWS\system32\dllcache\dsprop.dll
- 2004-02-19 22:03:09 1,816,552 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-03-06 05:07:31 1,842,672 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-08-22 02:05:26 498,742 -c----w C:\SYS\WINDOWS\system32\dllcache\dxmasf.dll
- 2002-08-29 05:14:40 351,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2008-06-20 07:53:28 351,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTMSFT.DLL
- 2002-08-29 05:14:40 187,392 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtrans.dll
+ 2008-06-20 07:53:26 192,512 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTRANS.DLL
- 2004-03-11 21:29:22 239,888 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
+ 2008-07-10 10:00:14 251,152 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
- 2004-03-24 02:17:01 47,888 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-04-08 11:54:32 49,424 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-07-19 10:44:44 142,288 -c----w C:\SYS\WINDOWS\system32\dllcache\fastfat.sys
+ 2005-01-12 19:39:50 138,000 -c----w C:\SYS\WINDOWS\system32\dllcache\faxui.dll
+ 2005-02-22 07:05:10 18,192 -c----w C:\SYS\WINDOWS\system32\dllcache\fltlib.dll
+ 2004-12-02 13:19:44 22,800 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmc.exe
+ 2005-04-14 06:59:02 136,880 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmgr.sys
- 1999-12-07 12:00:00 78,096 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
+ 2005-11-24 14:54:16 79,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
- 1999-12-07 12:00:00 38,672 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-11-06 14:38:16 47,376 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-12-02 13:00:00 116,400 -c----w C:\SYS\WINDOWS\system32\dllcache\ftdisk.sys
- 2004-03-23 16:17:02 242,448 -c----w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2008-02-19 17:08:58 236,304 -c--a-w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2005-01-12 19:39:50 305,424 -c----w C:\SYS\WINDOWS\system32\dllcache\gpedit.dll
- 1999-12-07 12:00:00 41,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2004-12-09 18:10:08 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2005-01-12 19:39:50 163,088 -c----w C:\SYS\WINDOWS\system32\dllcache\h323msp.dll
+ 2005-04-15 01:08:24 10,752 -c----w C:\SYS\WINDOWS\system32\dllcache\hh.exe
+ 2005-04-21 14:16:56 38,912 -c----w C:\SYS\WINDOWS\system32\dllcache\hhsetup.dll
+ 2006-07-21 15:08:54 72,704 -c----w C:\SYS\WINDOWS\system32\dllcache\hlink.dll
+ 2005-01-12 19:39:52 247,056 -c----w C:\SYS\WINDOWS\system32\dllcache\httpext.dll
+ 2005-01-12 19:39:52 576,784 -c----w C:\SYS\WINDOWS\system32\dllcache\hypertrm.dll
+ 2005-06-29 07:30:56 246,032 -c----w C:\SYS\WINDOWS\system32\dllcache\icm32.dll
- 2002-08-29 05:14:40 231,424 -c--a-w C:\SYS\WINDOWS\system32\dllcache\iepeers.dll
+ 2008-06-20 07:53:34 236,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\IEPEERS.DLL
+ 2005-01-12 19:39:52 122,640 -c----w C:\SYS\WINDOWS\system32\dllcache\iischema.dll
+ 2005-02-22 08:42:14 57,104 -c----w C:\SYS\WINDOWS\system32\dllcache\iisext.dll
- 2002-08-29 05:06:02 593,408 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetcomm.dll
+ 2008-06-25 13:35:58 601,088 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETCOMM.DLL
- 2002-08-29 05:06:02 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetres.dll
+ 2008-06-25 13:35:54 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETRES.DLL
- 2002-08-29 05:14:40 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inseng.dll
+ 2008-06-20 07:53:38 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INSENG.DLL
+ 2006-05-19 09:18:24 68,368 -c----w C:\SYS\WINDOWS\system32\dllcache\iphlpapi.dll
+ 2004-08-11 22:42:40 67,344 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnat.sys
- 2004-03-24 02:17:02 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
+ 2005-01-12 19:39:52 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
- 1999-12-07 12:00:00 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
+ 2003-04-21 18:19:44 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
- 2003-08-27 13:13:52 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
+ 2005-04-21 14:16:56 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
- 2004-06-22 22:42:32 123,392 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2005-04-21 14:16:56 128,000 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2007-08-17 06:48:22 39,184 -c----w C:\SYS\WINDOWS\system32\dllcache\jpeg2x32.dll
- 2001-06-26 14:36:02 589,874 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
+ 2008-01-05 01:05:56 458,752 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
- 2002-08-29 05:14:40 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jsproxy.dll
+ 2008-06-20 07:53:56 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\JSPROXY.DLL
- 2004-03-24 02:17:02 143,632 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
+ 2005-06-15 04:33:18 149,776 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
- 2004-03-11 02:37:09 210,192 -c----w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
+ 2005-06-15 04:22:48 208,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
- 2004-03-24 02:17:00 742,160 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-04-16 12:44:08 712,976 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-05-11 07:41:54 524,560 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakimg.exe
+ 2007-05-11 07:42:16 73,488 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakprv.exe
- 1999-12-07 12:00:00 16,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-09-23 11:03:25 17,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-01-13 16:19:18 85,264 -c----w C:\SYS\WINDOWS\system32\dllcache\LLSSRV.EXE
+ 2005-04-08 11:54:32 266,000 -c----w C:\SYS\WINDOWS\system32\dllcache\localspl.dll
- 2004-02-25 23:59:07 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
+ 2004-12-19 22:30:54 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
- 2004-03-24 02:17:02 37,136 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
+ 2007-03-06 11:17:46 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
- 1999-12-07 12:00:00 924,432 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 927,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 1,011,774 -c----w C:\SYS\WINDOWS\system32\dllcache\mfc42u.dll
+ 2006-07-06 09:52:40 613,648 -c----w C:\SYS\WINDOWS\system32\dllcache\mmc.exe
- 2004-02-10 19:47:54 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
+ 2005-08-16 08:40:58 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
- 2004-03-24 02:17:02 54,544 -c----w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-04-16 12:44:08 54,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-10-17 07:22:06 292,112 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1repl.dll
+ 2007-10-16 13:51:24 14,096 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1sync.exe
+ 2007-10-16 13:51:26 77,712 -c----w C:\SYS\WINDOWS\system32\dllcache\mqac.sys
+ 2007-10-17 07:22:06 218,384 -c----w C:\SYS\WINDOWS\system32\dllcache\mqads.dll
+ 2007-10-16 13:51:26 25,360 -c----w C:\SYS\WINDOWS\system32\dllcache\mqbkup.exe
+ 2007-10-17 07:22:06 29,456 -c----w C:\SYS\WINDOWS\system32\dllcache\mqcertui.dll
+ 2007-10-17 07:22:06 50,448 -c----w C:\SYS\WINDOWS\system32\dllcache\mqclus.dll
+ 2007-10-17 07:22:06 29,968 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdbodbc.dll
+ 2007-10-17 07:22:06 77,072 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdscli.dll
+ 2007-10-17 07:22:06 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdssrv.dll
- 1999-12-07 12:00:00 87,312 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr.dll
+ 2007-10-17 07:22:06 96,016 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr.dll
+ 2007-10-16 13:51:28 98,064 -c----w C:\SYS\WINDOWS\system32\dllcache\mqmig.exe
+ 2007-10-17 07:22:06 267,536 -c----w C:\SYS\WINDOWS\system32\dllcache\mqmigrat.dll
+ 2007-10-17 07:22:06 222,480 -c----w C:\SYS\W
0
kartman
 
Bonjour , Nouveau scan Combofix voici le rapport:
ComboFix 08-08-19.02 - atelier 2008-08-20 18:26:42.2 - NTFSx86
Microsoft Windows 2000 Professionnel 5.0.2195.4.1252.1.1033.18.523 [GMT 2:00]
Running from: C:\Documents and Settings\atelier\Desktop\ComboFix.exe

[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\SYS\WINDOWS\system32\_000254_.tmp.dll
C:\SYS\WINDOWS\system32\_000255_.tmp.dll
C:\SYS\WINDOWS\system32\_000258_.tmp.dll
C:\SYS\WINDOWS\system32\_000261_.tmp.dll
C:\SYS\WINDOWS\system32\_000262_.tmp.dll
C:\SYS\WINDOWS\system32\_000263_.tmp.dll
C:\SYS\WINDOWS\system32\_000264_.tmp.dll
C:\SYS\WINDOWS\system32\_000265_.tmp.dll
C:\SYS\WINDOWS\system32\_000269_.tmp.dll
C:\SYS\WINDOWS\system32\_000270_.tmp.dll
C:\SYS\WINDOWS\system32\_000271_.tmp.dll
C:\SYS\WINDOWS\system32\_000272_.tmp.dll
C:\SYS\WINDOWS\system32\_000273_.tmp.dll
C:\SYS\WINDOWS\system32\_000274_.tmp.dll
C:\SYS\WINDOWS\system32\_000275_.tmp.dll
.
---- Previous Run -------
.
C:\[u]0[/u]7062004.exe
C:\Documents and Settings\atelier\Cookies\atelier@_cqr[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@2o7[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.ifrance[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.yieldmanager[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adnext[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ads.pointroll[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@adserver[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adv.surinter[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@apu0800.audientia[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@as1.falkag[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bestoffersnetworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bizrate[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@bluestreak[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cdiscount[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cliks[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@date.ventivmedia[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@edt02[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@esearchvision[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fastclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fnac[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@fr.msn[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@linternaute[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab58.customers.luna[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab61.customers.luna[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@news.fr.msn[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@offeroptimizer[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@paidmarketingpanel.aavalue[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@photobucket[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmv2[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmyvisites[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@projetwinx.blogspot[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@revsci[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@rueducommerce[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@server.cpmstar[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@serving-sys[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@specificclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stat.dealtime[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats1.reliablestats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stl.p.a1.traceworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tracker.affistats[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tradedoubler[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@trafiz[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tsw0[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.achetezfacile[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.pixmania[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@yahoo[2].txt
C:\Documents and Settings\atelier\My Documents\My Pictures\My Pictures.url
C:\Documents and Settings\atelier\UserData
C:\Documents and Settings\atelier\UserData\CPS3I7UF\advstNetId[1].xml
C:\Documents and Settings\atelier\UserData\CPS3I7UF\historySearchPos[1].xml
C:\Documents and Settings\atelier\UserData\index.dat
C:\Documents and Settings\atelier\UserData\MG5IEBCM\YL[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\historySitePos[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\oXMLStoreUnit[1].xml
C:\Documents and Settings\atelier\UserData\TUGM51Q3\Tdy58[1].xml
C:\Program Files\AAV
C:\Program Files\Altnet
C:\Program Files\Applications\myd.ico
C:\Program Files\Applications\mym.ico
C:\Program Files\Applications\myp.ico
C:\Program Files\Applications\myv.ico
C:\Program Files\ASpyC
C:\Program Files\Need2Find
C:\Program Files\Need2Find\bar\History\search
C:\Program Files\RXToolBar
C:\Program Files\RXToolBar\Cache\CT
C:\Program Files\RXToolBar\Cache\CTwww_laposte_net
C:\Program Files\RXToolBar\Cache\CTwww_roxio_com_
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=naruto%20narutoNC
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=windows%20mediaNC
C:\Program Files\RXToolBar\Cache\RXUpdate
C:\Program Files\RXToolBar\CacheCatalog.rx
C:\Program Files\RXToolBar\graphics\additional.gif
C:\Program Files\RXToolBar\graphics\additional_active.gif
C:\Program Files\RXToolBar\graphics\background.jpg
C:\Program Files\RXToolBar\graphics\blue_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\gray_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\thumbtack.gif
C:\Program Files\RXToolBar\graphics\thumbtack_active.gif
C:\Program Files\RXToolBar\graphics\thumbtack_click.gif
C:\Program Files\RXToolBar\HTML\content.htm
C:\Program Files\RXToolBar\HTML\main.htm
C:\Program Files\RXToolBar\rx.xml
C:\Program Files\RXToolBar\rxtoolbar.cfg
C:\Program Files\RXToolBar\rxwebsearches.xsl
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.sig
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.sig
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.Key
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.sig
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.dat
C:\Program Files\RXToolBar\sfcont.bin
C:\SYS\WINDOWS\BM2f44e4c3.txt
C:\SYS\WINDOWS\BM2f44e4c3.xml
C:\SYS\WINDOWS\cookies.ini
C:\SYS\WINDOWS\Fonts\acrsec.fon
C:\SYS\WINDOWS\Fonts\acrsecB.fon
C:\SYS\WINDOWS\Fonts\acrsecI.fon
C:\SYS\WINDOWS\pskt.ini
C:\SYS\WINDOWS\smdat32a.sys
C:\SYS\WINDOWS\smdat32m.sys
C:\SYS\WINDOWS\system32\AdCache
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449200.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449600.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_454300.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_111600.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_152400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_155300.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_164100.htm
C:\SYS\WINDOWS\system32\awttqNfC.dll
C:\SYS\WINDOWS\system32\CfNqttwa.ini
C:\SYS\WINDOWS\system32\CfNqttwa.ini2
C:\SYS\WINDOWS\system32\cpmsky-uninst.exe
C:\SYS\WINDOWS\system32\ebwxolyi.dll
C:\SYS\WINDOWS\system32\efcBuRJD.dll
C:\SYS\WINDOWS\system32\fbxyngfi.ini
C:\SYS\WINDOWS\system32\gyrkyd.dll
C:\SYS\WINDOWS\system32\hgGaxwvu.dll
C:\SYS\WINDOWS\system32\iwajmz.dll
C:\SYS\WINDOWS\system32\jdxivgjq.ini
C:\SYS\WINDOWS\system32\ldpackage.dll
C:\SYS\WINDOWS\system32\mcrh.tmp
C:\SYS\WINDOWS\system32\model.dat
C:\SYS\WINDOWS\system32\P2P Networking
C:\SYS\WINDOWS\system32\P2P Networking\P2P Networking.eng
C:\SYS\WINDOWS\system32\qjgvixdj.dll
C:\SYS\WINDOWS\system32\tcvawgtm.exe
C:\SYS\WINDOWS\system32\tqlkshoo.dll
C:\SYS\WINDOWS\system32\UpMedia
C:\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\SYS\WINDOWS\system32\wav.cpl
C:\SYS\WINDOWS\system32\wxgyfsib.dll
C:\SYS\WINDOWS\Web\default.htt

.
((((((((((((((((((((((((( Files Created from 2008-07-20 to 2008-08-20 )))))))))))))))))))))))))))))))
.

2008-08-20 18:18 . 08-08-20 18:18 <DIR> d-------- C:\SYS\WINDOWS\system32\Windows Media
2008-08-20 18:16 . 08-08-20 18:16 <DIR> d-------- C:\SYS\WINDOWS\msiinst.tmp
2008-08-20 18:16 . 08-08-20 18:17 <DIR> d--h-c--- C:\SYS\WINDOWS\$NtUpdateRollupPackUninstall$
2008-08-19 23:21 . 03-06-19 13:05 92,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\KRNL386.EXE
2008-08-19 23:21 . 02-08-29 07:14 44,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\msxml3r.dll
2008-08-19 21:08 . 08-08-19 21:08 <DIR> d--h-c--- C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$
2008-08-19 21:03 . 08-08-19 21:03 1,009 --a------ C:\SYS\WINDOWS\setup.inf
2008-08-19 21:03 . 08-08-19 21:03 283 --a------ C:\SYS\WINDOWS\setup.rpt
2008-08-19 21:01 . 08-08-19 21:01 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-08-19 19:37 . 06-07-25 07:08 840,976 -----c--- C:\SYS\WINDOWS\system32\dllcache\mmcndmgr.dll
2008-08-19 19:12 . 08-08-19 19:12 <DIR> d-------- C:\SYS\WINDOWS\system32\BITS
2008-08-18 23:26 . 08-08-18 23:26 <DIR> d-------- C:\Program Files\Tall Emu
2008-08-18 23:26 . 08-08-20 18:37 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\OnlineArmor
2008-08-18 23:26 . 08-08-19 19:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-08-18 23:26 . 08-04-17 05:22 80,584 --a------ C:\SYS\WINDOWS\system32\drivers\OADriver.sys
2008-08-18 23:26 . 08-04-17 05:22 32,456 --a------ C:\SYS\WINDOWS\system32\drivers\OAmon.sys
2008-08-18 23:26 . 08-04-17 05:22 28,872 --a------ C:\SYS\WINDOWS\system32\drivers\oanet.sys
2008-08-18 23:21 . 07-07-30 19:18 34,136 --a------ C:\SYS\WINDOWS\system32\wucltui.dll.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuaucpl.cpl.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuapi.dll.mui
2008-08-18 23:21 . 07-07-30 19:18 20,312 --a------ C:\SYS\WINDOWS\system32\wuaueng.dll.mui
2008-08-18 23:18 . 07-07-30 19:19 549,720 --a------ C:\SYS\WINDOWS\system32\wuapi.dll
2008-08-18 23:18 . 07-07-30 19:19 325,976 --a------ C:\SYS\WINDOWS\system32\wucltui.dll
2008-08-18 23:18 . 07-07-30 19:19 203,096 --a------ C:\SYS\WINDOWS\system32\wuweb.dll
2008-08-18 23:18 . 05-05-26 04:16 194,328 --a------ C:\SYS\WINDOWS\system32\wuaueng1.dll
2008-08-18 23:18 . 05-05-26 04:16 172,312 --a------ C:\SYS\WINDOWS\system32\wuauclt1.exe
2008-08-18 23:18 . 07-07-30 19:19 43,352 --a------ C:\SYS\WINDOWS\system32\wups2.dll
2008-08-18 23:18 . 07-07-30 19:18 33,624 --a------ C:\SYS\WINDOWS\system32\wups.dll
2008-08-18 22:20 . 08-08-18 22:20 <DIR> d---s---- C:\Documents and Settings\atelier\UserData
2008-08-18 20:23 . 08-08-18 20:45 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-17 15:01 38,472 --a------ C:\SYS\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-18 20:23 . 08-08-17 15:01 17,144 --a------ C:\SYS\WINDOWS\system32\drivers\mbam.sys
2008-08-06 21:12 . 08-08-06 23:52 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Video.url
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Music.url
2008-08-06 21:11 . 08-08-18 21:47 <DIR> d-------- C:\Program Files\Applications

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-12 16:47 --------- d-----w C:\Documents and Settings\atelier\Application Data\AdobeUM
2008-08-10 17:10 --------- d-----w C:\Documents and Settings\atelier\Application Data\LimeWire
2008-08-06 23:53 --------- d-----w C:\Program Files\TBONBin
2008-07-06 11:06 --------- d-----w C:\Program Files\LimeWire
2008-06-27 21:18 --------- d-----w C:\Documents and Settings\atelier\Application Data\XnView
2008-06-27 20:29 --------- d-----w C:\Documents and Settings\atelier\Application Data\gtk-2.0
2008-06-25 20:38 --------- d-----w C:\Program Files\TomTom HOME
2008-06-25 20:24 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-25 20:24 --------- d-----w C:\Documents and Settings\atelier\Application Data\InstallShield
2008-06-25 17:58 --------- d-----w C:\Program Files\TomTom HOME 2
2008-06-16 18:52 374 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb6334.dat
2008-06-16 18:34 555 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb8467.dat
2008-06-16 18:34 18,432 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb41.dat
2008-05-20 20:11 675,579 ----a-w C:\SYS\WINDOWS\PROGRAM.exe
2008-01-25 20:10 284 ----a-w C:\Documents and Settings\atelier\Application Data\ViewerApp.dat
2006-09-25 19:32 4,793,856 ----a-w C:\Program Files\s3a01frx.exe
2004-05-27 13:48 271 ---h--w C:\Program Files\desktop.ini
2004-05-27 13:48 21,952 ---h--w C:\Program Files\folder.htt
.

