Infecté par Trojan.JS.Injector.A

Bonjour a tous ...

alors voila mon antivirus Bitdefender me sort tous les 20 seconde ( a chaque chargement de page internet )

le même message :

Bitdefender a bloqué plusieurs virus sur votre ordinateur !

Nom du virus : Trojan.JS.Injector.A

chemin : C/document and s... /flo / Local setting / Temp

et les fichiers sont :

eve.exe
b720x90.tmp
b720x300.tmp

et tout un tas d'autres ....

vola un rapport Hijackthis .... :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:48:50, on 22/09/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Fichiers communs\Gestionnaire d'installation SolidWorks\Scheduler\sldIMScheduler.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\Program Files\Razer\Diamondback 3G\razerhid.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDPop3.exe
C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDMedia.exe
C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
C:\PROGRA~1\MICROS~2\rapimgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Razer\Diamondback 3G\razertra.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Razer\Diamondback 3G\razerofa.exe
C:\WINDOWS\system32\msiexec.exe
C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe
C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
C:\WINDOWS\system32\MsiExec.exe
C:\WINDOWS\system32\MsiExec.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Flo\Bureau\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.01net.com/telecharger/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.01net.com/telecharger/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.01net.com/telecharger/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1F5FDA83-4379-4C6A-94AD-CC7BC688505A} - C:\WINDOWS\system32\rqRJBSKD.dll
O2 - BHO: (no name) - {209993B0-20C1-4AA9-B14E-A014EFB5F421} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.09\RivaTuner.exe" /S
O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Diamondback] C:\Program Files\Razer\Diamondback 3G\razerhid.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [BMcfcd7ae7] Rundll32.exe "C:\WINDOWS\system32\djewemgu.dll",s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: ddgdhd.dll
O20 - Winlogon Notify: rqRJBSKD - C:\WINDOWS\SYSTEM32\rqRJBSKD.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe

--
End of file - 8575 bytes

Malwarebytes' Antimalware ma déjà détecté 16 soucis mais je ne pense qu'il y est que cela ...

merci de bien vouloir m'aider ...

Amicalement Floppy

--

C'est la petite branche d'arbre que tu négliges, qui te blessera l'oeil.
Configuration: Windows XP
Firefox 3.0.1

5 réponses

  1. Contributeur sécurité
    fais le message 4
    1
    1. Contributeur sécurité
      slt,

      télécharge combofix (par sUBs) ici :

      http://download.bleepingcomputer.com/sUBs/ComboFix.exe

      et enregistre le sur le bureau.

      déconnecte toi d'internet et ferme toutes tes applications.

      désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)

      double-clique sur combofix.exe et suis les instructions

      à la fin, il va produire un rapport C:\ComboFix.txt

      réactive ton parefeu, ton antivirus, la garde de ton antispyware

      copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

      Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

      Tu as un tutoriel complet ici :

      https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
      -1
      1. je te remerci de m'aider....

        alors voila le rapport..

        ComboFix 08-09-20.05 - Flo 2008-09-22 17:33:18.3 - NTFSx86
        Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.2856 [GMT 2:00]
        Lancé depuis: C:\Documents and Settings\Flo\Bureau\ComboFix.exe
        * Un nouveau point de restauration a été créé
        * Resident AV is active

        [color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
        .

        (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
        .

        C:\WINDOWS\system32\BReWErS.dll
        C:\WINDOWS\system32\rtl60.bpl

        .
        ((((((((((((((((((((((((((((( Fichiers créés du 2008-08-22 au 2008-09-22 ))))))))))))))))))))))))))))))))))))
        .