((((((((((((((((((((((((((((( snapshot@lun. 2008-08-18_22.07.26.85 )))))))))))))))))))))))))))))))))))))))))
.
+ 2003-02-20 15:39:04 73,728 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnetlib.dll
+ 2003-02-20 15:39:44 28,672 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnmpntw.dll
+ 2003-02-20 15:38:58 315,392 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadce.dll
+ 2003-02-20 15:39:08 135,168 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadco.dll
+ 2003-02-20 15:39:10 49,152 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadcs.dll
+ 2003-02-20 15:39:00 147,456 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadds.dll
+ 2003-02-20 15:39:00 512,000 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msado15.dll
+ 2003-02-20 15:39:16 163,840 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadomd.dll
+ 2003-02-20 15:39:16 184,320 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadox.dll
+ 2003-02-20 15:39:00 53,248 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadrh15.dll
+ 2003-02-20 15:39:20 225,280 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaora.dll
+ 2003-02-20 15:39:00 192,512 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaprst.dll
+ 2003-02-20 15:39:00 143,360 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdart.dll
+ 2003-02-20 15:39:00 303,104 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdasql.dll
+ 2003-02-20 15:39:30 90,112 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msjro.dll
+ 2003-02-20 15:39:30 139,264 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msorcl32.dll
+ 2003-02-20 15:39:02 221,184 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbc32.dll
+ 2003-02-20 15:39:42 24,576 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbcbcp.dll
+ 2003-02-20 15:39:02 442,368 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\oledb32.dll
+ 2006-12-22 16:55:58 213,216 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\spuninst.exe
+ 2006-12-22 16:56:06 2,290,688 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\SQLSTPCustomDLL.dll
+ 2006-12-22 16:56:06 371,424 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\updspapi.dll
+ 2003-02-20 15:39:06 503,808 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqloledb.dll
+ 2003-02-20 15:39:04 401,408 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlsrv32.dll
+ 2003-02-20 14:28:06 204,800 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlxmlx.dll
- 2006-12-25 00:12:05 7,168 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2008-08-19 19:05:28 8,192 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2006-12-25 00:12:02 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-08-19 19:05:30 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
- 2006-12-25 00:11:56 716,800 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-08-19 19:05:41 720,896 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2006-12-25 00:11:56 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-08-19 19:05:31 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2006-12-25 00:12:05 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2008-08-19 19:05:38 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
- 2006-12-25 00:12:07 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-08-19 19:05:35 303,104 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2006-12-25 00:12:03 1,290,240 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2008-08-19 19:05:38 1,294,336 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
- 2006-12-25 00:12:03 1,699,840 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-08-19 19:05:29 1,703,936 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
- 2006-12-25 00:12:03 86,016 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-08-19 19:05:40 90,112 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2006-12-25 00:12:03 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-08-19 19:05:34 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2008-08-19 19:05:31 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2006-12-25 00:12:03 64,000 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2008-08-19 19:05:31 66,560 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
- 2006-12-25 00:12:03 368,640 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-08-19 19:05:38 372,736 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-08-19 19:05:41 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2006-12-25 00:12:03 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-08-19 19:05:35 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2006-12-25 00:12:03 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-08-19 19:05:32 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2006-12-25 00:12:03 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-08-19 19:05:33 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2006-12-25 00:12:04 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-08-19 19:05:39 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2006-12-25 00:12:06 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-08-19 19:05:28 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2006-12-25 00:12:04 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-08-19 19:05:31 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2006-12-25 00:12:04 569,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-08-19 19:05:30 573,440 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2006-12-25 00:12:04 1,245,184 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-08-19 19:05:40 1,257,472 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2006-12-25 00:12:04 2,039,808 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-08-19 19:05:32 2,052,096 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
- 2006-12-25 00:12:05 1,335,296 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
+ 2008-08-19 19:05:37 1,339,392 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
- 2006-12-25 00:12:03 1,216,512 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:05:43 1,224,704 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:06:24 61,440 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_643b97a4\CustomMarshalers.dll
+ 2008-08-19 19:08:49 3,379,200 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_9e9c4ca6\mscorlib.dll
+ 2008-08-19 19:08:05 1,470,464 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_3932d236\System.Design.dll
+ 2008-08-19 19:06:32 90,112 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_1f4249f9\System.Drawing.Design.dll
+ 2008-08-19 19:08:18 835,584 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_087bb5c5\System.Drawing.dll
+ 2008-08-19 19:06:56 3,014,656 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_3fb9996d\System.Windows.Forms.dll
+ 2008-08-19 19:07:42 2,088,960 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_0051f7f8\System.Xml.dll
+ 2008-08-19 19:06:21 1,953,792 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_3b4f087f\System.dll
+ 2005-01-12 19:39:50 138,000 ------w C:\SYS\WINDOWS\Driver Cache\i386\faxui.dll
+ 2004-12-02 13:00:00 116,400 ------w C:\SYS\WINDOWS\Driver Cache\i386\ftdisk.sys
+ 2004-12-02 12:59:18 85,888 ------w C:\SYS\WINDOWS\Driver Cache\i386\halmacpi.dll
- 2004-03-24 02:17:00 742,160 ------w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
+ 2007-04-16 12:44:08 712,976 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
- 2004-03-24 02:17:00 497,936 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
+ 2005-01-13 09:09:38 483,600 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
- 2004-02-25 23:55:31 1,699,904 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
+ 2007-03-05 15:51:49 1,714,496 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
- 2004-02-25 23:55:48 1,699,264 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
+ 2007-03-05 15:52:06 1,713,536 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
- 2004-02-25 23:55:51 1,720,064 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
+ 2007-03-05 15:52:05 1,735,808 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
- 2004-03-11 02:37:30 1,726,032 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
+ 2007-03-05 15:51:49 1,690,880 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
- 2004-03-11 02:37:49 1,720,368 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
+ 2008-03-19 09:26:34 1,644,080 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
- 2003-09-25 18:08:48 243,984 ------w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
+ 2007-03-13 09:44:49 245,520 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
- 2003-06-19 11:05:04 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2005-04-15 01:08:24 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2008-08-19 19:02:02 32,768 ----a-r C:\SYS\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\icon.exe
+ 2003-02-28 14:35:26 6,550 ----a-w C:\SYS\WINDOWS\jautoexp.dat
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\7BZ5Z9J3.DAT
+ 2008-08-19 19:06:44 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\HRPZXJ1F.DAT
+ 2008-08-19 19:06:37 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\JRZPRZNN.DAT
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\SKZV7P75.DAT
+ 2008-08-19 19:06:39 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\TF17B1JX.DAT
- 2003-02-20 18:19:32 253,952 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2004-07-14 23:49:16 258,048 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2003-02-20 18:19:34 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2004-07-14 23:49:18 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
- 2003-02-20 18:19:38 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2004-07-14 23:49:26 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
- 2003-02-20 18:19:36 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2004-07-14 23:49:22 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2003-02-20 18:09:08 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2004-07-14 22:32:22 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2003-02-21 09:20:44 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2004-07-15 09:23:28 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
- 2003-02-21 09:21:00 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2004-07-15 09:23:44 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
- 2003-02-20 18:06:20 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2004-07-14 22:24:30 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-10-08 12:30:14 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
- 2003-02-16 10:02:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
+ 2004-05-04 09:53:40 1,645,320 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
- 2003-02-21 06:24:38 7,168 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2004-07-15 12:31:00 8,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
- 2003-02-21 06:24:40 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2004-07-15 12:31:04 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
- 2003-02-20 18:09:40 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2004-07-14 22:35:30 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
- 2003-02-21 06:26:36 716,800 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2004-07-15 12:28:58 720,896 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
- 2003-02-21 06:26:38 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2004-07-15 12:28:56 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
- 2003-02-20 18:09:12 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2004-07-14 22:32:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
- 2003-02-20 18:09:12 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2004-07-14 22:32:46 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
- 2003-02-20 18:06:32 311,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2004-07-14 22:25:06 315,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2003-02-20 18:09:16 98,304 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2004-07-14 22:33:04 102,400 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2003-02-21 06:26:34 2,088,960 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2004-07-15 12:29:02 2,138,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2003-02-20 18:09:18 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2004-07-14 22:33:22 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
- 2003-02-20 18:09:18 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2004-07-14 22:33:24 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
- 2003-02-20 18:07:34 2,494,464 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2004-07-14 22:26:52 2,510,848 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2003-02-20 18:08:32 2,482,176 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-07-14 22:28:34 2,502,656 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-08-10 14:20:00 106,496 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
- 2003-02-20 18:09:30 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2004-07-14 22:34:50 94,208 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
- 2003-02-21 06:26:46 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2004-07-15 12:28:48 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
- 2003-02-20 18:09:34 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2004-07-14 22:35:04 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
- 2003-02-21 06:26:38 1,290,240 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2004-07-15 12:32:00 1,294,336 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
- 2003-02-21 06:25:42 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2004-07-15 12:31:14 303,104 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
- 2003-02-21 06:26:42 1,699,840 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2004-07-15 12:29:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
- 2003-02-21 06:26:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2004-07-15 12:28:54 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
- 2003-02-21 06:26:46 1,216,512 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2004-07-15 12:31:16 1,224,704 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2003-02-21 06:26:50 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2004-07-15 12:28:58 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
- 2003-02-21 06:26:50 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2004-07-15 12:28:56 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
- 2003-02-20 18:09:36 64,000 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2004-07-14 22:35:12 66,560 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
- 2003-02-21 06:26:52 368,640 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2004-07-15 12:31:58 372,736 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
- 2003-02-21 06:26:54 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2004-07-15 12:31:12 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
- 2003-02-21 06:26:56 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2004-07-15 12:28:58 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
- 2003-02-21 06:26:56 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2004-07-15 12:31:54 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
- 2003-02-21 06:26:58 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2004-07-15 12:28:52 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2003-02-21 06:27:00 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2004-07-15 12:28:54 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
- 2003-02-21 06:27:02 1,245,184 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2004-07-15 12:29:00 1,257,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2003-02-21 06:27:06 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2004-07-15 12:28:58 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
- 2003-02-21 06:24:18 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2004-07-15 12:28:52 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
- 2003-02-21 06:27:06 569,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2004-07-15 12:31:16 573,440 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
- 2003-02-21 06:27:08 2,039,808 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2004-07-15 12:32:02 2,052,096 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
- 2003-02-21 06:27:10 1,335,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-07-15 12:29:00 1,339,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-06-22 11:51:38 53,248 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
- 2003-02-21 09:20:38 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2004-07-15 09:23:20 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
- 2003-02-21 04:04:18 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2004-07-15 06:15:14 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
- 2003-02-20 19:10:40 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2004-07-15 00:11:56 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
- 1999-12-07 12:00:00 38,160 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
- 1999-12-07 12:00:00 51,984 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
- 1999-12-07 12:00:00 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2003-09-20 04:53:04 64,512 ----a-w C:\SYS\WINDOWS\msiinst.tmp\msiexec.exe
+ 2004-06-18 12:40:50 33,280 ----a-w C:\SYS\WINDOWS\muninst.exe
+ 2003-02-28 16:26:30 46,352 ----a-w C:\SYS\WINDOWS\setdebug.exe
- 2003-06-19 11:05:04 125,712 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
+ 2005-04-08 11:54:34 130,832 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
- 2003-06-19 11:05:04 133,904 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
+ 2005-04-08 11:54:32 134,928 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
- 2003-06-19 11:05:04 62,736 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
+ 2005-01-13 09:09:48 63,760 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
- 2004-03-24 02:17:00 388,368 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
+ 2005-04-21 08:08:44 401,168 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
- 2003-06-19 11:05:04 55,056 ------w C:\SYS\WINDOWS\system32\authz.dll
+ 2005-02-04 05:34:04 55,568 ------w C:\SYS\WINDOWS\system32\authz.dll
- 2003-06-19 11:05:04 576,272 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
+ 2003-12-10 02:47:36 579,856 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
- 2004-03-24 02:17:02 42,256 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2004-10-05 08:43:30 362,496 ------w C:\SYS\WINDOWS\system32\BITS\qmgr.dll
+ 2004-10-05 08:43:28 7,680 ------w C:\SYS\WINDOWS\system32\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 ------w C:\SYS\WINDOWS\system32\bitsprx3.dll
- 2004-03-23 17:17:02 69,904 ----a-w C:\SYS\WINDOWS\system32\browser.dll
+ 2005-04-08 11:54:32 71,440 ----a-w C:\SYS\WINDOWS\system32\browser.dll
- 2004-01-21 14:21:08 1,026,048 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
+ 2005-01-12 19:39:46 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
- 2004-03-11 21:29:22 169,232 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
+ 2005-09-05 08:18:46 165,648 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
- 2004-03-11 21:29:23 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
- 2002-08-29 05:14:40 142,336 ----a-w C:\SYS\WINDOWS\system32\cdfview.dll
+ 2008-06-20 08:59:26 143,360 ----a-w C:\SYS\WINDOWS\system32\CDFVIEW.DLL
- 2003-06-19 11:05:04 18,432 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
+ 2007-07-30 17:19:20 92,504 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
- 2003-06-19 11:05:04 2,531,088 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
+ 2005-08-30 09:29:42 2,532,112 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
- 2003-06-19 11:05:04 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
+ 2003-12-10 02:47:42 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
- 1999-12-07 12:00:00 68,368 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
+ 2005-01-12 19:39:48 68,880 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
- 2004-03-11 21:29:23 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
- 2004-03-11 21:29:21 552,720 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
- 1999-12-07 12:00:00 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
+ 2003-02-28 16:26:26 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
- 2003-09-21 00:45:05 236,304 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
+ 2004-11-02 22:48:18 236,816 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
- 2004-03-11 21:29:23 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
+ 2005-09-05 08:18:46 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
- 2004-03-11 21:29:23 198,416 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
+ 2005-09-05 08:18:46 197,904 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
- 2002-08-29 05:14:40 529,680 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
+ 2006-08-28 08:44:10 530,192 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
- 2004-03-11 21:29:23 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
+ 2005-09-05 08:18:46 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
- 2004-03-11 21:29:24 1,467,664 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
- 2004-03-11 21:29:24 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
+ 2005-09-05 08:18:48 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
- 2004-03-24 02:17:00 543,504 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 ----a-w C:\SYS\WINDOWS\system32\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 ----a-w C:\SYS\WINDOWS\system32\CRYPTDLG.DLL
- 2004-03-24 02:17:01 61,200 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
+ 2005-04-08 11:54:34 63,760 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
- 2004-03-24 02:17:01 76,048 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
+ 2005-01-12 19:39:46 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
- 2003-06-19 11:05:04 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
+ 2005-01-13 09:09:50 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
- 1999-12-07 12:00:00 1,133,840 ----a-w C:\SYS\WINDOWS\system32\danim.dll
+ 2008-04-20 22:03:58 1,054,208 ----a-w C:\SYS\WINDOWS\system32\DANIM.DLL
- 2003-02-20 15:39:04 73,728 ----a-w C:\SYS\WINDOWS\system32\dbnetlib.dll
+ 2006-12-22 16:55:42 73,728 ----a-w C:\SYS\WINDOWS\system32\DBnetlib.dll
- 2003-02-20 15:39:44 28,672 ----a-w C:\SYS\WINDOWS\system32\dbnmpntw.dll
+ 2006-12-22 16:55:42 28,672 ----a-w C:\SYS\WINDOWS\system32\DBnmpntw.dll
- 2003-06-19 11:05:04 92,944 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2006-05-19 09:18:24 89,872 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2005-01-12 19:39:48 248,080 -c----w C:\SYS\WINDOWS\system32\dllcache\adsiis.dll
+ 2005-04-08 11:54:34 130,832 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldp.dll
+ 2005-04-08 11:54:32 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldpc.dll
+ 2005-01-13 09:09:48 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\adsmsext.dll
- 2004-03-24 02:17:00 388,368 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2005-04-21 08:08:44 401,168 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2008-05-08 08:38:06 119,152 -c----w C:\SYS\WINDOWS\system32\dllcache\afd.sys
- 1999-12-07 12:00:00 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
- 1999-12-07 12:00:00 51,984 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
- 1999-12-07 12:00:00 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2005-04-08 11:54:36 356,624 -c----w C:\SYS\WINDOWS\system32\dllcache\ASP.DLL
+ 2005-02-04 05:34:04 55,568 -c----w C:\SYS\WINDOWS\system32\dllcache\authz.dll
+ 2003-12-10 02:47:36 579,856 -c----w C:\SYS\WINDOWS\system32\dllcache\autochk.exe
- 2004-03-24 02:17:02 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2004-10-05 08:43:28 7,680 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx3.dll
- 2004-03-24 02:17:01 69,904 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
+ 2005-04-08 11:54:32 71,440 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
- 2004-01-21 14:21:08 1,026,048 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
+ 2005-01-12 19:39:46 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
- 2004-03-24 02:17:02 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
+ 2005-01-12 19:39:48 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
- 2004-03-11 21:29:22 169,232 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
+ 2005-09-05 08:18:46 165,648 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
- 2004-03-11 21:29:23 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-04-08 11:51:14 63,248 -c----w C:\SYS\WINDOWS\system32\dllcache\cdfs.sys
- 2002-08-29 05:14:40 142,336 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdfview.dll
+ 2008-06-20 08:59:26 143,360 -c--a-w C:\SYS\WINDOWS\system32\dllcache\CDFVIEW.DLL
+ 2007-07-30 17:19:20 92,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdm.dll
+ 2005-08-30 09:29:42 2,532,112 -c----w C:\SYS\WINDOWS\system32\dllcache\cdosys.dll
+ 2003-12-10 02:47:42 13,584 -c----w C:\SYS\WINDOWS\system32\dllcache\chkdsk.exe
- 1999-12-07 12:00:00 68,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
+ 2005-01-12 19:39:48 68,880 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
- 2004-03-11 21:29:23 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
- 2004-03-11 21:29:21 552,720 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2004-12-02 16:38:18 237,840 -c----w C:\SYS\WINDOWS\system32\dllcache\ClusCfg.exe
+ 2004-12-02 16:37:06 693,520 -c----w C:\SYS\WINDOWS\system32\dllcache\clussvc.exe
- 2003-09-21 00:45:05 236,304 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
+ 2004-11-02 22:48:18 236,816 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
- 2004-03-11 21:29:23 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
+ 2005-09-05 08:18:46 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
- 2004-03-11 21:29:23 198,416 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
+ 2005-09-05 08:18:46 197,904 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
- 2002-08-29 05:14:40 529,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
+ 2006-08-28 08:44:10 530,192 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
- 2004-03-11 21:29:23 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
+ 2005-09-05 08:18:46 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
- 2004-03-11 21:29:23 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
+ 2005-09-05 08:18:48 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
- 2004-03-11 21:29:24 1,467,664 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
- 2004-03-11 21:29:24 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
+ 2005-09-05 08:18:48 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
- 2004-03-24 02:17:00 543,504 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
- 2004-03-24 02:17:01 61,200 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
+ 2005-04-08 11:54:34 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
- 2004-03-24 02:17:01 76,048 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-12 19:39:46 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-13 09:09:50 35,088 -c----w C:\SYS\WINDOWS\system32\dllcache\csrsrv.dll
- 1999-12-07 12:00:00 1,133,840 -c--a-w C:\SYS\WINDOWS\system32\dllcache\danim.dll
+ 2008-04-20 22:03:58 1,054,208 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DANIM.DLL
- 2004-03-01 19:58:18 561,424 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2008-03-27 07:00:14 554,008 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2006-12-22 16:55:42 73,728 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnetlib.dll
+ 2006-12-22 16:55:42 28,672 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnmpntw.dll
+ 2006-05-19 09:18:24 89,872 -c----w C:\SYS\WINDOWS\system32\dllcache\dhcpcsvc.dll
- 2002-08-29 05:06:02 76,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\directdb.dll
+ 2008-06-25 13:35:50 75,776 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DIRECTDB.DLL
- 2004-03-24 02:17:00 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
+ 2008-06-25 09:41:54 137,488 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
- 2004-03-24 02:17:01 92,432 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
+ 2008-02-15 13:24:10 96,528 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
- 2002-12-11 23:14:32 217,600 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
+ 2004-04-14 12:56:46 219,648 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
- 2002-12-11 23:14:32 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-04-12 21:11:26 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-12-09 18:52:54 114,960 -c----w C:\SYS\WINDOWS\system32\dllcache\dsexts.dll
+ 2005-01-12 19:39:50 299,792 -c----w C:\SYS\WINDOWS\system32\dllcache\dsprop.dll
- 2004-02-19 22:03:09 1,816,552 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-03-06 05:07:31 1,842,672 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-08-22 02:05:26 498,742 -c----w C:\SYS\WINDOWS\system32\dllcache\dxmasf.dll
- 2002-08-29 05:14:40 351,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2008-06-20 07:53:28 351,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTMSFT.DLL
- 2002-08-29 05:14:40 187,392 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtrans.dll
+ 2008-06-20 07:53:26 192,512 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTRANS.DLL
- 2004-03-11 21:29:22 239,888 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
+ 2008-07-10 10:00:14 251,152 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
- 2004-03-24 02:17:01 47,888 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-04-08 11:54:32 49,424 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-07-19 10:44:44 142,288 -c----w C:\SYS\WINDOWS\system32\dllcache\fastfat.sys
+ 2005-01-12 19:39:50 138,000 -c----w C:\SYS\WINDOWS\system32\dllcache\faxui.dll
+ 2005-02-22 07:05:10 18,192 -c----w C:\SYS\WINDOWS\system32\dllcache\fltlib.dll
+ 2004-12-02 13:19:44 22,800 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmc.exe
+ 2005-04-14 06:59:02 136,880 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmgr.sys
- 1999-12-07 12:00:00 78,096 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
+ 2005-11-24 14:54:16 79,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
- 1999-12-07 12:00:00 38,672 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-11-06 14:38:16 47,376 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-12-02 13:00:00 116,400 -c----w C:\SYS\WINDOWS\system32\dllcache\ftdisk.sys
- 2004-03-23 16:17:02 242,448 -c----w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2008-02-19 17:08:58 236,304 -c--a-w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2005-01-12 19:39:50 305,424 -c----w C:\SYS\WINDOWS\system32\dllcache\gpedit.dll
- 1999-12-07 12:00:00 41,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2004-12-09 18:10:08 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2005-01-12 19:39:50 163,088 -c----w C:\SYS\WINDOWS\system32\dllcache\h323msp.dll
+ 2005-04-15 01:08:24 10,752 -c----w C:\SYS\WINDOWS\system32\dllcache\hh.exe
+ 2005-04-21 14:16:56 38,912 -c----w C:\SYS\WINDOWS\system32\dllcache\hhsetup.dll
+ 2006-07-21 15:08:54 72,704 -c----w C:\SYS\WINDOWS\system32\dllcache\hlink.dll
+ 2005-01-12 19:39:52 247,056 -c----w C:\SYS\WINDOWS\system32\dllcache\httpext.dll
+ 2005-01-12 19:39:52 576,784 -c----w C:\SYS\WINDOWS\system32\dllcache\hypertrm.dll
+ 2005-06-29 07:30:56 246,032 -c----w C:\SYS\WINDOWS\system32\dllcache\icm32.dll
- 2002-08-29 05:14:40 231,424 -c--a-w C:\SYS\WINDOWS\system32\dllcache\iepeers.dll
+ 2008-06-20 07:53:34 236,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\IEPEERS.DLL
+ 2005-01-12 19:39:52 122,640 -c----w C:\SYS\WINDOWS\system32\dllcache\iischema.dll
+ 2005-02-22 08:42:14 57,104 -c----w C:\SYS\WINDOWS\system32\dllcache\iisext.dll
- 2002-08-29 05:06:02 593,408 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetcomm.dll
+ 2008-06-25 13:35:58 601,088 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETCOMM.DLL
- 2002-08-29 05:06:02 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetres.dll
+ 2008-06-25 13:35:54 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETRES.DLL
- 2002-08-29 05:14:40 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inseng.dll
+ 2008-06-20 07:53:38 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INSENG.DLL
+ 2006-05-19 09:18:24 68,368 -c----w C:\SYS\WINDOWS\system32\dllcache\iphlpapi.dll
+ 2004-08-11 22:42:40 67,344 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnat.sys
- 2004-03-24 02:17:02 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
+ 2005-01-12 19:39:52 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
- 1999-12-07 12:00:00 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
+ 2003-04-21 18:19:44 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
- 2003-08-27 13:13:52 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
+ 2005-04-21 14:16:56 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
- 2004-06-22 22:42:32 123,392 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2005-04-21 14:16:56 128,000 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2007-08-17 06:48:22 39,184 -c----w C:\SYS\WINDOWS\system32\dllcache\jpeg2x32.dll
- 2001-06-26 14:36:02 589,874 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
+ 2008-01-05 01:05:56 458,752 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
- 2002-08-29 05:14:40 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jsproxy.dll
+ 2008-06-20 07:53:56 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\JSPROXY.DLL
- 2004-03-24 02:17:02 143,632 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
+ 2005-06-15 04:33:18 149,776 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
- 2004-03-11 02:37:09 210,192 -c----w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
+ 2005-06-15 04:22:48 208,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
- 2004-03-24 02:17:00 742,160 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-04-16 12:44:08 712,976 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-05-11 07:41:54 524,560 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakimg.exe
+ 2007-05-11 07:42:16 73,488 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakprv.exe
- 1999-12-07 12:00:00 16,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-09-23 11:03:25 17,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-01-13 16:19:18 85,264 -c----w C:\SYS\WINDOWS\system32\dllcache\LLSSRV.EXE
+ 2005-04-08 11:54:32 266,000 -c----w C:\SYS\WINDOWS\system32\dllcache\localspl.dll
- 2004-02-25 23:59:07 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
+ 2004-12-19 22:30:54 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
- 2004-03-24 02:17:02 37,136 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
+ 2007-03-06 11:17:46 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
- 1999-12-07 12:00:00 924,432 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 927,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 1,011,774 -c----w C:\SYS\WINDOWS\system32\dllcache\mfc42u.dll
+ 2006-07-06 09:52:40 613,648 -c----w C:\SYS\WINDOWS\system32\dllcache\mmc.exe
- 2004-02-10 19:47:54 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
+ 2005-08-16 08:40:58 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
- 2004-03-24 02:17:02 54,544 -c----w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-04-16 12:44:08 54,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-10-17 07:22:06 292,112 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1repl.dll
+ 2007-10-16 13:51:24 14,096 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1sync.exe
+ 2007-10-16 13:51:26 77,712 -c----w C:\SYS\WINDOWS\system32\dllcache\mqac.sys
+ 2007-10-17 07:22:06 218,384 -c----w C:\SYS\WINDOWS\system32\dllcache\mqads.dll
+ 2007-10-16 13:51:26 25,360 -c----w C:\SYS\WINDOWS\system32\dllcache\mqbkup.exe
+ 2007-10-17 07:22:06 29,456 -c----w C:\SYS\WINDOWS\system32\dllcache\mqcertui.dll
+ 2007-10-17 07:22:06 50,448 -c----w C:\SYS\WINDOWS\system32\dllcache\mqclus.dll
+ 2007-10-17 07:22:06 29,968 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdbodbc.dll
+ 2007-10-17 07:22:06 77,072 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdscli.dll
+ 2007-10-17 07:22:06 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdssrv.dll
- 1999-12-07 12:00:00 87,312 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr.dll
+ 2007-10-17 07:22:06 96,016 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr.dll
+ 2007-10-16 13:51:28 98,064 -c----w C:\SYS\WINDOWS\system32\dllcache\mqmig.exe
+ 2007-10-17 07:22:06 267,536 -c----w C:\SYS\WINDOWS\system32\dllcache\mqmigrat.dll
+ 2007-10
0
Kartman
 