        2008-09-22 16:02 . 2008-09-22 16:02 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Malwarebytes
        2008-09-22 16:01 . 2008-06-22 10:53 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
        2008-09-22 16:01 . 2008-06-22 10:53 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
        2008-09-22 16:01 . 2008-06-22 10:02 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
        2008-09-22 16:01 . 2008-06-22 10:53 <REP> d-------- C:\Documents and Settings\Administrateur\Mes documents
        2008-09-22 16:01 . 2008-06-22 10:53 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
        2008-09-22 16:01 . 2008-06-22 10:53 <REP> d-------- C:\Documents and Settings\Administrateur\Favoris
        2008-09-22 16:01 . 2008-09-22 17:08 <REP> d-------- C:\Documents and Settings\Administrateur\Bureau
        2008-09-22 16:01 . 2008-09-22 17:05 <REP> d-------- C:\Documents and Settings\Administrateur
        2008-09-22 15:53 . 2008-09-22 15:53 13,104 --a------ C:\WINDOWS\system32\GDIPFONTCACHEV1.DAT
        2008-09-22 14:37 . 2008-09-22 14:37 113,152 --a------ C:\WINDOWS\system32\esgndtcj.dll
        2008-09-21 20:37 . 2008-09-21 20:37 <REP> d-------- C:\Documents and Settings\Flo\Application Data\Disney Interactive Studios
        2008-09-21 19:56 . 2008-09-21 19:56 <REP> d-------- C:\Program Files\Disney Interactive Studios
        2008-09-20 16:54 . 2008-09-20 16:54 <REP> d--h-c--- C:\Documents and Settings\All Users\Application Data\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
        2008-09-20 11:54 . 2008-09-20 13:34 <REP> d-------- C:\Program Files\DAEMON Tools Lite
        2008-09-20 11:50 . 2008-09-20 11:50 <REP> d-------- C:\Documents and Settings\Flo\Application Data\DAEMON Tools
        2008-09-20 11:02 . 2008-07-12 08:18 3,851,784 --a------ C:\WINDOWS\system32\D3DX9_39.dll
        2008-09-20 11:02 . 2008-07-12 08:18 1,493,528 --a------ C:\WINDOWS\system32\D3DCompiler_39.dll
        2008-09-20 11:02 . 2008-07-31 10:40 509,448 --a------ C:\WINDOWS\system32\XAudio2_2.dll
        2008-09-20 11:02 . 2008-07-12 08:18 467,984 --a------ C:\WINDOWS\system32\d3dx10_39.dll
        2008-09-20 11:02 . 2008-07-31 10:41 238,088 --a------ C:\WINDOWS\system32\xactengine3_2.dll
        2008-09-20 11:02 . 2008-07-31 10:41 68,616 --a------ C:\WINDOWS\system32\XAPOFX1_1.dll
        2008-09-20 11:00 . 2008-09-21 20:32 1,001 --a------ C:\WINDOWS\disney.ini
        2008-09-20 03:37 . 2008-09-20 03:37 <REP> d-------- C:\Program Files\Microsoft Games
        2008-09-19 18:18 . 2008-09-19 18:18 <REP> d-------- C:\Program Files\Sierra Entertainment
        2008-09-19 14:53 . 2008-09-19 14:53 <REP> d-------- C:\Program Files\Deep Silver
        2008-09-19 14:15 . 2008-05-30 14:11 3,850,760 --a------ C:\WINDOWS\system32\D3DX9_38.dll
        2008-09-19 14:15 . 2008-05-30 14:11 1,491,992 --a------ C:\WINDOWS\system32\D3DCompiler_38.dll
        2008-09-19 14:15 . 2008-05-30 14:19 507,400 --a------ C:\WINDOWS\system32\XAudio2_1.dll
        2008-09-19 14:15 . 2008-05-30 14:11 467,984 --a------ C:\WINDOWS\system32\d3dx10_38.dll
        2008-09-19 14:15 . 2008-05-30 14:18 238,088 --a------ C:\WINDOWS\system32\xactengine3_1.dll
        2008-09-19 14:15 . 2008-05-30 14:17 65,032 --a------ C:\WINDOWS\system32\XAPOFX1_0.dll
        2008-09-19 14:15 . 2008-05-30 14:17 25,608 --a------ C:\WINDOWS\system32\X3DAudio1_4.dll
        2008-09-19 14:14 . 2008-09-19 14:14 <REP> d-------- C:\WINDOWS\Logs
        2008-09-19 13:47 . 2008-09-19 13:47 502 --a------ C:\WINDOWS\[u]0[/u]
        2008-09-19 13:47 . 2008-09-19 13:47 81 --a------ C:\WINDOWS\Times New Roman
        2008-09-19 13:46 . 2008-09-19 13:46 <REP> d-------- C:\Program Files\SoftwarePassport
        2008-09-19 13:46 . 2008-09-19 13:46 <REP> d-------- C:\Documents and Settings\All Users\Application Data\InstallShield
        2008-09-19 13:46 . 2004-03-09 01:00 609,824 --a------ C:\WINDOWS\system32\COMCTL32.OCX
        2008-09-19 13:46 . 2004-03-09 01:00 212,240 --a------ C:\WINDOWS\system32\RICHTX32.OCX
        2008-09-19 13:46 . 2007-02-26 00:42 53,248 --a------ C:\WINDOWS\system32\ArmAccess.dll
        2008-09-19 13:46 . 2007-06-15 15:03 29,656 --a------ C:\WINDOWS\system32\Lanceur2.exe
        2008-09-19 13:45 . 2008-09-19 13:45 <REP> d-------- C:\Program Files\Mindscape
        2008-09-19 13:45 . 2003-01-30 14:04 1,500,160 --a------ C:\WINDOWS\system32\CC3260MT.DLL
        2008-09-19 13:45 . 2002-02-01 08:00 1,326,080 --a------ C:\WINDOWS\system32\vcl60.bpl
        2008-09-19 13:45 . 1999-03-03 21:00 908,800 --a------ C:\WINDOWS\system32\CP3245MT.DLL
        2008-09-19 13:45 . 2004-09-28 20:25 478,208 --a------ C:\WINDOWS\system32\radevcl.bpl
        2008-09-19 13:45 . 2002-02-01 08:00 262,656 --a------ C:\WINDOWS\system32\vcldb60.bpl
        2008-09-19 13:45 . 2002-02-01 08:00 254,464 --a------ C:\WINDOWS\system32\dbrtl60.bpl
        2008-09-19 13:45 . 2002-03-06 06:00 213,504 --a------ C:\WINDOWS\system32\vclx60.bpl
        2008-09-19 13:45 . 2004-08-09 06:04 73,728 --a------ C:\WINDOWS\system32\ISUSPM.cpl
        2008-09-19 13:45 . 1998-02-09 20:00 29,952 --a------ C:\WINDOWS\system32\BORLNDMM.DLL
        2008-09-18 16:04 . 2008-09-18 16:04 34,308 --a------ C:\WINDOWS\system32\Chip.dll
        2008-09-18 15:55 . 2008-09-18 15:55 27 --a------ C:\WINDOWS\system32\mcheck.mhf
        2008-09-18 03:17 . 2008-09-18 03:17 <REP> d-------- C:\ProgramData
        2008-09-17 12:48 . 2008-09-21 20:32 <REP> d-------- C:\Documents and Settings\Flo\Application Data\BitTorrent
        2008-09-17 12:47 . 2008-09-17 12:48 <REP> d-------- C:\Program Files\BitTorrent
        2008-09-16 23:10 . 2008-09-16 23:10 <REP> d-------- C:\Program Files\TeamSpeak3
        2008-09-13 10:00 . 2008-09-13 10:00 <REP> d-------- C:\Documents and Settings\Flo\Application Data\BlackBean
        2008-09-13 09:36 . 2008-03-05 15:56 3,786,760 --a------ C:\WINDOWS\system32\D3DX9_37.dll
        2008-09-13 09:36 . 2008-03-05 15:56 1,420,824 --a------ C:\WINDOWS\system32\D3DCompiler_37.dll
        2008-09-13 09:36 . 2007-10-12 15:14 1,374,232 --a------ C:\WINDOWS\system32\D3DCompiler_36.dll
        2008-09-13 09:36 . 2008-03-05 16:03 479,752 --a------ C:\WINDOWS\system32\XAudio2_0.dll
        2008-09-13 09:36 . 2008-02-05 23:07 462,864 --a------ C:\WINDOWS\system32\d3dx10_37.dll
        2008-09-13 09:36 . 2007-10-02 09:56 444,776 --a------ C:\WINDOWS\system32\d3dx10_36.dll
        2008-09-13 09:36 . 2007-10-22 03:39 267,272 --a------ C:\WINDOWS\system32\xactengine2_10.dll
        2008-09-13 09:36 . 2007-07-20 00:57 267,112 --a------ C:\WINDOWS\system32\xactengine2_9.dll
        2008-09-13 09:36 . 2008-03-05 16:03 238,088 --a------ C:\WINDOWS\system32\xactengine3_0.dll
        2008-09-13 09:36 . 2008-03-05 16:00 25,608 --a------ C:\WINDOWS\system32\X3DAudio1_3.dll
        2008-09-13 09:24 . 2008-09-13 09:24 <REP> d-------- C:\Program Files\BlackBeanGames
        2008-09-12 01:17 . 2008-09-12 01:17 <REP> d-------- C:\Documents and Settings\Flo\Application Data\zweitgeist
        2008-09-10 09:41 . 2008-09-10 09:41 81,920 --a------ C:\WINDOWS\system32\frapsvid.dll
        2008-09-09 16:37 . 2008-09-09 16:39 <REP> d-------- C:\Program Files\Trials 2 Second Edition
        2008-09-09 16:37 . 2008-09-09 16:37 <REP> d-------- C:\Program Files\OpenAL
        2008-09-09 16:37 . 2007-10-12 15:14 3,734,536 --a------ C:\WINDOWS\system32\d3dx9_36.dll
        2008-09-07 14:40 . 2007-11-14 15:18 553 -r------- C:\WINDOWS\USetup.iss
        2008-09-07 12:00 . 2008-09-07 12:00 <REP> d-------- C:\Program Files\XPC Tools
        2008-09-07 12:00 . 2008-09-07 12:00 <REP> d--h-c--- C:\Documents and Settings\All Users\Application Data\{BB55CB49-6330-4B53-B9A7-7ACBC2E8F14F}
        2008-09-06 01:39 . 2008-09-06 01:39 <REP> d-------- C:\WINDOWS\system32\AGEIA
        2008-09-06 01:39 . 2008-09-06 01:39 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
        2008-09-06 01:39 . 2008-09-06 01:39 <REP> d-------- C:\Program Files\AGEIA Technologies
        2008-09-06 01:38 . 2008-09-06 01:40 <REP> d-------- C:\WINDOWS\NV38803080.TMP
        2008-09-06 01:26 . 2008-06-06 19:07 53,248 --a------ C:\WINDOWS\system32\CSVer.dll
        2008-09-06 01:18 . 2008-09-06 01:18 <REP> d-------- C:\Program Files\ma-config.com
        2008-09-06 01:18 . 2008-09-06 01:18 <REP> d-------- C:\Documents and Settings\All Users\Application Data\ma-config.com
        2008-09-06 01:12 . 2008-09-06 01:12 <REP> d--h----- C:\WINDOWS\msdownld.tmp
        2008-09-06 00:20 . 2008-09-06 00:20 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Ubisoft
        2008-09-05 23:58 . 2008-09-05 23:58 <REP> d-------- C:\Documents and Settings\Flo\Application Data\MSN6
        2008-09-05 23:58 . 2008-09-05 23:58 <REP> d-------- C:\Documents and Settings\All Users\Application Data\MSN6
        2008-09-05 23:08 . 2008-09-22 15:31 <REP> d-------- C:\Temp
        2008-09-05 21:30 . 2008-09-05 21:30 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
        2008-09-05 21:30 . 2008-09-05 21:30 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_xusb21_01005.Wdf
        2008-09-04 09:03 . 2008-09-04 09:03 <REP> d-------- C:\Program Files\Razer
        2008-09-04 09:03 . 2008-09-04 09:03 <REP> d-------- C:\Documents and Settings\Flo\Application Data\InstallShield
        2008-09-04 09:03 . 2007-06-29 16:44 73,728 --a------ C:\WINDOWS\system32\diamondback.cpl
        2008-09-03 17:03 . 2008-09-03 17:03 <REP> dr-h----- C:\Documents and Settings\Flo\Application Data\SecuROM
        2008-08-31 15:36 . 2008-08-31 15:36 <REP> d-------- C:\WINDOWS\Options
        2008-08-31 15:36 . 2008-08-31 15:36 <REP> d-------- C:\download
        2008-08-31 15:36 . 2003-05-06 18:00 163,072 --a------ C:\WINDOWS\system32\drivers\ov519vid.sys
        2008-08-31 15:36 . 2003-09-25 17:00 135,168 --a------ C:\WINDOWS\ov519cap.exe
        2008-08-31 15:36 . 2003-05-06 18:00 61,440 --a------ C:\WINDOWS\ov519dib.dll
        2008-08-31 15:36 . 2003-05-06 18:00 40,960 --a------ C:\WINDOWS\system32\ov519ext.dll
        2008-08-31 15:36 . 2003-06-02 23:35 40,960 --a------ C:\WINDOWS\CleanDev.exe
        2008-08-31 15:36 . 2003-05-06 18:00 36,099 --a------ C:\WINDOWS\amcap.exe
        2008-08-31 15:36 . 2003-05-06 18:00 25,211 --a------ C:\WINDOWS\system32\drivers\ov519cmd.sys
        2008-08-31 15:36 . 2003-05-06 18:00 25,099 --a------ C:\WINDOWS\system32\ov519ext.ax
        2008-08-31 15:36 . 2003-05-06 18:00 16,426 --a------ C:\WINDOWS\system32\ov519usd.dll
        2008-08-31 15:31 . 2004-08-03 23:07 59,264 --a------ C:\WINDOWS\system32\drivers\USBAUDIO.sys
        2008-08-31 15:31 . 2004-08-03 23:07 59,264 --a--c--- C:\WINDOWS\system32\dllcache\usbaudio.sys
        2008-08-29 15:34 . 2008-08-29 15:34 <REP> d-------- C:\Documents and Settings\Flo\Application Data\Apple Computer
        2008-08-29 15:28 . 2008-08-29 15:28 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
        2008-08-29 15:26 . 2008-08-29 15:26 <REP> d-------- C:\Program Files\QuickTime
        2008-08-29 15:26 . 2008-08-29 15:26 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple Computer
        2008-08-29 15:25 . 2008-08-29 15:36 <REP> d-------- C:\Program Files\Apple Software Update
        2008-08-27 23:18 . 2001-08-17 21:28 762,780 --a--c--- C:\WINDOWS\system32\dllcache\3cwmcru.sys
        2008-08-27 23:03 . 2008-08-27 23:03 42,320 --a------ C:\WINDOWS\system32\xfcodec.dll
        2008-08-26 15:05 . 1998-11-21 22:17 12,800 --a------ C:\WINDOWS\system32\WING32.DLL
        2008-08-25 16:18 . 2008-09-13 13:07 <REP> d-------- C:\Program Files\EA GAMES
        2008-08-25 16:18 . 2004-08-18 10:34 442,368 -ra------ C:\WINDOWS\system32\vp6vfw.dll
        2008-08-25 16:00 . 2008-08-25 16:06 <REP> d-------- C:\Program Files\UltraISO
        2008-08-25 16:00 . 2008-08-25 16:06 <REP> d-------- C:\Program Files\Fichiers communs\EZB Systems
        2008-08-22 02:00 . 2008-08-22 02:00 <REP> d-------- C:\_OTMoveIt
        2008-08-22 00:08 . 2008-09-10 00:04 38,528 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys

        .
        (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
        .
        2008-09-22 15:34 81,984 ----a-w C:\WINDOWS\system32\bdod.bin
        2008-09-22 13:17 --------- d--h--w C:\Program Files\InstallShield Installation Information
        2008-09-22 13:13 --------- d-----w C:\Documents and Settings\Flo\Application Data\IM
        2008-09-22 13:08 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
        2008-09-22 12:43 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
        2008-09-21 23:09 22,328 ----a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
        2008-09-21 23:09 103,736 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
        2008-09-20 22:41 --------- d-----w C:\Documents and Settings\Flo\Application Data\Skype
        2008-09-20 22:25 --------- d-----w C:\Documents and Settings\Flo\Application Data\skypePM
        2008-09-20 09:51 717,296 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
        2008-09-19 11:45 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
        2008-09-19 01:14 --------- d-----w C:\Program Files\Electronic Arts
        2008-09-18 19:54 669,184 ----a-w C:\WINDOWS\system32\pbsvc.exe
        2008-09-18 19:54 66,872 ----a-w C:\WINDOWS\system32\PnkBstrA.exe
        2008-09-18 19:54 22,328 ----a-w C:\Documents and Settings\Flo\Application Data\PnkBstrK.sys
        2008-09-18 13:55 --------- d-----w C:\Program Files\SlySoft
        2008-09-18 12:32 --------- d-----w C:\Program Files\Counter-Strike Source
        2008-09-17 08:28 --------- d-----w C:\Program Files\Xfire
        2008-09-16 21:53 --------- d-----w C:\Documents and Settings\Flo\Application Data\Xfire
        2008-09-13 12:41 413,696 ----a-w C:\WINDOWS\system32\wrap_oal.dll
        2008-09-13 12:41 110,592 ----a-w C:\WINDOWS\system32\OpenAL32.dll
        2008-09-13 10:51 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
        2008-09-13 10:27 --------- d-----w C:\Program Files\Spybot - Search & Destroy
        2008-09-13 10:19 319,488 ----a-w C:\WINDOWS\HideWin.exe
        2008-09-13 07:18 --------- d-----w C:\Program Files\DivX
        2008-09-09 22:03 17,200 ----a-w C:\WINDOWS\system32\drivers\mbam.sys
        2008-09-07 10:05 --------- d-----w C:\Program Files\Realtek
        2008-09-05 20:06 --------- d-----w C:\Program Files\Ubisoft
        2008-08-27 19:25 77,312 ----a-w C:\WINDOWS\system32\drivers\jraid.sys
        2008-08-25 07:06 --------- d-----w C:\Program Files\Windows Live
        2008-08-20 19:11 --------- d-----w C:\Program Files\Fichiers communs\Gestionnaire d'installation SolidWorks
        2008-08-11 19:48 --------- d-----w C:\Documents and Settings\Flo\Application Data\CyberLink
        2008-08-11 19:48 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
        2008-08-11 19:45 --------- d-----w C:\Program Files\CyberLink
        2008-08-11 18:40 --------- d-----w C:\Documents and Settings\Flo\Application Data\dvdcss
        2008-08-11 08:51 --------- d-----w C:\Program Files\MSXML 4.0
        2008-08-10 17:39 --------- d-----w C:\Program Files\Microsoft ActiveSync
        2008-08-07 16:50 --------- d-----w C:\Documents and Settings\All Users\Application Data\Downloaded Installations
        2008-08-07 16:39 --------- d-----w C:\Program Files\Ressources Windows Mobile
        2008-08-06 16:41 86,792 ----a-w C:\WINDOWS\system32\drivers\bdfndisf.sys
        2008-08-06 16:37 --------- d-----w C:\Program Files\BitDefender
        2008-08-06 16:37 --------- d-----w C:\Documents and Settings\Flo\Application Data\BitDefender
        2008-08-06 16:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\BitDefender
        2008-08-05 14:26 --------- d-----w C:\Program Files\Anuman Interactive
        2008-08-03 08:05 --------- d-----w C:\Program Files\Fichiers communs\Adobe
        2008-08-03 08:05 --------- d-----w C:\Documents and Settings\Flo\Application Data\AdobeUM
        2008-08-03 02:30 --------- d-----w C:\Program Files\Alcohol Soft
        2008-08-02 12:51 --------- d-----w C:\Documents and Settings\LocalService\Application Data\Xfire
        2008-08-01 09:05 70,936 ----a-w C:\WINDOWS\system32\PhysXLoader.dll
        2008-07-30 22:14 --------- d-----w C:\Documents and Settings\NetworkService\Application Data\Xfire
        2008-07-29 16:05 453,152 ----a-w C:\WINDOWS\system32\NVUNINST.EXE
        2008-07-29 13:42 528,384 ----a-w C:\WINDOWS\RtlExUpd.dll
        2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
        2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
        2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
        2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
        2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
        2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
        2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
        2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
        2008-07-18 20:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll
        2008-07-18 20:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
        2008-07-16 20:02 64,964 ----a-w C:\WINDOWS\BricoPackUninst.cmd
        2008-07-16 20:02 6,110 ----a-w C:\WINDOWS\BricoPackFoldersDelete.cmd
        2008-07-16 20:02 219,648 ----a-w C:\WINDOWS\system32\uxtheme.dll
        2008-07-11 15:07 419,952 ----a-w C:\WINDOWS\[00] King of the Hill Map Pack Uninstaller.exe
        2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll
        2008-06-27 09:23 16,875,008 ------r C:\WINDOWS\RTHDCPL.exe
        2008-06-27 01:46 426,798 ----a-w C:\WINDOWS\[00] & Crymod Community Mappack - Welcome to the Jungle Uninstaller.exe
        2008-06-25 21:46 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
        2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
        2008-06-24 16:12 295,936 ------w C:\WINDOWS\system32\wmpeffects.dll
        2008-06-23 16:28 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
        2006-06-23 22:48 32,768 ----a-r C:\WINDOWS\inf\UpdateUSB.exe
        .