Bonjour, Nouveau Scan Combofix:
ComboFix 08-08-19.02 - atelier 2008-08-20 18:26:42.2 - NTFSx86
Microsoft Windows 2000 Professionnel 5.0.2195.4.1252.1.1033.18.523 [GMT 2:00]
Running from: C:\Documents and Settings\atelier\Desktop\ComboFix.exe

[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\SYS\WINDOWS\system32\_000254_.tmp.dll
C:\SYS\WINDOWS\system32\_000255_.tmp.dll
C:\SYS\WINDOWS\system32\_000258_.tmp.dll
C:\SYS\WINDOWS\system32\_000261_.tmp.dll
C:\SYS\WINDOWS\system32\_000262_.tmp.dll
C:\SYS\WINDOWS\system32\_000263_.tmp.dll
C:\SYS\WINDOWS\system32\_000264_.tmp.dll
C:\SYS\WINDOWS\system32\_000265_.tmp.dll
C:\SYS\WINDOWS\system32\_000269_.tmp.dll
C:\SYS\WINDOWS\system32\_000270_.tmp.dll
C:\SYS\WINDOWS\system32\_000271_.tmp.dll
C:\SYS\WINDOWS\system32\_000272_.tmp.dll
C:\SYS\WINDOWS\system32\_000273_.tmp.dll
C:\SYS\WINDOWS\system32\_000274_.tmp.dll
C:\SYS\WINDOWS\system32\_000275_.tmp.dll
.
---- Previous Run -------
.
C:\07062004.exe
C:\Documents and Settings\atelier\Cookies\atelier@_cqr[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@2o7[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.ifrance[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.yieldmanager[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adnext[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ads.pointroll[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@adserver[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adv.surinter[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@apu0800.audientia[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@as1.falkag[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bestoffersnetworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bizrate[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@bluestreak[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cdiscount[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cliks[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@date.ventivmedia[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@edt02[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@esearchvision[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fastclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fnac[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@fr.msn[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@linternaute[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab58.customers.luna[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab61.customers.luna[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@news.fr.msn[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@offeroptimizer[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@paidmarketingpanel.aavalue[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@photobucket[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmv2[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmyvisites[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@projetwinx.blogspot[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@revsci[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@rueducommerce[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@server.cpmstar[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@serving-sys[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@specificclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stat.dealtime[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats1.reliablestats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stl.p.a1.traceworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tracker.affistats[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tradedoubler[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@trafiz[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tsw0[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.achetezfacile[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.pixmania[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@yahoo[2].txt
C:\Documents and Settings\atelier\My Documents\My Pictures\My Pictures.url
C:\Documents and Settings\atelier\UserData
C:\Documents and Settings\atelier\UserData\CPS3I7UF\advstNetId[1].xml
C:\Documents and Settings\atelier\UserData\CPS3I7UF\historySearchPos[1].xml
C:\Documents and Settings\atelier\UserData\index.dat
C:\Documents and Settings\atelier\UserData\MG5IEBCM\YL[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\historySitePos[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\oXMLStoreUnit[1].xml
C:\Documents and Settings\atelier\UserData\TUGM51Q3\Tdy58[1].xml
C:\Program Files\AAV
C:\Program Files\Altnet
C:\Program Files\Applications\myd.ico
C:\Program Files\Applications\mym.ico
C:\Program Files\Applications\myp.ico
C:\Program Files\Applications\myv.ico
C:\Program Files\ASpyC
C:\Program Files\Need2Find
C:\Program Files\Need2Find\bar\History\search
C:\Program Files\RXToolBar
C:\Program Files\RXToolBar\Cache\CT
C:\Program Files\RXToolBar\Cache\CTwww_laposte_net
C:\Program Files\RXToolBar\Cache\CTwww_roxio_com_
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=naruto%20narutoNC
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=windows%20mediaNC
C:\Program Files\RXToolBar\Cache\RXUpdate
C:\Program Files\RXToolBar\CacheCatalog.rx
C:\Program Files\RXToolBar\graphics\additional.gif
C:\Program Files\RXToolBar\graphics\additional_active.gif
C:\Program Files\RXToolBar\graphics\background.jpg
C:\Program Files\RXToolBar\graphics\blue_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\gray_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\thumbtack.gif
C:\Program Files\RXToolBar\graphics\thumbtack_active.gif
C:\Program Files\RXToolBar\graphics\thumbtack_click.gif
C:\Program Files\RXToolBar\HTML\content.htm
C:\Program Files\RXToolBar\HTML\main.htm
C:\Program Files\RXToolBar\rx.xml
C:\Program Files\RXToolBar\rxtoolbar.cfg
C:\Program Files\RXToolBar\rxwebsearches.xsl
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.sig
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.sig
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.Key
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.sig
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.dat
C:\Program Files\RXToolBar\sfcont.bin
C:\SYS\WINDOWS\BM2f44e4c3.txt
C:\SYS\WINDOWS\BM2f44e4c3.xml
C:\SYS\WINDOWS\cookies.ini
C:\SYS\WINDOWS\Fonts\acrsec.fon
C:\SYS\WINDOWS\Fonts\acrsecB.fon
C:\SYS\WINDOWS\Fonts\acrsecI.fon
C:\SYS\WINDOWS\pskt.ini
C:\SYS\WINDOWS\smdat32a.sys
C:\SYS\WINDOWS\smdat32m.sys
C:\SYS\WINDOWS\system32\AdCache
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449200.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449600.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_454300.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_111600.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_152400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_155300.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_164100.htm
C:\SYS\WINDOWS\system32\awttqNfC.dll
C:\SYS\WINDOWS\system32\CfNqttwa.ini
C:\SYS\WINDOWS\system32\CfNqttwa.ini2
C:\SYS\WINDOWS\system32\cpmsky-uninst.exe
C:\SYS\WINDOWS\system32\ebwxolyi.dll
C:\SYS\WINDOWS\system32\efcBuRJD.dll
C:\SYS\WINDOWS\system32\fbxyngfi.ini
C:\SYS\WINDOWS\system32\gyrkyd.dll
C:\SYS\WINDOWS\system32\hgGaxwvu.dll
C:\SYS\WINDOWS\system32\iwajmz.dll
C:\SYS\WINDOWS\system32\jdxivgjq.ini
C:\SYS\WINDOWS\system32\ldpackage.dll
C:\SYS\WINDOWS\system32\mcrh.tmp
C:\SYS\WINDOWS\system32\model.dat
C:\SYS\WINDOWS\system32\P2P Networking
C:\SYS\WINDOWS\system32\P2P Networking\P2P Networking.eng
C:\SYS\WINDOWS\system32\qjgvixdj.dll
C:\SYS\WINDOWS\system32\tcvawgtm.exe
C:\SYS\WINDOWS\system32\tqlkshoo.dll
C:\SYS\WINDOWS\system32\UpMedia
C:\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\SYS\WINDOWS\system32\wav.cpl
C:\SYS\WINDOWS\system32\wxgyfsib.dll
C:\SYS\WINDOWS\Web\default.htt

.
((((((((((((((((((((((((( Files Created from 2008-07-20 to 2008-08-20 )))))))))))))))))))))))))))))))
.