        ((((((((((((((((((((((((((((( snapshot@2008-08-22_ 1.42.51.90 )))))))))))))))))))))))))))))))))))))))))
        .
        - 2006-05-04 16:26:36 2,808,832 ------r C:\WINDOWS\alcwzrd.exe
        + 2008-06-19 14:42:44 2,808,832 ------r C:\WINDOWS\alcwzrd.exe
        - 2008-08-19 13:55:48 53,248 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
        + 2008-09-21 17:55:42 53,248 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
        - 2008-08-19 13:55:48 12,800 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
        + 2008-09-21 17:55:43 12,800 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
        - 2008-08-19 13:55:49 473,600 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
        + 2008-09-21 17:55:43 473,600 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
        - 2008-07-11 20:35:54 2,676,224 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:38 2,676,224 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:54 2,846,720 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:38 2,846,720 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:54 563,712 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:39 563,712 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:55 567,296 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:39 567,296 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:55 576,000 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:40 576,000 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-08-19 13:55:49 577,024 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:40 577,024 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:56 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:40 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:56 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:41 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:57 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:41 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-07-11 20:35:59 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        + 2008-09-21 17:55:44 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
        - 2008-08-19 13:55:49 145,920 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
        + 2008-09-21 17:55:44 145,920 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
        - 2008-08-19 13:55:50 159,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
        + 2008-09-21 17:55:44 159,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
        - 2008-08-19 13:55:50 364,544 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
        + 2008-09-21 17:55:45 364,544 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
        - 2008-08-19 13:55:50 178,176 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
        + 2008-09-21 17:55:45 178,176 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
        - 2008-08-19 13:55:47 223,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
        + 2008-09-21 17:55:42 223,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
        + 2002-07-25 16:13:18 24,576 ----a-w C:\WINDOWS\Downloaded Program Files\dwusplay.dll
        + 2002-07-25 16:13:12 196,608 ----a-w C:\WINDOWS\Downloaded Program Files\dwusplay.exe
        + 2004-08-09 04:02:38 327,680 ----a-w C:\WINDOWS\Downloaded Program Files\isusweb.dll
        - 2007-09-26 16:34:42 33,472 -c----w C:\WINDOWS\ie7\spuninst\iecustom.dll
        + 2006-10-27 17:20:20 32,368 -c----w C:\WINDOWS\ie7\spuninst\iecustom.dll
        - 2007-09-26 16:32:30 66,048 -c--a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
        + 2006-10-27 17:18:30 66,048 -c--a-w C:\WINDOWS\ie7\spuninst\ieResetIcons.exe
        + 2007-03-06 01:34:31 22,752 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\spcustom.dll
        + 2007-03-06 01:34:33 15,072 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\spmsg.dll
        + 2007-03-06 01:34:38 216,800 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\spuninst.exe
        + 2007-03-06 01:34:56 727,776 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\update.exe
        + 2007-03-06 01:35:48 394,976 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\updspapi.dll
        - 2007-08-13 16:54:10 765,952 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\vgx.dll
        + 2006-10-27 13:09:58 765,952 -c----w C:\WINDOWS\ie7updates\KB938127-IE7\vgx.dll
        + 2007-03-06 01:34:38 216,800 -c----w C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe
        + 2007-03-06 01:35:47 394,976 -c----w C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\updspapi.dll
        + 2007-07-12 23:30:52 765,952 -c----w C:\WINDOWS\ie7updates\KB938127-v2-IE7\vgx.dll
        - 2008-06-26 13:36:38 9,662 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\ARPPRODUCTICON.exe
        + 2008-09-18 19:53:48 9,662 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\ARPPRODUCTICON.exe
        - 2008-06-26 13:36:38 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\checkForUpdatesSC_000E79B7E7254F01870AC12942B7F8E4.exe
        + 2008-09-18 19:53:48 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\checkForUpdatesSC_000E79B7E7254F01870AC12942B7F8E4.exe
        - 2008-06-26 13:36:38 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\visitWebsite_000E79B7E7254F01870AC12942B7F8E4.exe
        + 2008-09-18 19:53:48 10,134 ----a-r C:\WINDOWS\Installer\{000E79B7-E725-4F01-870A-C12942B7F8E4}\visitWebsite_000E79B7E7254F01870AC12942B7F8E4.exe
        + 2008-09-13 11:26:25 12,862 ----a-r C:\WINDOWS\Installer\{26FDF89A-FA65-4FA2-8522-37CC84DFDCEE}\_mercs2.exe
        + 2008-08-29 13:29:00 27,136 ----a-r C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
        + 2008-09-20 01:55:06 32,768 ----a-r C:\WINDOWS\Installer\{716E0306-8318-4364-8B8F-0CC4E9376BAC}\icon.exe
        - 2006-10-11 17:42:58 2,157,568 ------r C:\WINDOWS\MicCal.exe
        + 2007-06-28 14:44:14 2,165,760 ------r C:\WINDOWS\MicCal.exe
        + 2003-05-06 16:00:00 36,099 ----a-w C:\WINDOWS\Options\Install\AMCAP.EXE
        + 2003-06-02 21:35:02 40,960 ----a-w C:\WINDOWS\Options\Install\CleanDev.exe
        + 2003-09-25 15:00:00 135,168 ----a-w C:\WINDOWS\Options\Install\ov519cap.exe
        + 2003-05-06 16:00:00 25,211 ----a-w C:\WINDOWS\Options\Install\ov519cmd.sys
        + 2003-05-06 16:00:00 61,440 ----a-w C:\WINDOWS\Options\Install\ov519dib.dll
        + 2003-05-06 16:00:00 40,960 ----a-w C:\WINDOWS\Options\Install\ov519ext.dll
        + 2003-05-06 16:00:00 16,426 ----a-w C:\WINDOWS\Options\Install\ov519usd.dll
        + 2003-05-06 16:00:00 163,072 ----a-w C:\WINDOWS\Options\Install\ov519vid.sys
        - 2007-03-20 14:41:06 32,768 ------r C:\WINDOWS\RaidTool\IDEDrvSetup.exe
        + 2007-03-20 12:41:06 32,768 ----a-w C:\WINDOWS\RaidTool\IDEDrvSetup.exe
        - 2007-03-20 21:01:14 2,560 ------r C:\WINDOWS\RaidTool\xIDESetup.exe
        + 2007-03-20 19:01:14 2,560 ----a-w C:\WINDOWS\RaidTool\xIDESetup.exe
        - 2007-03-20 16:49:24 20,992 ------r C:\WINDOWS\RaidTool\xInsDrv.dll
        + 2008-05-02 13:52:34 28,672 ----a-w C:\WINDOWS\RaidTool\xInsDrv.dll
        - 2007-03-20 14:36:18 36,864 ------r C:\WINDOWS\RaidTool\xInsIDE.exe
        + 2007-03-20 12:36:18 36,864 ----a-w C:\WINDOWS\RaidTool\xInsIDE.exe
        - 2007-03-23 19:19:10 9,715,200 ------r C:\WINDOWS\RTLCPL.exe
        + 2008-06-19 14:27:46 9,715,200 ------r C:\WINDOWS\RTLCPL.exe
        - 2007-01-16 10:39:36 1,191,936 ------r C:\WINDOWS\RtlUpd.exe
        + 2008-04-02 07:27:26 1,196,032 ------r C:\WINDOWS\RtlUpd.exe
        - 2007-03-16 15:06:54 1,822,720 ------r C:\WINDOWS\SkyTel.exe
        + 2007-11-20 16:15:58 1,826,816 ------r C:\WINDOWS\SkyTel.exe
        - 2006-07-21 16:14:36 86,016 ------r C:\WINDOWS\SoundMan.exe
        + 2008-06-18 16:01:56 77,824 ------r C:\WINDOWS\SoundMan.exe
        - 2007-08-13 16:39:20 71,680 ----a-w C:\WINDOWS\system32\admparse.dll
        + 2006-10-27 00:44:26 71,680 ----a-w C:\WINDOWS\system32\admparse.dll
        + 2008-06-11 07:02:32 58,648 ----a-w C:\WINDOWS\system32\AgCPanelFrench.dll
        + 2008-06-11 07:02:32 58,648 ----a-w C:\WINDOWS\system32\AgCPanelGerman.dll
        + 2008-06-11 07:02:32 58,648 ----a-w C:\WINDOWS\system32\AgCPanelJapanese.dll
        + 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelKorean.dll
        + 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelPortugese.dll
        + 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelSimplifiedChinese.dll
        + 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelSpanish.dll
        + 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelSwedish.dll
        + 2008-06-11 07:02:34 58,648 ----a-w C:\WINDOWS\system32\AgCPanelTraditionalChinese.dll
        + 2007-07-23 07:02:42 199,885 ----a-w C:\WINDOWS\system32\AGEIA\AG1011\app.bin
        + 2008-02-29 08:18:36 119,473 ----a-w C:\WINDOWS\system32\AGEIA\AG1011\diag.bin
        + 2008-02-29 08:18:36 214,629 ----a-w C:\WINDOWS\system32\AGEIA\AG1021\app.bin
        + 2008-03-20 06:24:14 116,977 ----a-w C:\WINDOWS\system32\AGEIA\AG1021\diag.bin
        - 2006-08-01 15:02:32 49,152 ------r C:\WINDOWS\system32\ChCfg.exe
        + 2006-08-01 13:02:32 49,152 ------r C:\WINDOWS\system32\ChCfg.exe
        + 2004-08-03 21:10:08 53,248 -c--a-w C:\WINDOWS\system32\dllcache\1394bus.sys
        + 2001-08-17 20:06:48 11,264 -c--a-w C:\WINDOWS\system32\dllcache\1394vdbg.sys
        + 2001-08-23 15:46:44 689,216 -c--a-w C:\WINDOWS\system32\dllcache\3dfxvs.dll
        + 2001-08-17 18:48:32 148,352 -c--a-w C:\WINDOWS\system32\dllcache\3dfxvsm.sys
        + 2004-08-03 21:00:04 12,288 -c--a-w C:\WINDOWS\system32\dllcache\4mmdat.sys
        + 2004-08-03 21:10:12 48,128 -c--a-w C:\WINDOWS\system32\dllcache\61883.sys
        + 2001-08-23 15:46:44 38,400 -c--a-w C:\WINDOWS\system32\dllcache\8514a.dll
        + 2001-08-23 15:46:58 98,304 -c--a-w C:\WINDOWS\system32\dllcache\a3d.dll
        + 2001-08-23 15:46:58 462,848 -c--a-w C:\WINDOWS\system32\dllcache\a3dapi.dll
        + 2001-08-17 19:52:00 23,552 -c--a-w C:\WINDOWS\system32\dllcache\abp480n5.sys
        + 2004-08-03 20:32:22 231,552 -c--a-w C:\WINDOWS\system32\dllcache\ac97ali.sys
        + 2001-08-17 18:20:04 96,256 -c--a-w C:\WINDOWS\system32\dllcache\ac97intc.sys
        + 2001-08-17 18:20:16 297,728 -c--a-w C:\WINDOWS\system32\dllcache\ac97sis.sys
        + 2004-08-03 20:32:32 84,480 -c--a-w C:\WINDOWS\system32\dllcache\ac97via.sys
        + 2004-08-19 14:09:52 189,952 -c--a-w C:\WINDOWS\system32\dllcache\accwiz.exe
        + 2001-08-23 15:46:58 61,952 -c--a-w C:\WINDOWS\system32\dllcache\acerscad.dll
        + 2004-08-19 14:09:20 1,852,416 -c--a-w C:\WINDOWS\system32\dllcache\acgenral.dll
        + 2004-08-19 14:09:20 450,048 -c--a-w C:\WINDOWS\system32\dllcache\aclayers.dll
        + 2004-08-19 14:09:20 137,728 -c--a-w C:\WINDOWS\system32\dllcache\aclua.dll
        + 2004-08-19 14:09:20 119,296 -c--a-w C:\WINDOWS\system32\dllcache\aclui.dll
        + 2004-08-19 13:51:56 188,672 -c--a-w C:\WINDOWS\system32\dllcache\acpi.sys
        + 2001-08-28 10:00:00 12,032 -c--a-w C:\WINDOWS\system32\dllcache\acpiec.sys
        + 2004-08-19 14:09:20 244,736 -c--a-w C:\WINDOWS\system32\dllcache\acspecfc.dll
        + 2004-08-19 14:09:20 194,048 -c--a-w C:\WINDOWS\system32\dllcache\activeds.dll
        + 2004-08-19 14:09:52 4,096 -c--a-w C:\WINDOWS\system32\dllcache\actmovie.exe
        + 2004-08-19 14:09:20 101,888 -c--a-w C:\WINDOWS\system32\dllcache\actxprxy.dll
        + 2004-08-19 14:09:20 116,224 -c--a-w C:\WINDOWS\system32\dllcache\acxtrnal.dll
        + 2001-08-17 19:53:02 7,424 -c--a-w C:\WINDOWS\system32\dllcache\adicvls.sys
        + 2001-08-17 18:11:18 20,160 -c--a-w C:\WINDOWS\system32\dllcache\adm8511.sys
        + 2001-08-17 18:19:10 584,448 -c--a-w C:\WINDOWS\system32\dllcache\adm8810.sys
        + 2001-08-17 18:19:14 553,984 -c--a-w C:\WINDOWS\system32\dllcache\adm8820.sys
        + 2001-08-17 18:19:14 747,392 -c--a-w C:\WINDOWS\system32\dllcache\adm8830.sys
        + 2004-08-19 14:09:20 29,696 -c--a-w C:\WINDOWS\system32\dllcache\admexs.dll
        + 2004-08-19 14:09:20 20,540 -c--a-w C:\WINDOWS\system32\dllcache\admin.dll
        + 2004-08-19 14:09:52 16,439 -c--a-w C:\WINDOWS\system32\dllcache\admin.exe
        + 2004-08-03 20:32:24 10,880 -c--a-w C:\WINDOWS\system32\dllcache\admjoy.sys
        - 2007-08-13 16:39:20 71,680 -c----w C:\WINDOWS\system32\dllcache\admparse.dll
        + 2006-10-27 00:44:26 71,680 -c----w C:\WINDOWS\system32\dllcache\admparse.dll
        + 2004-08-19 14:09:20 43,520 -c--a-w C:\WINDOWS\system32\dllcache\admwprox.dll
        + 2001-08-17 18:11:16 46,112 -c--a-w C:\WINDOWS\system32\dllcache\adptsf50.sys
        + 2001-08-17 20:07:32 101,888 -c--a-w C:\WINDOWS\system32\dllcache\adpu160m.sys
        + 2004-08-19 14:09:20 290,816 -c--a-w C:\WINDOWS\system32\dllcache\adsiis51.dll
        + 2004-08-19 14:09:20 175,616 -c--a-w C:\WINDOWS\system32\dllcache\adsldp.dll
        + 2004-08-19 14:09:20 143,360 -c--a-w C:\WINDOWS\system32\dllcache\adsldpc.dll
        + 2004-08-19 14:09:20 68,096 -c--a-w C:\WINDOWS\system32\dllcache\adsmsext.dll
        + 2004-08-19 14:09:20 263,680 -c--a-w C:\WINDOWS\system32\dllcache\adsnt.dll
        + 2004-08-19 14:09:20 4,255 -c--a-w C:\WINDOWS\system32\dllcache\adv01nt5.dll
        + 2004-08-19 14:09:20 3,967 -c--a-w C:\WINDOWS\system32\dllcache\adv02nt5.dll
        + 2004-08-19 14:09:20 3,615 -c--a-w C:\WINDOWS\system32\dllcache\adv05nt5.dll
        + 2004-08-19 14:09:20 3,647 -c--a-w C:\WINDOWS\system32\dllcache\adv07nt5.dll
        + 2004-08-19 14:09:20 3,135 -c--a-w C:\WINDOWS\system32\dllcache\adv08nt5.dll
        + 2004-08-19 14:09:20 3,711 -c--a-w C:\WINDOWS\system32\dllcache\adv09nt5.dll
        + 2004-08-19 14:09:20 3,775 -c--a-w C:\WINDOWS\system32\dllcache\adv11nt5.dll
        + 2004-08-19 14:09:20 685,056 -c--a-w C:\WINDOWS\system32\dllcache\advapi32.dll
        + 2004-08-19 14:09:20 24,064 -c--a-w C:\WINDOWS\system32\dllcache\agentanm.dll
        + 2004-08-19 14:09:20 214,016 -c--a-w C:\WINDOWS\system32\dllcache\agentctl.dll
        + 2004-08-19 14:09:20 49,152 -c--a-w C:\WINDOWS\system32\dllcache\agentmpx.dll
        + 2004-08-19 14:09:20 24,064 -c--a-w C:\WINDOWS\system32\dllcache\agentpsh.dll
        + 2004-08-19 14:09:20 44,032 -c--a-w C:\WINDOWS\system32\dllcache\agentsr.dll
        + 2004-08-03 21:07:42 42,368 -c--a-w C:\WINDOWS\system32\dllcache\agp440.sys
        + 2004-08-03 21:07:44 44,928 -c--a-w C:\WINDOWS\system32\dllcache\agpcpq.sys
        + 2004-08-19 14:09:20 24,064 -c--a-w C:\WINDOWS\system32\dllcache\agtintl.dll
        + 2001-08-17 19:52:02 12,800 -c--a-w C:\WINDOWS\system32\dllcache\aha154x.sys
        + 2004-08-19 14:09:52 98,304 -c--a-w C:\WINDOWS\system32\dllcache\ahui.exe
        + 2001-08-17 20:07:36 55,168 -c--a-w C:\WINDOWS\system32\dllcache\aic78u2.sys
        + 2001-08-17 20:07:38 56,960 -c--a-w C:\WINDOWS\system32\dllcache\aic78xx.sys
        + 2004-08-19 14:09:52 44,544 -c--a-w C:\WINDOWS\system32\dllcache\alg.exe
        + 2001-08-17 18:11:18 27,678 -c--a-w C:\WINDOWS\system32\dllcache\ali5261.sys
        + 2001-08-17 19:49:02 26,624 -c--a-w C:\WINDOWS\system32\dllcache\alifir.sys
        + 2001-08-17 19:51:56 5,248 -c--a-w C:\WINDOWS\system32\dllcache\aliide.sys
        + 2004-08-03 21:07:42 42,752 -c--a-w C:\WINDOWS\system32\dllcache\alim1541.sys
        + 2004-08-19 14:09:20 17,408 -c--a-w C:\WINDOWS\system32\dllcache\alrsvc.dll
        + 2001-08-17 18:11:20 16,969 -c--a-w C:\WINDOWS\system32\dllcache\amb8002.sys
        + 2004-08-03 21:07:44 43,008 -c--a-w C:\WINDOWS\system32\dllcache\amdagp.sys
        + 2004-08-19 13:52:42 41,216 -c--a-w C:\WINDOWS\system32\dllcache\amdk6.sys
        + 2004-08-19 13:52:44 41,600 -c--a-w C:\WINDOWS\system32\dllcache\amdk7.sys
        + 2001-08-17 19:52:04 12,032 -c--a-w C:\WINDOWS\system32\dllcache\amsint.sys
        + 2004-08-19 14:09:20 70,656 -c--a-w C:\WINDOWS\system32\dllcache\amstream.dll
        + 2004-08-03 20:31:20 36,224 -c--a-w C:\WINDOWS\system32\dllcache\an983.sys
        + 2001-08-17 19:47:22 6,272 -c--a-w C:\WINDOWS\system32\dllcache\apmbatt.sys
        + 2004-08-19 14:09:20 110,080 -c--a-w C:\WINDOWS\system32\dllcache\appconf.dll
        + 2004-08-19 14:09:20 126,976 -c--a-w C:\WINDOWS\system32\dllcache\apphelp.dll
        + 2004-08-19 14:09:20 176,640 -c--a-w C:\WINDOWS\system32\dllcache\appmgmts.dll
        + 2004-08-19 14:09:20 302,592 -c--a-w C:\WINDOWS\system32\dllcache\appmgr.dll
        + 2004-08-19 14:09:20 334,336 -c--a-w C:\WINDOWS\system32\dllcache\aqueue.dll
        + 2004-08-03 20:58:30 60,800 -c--a-w C:\WINDOWS\system32\dllcache\arp1394.sys
        + 2001-08-17 19:52:00 26,496 -c--a-w C:\WINDOWS\system32\dllcache\asc.sys
        + 2001-08-17 19:52:04 22,400 -c--a-w C:\WINDOWS\system32\dllcache\asc3350p.sys
        + 2001-08-17 19:51:58 14,848 -c--a-w C:\WINDOWS\system32\dllcache\asc3550.sys
        + 2006-11-03 07:56:54 7,680 -c--a-w C:\WINDOWS\system32\dllcache\asferror.dll
        + 2004-08-19 14:09:20 377,344 -c--a-w C:\WINDOWS\system32\dllcache\asp51.dll
        + 2001-08-17 18:12:34 97,354 -c--a-w C:\WINDOWS\system32\dllcache\aspndis3.sys
        + 2004-08-19 14:09:52 30,720 -c--a-w C:\WINDOWS\system32\dllcache\asr_fmt.exe
        + 2004-08-19 14:09:52 32,768 -c--a-w C:\WINDOWS\system32\dllcache\asr_pfu.exe
        + 2004-08-19 14:09:20 65,024 -c--a-w C:\WINDOWS\system32\dllcache\asycfilt.dll
        + 2004-08-03 21:05:04 14,336 -c--a-w C:\WINDOWS\system32\dllcache\asyncmac.sys
        + 2004-08-19 14:09:52 25,088 -c--a-w C:\WINDOWS\system32\dllcache\at.exe
        + 2001-08-23 15:46:44 96,128 -c--a-w C:\WINDOWS\system32\dllcache\ati.dll
        + 2001-08-23 14:59:32 77,824 -c--a-w C:\WINDOWS\system32\dllcache\ati.sys
        + 2004-08-03 20:29:30 56,623 -c--a-w C:\WINDOWS\system32\dllcache\ati1btxx.sys
        + 2004-08-03 20:29:30 11,615 -c--a-w C:\WINDOWS\system32\dllcache\ati1mdxx.sys
        + 2004-08-03 20:29:30 12,047 -c--a-w C:\WINDOWS\system32\dllcache\ati1pdxx.sys
        + 2004-08-03 20:29:32 30,671 -c--a-w C:\WINDOWS\system32\dllcache\ati1raxx.sys
        + 2004-08-03 20:29:32 63,663 -c--a-w C:\WINDOWS\system32\dllcache\ati1rvxx.sys
        + 2004-08-03 20:29:32 26,367 -c--a-w C:\WINDOWS\system32\dllcache\ati1snxx.sys
        + 2004-08-03 20:29:32 21,343 -c--a-w C:\WINDOWS\system32\dllcache\ati1ttxx.sys
        + 2004-08-03 20:29:32 36,463 -c--a-w C:\WINDOWS\system32\dllcache\ati1tuxx.sys
        + 2004-08-03 20:29:32 29,455 -c--a-w C:\WINDOWS\system32\dllcache\ati1xbxx.sys
        + 2004-08-03 20:29:32 34,735 -c--a-w C:\WINDOWS\system32\dllcache\ati1xsxx.sys
        + 2004-08-19 14:09:20 229,376 -c--a-w C:\WINDOWS\system32\dllcache\ati2cqag.dll
        + 2004-08-19 14:09:20 377,984 -c--a-w C:\WINDOWS\system32\dllcache\ati2dvaa.dll
        + 2004-08-19 14:09:20 201,728 -c--a-w C:\WINDOWS\system32\dllcache\ati2dvag.dll
        + 2004-08-19 13:53:40 327,168 -c--a-w C:\WINDOWS\system32\dllcache\ati2mtaa.sys
        + 2004-08-19 13:53:42 701,440 -c--a-w C:\WINDOWS\system32\dllcache\ati2mtag.sys
        + 2004-08-19 14:09:20 870,784 -c--a-w C:\WINDOWS\system32\dllcache\ati3d1ag.dll
        + 2004-08-19 14:09:20 1,888,992 -c--a-w C:\WINDOWS\system32\dllcache\ati3duag.dll
        + 2001-08-17 18:49:04 46,464 -c--a-w C:\WINDOWS\system32\dllcache\atibt829.sys
        + 2001-08-23 15:46:44 382,592 -c--a-w C:\WINDOWS\system32\dllcache\atidrab.dll
        + 2001-08-23 15:46:44 137,216 -c--a-w C:\WINDOWS\system32\dllcache\atidrae.dll
        + 2001-08-23 15:46:44 268,160 -c--a-w C:\WINDOWS\system32\dllcache\atidvai.dll
        + 2001-08-23 15:47:26 37,376 -c--a-w C:\WINDOWS\system32\dllcache\atievxx.exe
        + 2001-08-23 14:59:36 289,920 -c--a-w C:\WINDOWS\system32\dllcache\atimpab.sys
        + 2001-08-23 14:59:36 75,392 -c--a-w C:\WINDOWS\system32\dllcache\atimpae.sys
        + 2001-08-23 14:59:38 281,728 -c--a-w C:\WINDOWS\system32\dllcache\atimtai.sys
        + 2004-08-03 20:29:28 57,856 -c--a-w C:\WINDOWS\system32\dllcache\atinbtxx.sys
        + 2004-08-03 20:29:30 13,824 -c--a-w C:\WINDOWS\system32\dllcache\atinmdxx.sys
        + 2004-08-03 20:29:30 14,336 -c--a-w C:\WINDOWS\system32\dllcache\atinpdxx.sys
        + 2004-08-03 20:29:30 52,224 -c--a-w C:\WINDOWS\system32\dllcache\atinraxx.sys
        + 2004-08-03 20:29:32 104,960 -c--a-w C:\WINDOWS\system32\dllcache\atinrvxx.sys
        + 2004-08-03 20:29:32 28,672 -c--a-w C:\WINDOWS\system32\dllcache\atinsnxx.sys
        + 2004-08-03 20:29:32 13,824 -c--a-w C:\WINDOWS\system32\dllcache\atinttxx.sys
        + 2004-08-03 20:29:32 73,216 -c--a-w C:\WINDOWS\system32\dllcache\atintuxx.sys
        + 2004-08-03 20:29:32 31,744 -c--a-w C:\WINDOWS\system32\dllcache\atinxbxx.sys
        + 2004-08-03 20:29:32 63,488 -c--a-w C:\WINDOWS\system32\dllcache\atinxsxx.sys
        + 2001-08-17 18:49:36 10,240 -c--a-w C:\WINDOWS\system32\dllcache\atipcxxx.sys
        + 2001-08-23 15:46:44 104,832 -c--a-w C:\WINDOWS\system32\dllcache\atiraged.dll
        + 2001-08-23 14:59:40 70,784 -c--a-w C:\WINDOWS\system32\dllcache\atiragem.sys
        + 2001-08-17 18:49:12 49,920 -c--a-w C:\WINDOWS\system32\dllcache\atirtcap.sys
        + 2001-08-17 18:49:18 26,880 -c--a-w C:\WINDOWS\system32\dllcache\atirtsnd.sys
        + 2001-08-17 18:49:22 17,152 -c--a-w C:\WINDOWS\system32\dllcache\atitunep.sys
        + 2001-08-17 18:49:28 17,152 -c--a-w C:\WINDOWS\system32\dllcache\atitvsnd.sys
        + 2001-08-17 18:49:38 9,472 -c--a-w C:\WINDOWS\system32\dllcache\ativmdcd.sys
        + 2004-08-19 14:09:20 32,768 -c--a-w C:\WINDOWS\system32\dllcache\ativtmxx.dll
        + 2001-08-17 18:49:44 19,456 -c--a-w C:\WINDOWS\system32\dllcache\ativttxx.sys
        + 2004-08-19 14:09:20 516,768 -c--a-w C:\WINDOWS\system32\dllcache\ativvaxx.dll