2008-08-20 18:18 . 08-08-20 18:18 <DIR> d-------- C:\SYS\WINDOWS\system32\Windows Media
2008-08-20 18:16 . 08-08-20 18:16 <DIR> d-------- C:\SYS\WINDOWS\msiinst.tmp
2008-08-20 18:16 . 08-08-20 18:17 <DIR> d--h-c--- C:\SYS\WINDOWS\$NtUpdateRollupPackUninstall$
2008-08-19 23:21 . 03-06-19 13:05 92,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\KRNL386.EXE
2008-08-19 23:21 . 02-08-29 07:14 44,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\msxml3r.dll
2008-08-19 21:08 . 08-08-19 21:08 <DIR> d--h-c--- C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$
2008-08-19 21:03 . 08-08-19 21:03 1,009 --a------ C:\SYS\WINDOWS\setup.inf
2008-08-19 21:03 . 08-08-19 21:03 283 --a------ C:\SYS\WINDOWS\setup.rpt
2008-08-19 21:01 . 08-08-19 21:01 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-08-19 19:37 . 06-07-25 07:08 840,976 -----c--- C:\SYS\WINDOWS\system32\dllcache\mmcndmgr.dll
2008-08-19 19:12 . 08-08-19 19:12 <DIR> d-------- C:\SYS\WINDOWS\system32\BITS
2008-08-18 23:26 . 08-08-18 23:26 <DIR> d-------- C:\Program Files\Tall Emu
2008-08-18 23:26 . 08-08-20 18:37 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\OnlineArmor
2008-08-18 23:26 . 08-08-19 19:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-08-18 23:26 . 08-04-17 05:22 80,584 --a------ C:\SYS\WINDOWS\system32\drivers\OADriver.sys
2008-08-18 23:26 . 08-04-17 05:22 32,456 --a------ C:\SYS\WINDOWS\system32\drivers\OAmon.sys
2008-08-18 23:26 . 08-04-17 05:22 28,872 --a------ C:\SYS\WINDOWS\system32\drivers\oanet.sys
2008-08-18 23:21 . 07-07-30 19:18 34,136 --a------ C:\SYS\WINDOWS\system32\wucltui.dll.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuaucpl.cpl.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuapi.dll.mui
2008-08-18 23:21 . 07-07-30 19:18 20,312 --a------ C:\SYS\WINDOWS\system32\wuaueng.dll.mui
2008-08-18 23:18 . 07-07-30 19:19 549,720 --a------ C:\SYS\WINDOWS\system32\wuapi.dll
2008-08-18 23:18 . 07-07-30 19:19 325,976 --a------ C:\SYS\WINDOWS\system32\wucltui.dll
2008-08-18 23:18 . 07-07-30 19:19 203,096 --a------ C:\SYS\WINDOWS\system32\wuweb.dll
2008-08-18 23:18 . 05-05-26 04:16 194,328 --a------ C:\SYS\WINDOWS\system32\wuaueng1.dll
2008-08-18 23:18 . 05-05-26 04:16 172,312 --a------ C:\SYS\WINDOWS\system32\wuauclt1.exe
2008-08-18 23:18 . 07-07-30 19:19 43,352 --a------ C:\SYS\WINDOWS\system32\wups2.dll
2008-08-18 23:18 . 07-07-30 19:18 33,624 --a------ C:\SYS\WINDOWS\system32\wups.dll
2008-08-18 22:20 . 08-08-18 22:20 <DIR> d---s---- C:\Documents and Settings\atelier\UserData
2008-08-18 20:23 . 08-08-18 20:45 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-17 15:01 38,472 --a------ C:\SYS\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-18 20:23 . 08-08-17 15:01 17,144 --a------ C:\SYS\WINDOWS\system32\drivers\mbam.sys
2008-08-06 21:12 . 08-08-06 23:52 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Video.url
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Music.url
2008-08-06 21:11 . 08-08-18 21:47 <DIR> d-------- C:\Program Files\Applications

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-12 16:47 --------- d-----w C:\Documents and Settings\atelier\Application Data\AdobeUM
2008-08-10 17:10 --------- d-----w C:\Documents and Settings\atelier\Application Data\LimeWire
2008-08-06 23:53 --------- d-----w C:\Program Files\TBONBin
2008-07-06 11:06 --------- d-----w C:\Program Files\LimeWire
2008-06-27 21:18 --------- d-----w C:\Documents and Settings\atelier\Application Data\XnView
2008-06-27 20:29 --------- d-----w C:\Documents and Settings\atelier\Application Data\gtk-2.0
2008-06-25 20:38 --------- d-----w C:\Program Files\TomTom HOME
2008-06-25 20:24 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-25 20:24 --------- d-----w C:\Documents and Settings\atelier\Application Data\InstallShield
2008-06-25 17:58 --------- d-----w C:\Program Files\TomTom HOME 2
2008-06-16 18:52 374 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb6334.dat
2008-06-16 18:34 555 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb8467.dat
2008-06-16 18:34 18,432 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb41.dat
2008-05-20 20:11 675,579 ----a-w C:\SYS\WINDOWS\PROGRAM.exe
2008-01-25 20:10 284 ----a-w C:\Documents and Settings\atelier\Application Data\ViewerApp.dat
2006-09-25 19:32 4,793,856 ----a-w C:\Program Files\s3a01frx.exe
2004-05-27 13:48 271 ---h--w C:\Program Files\desktop.ini
2004-05-27 13:48 21,952 ---h--w C:\Program Files\folder.htt
.

((((((((((((((((((((((((((((( snapshot@lun. 2008-08-18_22.07.26.85 )))))))))))))))))))))))))))))))))))))))))
.
+ 2003-02-20 15:39:04 73,728 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnetlib.dll
+ 2003-02-20 15:39:44 28,672 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnmpntw.dll
+ 2003-02-20 15:38:58 315,392 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadce.dll
+ 2003-02-20 15:39:08 135,168 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadco.dll
+ 2003-02-20 15:39:10 49,152 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadcs.dll
+ 2003-02-20 15:39:00 147,456 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadds.dll
+ 2003-02-20 15:39:00 512,000 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msado15.dll
+ 2003-02-20 15:39:16 163,840 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadomd.dll
+ 2003-02-20 15:39:16 184,320 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadox.dll
+ 2003-02-20 15:39:00 53,248 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadrh15.dll
+ 2003-02-20 15:39:20 225,280 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaora.dll
+ 2003-02-20 15:39:00 192,512 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaprst.dll
+ 2003-02-20 15:39:00 143,360 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdart.dll
+ 2003-02-20 15:39:00 303,104 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdasql.dll
+ 2003-02-20 15:39:30 90,112 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msjro.dll
+ 2003-02-20 15:39:30 139,264 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msorcl32.dll
+ 2003-02-20 15:39:02 221,184 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbc32.dll
+ 2003-02-20 15:39:42 24,576 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbcbcp.dll
+ 2003-02-20 15:39:02 442,368 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\oledb32.dll
+ 2006-12-22 16:55:58 213,216 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\spuninst.exe
+ 2006-12-22 16:56:06 2,290,688 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\SQLSTPCustomDLL.dll
+ 2006-12-22 16:56:06 371,424 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\updspapi.dll
+ 2003-02-20 15:39:06 503,808 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqloledb.dll
+ 2003-02-20 15:39:04 401,408 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlsrv32.dll
+ 2003-02-20 14:28:06 204,800 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlxmlx.dll
- 2006-12-25 00:12:05 7,168 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2008-08-19 19:05:28 8,192 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2006-12-25 00:12:02 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-08-19 19:05:30 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
- 2006-12-25 00:11:56 716,800 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-08-19 19:05:41 720,896 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2006-12-25 00:11:56 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-08-19 19:05:31 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2006-12-25 00:12:05 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2008-08-19 19:05:38 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
- 2006-12-25 00:12:07 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-08-19 19:05:35 303,104 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2006-12-25 00:12:03 1,290,240 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2008-08-19 19:05:38 1,294,336 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
- 2006-12-25 00:12:03 1,699,840 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-08-19 19:05:29 1,703,936 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
- 2006-12-25 00:12:03 86,016 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-08-19 19:05:40 90,112 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2006-12-25 00:12:03 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-08-19 19:05:34 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2008-08-19 19:05:31 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2006-12-25 00:12:03 64,000 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2008-08-19 19:05:31 66,560 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
- 2006-12-25 00:12:03 368,640 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-08-19 19:05:38 372,736 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-08-19 19:05:41 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2006-12-25 00:12:03 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-08-19 19:05:35 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2006-12-25 00:12:03 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-08-19 19:05:32 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2006-12-25 00:12:03 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-08-19 19:05:33 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2006-12-25 00:12:04 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-08-19 19:05:39 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2006-12-25 00:12:06 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-08-19 19:05:28 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2006-12-25 00:12:04 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-08-19 19:05:31 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2006-12-25 00:12:04 569,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-08-19 19:05:30 573,440 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2006-12-25 00:12:04 1,245,184 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-08-19 19:05:40 1,257,472 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2006-12-25 00:12:04 2,039,808 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-08-19 19:05:32 2,052,096 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
- 2006-12-25 00:12:05 1,335,296 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
+ 2008-08-19 19:05:37 1,339,392 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
- 2006-12-25 00:12:03 1,216,512 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:05:43 1,224,704 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:06:24 61,440 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_643b97a4\CustomMarshalers.dll
+ 2008-08-19 19:08:49 3,379,200 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_9e9c4ca6\mscorlib.dll
+ 2008-08-19 19:08:05 1,470,464 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_3932d236\System.Design.dll
+ 2008-08-19 19:06:32 90,112 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_1f4249f9\System.Drawing.Design.dll
+ 2008-08-19 19:08:18 835,584 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_087bb5c5\System.Drawing.dll
+ 2008-08-19 19:06:56 3,014,656 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_3fb9996d\System.Windows.Forms.dll
+ 2008-08-19 19:07:42 2,088,960 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_0051f7f8\System.Xml.dll
+ 2008-08-19 19:06:21 1,953,792 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_3b4f087f\System.dll
+ 2005-01-12 19:39:50 138,000 ------w C:\SYS\WINDOWS\Driver Cache\i386\faxui.dll
+ 2004-12-02 13:00:00 116,400 ------w C:\SYS\WINDOWS\Driver Cache\i386\ftdisk.sys
+ 2004-12-02 12:59:18 85,888 ------w C:\SYS\WINDOWS\Driver Cache\i386\halmacpi.dll
- 2004-03-24 02:17:00 742,160 ------w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
+ 2007-04-16 12:44:08 712,976 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
- 2004-03-24 02:17:00 497,936 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
+ 2005-01-13 09:09:38 483,600 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
- 2004-02-25 23:55:31 1,699,904 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
+ 2007-03-05 15:51:49 1,714,496 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
- 2004-02-25 23:55:48 1,699,264 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
+ 2007-03-05 15:52:06 1,713,536 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
- 2004-02-25 23:55:51 1,720,064 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
+ 2007-03-05 15:52:05 1,735,808 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
- 2004-03-11 02:37:30 1,726,032 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
+ 2007-03-05 15:51:49 1,690,880 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
- 2004-03-11 02:37:49 1,720,368 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
+ 2008-03-19 09:26:34 1,644,080 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
- 2003-09-25 18:08:48 243,984 ------w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
+ 2007-03-13 09:44:49 245,520 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
- 2003-06-19 11:05:04 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2005-04-15 01:08:24 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2008-08-19 19:02:02 32,768 ----a-r C:\SYS\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\icon.exe
+ 2003-02-28 14:35:26 6,550 ----a-w C:\SYS\WINDOWS\jautoexp.dat
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\7BZ5Z9J3.DAT
+ 2008-08-19 19:06:44 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\HRPZXJ1F.DAT
+ 2008-08-19 19:06:37 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\JRZPRZNN.DAT
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\SKZV7P75.DAT
+ 2008-08-19 19:06:39 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\TF17B1JX.DAT
- 2003-02-20 18:19:32 253,952 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2004-07-14 23:49:16 258,048 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2003-02-20 18:19:34 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2004-07-14 23:49:18 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
- 2003-02-20 18:19:38 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2004-07-14 23:49:26 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
- 2003-02-20 18:19:36 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2004-07-14 23:49:22 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2003-02-20 18:09:08 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2004-07-14 22:32:22 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2003-02-21 09:20:44 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2004-07-15 09:23:28 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
- 2003-02-21 09:21:00 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2004-07-15 09:23:44 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
- 2003-02-20 18:06:20 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2004-07-14 22:24:30 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-10-08 12:30:14 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
- 2003-02-16 10:02:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
+ 2004-05-04 09:53:40 1,645,320 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
- 2003-02-21 06:24:38 7,168 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2004-07-15 12:31:00 8,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
- 2003-02-21 06:24:40 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2004-07-15 12:31:04 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
- 2003-02-20 18:09:40 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2004-07-14 22:35:30 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
- 2003-02-21 06:26:36 716,800 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2004-07-15 12:28:58 720,896 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
- 2003-02-21 06:26:38 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2004-07-15 12:28:56 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
- 2003-02-20 18:09:12 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2004-07-14 22:32:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
- 2003-02-20 18:09:12 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2004-07-14 22:32:46 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
- 2003-02-20 18:06:32 311,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2004-07-14 22:25:06 315,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2003-02-20 18:09:16 98,304 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2004-07-14 22:33:04 102,400 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2003-02-21 06:26:34 2,088,960 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2004-07-15 12:29:02 2,138,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2003-02-20 18:09:18 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2004-07-14 22:33:22 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
- 2003-02-20 18:09:18 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2004-07-14 22:33:24 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
- 2003-02-20 18:07:34 2,494,464 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2004-07-14 22:26:52 2,510,848 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2003-02-20 18:08:32 2,482,176 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-07-14 22:28:34 2,502,656 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-08-10 14:20:00 106,496 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
- 2003-02-20 18:09:30 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2004-07-14 22:34:50 94,208 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
- 2003-02-21 06:26:46 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2004-07-15 12:28:48 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
- 2003-02-20 18:09:34 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2004-07-14 22:35:04 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
- 2003-02-21 06:26:38 1,290,240 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2004-07-15 12:32:00 1,294,336 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
- 2003-02-21 06:25:42 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2004-07-15 12:31:14 303,104 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
- 2003-02-21 06:26:42 1,699,840 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2004-07-15 12:29:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
- 2003-02-21 06:26:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2004-07-15 12:28:54 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
- 2003-02-21 06:26:46 1,216,512 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2004-07-15 12:31:16 1,224,704 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2003-02-21 06:26:50 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2004-07-15 12:28:58 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
- 2003-02-21 06:26:50 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2004-07-15 12:28:56 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
- 2003-02-20 18:09:36 64,000 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2004-07-14 22:35:12 66,560 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
- 2003-02-21 06:26:52 368,640 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2004-07-15 12:31:58 372,736 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
- 2003-02-21 06:26:54 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2004-07-15 12:31:12 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
- 2003-02-21 06:26:56 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2004-07-15 12:28:58 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
- 2003-02-21 06:26:56 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2004-07-15 12:31:54 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
- 2003-02-21 06:26:58 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2004-07-15 12:28:52 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2003-02-21 06:27:00 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2004-07-15 12:28:54 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
- 2003-02-21 06:27:02 1,245,184 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2004-07-15 12:29:00 1,257,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2003-02-21 06:27:06 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2004-07-15 12:28:58 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
- 2003-02-21 06:24:18 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2004-07-15 12:28:52 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
- 2003-02-21 06:27:06 569,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2004-07-15 12:31:16 573,440 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
- 2003-02-21 06:27:08 2,039,808 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2004-07-15 12:32:02 2,052,096 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
- 2003-02-21 06:27:10 1,335,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-07-15 12:29:00 1,339,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-06-22 11:51:38 53,248 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
- 2003-02-21 09:20:38 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2004-07-15 09:23:20 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
- 2003-02-21 04:04:18 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2004-07-15 06:15:14 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
- 2003-02-20 19:10:40 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2004-07-15 00:11:56 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
- 1999-12-07 12:00:00 38,160 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
- 1999-12-07 12:00:00 51,984 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
- 1999-12-07 12:00:00 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2003-09-20 04:53:04 64,512 ----a-w C:\SYS\WINDOWS\msiinst.tmp\msiexec.exe
+ 2004-06-18 12:40:50 33,280 ----a-w C:\SYS\WINDOWS\muninst.exe
+ 2003-02-28 16:26:30 46,352 ----a-w C:\SYS\WINDOWS\setdebug.exe
- 2003-06-19 11:05:04 125,712 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
+ 2005-04-08 11:54:34 130,832 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
- 2003-06-19 11:05:04 133,904 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
+ 2005-04-08 11:54:32 134,928 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
- 2003-06-19 11:05:04 62,736 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
+ 2005-01-13 09:09:48 63,760 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
- 2004-03-24 02:17:00 388,368 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
+ 2005-04-21 08:08:44 401,168 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
- 2003-06-19 11:05:04 55,056 ------w C:\SYS\WINDOWS\system32\authz.dll
+ 2005-02-04 05:34:04 55,568 ------w C:\SYS\WINDOWS\system32\authz.dll
- 2003-06-19 11:05:04 576,272 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
+ 2003-12-10 02:47:36 579,856 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
- 2004-03-24 02:17:02 42,256 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2004-10-05 08:43:30 362,496 ------w C:\SYS\WINDOWS\system32\BITS\qmgr.dll
+ 2004-10-05 08:43:28 7,680 ------w C:\SYS\WINDOWS\system32\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 ------w C:\SYS\WINDOWS\system32\bitsprx3.dll
- 2004-03-23 17:17:02 69,904 ----a-w C:\SYS\WINDOWS\system32\browser.dll
+ 2005-04-08 11:54:32 71,440 ----a-w C:\SYS\WINDOWS\system32\browser.dll
- 2004-01-21 14:21:08 1,026,048 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
+ 2005-01-12 19:39:46 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
- 2004-03-11 21:29:22 169,232 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
+ 2005-09-05 08:18:46 165,648 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
- 2004-03-11 21:29:23 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
- 2002-08-29 05:14:40 142,336 ----a-w C:\SYS\WINDOWS\system32\cdfview.dll
+ 2008-06-20 08:59:26 143,360 ----a-w C:\SYS\WINDOWS\system32\CDFVIEW.DLL
- 2003-06-19 11:05:04 18,432 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
+ 2007-07-30 17:19:20 92,504 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
- 2003-06-19 11:05:04 2,531,088 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
+ 2005-08-30 09:29:42 2,532,112 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
- 2003-06-19 11:05:04 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
+ 2003-12-10 02:47:42 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
- 1999-12-07 12:00:00 68,368 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
+ 2005-01-12 19:39:48 68,880 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
- 2004-03-11 21:29:23 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
- 2004-03-11 21:29:21 552,720 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
- 1999-12-07 12:00:00 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
+ 2003-02-28 16:26:26 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
- 2003-09-21 00:45:05 236,304 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
+ 2004-11-02 22:48:18 236,816 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
- 2004-03-11 21:29:23 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
+ 2005-09-05 08:18:46 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
- 2004-03-11 21:29:23 198,416 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
+ 2005-09-05 08:18:46 197,904 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
- 2002-08-29 05:14:40 529,680 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
+ 2006-08-28 08:44:10 530,192 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
- 2004-03-11 21:29:23 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
+ 2005-09-05 08:18:46 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
- 2004-03-11 21:29:24 1,467,664 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
- 2004-03-11 21:29:24 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
+ 2005-09-05 08:18:48 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
- 2004-03-24 02:17:00 543,504 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 ----a-w C:\SYS\WINDOWS\system32\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 ----a-w C:\SYS\WINDOWS\system32\CRYPTDLG.DLL
- 2004-03-24 02:17:01 61,200 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
+ 2005-04-08 11:54:34 63,760 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
- 2004-03-24 02:17:01 76,048 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
+ 2005-01-12 19:39:46 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
- 2003-06-19 11:05:04 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
+ 2005-01-13 09:09:50 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
- 1999-12-07 12:00:00 1,133,840 ----a-w C:\SYS\WINDOWS\system32\danim.dll
+ 2008-04-20 22:03:58 1,054,208 ----a-w C:\SYS\WINDOWS\system32\DANIM.DLL
- 2003-02-20 15:39:04 73,728 ----a-w C:\SYS\WINDOWS\system32\dbnetlib.dll
+ 2006-12-22 16:55:42 73,728 ----a-w C:\SYS\WINDOWS\system32\DBnetlib.dll
- 2003-02-20 15:39:44 28,672 ----a-w C:\SYS\WINDOWS\system32\dbnmpntw.dll
+ 2006-12-22 16:55:42 28,672 ----a-w C:\SYS\WINDOWS\system32\DBnmpntw.dll
- 2003-06-19 11:05:04 92,944 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2006-05-19 09:18:24 89,872 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2005-01-12 19:39:48 248,080 -c----w C:\SYS\WINDOWS\system32\dllcache\adsiis.dll
+ 2005-04-08 11:54:34 130,832 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldp.dll
+ 2005-04-08 11:54:32 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldpc.dll
+ 2005-01-13 09:09:48 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\adsmsext.dll
- 2004-03-24 02:17:00 388,368 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2005-04-21 08:08:44 401,168 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2008-05-08 08:38:06 119,152 -c----w C:\SYS\WINDOWS\system32\dllcache\afd.sys
- 1999-12-07 12:00:00 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
- 1999-12-07 12:00:00 51,984 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
- 1999-12-07 12:00:00 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2005-04-08 11:54:36 356,624 -c----w C:\SYS\WINDOWS\system32\dllcache\ASP.DLL
+ 2005-02-04 05:34:04 55,568 -c----w C:\SYS\WINDOWS\system32\dllcache\authz.dll
+ 2003-12-10 02:47:36 579,856 -c----w C:\SYS\WINDOWS\system32\dllcache\autochk.exe
- 2004-03-24 02:17:02 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2004-10-05 08:43:28 7,680 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx3.dll
- 2004-03-24 02:17:01 69,904 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
+ 2005-04-08 11:54:32 71,440 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
- 2004-01-21 14:21:08 1,026,048 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
+ 2005-01-12 19:39:46 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
- 2004-03-24 02:17:02 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
+ 2005-01-12 19:39:48 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
- 2004-03-11 21:29:22 169,232 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
+ 2005-09-05 08:18:46 165,648 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
- 2004-03-11 21:29:23 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-04-08 11:51:14 63,248 -c----w C:\SYS\WINDOWS\system32\dllcache\cdfs.sys
- 2002-08-29 05:14:40 142,336 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdfview.dll
+ 2008-06-20 08:59:26 143,360 -c--a-w C:\SYS\WINDOWS\system32\dllcache\CDFVIEW.DLL
+ 2007-07-30 17:19:20 92,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdm.dll
+ 2005-08-30 09:29:42 2,532,112 -c----w C:\SYS\WINDOWS\system32\dllcache\cdosys.dll
+ 2003-12-10 02:47:42 13,584 -c----w C:\SYS\WINDOWS\system32\dllcache\chkdsk.exe
- 1999-12-07 12:00:00 68,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
+ 2005-01-12 19:39:48 68,880 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
- 2004-03-11 21:29:23 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
- 2004-03-11 21:29:21 552,720 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2004-12-02 16:38:18 237,840 -c----w C:\SYS\WINDOWS\system32\dllcache\ClusCfg.exe
+ 2004-12-02 16:37:06 693,520 -c----w C:\SYS\WINDOWS\system32\dllcache\clussvc.exe
- 2003-09-21 00:45:05 236,304 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
+ 2004-11-02 22:48:18 236,816 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
- 2004-03-11 21:29:23 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
+ 2005-09-05 08:18:46 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
- 2004-03-11 21:29:23 198,416 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
+ 2005-09-05 08:18:46 197,904 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
- 2002-08-29 05:14:40 529,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
+ 2006-08-28 08:44:10 530,192 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
- 2004-03-11 21:29:23 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
+ 2005-09-05 08:18:46 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
- 2004-03-11 21:29:23 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
+ 2005-09-05 08:18:48 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
- 2004-03-11 21:29:24 1,467,664 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
- 2004-03-11 21:29:24 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
+ 2005-09-05 08:18:48 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
- 2004-03-24 02:17:00 543,504 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
- 2004-03-24 02:17:01 61,200 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
+ 2005-04-08 11:54:34 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
- 2004-03-24 02:17:01 76,048 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-12 19:39:46 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-13 09:09:50 35,088 -c----w C:\SYS\WINDOWS\system32\dllcache\csrsrv.dll
- 1999-12-07 12:00:00 1,133,840 -c--a-w C:\SYS\WINDOWS\system32\dllcache\danim.dll
+ 2008-04-20 22:03:58 1,054,208 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DANIM.DLL
- 2004-03-01 19:58:18 561,424 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2008-03-27 07:00:14 554,008 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2006-12-22 16:55:42 73,728 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnetlib.dll
+ 2006-12-22 16:55:42 28,672 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnmpntw.dll
+ 2006-05-19 09:18:24 89,872 -c----w C:\SYS\WINDOWS\system32\dllcache\dhcpcsvc.dll
- 2002-08-29 05:06:02 76,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\directdb.dll
+ 2008-06-25 13:35:50 75,776 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DIRECTDB.DLL
- 2004-03-24 02:17:00 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
+ 2008-06-25 09:41:54 137,488 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
- 2004-03-24 02:17:01 92,432 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
+ 2008-02-15 13:24:10 96,528 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
- 2002-12-11 23:14:32 217,600 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
+ 2004-04-14 12:56:46 219,648 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
- 2002-12-11 23:14:32 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-04-12 21:11:26 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-12-09 18:52:54 114,960 -c----w C:\SYS\WINDOWS\system32\dllcache\dsexts.dll
+ 2005-01-12 19:39:50 299,792 -c----w C:\SYS\WINDOWS\system32\dllcache\dsprop.dll
- 2004-02-19 22:03:09 1,816,552 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-03-06 05:07:31 1,842,672 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-08-22 02:05:26 498,742 -c----w C:\SYS\WINDOWS\system32\dllcache\dxmasf.dll
- 2002-08-29 05:14:40 351,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2008-06-20 07:53:28 351,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTMSFT.DLL
- 2002-08-29 05:14:40 187,392 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtrans.dll
+ 2008-06-20 07:53:26 192,512 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTRANS.DLL
- 2004-03-11 21:29:22 239,888 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
+ 2008-07-10 10:00:14 251,152 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
- 2004-03-24 02:17:01 47,888 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-04-08 11:54:32 49,424 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-07-19 10:44:44 142,288 -c----w C:\SYS\WINDOWS\system32\dllcache\fastfat.sys
+ 2005-01-12 19:39:50 138,000 -c----w C:\SYS\WINDOWS\system32\dllcache\faxui.dll
+ 2005-02-22 07:05:10 18,192 -c----w C:\SYS\WINDOWS\system32\dllcache\fltlib.dll
+ 2004-12-02 13:19:44 22,800 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmc.exe
+ 2005-04-14 06:59:02 136,880 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmgr.sys
- 1999-12-07 12:00:00 78,096 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
+ 2005-11-24 14:54:16 79,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
- 1999-12-07 12:00:00 38,672 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-11-06 14:38:16 47,376 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-12-02 13:00:00 116,400 -c----w C:\SYS\WINDOWS\system32\dllcache\ftdisk.sys
- 2004-03-23 16:17:02 242,448 -c----w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2008-02-19 17:08:58 236,304 -c--a-w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2005-01-12 19:39:50 305,424 -c----w C:\SYS\WINDOWS\system32\dllcache\gpedit.dll
- 1999-12-07 12:00:00 41,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2004-12-09 18:10:08 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2005-01-12 19:39:50 163,088 -c----w C:\SYS\WINDOWS\system32\dllcache\h323msp.dll
+ 2005-04-15 01:08:24 10,752 -c----w C:\SYS\WINDOWS\system32\dllcache\hh.exe
+ 2005-04-21 14:16:56 38,912 -c----w C:\SYS\WINDOWS\system32\dllcache\hhsetup.dll
+ 2006-07-21 15:08:54 72,704 -c----w C:\SYS\WINDOWS\system32\dllcache\hlink.dll
+ 2005-01-12 19:39:52 247,056 -c----w C:\SYS\WINDOWS\system32\dllcache\httpext.dll
+ 2005-01-12 19:39:52 576,784 -c----w C:\SYS\WINDOWS\system32\dllcache\hypertrm.dll
+ 2005-06-29 07:30:56 246,032 -c----w C:\SYS\WINDOWS\system32\dllcache\icm32.dll
- 2002-08-29 05:14:40 231,424 -c--a-w C:\SYS\WINDOWS\system32\dllcache\iepeers.dll
+ 2008-06-20 07:53:34 236,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\IEPEERS.DLL
+ 2005-01-12 19:39:52 122,640 -c----w C:\SYS\WINDOWS\system32\dllcache\iischema.dll
+ 2005-02-22 08:42:14 57,104 -c----w C:\SYS\WINDOWS\system32\dllcache\iisext.dll
- 2002-08-29 05:06:02 593,408 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetcomm.dll
+ 2008-06-25 13:35:58 601,088 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETCOMM.DLL
- 2002-08-29 05:06:02 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetres.dll
+ 2008-06-25 13:35:54 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETRES.DLL
- 2002-08-29 05:14:40 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inseng.dll
+ 2008-06-20 07:53:38 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INSENG.DLL
+ 2006-05-19 09:18:24 68,368 -c----w C:\SYS\WINDOWS\system32\dllcache\iphlpapi.dll
+ 2004-08-11 22:42:40 67,344 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnat.sys
- 2004-03-24 02:17:02 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
+ 2005-01-12 19:39:52 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
- 1999-12-07 12:00:00 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
+ 2003-04-21 18:19:44 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
- 2003-08-27 13:13:52 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
+ 2005-04-21 14:16:56 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
- 2004-06-22 22:42:32 123,392 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2005-04-21 14:16:56 128,000 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2007-08-17 06:48:22 39,184 -c----w C:\SYS\WINDOWS\system32\dllcache\jpeg2x32.dll
- 2001-06-26 14:36:02 589,874 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
+ 2008-01-05 01:05:56 458,752 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
- 2002-08-29 05:14:40 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jsproxy.dll
+ 2008-06-20 07:53:56 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\JSPROXY.DLL
- 2004-03-24 02:17:02 143,632 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
+ 2005-06-15 04:33:18 149,776 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
- 2004-03-11 02:37:09 210,192 -c----w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
+ 2005-06-15 04:22:48 208,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
- 2004-03-24 02:17:00 742,160 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-04-16 12:44:08 712,976 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-05-11 07:41:54 524,560 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakimg.exe
+ 2007-05-11 07:42:16 73,488 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakprv.exe
- 1999-12-07 12:00:00 16,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-09-23 11:03:25 17,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-01-13 16:19:18 85,264 -c----w C:\SYS\WINDOWS\system32\dllcache\LLSSRV.EXE
+ 2005-04-08 11:54:32 266,000 -c----w C:\SYS\WINDOWS\system32\dllcache\localspl.dll
- 2004-02-25 23:59:07 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
+ 2004-12-19 22:30:54 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
- 2004-03-24 02:17:02 37,136 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
+ 2007-03-06 11:17:46 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
- 1999-12-07 12:00:00 924,432 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 927,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 1,011,774 -c----w C:\SYS\WINDOWS\system32\dllcache\mfc42u.dll
+ 2006-07-06 09:52:40 613,648 -c----w C:\SYS\WINDOWS\system32\dllcache\mmc.exe
- 2004-02-10 19:47:54 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
+ 2005-08-16 08:40:58 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
- 2004-03-24 02:17:02 54,544 -c----w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-04-16 12:44:08 54,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-10-17 07:22:06 292,112 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1repl.dll
+ 2007-10-16 13:51:24 14,096 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1sync.exe
+ 2007-10-16 13:51:26 77,712 -c----w C:\SYS\WINDOWS\system32\dllcache\mqac.sys
+ 2007-10-17 07:22:06 218,384 -c----w C:\SYS\WINDOWS\system32\dllcache\mqads.dll
+ 2007-10-16 13:51:26 25,360 -c----w C:\SYS\WINDOWS\system32\dllcache\mqbkup.exe
+ 2007-10-17 07:22:06 29,456 -c----w C:\SYS\WINDOWS\system32\dllcache\mqcertui.dll
+ 2007-10-17 07:22:06 50,448 -c----w C:\SYS\WINDOWS\system32\dllcache\mqclus.dll
+ 2007-10-17 07:22:06 29,968 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdbodbc.dll
+ 2007-10-17 07:22:06 77,072 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdscli.dll
+ 2007-10-17 07:22:06 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdssrv.dll
- 1999-12-07 12:00:00 87,312 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr.dll
+ 2007-10-17 07:22:06 96,016 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr.dll
+ 2007-10-16 13:51:28 98,064 -c----w C:\SYS\WINDOWS\system32\dllcache\mqmig.exe
+ 2007-10-17 07:22:06 267,536 -c----w C:\SYS\WINDOWS\system32\dllcache\mqmigrat.dll
+ 2007-10-17 07:22:06 222,480 -c----w C:\SYS\WIND
0
Utilisateur anonyme
 
bonsoir , le rapport n'est pas entier peu tu me poster la fin du rapport stp comment se porte le pc ?
0
Kartman
 
Le Pc a l'air de se comporter normalement , je te poste le rapport Combofix.txt aisi que le dernier rapport hijackthis, par contre l'icone d'avast a coté de l'horloge a disparu donc j'ai désinstallé et réinstallé avast mais l'icone ne reviend pas mais au demarage l'icone Online Armor affiche un message avec avast dedans, est ce qu'avast est actif ?

ComboFix 08-08-19.02 - atelier 2008-08-20 18:26:42.2 - NTFSx86
Microsoft Windows 2000 Professionnel 5.0.2195.4.1252.1.1033.18.523 [GMT 2:00]
Running from: C:\Documents and Settings\atelier\Desktop\ComboFix.exe

[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\SYS\WINDOWS\system32\_000254_.tmp.dll
C:\SYS\WINDOWS\system32\_000255_.tmp.dll
C:\SYS\WINDOWS\system32\_000258_.tmp.dll
C:\SYS\WINDOWS\system32\_000261_.tmp.dll
C:\SYS\WINDOWS\system32\_000262_.tmp.dll
C:\SYS\WINDOWS\system32\_000263_.tmp.dll
C:\SYS\WINDOWS\system32\_000264_.tmp.dll
C:\SYS\WINDOWS\system32\_000265_.tmp.dll
C:\SYS\WINDOWS\system32\_000269_.tmp.dll
C:\SYS\WINDOWS\system32\_000270_.tmp.dll
C:\SYS\WINDOWS\system32\_000271_.tmp.dll
C:\SYS\WINDOWS\system32\_000272_.tmp.dll
C:\SYS\WINDOWS\system32\_000273_.tmp.dll
C:\SYS\WINDOWS\system32\_000274_.tmp.dll
C:\SYS\WINDOWS\system32\_000275_.tmp.dll
.
---- Previous Run -------
.
C:\07062004.exe
C:\Documents and Settings\atelier\Cookies\atelier@_cqr[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@2o7[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.ifrance[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ad.yieldmanager[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adnext[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@ads.pointroll[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@adserver[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@adv.surinter[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@apu0800.audientia[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@as1.falkag[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bestoffersnetworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@bizrate[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@bluestreak[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@btg.btgrab[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cdiscount[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@cliks[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@date.ventivmedia[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@edt02[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@esearchvision[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fastclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@fnac[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@fr.msn[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@linternaute[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab58.customers.luna[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@metrixlab61.customers.luna[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@news.fr.msn[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@offeroptimizer[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@paidmarketingpanel.aavalue[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@photobucket[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmv2[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@phpmyvisites[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@projetwinx.blogspot[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@revsci[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@rueducommerce[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@server.cpmstar[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@serving-sys[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@specificclick[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stat.dealtime[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stats1.reliablestats[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@stl.p.a1.traceworks[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tracker.affistats[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tradedoubler[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@trafiz[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@tsw0[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.achetezfacile[2].txt
C:\Documents and Settings\atelier\Cookies\atelier@www.pixmania[1].txt
C:\Documents and Settings\atelier\Cookies\atelier@yahoo[2].txt
C:\Documents and Settings\atelier\My Documents\My Pictures\My Pictures.url
C:\Documents and Settings\atelier\UserData
C:\Documents and Settings\atelier\UserData\CPS3I7UF\advstNetId[1].xml
C:\Documents and Settings\atelier\UserData\CPS3I7UF\historySearchPos[1].xml
C:\Documents and Settings\atelier\UserData\index.dat
C:\Documents and Settings\atelier\UserData\MG5IEBCM\YL[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\historySitePos[1].xml
C:\Documents and Settings\atelier\UserData\S565IDUN\oXMLStoreUnit[1].xml
C:\Documents and Settings\atelier\UserData\TUGM51Q3\Tdy58[1].xml
C:\Program Files\AAV
C:\Program Files\Altnet
C:\Program Files\Applications\myd.ico
C:\Program Files\Applications\mym.ico
C:\Program Files\Applications\myp.ico
C:\Program Files\Applications\myv.ico
C:\Program Files\ASpyC
C:\Program Files\Need2Find
C:\Program Files\Need2Find\bar\History\search
C:\Program Files\RXToolBar
C:\Program Files\RXToolBar\Cache\CT
C:\Program Files\RXToolBar\Cache\CTwww_laposte_net
C:\Program Files\RXToolBar\Cache\CTwww_roxio_com_
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=naruto%20narutoNC
C:\Program Files\RXToolBar\Cache\CTwww_srch-results_com_lm_imp_rxt_asp_si=19902&k=windows%20mediaNC
C:\Program Files\RXToolBar\Cache\RXUpdate
C:\Program Files\RXToolBar\CacheCatalog.rx
C:\Program Files\RXToolBar\graphics\additional.gif
C:\Program Files\RXToolBar\graphics\additional_active.gif
C:\Program Files\RXToolBar\graphics\background.jpg
C:\Program Files\RXToolBar\graphics\blue_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\gray_hr_horz.GIF
C:\Program Files\RXToolBar\graphics\thumbtack.gif
C:\Program Files\RXToolBar\graphics\thumbtack_active.gif
C:\Program Files\RXToolBar\graphics\thumbtack_click.gif
C:\Program Files\RXToolBar\HTML\content.htm
C:\Program Files\RXToolBar\HTML\main.htm
C:\Program Files\RXToolBar\rx.xml
C:\Program Files\RXToolBar\rxtoolbar.cfg
C:\Program Files\RXToolBar\rxwebsearches.xsl
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.01.sig
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.dat
C:\Program Files\RXToolBar\Semantic Insight\bKPack01.sig
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\bLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.Key
C:\Program Files\RXToolBar\Semantic Insight\CustomerSecret.sig
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.dat
C:\Program Files\RXToolBar\Semantic Insight\nLabels01.sig
C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.dat
C:\Program Files\RXToolBar\sfcont.bin
C:\SYS\WINDOWS\BM2f44e4c3.txt
C:\SYS\WINDOWS\BM2f44e4c3.xml
C:\SYS\WINDOWS\cookies.ini
C:\SYS\WINDOWS\Fonts\acrsec.fon
C:\SYS\WINDOWS\Fonts\acrsecB.fon
C:\SYS\WINDOWS\Fonts\acrsecI.fon
C:\SYS\WINDOWS\pskt.ini
C:\SYS\WINDOWS\smdat32a.sys
C:\SYS\WINDOWS\smdat32m.sys
C:\SYS\WINDOWS\system32\AdCache
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_0_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449200.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_449600.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_1_0_454300.gif
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_2_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_106800.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_3_0_107400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_111600.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_152400.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_155300.htm
C:\SYS\WINDOWS\system32\AdCache\B_329_4_0_164100.htm
C:\SYS\WINDOWS\system32\awttqNfC.dll
C:\SYS\WINDOWS\system32\CfNqttwa.ini
C:\SYS\WINDOWS\system32\CfNqttwa.ini2
C:\SYS\WINDOWS\system32\cpmsky-uninst.exe
C:\SYS\WINDOWS\system32\ebwxolyi.dll
C:\SYS\WINDOWS\system32\efcBuRJD.dll
C:\SYS\WINDOWS\system32\fbxyngfi.ini
C:\SYS\WINDOWS\system32\gyrkyd.dll
C:\SYS\WINDOWS\system32\hgGaxwvu.dll
C:\SYS\WINDOWS\system32\iwajmz.dll
C:\SYS\WINDOWS\system32\jdxivgjq.ini
C:\SYS\WINDOWS\system32\ldpackage.dll
C:\SYS\WINDOWS\system32\mcrh.tmp
C:\SYS\WINDOWS\system32\model.dat
C:\SYS\WINDOWS\system32\P2P Networking
C:\SYS\WINDOWS\system32\P2P Networking\P2P Networking.eng
C:\SYS\WINDOWS\system32\qjgvixdj.dll
C:\SYS\WINDOWS\system32\tcvawgtm.exe
C:\SYS\WINDOWS\system32\tqlkshoo.dll
C:\SYS\WINDOWS\system32\UpMedia
C:\SYS\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\SYS\WINDOWS\system32\wav.cpl
C:\SYS\WINDOWS\system32\wxgyfsib.dll
C:\SYS\WINDOWS\Web\default.htt

.
((((((((((((((((((((((((( Files Created from 2008-07-20 to 2008-08-20 )))))))))))))))))))))))))))))))
.