        + 2001-08-17 18:49:48 26,624 -c--a-w C:\WINDOWS\system32\dllcache\ativxbar.sys
        + 2001-08-17 18:49:34 23,552 -c--a-w C:\WINDOWS\system32\dllcache\atixbar.sys
        + 2004-08-19 14:09:20 58,880 -c--a-w C:\WINDOWS\system32\dllcache\atl.dll
        + 2004-08-19 14:09:52 11,264 -c--a-w C:\WINDOWS\system32\dllcache\atmadm.exe
        + 2004-08-03 20:58:32 59,904 -c--a-w C:\WINDOWS\system32\dllcache\atmarpc.sys
        + 2004-08-19 14:08:02 285,696 -c--a-w C:\WINDOWS\system32\dllcache\atmfd.dll
        + 2004-08-03 20:58:36 55,936 -c--a-w C:\WINDOWS\system32\dllcache\atmlane.sys
        + 2004-08-19 14:09:22 30,208 -c--a-w C:\WINDOWS\system32\dllcache\atmlib.dll
        + 2004-08-19 14:09:22 21,183 -c--a-w C:\WINDOWS\system32\dllcache\atv01nt5.dll
        + 2004-08-19 14:09:22 11,359 -c--a-w C:\WINDOWS\system32\dllcache\atv02nt5.dll
        + 2004-08-19 14:09:22 25,471 -c--a-w C:\WINDOWS\system32\dllcache\atv04nt5.dll
        + 2004-08-19 14:09:22 14,143 -c--a-w C:\WINDOWS\system32\dllcache\atv06nt5.dll
        + 2004-08-19 14:09:22 17,279 -c--a-w C:\WINDOWS\system32\dllcache\atv10nt5.dll
        + 2004-08-19 14:09:22 42,496 -c--a-w C:\WINDOWS\system32\dllcache\audiosrv.dll
        + 2004-08-19 14:09:52 14,336 -c--a-w C:\WINDOWS\system32\dllcache\auditusr.exe
        + 2001-08-17 20:59:44 3,072 -c--a-w C:\WINDOWS\system32\dllcache\audstub.sys
        + 2004-08-19 14:09:22 20,540 -c--a-w C:\WINDOWS\system32\dllcache\author.dll
        + 2004-08-19 14:09:52 16,439 -c--a-w C:\WINDOWS\system32\dllcache\author.exe
        + 2005-03-02 18:10:36 56,832 -c--a-w C:\WINDOWS\system32\dllcache\authz.dll
        + 2004-08-19 14:09:52 625,152 -c--a-w C:\WINDOWS\system32\dllcache\autochk.exe
        + 2004-08-19 14:09:52 638,976 -c--a-w C:\WINDOWS\system32\dllcache\autoconv.exe
        + 2004-08-19 14:09:52 616,960 -c--a-w C:\WINDOWS\system32\dllcache\autofmt.exe
        + 2004-08-19 14:09:52 11,264 -c--a-w C:\WINDOWS\system32\dllcache\autolfn.exe
        + 2004-08-03 21:10:12 38,912 -c--a-w C:\WINDOWS\system32\dllcache\avc.sys
        + 2001-08-17 20:01:12 36,096 -c--a-w C:\WINDOWS\system32\dllcache\avcaudio.sys
        + 2004-08-03 21:10:00 13,696 -c--a-w C:\WINDOWS\system32\dllcache\avcstrm.sys
        + 2004-08-19 14:09:22 85,504 -c--a-w C:\WINDOWS\system32\dllcache\avifil32.dll
        + 2001-08-23 15:46:58 87,552 -c--a-w C:\WINDOWS\system32\dllcache\avmcoxp.dll
        + 2001-08-23 15:46:58 144,384 -c--a-w C:\WINDOWS\system32\dllcache\avmenum.dll
        + 2001-08-17 18:13:48 37,568 -c--a-w C:\WINDOWS\system32\dllcache\avmwan.sys
        + 2001-08-17 18:19:16 36,992 -c--a-w C:\WINDOWS\system32\dllcache\aztw2320.sys
        + 2001-08-17 18:13:56 89,952 -c--a-w C:\WINDOWS\system32\dllcache\b1cbase.sys
        + 2001-08-23 15:00:08 97,248 -c--a-w C:\WINDOWS\system32\dllcache\b57xp32.sys
        + 2001-08-23 15:46:44 342,336 -c--a-w C:\WINDOWS\system32\dllcache\banshee.dll
        + 2001-08-17 18:48:28 36,128 -c--a-w C:\WINDOWS\system32\dllcache\banshee.sys
        + 2004-08-19 14:09:22 52,736 -c--a-w C:\WINDOWS\system32\dllcache\basesrv.dll
        + 2004-08-19 14:09:22 28,672 -c--a-w C:\WINDOWS\system32\dllcache\batmeter.dll
        + 2004-08-19 14:09:22 8,704 -c--a-w C:\WINDOWS\system32\dllcache\batt.dll
        + 2001-08-17 19:57:54 14,080 -c--a-w C:\WINDOWS\system32\dllcache\battc.sys
        + 2001-08-17 18:11:28 66,557 -c--a-w C:\WINDOWS\system32\dllcache\bcm42u.sys
        + 2001-08-17 18:11:26 54,271 -c--a-w C:\WINDOWS\system32\dllcache\bcm42xx5.sys
        + 2001-08-17 18:11:30 26,568 -c--a-w C:\WINDOWS\system32\dllcache\bcm4e5.sys
        + 2001-08-17 19:28:00 871,388 -c--a-w C:\WINDOWS\system32\dllcache\bcmdm.sys
        + 2004-08-03 21:10:14 11,776 -c--a-w C:\WINDOWS\system32\dllcache\bdasup.sys
        + 2004-08-19 14:09:22 17,408 -c--a-w C:\WINDOWS\system32\dllcache\bidispl.dll
        + 2001-08-23 15:46:58 105,472 -c--a-w C:\WINDOWS\system32\dllcache\binlsvc.dll
        + 2004-08-19 14:09:22 8,192 -c--a-w C:\WINDOWS\system32\dllcache\bitsprx2.dll
        + 2004-08-19 14:09:22 7,168 -c--a-w C:\WINDOWS\system32\dllcache\bitsprx3.dll
        + 2006-10-18 19:47:10 542,720 -c--a-w C:\WINDOWS\system32\dllcache\blackbox.dll
        + 2004-08-19 14:09:52 71,680 -c--a-w C:\WINDOWS\system32\dllcache\blastcln.exe
        + 2001-08-23 15:46:58 19,456 -c--a-w C:\WINDOWS\system32\dllcache\brbidiif.dll
        + 2001-08-23 15:46:58 9,728 -c--a-w C:\WINDOWS\system32\dllcache\brcoinst.dll
        + 2001-08-23 15:46:58 12,800 -c--a-w C:\WINDOWS\system32\dllcache\brevif.dll
        + 2001-08-17 19:12:12 2,944 -c--a-w C:\WINDOWS\system32\dllcache\brfilt.sys
        + 2001-08-17 19:12:22 12,160 -c--a-w C:\WINDOWS\system32\dllcache\brfiltlo.sys
        + 2001-08-17 19:12:24 3,968 -c--a-w C:\WINDOWS\system32\dllcache\brfiltup.sys
        + 2004-08-03 20:59:58 71,552 -c--a-w C:\WINDOWS\system32\dllcache\bridge.sys
        + 2001-08-23 15:46:58 15,360 -c--a-w C:\WINDOWS\system32\dllcache\brmfbidi.dll
        + 2001-08-23 15:46:58 81,920 -c--a-w C:\WINDOWS\system32\dllcache\brmfcwia.dll
        + 2001-08-23 15:46:58 29,696 -c--a-w C:\WINDOWS\system32\dllcache\brmflpt.dll
        + 2001-08-23 15:47:30 32,256 -c--a-w C:\WINDOWS\system32\dllcache\brmfrsmg.exe
        + 2001-08-23 15:46:58 41,472 -c--a-w C:\WINDOWS\system32\dllcache\brmfusb.dll
        + 2004-08-19 14:08:04 70,144 -c--a-w C:\WINDOWS\system32\dllcache\browselc.dll
        + 2004-08-19 14:09:22 77,312 -c--a-w C:\WINDOWS\system32\dllcache\browser.dll
        + 2004-08-19 14:09:22 78,336 -c--a-w C:\WINDOWS\system32\dllcache\browsewm.dll
        + 2001-08-17 19:12:24 3,168 -c--a-w C:\WINDOWS\system32\dllcache\brparimg.sys
        + 2001-08-23 15:01:54 39,808 -c--a-w C:\WINDOWS\system32\dllcache\brparwdm.sys
        + 2001-08-23 15:46:58 5,120 -c--a-w C:\WINDOWS\system32\dllcache\brscnrsm.dll
        + 2001-08-23 15:46:58 9,728 -c--a-w C:\WINDOWS\system32\dllcache\brserif.dll
        + 2001-08-17 19:12:20 60,416 -c--a-w C:\WINDOWS\system32\dllcache\brserwdm.sys
        + 2001-08-17 19:12:20 11,008 -c--a-w C:\WINDOWS\system32\dllcache\brusbmdm.sys
        + 2001-08-17 19:12:22 10,368 -c--a-w C:\WINDOWS\system32\dllcache\brusbscn.sys
        + 2001-08-17 18:11:24 31,529 -c--a-w C:\WINDOWS\system32\dllcache\brzwlan.sys
        + 2004-08-19 14:09:22 20,992 -c--a-w C:\WINDOWS\system32\dllcache\bthci.dll
        + 2004-08-03 21:10:40 17,024 -c--a-w C:\WINDOWS\system32\dllcache\bthenum.sys
        + 2004-08-03 21:10:40 38,016 -c--a-w C:\WINDOWS\system32\dllcache\bthmodem.sys
        + 2004-08-03 20:58:40 100,992 -c--a-w C:\WINDOWS\system32\dllcache\bthpan.sys
        + 2004-08-03 21:10:38 35,456 -c--a-w C:\WINDOWS\system32\dllcache\bthprint.sys
        + 2004-08-19 14:09:22 30,208 -c--a-w C:\WINDOWS\system32\dllcache\bthserv.dll
        + 2004-08-03 21:10:36 18,944 -c--a-w C:\WINDOWS\system32\dllcache\bthusb.sys
        + 2004-08-19 14:09:22 50,688 -c--a-w C:\WINDOWS\system32\dllcache\btpanui.dll
        + 2001-08-23 15:02:02 14,080 -c--a-w C:\WINDOWS\system32\dllcache\bulltlp3.sys
        + 2004-08-03 21:10:18 17,024 -c--a-w C:\WINDOWS\system32\dllcache\ccdecode.sys
        - 2007-07-30 17:19:20 92,504 -c--a-w C:\WINDOWS\system32\dllcache\cdm.dll
        + 2008-07-18 20:10:48 94,920 -c--a-w C:\WINDOWS\system32\dllcache\cdm.dll
        + 2004-08-19 14:08:04 16,896 -c--a-w C:\WINDOWS\system32\dllcache\cfgmgr32.dll
        + 2004-08-19 14:09:52 188,480 -c--a-w C:\WINDOWS\system32\dllcache\cfgwiz.exe
        + 2004-08-19 14:09:22 47,104 -c--a-w C:\WINDOWS\system32\dllcache\coadmin.dll
        + 2004-08-19 14:09:22 281,088 -c--a-w C:\WINDOWS\system32\dllcache\comdlg32.dll
        + 2004-08-19 14:09:22 253,440 -c--a-w C:\WINDOWS\system32\dllcache\compatui.dll
        - 2007-08-13 16:42:54 17,408 -c----w C:\WINDOWS\system32\dllcache\corpol.dll
        + 2006-10-17 11:03:56 17,408 -c----w C:\WINDOWS\system32\dllcache\corpol.dll
        + 2004-08-19 14:09:22 604,672 -c--a-w C:\WINDOWS\system32\dllcache\crypt32.dll
        + 2004-08-19 14:09:22 75,776 -c--a-w C:\WINDOWS\system32\dllcache\cryptdlg.dll
        + 2004-08-19 14:09:22 33,280 -c--a-w C:\WINDOWS\system32\dllcache\cryptdll.dll
        + 2004-08-19 14:09:22 54,784 -c--a-w C:\WINDOWS\system32\dllcache\cryptext.dll
        + 2004-08-19 14:09:22 63,488 -c--a-w C:\WINDOWS\system32\dllcache\cryptnet.dll
        + 2004-08-19 14:09:22 60,416 -c--a-w C:\WINDOWS\system32\dllcache\cryptsvc.dll
        + 2004-08-19 14:09:22 530,432 -c--a-w C:\WINDOWS\system32\dllcache\cryptui.dll
        - 2007-08-13 16:54:10 33,792 -c--a-w C:\WINDOWS\system32\dllcache\custsat.dll
        + 2006-10-27 13:09:58 33,792 -c--a-w C:\WINDOWS\system32\dllcache\custsat.dll
        + 2004-08-19 14:10:16 299,520 -c--a-w C:\WINDOWS\system32\dllcache\drmclien.dll
        + 2004-08-19 14:09:24 87,040 -c--a-w C:\WINDOWS\system32\dllcache\drmstor.dll
        + 2004-08-19 14:09:24 16,384 -c--a-w C:\WINDOWS\system32\dllcache\ds32gt.dll
        + 2004-08-03 20:31:44 137,216 -c--a-w C:\WINDOWS\system32\dllcache\dssenh.dll
        + 2004-08-19 15:09:24 619,008 -c--a-w C:\WINDOWS\system32\dllcache\dx7vb.dll
        + 2004-08-19 14:09:26 380,957 -c--a-w C:\WINDOWS\system32\dllcache\expsrv.dll
        + 2004-08-03 21:14:18 143,360 -c--a-w C:\WINDOWS\system32\dllcache\fastfat.sys
        + 2004-08-19 14:09:26 184,435 -c--a-w C:\WINDOWS\system32\dllcache\fp4amsft.dll
        + 2004-08-19 14:09:26 82,035 -c--a-w C:\WINDOWS\system32\dllcache\fp4anscp.dll
        + 2004-08-19 14:09:26 147,513 -c--a-w C:\WINDOWS\system32\dllcache\fp4apws.dll
        + 2004-08-19 14:09:26 49,210 -c--a-w C:\WINDOWS\system32\dllcache\fp4areg.dll
        + 2004-08-19 14:09:26 102,509 -c--a-w C:\WINDOWS\system32\dllcache\fp4atxt.dll
        + 2004-08-19 14:09:26 41,020 -c--a-w C:\WINDOWS\system32\dllcache\fp4avnb.dll
        + 2004-08-19 14:09:26 32,826 -c--a-w C:\WINDOWS\system32\dllcache\fp4avss.dll
        + 2004-08-19 14:09:26 49,212 -c--a-w C:\WINDOWS\system32\dllcache\fp4awebs.dll
        + 2004-08-19 14:09:26 876,653 -c--a-w C:\WINDOWS\system32\dllcache\fp4awel.dll
        + 2004-08-19 14:09:56 15,120 -c--a-w C:\WINDOWS\system32\dllcache\fp98sadm.exe
        + 2004-08-19 14:09:56 109,840 -c--a-w C:\WINDOWS\system32\dllcache\fp98swin.exe
        + 2004-08-19 14:09:56 188,494 -c--a-w C:\WINDOWS\system32\dllcache\fpcount.exe
        + 2004-08-19 14:09:26 20,541 -c--a-w C:\WINDOWS\system32\dllcache\fpexedll.dll
        + 2004-08-19 14:09:28 598,071 -c--a-w C:\WINDOWS\system32\dllcache\fpmmc.dll
        + 2004-08-19 14:08:14 217,088 -c--a-w C:\WINDOWS\system32\dllcache\fpmmcsat.dll
        + 2004-08-19 14:09:56 20,538 -c--a-w C:\WINDOWS\system32\dllcache\fpremadm.exe
        - 2007-08-13 16:18:02 60,416 -c----w C:\WINDOWS\system32\dllcache\hmmapi.dll
        + 2006-10-17 10:44:36 60,416 -c----w C:\WINDOWS\system32\dllcache\hmmapi.dll