2008-08-20 18:18 . 08-08-20 18:18 <DIR> d-------- C:\SYS\WINDOWS\system32\Windows Media
2008-08-20 18:16 . 08-08-20 18:16 <DIR> d-------- C:\SYS\WINDOWS\msiinst.tmp
2008-08-20 18:16 . 08-08-20 18:17 <DIR> d--h-c--- C:\SYS\WINDOWS\$NtUpdateRollupPackUninstall$
2008-08-19 23:21 . 03-06-19 13:05 92,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\KRNL386.EXE
2008-08-19 23:21 . 02-08-29 07:14 44,032 -----c--- C:\SYS\WINDOWS\system32\dllcache\msxml3r.dll
2008-08-19 21:08 . 08-08-19 21:08 <DIR> d--h-c--- C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$
2008-08-19 21:03 . 08-08-19 21:03 1,009 --a------ C:\SYS\WINDOWS\setup.inf
2008-08-19 21:03 . 08-08-19 21:03 283 --a------ C:\SYS\WINDOWS\setup.rpt
2008-08-19 21:01 . 08-08-19 21:01 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-08-19 19:37 . 06-07-25 07:08 840,976 -----c--- C:\SYS\WINDOWS\system32\dllcache\mmcndmgr.dll
2008-08-19 19:12 . 08-08-19 19:12 <DIR> d-------- C:\SYS\WINDOWS\system32\BITS
2008-08-18 23:26 . 08-08-18 23:26 <DIR> d-------- C:\Program Files\Tall Emu
2008-08-18 23:26 . 08-08-20 18:37 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\OnlineArmor
2008-08-18 23:26 . 08-08-19 19:51 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-08-18 23:26 . 08-04-17 05:22 80,584 --a------ C:\SYS\WINDOWS\system32\drivers\OADriver.sys
2008-08-18 23:26 . 08-04-17 05:22 32,456 --a------ C:\SYS\WINDOWS\system32\drivers\OAmon.sys
2008-08-18 23:26 . 08-04-17 05:22 28,872 --a------ C:\SYS\WINDOWS\system32\drivers\oanet.sys
2008-08-18 23:21 . 07-07-30 19:18 34,136 --a------ C:\SYS\WINDOWS\system32\wucltui.dll.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuaucpl.cpl.mui
2008-08-18 23:21 . 07-07-30 19:19 25,944 --a------ C:\SYS\WINDOWS\system32\wuapi.dll.mui
2008-08-18 23:21 . 07-07-30 19:18 20,312 --a------ C:\SYS\WINDOWS\system32\wuaueng.dll.mui
2008-08-18 23:18 . 07-07-30 19:19 549,720 --a------ C:\SYS\WINDOWS\system32\wuapi.dll
2008-08-18 23:18 . 07-07-30 19:19 325,976 --a------ C:\SYS\WINDOWS\system32\wucltui.dll
2008-08-18 23:18 . 07-07-30 19:19 203,096 --a------ C:\SYS\WINDOWS\system32\wuweb.dll
2008-08-18 23:18 . 05-05-26 04:16 194,328 --a------ C:\SYS\WINDOWS\system32\wuaueng1.dll
2008-08-18 23:18 . 05-05-26 04:16 172,312 --a------ C:\SYS\WINDOWS\system32\wuauclt1.exe
2008-08-18 23:18 . 07-07-30 19:19 43,352 --a------ C:\SYS\WINDOWS\system32\wups2.dll
2008-08-18 23:18 . 07-07-30 19:18 33,624 --a------ C:\SYS\WINDOWS\system32\wups.dll
2008-08-18 22:20 . 08-08-18 22:20 <DIR> d---s---- C:\Documents and Settings\atelier\UserData
2008-08-18 20:23 . 08-08-18 20:45 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\atelier\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-18 20:23 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-18 20:23 . 08-08-17 15:01 38,472 --a------ C:\SYS\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-18 20:23 . 08-08-17 15:01 17,144 --a------ C:\SYS\WINDOWS\system32\drivers\mbam.sys
2008-08-06 21:12 . 08-08-06 23:52 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Video.url
2008-08-06 21:12 . 08-08-06 21:12 134 --a------ C:\SYS\WINDOWS\My Music.url
2008-08-06 21:11 . 08-08-18 21:47 <DIR> d-------- C:\Program Files\Applications

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-12 16:47 --------- d-----w C:\Documents and Settings\atelier\Application Data\AdobeUM
2008-08-10 17:10 --------- d-----w C:\Documents and Settings\atelier\Application Data\LimeWire
2008-08-06 23:53 --------- d-----w C:\Program Files\TBONBin
2008-07-06 11:06 --------- d-----w C:\Program Files\LimeWire
2008-06-27 21:18 --------- d-----w C:\Documents and Settings\atelier\Application Data\XnView
2008-06-27 20:29 --------- d-----w C:\Documents and Settings\atelier\Application Data\gtk-2.0
2008-06-25 20:38 --------- d-----w C:\Program Files\TomTom HOME
2008-06-25 20:24 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-06-25 20:24 --------- d-----w C:\Documents and Settings\atelier\Application Data\InstallShield
2008-06-25 17:58 --------- d-----w C:\Program Files\TomTom HOME 2
2008-06-16 18:52 374 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb6334.dat
2008-06-16 18:34 555 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb8467.dat
2008-06-16 18:34 18,432 ----a-w C:\Documents and Settings\atelier\Application Data\internaldb41.dat
2008-05-20 20:11 675,579 ----a-w C:\SYS\WINDOWS\PROGRAM.exe
2008-01-25 20:10 284 ----a-w C:\Documents and Settings\atelier\Application Data\ViewerApp.dat
2006-09-25 19:32 4,793,856 ----a-w C:\Program Files\s3a01frx.exe
2004-05-27 13:48 271 ---h--w C:\Program Files\desktop.ini
2004-05-27 13:48 21,952 ---h--w C:\Program Files\folder.htt
.

((((((((((((((((((((((((((((( snapshot@lun. 2008-08-18_22.07.26.85 )))))))))))))))))))))))))))))))))))))))))
.
+ 2003-02-20 15:39:04 73,728 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnetlib.dll
+ 2003-02-20 15:39:44 28,672 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\dbnmpntw.dll
+ 2003-02-20 15:38:58 315,392 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadce.dll
+ 2003-02-20 15:39:08 135,168 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadco.dll
+ 2003-02-20 15:39:10 49,152 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadcs.dll
+ 2003-02-20 15:39:00 147,456 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadds.dll
+ 2003-02-20 15:39:00 512,000 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msado15.dll
+ 2003-02-20 15:39:16 163,840 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadomd.dll
+ 2003-02-20 15:39:16 184,320 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadox.dll
+ 2003-02-20 15:39:00 53,248 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msadrh15.dll
+ 2003-02-20 15:39:20 225,280 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaora.dll
+ 2003-02-20 15:39:00 192,512 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdaprst.dll
+ 2003-02-20 15:39:00 143,360 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdart.dll
+ 2003-02-20 15:39:00 303,104 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msdasql.dll
+ 2003-02-20 15:39:30 90,112 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msjro.dll
+ 2003-02-20 15:39:30 139,264 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\msorcl32.dll
+ 2003-02-20 15:39:02 221,184 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbc32.dll
+ 2003-02-20 15:39:42 24,576 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\odbcbcp.dll
+ 2003-02-20 15:39:02 442,368 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\oledb32.dll
+ 2006-12-22 16:55:58 213,216 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\spuninst.exe
+ 2006-12-22 16:56:06 2,290,688 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\SQLSTPCustomDLL.dll
+ 2006-12-22 16:56:06 371,424 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\spuninst\updspapi.dll
+ 2003-02-20 15:39:06 503,808 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqloledb.dll
+ 2003-02-20 15:39:04 401,408 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlsrv32.dll
+ 2003-02-20 14:28:06 204,800 -c----w C:\SYS\WINDOWS\$SQLUninstallMDAC28-KB927779-x86-ENU$\sqlxmlx.dll
- 2006-12-25 00:12:05 7,168 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2008-08-19 19:05:28 8,192 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2006-12-25 00:12:02 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-08-19 19:05:30 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
- 2006-12-25 00:11:56 716,800 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-08-19 19:05:41 720,896 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2006-12-25 00:11:56 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-08-19 19:05:31 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2006-12-25 00:12:05 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2008-08-19 19:05:38 32,768 ----a-w C:\SYS\WINDOWS\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
- 2006-12-25 00:12:07 299,008 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-08-19 19:05:35 303,104 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2006-12-25 00:12:03 1,290,240 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2008-08-19 19:05:38 1,294,336 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
- 2006-12-25 00:12:03 1,699,840 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-08-19 19:05:29 1,703,936 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
- 2006-12-25 00:12:03 86,016 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-08-19 19:05:40 90,112 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2006-12-25 00:12:03 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-08-19 19:05:34 466,944 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2008-08-19 19:05:31 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2006-12-25 00:12:03 64,000 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2008-08-19 19:05:31 66,560 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
- 2006-12-25 00:12:03 368,640 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-08-19 19:05:38 372,736 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
- 2006-12-25 00:12:03 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-08-19 19:05:41 241,664 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2006-12-25 00:12:03 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-08-19 19:05:35 323,584 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2006-12-25 00:12:03 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-08-19 19:05:32 131,072 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2006-12-25 00:12:03 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-08-19 19:05:33 77,824 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
- 2006-12-25 00:12:04 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-08-19 19:05:39 126,976 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2006-12-25 00:12:06 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-08-19 19:05:28 819,200 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2006-12-25 00:12:04 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-08-19 19:05:31 57,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2006-12-25 00:12:04 569,344 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-08-19 19:05:30 573,440 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2006-12-25 00:12:04 1,245,184 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-08-19 19:05:40 1,257,472 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
- 2006-12-25 00:12:04 2,039,808 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-08-19 19:05:32 2,052,096 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
- 2006-12-25 00:12:05 1,335,296 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
+ 2008-08-19 19:05:37 1,339,392 ----a-w C:\SYS\WINDOWS\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
- 2006-12-25 00:12:03 1,216,512 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:05:43 1,224,704 ----a-w C:\SYS\WINDOWS\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2008-08-19 19:06:24 61,440 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_643b97a4\CustomMarshalers.dll
+ 2008-08-19 19:08:49 3,379,200 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_9e9c4ca6\mscorlib.dll
+ 2008-08-19 19:08:05 1,470,464 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_3932d236\System.Design.dll
+ 2008-08-19 19:06:32 90,112 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_1f4249f9\System.Drawing.Design.dll
+ 2008-08-19 19:08:18 835,584 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_087bb5c5\System.Drawing.dll
+ 2008-08-19 19:06:56 3,014,656 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_3fb9996d\System.Windows.Forms.dll
+ 2008-08-19 19:07:42 2,088,960 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_0051f7f8\System.Xml.dll
+ 2008-08-19 19:06:21 1,953,792 ----a-w C:\SYS\WINDOWS\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_3b4f087f\System.dll
+ 2005-01-12 19:39:50 138,000 ------w C:\SYS\WINDOWS\Driver Cache\i386\faxui.dll
+ 2004-12-02 13:00:00 116,400 ------w C:\SYS\WINDOWS\Driver Cache\i386\ftdisk.sys
+ 2004-12-02 12:59:18 85,888 ------w C:\SYS\WINDOWS\Driver Cache\i386\halmacpi.dll
- 2004-03-24 02:17:00 742,160 ------w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
+ 2007-04-16 12:44:08 712,976 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\kernel32.dll
- 2004-03-24 02:17:00 497,936 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
+ 2005-01-13 09:09:38 483,600 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntdll.dll
- 2004-02-25 23:55:31 1,699,904 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
+ 2007-03-05 15:51:49 1,714,496 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlmp.exe
- 2004-02-25 23:55:48 1,699,264 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
+ 2007-03-05 15:52:06 1,713,536 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
- 2004-02-25 23:55:51 1,720,064 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
+ 2007-03-05 15:52:05 1,735,808 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntkrpamp.exe
- 2004-03-11 02:37:30 1,726,032 ------w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
+ 2007-03-05 15:51:49 1,690,880 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\ntoskrnl.exe
- 2004-03-11 02:37:49 1,720,368 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
+ 2008-03-19 09:26:34 1,644,080 ------w C:\SYS\WINDOWS\Driver Cache\i386\win32k.sys
- 2003-09-25 18:08:48 243,984 ------w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
+ 2007-03-13 09:44:49 245,520 ----a-w C:\SYS\WINDOWS\Driver Cache\i386\winsrv.dll
- 2003-06-19 11:05:04 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2005-04-15 01:08:24 10,752 ----a-w C:\SYS\WINDOWS\hh.exe
+ 2008-08-19 19:02:02 32,768 ----a-r C:\SYS\WINDOWS\Installer\{C04E32E0-0416-434D-AFB9-6969D703A9EF}\icon.exe
+ 2003-02-28 14:35:26 6,550 ----a-w C:\SYS\WINDOWS\jautoexp.dat
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\7BZ5Z9J3.DAT
+ 2008-08-19 19:06:44 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\HRPZXJ1F.DAT
+ 2008-08-19 19:06:37 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\JRZPRZNN.DAT
+ 2008-08-19 19:06:38 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\SKZV7P75.DAT
+ 2008-08-19 19:06:39 2,678 ----a-w C:\SYS\WINDOWS\java\Packages\Data\TF17B1JX.DAT
- 2003-02-20 18:19:32 253,952 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2004-07-14 23:49:16 258,048 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
- 2003-02-20 18:19:34 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2004-07-14 23:49:18 20,480 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
- 2003-02-20 18:19:38 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2004-07-14 23:49:26 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
- 2003-02-20 18:19:36 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2004-07-14 23:49:22 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
- 2003-02-20 18:09:08 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2004-07-14 22:32:22 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
- 2003-02-21 09:20:44 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2004-07-15 09:23:28 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\csc.exe
- 2003-02-21 09:21:00 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2004-07-15 09:23:44 626,688 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
- 2003-02-20 18:06:20 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2004-07-14 22:24:30 282,624 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-10-08 12:30:14 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gacutil.exe
- 2003-02-16 10:02:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
+ 2004-05-04 09:53:40 1,645,320 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\gdiplus.dll
- 2003-02-21 06:24:38 7,168 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2004-07-15 12:31:00 8,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
- 2003-02-21 06:24:40 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2004-07-15 12:31:04 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
- 2003-02-20 18:09:40 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2004-07-14 22:35:30 196,608 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
- 2003-02-21 06:26:36 716,800 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2004-07-15 12:28:58 720,896 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
- 2003-02-21 06:26:38 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2004-07-15 12:28:56 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
- 2003-02-21 06:25:04 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2004-07-15 12:28:50 49,152 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
- 2003-02-20 18:09:12 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2004-07-14 22:32:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
- 2003-02-20 18:09:12 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2004-07-14 22:32:46 233,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
- 2003-02-20 18:06:32 311,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2004-07-14 22:25:06 315,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
- 2003-02-20 18:09:16 98,304 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2004-07-14 22:33:04 102,400 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
- 2003-02-21 06:26:34 2,088,960 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2004-07-15 12:29:02 2,138,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
- 2003-02-20 18:09:18 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2004-07-14 22:33:22 143,360 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
- 2003-02-20 18:09:18 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2004-07-14 22:33:24 81,920 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
- 2003-02-20 18:07:34 2,494,464 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2004-07-14 22:26:52 2,510,848 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
- 2003-02-20 18:08:32 2,482,176 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-07-14 22:28:34 2,502,656 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2004-08-10 14:20:00 106,496 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
- 2003-02-20 18:09:30 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2004-07-14 22:34:50 94,208 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
- 2003-02-21 06:26:46 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2004-07-15 12:28:48 32,768 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
- 2003-02-20 18:09:34 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2004-07-14 22:35:04 319,488 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\SOS.dll
- 2003-02-21 06:26:38 1,290,240 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2004-07-15 12:32:00 1,294,336 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
- 2003-02-21 06:25:42 299,008 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2004-07-15 12:31:14 303,104 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
- 2003-02-21 06:26:42 1,699,840 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2004-07-15 12:29:02 1,703,936 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
- 2003-02-21 06:26:44 86,016 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2004-07-15 12:28:54 90,112 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
- 2003-02-21 06:26:46 1,216,512 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2004-07-15 12:31:16 1,224,704 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.dll
- 2003-02-21 06:26:50 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2004-07-15 12:28:58 466,944 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
- 2003-02-21 06:26:50 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2004-07-15 12:28:56 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
- 2003-02-20 18:09:36 64,000 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2004-07-14 22:35:12 66,560 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
- 2003-02-21 06:26:52 368,640 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2004-07-15 12:31:58 372,736 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
- 2003-02-21 06:26:54 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2004-07-15 12:31:12 241,664 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
- 2003-02-21 06:26:56 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2004-07-15 12:28:58 323,584 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
- 2003-02-21 06:26:56 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2004-07-15 12:31:54 131,072 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
- 2003-02-21 06:26:58 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2004-07-15 12:28:52 77,824 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
- 2003-02-21 06:27:00 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2004-07-15 12:28:54 126,976 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
- 2003-02-21 06:27:02 1,245,184 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2004-07-15 12:29:00 1,257,472 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
- 2003-02-21 06:27:06 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2004-07-15 12:28:58 819,200 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
- 2003-02-21 06:24:18 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2004-07-15 12:28:52 57,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
- 2003-02-21 06:27:06 569,344 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2004-07-15 12:31:16 573,440 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
- 2003-02-21 06:27:08 2,039,808 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2004-07-15 12:32:02 2,052,096 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
- 2003-02-21 06:27:10 1,335,296 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-07-15 12:29:00 1,339,392 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2004-06-22 11:51:38 53,248 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe
- 2003-02-21 09:20:38 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2004-07-15 09:23:20 737,280 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\vbc.exe
- 2003-02-21 04:04:18 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2004-07-15 06:15:14 1,032,192 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
- 2003-02-20 19:10:40 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2004-07-15 00:11:56 31,744 ----a-w C:\SYS\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
- 1999-12-07 12:00:00 38,160 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 ----a-w C:\SYS\WINDOWS\msagent\agentdp2.dll
- 1999-12-07 12:00:00 51,984 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 ----a-w C:\SYS\WINDOWS\msagent\agentdpv.dll
- 1999-12-07 12:00:00 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 ----a-w C:\SYS\WINDOWS\msagent\agentsvr.exe
+ 2003-09-20 04:53:04 64,512 ----a-w C:\SYS\WINDOWS\msiinst.tmp\msiexec.exe
+ 2004-06-18 12:40:50 33,280 ----a-w C:\SYS\WINDOWS\muninst.exe
+ 2003-02-28 16:26:30 46,352 ----a-w C:\SYS\WINDOWS\setdebug.exe
- 2003-06-19 11:05:04 125,712 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
+ 2005-04-08 11:54:34 130,832 ----a-w C:\SYS\WINDOWS\system32\adsldp.dll
- 2003-06-19 11:05:04 133,904 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
+ 2005-04-08 11:54:32 134,928 ----a-w C:\SYS\WINDOWS\system32\adsldpc.dll
- 2003-06-19 11:05:04 62,736 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
+ 2005-01-13 09:09:48 63,760 ----a-w C:\SYS\WINDOWS\system32\adsmsext.dll
- 2004-03-24 02:17:00 388,368 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
+ 2005-04-21 08:08:44 401,168 ----a-w C:\SYS\WINDOWS\system32\ADVAPI32.DLL
- 2003-06-19 11:05:04 55,056 ------w C:\SYS\WINDOWS\system32\authz.dll
+ 2005-02-04 05:34:04 55,568 ------w C:\SYS\WINDOWS\system32\authz.dll
- 2003-06-19 11:05:04 576,272 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
+ 2003-12-10 02:47:36 579,856 ----a-w C:\SYS\WINDOWS\system32\AUTOCHK.EXE
- 2004-03-24 02:17:02 42,256 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 ----a-w C:\SYS\WINDOWS\system32\BASESRV.DLL
+ 2004-10-05 08:43:30 362,496 ------w C:\SYS\WINDOWS\system32\BITS\qmgr.dll
+ 2004-10-05 08:43:28 7,680 ------w C:\SYS\WINDOWS\system32\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 ------w C:\SYS\WINDOWS\system32\bitsprx3.dll
- 2004-03-23 17:17:02 69,904 ----a-w C:\SYS\WINDOWS\system32\browser.dll
+ 2005-04-08 11:54:32 71,440 ----a-w C:\SYS\WINDOWS\system32\browser.dll
- 2004-01-21 14:21:08 1,026,048 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 ----a-w C:\SYS\WINDOWS\system32\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
+ 2005-01-12 19:39:46 56,080 ----a-w C:\SYS\WINDOWS\system32\cabinet.dll
- 2004-03-11 21:29:22 169,232 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
+ 2005-09-05 08:18:46 165,648 ----a-w C:\SYS\WINDOWS\system32\catsrv.dll
- 2004-03-11 21:29:23 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 ----a-w C:\SYS\WINDOWS\system32\catsrvut.dll
- 2002-08-29 05:14:40 142,336 ----a-w C:\SYS\WINDOWS\system32\cdfview.dll
+ 2008-06-20 08:59:26 143,360 ----a-w C:\SYS\WINDOWS\system32\CDFVIEW.DLL
- 2003-06-19 11:05:04 18,432 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
+ 2007-07-30 17:19:20 92,504 ----a-w C:\SYS\WINDOWS\system32\cdm.dll
- 2003-06-19 11:05:04 2,531,088 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
+ 2005-08-30 09:29:42 2,532,112 ----a-w C:\SYS\WINDOWS\system32\cdosys.dll
- 2003-06-19 11:05:04 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
+ 2003-12-10 02:47:42 13,584 ----a-w C:\SYS\WINDOWS\system32\CHKDSK.EXE
- 1999-12-07 12:00:00 68,368 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
+ 2005-01-12 19:39:48 68,880 ----a-w C:\SYS\WINDOWS\system32\ciodm.dll
- 2004-03-11 21:29:23 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 ----a-w C:\SYS\WINDOWS\system32\clbcatex.dll
- 2004-03-11 21:29:21 552,720 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 ----a-w C:\SYS\WINDOWS\system32\clbcatq.dll
- 1999-12-07 12:00:00 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
+ 2003-02-28 16:26:26 49,424 ----a-w C:\SYS\WINDOWS\system32\clspack.exe
- 2003-09-21 00:45:05 236,304 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
+ 2004-11-02 22:48:18 236,816 ----a-w C:\SYS\WINDOWS\system32\CMD.EXE
- 2004-03-11 21:29:23 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
+ 2005-09-05 08:18:46 41,744 ----a-w C:\SYS\WINDOWS\system32\colbact.dll
- 2004-03-11 21:29:23 198,416 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
+ 2005-09-05 08:18:46 197,904 ----a-w C:\SYS\WINDOWS\system32\Com\comadmin.dll
- 2002-08-29 05:14:40 529,680 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
+ 2006-08-28 08:44:10 530,192 ----a-w C:\SYS\WINDOWS\system32\comctl32.dll
- 2004-03-11 21:29:23 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
+ 2005-09-05 08:18:46 97,552 ----a-w C:\SYS\WINDOWS\system32\comrepl.dll
- 2004-03-11 21:29:24 1,467,664 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 ----a-w C:\SYS\WINDOWS\system32\comsvcs.dll
- 2004-03-11 21:29:24 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
+ 2005-09-05 08:18:48 625,936 ----a-w C:\SYS\WINDOWS\system32\comuid.dll
- 2004-03-24 02:17:00 543,504 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 ----a-w C:\SYS\WINDOWS\system32\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 ----a-w C:\SYS\WINDOWS\system32\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 ----a-w C:\SYS\WINDOWS\system32\CRYPTDLG.DLL
- 2004-03-24 02:17:01 61,200 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
+ 2005-04-08 11:54:34 63,760 ----a-w C:\SYS\WINDOWS\system32\CRYPTNET.DLL
- 2004-03-24 02:17:01 76,048 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 ----a-w C:\SYS\WINDOWS\system32\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
+ 2005-01-12 19:39:46 443,664 ----a-w C:\SYS\WINDOWS\system32\CRYPTUI.DLL
- 2003-06-19 11:05:04 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
+ 2005-01-13 09:09:50 35,088 ----a-w C:\SYS\WINDOWS\system32\CSRSRV.DLL
- 1999-12-07 12:00:00 1,133,840 ----a-w C:\SYS\WINDOWS\system32\danim.dll
+ 2008-04-20 22:03:58 1,054,208 ----a-w C:\SYS\WINDOWS\system32\DANIM.DLL
- 2003-02-20 15:39:04 73,728 ----a-w C:\SYS\WINDOWS\system32\dbnetlib.dll
+ 2006-12-22 16:55:42 73,728 ----a-w C:\SYS\WINDOWS\system32\DBnetlib.dll
- 2003-02-20 15:39:44 28,672 ----a-w C:\SYS\WINDOWS\system32\dbnmpntw.dll
+ 2006-12-22 16:55:42 28,672 ----a-w C:\SYS\WINDOWS\system32\DBnmpntw.dll
- 2003-06-19 11:05:04 92,944 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2006-05-19 09:18:24 89,872 ----a-w C:\SYS\WINDOWS\system32\DHCPCSVC.DLL
+ 2005-01-12 19:39:48 248,080 -c----w C:\SYS\WINDOWS\system32\dllcache\adsiis.dll
+ 2005-04-08 11:54:34 130,832 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldp.dll
+ 2005-04-08 11:54:32 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\adsldpc.dll
+ 2005-01-13 09:09:48 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\adsmsext.dll
- 2004-03-24 02:17:00 388,368 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2005-04-21 08:08:44 401,168 -c----w C:\SYS\WINDOWS\system32\dllcache\advapi32.dll
+ 2008-05-08 08:38:06 119,152 -c----w C:\SYS\WINDOWS\system32\dllcache\afd.sys
- 1999-12-07 12:00:00 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
+ 2006-08-24 08:07:56 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdp2.dll
- 1999-12-07 12:00:00 51,984 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
+ 2007-06-25 06:25:34 53,008 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentdpv.dll
- 1999-12-07 12:00:00 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2006-08-23 04:18:40 242,448 -c--a-w C:\SYS\WINDOWS\system32\dllcache\agentsvr.exe
+ 2005-04-08 11:54:36 356,624 -c----w C:\SYS\WINDOWS\system32\dllcache\ASP.DLL
+ 2005-02-04 05:34:04 55,568 -c----w C:\SYS\WINDOWS\system32\dllcache\authz.dll
+ 2003-12-10 02:47:36 579,856 -c----w C:\SYS\WINDOWS\system32\dllcache\autochk.exe
- 2004-03-24 02:17:02 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2005-01-12 19:39:48 46,352 -c----w C:\SYS\WINDOWS\system32\dllcache\BASESRV.DLL
+ 2004-10-05 08:43:28 7,680 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx2.dll
+ 2004-10-05 08:43:28 7,168 -c----w C:\SYS\WINDOWS\system32\dllcache\bitsprx3.dll
- 2004-03-24 02:17:01 69,904 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
+ 2005-04-08 11:54:32 71,440 -c----w C:\SYS\WINDOWS\system32\dllcache\browser.dll
- 2004-01-21 14:21:08 1,026,048 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
+ 2008-06-20 08:59:20 1,018,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\BROWSEUI.DLL
- 1999-12-07 12:00:00 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
+ 2005-01-12 19:39:46 56,080 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cabinet.dll
- 2004-03-24 02:17:02 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
+ 2005-01-12 19:39:48 394,512 -c----w C:\SYS\WINDOWS\system32\dllcache\callcont.dll
- 2004-03-11 21:29:22 169,232 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
+ 2005-09-05 08:18:46 165,648 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrv.dll
- 2004-03-11 21:29:23 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-09-05 08:18:46 595,728 -c----w C:\SYS\WINDOWS\system32\dllcache\catsrvut.dll
+ 2005-04-08 11:51:14 63,248 -c----w C:\SYS\WINDOWS\system32\dllcache\cdfs.sys
- 2002-08-29 05:14:40 142,336 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdfview.dll
+ 2008-06-20 08:59:26 143,360 -c--a-w C:\SYS\WINDOWS\system32\dllcache\CDFVIEW.DLL
+ 2007-07-30 17:19:20 92,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cdm.dll
+ 2005-08-30 09:29:42 2,532,112 -c----w C:\SYS\WINDOWS\system32\dllcache\cdosys.dll
+ 2003-12-10 02:47:42 13,584 -c----w C:\SYS\WINDOWS\system32\dllcache\chkdsk.exe
- 1999-12-07 12:00:00 68,368 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
+ 2005-01-12 19:39:48 68,880 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ciodm.dll
- 2004-03-11 21:29:23 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
+ 2005-09-05 08:18:46 97,040 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatex.dll
- 2004-03-11 21:29:21 552,720 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2005-09-05 08:18:46 551,184 -c----w C:\SYS\WINDOWS\system32\dllcache\clbcatq.dll
+ 2004-12-02 16:38:18 237,840 -c----w C:\SYS\WINDOWS\system32\dllcache\ClusCfg.exe
+ 2004-12-02 16:37:06 693,520 -c----w C:\SYS\WINDOWS\system32\dllcache\clussvc.exe
- 2003-09-21 00:45:05 236,304 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
+ 2004-11-02 22:48:18 236,816 -c----w C:\SYS\WINDOWS\system32\dllcache\CMD.EXE
- 2004-03-11 21:29:23 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
+ 2005-09-05 08:18:46 41,744 -c----w C:\SYS\WINDOWS\system32\dllcache\colbact.dll
- 2004-03-11 21:29:23 198,416 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
+ 2005-09-05 08:18:46 197,904 -c----w C:\SYS\WINDOWS\system32\dllcache\comadmin.dll
- 2002-08-29 05:14:40 529,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
+ 2006-08-28 08:44:10 530,192 -c--a-w C:\SYS\WINDOWS\system32\dllcache\comctl32.dll
- 2004-03-11 21:29:23 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
+ 2005-09-05 08:18:46 97,552 -c----w C:\SYS\WINDOWS\system32\dllcache\comrepl.dll
- 2004-03-11 21:29:23 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
+ 2005-09-05 08:18:48 342,288 -c----w C:\SYS\WINDOWS\system32\dllcache\comsetup.dll
- 2004-03-11 21:29:24 1,467,664 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
+ 2005-09-05 08:18:48 1,471,248 -c----w C:\SYS\WINDOWS\system32\dllcache\comsvcs.dll
- 2004-03-11 21:29:24 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
+ 2005-09-05 08:18:48 625,936 -c----w C:\SYS\WINDOWS\system32\dllcache\comuid.dll
- 2004-03-24 02:17:00 543,504 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
+ 2005-04-08 11:54:32 563,984 -c----w C:\SYS\WINDOWS\system32\dllcache\CRYPT32.DLL
- 2002-08-29 05:14:40 89,872 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
+ 2003-06-19 10:05:04 90,384 -c--a-w C:\SYS\WINDOWS\system32\dllcache\cryptdlg.dll
- 2004-03-24 02:17:01 61,200 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
+ 2005-04-08 11:54:34 63,760 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptnet.dll
- 2004-03-24 02:17:01 76,048 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
+ 2005-04-21 08:08:44 78,096 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptsvc.dll
- 2003-06-18 10:13:34 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-12 19:39:46 443,664 -c----w C:\SYS\WINDOWS\system32\dllcache\cryptui.dll
+ 2005-01-13 09:09:50 35,088 -c----w C:\SYS\WINDOWS\system32\dllcache\csrsrv.dll
- 1999-12-07 12:00:00 1,133,840 -c--a-w C:\SYS\WINDOWS\system32\dllcache\danim.dll
+ 2008-04-20 22:03:58 1,054,208 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DANIM.DLL
- 2004-03-01 19:58:18 561,424 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2008-03-27 07:00:14 554,008 -c----w C:\SYS\WINDOWS\system32\dllcache\dao360.dll
+ 2006-12-22 16:55:42 73,728 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnetlib.dll
+ 2006-12-22 16:55:42 28,672 -c----w C:\SYS\WINDOWS\system32\dllcache\DBnmpntw.dll
+ 2006-05-19 09:18:24 89,872 -c----w C:\SYS\WINDOWS\system32\dllcache\dhcpcsvc.dll
- 2002-08-29 05:06:02 76,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\directdb.dll
+ 2008-06-25 13:35:50 75,776 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DIRECTDB.DLL
- 2004-03-24 02:17:00 134,928 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
+ 2008-06-25 09:41:54 137,488 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dnsapi.dll
- 2004-03-24 02:17:01 92,432 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
+ 2008-02-15 13:24:10 96,528 -c----w C:\SYS\WINDOWS\system32\dllcache\dnsrslvr.dll
- 2002-12-11 23:14:32 217,600 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
+ 2004-04-14 12:56:46 219,648 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dplayx.dll
- 2002-12-11 23:14:32 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-04-12 21:11:26 76,800 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dpwsockx.dll
+ 2004-12-09 18:52:54 114,960 -c----w C:\SYS\WINDOWS\system32\dllcache\dsexts.dll
+ 2005-01-12 19:39:50 299,792 -c----w C:\SYS\WINDOWS\system32\dllcache\dsprop.dll
- 2004-02-19 22:03:09 1,816,552 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-03-06 05:07:31 1,842,672 -c----w C:\SYS\WINDOWS\system32\dllcache\dtcsetup.exe
+ 2006-08-22 02:05:26 498,742 -c----w C:\SYS\WINDOWS\system32\dllcache\dxmasf.dll
- 2002-08-29 05:14:40 351,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2008-06-20 07:53:28 351,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTMSFT.DLL
- 2002-08-29 05:14:40 187,392 -c--a-w C:\SYS\WINDOWS\system32\dllcache\dxtrans.dll
+ 2008-06-20 07:53:26 192,512 -c--a-w C:\SYS\WINDOWS\system32\dllcache\DXTRANS.DLL
- 2004-03-11 21:29:22 239,888 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
+ 2008-07-10 10:00:14 251,152 -c----w C:\SYS\WINDOWS\system32\dllcache\es.dll
- 2004-03-24 02:17:01 47,888 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-04-08 11:54:32 49,424 -c----w C:\SYS\WINDOWS\system32\dllcache\EVENTLOG.DLL
+ 2005-07-19 10:44:44 142,288 -c----w C:\SYS\WINDOWS\system32\dllcache\fastfat.sys
+ 2005-01-12 19:39:50 138,000 -c----w C:\SYS\WINDOWS\system32\dllcache\faxui.dll
+ 2005-02-22 07:05:10 18,192 -c----w C:\SYS\WINDOWS\system32\dllcache\fltlib.dll
+ 2004-12-02 13:19:44 22,800 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmc.exe
+ 2005-04-14 06:59:02 136,880 -c----w C:\SYS\WINDOWS\system32\dllcache\fltmgr.sys
- 1999-12-07 12:00:00 78,096 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
+ 2005-11-24 14:54:16 79,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontsub.dll
- 1999-12-07 12:00:00 38,672 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-11-06 14:38:16 47,376 -c--a-w C:\SYS\WINDOWS\system32\dllcache\fontview.exe
+ 2004-12-02 13:00:00 116,400 -c----w C:\SYS\WINDOWS\system32\dllcache\ftdisk.sys
- 2004-03-23 16:17:02 242,448 -c----w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2008-02-19 17:08:58 236,304 -c--a-w C:\SYS\WINDOWS\system32\dllcache\GDI32.DLL
+ 2005-01-12 19:39:50 305,424 -c----w C:\SYS\WINDOWS\system32\dllcache\gpedit.dll
- 1999-12-07 12:00:00 41,232 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2004-12-09 18:10:08 41,744 -c--a-w C:\SYS\WINDOWS\system32\dllcache\grpconv.exe
+ 2005-01-12 19:39:50 163,088 -c----w C:\SYS\WINDOWS\system32\dllcache\h323msp.dll
+ 2005-04-15 01:08:24 10,752 -c----w C:\SYS\WINDOWS\system32\dllcache\hh.exe
+ 2005-04-21 14:16:56 38,912 -c----w C:\SYS\WINDOWS\system32\dllcache\hhsetup.dll
+ 2006-07-21 15:08:54 72,704 -c----w C:\SYS\WINDOWS\system32\dllcache\hlink.dll
+ 2005-01-12 19:39:52 247,056 -c----w C:\SYS\WINDOWS\system32\dllcache\httpext.dll
+ 2005-01-12 19:39:52 576,784 -c----w C:\SYS\WINDOWS\system32\dllcache\hypertrm.dll
+ 2005-06-29 07:30:56 246,032 -c----w C:\SYS\WINDOWS\system32\dllcache\icm32.dll
- 2002-08-29 05:14:40 231,424 -c--a-w C:\SYS\WINDOWS\system32\dllcache\iepeers.dll
+ 2008-06-20 07:53:34 236,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\IEPEERS.DLL
+ 2005-01-12 19:39:52 122,640 -c----w C:\SYS\WINDOWS\system32\dllcache\iischema.dll
+ 2005-02-22 08:42:14 57,104 -c----w C:\SYS\WINDOWS\system32\dllcache\iisext.dll
- 2002-08-29 05:06:02 593,408 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetcomm.dll
+ 2008-06-25 13:35:58 601,088 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETCOMM.DLL
- 2002-08-29 05:06:02 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inetres.dll
+ 2008-06-25 13:35:54 47,616 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INETRES.DLL
- 2002-08-29 05:14:40 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\inseng.dll
+ 2008-06-20 07:53:38 69,632 -c--a-w C:\SYS\WINDOWS\system32\dllcache\INSENG.DLL
+ 2006-05-19 09:18:24 68,368 -c----w C:\SYS\WINDOWS\system32\dllcache\iphlpapi.dll
+ 2004-08-11 22:42:40 67,344 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnat.sys
- 2004-03-24 02:17:02 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
+ 2005-01-12 19:39:52 442,640 -c----w C:\SYS\WINDOWS\system32\dllcache\ipnathlp.dll
- 1999-12-07 12:00:00 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
+ 2003-04-21 18:19:44 29,456 -c--a-w C:\SYS\WINDOWS\system32\dllcache\ipsecmon.exe
- 2003-08-27 13:13:52 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
+ 2005-04-21 14:16:56 143,872 -c----w C:\SYS\WINDOWS\system32\dllcache\itircl.dll
- 2004-06-22 22:42:32 123,392 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2005-04-21 14:16:56 128,000 -c----w C:\SYS\WINDOWS\system32\dllcache\itss.dll
+ 2007-08-17 06:48:22 39,184 -c----w C:\SYS\WINDOWS\system32\dllcache\jpeg2x32.dll
- 2001-06-26 14:36:02 589,874 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
+ 2008-01-05 01:05:56 458,752 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jscript.dll
- 2002-08-29 05:14:40 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\jsproxy.dll
+ 2008-06-20 07:53:56 12,288 -c--a-w C:\SYS\WINDOWS\system32\dllcache\JSPROXY.DLL
- 2004-03-24 02:17:02 143,632 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
+ 2005-06-15 04:33:18 149,776 -c----w C:\SYS\WINDOWS\system32\dllcache\kdcsvc.dll
- 2004-03-11 02:37:09 210,192 -c----w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
+ 2005-06-15 04:22:48 208,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\kerberos.dll
- 2004-03-24 02:17:00 742,160 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-04-16 12:44:08 712,976 -c----w C:\SYS\WINDOWS\system32\dllcache\kernel32.dll
+ 2007-05-11 07:41:54 524,560 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakimg.exe
+ 2007-05-11 07:42:16 73,488 -c----w C:\SYS\WINDOWS\system32\dllcache\kodakprv.exe
- 1999-12-07 12:00:00 16,144 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-09-23 11:03:25 17,680 -c--a-w C:\SYS\WINDOWS\system32\dllcache\linkinfo.dll
+ 2005-01-13 16:19:18 85,264 -c----w C:\SYS\WINDOWS\system32\dllcache\LLSSRV.EXE
+ 2005-04-08 11:54:32 266,000 -c----w C:\SYS\WINDOWS\system32\dllcache\localspl.dll
- 2004-02-25 23:59:07 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
+ 2004-12-19 22:30:54 33,552 -c----w C:\SYS\WINDOWS\system32\dllcache\lsass.exe
- 2004-03-24 02:17:02 37,136 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
+ 2007-03-06 11:17:46 38,160 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mf3216.dll
- 1999-12-07 12:00:00 924,432 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 927,504 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mfc40u.dll
+ 2006-11-02 17:31:40 1,011,774 -c----w C:\SYS\WINDOWS\system32\dllcache\mfc42u.dll
+ 2006-07-06 09:52:40 613,648 -c----w C:\SYS\WINDOWS\system32\dllcache\mmc.exe
- 2004-02-10 19:47:54 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
+ 2005-08-16 08:40:58 30,160 -c----w C:\SYS\WINDOWS\system32\dllcache\mountmgr.sys
- 2004-03-24 02:17:02 54,544 -c----w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-04-16 12:44:08 54,032 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mpr.dll
+ 2007-10-17 07:22:06 292,112 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1repl.dll
+ 2007-10-16 13:51:24 14,096 -c----w C:\SYS\WINDOWS\system32\dllcache\mq1sync.exe
+ 2007-10-16 13:51:26 77,712 -c----w C:\SYS\WINDOWS\system32\dllcache\mqac.sys
+ 2007-10-17 07:22:06 218,384 -c----w C:\SYS\WINDOWS\system32\dllcache\mqads.dll
+ 2007-10-16 13:51:26 25,360 -c----w C:\SYS\WINDOWS\system32\dllcache\mqbkup.exe
+ 2007-10-17 07:22:06 29,456 -c----w C:\SYS\WINDOWS\system32\dllcache\mqcertui.dll
+ 2007-10-17 07:22:06 50,448 -c----w C:\SYS\WINDOWS\system32\dllcache\mqclus.dll
+ 2007-10-17 07:22:06 29,968 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdbodbc.dll
+ 2007-10-17 07:22:06 77,072 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdscli.dll
+ 2007-10-17 07:22:06 42,256 -c----w C:\SYS\WINDOWS\system32\dllcache\mqdssrv.dll
- 1999-12-07 12:00:00 87,312 -c--a-w C:\SYS\WINDOWS\system32\dllcache\mqlogmgr
0
Utilisateur anonyme
 