        - 2007-08-13 16:44:02 69,120 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe
        + 2006-10-17 11:04:50 69,120 -c--a-w C:\WINDOWS\system32\dllcache\iedw.exe
        - 2007-08-13 16:45:18 78,336 -c----w C:\WINDOWS\system32\dllcache\ieencode.dll
        + 2006-10-17 11:06:00 78,336 -c----w C:\WINDOWS\system32\dllcache\ieencode.dll
        - 2007-08-13 16:54:10 191,488 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll
        + 2006-10-27 13:09:58 191,488 -c--a-w C:\WINDOWS\system32\dllcache\iepeers.dll
        - 2007-08-13 16:39:12 55,296 -c----w C:\WINDOWS\system32\dllcache\iesetup.dll
        + 2006-10-27 00:44:26 55,296 -c----w C:\WINDOWS\system32\dllcache\iesetup.dll
        + 2004-08-19 14:09:28 68,608 -c--a-w C:\WINDOWS\system32\dllcache\iisext51.dll
        + 2004-08-19 14:09:28 64,512 -c--a-w C:\WINDOWS\system32\dllcache\iismap.dll
        + 2004-08-19 14:09:56 31,232 -c--a-w C:\WINDOWS\system32\dllcache\iisrstas.exe
        + 2004-08-19 14:09:28 133,632 -c--a-w C:\WINDOWS\system32\dllcache\iisrtl.dll
        + 2004-08-19 14:09:28 36,921 -c--a-w C:\WINDOWS\system32\dllcache\imeshare.dll
        - 2007-08-13 16:36:06 36,352 -c----w C:\WINDOWS\system32\dllcache\imgutil.dll
        + 2006-10-17 10:57:58 36,352 -c----w C:\WINDOWS\system32\dllcache\imgutil.dll
        + 2004-08-19 14:09:30 842,240 -c--a-w C:\WINDOWS\system32\dllcache\inetmgr.dll
        + 2004-08-19 14:09:30 13,312 -c--a-w C:\WINDOWS\system32\dllcache\infoadmn.dll
        - 2007-08-13 16:39:02 92,672 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll
        + 2006-10-27 00:44:08 92,672 -c--a-w C:\WINDOWS\system32\dllcache\inseng.dll
        + 2004-08-03 21:14:30 74,752 -c--a-w C:\WINDOWS\system32\dllcache\ipsec.sys
        + 2001-08-23 14:58:06 36,224 -c--a-w C:\WINDOWS\system32\dllcache\isapnp.sys
        + 2004-08-19 14:09:32 68,608 -c--a-w C:\WINDOWS\system32\dllcache\isatq.dll
        + 2005-05-27 02:08:06 155,136 -c--a-w C:\WINDOWS\system32\dllcache\itircl.dll
        + 2005-05-27 02:08:06 137,216 -c--a-w C:\WINDOWS\system32\dllcache\itss.dll
        - 2007-08-13 16:38:04 491,520 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll
        + 2006-10-17 11:00:00 491,520 -c--a-w C:\WINDOWS\system32\dllcache\jscript.dll
        + 2006-10-18 19:47:14 11,264 -c--a-w C:\WINDOWS\system32\dllcache\laprxy.dll
        - 2007-08-13 16:44:18 40,960 -c----w C:\WINDOWS\system32\dllcache\licmgr10.dll
        + 2006-10-17 11:05:10 40,960 -c----w C:\WINDOWS\system32\dllcache\licmgr10.dll
        + 2006-10-18 18:03:58 100,864 -c--a-w C:\WINDOWS\system32\dllcache\logagent.exe
        + 2004-08-19 14:09:32 1,028,096 -c--a-w C:\WINDOWS\system32\dllcache\mfc42.dll
        + 2004-08-19 14:09:32 22,528 -c--a-w C:\WINDOWS\system32\dllcache\mfcsubs.dll
        + 2004-08-19 14:10:00 4,639 -c--a-w C:\WINDOWS\system32\dllcache\mplayer2.exe
        + 2004-08-19 14:08:24 20,480 -c--a-w C:\WINDOWS\system32\dllcache\msadcer.dll
        + 2004-08-19 14:09:34 61,440 -c--a-w C:\WINDOWS\system32\dllcache\msadcf.dll
        + 2004-08-19 14:08:24 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msadcfr.dll
        + 2006-03-23 05:46:11 143,360 -c--a-w C:\WINDOWS\system32\dllcache\msadco.dll
        + 2004-08-19 14:08:24 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msadcor.dll
        + 2004-08-19 14:09:34 53,248 -c--a-w C:\WINDOWS\system32\dllcache\msadcs.dll
        + 2004-08-19 14:09:34 155,648 -c--a-w C:\WINDOWS\system32\dllcache\msadds.dll
        + 2004-08-19 14:08:26 24,576 -c--a-w C:\WINDOWS\system32\dllcache\msaddsr.dll
        + 2004-08-19 14:08:26 28,672 -c--a-w C:\WINDOWS\system32\dllcache\msader15.dll
        + 2004-08-19 14:09:34 57,344 -c--a-w C:\WINDOWS\system32\dllcache\msador15.dll
        + 2004-08-19 14:09:34 57,344 -c--a-w C:\WINDOWS\system32\dllcache\msadrh15.dll
        + 2004-08-19 14:09:34 36,864 -c--a-w C:\WINDOWS\system32\dllcache\mscpxl32.dll
        + 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdadc.dll
        + 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdaenum.dll
        + 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdaer.dll
        + 2004-08-19 14:09:34 233,472 -c--a-w C:\WINDOWS\system32\dllcache\msdaora.dll
        + 2004-08-19 14:09:34 77,824 -c--a-w C:\WINDOWS\system32\dllcache\msdaosp.dll
        + 2004-08-19 14:08:26 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msdaprsr.dll
        + 2004-08-19 14:09:34 200,704 -c--a-w C:\WINDOWS\system32\dllcache\msdaprst.dll
        + 2004-08-19 14:09:34 204,800 -c--a-w C:\WINDOWS\system32\dllcache\msdaps.dll
        + 2004-08-19 14:09:34 118,784 -c--a-w C:\WINDOWS\system32\dllcache\msdarem.dll
        + 2004-08-19 14:08:26 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msdaremr.dll
        + 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdasc.dll
        + 2004-08-19 14:09:34 315,392 -c--a-w C:\WINDOWS\system32\dllcache\msdasql.dll
        + 2004-08-19 14:08:26 16,384 -c--a-w C:\WINDOWS\system32\dllcache\msdasqlr.dll
        + 2004-08-19 14:09:34 20,480 -c--a-w C:\WINDOWS\system32\dllcache\msdatt.dll
        + 2004-08-19 14:09:34 4,096 -c--a-w C:\WINDOWS\system32\dllcache\msdaurl.dll
        + 2004-08-19 14:09:34 36,864 -c--a-w C:\WINDOWS\system32\dllcache\msdfmap.dll
        + 2004-08-19 14:08:26 4,126 -c--a-w C:\WINDOWS\system32\dllcache\msdxmlc.dll
        - 2007-08-13 16:32:30 45,568 -c----w C:\WINDOWS\system32\dllcache\mshta.exe
        + 2006-10-17 10:56:10 45,568 -c----w C:\WINDOWS\system32\dllcache\mshta.exe
        - 2007-08-13 16:01:12 48,128 -c----w C:\WINDOWS\system32\dllcache\mshtmler.dll
        + 2006-10-17 10:28:56 48,128 -c----w C:\WINDOWS\system32\dllcache\mshtmler.dll
        - 2007-08-13 16:54:10 156,160 -c--a-w C:\WINDOWS\system32\dllcache\msls31.dll
        + 2006-10-27 13:09:58 156,160 -c--a-w C:\WINDOWS\system32\dllcache\msls31.dll
        + 2004-08-19 14:09:34 143,360 -c--a-w C:\WINDOWS\system32\dllcache\msorcl32.dll
        + 2004-08-03 20:58:40 5,504 -c--a-w C:\WINDOWS\system32\dllcache\mstee.sys
        + 2004-08-19 14:09:36 343,040 -c--a-w C:\WINDOWS\system32\dllcache\msvcrt.dll
        + 2004-08-03 20:58:26 61,440 -c--a-w C:\WINDOWS\system32\dllcache\msvcrt40.dll
        + 2004-08-19 14:09:36 24,576 -c--a-w C:\WINDOWS\system32\dllcache\msxactps.dll
        + 2004-08-03 21:10:30 85,376 -c--a-w C:\WINDOWS\system32\dllcache\nabtsfec.sys
        + 2004-08-03 21:10:14 10,880 -c--a-w C:\WINDOWS\system32\dllcache\ndisip.sys
        + 2004-08-03 21:14:32 91,776 -c--a-w C:\WINDOWS\system32\dllcache\ndiswan.sys
        + 2005-11-29 14:27:06 364,544 -c--a-w C:\WINDOWS\system32\dllcache\npdsplay.dll
        + 2004-08-19 14:09:38 10,240 -c--a-w C:\WINDOWS\system32\dllcache\npwmsdrm.dll
        + 2004-08-19 14:09:16 733,184 -c--a-w C:\WINDOWS\system32\dllcache\ntdll.dll
        - 2008-05-16 12:01:00 6,557,408 -c--a-w C:\WINDOWS\system32\dllcache\nv4_mini.sys
        + 2008-08-02 10:20:00 6,121,856 -c--a-w C:\WINDOWS\system32\dllcache\nv4_mini.sys
        + 2004-08-19 14:09:38 249,856 -c--a-w C:\WINDOWS\system32\dllcache\odbc32.dll
        + 2004-08-19 14:09:38 16,384 -c--a-w C:\WINDOWS\system32\dllcache\odbc32gt.dll
        + 2004-08-19 14:10:00 32,768 -c--a-w C:\WINDOWS\system32\dllcache\odbcad32.exe
        + 2004-08-19 14:09:38 135,168 -c--a-w C:\WINDOWS\system32\dllcache\odbcconf.dll
        + 2004-08-19 14:10:00 69,632 -c--a-w C:\WINDOWS\system32\dllcache\odbcconf.exe
        + 2004-08-19 14:09:38 106,496 -c--a-w C:\WINDOWS\system32\dllcache\odbccp32.dll
        + 2004-08-19 14:09:38 65,536 -c--a-w C:\WINDOWS\system32\dllcache\odbccr32.dll
        + 2004-08-19 14:09:38 65,536 -c--a-w C:\WINDOWS\system32\dllcache\odbccu32.dll
        + 2004-08-19 14:08:44 98,304 -c--a-w C:\WINDOWS\system32\dllcache\odbcint.dll
        + 2004-08-19 14:08:44 61,712 -c--a-w C:\WINDOWS\system32\dllcache\odbcji32.dll
        + 2004-08-19 14:09:38 278,559 -c--a-w C:\WINDOWS\system32\dllcache\odbcjt32.dll
        + 2004-08-19 14:09:38 147,456 -c--a-w C:\WINDOWS\system32\dllcache\odbctrac.dll
        + 2004-08-19 14:09:38 20,511 -c--a-w C:\WINDOWS\system32\dllcache\oddbse32.dll
        + 2004-08-19 14:09:38 20,510 -c--a-w C:\WINDOWS\system32\dllcache\odexl32.dll
        + 2004-08-19 14:09:38 20,510 -c--a-w C:\WINDOWS\system32\dllcache\odfox32.dll
        + 2004-08-19 14:09:38 20,510 -c--a-w C:\WINDOWS\system32\dllcache\odpdx32.dll
        + 2004-08-19 14:09:38 20,511 -c--a-w C:\WINDOWS\system32\dllcache\odtext32.dll
        + 2005-07-26 04:40:00 1,284,608 -c--a-w C:\WINDOWS\system32\dllcache\ole32.dll
        + 2004-08-19 14:09:38 487,424 -c--a-w C:\WINDOWS\system32\dllcache\oledb32.dll
        + 2004-08-19 14:09:38 77,824 -c--a-w C:\WINDOWS\system32\dllcache\oledb32r.dll
        + 2004-08-19 14:09:38 83,456 -c--a-w C:\WINDOWS\system32\dllcache\olepro32.dll
        + 2004-03-16 08:58:20 136,960 -c--a-w C:\WINDOWS\system32\dllcache\portcls.sys
        + 2004-08-03 20:31:44 152,576 -c--a-w C:\WINDOWS\system32\dllcache\rsaenh.dll
        + 2001-08-23 15:46:46 66,048 -c--a-w C:\WINDOWS\system32\dllcache\s3legacy.dll
        + 2004-08-19 14:09:40 64,000 -c--a-w C:\WINDOWS\system32\dllcache\samlib.dll
        + 2004-08-19 14:09:40 431,104 -c--a-w C:\WINDOWS\system32\dllcache\samsrv.dll
        + 2004-08-19 14:09:40 159,744 -c--a-w C:\WINDOWS\system32\dllcache\scrobj.dll
        + 2004-08-19 14:09:40 151,552 -c--a-w C:\WINDOWS\system32\dllcache\scrrun.dll
        + 2004-08-19 14:10:04 78,848 -c--a-w C:\WINDOWS\system32\dllcache\sdbinst.exe
        + 2004-08-02 12:20:40 4,569 -c--a-w C:\WINDOWS\system32\dllcache\secupd.dat
        + 2004-08-19 14:10:04 142,336 -c--a-w C:\WINDOWS\system32\dllcache\sessmgr.exe
        + 2004-08-19 14:09:42 1,003,520 -c--a-w C:\WINDOWS\system32\dllcache\setupapi.dll
        + 2004-08-19 14:09:42 5,120 -c--a-w C:\WINDOWS\system32\dllcache\sfc.dll
        + 2004-08-19 14:09:42 1,548,288 -c--a-w C:\WINDOWS\system32\dllcache\sfcfiles.dll
        + 2004-08-19 14:09:42 65,536 -c--a-w C:\WINDOWS\system32\dllcache\shimeng.dll
        + 2004-08-19 14:09:42 20,536 -c--a-w C:\WINDOWS\system32\dllcache\shtml.dll
        + 2004-08-19 14:10:04 16,437 -c--a-w C:\WINDOWS\system32\dllcache\shtml.exe
        + 2004-08-19 14:09:42 25,600 -c--a-w C:\WINDOWS\system32\dllcache\slayerxp.dll
        + 2004-08-03 21:10:18 11,136 -c--a-w C:\WINDOWS\system32\dllcache\slip.sys
        + 2004-08-19 14:09:42 189,440 -c--a-w C:\WINDOWS\system32\dllcache\smtpadm.dll
        + 2004-08-19 14:09:44 2,134,528 -c--a-w C:\WINDOWS\system32\dllcache\smtpsnap.dll
        + 2004-08-19 14:09:46 8,192 -c--a-w C:\WINDOWS\system32\dllcache\staxmem.dll
        + 2004-08-03 21:10:14 15,360 -c--a-w C:\WINDOWS\system32\dllcache\streamip.sys
        + 2004-08-19 14:10:04 107,520 -c--a-w C:\WINDOWS\system32\dllcache\sysocmgr.exe
        + 2004-08-19 14:10:04 32,827 -c--a-w C:\WINDOWS\syst
        -1
    2. rapport Hijackthis...

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 17:51:07, on 22/09/2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16705)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\system32\nvsvc32.exe
      C:\WINDOWS\system32\PnkBstrA.exe
      C:\Program Files\CyberLink\Shared files\RichVideo.exe
      C:\WINDOWS\system32\spupdsvc.exe
      C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
      C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
      C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
      C:\WINDOWS\system32\spnpinst.exe
      C:\WINDOWS\system32\Sysocmgr.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
      C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
      C:\Program Files\Razer\Diamondback 3G\razerhid.exe
      C:\WINDOWS\RTHDCPL.EXE
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\RocketDock\RocketDock.exe
      C:\Program Files\Microsoft ActiveSync\wcescomm.exe
      C:\Program Files\Logitech\GamePanel Software\LCD Manager\Applets\LCDClock.exe
      C:\Program Files\Schmads Inc\G15_TeamSpeak\G15_TeamSpeak.exe
      C:\PROGRA~1\MICROS~2\rapimgr.exe
      C:\Program Files\Razer\Diamondback 3G\razertra.exe
      C:\Program Files\Razer\Diamondback 3G\razerofa.exe
      C:\WINDOWS\explorer.exe
      C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe
      C:\Documents and Settings\Flo\Bureau\HiJackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.01net.com/telecharger/
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
      O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
      O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
      O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
      O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.09\RivaTuner.exe" /S
      O4 - HKLM\..\Run: [Launch LCDMon] "C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe"
      O4 - HKLM\..\Run: [Launch LGDCore] "C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe" /SHOWHIDE
      O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
      O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
      O4 - HKLM\..\Run: [Diamondback] C:\Program Files\Razer\Diamondback 3G\razerhid.exe
      O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
      O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
      O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
      O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
      O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
      O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
      O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
      O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
      O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
      O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
      O20 - AppInit_DLLs: ddgdhd.dll
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
      O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
      O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
      O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
      O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
      O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
      O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe
      -1
      1. Contributeur sécurité
        utilise pour supprimer tes traces

        CCLEANER: (lance un nettoyage et répare 3 fois le registre) sans installer la barre yahoo
        (dans les options désactive la case: effacer les fichiers de plus de 48 heures)

        https://www.malekal.com/tutoriel-ccleaner/
        https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html

        _________________

        scan avec
        MalwareByte's Anti-Malware et vire ce qui est trouvé et colle le rapport

        https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

        __________________
        ensuite
        colle un rapport avec bitdefender pour voir
        -1
        1. re...

          désolé du retard deja fais tout cela ... donc heu .. il n'y a rien dans le rapport....
          -1
      2. Contributeur sécurité
        combofix a viré deux fichiers inféctés
        -1
        1. oui c'est bien sa ...
          -1