desinstal completement avast et instal avira antivir qui est bien plus performant et bien moin lourd , avast est un boulet , la preuve ton infection ;-))

desinstalateur pour avast : http://www.commentcamarche.net/telecharger/telechargement 34055246 utilitaire de desinstallation de avast

anti virus : antivir

https://www.malekal.com/avira-free-security-antivirus-gratuit/

http://mickael.barroux.free.fr/securite/antivir.php <- tutoriel + complet
0
Kartman
 
telechargement d'antivir en cours , Que pense tu des Scan ?
0
Utilisateur anonyme
 
les rapports ne sont pas propres , il reste des saletées une fois antivir instalé et configuré ( étapes importante configure comme cité dans le tutoriel,

redemarre en mode sans echecs

puis effectue un scan complet du pc , met tout ce que trouveras antivir en quarentaine

redemarre ton pc normalement ,

*ouvre antivir
*cherche le rapport de scan
*copie et colle le rapport dans ta prochaine réponse
*poste un nouveau rapport hijackthis
0
Kartman
 
Bonsoir, j'ai installé et configuré Antivir, mais je n'ais pas pu demarrer sans echec car il refuse le mot de passe meme en tapant Administrateur dans la fenetre Utilisateur, cela dit j'ai fais un scan Antivir Detections 0 ,Suspicious Files 0,Warnings 6, objects searched 0, Hidden Objects 0 .
Je te laisse le Post d'antivir:


Avira AntiVir Personal
Report file date: 2008-08-22 20:55

Scanning for 1564721 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows 2000
Windows version: (Service Pack 4) [5.0.2195]
Boot mode: Normally booted
Username: atelier
Computer name: D1Z3550G

Version information:
BUILD.DAT : 8.1.0.331 16934 Bytes 2008-08-12 11:46:00
AVSCAN.EXE : 8.1.4.7 315649 Bytes 2008-06-26 08:57:53
AVSCAN.DLL : 8.1.4.0 40705 Bytes 2008-05-26 07:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 2008-06-12 12:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 2008-05-26 07:58:52
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 10:33:34
ANTIVIR1.VDF : 7.0.5.1 8182784 Bytes 2008-06-24 13:54:15
ANTIVIR2.VDF : 7.0.6.10 2587136 Bytes 2008-08-14 20:27:01
ANTIVIR3.VDF : 7.0.6.45 192000 Bytes 2008-08-20 20:27:05
Engineversion : 8.1.1.23
AEVDF.DLL : 8.1.0.5 102772 Bytes 2008-02-25 09:58:21
AESCRIPT.DLL : 8.1.0.68 315770 Bytes 2008-08-20 20:27:21
AESCN.DLL : 8.1.0.23 119156 Bytes 2008-07-10 12:44:49
AERDL.DLL : 8.1.0.20 418165 Bytes 2008-04-24 12:37:48
AEPACK.DLL : 8.1.2.1 364917 Bytes 2008-07-15 12:58:35
AEOFFICE.DLL : 8.1.0.22 192890 Bytes 2008-08-20 20:27:18
AEHEUR.DLL : 8.1.0.50 1388918 Bytes 2008-08-20 20:27:16
AEHELP.DLL : 8.1.0.15 115063 Bytes 2008-07-10 12:44:48
AEGEN.DLL : 8.1.0.36 315764 Bytes 2008-08-20 20:27:09
AEEMU.DLL : 8.1.0.7 430452 Bytes 2008-07-31 08:33:21
AECORE.DLL : 8.1.1.8 172406 Bytes 2008-07-31 08:33:21
AEBB.DLL : 8.1.0.1 53617 Bytes 2008-07-10 12:44:48
AVWINLL.DLL : 1.0.0.12 15105 Bytes 2008-07-09 08:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 2008-05-16 09:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 2008-08-20 20:27:06
AVREG.DLL : 8.0.0.1 33537 Bytes 2008-05-09 11:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 2008-02-12 08:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 2008-06-12 12:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 2008-01-22 17:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 2008-06-12 12:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 2008-01-25 12:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 2008-06-12 13:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 2008-06-27 13:34:37

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: 2008-08-22 20:55

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'oaui.exe' - '0' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'mspmspsv.exe' - '1' Module(s) have been scanned
Scan process 'WinMgmt.exe' - '1' Module(s) have been scanned
Scan process 'stisvc.exe' - '1' Module(s) have been scanned
Scan process 'regsvc.exe' - '1' Module(s) have been scanned
Scan process 'lcfd.exe' - '1' Module(s) have been scanned
Scan process 'hidserv.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'LEXPPS.EXE' - '1' Module(s) have been scanned
Scan process 'LEXBCES.EXE' - '1' Module(s) have been scanned
Scan process 'oasrv.exe' - '0' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'LSASS.EXE' - '1' Module(s) have been scanned
Scan process 'SERVICES.EXE' - '1' Module(s) have been scanned
Scan process 'WINLOGON.EXE' - '1' Module(s) have been scanned
Scan process 'CSRSS.EXE' - '1' Module(s) have been scanned
Scan process 'SMSS.EXE' - '1' Module(s) have been scanned
25 processes with 25 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Master boot sector HD1
[INFO] No virus was found!
[WARNING] System error [21]: Le périphérique n'est pas prêt.

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '46' files ).


Starting the file scan:

Begin scan in 'C:\' <DCS>
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Program Files\Kazaa\BGP2P\plugins\plugins.cab.cab (incomplete)
[0] Archive type: CAB (Microsoft)
--> cran.xmd
[WARNING] No further files can be extracted from this archive. The archive will be closed
C:\SYS\WINDOWS\system32\drivers\OADriver.sys
[WARNING] The file could not be opened!
C:\SYS\WINDOWS\system32\drivers\OAmon.sys
[WARNING] The file could not be opened!
C:\SYS\WINDOWS\system32\drivers\oanet.sys
[WARNING] The file could not be opened!


End of the scan: 2008-08-22 21:27
Used time: 32:33 Minute(s)

The scan has been done completely.

5175 Scanning directories
191401 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
4 Files cannot be scanned
191397 Files not concerned
8798 Archives were scanned
6 Warnings
0 Notes
0
Utilisateur anonyme
 
bonsoir , comment se porte le pc ?

poste un rapport hijackthis .
0
kartman
 
le pc se comporte normalement , je te poste le rapport Hijackthis, dit moi ce que tu penses du rapport Antivir.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:05, on 2008-08-22
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\SYS\WINDOWS\System32\smss.exe
C:\SYS\WINDOWS\system32\csrss.exe
C:\SYS\WINDOWS\system32\winlogon.exe
C:\SYS\WINDOWS\system32\services.exe
C:\SYS\WINDOWS\system32\lsass.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\System32\svchost.exe
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\SYS\WINDOWS\system32\LEXBCES.EXE
C:\SYS\WINDOWS\system32\LEXPPS.EXE
C:\SYS\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\SYS\WINDOWS\system32\hidserv.exe
C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
C:\SYS\WINDOWS\system32\regsvc.exe
C:\SYS\WINDOWS\system32\stisvc.exe
C:\SYS\WINDOWS\System32\WBEM\WinMgmt.exe
C:\SYS\WINDOWS\system32\mspmspsv.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\system32\wuauclt.exe
C:\Program Files\Tall Emu\Online Armor\oaui.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\SYS\WINDOWS\explorer.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://bingpage.com/?cm=75685<=1&it=2008-08-06%2021%3A11%3A55&dt=2008-08-17%2021%3A38%3A12&q=http://www.msn.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O10 - Unknown file in Winsock LSP: c:\sys\windows\system32\nwprovau.dll
O20 - AppInit_DLLs: iwajmz.dll
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (file missing)
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (file missing)
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\SYS\WINDOWS\System32\dmadmin.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Tivoli Endpoint (lcfd) - Unknown owner - C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\SYS\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
0
Utilisateur anonyme
 
bonjour il reste des traces de avast dans tes programmes

execute l'utilitaire de desinstalation de avast

ensuite recherche dans tes programmes :

C:\Program Files\Kazaa\BGP2P\plugins\plugins.cab.cab

suprime ce programme

ensuite

*deconnecte toi d'internet et ferme tout tes programmes en cours
*ouvre hijackthis
*do a scan systeme only et coche la case qui se trouve devant cette ligne
*clic sur fix chequed

ensuite ;-))

-> Télécharge Ccleaner (n'installe pas la barre d'outil Yahoo): (by chiquitine29)

http://download.piriform.com/ccsetup210.exe

https://www.01net.com/

-> Tuto : https://www.malekal.com/tutoriel-ccleaner/

et pour finir :

* pour supprimer les outils/fix utilisés :

Télécharge ToolsCleaner sur ton bureau.
-->
ftp://ftp.commentcamarche.com/download/ToolsCleaner2.exe
https://www.commentcamarche.net/telecharger/ 34055291 toolscleaner
http://pc-system.fr/

# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).

et fais ceci :

Désactive et réactive ta restauration system

Tuto xp : http://service1.symantec.com/
0
kartman
 
Bonjour, j'ai eliminé le fichier :C:\Program Files\Kazaa\BGP2P\plugins\plugins.cab.cab
j'ai refais un scan Kijackthis en cliquant sur Fix chequed, j'ai telecharché Ccleaner aue j'ai installé j'ai telechargé
ToolsCleaner mais celui ci est impossible a installé et je ne trouve pas le rapport TC Cleaner.
Je ne sais pas comment desactivé et activé la restauration systeme.
peut tu me dire si il reste des traces de Virus ?
voici le dernier rapport Hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:36, on 2008-08-24
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\SYS\WINDOWS\System32\smss.exe
C:\SYS\WINDOWS\system32\csrss.exe
C:\SYS\WINDOWS\system32\winlogon.exe
C:\SYS\WINDOWS\system32\services.exe
C:\SYS\WINDOWS\system32\lsass.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\System32\svchost.exe
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\SYS\WINDOWS\system32\LEXBCES.EXE
C:\SYS\WINDOWS\system32\LEXPPS.EXE
C:\SYS\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\SYS\WINDOWS\system32\hidserv.exe
C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
C:\SYS\WINDOWS\system32\regsvc.exe
C:\SYS\WINDOWS\system32\stisvc.exe
C:\SYS\WINDOWS\System32\WBEM\WinMgmt.exe
C:\SYS\WINDOWS\system32\mspmspsv.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\system32\svchost.exe
C:\SYS\WINDOWS\Explorer.EXE
C:\Program Files\Tall Emu\Online Armor\oaui.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://bingpage.com/?cm=75685<=1&it=2008-08-06%2021%3A11%3A55&dt=2008-08-17%2021%3A38%3A12&q=http://www.msn.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O10 - Unknown file in Winsock LSP: c:\sys\windows\system32\nwprovau.dll
O20 - AppInit_DLLs: iwajmz.dll
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe (file missing)
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe (file missing)
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\SYS\WINDOWS\System32\dmadmin.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Tivoli Endpoint (lcfd) - Unknown owner - C:\Program Files\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\SYS\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
0
Utilisateur anonyme
 
bonjour ton pc est encore un petit peu pris

de plus il reste des traces de avast , execute l'utilitaire de desinstalation de avast : http://www.commentcamarche.net/telecharger/telechargement 34055246 utilitaire de desinstallation de avast

* Fais un scan antivirus en ligne ICI :

https://www.bitdefender.fr/

et copie colle le résultat ici
* En bas, à gauche de la fenêtre, clique sur "BitDefender SCAN ONLINE"
* Dans la nouvelle fenêtre, clique sur "I agree"
* La fenêtre change encore, clique sur "Click here to scan"
* Les signatures se chargent, etc.

Tuto (merci Morgane)

http://pageperso.aol.fr/loraline60/bitdefender_scan.htm

le rapport de scan se trouve ici

C:\windows\bdoscan8\scanres.txt ou scanres.html
0
kartman
 
Bonjour, j'ai telechergé l'utilitaire de desinstallation d'avst et le message suivant apparait: Alwil Software Uninstall Utility
the avast self protection modules enabled. For this reason the operation either run this program from windows safe mode or disable the avast ! self protection(via setting troubls shooting page.)
ensuite j'ai telechargé et procedé a un scan bitdefender, voici le rapport :


[General]
App = "BitDefender Online Scanner v8"
Date = 25:08:2008
Time = 19:41:29
Scan Path = A:\;C:\;D:\;F:\;

[Engines Info]
Virus Definitions = 38731
Engine build = "AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)"
Scan plugins = 2
Archive plugins = 10
Unpack plugins = 2
E-mail plugins = 0
System plugins = 1

[Scan Statistics]
Folders = 4816
Files = 31926
Archives = 517
Packed files = 11
Identified viruses = 0
Infected files = 0
Warnings = 0
Suspect files = 0
Disinfected files = 0
Deleted files = 0
Copied files = 0
Moved files = 0
Renamed files = 0
I/O Errors = 20

[Scan Settings]
SecondAction = Delete
FirstAction = Disinfect
Heuristics = 1
Enable Warnings = 1
Exclude Ext =
Extensions = exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Scan Emails = 1
Scan Archives = 1
Scan Packed = 1
Scan Files = 1
Scan Boot = 1
Verify Memory = 0

[Scan Results]
Line00000000 = "No problems found."
0
Utilisateur anonyme
 
il me reste un doute fait ceci stp afin de l'oter

Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.
Déroule la liste des instructions ci-dessous :
• Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
• Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum
0
Kartman
 
Bonjour, j'ai bien telechargé SDFIX et enregistré sur mon bureau, je ne peut pas redemarrer le Pc en mode sans echec car il ne prend pas le mot de passe qui doit etre le meme qu'a l'ouverture de windows, j'ai donc executer SDFIX je te laisse le rapport:


DBFix Version 1.001
Run on mar. 2008-08-26 @ 20:48


No DelfBot Files Found

No DelfBot Run Values Found

Finished!
0
Utilisateur anonyme
 
bon on va regarder tout celas

pour commencer je vois que avast est toujours present dans ton rapport

avast est un dans tes seervices regarde ici http://coolxp.free.fr/tutorial/services/services.htm

et stoppe touts les services de avast !

tiens moi au courant de ton avancement
0
Kartman
 
Bonjour, j'ai supprimé le restant d'avast et désactivé les dernieres fonctions dans le service ,tout semble Ok
0